---
title: PingFederate 13.0.4 (July 2026)
description: Info PF-39148
component: pingfederate
version: 13.1
page_id: pingfederate:release_notes:pf_release_notes_1304
canonical_url: https://docs.pingidentity.com/pingfederate/13.1/release_notes/pf_release_notes_1304.html
llms_txt: https://docs.pingidentity.com/pingfederate/llms.txt
docs_for_agents: https://developer.pingidentity.com/build-with-ai/docs-for-agents.md
section_ids:
  new-features-and-enhancements: New features and enhancements
  apache-mina-dependency: Apache MINA dependency
  resolved-issues: Resolved issues
  client-certificate-authentication-behind-proxy: Client certificate authentication behind proxy
  kerberos-realm-test-failure: Kerberos realm test failure
  user-count-utility-startup-failure: User Count Utility startup failure
---

# PingFederate 13.0.4 (July 2026)

## New features and enhancements

### Apache MINA dependency

Info PF-39148

We updated Apache MINA to version 2.2.7.

## Resolved issues

### Client certificate authentication behind proxy

Fixed PF-39335

We fixed a defect where PingFederate, when deployed behind an mTLS proxy, used the TLS layer certificate (the proxy's server certificate) instead of the client certificate forwarded in the configured client certificate header. This caused client certificate authentication to fail when the proxy terminated mTLS from the client.

Learn more in [Configuring incoming proxy settings](../administrators_reference_guide/help_systemoptionstasklet_systemoptionsstate.html).

### Kerberos realm test failure

Fixed PF-39487

We fixed a defect that caused Kerberos realm test connections without explicitly configured KDCs to fail.

### User Count Utility startup failure

Fixed PF-39502

We updated the bundled User Count Utility to version 1.0.20 to fix a startup issue triggered by certain log4j configurations.
