Netsweeper is pleased to announce the initial release of the version 9.2 product. The Netsweeper 9.2 release series continues our focus on our new Organizational-based structure and our newer Reporter capabilities. Additionally, this release adds several new features; notably scalability support for viewing the WebAdmin on mobile devices as well as providing unique login URLs on a per-Organization basis. As this is the initial Netsweeper 9.2 release, it should only be used in development and testing environments and should be considered to be an experimental release for early adoptors.
We will continue to develop and refine the Netsweeper 9.2 product over several iterations during the upcoming months, with the goal of having a GA release available to our customers late in 2026. This initial release includes over 19 New Features, 31 improvements and 69 bug fixes. As we continue to develop and test the 9.2 release we will see more features, improvements, and bug fixes along with improved QA coverage as we work with all our customers to make sure the 9.2 release meets your requirements.
If you have any questions or concerns about planning an upgrade to this release, please contact Netsweeper Technical Support (support@netsweeper.com).
See Also
9.2 Features and Improvements (Coming Soon)
Download
To download the latest release, please use the following link:
https://repo.netsweeper.com/releases/centos/iso/netsweeper-el8-x86_64-9.2.1-1.iso (9.2.1 md5 checksum) (9.2.1 sha256 signature)
Changelogs 9.2.1
| Issue Type | Issue key | Summary |
|---|---|---|
| Improvement | NS-670 | Added the ability to parse SNI information from QUIC wrapped TLS 1.3 (HTTP/3) in the protocol engine. |
| Improvement | NS-1917 | The 'Email All Accounts' function in the Accounts window did not properly CC or BCC all Accounts. The 'Manage All Accounts', 'Manage Organization Accounts', and 'Manage Sysop Accounts' permissions are now checked to ensure delivery to relevant Accounts. |
| New Feature | NS-2228 | We have added 'WebAdmin Secure Deny Page' and 'WebAdmin Unavailable Deny Page' checkboxes to our Deny Page Editor window. |
| New Feature | NS-2390 | When a custom Deny Page is deleted, we now ensure we remove any orphaned data, such as images that were embedded in the Deny Page. |
| Improvement | NS-2491 | Added the ability to decode Google Translate formated URLs for embedded URL Filtering in the 9.2 product. |
| Bug | NS-2561 | The WebAdmin can now encode and decode Client Filter cookies to match the process in the Policy Service. |
| Bug | NS-2615 | After upgrading to 9.1, Clients without an '@orgname' in their Client Name would be put into their Group's Organization, which could be a restricted Organization. We now move such Clients into the 'Deafult' (~) Organization. |
| Bug | NS-2616 | After upgrading from 8.2 to 9.1.9, some Organizations could have parents IDs with a greater value than their Organization ID. |
| Improvement | NS-2648 | Trace Request will now have a restricted Organization name selectize when a Server IP or Org Name that is in a Restricted Organization (or a child of a restricted Organization) is applied. |
| Bug | NS-2669 | When upgrading from the 8.2 release, we were unable to create a Child-Organization if the parent Organization was restricted, causing the Child-Org to become restricted as well. |
| Bug | NS-2670 | If a single log field was larger then the log entry buffer, we would flush to disk and can close the file before writing, causing the Logger server to abort and restart. |
| Bug | NS-2671 | The NSLog and NSReporter log file read buffer and write buffer sizes are now consistant. |
| Bug | NS-2672 | Sysop users would fail to create a new Client in a managed Group when using the client_add API. |
| Improvement | NS-2673 | Reporter error messages now include the Server's Name, IP address and ID, as well as the Report ID and Instance ID information for RCA purposes. |
| Bug | NS-2676 | Users were unable to add more than one Deny Page Rule if the Rule was being filtered by the Organization field. |
| Bug | NS-2677 | The Request Logs 'Manage Client' function with the 'Move All Clients' option selected would inadvertantly change Clients of the same name, despite being in Restricted Organizations. |
| New Feature | NS-2678 | The Simple Groups window will no longer display read only data when the Account does not have permission to modify the data. |
| Bug | NS-2680 | Exporting data in the Organizations > Servers window while an Advanced Filter was applied would trigger a database error, resulting in an empty export being generated. |
| Bug | NS-2681 | Exporting data in the Administration > Services window while an Advanced Filter was applied would trigger a database error, resulting in an empty export being generated. |
| Bug | NS-2682 | We would Fail to list Scheduled Reports with the report_list API after creating a Report with the report_add_scheduled API. |
| Bug | NS-2683 | Multiple WebAdmin users could inadvertantly share the same Request Log session if the sessions were created in the same second, from versions 3.1 to 9.1.10. This can potentially leak Log information from one Account to another while changing Filters. |
| Bug | NS-2684 | SysOp Accounts with access to System Wide, Filter Bypass and Category Lists could remove Lists from the Processing Steps they did not have access to. |
| New Feature | NS-2688 | The WebAdmin 2026 theme has initial Progressive Web Application (PWA) Support. You can now install the WebAdmin as an Application with browsers that support this function. |
| Improvement | NS-2689 | WebAdmin Progressive Web Application Support has been added in the WebAdmin 2026 template. |
| Bug | NS-2690 | The 9.1.10 release would display the Directory Sync Server Status as offline since it ran 'dirsyncctl status' as a non-root users, causing nsdb.sh to fail and exit code 1 to be returned. |
| New Feature | NS-2691 | Added support for mobile browsers for Simple Groups with the Progressive Web Application feature. |
| Bug | NS-2693 | Resolved a database error that could occur in the 9.1.10 release when a SysOp user was accessing the Home Dashboard. |
| New Feature | NS-2695 | Added the 'Reset Group' function to the Simple Groups window for Accounts with the necessary permission. |
| New Feature | NS-2696 | We have added a 'Profile' tab to the Simple Groups window and improved the layout of the tabs. |
| New Feature | NS-2697 | We have added 'Simple Group' Templates to the 9.2.1 release. |
| Bug | NS-2698 | When upgrading the database we would attempt to connect to the Request Log database via the wrong port, causing a delay due to the Service attempting to 'repair' the database. We have disabled the Database Repair function for the Clickhouse DB. |
| Bug | NS-2699 | The Netsweeper 8.2 to 9.1.10 releases would display the 'Lists' status as failed with the NSProxyKWScan List showing as version 0 if the Serial did not have that List enabled. |
| Bug | NS-2700 | The radiusparser did not support duplicated attributes (such as 'Class' attributes) when used with the Partition attribute settings for validation. |
| New Feature | NS-2701 | Added the ability to integrate the Radius Parser with Workstation Agent Configurations. You can parse the PARTITION_ATTRIBUTE for a GUID value when 'PARTITION_ATTRIBUTE_PARSE_AGENT_GUID' is true. |
| Bug | NS-2704 | Global Quick Reports and the Global Dashboard are now per-Organization since the 9.1.3 release. A user without access to the 'Manage All Organization Groups' permission was unable view Global Quick Reports. |
| Bug | NS-2706 | Request Log database Reports were restricting the Report data to the Organization of the Account that was used to create the Report, resulting in no data being present when creating Reports for Child-Organizations. |
| Bug | NS-2708 | Directory Sync was using the 'log4j 2.17.2' package, which was impacted by CVE-2026-34480. We have upgraded log4j to version 2.26.0. |
| Bug | NS-2709 | We would display a second, duplicate success message when updating Account Permission Templates. |
| Improvement | NS-2710 | We have disabled Policy Process Looping for requests with no Scheme as well as requests that use non-HTTP/HTTPS schemes (such as DNS). |
| Improvement | NS-2712 | When an Access Token is deleted successfully, the message now displays in a green banner, as with all success messages throughout the WebAdmin. |
| Bug | NS-2713 | We no longer attempt Client Dynamic Updates until the Policy Service has finished loading its initial config. |
| Bug | NS-2714 | The Calendar widget would set the 'date' field to the current date if the field was empty and the user would click outside the calendar or 'tab' through the widget. We now only set a date when the user selects the 'Apply' button within the widget. |
| Bug | NS-2715 | The openbgp 9.1 had a bug with 'bgpctl network bulk add' and 'bgpctl network bulk delete' that caused ns_routes default bgponline.sh to fail due to the usage of 'network bulk add' and 'network bulk delete' functions. |
| New Feature | NS-2716 | Client Filter Brands now support adding multiple Organizations in the Local Network Detection field, separated by commas. |
| New Feature | NS-2717 | Added the ability to adjust the groupclient_lookup_order on a per-Organization basis in the Policy Service. |
| New Feature | NS-2718 | Added restricted Organization support for the groupname_lookup module with a new configuration option: groupclient_groupname_restrict yes. |
| Bug | NS-2719 | Upgrading to the 7.2.5, 8.1.5, and 8.1.6 releases would save Client Filter Brand setting's 'Platform' as NULL while the 9.1 release will save it as "". We have updated the database and set NULL to "" in order to ensure compatibility. |
| Bug | NS-2720 | The 'Lets Encrypt' Certificate did not deploy the Full Chain for nginx, NSD, and other services, deploying the Cert manually would not regenerate the default Certificate. |
| Bug | NS-2722 | When upgrading from old releases with no Theme Editor images, the 9.1 product could display broken links instead of the default images. |
| Bug | NS-2723 | Using the 'Standard' theme in the Netsweeper 9.1.1 - 9.1.10 releases would render the Request Logs with oversized rows due to improvements in the new 'Modern' and 'Bright' themes. |
| Bug | NS-2724 | The 'Download Backups' function in the Administration > Backups window would fail in the 9.1.10 release. |
| Bug | NS-2725 | The Request Logs 'Search' function would fail with an error message for Sysops in the 9.1 release. |
| Bug | NS-2726 | The WebAdmin Logs would fail to load for Sysops due to a database error, despite having the necessary Account Permissions. |
| Bug | NS-2727 | Creating a numeric Account name that has the 'Manage All Organization Groups' Permission and Request Logs access could cause the Request Logs to display Logs for an Organization, if that Organization's ID is the same numeric value as the Account name. |
| Improvement | NS-2728 | WebAdmin popup windows can now be dragged. |
| Bug | NS-2729 | Resolved database errors when running /webadmin/bin/upgrade_report_groups_limit.php during a Reporter database upgrade. |
| Improvement | NS-2730 | We will now only update List Assignments for each role when a List is added to the Assignment. |
| Improvement | NS-2731 | We have improved and modernized the look of the 'Reset Profile' tab for Groups and Simple Groups. |
| Bug | NS-2732 | Accounts with access to more Groups than the 'Maximum Dashboard Groups' setting would still be able to access the Reports Dashboard, though the page would display an error. We now remove the Reports Dashboard for Accounts who exceed this threshold. |
| Bug | NS-2733 | When the Request Log Database is not configured, NSMySQL Requests would display "Unknown MySQL server host '-P' (-2)" when attempting to run the 'nsmysql requests' command. It now correctly displays "Database requests does not exist". |
| Bug | NS-2735 | For deployments without the Clickhouse Database installed, selecting a Group in the Simple Groups window would fail to load the Group, displaying an error message instead. |
| Improvement | NS-2736 | We now display an error message and abort startup of the Policy Service if cmauto cannot expand a network card. |
| Improvement | NS-2737 | We have added 'Allow All' and 'Deny All' functionality to the Simple Groups interface. |
| Bug | NS-2738 | The lm5_multiwriter_macro replaces '_' with '-'. If users create two Groups, Organizations, or Tags (such as 'test-test' and 'test_test') a duplicate LogMod5 disk writer is created and the Policy Service config will fail to load. |
| Bug | NS-2741 | We now use a 'configdb' variable instead of the hard-coded 'NSDConfig' value in our upgrade script. |
| Bug | NS-2742 | Adding new 'default' settings to the database could cause an error when upgrading from a release where the settings already exist. |
| Bug | NS-2743 | Using the 'tag' logger_field with the Clickhouse database would result in a 'DUPLICATE_COLUMN' MySQL error. |
| Bug | NS-2745 | Upgrading from 8.2.13 to 9.1.10 or 9.2.0.112 would log database errors in upgrade_organizations.php after running the 'dbupgrade' command if the NSDLog was already upgraded. |
| Bug | NS-2746 | Found an issue where we would report a database query error with the error message of " with no database error number for further investigation. |
| Bug | NS-2747 | When there are no per-Group Quick Reports, the Quick Reports tab will appear in the Group's window; but an error message will display if the tab is selected. |
| Bug | NS-2748 | The 'organization_list' API could cause a php timeout due to a long SQL query runtime. |
| Bug | NS-2749 | The organization_list API did not have the proper output like similar API calls (such as client_list or group_list). |
| Bug | NS-2751 | Dashboard and Quick Reports created within Organizations would not be visible for Accounts in the Organization. |
| Bug | NS-2752 | Resolved an issue where managed Quick Reports could appear for a user, despite not being enabled for that Account. |
| Improvement | NS-2753 | Improved scalability of our Simple Groups interface for use with mobile screens. |
| Improvement | NS-2754 | We now hide the Simple Group window's Search field when less than four Groups are available. |
| Improvement | NS-2755 | We no longer display the 'No additional Groups' notification in the Simple Groups window unless the number of available Groups requires multiple pages to display. |
| Improvement | NS-2756 | We now support 'touch' scrolling in windows that use supertables on touchscreen devices. |
| Improvement | NS-2757 | We now hide page-selection and search controls when a table has only one page worth of data. |
| Improvement | NS-2758 | We now switch Tables to the 'Card' layout automatically on mobile devices. |
| Improvement | NS-2759 | We now ensure that table controls fit within the screen's width on mobile devices. |
| Improvement | NS-2760 | we now resize table Cards automatically to fit within the screensize of the device they are being viewed on. |
| Bug | NS-2763 | If the Reporter has a Group limit set, Report previews will now adhere to this limit. |
| Bug | NS-2764 | We now disable the per-Group Dashboard and Quick Reports tabs if no Group-based Dashboard and Quick Report Templates are enabled. |
| Bug | NS-2765 | When a Group or Organization does not have Quick Reports enabled for the default 'Daily' interval-value, we now display Quick Reports for intervals that are enabled, automatically. |
| Bug | NS-2766 | The Policy Service would crash when the logmod5 MysSQL module was not properly configured. |
| Bug | NS-2767 | Resolved issues with SQL files not running correctly during upgrades from 8.2.11 to 9.1.10, causing inconsistencies in the sessions table schema. |
| Bug | NS-2769 | Addressed an issue causing slow queries and potential deadlocks during List Entry Metadata cleanup when the List Service was enabled. |
| Bug | NS-2773 | Directory Sync would lock the 'organization' table unnecessarily. We now only lock the 'sync_domains' table when running the Directory Sync service. |
| Bug | NS-2774 | Updating WebAdmin Settings in the root Organization would result in SQL taking a long time to replicate the changes to all other Organizations in the deployment. |
| Improvement | NS-2775 | When exporting data, we now prioritize any selected entries first, and any filtered entries second. If there are no selected entries or filters applied, we will default to the 'All Entries' option for the Export field. |
| Bug | NS-2777 | We did not ensure the 'Per Page' setting for tables allowed for all data to be returned. We have also renamed 'Table Entry Options' to 'Table Per Page Options'. |
| Bug | NS-2782 | Selecting the Report Template checkboxes for Dashboard Reports, Quick Reports, and Create Report would fail to save in the 9.1.11 release. |
| Bug | NS-2783 | The WebAdmin Logs would log a database error when saving the session state for tables with long table names. We have increased the session_store name column length, in order to support longer table names. |
| Bug | NS-2784 | The Modified Date field for List Entries and Password History was using a different timezone than Created Date field. |
| Bug | NS-2785 | Resolved an issue in the 9.1.11 release where a deadlock could occur during List Entry Metadata Log cleanup. |
| Bug | NS-2786 | The 'Clone' option in the Policies > Lists window has been disabled. |
| Improvement | NS-2788 | The Trace Request tool will now show the Client, Group and Policy names used for Request Processing. |
| Bug | NS-2790 | We did not validate that the page number was within the valid set of pages when applying Advanced Filters to table data. We now reset page information automatically when applying Advanced Filters. |
| Improvement | NS-2791 | The 'Allow All/Deny All' Account Permission has been segmented into two seperate Permissions, 'Allow All' and 'Deny All'. |
| Improvement | NS-2792 | Duration options for the 'Allow All' and the 'Deny All' functions is now configurable in WebAdmin Settings, on a per-Organization basis. |
| Improvement | NS-2796 | We now ensure the 'Adjust Columns to Export' dropdown remains open after adding or removing a column, allowing for multiple selections to be applied in this interface. |
| Bug | NS-2797 | Editing a Client in the Simple Group window would result on a duplicate 'Success' notification. |
| Improvement | NS-2798 | The 'Modify Group Policy Local List' Permission now also determines if the 'Allow List' and 'Deny List' tabs are visible to Accounts within the Simple Groups interface. |
| New Feature | NS-2803 | The Client Filter, NSProxy, and Capture Module Policy Processors are now able to specify multiple Organizations for the 'organization=' field on a list port or for Local Network Detection, adding the ability to append more Organizations. |
| New Feature | NS-2805 | The Client Filter can now have a Request processed in multiple Organizations. However, the logClientName, logGroupName and other fields associated with the Request must always be set to the Organization detected in the initial Request. |
| New Feature | NS-2808 | Added the ability to enforce the Organization name in the path of the WebAdmin for Login and Logout, allowing for per-Organization Login pages. |
| New Feature | NS-2809 | Added Per-Organization Sign Up configuration support. |
| New Feature | NS-2812 | Added the ability for the per-Organization Login page to support per-Organization SSO configurations. |
| New Feature | NS-2818 | Updated the nginx web server configuration to support Organization names in the server path. |
| Bug | NS-2820 | Fixed a Client Filter SQL table-query that was causing a database error for SysOp users without the 'Manage All Users' Permission. |
| Bug | NS-2821 | Resolved an issue with our upgrade script that could cause database errors when upgrading from the 8.2 to 9.1 release. |
| Improvement | NS-2825 | Added the ability to set an OnGuard Cluster Key in WebAdmin Settings. |
| New Feature | NS-2851 | The WebAdmin name will now change based on the Active Organization, when Organization Name Enforcement is enabled. |
| Improvement | NS-2860 | Improved database indexes for the product, in order to provide better performance and scaling. |
| Improvement | NS-2861 | Resolved a database error in the WebAdmin in the 9.1.11 release that could occur when searching the Group Client table. |
| Bug | NS-2865 | Resolved an issue with double-encoding of the Group name that could be triggered when 'locking' or 'unlocking' a Client in the Edit Client window. |
Copyright © 2026 Netsweeper Inc. All rights reserved.
Confidential and Private information. Distribution of the information contained herein is strictly prohibited.