PingOne Advanced Identity Cloud

Regular channel changelog

This is a changelog entry for version 21478.4. You can review the changelog for all versions in Regular channel changelog.

08 May 2026

Version 21478.4

Key features

Snowflake connector (OPENIDM-21957)

The Snowflake connector is now bundled with Advanced Identity Cloud. This new connector allows you to manage users, grant and revoke roles and database roles, and synchronize data between Advanced Identity Cloud and Snowflake.

Learn more about the 1.5.20.33 Connector changes.

Identity Governance Access Modeling[1] (IGA-3696)

Advanced Identity Cloud Identity Governance introduces a new feature called Access Modeling (role mining) that analyzes existing user-to-entitlement assignments to discover potential access roles that reflect how people use access in your environment. Using advanced machine learning, it examines current roles and entitlements across your access landscape to propose new role candidates and suggest changes to existing ones.

Access Modeling is an Advanced Identity Cloud add-on capability that integrates with the Identity Governance add-on capability.

Enhancements

  • IAM-1715: Improve messaging on back button for 404 pages in the Advanced Identity Cloud admin console.

  • IAM-3829: You can now perform dry-run promotions in the Advanced Identity Cloud admin console.

  • IAM-3834: Distinguish between dry-run and actual promotions in the promotion report in the Advanced Identity Cloud admin console.

  • IAM-8149, IAM-8275, IAM-8988: Added the following configuration options to the Advanced Identity Cloud admin console when you create or edit a journey:

    • Override authenticated session timeout, Maximum Session Time, and Maximum Idle Time

    • Transactional Only

    • No Session

    Previously, these settings could only be configured over REST.

  • IAM-8972: You can now configure managed objects and relationships in the Advanced Identity Cloud admin console.

  • IAM-9819[2]: Added the ability to export custom reports.

  • IAM-9822: You can now perform promotion rollbacks in the Advanced Identity Cloud admin console.

  • IAM-9903[2]: Added the ability to import custom reports.

  • IAM-9960: Added a wider scope to the monitoring search feature by being able to search on /payload/message and just /payload in cases where the monitoring record’s payload is a string.

  • OPENIDM-22009: All connectors included with Advanced Identity Cloud were upgraded. Learn more in 1.5.20.34 Connector changes.

  • IGA-4036: Added the ability to add and remove members of an entitlement directly from the entitlement LCM users tab.

Fixes

  • FRAAS-31613: Fixed an issue where password policy updates weren’t properly replicating to the datastore in mutable environments.

  • IAM-1907: Fixed an issue where custom endpoint search showed an incorrect message.

  • IAM-2537: Fixed an issue where non-dashboard URLs didn’t show a 404 page.

  • IAM-2615: Fixed an issue where border radius settings affected the hosted pages editor preview.

  • IAM-3453: Fixed styling issues with the back button.

  • IAM-5439: Fixed an issue where an ESV couldn’t be updated after its last value was deleted.

  • IAM-7502: Fixed an issue where the color in the Card Input Border Focus Color hosted pages setting wasn’t applied to the search field in the My Applications hosted account page.

  • IAM-9475: Fixed an issue in the hosted journey pages where a journey was allowed to continue in the event of a password mismatch when a message node was on the same page.

  • IAM-9752: Fixed an issue where VoiceOver gestures didn’t work on drop-down lists.

  • IAM-9842: Fixed an issue where VoiceOver didn’t announce text for some page elements.

  • IAM-9936: Fixed an issue with the query operation in the SaaS REST application where setting the type select field prevented the method select field from being cleared, and the other way around.

  • IAM-9952: Fixed an issue where the table header for the action column was empty on several pages in the hosted account pages.

  • IAM-9958: Fixed an issue where the table header for the action column was empty on several pages in the Advanced Identity Cloud admin console.

  • IAM-10056: Fixed an issue on the Auth Scripts page where the modal body failed to load after clicking add New Script.


1. This change applies to a feature only available in PingOne Identity Governance, which is an add-on capability and must be purchased separately.
2. This change applies to a feature only available in Advanced Reporting, which is an add-on capability and must be purchased separately.