These release notes contain a comprehensive list for the Epic Authentication Plugin for Hyperdrive version 4.1.x.
Version 4.1.4.8
Issues Resolved
HEALTH-676
- Narrator workflow has issue when user cancels passive dialog
HEALTH-708
- EPCS SAML cert needs to be a CAPI cert instead of a CNG cert
HEALTH-751
- On installation of EpicAuth on Windows 10 endpoint, VirtualDriverEx setting appears as blank in registry editor
HEALTH-778
- Integrate OpenSSL setup into EpicAuth setup
HEALTH-795
- Certificate is not created after installation of EpicAuth
Version 4.1.3.2
Issue Resolved
HEALTH-754
- Dual signing — option to use SAML token when XA cached password is not available due to timeout period
Version 4.1.2.1
Issues Resolved
HEALTH-578
- Hyperdrive dual signing — prompt for password if XA stored password is no longer cached due to timeout period.
HEALTH-746
- Hyperdrive not showing any login form when client not registered properly for the environment. This version now allows logging into Epic with XA credentials when the environment is not registered, although without functionality of syncing XA logged‑in/secured state with Epic afterwards.
Version 4.1.1.5
This release includes bug fixes and the ability to run the Client Registration Tool using command‑line parameters, without requiring Hyperdrive to open during client registration.
Issues Resolved
HEALTH-589
- Added ability to run the RegisterClient tool from the command line
HEALTH-671
- Add the ability to use interconnect to register the client, instead of needing to run an instance of Hyperdrive
HEALTH-700
- Patient Station “Select a patient” screen no longer prevents tap‑over/tap‑out from functioning
HEALTH-721
- Remove support for storing Static Client Prod and Non‑prod certs in the Enterprise Trust store due to OS limitations on private key functionality in that store
HEALTH-724
- XA client not being logged off when Epic department selection times out
HEALTH-736
- EpicAuth is not able to switch users if tap‑over happens while department selection or MoTD screens are up
HEALTH-743
- Improve string initialization when calling XA functions from Citrix server
HEALTH-746
- Hyperdrive not showing any login form when client not registered properly for Hyperdrive environment
Known Issues
Secondary authentication does not work if the user's XA rolling password save time has expired.
Workaround
The user must tap their badge to sign into XA to restart their password save time prior to using secondary authentication.
Additional Functionality
HEALTH-589 and HEALTH-671
Added ability to run the RegisterClient tool from the command line for administrative and unattended installation. This version also supports using an interconnect server, allowing registration without opening an instance of Hyperdrive. Using an interconnect server, registration can be completed silently in the background during an administrative deployment.
This version only supports registering for a single environment. Future versions will allow registering the Hyperdrive client with multiple environments.
Example:
"C:\Program Files (x86)\Identity Automation\EpicAuth\IA.EpicAuth.RegisterClient.exe" --id=100 --env=testing --url=https://fhir.epic.com/interconnect-fhir-oauth/oauth2
Unsupported Functionality
- Patient identification remains unsupported
- Slingshot launching Hyperdrive when the login device is running locally
Additional Information
- “Password Save Time” — ProxCard server does not support password expiration longer than 1440 minutes (24 hours) when configured via the configuration tool. Although not recommended, the value can be directly modified in the registry to support longer times. With rolling password save, it is recommended to keep this value as short as possible for higher security.
- Consult the product documentation for further information, including installation and configuration details.
Version 4.1.0.2
This release introduces the ability to use integrated narrator workflows. This can be used in areas of Hyperdrive (such as trauma bay / ED interactions) to simplify tasks, such as tracking arrived and departed personnel.
HEALTH-542
- Include key generation and registration tools in EpicAuth install
HEALTH-546
- Support for integrated narrator workflows
HEALTH-579
- Include support required to integrate with Identity Automation’s EPCS solution, including generation of required SAML certificate
HEALTH-599
- Client Registration enhancement: support for storing the static cert used for registration in the Enterprise Trust store, allowing additional automated deployment scenarios
