What’s New in Infoblox Universal DDI on EU

This topic includes new features and enhancements for Universal DDI. You can view information about other enhancements and maintenance for Infoblox SaaS products and services in the Infoblox SaaS Release Notes


Universal DDI – September 24, 2024  

Data Connector introduces HTTP Destination support for Microsoft Sentinel.

This enhancement facilitates the setup of Microsoft Sentinel as a destination in the Infoblox Platform. For more information, see Data Connector.

BloxOne DDI – August 29, 2024

Infoblox Ecosystem now offers support for automation integrations running in BloxOne Cloud, enabling the automation of Cloud-to-Cloud workflows.

Users have the ability to configure automated workflows, with service instance options specifically for setting up cloud-to-cloud flows. For more information, see Data Connector and Infoblox Ecosystem.

Data Connector introduces BloxOne Cloud-to-Cloud SIEMs, emphasizing fully managed services with seamless integrations with third-party SaaS services.

Key enhancements in this release:

  • Facilitates the setup of a Syslog destination in BloxOne Cloud.
  • Facilitates the setup of automations in BloxOne Cloud.
  • Facilitates the setup of an HTTP Destination in BloxOne Cloud.

For more information, see Data Connector and Infoblox Ecosystem.


BloxOne DDI – August 21, 2024

BloxOne DDI introduces DHCP subnet profiles, enabling users to configure multiple subnets simultaneously.

BloxOne DDI now supports the creation of DHCP subnet profiles, which can be configured with any required settings. These profiles can then be applied to multiple subnets simultaneously, streamlining the configuration process. For more information, see Configuring DHCP Subnet Profiles.

BloxOne DDI – August 19, 2024

BloxOne DDI now supports importing zone delegation and ACLs via the NIOS Grid Connector.

NIOS Grid Connector has been updated to support syncing zone delegation and ACLs from NIOS. For more information, see Objects Imported from NIOS.

Data Connector introduces additional event field options for Atlas Notification settings.

This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see Creating Traffic Flows.

BloxOne DDI – August 9, 2024

BloxOne DDI allows setting per-zone limits for rdatasets and rrtypes to prevent database query processing from slowing down.

An rdatatype (short for resource record type) refers to the specific type of resource record (RR) in the DNS. Each resource record in DNS has an associated type that indicates the kind of data it holds for example type A , the IPv4 address of a host, or type MX , how to route mail. An rdataset refers to a set of resource records (RRs) of the same type for a specific domain name in the Domain Name System (DNS). Excessively large rdatasets or large numbers of rrtypes can slow down database query processing, so limits can be set on a per-zone basis. For more information on how to place limits, see Creating a Primary Zone and Creating a Secondary Zone

BloxOne DDI – August 5, 2024

Infoblox launches the Infoblox Ecosystem Program.

This program includes a self-service portal, offering certified, out-of-the-box integrations with leading technology providers. The program is powered by Automations, an event-driven automation framework designed to streamline integration development. These integrations have undergone rigorous testing and validation to ensure compatibility and support by Infoblox. The program aims to help NetOps and SecOps teams automate workflows, enhance security, and improve collaboration across on-premises, hybrid, and multi-cloud environments. For information, see Ecosystem Portal.

BloxOne DDI – August 2, 2024

Data Connector now supports sending logs to an HTTP destination in Splunk CIM data format.

When configuring a Data Connector traffic flow, you now have the option to choose Splunk CIM as the log message format when you configure HTTP as the destination. For information, see Setting Up HTTP.

BloxOne DDI – August 1, 2024

Infoblox introduces event selection field options for BloxOne Threat Defense DNS Query/Response log, BloxOne Threat Defense Policy Hits log, BloxOne DDI DNS Query/Response log, and Service Logs exported by Data Connector.

This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see see Creating Traffic Flows and Event Field Logs.

BloxOne DDI – July 29, 2024 

BloxOne DDI introduces service logs for Cloud Discovery.

BloxOne DDI now shows service logs for Cloud Discovery, which includes AWS and Azure. For information, see Viewing Service Logs.

BloxOne DDI – July 24, 2024 

To enhance security, the host API keys have been deprecated. However, users can still access the BloxOne APIs using the service API keys.

For information about service API keys, see Configuring Service API Keys.

BloxOne DDI – July 19, 2024 

NIOS Grid Connector now syncs Forward Name Server Group, and Name Server Group Association to the Cloud Services Portal.

NIOS Grid Connector has been enhanced to sync additional objects from NIOS to the Cloud Services Portal such as Forward Name Server Group and Name Server Group Association. For more information, see Objects Imported from NIOS.

BloxOne DDI supports configuring exceptions during DNSSEC validation.

For more information, see Enabling Signature Validation. 

DNS Traffic Control supports additional record types for load balancing.

DNS Traffic Control now supports SRV, SVCB (Type64), and HTTPS (Type65) for load balancing. For more information, see Configuring DNS Traffic Control.


BloxOne DDI – July 12, 2024 

BloxOne introduces tagging enhancements that restrict tag values displayed during tag addition, application, and filtering to those currently assigned to objects. Additionally, predefined tag values can now be defined through restricted tags, instead of freeform tags. To explicitly add values to a freeform tag, convert the tag to a restricted tag first.

      For more information, see Managing Tags.

BloxOne DDI – June 21, 2024 

BloxOne enhances the performance and usability of Global Search on the Cloud Services Portal, making it easier and faster for users to find what they need.

Global search includes the following enhancements:

  • Users can now start a search by pressing the Enter key after entering key words.
  • Quick results will display the top three relevant results.
  • Users will see two groups of results: one for Exact Matches and the other for Related Results.
  • Exact match results will appear within a second.
  • Related results will be visible within a few seconds.

BloxOne DDI – June 20, 2024

The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2023-48795 and CVE-2023-44487.
  • CVE-2023-48795: The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks.
  • CVE-2023-44487: The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly.

BloxOne DDI – May 03, 2024

High Availability now supports an IPv6 Service Instance for Active/Active and Active/Passive configurations.

High availability now supports an IPv6 subnet Service Instance in addition to the existing IPv4. The IPv6 support is applicable to Active/Active and Active/Passive configurations. For more information, see Configuring HA Groups.

DNS Traffic Control now allows HTTP/HTTPs Response control health checks to search strings in the header, body, and create regular expressions. 

BloxOne DDI now allows you to configure HTTP/HTTPs response control health checks by searching for a string in header, body, header/body. You can also create regular expressions for the header. For more information, see Creating HTTP Health Checks

Additional objects can now be synced from NIOS to BloxOne DDI through the NIOS Grid Connector.

Additional IPAM and DNS objects are now sent from NIOS to BloxOne DDI, when you enable the NIOS Grid Connector. For more information, see Enabling the NIOS Grid Connector Service. 

BloxOne DDI – April 12, 2024

BloxOne consolidates notifications for host-related events, optimizing efficiency and improving system performance.

When configuring BloxOne notifications, you can now choose Host Status Infra to receive important events related to the supported host metrics. The former Host State option will no longer be available. This enhancement helps improve system performance and reduce the number of notifications you will receive. For information, see Configuring Notification Delivery.

BloxOne DDI – April 11, 2024

This release of the BloxOne Data Connector includes a few enhancements: relocation of the Data Connector tab from the Manage tab to the Integrations tab on the Cloud Services Portal, a new traffic flow configuration wizard, and the ability to add tags.

In addition to the relocation of the Data Connector tab from the Manage tab to the Integrations tab, other enhancements include the release of a new traffic flow configuration wizard to improve workflow efficiency and the capability to add tags to traffic flows, sources, destinations, and ETL configurations. For information, see Data Connector.

BloxOne DDI – April 5, 2024

BloxOne introduces enhancements that streamline account management across multiple organizations.

The enhancements are particularly beneficial for administrators managing multiple organizations or sandboxes, simplifying the process of accessing and controlling subsidiary organizational accounts. The enhancements also overhaul the Cloud Services Portal's current account-switching feature by introducing an improved account selection menu that can handle hundreds of organizational accounts and includes a search and filter function for better organizational account management.

Additional enhancements include the following:

  • Administrators managing multiple organizations can set a default account, which is automatically accessed upon the initial connection to the Cloud Services Portal after authentication.
  • Administrators are able to specify favorite organizations, which are prominently displayed at the top of the account selection window/menu for quick and easy access.

For additional information, see Managing BloxOne Accounts

BloxOne DDI – April 4, 2024

Infoblox Data Connector supports forwarding of BloxOne DHCP lease logs to a NIOS reporting destination.

Infoblox Data Connector now allows you to forward BloxOne DHCP lease logs to NIOS reporting, streamlining network administration workflows and enhancing efficiency. For more information, see Configuring Traffic Flows.  

BloxOne DDI – March 22, 2024

The IPAM/DHCP pages on the Cloud Services Portal have the following improvements: Local search is now above the list of objects; a new filter icon is next to the local search; and the save filter icon features a drop-down menu.
  • Local search has been relocated above the list of objects, accompanied by the text “Find in list.” When selected, local search expands to provide additional space to enter keywords.

  • A redesigned filter icon has been relocated above the list of objects next to the local search.

  • The save filter icon has been updated from a floppy disk icon, featuring a drop-down menu that contains a list of saved filters.

BloxOne DDI now offers the capability to disable Echo Client ID in the global DHCP configuration for backward compatibility with older devices. 

BloxOne DDI allows you to deactivate Echo Client ID in the global DHCP configuration, ensuring seamless DHCP response for clients that cannot accept a response with a Client ID. For additional details, see the Advanced Configuration section.

BloxOne DDI – February 27, 2024

The Cloud Services Portal supports a split view feature for viewing private zones and public zones from Azure.

With the Split View feature, you can serve Azure public hosted zones and private hosted zones from two separate DNS views, enabling split-horizon DNS. For more information, see Enabling Split View.

In the Cloud Services Portal, the AWS and Azure Third-Party DNS Providers features have been moved under Network Discovery.

AWS and Azure Third Party DNS Providers have been moved from Manage > DNS > Third Party DNS Providers to Manage > Discovery > Discovery job Configurations > Cloud. For more information, see Universal Asset Insights.

BloxOne DDI – February 17, 2024

DHCP Fingerprints are optimized with new fingerprint rules.

BloxOne DDI now supports an optimized fingerprint database with updated fingerprint rules that provide better identification. For more information, see Configuring DHCPv4 Fingerprints.

The BloxOne DDI DNS service addresses the following vulnerabilities CVE-2023-4408, CVE-2023-5517, CVE-2023-5679, CVE-2023-5680, CVE-2023-6516, CVE-2023-50387, and CVE-2023-50868:
  • CVE-2023-4408: Parsing large DNS messages may cause excessive CPU load.

  • CVE-2023-5517: Querying RFC 1918 reverse zones may cause an assertion failure when nxdomain-redirect is enabled.

  • CVE-2023-5679: Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution.

  • CVE-2023-5680: Cleaning an ECS-enabled cache may cause excessive CPU load.

  • CVE-2023-6516: Specific recursive query patterns may lead to an out-of-memory condition.

  • CVE-2023-50387: KeyTrap - Extreme CPU consumption in DNSSEC validator.

  • CVE-2023-50868: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

BloxOne DDI – February 16, 2024

BloxOne DDI can now filter lease based on Global MAC Pool.

BloxOne DDI supports filtering DHCP leases based on the Global MAC Pool imported from a CSV file. For more information, see Creating an IPv4 MAC Address Large Selection Filter.

BloxOne DDI – February 5, 2024

BloxOne users can now create and manage host configuration templates in the Cloud Services Portal.

Templating enables users to quickly deploy additional hosts/deployments with a consistent configuration as well as centralize future changes to a group of hosts from a single change within the template. For information, see Configuring Templates.

BloxOne DDI – January 29, 2024

The Cloud Services Portal now provides enhanced viewing and export options for service logs from the Data Connector.
  • Logs from the Data Connector are now accessible for both viewing and downloading through the Cloud Services Portal.
  • The Data Connector has the capability to export service logs to all supported destinations, including integration with SIEM (Security Information and Event Management) systems.

For information, see BloxOne Notifications and Configuring Traffic Flows.

BloxOne DDI – January 26, 2024

To prevent a mismatch between the host of a subnet and range, BloxOne DDI now validates that a subnet and its range use the same BloxOne host.

BloxOne DDI ensures that a subnet and its range use the same BloxOne host. This helps prevent a scenario where a mismatch occurs between the host of a subnet and its rangeFor more information, see Creating Address Ranges.

BloxOne DDI – January 16, 2024

BloxOne supports host deployment using generation 2 virtual machines on Hyper-V/Azure.

BloxOne now supports generation 2 VMs when you deploy BloxOne hosts in Microsoft Azure. For more information, see Microsoft Azure Deployment.

BloxOne supports adding host tags associated with the Cloud Services Portal during BloxOne host deployments.

When you deploy a BloxOne host, you can add a host tag to the "userdata" file to associate the host with the Cloud Services Portal. For more information, see YML and JSON Templates.

BloxOne supports firmware updates on Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 hardware appliances.

To upgrade the firmware on Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 appliances, you can now download firmware upgrades and apply a firmware upgrade script via the debug CLI or a USB flash drive. For more information, see Updating Firmware on Hardware Appliances.

BloxOne host deployment on Google Cloud Portal (GCP) now supports IPv6.

      For information, see Google Cloud Portal (GCP) Deployment.

BloxOne DDI – January 10, 2024

BloxOne DDI now supports importing private zones from Azure DNS as forward zones.

When you configure Azure DNS private zones to be served from a BloxOne host in Cloud Services Portal, you can get the queries forwarded to Azure DNS to get most recent results, without waiting for the sync. For more information, see Importing AWS Private NIOS-X Servered Zones as Read/Write Forward Zones.
The Cloud Services Portal supports a split view feature for viewing private zones and public zones from AWS Route 53.

With the Split View feature, you can get AWS Route 53 public hosted zones and private hosted zones to be served from two separate DNS views, allowing the capability for Split-horizon DNS. For more information, see Enabling Split View.

BloxOne DDI – December 14, 2023

BloxOne DDI now supports creating DNAME resource records through the Cloud Services Portal.

BloxOne DDI supports creating DNAME records that can be used to create an alias for an existing domain. Previously, the DNAME record could only be created as a generic record of type DNAME.  With this release, DNAME can be selected as one of the record types under the Record menu. For more information, see Creating a DNAME Record.

BloxOne DDI – December 1, 2023

BloxOne now displays all host types for hardware platforms on the Cloud Services Portal.

The Infrastructure > Host page of the Cloud Services Portal now displays B1-212 as the host type for Dell VEP appliances that are purchased from Infoblox. In addition, the "B105" hardware type is replaced by "B1-105."

BloxOne allows you to add new services directly on the Infrastructure > Host page.

You can now add services to a specific host on the Infrastructure > Host page without navigating to the Services page.

BloxOne DDI – November 17, 2023

BloxOne DDI now allows the recursive client query limit to be set to a maximum 15000 queries.

BloxOne DDI allows configuring the recursive client query limit up to 15,000 queries, ensuring an optimal level of recursive queries to be processed concurrently by the recursive name server. For more information, see Enabling Recursive Queries.

An Enhanced Terraform package is now available in GitHub to support new features and functionality for BloxOne DDI.


This release of BloxOne DDI provides the following enhancements to the Terraform integration packages:
  • Support for listing and creating the Next Available Subnet in an address block.
  • Support for listing and creating the Next Available IP address in an address block, subnet, and range.
  • Support for DNS forward zones. 
  • Support for tag filtering in IPAM and DNS objects.


BloxOne DDI – November 10, 2023

BloxOne DDI now allows Zone Federation on AWS and Azure.

Zone Federation is now supported on AWS and Azure, which allows you to distribute and manage DNS zone data across multiple authoritative servers. For more information, see Zone Federation.

BloxOne DDI supports importing AWS private hosted zones as read-only or read-write forward zones. 

Private hosted zones synced from the cloud provider are set up as forward zones on BloxOne host. Queries for domains added as forward zones will be forwarded by the BloxOne host to AWS for resolution, ensuring the most up-to-date data is referenced. For more information, see Importing AWS Private Hosted Zones as Read/Write Forward Zones.

BloxOne DDI allows the configuration of read-only or read-write sync process for third-party cloud providers. 

You can now configure the sync process for third-party cloud providers in read-only or read-write modes via the Cloud Services Portal. For more information, see Configuring Read Only or Read Write Sync.

BloxOne DDI – November 2, 2023

BloxOne introduces usability enhancements to global search and local search on the Cloud Services Portal.

The global search and local search enhancements include the following:

  • Global search input functionality updates
  • Local search bar and filter updates
  • New page header design and icon size and placement updates

For information, see Using Global Search and Using Local Search.

BloxOne DDI – October 25, 2023 

BloxOne DDI allows downloading Service Logs for MS AD Sync Service.

BloxOne DDI now allows downloading service logs from the Cloud Services Portal for the MS AD Sync Service. For more information, see Service Logs.

BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Server Options.

BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server Options to the Cloud Services Portal. For more information, see Microsoft Active Directory Integration.

BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Fixed Address.

BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server fixed address to the Cloud Services Portal. For more information, see Microsoft Active Directory Integration.

BloxOne DDI – October 20, 2023 

BloxOne introduces a new table view to the Hosts, Services, Monitoring, Locations, and Templates tabs on the Manage > Infrastructure page of the Cloud Services Portal.

In addition to the card and map views, you now have the flexibility to view and manage the data of hosts, services, monitoring, locations, and templates in a table format on the BloxOne Infrastructure page.

BloxOne introduces a new table view to the Audit Logs, Service Logs, and Security Logs tabs on the Administration > Logs page of the Cloud Services Portal.

In addition to the card view, you now have the flexibility to view and manage the data of audit logs, service logs, and security logs in a table format on the BloxOne Logs page.

BloxOne DDI – October 16, 2023

BloxOne DDI allows synchronization of Azure DNS public zones, private zones, and resource records. 

BloxOne DDI now supports the ability to view DNS Public Zones, Private Zones and Resource Records that are served from Azure DNS service. This allows BloxOne DDI to be used as a “hidden primary” for Public DNS zones hosted in the Azure DNS service. For more information, see Microsoft Azure Integration.

BloxOne DDI allows viewing and downloading ‘service logs’ related to MS AD Sync service.

BloxOne DDI now supports the ability to view and download ‘service logs’ related to MS AD Sync service directly from the Cloud Services Portal or API. 

BloxOne DDI – October 13, 2023

Maintenance Release - DHCP bug fixes and CVE-2023-3341.

This maintenance release includes bug fixes for the DHCP service and update for CVE-2023-3341

BloxOne DDI – October 5, 2023

Infoblox BloxOne bare-metal deployment now supports Red Hat versions 7.9, 8.7, 8.8, 9.1, and 9.2.     

For more information, see Bare-Metal Deployment.

BloxOne DDI – September 27, 2023

Infoblox supports the deployment of BloxOne hosts in Google Cloud Platform     

You can now deploy BloxOne hosts on Google Cloud Platform using Infoblox-provided GCP package you download from the Cloud Services Portal.  For more information, see Google Cloud Portal (GCP) Deployment.

Infoblox supports the deployment of BloxOne hosts on Containerd Environments

You can now deploy BloxOne hosts on Containerd environments  using Infoblox-provided BloxOne Install packages you download from the Cloud Services Portal. For more information, see Bare-Metal Deployment.

BloxOne DDI – September 15, 2023

BloxOne DDI now provides MS AD Sync as a service running on a BloxOne host.

You can run the MS AD Sync service on a BloxOne DDI host to migrate DNS and IPAM/DHCP objects from Microsoft Active Directory into the Cloud Services Portal. For more information, see Microsoft Active Directory Integration.

The DHCP options in the CSV import/export file can be specified as separate columns instead of nested columns.

BloxOne DDI – September 1, 2023

You can now set up BloxOne sandboxes as test environments.

If your business requires a separate BloxOne test environment, you can purchase a BloxOne sandbox and set it up for testing purposes. For more information, see Managing Sandboxes.

BloxOne DDI – August 23, 2023

Maintenance Release - DHCP bug fixes.

This maintenance release includes bug fixes for the DHCP service. 

BloxOne DDI – August 14, 2023

BloxOne Introduces notification enhancements to improve usability.

BloxOne notification includes the following enhancements:

  • When you click Notifications on the left navigation panel of the Cloud Services Portal, you can view personal notifications generated for your user account.
  • You can click the notification icon at the top of the left navigation to view the 30 latest notifications in the New Notifications panel. The number displayed on the icon indicates the number of notifications you have received within the last three days. 
  • You can choose the types of personal notifications you would like to receive. Individual settings do not affect the global or admin settings for other users.

For information on BloxOne notifications, see BloxOne Notifications.

BloxOne DDI – August 11, 2023

You can now set the order of precedence for user-defined DHCP fingerprints.

BloxOne DDI now allows you to set the precedence of user-defined DHCP fingerprints. The rule with the lowest precedence value has the highest priority. For more information, see Creating User Defined DHCP Fingerprints.

BloxOne DDI tracks the IP addresses of hosts in IPAM.

BloxOne DDI now tracks the IP addresses that are owned and managed by the BloxOne hosts running the DDI service. These IP addresses are represented in IPAM as Reservations. For more information, see Configuring IPv4 and IPv6 Reservations.

You can now allow or deny leases based on DHCP filters.

BloxOne DDI now has the capability to allow or deny leases based on DHCP filters. For more information, see Creating Address Ranges.

You can now configure AWS as a Third Party DNS provider with additional configuration options.

BloxOne DDI now allows you to configure Third Party DNS provider through AWS delegated access using Principal and External ID. For more information, see Amazon AWS Route 53.

BloxOne DDI – July 28, 2023

You can now configure Third Party DNS Providers that support AWS sub-accounts for Route 53 Sync.

Third-party DNS providers can now accept credentials and AWS role ARNs, with proper permissions, to discover AWS accounts that contain Route 53 zones and resource records under each sub-account. For more information, see Amazon AWS Route 53.

Infoblox SSO Portal now supports Google Authenticator for multi-factor authentication, in addition to Okta Verify.

You can now choose Google Authenticator, in addition to Okta Verify, as the authentication method when you configure multi-factor authentication for your Cloud Services Portal users who have an email domain that matches the selected domain name. For more information, see Activating Multi-Factor Authentication.

BloxOne DDI – July 14, 2023

You can now create DNS sort lists to prioritize records on certain networks.

DNS sort lists allow the prioritizing of A and AAAA records on certain networks when they are returned in DNS responses, thereby sorting them to the beginning of the list in the response. For more information, see DNS Sort Lists.

The BloxOne DDI API documentation has been enhanced.

The BloxOne DDI API documentation has been enhanced to match the features available in the Cloud Services Portal. The API documentation has been improved for technical accuracy and clarity. For more information see BloxOne DDI API Guide

DHCP Fingerprint database has been updated to the latest version.

he DHCP Fingerprint database has been updated in BloxOne DDI. For more information, see Configuring DHCPv4 Fingerprints.

BloxOne DDI hosts can now serve private zones from Amazon AWS R53.

BloxOne DDI host can now serve private zones from Amazon AWS R53. For more information, see Amazon Route 53 Integration.

BloxOne DDI provides contextual help in Add/Edit dialogs when you perform a task.

You can now click Help in Add/Edit dialogs and wizards to view contextual help while performing a task. 

Dashboard widgets now include various design enhancements.

The dashboard widgets include various design enhancements. The widgets for DHCP leases per second, DNS queries per second, and Total DNS queries show data as a line chart with the option to show as a bar chart. 

BloxOne DDI – July 11, 2023

You can now put a host in maintenance mode to perform necessary maintenance

In situations where you need to initiate maintenance on a host such as upgrading the OS, rewiring the host, or changing the location of the host, you can put the host in maintenance mode. When a host is in maintenance mode, you will not receive any notifications of host activities. However, you can continue to deploy services and perform configurations on the host. All host and service configurations are not affected during the maintenance mode. To resume notifications, you must manually stop maintenance mode on the host. For information, see Using Maintenance Mode for Servers.

BloxOne DDI – July 03, 2023

You can now synchronize DHCP Options from Microsoft Active Directory to the Cloud Services Portal

The synchronized DHCP options are read-only. For more information, see Microsoft Active Directory Integration.

You can configure the third-party DNS provider to consolidate public and private zones from AWS R53 into the selected DNS view.

You can also create a new DNS view while creating a third-party DNS provider. For more information, see Creating Third Party DNS Providers.

BloxOne Notifications has a new data type for Data Connector

You can provision Data Connector to deliver Cloud Services Portal event notifications such as CPU utilization, new feature announcements, and more, to a SIEM destination. For information, see BloxOne Notifications.

You can now query host statuses using the BloxOne API.

BloxOne provides the "statuses" API call, so you can query host status, platform service status, and protocol service status. For more information, see Querying Server Statuses Using the API.

BloxOne DDI – June 26, 2023

Infoblox supports the deployment of hosts on Hyper-V enabled Windows Server.

You can now deploy hosts on Hyper-V enabled Windows Server using Infoblox-provided VHD packages you download from the Cloud Services Portal. For more information, see VHD on Hyper-V Enabled Microsoft Server Deployment.

The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2023-2911, CVE-2023-2829 and CVE-2023-2828

CVE-2023-2911: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0.

CVE-2023-2829: Malformed NSEC records can cause named to terminate unexpectedly when synth-from-dnssec is enabled.

CVE-2023-2828: named's configured cache size limit can be significantly exceeded.

BloxOne DDI – June 16, 2023

You can swap DHCP HA peers between Active and Passive modes.

BloxOne now allows you to swap DHCP HA peers between Active and Passive modes with a single click for manual failover or troubleshooting purposes. For information, see Creating HA Groups.

The DDNS Update TTL value is now user-configurable.

You can configure the DDNS Update TTL value via the Cloud Services Portal and the API. With this feature, you do not need to shorten the lease time, which in turn reduces network load. For more information, see Enabling DDNS for IPv4 Clients

BloxOne DDI – June 14, 2023

On May 18, 2023, Infoblox removed the ability to view legacy API keys as part of the process of deprecating these keys (which were replaced by the new API keys in February 2021). Since then, Infoblox identified a set of customers that are still using the legacy API keys. To provide all customers with the best possible experience and support while we complete the transition to the new API keys, the legacy API keys will remain visible and active until the end of July 2023.

BloxOne DDI – June 9, 2023

When you perform a local search in the Manage > Infrastructure section, you can view all the objects on the specific tab (such as the Hosts or Templates tab) based on your filtering criteria; and you can page through the results. This applies to the Hosts, Services, Monitoring, Templates, and Location tabs.
You can now use Global Search to find template objects by Name, Description and Tags.

BloxOne DDI – May 18, 2023

You will no longer be able to view legacy API keys on the Cloud Services Portal. The legacy API keys are also not supported in API calls.

BloxOne DDI – May 12, 2023

DHCP Fingerprints are now split into system-defined and user-defined rules.

For better management and usability of DHCP fingerprints, you can view and manage system and user-defined rules separately in the Cloud Services Portal. For information, see Creating DHCP Fingerprints and Viewing System Fingerprints

BloxOne DDI – May 08, 2023

The DNS QPS widget is calibrated to provide more accurate results.

The DNS QPS widget was enhanced for better accuracy. This enhancement includes bug fixes may result in higher QPS results.

BloxOne DDI – May 2, 2023

BloxOne delivers the following Dashboard enhancements: interactive legends, enhanced tooltips, chart selection options, and top threat classes filter and zoom flexibility.
  • Interactive Legends: You can easily filter data elements in the legend and dynamically update charts to display the data most critical to you.
  • Enhanced Tooltips: Smooth scrolling and intuitive display of the data points across the X & Y axis as you hover through dashboard charts and data series.
  • Chart Selection Options: - Toggle between bar and area chart options to select the ideal display for your selected data set.
  • Top Threat Classes Filter and Zoom Flexibility:  You can easily zoom in to explore and focus on smaller segments of the treemap for the Communication Threat Class and Remote Targets widget–updated with the ability to select and highlight individual segments.

For information, see Viewing the Dashboard.

BloxOne DDI – April 21, 2023

Three new dashboard widgets, DHCP Messages, DHCP Leases, and Total DNS Queries, are now available on the Cloud Service Portal.

BloxOne offers three new dashboard widgets in BloxOne DDI to show DHCP messages (ACKs sent and INFORMs received), DHCP leases (Total Reclaimed, Total Declined, and Total Assigned), and Total DNS Queries on a single host or a subset of deployed hostsIn addition to the existing widgets, these new widgets help with capacity planning and snapshotting the environments. For information, see Viewing the Dashboard.

Inline DNS Query/Response Tester is now available on the Cloud Services Portal.

BloxOne DDI allows you to run DNS queries (using the dig command) on a host running DNS service from within the Cloud Services Portal. This will help you troubleshoot DNS-related issues. You must upgrade to the latest version of the host software to use this feature. For more information on upgrading the host, see Scheduling Software Updates for Hosts. For more information about this feature, see Running a DNS Query.

You can disable DHCP protocol in subnets, ranges, and fixed addresses for the DHCP protocol.

This is particularly helpful during pre-deployment provisioning and troubleshooting activities. For information, see Configuring SubnetsConfiguring Address Ranges, and Configuring Fixed Addresses.

You can view the status of DHCP HA Groups on the Cloud Services Portal.

BloxOne DDI now displays the health and status of the DHCP HA groups on the Cloud Services Portal. You can then monitor the HA groups' status periodically to ensure that the service is functioning properly. For information, see Configuring HA Groups.

The Cloud Services Portal now displays DHCP service metrics.

You can now view metrics associated with your DHCP service in the Cloud Services Portal. This gives you better visibility of the DHCP service. For information, see Configuring HA Groups.

BloxOne DDI provides the ability to migrate and display IPAM/DHCP objects imported from Microsoft Active Directory.

BloxOne DDI is now able to directly import DHCP and IPAM data from Microsoft Active Directory, allowing for the offloading of DDI functions from AD servers. For information, See Microsoft Active Directory Integration.

You can configure the abandoned-reclaim timer for abandoned leases in the Cloud Services Portal.

After configuring the ‘abandoned-reclaim time’ for abandoned leases, the DHCP server will recover the abandoned IP address (i.e. put it back into the available state) and the address will be available for assignment again. For information, see Advanced Configuration.

The Cloud Services Portal now displays all search results in a single view.

BloxOne DDI supports the ability to search across all pages using local search, aggregating the search results into a unified repaginated list. You no longer need to use global search if you are already in a zone or subnet. This allows for quick retrieval of information. For information, see Configuring SubnetsConfiguring Address Ranges, and Configuring Fixed Addresses.

Control AAAA Records for IPv4 Clients

Select whether or not the DNS server should respond with AAAA records for requests sent over IPv4. To accomplish this, enable AAAA filtering first, and then compile a list of IPv4 networks and addresses that allow or deny AAAA filtering from the server. For information, see Specifying Queries

BloxOne DDI – April 20, 2023

Infoblox BloxOne continuously synchronizes account names with corporate names. If your account name changed over the last few years, the name displayed on the Cloud Services Portal might change. This does not have any other implications on your account: Your configuration and data stay the same.

BloxOne DDI – April 19, 2023

BloxOne introduces a location feature you can use to associate hosts with a specific location.

The location feature is useful when you want to group multiple hosts by geocoded address and be able to later identify the hosts by their location. For information, see Managing Locations.

BloxOne DDI – April 17, 2023

BloxOne introduces a monitoring feature you can use to integrate with your monitoring tools to obtain host metrics.

When you set up a monitoring configuration, BloxOne uses APIs on the associated hosts, so your monitoring tools can query host metrics and health status based on the configured authentication method. For information, see Monitoring NIOS-X Server Metrics.

BloxOne increases serviceability by introducing host service logs.

On the Cloud Services Portal, you can now view host service logs on the Manage > Infrastructure > Hosts tab by accessing General Information > Logs of a chosen host. For information, see Viewing Server Logs.

BloxOne now supports VLAN Interfaces when you configure the IP settings for a host.

You can now set up VLAN interfaces when deploying a host if you want to virtualize your network infrastructure. For information, see Setting IP Interfaces.

BloxOne DDI – March 30, 2023

Infoblox introduces the new Routing page on the Cloud Service Portal.

BloxOne routing improves the flexibility, scalability and performance of routing by separating it from the Anycast service into new BGP, OSPF, and RIP services for licensed users who are entitled for Anycast. If you are not currently using Anycast, you will see the new Routing page immediately, and no action is required on your part. If you are currently using Anycast, Infoblox Support will be contacting you to arrange the migration of your Anycast configuration to these new services. For information, see Configuring Routing.

Infoblox BloxOne bare-metal deployment now supports Ubuntu 22.04.

With this release, Infoblox BloxOne supports Ubuntu 22.04 and will continue to support Ubuntu 20.04 and 18.04. BloxOne will however stop the official support of Ubuntu 16.04.

BloxOne DDI – March 6, 2023

Infoblox introduces the new Infrastructure page on the Cloud Service Portal. BloxOne Infrastructure provides the separation of infrastructure and services. It integrates status, metrics, and logs into a common viewer, so you can peruse consolidated information about your host infrastructure and servicesYour current deployment will automatically migrate to the new Infrastructure page. No action is required on your part.

The following is a list of changes:

  • Introduction of the new Manage > Infrastructure page within BloxOne that replaces the Manage > On-Prem Host page. The new page includes tabs for Hosts (new), Join Tokens (existing page - same functionality), Services (new - this is a complete set of deployed services on hosts), and Templates (new).

  • The Manage > On-Prem Host page will be removed.

  • New viewer for hosts and services accessible through the General Information link on Hosts or Services. The viewer presents detailed information about a specific host or service, including network configuration, status, notices (if any), metrics (for a period up to 30 days), and logs (for a period up to 30 days).

  • The separation of networking using interface labels makes separating duties between host management and service management much easier.

  • While service configurations reside where individual pages are in the Manage menu, you can refer to the configurations in Manage > Infrastructure > Services instead of associating the configurations with hosts. This allows for easier redeployment of the service when infrastructure has to be replaced.

  • Simplification of status with dedicated status for host and service instead of mixing the two together (this means no more “Review Details” status).

  • Advanced filtering is available separately on Hosts and Services (for example, you can use filters to find all services that are not online or all DHCP services across all hosts).

  • Adjusted the service deployment dialogs.

  • Host deployment works the same way as the On-Prem Host page by using a join token for virtual and customer-provided physical appliance or a serial number for Infoblox-provided physical appliance. Detailed configuration is adjusted to work with advanced interface labels.

  • Use the new Template functionality to capture a snapshot of the service deployment of a host and apply the same service deployment to multiple hosts (for example, you can use one template and apply it to seven offices or use the same deployment for 263 stores). 

  • Support of multiple interfaces on hosts will enable several dedicated network interfaces on each host. Services (DHCP, DNS, DNS Forwarding Proxy, Data Connector, NTP) can be deployed using a specific interface, which can differ between services. This allows individual services to work within separate networks.

  • Support for alternative network connections between a host and the Cloud Services Portal. Two or more interfaces can be configured as WAN connections to the Cloud Services Portal. Priority of connections is supported for cost and performance reasons.

  • Display of hosts in a map view based on the NatIP address of the host will provide a better understanding of the infrastructure deployment around the world and could help identify region-based issues.

BloxOne DDI – February 10, 2023

BloxOne introduces a new debugging CLI, so you can troubleshoot issues related to cloud connectivity and on-prem host deployment. 

Through the Device UI, you can enable or disable a secure terminal connection on port 2022 between your BloxOne host and the newly implemented debugging CLI. When you experience issues related to cloud connectivity or BloxOne platform image deployment, you can troubleshoot those issues through the debugging CLI. 

The Cloud Services Portal introduces the “Upcoming Releases” section that displays feature announcements for upcoming BloxOne releases.  

In addition to “What’s New,” the landing page of the Cloud Services Portal now includes an “Upcoming Releases” section that displays upcoming feature announcements for future BloxOne releases.

BloxOne DDI – January 27, 2023

BloxOne DDI now supports external forwarders when DNS Forwarding Proxy (DFP) and BloxOne DDI DNS cohabitate on the host. 

BloxOne DDI now has the ability to use DNS Forwarders when co-deployed with the BloxOne Threat Defense DNS Forwarding Proxy (DFP). These DNS Forwarders will be used in lieu of recursing to the Internet root name servers. This is helpful in situations where access to the root servers is restricted. For more information, see Using Forwarders

Clear leases and resend DDNS updates for multiple leases. 

DHCP leases can now be cleared at the subnet or range level or by selecting multiple leases. You can also resend DDNS updates simultaneously for a number of active leases. You must update the on-prem host to the latest version for the clear lease functionality to work. For more information, see Clearing Lease and Resending DDNS Update.

Configure lease time as a filter in the hardware filter or option filter. 

You can configure lease time within a DHCP filter. This way, you can assign different lease times to different types of devices within the same subnet. For more information, see Creating IPv4 Hardware Filters and Creating Option Filters.

Configure DHCP Option 58/59 T1/T2 timer values for IPv4 and IPv6 DHCP leases.

You can configure 'Renewal Time (T1)' and 'Rebinding Time (T2)' values for IPv4 and IPv6 DHCP leases at the subnet level. This will enable devices that need to retain an IP address for an extended period get regular updates of network infrastructure changes via new DHCP options from renewals. For more information, see Defining Lease Times.

Synchronize and display DNS records imported from Microsoft Active Directory. 

BloxOne DDI is now able to directly import DNS data from Microsoft Active Directory, allowing for the offloading of DNS functions from AD servers. For more information, see Microsoft Active Directory Integration.

View AWS Route 53 private zones and records. 

BloxOne DDI now supports the ability to read DNS private zones and resource records that are served from Amazon AWS Route 53 service. For more information, see Amazon Route 53 Integration.

Import or Export DHCP Host object. 

You can now manage IPAM/DHCP Host objects in bulk using the standard import/export process in the Cloud Services Portal; both JSON and CSV data formats are supported. For more information, see Importing and Exporting Data and /wiki/spaces/BloxOneCloudDraft/pages/9536229.

Refinement of CSV import process resulting in requiring fewer fields. 

BloxOne DDI has enhanced the CSV import process to require fewer fields when creating DNS objects.

Assign or remove tags for multiple fixed address objects. 

This enhancement provides the ability to add or remove tags for multiple DHCP fixed address objects simultaneously. The tags assigned to IP addresses and their fixed addresses are now synced with each other. For more information, see Creating Fixed Addresses.

BloxOne DDI – January 13, 2023

Displaying a list of announcements, instead of only the most recent announcement, for new BloxOne releases on the Cloud Services Portal. 

In previous releases, the landing page of the Cloud Services Portal displayed new feature announcements only for the most recent BloxOne release. It now displays a list of feature announcements for the past 30 days. This helps you keep track of all BloxOne product releases within the Cloud Services Portal without having to visit a separate website.

BloxOne DDI – December 2, 2022

On the Cloud Services Portal, the configuration of global NTP settings is now under Manage > NTP. This function was previously under Manage > On-Prem Hosts.

For information, see Configuring Global NTP Settings.

BloxOne DDI – November 23, 2022

BloxOne supports streamlined record filtering for viewing, analyzing, and downloading of service logs.

A revamped service logs page provides the ability to filter log records based on timestamp, log type, and host. Filtered results can be viewed on the page or downloaded in CSV format. Filtering criteria can be saved for re-use. For information see Viewing Service Logs.

BloxOne DDI – November 18, 2022

BloxOne DDI allows two-way synchronization of AWS Route 53 public zones. 

BloxOne DDI now supports the ability to manage DNS Public Zones and Resource Records that are served from Amazon AWS Route 53 service. Changes made in either Route 53 or in BloxOne DDI are synchronized. This allows BloxOne DDI to be used as a “hidden primary” for Public DNS zones hosted in the Route 53 service. For more information, see Amazon Route 53 Integration.

BloxOne DDI now allows the automatic creation of the A, AAAA, CNAME, and PTR records in DNS associated with a particular IP address.

BloxOne DDI has enhanced the options available in the host menu of IPAM/DHCP management to allow for the automatic creation of IP addresses in IPAM as well as the A, AAAA, CNAME, and PTR records in DNS associated with a particular IP address. For more information, see Creating NIOS-X Servers

You can provision DNS Zones without a DNS server for provisioning and troubleshooting purposes. 

Adding to the existing ability to disable a DNS Zone in BloxOne DDI, you can now define zones without assigning DNS servers to them. This is particularly helpful during pre-deployment provisioning and during troubleshooting activities. For more information, see Creating a Primary Zone

The Clear Lease option also clears abandoned leases.

You can now clear the lease using the Clear Lease option which also clears abandoned leases. The leases are then available for reuse. For more information, see Clearing Leases

BloxOne DDI allows using a variable as an IP address for the DHCP router option.

BloxOne DDI now supports the use of + and - operators for assigning the Routers (Option 3) DHCP option if the IP address of the subnet’s router follows a predictable pattern (such as the first usable or last usable IP address in the subnet). For more information, see Configuring DHCP Options.

BloxOne DDI now supports requesting the DHCP server to resend DDNS updates for each IP address manually.

You can now trigger a resend of DDNS updates for existing leases on a single IP address basis. For more information, see Resending DDNS Update.

BloxOne DDI now includes a per-host filter for side-by-side comparison of the same metrics on different on-prem hosts.

The dashboard in BloxOne DDI has been enhanced to include a per-host filter, adding to the existing ability to display the aggregated metric across all hosts.  This allows for side-by-side comparison of the same metrics on different on-prem hosts. This feature is available for DHCP Leases per Second, DNS Queries per Second, and DNS Responses. For more information, see Viewing the Dashboard

NIOS Grid Connector status is now available for long-running tasks.

BloxOne DDI now uses long-running task notifications and the status page to show the status of ongoing sync sessions that are using the NIOS Grid Connector.

BloxOne DDI – November 4, 2022

BloxOne enhances your monitoring solution by providing an API in the cloud that you can use to query current metrics.

You can now integrate the BloxOne on-prem solution with your monitoring tools by using the newly implemented API to query current metrics of the infrastructure and services deployed on your hosts. Supported metrics include host CPU, memory, storage, port metrics, and protocol metrics. For more information, see https://csp.infoblox.com/apidoc.

BloxOne DDI – October 27, 2022

BloxOne DDI now displays DNS Name in the IPAM view.

The IPAM view in BloxOne DDI has been enhanced to automatically populate the DNS Name column if a DNS View is associated with an IP Space. 

The maximum DHCP lease time is now set to five years.

BloxOne DDI will automatically convert imported DHCP lease times that are unlimited to the maximum supported by the system, which is five years. For more information see, Defining Lease Times

BloxOne DDI supports IPv4 /32- and IPv6 /128-prefixed networks.

BloxOne DDI now supports /32-prefixed networks for IPv4 and /128-prefixed networks for IPv6. For more information, see Creating Subnets.

DHCP and DNS On-Prem Host Service Updates.

During on-prem host updates, the BloxOne DDI on-prem host DNS and DHCP services will receive a periodic update for general maintenance purposes.

BloxOne DDI – October 20, 2022

The BloxOne platform supports basic HTTP authentication for REST API.

Basic authentication provides the ability to use authentication credentials in the form of a CSP API key in the authorization header of the HTTP API. The API key replaces the username and password for a more secure means of basic authentication. For information, see Using Basic Authentication.

You can restart BloxOne services from the Cloud Services Portal.

In addition to starting and stopping BloxOne services, you can now restart services through the Cloud Services Portal. For information, see Enabling and Disabling Services on On-Prem Hosts.

BloxOne supports importing and exporting NTP service configuration data.

You can now import and export NTP service configuration data through the Cloud Services Portal. For information, see NTP Service Configuration (ntpserviceconfig).

BloxOne DDI – October 18, 2022

BloxOne now provides security logs generated from supported sources, so you can monitor the security and safety of your network infrastructure.

On the Cloud Services Portal, you can now view security events generated by supported application sources and download the security logs in CSV format. For more information, see Viewing Security Logs.

BloxOne DDI – September 24, 2022

BloxOne DDI can now be deployed in distributed IPv6 environments.

BloxOne DDI can be deployed in distributed IPv6 environments where the DHCP server is not on the same subnet as the clients it is serving. 

BloxOne DDI – September 8, 2022

BloxOne extends troubleshooting support via the Device UI to bare-metal on-prem host deployments.

For bare-metal on-prem host deployments, you can now review configuration status and download the support bundle via the Device UI for troubleshooting purposes. For more information, see Troubleshooting Servers.

BloxOne implements metric-based traffic routing, so you can prioritize network interfaces for communication with the Cloud Services Portal.

You can now modify the metrics of network interfaces for each gateway on the respective on-prem host, so you can influence the routing path used for cloud communication. For more information, see Setting IP Interfaces.

BloxOne DDI – August 19, 2022

BloxOne DDI now supports the ability to create and manage SVCB and HTTPS resource records.

You can now create HTTPS and SVCB resource records. In addition, you can enable synthesizing A and AAAA records from an HTTPS record, which can be used to define an alias even at the apex of a zone. For more information, see Controlling DNS Queries.

You can configure access control lists (ACLs) for IPv6 addresses.

BloxOne DDI now supports the ability to add IPv6 addresses and networks to ACLs used to control access to the DNS server in DNSv6 environments. For more information, see Creating Access Control Lists

You can now use simplified CSV import parameters to create a file for import. 

The parameters in the CSV export have been simplified with the objective of making it easier to edit a CSV file. The parameters are now self-explanatory and easily editable. For more information, see Import Parameters

BloxOne DDI provides the ability to show or hide graph elements in reports. 

You can now select the check box for a parameter to appear in the graph. Clear the check box for the parameter to be hidden from the graph. The graph is updated automatically based on your selection. For more information, see Viewing Reports.

BloxOne DDI – August 16, 2022

You can view license utilization of your BloxOne licenses by quarter, month, or day for the past two years.

BloxOne DDI now allows you to view how BloxOne licenses are utilized in your organization. You can view license utilization for DNS queries, active IP addresses, and instances deployed across your BloxOne environment for the past two years or eight quarters. You can filter license utilization by quarter, month, or day. If a license is expired or about to expire, the report will show an error. For more information, see Viewing License Entitlements.

BloxOne DDI – August 12, 2022

You can now control user access to the Cloud Services Portal and associated functionality by enabling restricted IP addresses for selected user groups.

For more information, see Restricting Access for User Groups.

BloxOne DDI – July 29, 2022

Filter absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API.

BloxOne DDI now supports filtering on the fields absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API. These fields contain the fully qualified domain names as opposed to the relative domain names. 

BloxOne DDI – July 14, 2022

Cloud Data Connector supports multiple data connectors to pull data/logs from BloxOne Cloud.

Multiple data connectors can now be deployed to pull data/logs from BloxOne Cloud and send the data to multiple destinations. For more information, see Configuring Destinations.   

Cloud Data Connector supports multiple indexers for Splunk Destination.

Multiple indexers can now be provisioned to a Splunk destination allowing for optimum load distribution. For more information, see . For more information, see Setting Up Splunk.

The BloxOne customer service portal now displays the serial number for all virtual appliance, on-prem deployments such as VMware, Azure, AWS, KVM.

 Serial numbers of all virtual, on-prem deployments for VMware, Azure, AWS, and KVM  can be viewed in the BloxOne customer service portal.  For more information, see https://support.infoblox.com.

BloxOne DDI – July 7, 2022

A new Trusted Partner user group, “ib-trusted-partner,” is now available in BloxOne.

The user group, “ib-trusted-partner,” is now available in BloxOne, giving assigned users read-only access to information in BloxOne, without the ability to make changes.

Saved filters for BloxOne DDI objects can be reloaded for future use without re-configuration.

You can now configure and save filters for various BloxOne DDI objects and reload the saved filters for future use without re-configuring them again. Filters are available for DNS, DHCP, and IPAM objects as well as reports. For more information, see Configuring DNS Zones.

Network discovery information is displayed for IPAM objects imported from NIOS.

Network Discovery information associated with IPAM objects imported from NIOS using the NIOS Grid Connector is now automatically displayed in the information pane on the Cloud Services Portal.  For more information, see Enabling the NIOS Grid Connector Service.

BloxOne DDI – June 23, 2022

Dashboard time intervals have been expanded.

The time intervals for Dashboards can now be configured for 48 hours, 7 days, and 1 month, in addition to the existing 24 hours. For more information, see /wiki/spaces/BloxOneCloudDraft/pages/9536836.

Reports time intervals have been expanded.

The Total DNS Queries, Total DHCP Lease Operations, and Top DHCP Client Requests can now be configured for 1 hour. For more information, see Viewing Reports.

DNS Server Groups can be added to Forward Zones.

You can now configure DNS server groups and add them to forward zones, in addition to the existing primary and secondary zones. For more information, see Creating a Forward Zone.

BloxOne DDI – May 21, 2022

BloxOne DDI supports the ability to create HA groups over Anycast.

BloxOne DDI now supports the ability to configure HA Groups that utilize the BloxOne Anycast service.  A DHCP Anycast HA Group is an Active/Active pair of on-prem hosts that share a virtual IP address (VIP) for DHCP protocol communications, acting from the clients’ perspective, as “one” DHCP server.  The VIP is advertised using the BloxOne Anycast service, which leverages either OSPFv2, OSPFv3, or BGP to announce reachability.  For more information, see High Availability for DHCP and Creating HA Groups.

You can configure BloxOne DDI to send DHCP DDNS Updates to Microsoft DNS Servers using GSS-TSIG.

Building on the existing ability to receive GSS-TSIG DDNS updates, BloxOne DDI can now send GSS-TSIG authenticated DDNS updates to Microsoft DNS servers.  DDNS updates are used to dynamically update DNS data, based on DHCP client information. For more information, see Enabling DDNS for IPv4 Clients.

BloxOne DDI lifts DHCP lease limits for on-prem hosts.

BloxOne DDI on-prem hosts (or HA pairs) running DHCP are no longer limited to 25,000 leases each.  Now, each on-prem host (or HA pair) can support an unrestricted number of leases, based on the locally available resources.  

BloxOne supports deploying on-prem hosts in Amazon AWS.

You can now deploy BloxOne DDI on on-prem hosts in AWS using Infoblox-provided Community or Public BloxOne AMI images. For more information, see EC2 Instances Using AMI in AWS Deployment.

You can view the status of long-running tasks.

BloxOne DDI provides the ability to view tasks that run in the background. You can view the entire list of tasks, clear the task from the list, or edit the tasks. For more information, see Viewing Background Tasks.

Ability to sync Microsoft zones and DHCP exclusion ranges from NIOS to the Cloud Services Portal.

NIOS Grid Connector allows you to import Microsoft-managed zones and DHCP exclusion range from NIOS to the Cloud Services Portal. For more information, see Configuring NIOS Grid Connector.

You can include client IP address, MAC address, and DNS view the information in outgoing DNS queries.

Include the client IP address, MAC address, and DNS view information of the client from which the DNS query was initiated, to outgoing recursive queries. For more information, see User Forwarders. 

BloxOne DDI now supports conflict resolution for DHCP with multiple options.

Conflict resolution ensures that the DNS record's information associated with one DHCP client is not updated by other DHCP clients. For more information, see Enabling DDNS for IPv4 Clients.

Overall DDI Dashboard Performance enhancements

Widgets on the DDI dashboard have been enhanced to improve overall performance with significantly improved result response time. Additionally, all graph time indexes are now standardized to UTC.

BloxOne DDI enhances on-prem host selection for DHCP HA Groups.

Search results are now repaginated to simplify on-prem host selection when creating and managing DHCP/DNS config profiles, DHCP HA Groups, and Subnets.

BloxOne DDI – May 13, 2022

BloxOne expands the ability for you to specify custom templates for webhook notifications.

You can now integrate your notification platforms by specifying custom templates for webhook notifications. You can specify any number of webhooks and their associated templates and specify the notification types they will be used for. For information, see Configuring Service Integrations.

BloxOne DDI – May 3, 2022

Infoblox introduces a new NTP service to reduce dependency on third-party services and to ensure that a common time source is used for all devices.

You can configure the NTP service uniformly across the account with the possibility of overriding locally on the host wherever NTP service is deployed. The service supports detailed configuration, including authentication, specific attributes, and access control lists. For more information, see NTP Service.

BloxOne DDI – April 29, 2022

You can now remove B1-105 physical on-prem hosts from the Cloud Services Portal. 

For more information , see Removing On-Prem Hosts and Deploying the B1-105 Appliance.

BloxOne DDI – April 20, 2022

The point of presence (PoP) in South Africa has been updated to enhance BloxOne services and DNS performance.

BloxOne DDI – April 11, 2022

In-app and email notifications are now sent from BloxOne prior to user and service API key expiration. Notifications occur on a daily basis two weeks prior to and up through the date of expiration.

For more information on user and service API keys, see Configuring User API Keys and Configuring Service API Keys, respectively.

BloxOne DDI – April 8, 2022

Infoblox supports the deployment of on-prem hosts via the Microsoft® Azure Marketplace.

You can now deploy BloxOne for Azure virtual appliances directly from the Azure Marketplace. For more information, see Deploying Hosts from the Azure Marketplace.

BloxOne DDI – April 7, 2022

You can view upcoming release announcements on the Cloud Services Portal home page.

Information on future BloxOne features and products will now be announced on the Cloud Services Portal. The new section is called “Upcoming Releases,” noting what is coming and the estimated release date. You may also opt to receive in-app or email notifications of upcoming releases by visiting the Notification Settings page . For more information, see Configuring Notification Delivery.

Infoblox BloxOne extends log exports to now include DHCP logs, DNS logs, and Security logs to your dedicated Amazon S3 bucket.

For more information, see Exporting Logs.

BloxOne DDI – April 02, 2022

BloxOne DDI now supports sending DHCP options that are longer than 255 bytes.

BloxOne DDI now supports sending DHCP options that are longer than 255 bytes (by sending the options in multiple consecutive packets). For more information, see Configuring DHCP Options.

BloxOne DDI – March 29, 2022

Infoblox supports the deployment of on-prem hosts in AWS.

You can now deploy on-prem hosts in AWS using Infoblox-provided Community or Public BloxOne AMI images. For more information, see EC2 Instances Using AMI in AWS Deployment.

BloxOne adds the "BloxOne VM - AWS" subtype to the On-Prem Host page.

You can now filter on-prem hosts deployed in AWS by "BloxOne VM - AWS” on the On-Prem Host page of the Cloud Services Portal. For more information, see Viewing On-Prem Host Status.

BloxOne DDI – March 28, 2022

You can now receive email and/or in-application notifications of new release information based on your entitled BloxOne subscriptions. You can modify this setting in the Notification Settings page for specific user groups by choosing the “New Release Notifications” in-app and/or email setting.

For more information, see Configuring Notification Delivery.

BloxOne DDI – March 24, 2022

Enhancement

Data Connector provides the following enhancements:
  • Sends additional DHCP-enriched logs, including certain metadata and field names, to all applicable destinations in CEF/LEEF log format.
  • Provides the hostname and device name as part of the syslog messages. 

For more information, see Configuring Traffic Flows.

BloxOne DDI – March 19, 2022

Enhancement

The BloxOne DDI DNS container v3.1.6 addresses the following vulnerabilities: CVE-2022-0396 and CVE-2021-25220

CVE-2022-0396: When BIND is configured to disable processing of TCP queries in parallel (option "keep-response-order”),  it consumed TCP connection slots indefinitely via a specifically crafted TCP stream sent by a client.

CVE-2021-25220: An issue in BIND affects some resolvers configured with certain forms of forwarding. Out-of-bailiwick NS records in crafted responses, for example, sent by a malicious forwarder, may be cached under certain circumstances and potentially used for subsequent recursion.

BloxOne DDI – March 3, 2022

Enhancement

You can now review active IP addresses and total BloxOne instances on the BloxOne Dashboard, which assists you in managing BloxOne licenses and capacity planning as well as investigating sources of active IP addresses to ensure the network infrastructure and design align with your business requirements.

The BloxOne dashboard now includes a License Utilization tab, showing active IP addresses and total BloxOne instances. For more information, see Viewing the Dashboard.

BloxOne DDI – February 25, 2022

Enhancement

Anycast BGP configuration for on-prem hosts now supports 4-byte ASNs, including ASPLAIN and ASDOT formats.

For more information, see Configuring Anycast for On-Prem Hosts.

BloxOne DDI – February 18, 2022

Enhancements

BloxOne DDI now supports DHCPv6 (so you can assign IP addresses to IPv6 clients) and IP address management (IPAM) functionality for IPv6 networks.

You can assign IP addresses to IPv6 clients while managing IP addresses and DHCP options as well as viewing logs and metrics for IPv6 clients, subnets, and networks via the Cloud Services Portal. For more information, see Configuring DHCP Options.  You can also create IPv6 networks, subnets, and addresses via the Cloud Services Portal. For more information, see Creating IP Spaces.    

You can now troubleshoot GSS-TSIG issues through the Cloud Services Portal. 

You can generate a list of issues in the keytab, counter, or crypto components of GSS-TSIG through the Troubleshoot menu on the DNS Servers page or the On-Prem Hosts page of the Cloud Services Portal.  For more information, see Troubleshooting GSS-TSIG.

You can now configure the DHCP server to prefer DHCP option 12 (hostname) over option 81 (FQDN) for DDNS updates.

For more information, see Enabling DDNS for IPv4 Clients.

BloxOne DDI – January 28, 2022

Enhancement

You can look up DNS objects such as DNS views, authoritative zones, forward zones, and access control lists in Global Search.

DNS objects, such as DNS views, authoritative zones, forward zones, access control lists, and others are now supported in Global Search. This expands the set of available objects and tags to quickly find and take actions on hosts, devices, and users throughout the enterprise. For more information, see Using Global Search.

BloxOne DDI – January 13, 2022

Enhancement

When you view data in the Cloud Services Portal, you can change the page size from the default of 25 to 50 or 100. The page size persists until you change it again.    

BloxOne DDI – January 12, 2022

Enhancement

Data Connector now sends DHCP enriched logs, including certain metadata and field names, to all applicable destinations in CEF/LEEF log format. 

For more information, see Configuring Traffic Flows.

You can now save the page size per page selected at the bottom of the page. The page size persists even after navigating away from the page.    

You can now save the page size selected at the bottom of the page (25/50/100). Navigating away from the page and returning to the page will show the pre-selected page size instead of the default (25).

BloxOne DDI – January 11, 2022

Features and Enhancements

Infoblox supports the deployment of on-prem hosts in KVM-hypervisor-based deployments.    

You can now deploy on-prem hosts through KVM-hypervisor-based virtual appliances, using Infoblox-provided QCOW2 packages you download from the Cloud Services Portal. For information, see OpenStack with KVM Hypervisor Deployment.

BloxOne now provides high-capacity Microsoft Azure VHD packages for deploying on-prem hosts.    

Depending on your business requirements, BloxOne now supports high-capacity Microsoft Azure VHD installation packages you download from the Cloud Services Portal. For information, see Downloading BloxOne Apps.

Infoblox supports the deployment of on-prem hosts on DELL 1425 and 1485 VEP hardware.

You can now deploy on-prem hosts on DELL VEP hardware, using Infoblox-provided ISO packages you download from the Cloud Services Portal while creating on-prem hosts using the serial number option. For information, see Hardware Appliance Deployment.

The Device UI provides additional information to improve troubleshooting during on-prem host deployments.

The Device UI provides additional information about the accuracy of the "join token" that you have entered via the Device UI or via cloud-init values, and the serial number that you have entered via the Cloud Services Portal. For information, see Troubleshooting Hosts.

BloxOne DDI – December 16, 2021

Enhancements

Support the ability to configure DHCP server to ignore UID (Unique Client Identifier) when issuing IPv4 DHCP leases and identify DHCP clients solely based on their MAC address. 

For more information, see Defining Lease Times.

New standard option codes 78, 79, 94, 146, 159, and 212 are now available in the DHCP4 option space. While these options have a record-based format, they are input as hex values and their format is partially validated. 

For more information, see DHCP Option Data Types.

New System Defined DHCPv4 fingerprints are available for additional device classes and with new option number sequences. For example, new option number sequences are available for Microsoft Windows Kernel 4.0 system and Apple iOS and Mac OS X.

For more information, see Configuring DHCPv4 Fingerprints.

BloxOne DDI – December 4, 2021

Enhancement

When using the DHCP/DDNS service, you now have an option to strip the hostname from the client-provided FQDN, as part of DHCP option 81. 

For more information, see Enabling DDNS for IPv4 Clients.

BloxOne DDI – November 18, 2021

Enhancement

Data Connector now sends DHCP lease logs to all applicable destinations and supports CIM and the legacy Infoblox data format for Splunk destinations. 

For more information, see Configuring Traffic Flows.

BloxOne DDI – October 29, 2021

Enhancements

The BloxOne DDI DNS container v3.1.4 addresses the following vulnerability: CVE-2021-25219

CVE-2021-25219: Exploitation of broken authoritative servers using a flaw in response processing can cause degradation in BIND resolver performance. The way the lame cache is currently designed makes it possible for its internal data structures to grow almost infinitely, which may cause significant delays in client query processing.

BloxOne DDI – October 19, 2021

Enhancements

BloxOne introduces new status and message for initial deployment of non-NIOS on-prem hosts.  

When deploying a non-NIOS on-prem host, you can now view its initial deployment status and message in the Platform Management section of the Manage -> On-Prem Host page of the Cloud Services Portal. For more information, see Viewing On-Prem Host Status.

Data Connector sends additional enriched data fields for Threat Defense Query/Response and Threat Feeds Hits logs to all applicable destinations. 

For more information, see Configuring Traffic Flows.

BloxOne adds support for VMware ESXi server versions 6.7 and 7.0 for on-prem host deployment.  

For more information, see Supported Platforms for Hosts.

BloxOne DDI – October 8, 2021

Features and Enhancements

BloxOne DDI can now receive DDNS updates from a Microsoft environment.

BloxOne DDI provides secure integration with the Microsoft ecosystem. With this release, the GSS-TSIG signed DDNS updates from Microsoft clients and servers can be processed directly by BloxOne DDI. For more information, see Configuring GSS-TSIG.

BloxOne DDI now supports DNS objects in import/export actions.

DNS objects are now included in all import/export actions. This is in addition to the DHCP and IPAM objects currently supported to simplify migrations from external sources, including third-party systems. For more information, see Importing and Exporting Data.

Upon DHCP lease renewal, the client now effectively updates the associated DNS records.

When a client renews its DHCP lease, you now have the option to configure the client to explicitly update the associated DNS records. For more information, see Enabling DDNS for IPv4 Clients.

BloxOne DDI – October 1, 2021

Features and Enhancements

Infoblox provides the ability to automate BloxOne DDI operations using Red Hat Ansible.

Ansible is now supported to automate DNS, DHCP and IPAM operations. Modules and sample playbooks are available on the Infoblox GitHub page at https://github.com/infobloxopen/bloxone-ansible. For more information, see Ansible Collections for BloxOne DDI.

You can now create IPv6 resource records in DNS Zones. 

DNS IPv6 resource records are now supported in all DNS zones, providing support for dual-stack (IPv4/IPv6) applications and clientsFor more information, see Creating a Primary Zone.

You can look up DHCP objects such as MAC addresses, networks, and host names in Global Search.

DHCP objects, such as MAC addresses, networks, and host names, are now supported in Global Search. This expands the set of objects and tags available to quickly find and take action on hosts, devices, and users throughout the enterprise. For more information, see Using Global Search.

BloxOne DDI proactively notifies third-party secondary DNS servers of any DNS updates.

BloxOne DDI now explicitly updates secondary DNS servers when DNS records are changed. This enables timely synchronization of zones for global DNS deployments. For more information, see Creating a Primary Zone.

BloxOne DDI supports upgraded DHCP options to enable automated configuration of hosts.

BloxOne DDI now supports the next-server, server-hostname, and bootp-file-name fields, as well as DHCP options 124 and 125. For more information, see Configuring DHCP Options.

When copying NIOS networks, BloxOne DDI now includes DHCP options.

BloxOne DDI offers an easy method for you to migrate DHCP networks from NIOS to BloxOne. With this change, the DHCP options associated with IP space can optionally be preserved. For more information, see Copying IP Spaces.

The Address/Name column of a subnet in the Address Block tab of DHCP/IPAM has been separated into two columns.

The Cloud Services Portal now displays the previous Address/Name column of a subnet in the Address Block tab as two columns: Address and Name. This change does not affect functionality. For more information, see Configuring Subnets.

BloxOne DDI – September 3, 2021

Features and Enhancements

Data import/export now supports the CSV file format in addition to JSON. 

You can now prepare files for object import and use spreadsheets to simplify the viewing of exported documents as well as filtering and comparison. For more information, see Importing and Exporting Data.

Infoblox now provides a software image to simplify the deployment of BloxOne on-prem hosts in Microsoft Azure Cloud. 

You can use this image to deploy the VM on Azure and use Azure tools for provisioning and deployment. For more information, see Microsoft Azure Deployment.

This release consists of DNS and DHCP service updates that will be applied to on-prem hosts running BloxOne DDI DNS and DHCP services.  


BloxOne DDI – August 12, 2021

Features and Enhancements

The Infoblox SSO Portal now supports single IdP authentication for multiple domains.    

In previous releases, the SSO Portal required a separate IdP configuration for each domain. With this release, a single IdP configuration may be specified for multiple domains. For more information, see Configuring IdP Authentication.

The former on-prem host type "BloxOne OVA" is now displayed as "BloxOne VM" on the Cloud Services Portal.    

 On the On-Prem Host page of the Cloud Services Portal, the former on-prem host type "BloxOne OVA" is now displayed as "BloxOne VM." For more information, see Viewing On-Prem Host Status.

This BloxOne release adds sub types to these on-prem host types: "BloxOne Appliance" and "BloxOne VM."    

The Cloud Services Portal now supports sub types for on-prem host types "BloxOne Appliance" and BloxOne VM," as follows:

  • BloxOne Appliance: B105
  • BloxOne VM: VMware and Azure

For more information, see Viewing On-Prem Host Status.

Infoblox supports the deployment of on-prem hosts in Microsoft Azure.    

You can now deploy on-prem hosts in Microsoft Azure using Infoblox-provided VHD packages you download from the Cloud Services Portal. Note that the DHCP service is not officially supported yet, and you cannot update network configuration through the Cloud Services Portal. For more information, see Microsoft Azure Deployment.

BloxOne now provides high-capacity OVA packages for deploying on-prem hosts.    

Depending on your business requirements, BloxOne now supports high-capacity OVA installation packages you can download from the Cloud Services Portal. For information, see Downloading BloxOne Apps.

Data Connector supports sending log messages in Common Information Model (CIM) format when you configure Splunk as the destination.    

When configuring a Data Connector traffic flow, you now have the option to choose CIM as the log message format when you configure Splunk as the destination. For information, see Setting Up Splunk.

You can download service logs using the BloxOne API.    

This BloxOne release provides documented API for downloading service logs (such as the DNS query log and DHCP log). For more information, see https://csp.infoblox.com/apidoc.

BloxOne DDI – July 8, 2021

Enhancements

Infoblox Single Sign-On (SSO) Portal administrators will now receive email notifications on administrative events.    

This release enables email notifications to SSO portal admins on the following SSO administrative events: activation & deactivation of your IdP (Identity Provider), enabling and disabling of Multi-Factor Authentication (MFA), and creation and deletion of portal admins. For domains users, the following operations also result in an email notification: user activation & deactivation, user locking and unlocking, and the toggling of local credentials on and off.

BloxOne DDI – June 29, 2021

New Feature

BloxOne DDI supports data import and export for certain DHCP and IPAM objects.     

You can now export DHCP and IPAM objects from the Cloud Services Portal and save them as a JSON file. You can also import the objects into the Cloud Services Portal as required. This feature is limited to a maximum of 35k objects that can be imported at a time. On average, 35k objects translates to an import file of approximately 50 MB in size. For information, see Importing and Exporting Data.

BloxOne DDI – June 18, 2021

Features and Enhancements

On-prem host configuration now supports IPv4/IPv6 dual-stack networks.     

When configuring on-prem hosts, you now have the option to configure IPv4 or IPv4/IPv6 dual-stack networks. Note that DNS and DHCP services do not yet support dual-stack networks. For information, see Viewing and Modifying On-Prem Host Configuration.

You can configure MTU (Maximum Transmission Unit) and path MTU discovery to improve bulk protocol throughput.     

To avoid IP fragmentation, you now have the option to configure the MTU value when you initiate an OVA deployment. You can also enable or disable path MTU discovery during an initial deployment or after the deployment through the Device UI. For information, see ESXi OVA Deployment Using vCentervCenter OVA Deployment to ESXi Using ovftool, and Troubleshooting Servers.

Infoblox offers a downloadable JSON template that you can use to modify specific Bootstrap configurations and connect a physical host to the BloxOne Cloud.     

You can download a JSON template to a USB flash drive and modify specific information before using the drive to initiate new configurations on a physical on-prem host and connect it to the BloxOne Cloud. For information, see Modifying On-Prem Host Configuration Using a USB Drive.

BloxOne services provide a global search function that allows you to look up specific resources or objects.     

You can use the global search function to quickly locate BloxOne resources or objects by entering key words in the search field. Phase one of this function supports specific objects and searchable fields. For information, see Using Global Search.

BloxOne DDI – June 11, 2021

New Features

BloxOne DDI now provides an option to automatically create the next available subnets and address blocks.

To ease the creation of new networks and subnets, BloxOne DDI now supports “Get Next Available Network” and “Get Next Available Address Block”. Multiple networks and subnets can be created in one step. This feature automates the allocation of networks and IP addresses, so you can manage your network space more efficiently. For more information, see Configuring Next Available Network.

Configuring the MNAME in the DNS SOA record ensures that DDNS updates will always be sent to the correct primary name server.

The ability to configure the FQDN (fully qualified domain name) of the MNAME (primary name server) in the SOA (Start of Authority) DNS record in a zone ensures that dynamic DNS updates will always be sent to the correct primary name server. For more information, see Configuring Zone Settings Defaults

This release supports the ability to copy DNS objects between DNS views, including DNS objects from NIOS. 

The ability to copy DNS objects between views, including NIOS DNS objects, provides an easier method to migrate DNS data. For more information, see Copying DNS Zones

Enhancements have been made to DHCP vendor-encapsulated options.

You can now create multiple vendor DHCP option spaces that are independent of each other. You can create multiple option spaces to define vendor-specific options, which are encapsulated in option 43. For more information, see Configuring DHCP Options

You can configure BloxOne DDI to send alerts/notifications when DHCP HA peers change status. 

You can configure BloxOne DDI to send alerts/notifications when an HA peer changes status from Active to Passive, or if a host is down. For more information, see Creating HA Groups.

BloxOne DDI – May 18, 2021

Enhancements

You can now define notification templates that allow custom formatting based on notification severity for webhook integration.     

When setting up a custom webhook integration for notifications, you can create custom templates that will define the notification format. This is API-only functionality. For more information, see Configuring Notification Settings.

BloxOne DDI – May 14, 2021

New Features

You can now defer application restart after a configuration change to a later time to avoid service interruptions.

Application restarts caused by configuration changes can now be deferred to a later time to avoid service interruptions during normal business hours.

Configuration-generated versioning reduces downtime by creating a local version of the configuration that is compatible with the upgraded software in advance.

This automatic feature reduces service interruption downtime during upgrades by creating a local version of the configuration that is compatible with the upgraded software in advance, rather than rebuilding the configuration after the upgrade. This allows you to make configuration changes even when different versions of the on-prem hosts are running, a situation that can occur during upgrades. Compatible versions of the configuration will always be pushed to on-prem hosts, even if there are multiple versions of on-prem hosts running simultaneously.

BloxOne DDI service status is now integrated into Cloud Services Portal alerts and notifications.

The health and status of BloxOne DNS and DHCP services are now integrated into the notifications and alerts functionality within the Infoblox Cloud Services Portal, so you can be kept informed of service interruptions.

Use zone delegation to configure resource records in parent zones that will refer clients to the proper name servers for the delegated child zones. 

DNS zone delegation is now supported, so you can easily configure NS and glue resource records in parent zone to refer queriers to the proper DNS servers for delegated child zones.

BloxOne DDI – May 03, 2021

Enhancements

This release allows you to configure the DDNS Domain Name at the IP Space, Address Block, and Subnet levels.

DDNS settings are inherited from the Global DHCP Properties or DHCP Config profile. You can now override the DDNS settings at the IP Space, Address Block, and Subnet levels. 


BloxOne DDI – April 28, 2021

Enhancements

The BloxOne DDI DNS container version v3.0.5 addresses the following vulnerabilities: CVE-2021-25216, CVE-2021-25215, and CVE-2021-25214.
  • CVE-2021-25216: A second vulnerability in BIND's GSSAPI security policy negotiation could be targeted by a buffer overflow attack. This vulnerability only affected servers configured to use GSS-TSIG, most often to sign dynamic updates.
  • CVE-2021-25215: An assertion check could fail while answering queries for DNAME records that required the DNAME to be processed to resolve itself.
  • CVE-2021-25214: A broken inbound incremental zone update (IXFR) could cause the “named” process to terminate unexpectedly

BloxOne DDI – April 24, 2021

Enhancements

This release consists of DNS and DHCP application updates that are applied to on-prem hosts running BloxOne DDI DNS and DHCP services. 

This release consists of a DNS service update that includes a bug fix and a DHCP service update that upgrades the underlying DHCP software. The updates are applied to the on-prem hosts running BloxOne DDI DNS and DHCP services.

Improvements have been made to the handling of sub-option 125 within DHCP custom option spaces to allow most formats.

Previously, the DHCP server would incorrectly use the formatting statements for option 125 in the default DHCP option space when processing sub-options with a code of 125 in custom option spaces. The DHCP server has now been enhanced to allow most formats.

BloxOne DDI – April 13, 2021

New Features

BloxOne DDI adds the following new reports for DNS and DHCP: Total DNS Queries per Second (QPS) Report, Total DNS Responses Report, Total DNS Queries Report, Top DHCP Clients Report, and Total DHCP Leases Report. The reports can be filtered based on various parameters and exported to CSV format. 

The following new reports are available in the Reports menu:

Total DNS Queries per Second (QPS) Report

This report shows the DNS query rate in Queries per Second (QPS). Administrators will be able to see the average QPS load for each on-prem host over time in a tabular form. A graph also shows a sum of all averages for all the selected on-prem hosts. 

Total DNS Responses Report

This report displays the total number of DNS responses for each on-prem host broken out by response types, including “Success,” “Referral,” “NXRRSET,” “NXDOMAIN,” and “Failure”. The data is displayed over a defined time period.

Total DNS Queries Report

This is an extensive report that shows detailed information regarding each DNS query and response for each DNS server, displayed over a defined time period. The report provides the time of the query and response, the queried name, the DNS View, the device and user making the query, and more.

Top DHCP Clients Report

This report shows which DHCP clients are issuing the most requests over time. This can be very useful in identifying misbehaving clients that are sending too many DHCP requests.

Total DHCP Leases Report

Administrators can use this report to see the DHCP lease history for each on-prem host. The protocol (IPv4), lease state, leased IP address, client MAC address, valid time, and more are provided. The data is presented over a defined time period.

BloxOne DDI – April 9, 2021

Enhancements

Changes made to the “From” address for BloxOne Notifications.     

Starting April 9th, 2021, Infoblox has changed the “From” address to "donotreply@bloxone.infoblox.com" for notification e-mails that users receive. Please make sure that you add this e-mail address to your contact list, so you can continue to receive BloxOne notifications.

BloxOne DDI – April 7, 2021

New Features and Enhancements

Support for customer-provided Identity Providers using the standard SAML 2.0 interface.     

In the SSO Portal, you can now configure your Identity Provider using the standard SAML 2.0 interface. With this integration, Infoblox BloxOne products can be seamlessly integrated with your identity solution. Optionally, you can define mappings between user groups in your Identity Provider and user groups within BloxOne, which will automatically assign permissions for users within BloxOne. If this mapping is not defined, permissions can be manually set in the Cloud Services Portal. The SSO Portal integration will also provide identity information for the Infoblox Support Portal. For more information, please refer to the Infoblox SSO Portal documentation.

BloxOne DDI – March 17, 2021

Enhancements

The recycle bin now supports DHCP Fingerprints. 

DHCP Fingerprints can now be moved to the recycle bin. You can restore or permanently delete DHCP Fingerprints from the recycle bin as required.  

BloxOne DDI – March 8, 2021

Enhancements

Infoblox enhances notification settings, so you can choose to receive alerts when any of these services are down: DNS, DHCP, Data Connector, Anycast, and Authentication. 

On the Cloud Services Portal, you can configure notification settings to receive alerts when a specific service is down. You can choose individual options for any of these services: DNS, DHCP, Data Connector, Anycast, and Authentication. 

BloxOne DDI – February 22, 2021

New Features

The Cloud Services Portal provides an ability to move objects to the recycle bin and restore the objects as required. 

Objects can be deleted temporarily, restored or deleted permanently. The auto-delete settings can also be configured. When supported objects are deleted, they are now placed into a searchable Recycle Bin.  This allows administrators to easily recover objects when necessary.  Objects in the Recycle Bin are stored for a maximum of 30 days, and there is a 100,000 object limit.

On the Cloud Services Portal, you can view the current state of the Anycast configuration and the overall status of the Anycast service. In the detail panel, you can also view Anycast service status for individual on-prem host. 

 On the Anycast page of the Cloud Services Portal, the new STATE column displays the current status of your Anycast configuration. You can also view the overall status and individual status of the Anycast service configured on your on-prem hosts.

When you defer updates for on-prem hosts, you can use the "Add Schedule" feature to schedule multiple updates. You can also use tags to associate one or multiple on-prem hosts with the scheduled updates.

In the Schedule Software Updates dialog, you can use the newly added Add Schedule button to add multiple update schedules for your on-prem hosts. You can also use tags to associate one or multiple on-prem hosts with the scheduled updates.

You now have the ability to choose whether to apply configuration changes immediately to your on-prem hosts or schedule the changes during a specified timeframe. You can also use tags to associate one or multiple on-prem hosts with the scheduled configuration changes.

When you make configuration changes to your on-prem hosts, you have the choice to apply the changes immediately or schedule the changes for a specified timeframe. The configuration updates apply to all on-prem hosts to which you have assigned the tag for the scheduled changes. 

Infoblox has improved the sign-in help process to give you the specific help you need without you having to figure out what the issue is. 

When you sign in to any of the Infoblox Services, you can now click the Help me sign in link to assist you with a forgotten password, a locked account, resend of activation instructions or account suspension. This link will direct you to a dialog for you to enter your email address. When you select Send Email, Help me sign in will identify the specific help you need and send you an appropriate email to address the issue.  

BloxOne DDI – February 16, 2021

New Features and Enhancements

Infoblox has improved upon API keys with the introduction of two new types of API keys, “interactive” and “service.” API keys are the tokens used with API requests to facilitate API authentication. The new key types perform the same function for different user accounts, yet introduce improvements in lifecycle management, key expiration, and key names. 

The new key types introduce the following improvements:

  • Lifecycle management: You can now create, delete, disable, and enable keys.

  • Key expiration: A user-specified expiration can be defined at the time you create the key to determine the duration of key validity.

  • Keys names: You can name the key to easily identify it in the future.

Existing API keys, called "legacy" keys, continue to be supported, and are similar to interactive keys, yet limited to legacy and existing functionality with new support for the disable, enable, and delete functions. 

The Cloud Services Portal now retains filter configuration you have applied to a page, so you can pick up right where you left the page without spending extra time to reconfigure your filters when you access the page again.

When you apply a filter or filters to a Cloud Services Portal page, the filter configuration stays intact the next time you access the page.

BloxOne DDI – February 5, 2021

New Features and Enhancements

BloxOne DDI now provides the ability to configure DHCP High Availability in a hub-and-spoke architecture where multiple DHCP servers use a single DHCP server for redundancy. 

One DHCP Server can now be part of multiple HA groups thereby providing redundancy. A DHCP server can be Active in one or more HA groups, Passive in one or more HA groups, or service leases individually while being part of an HA group. For example, DHCP servers in multiple branch offices can use a single DHCP server in the head office for redundancy. 

When using the NIOS Grid Connector, you can copy IPAM and DHCP objects (except DHCP leases) between IP spaces within the Cloud Services Portal and from NIOS to the Cloud Services Portal.

IPAM and DHCP objects along with their child objects can be copied between IP spaces if you are using the NIOS Grid Connector. This feature allows you to copy objects with all their settings and all the child objects without having to configure them one by one. 

The TSIG Keys feature has been enhanced to provide the ability for creating it while creating DNS and DHCP objects in the Cloud Services Portal. 

TSIG Keys can now be created while creating DNS and DHCP objects. For example, you can create a new TSIG key while creating a DNS View. 

The following additional details for an on-prem host are now displayed in the right panel of the Cloud Services Portal: Uptime, Last Update time, and Component Updated. 

When viewing the status of an on-prem host on the Cloud Services Portal, you can now see more details about the host in the right panel: the time duration the host has been up and running, the timestamp of its last update, and the component that was updated.

BloxOne DDI – January 26, 2021

New Features and Enhancements

The Cloud Services Portal provides options to clear DNS cache and restart an on-prem host from the Troubleshoot menu on the Manage -> On-Prem Hosts page.

You can now clear DNS cache for an on-prem host or restart an on-prem host from the On-Prem Host -> Troubleshoot menu on the Manage ->On-Prem Hosts page of the Cloud Services Portal.

The Cloud Services Portal provides an option to select the network interface for the traceroute and traffic capture troubleshooting operations.

On the Cloud Services Portal, you can now select a specific network interface on the on-prem host for the traceroute and traffic capture troubleshooting operations from the On-Prem Host 
-> Troubleshoot menu on the Manage ->On-Prem Hosts page.

The Cloud Services Portal enhances tag management by providing the ability to reactivate previously revoked tags.

You can now reactivate a revoked tag that you deem useful again. When you reactivate a tag, the tag will associate with the objects to which it was previously assigned. The tag will also retain its original set of values.

BloxOne DDI – January 21, 2021

New Feature

Infoblox introduces support for ForgeRock as the newest 3rd party identity provider for BloxOne products using the SAML 2.0 protocol.

As the SSO administrator, you can now configure ForgeRock, in addition to Okta and Azure AD, as the 3rd party IdP using the SAML 2.0 protocol.

BloxOne DDI – December 12, 2020

New Feature

The Cloud Portal Services displays the serial number of your physical appliances (B1-105), and you can search and filter the appliances by their serial number and choose to display the information as a column on the On-Prem Host page.
    • You can search the physical appliances (B1-105) using their serial number in the Cloud Services Portal by using the Search function.
    • You can filter the physical appliances by the available serial number values.
    • You can add the serial number of their physical appliances (B1-105) as a column in the Manage -> On-Prem Hosts.

BloxOne DDI – December 4, 2020

New Features

BloxOne DDI adds the following new Dashboard Widgets that display DNS and DHCP status: DNS Status, DNS Responses, DHCP Status, and DHCP Leases per Second.

The following new Dashboard Widgets are now available in the DDI tab to display various parameters about DNS and DHCP:

DNS Status - displays the number of DNS servers that are running and available for processing requests.  

DNS Responses - displays the DNS responses. This widget also displays percentage DNS responses for Success, Failure, Referral, NXRRSET, and NXDomain.

DNS Queries per second - a cumulative total of all DNS queries per second, averaged over all available hosts for an account.

DHCP Status - displays the number of DHCP servers that are running and available for processing requests.  

DHCP Leases per Second - displays the leases per second in the network. 

You can configure DNS UDP packet size to avoid DNS fragmentation and enhance security.

Configure the size of a UDP message the DNS server advertises to other DNS servers and the maximum number of bytes the DNS server will send in the UDP response to avoid DNS messages over UDP to be truncated, which might lead to fragmentation and security issues. 

Clearing DNS cache helps remove stale or incorrect DNS data without restarting the on-prem host.

You can clear the DNS cache to remove stale or incorrect data that has accumulated over time and keep the data current. You can clear DNS cache without having to restart the on-prem host, thereby avoiding downtime. 

The Cloud-based Data Connector supports forwarding DHCP lease logs from BloxOne DDI to syslog servers.

The Cloud-based Data Connector now supports forwarding BloxOne DDI DHCP lease logs to generic syslog servers in CEF or LEEF format.

BloxOne DDI – November 13, 2020

New Features

The Cloud Services Portal provides contextual help that offers context-sensitive information about the page you are currently on.

You can access contextual help while performing tasks on a specific page of the Cloud Services Portal. The Help panel displays context-sensitive information about the features or tasks on the page you are currently on. You can also access the Infoblox Support Portal, the Community Portal, or the Documentation Portal through the Help panel. 

BloxOne DDI – October 26, 2020

New Features and Enhancements

Enhancements to the support for TSIG keys and support for DDNS update with TSIG can save administrative time and ensure consistency throughout your DDI configuration.

TSIG keys are now treated as first-order objects and may be defined once and referenced in many configurations. This saves administrative time and ensures consistency throughout your DDI configuration. Similarly, any change in a TSIG key may be made once and instantly applied to all configurations that reference that key. In addition, TSIG keys may now be used to secure DDNS updates as well. As TSIG keys may be referenced by both DNS and DHCP configurations, this enhancement allows administrators to easily enforce the usage of the same keys for DNS and DHCP for any particular zone. You can create TSIG Keys from the Manage - > Keys page of the BloxOne DDI Cloud Services Portal and apply the keys where TSIG security is used.

BloxOne DDI – October 17, 2020

New Features and Enhancements

Granular configuration of inheritance provides flexibility in configuring DHCP options for child objects.

Inherit, Override, or Block each inherited item within the DHCP Options in an object without having to apply the same settings to all items. Granular configuration of inheritance provides greater flexibility in configuring the DHCP options for child objects. The DHCP Options can either be inherited from Global DHCP Configuration or by a child object from a parent object. 

You can now view or download NIOS Grid Connector logs for import progress, errors, and import summaries.

To see the import progress, errors, and import summaries, view or download service logs from the Cloud Services Portal. NIOS Grid Connector logs are available in Administration -> Logs -> Service Logs.

Configure thresholds for DHCP utilization and receive a notification when the utilization goes above or below a certain percentage.

You can enable thresholds for DHCP utilization. This allows you to be notified if the DHCP utilization goes above or below a certain percentage. Receive notifications when the DHCP utilization goes above or below a certain percentage. You can configure a custom webhook to receive notifications. 


BloxOne DDI – September 11, 2020

New Features and Enhancements

Configuration file handling

This enhancement improves the way configuration changes made on the Cloud Services Portal are applied to the on-prem hosts. This change will require a restart of DNS and DHCP services on the on-prem hosts.

NIOS Grid Connector support for Extensible Attributes (EAs)

The Extensible Attributes in NIOS can now be mapped to BloxOne DDI tags using the NIOS Grid Connector. They are displayed with the tag nios_ea/ea_name in the Cloud Services Portal. The Extensible Attributes can be mapped for additional IPAM objects, DNS data objects, and DNS config objects. 

BloxOne DDI – August 29, 2020

New Features and Enhancements

An update to the on-prem host infrastructure for OVA and appliances allows for future enhancements in subsequent releases, optimizes update processes, improves scalability, and enhances network connectivity.

The update process will cause a short outage of up to two minutes to all services that are deployed on the specific on-prem host.

Please set the deferred upgrade functionality within BloxOne to a time when such upgrade can be performed. You can confirm with the Infoblox representative that the deferred upgrade functionality is set to a time when the outage will occur.

Only on-prem host with at least 2 cores and 2 GB RAM will be updated. If you have on-prem hosts that do not satisfy those requirements, you can upgrade them with additional resources before the upgrade to include them in this process.

This release offers multi-port support that allows you to separate traffic between WAN and LAN interfaces on configured on-prem hosts.

You can now separate traffic between WAN and LAN interfaces on configured on-prem hosts. Services can be run either on all interfaces, which is the default setting, or on the LAN interfaces only. Note that multi-port support requires the new on-prem host infrastructure.

Infoblox has added supported IPv6 addresses to the portfolio of BloxOne IP addresses.

Infoblox has added supported IPv6 addresses to the portfolio of BloxOne IP addresses. You can access the list of IP addresses to set up your corporate firewalls in advance. In the future, Infoblox services will be available over IPv6 within the designated range.

BloxOne DDI – August 5, 2020

New Features and Enhancements

Custom user roles offer administrators the flexibility to accommodate specific access authorizations by allowing more granular control of access.

As an administrator, you can define custom user roles, in addition to a selection of Infoblox provided user roles, to accommodate for specific access authorizations. This will allow for more granular control of access.

Resetting BloxOne appliances to factory condition can be done through the Device UI by enabling local access to the appliance.

You can reset BloxOne appliances to factory condition by enabling local access through the Cloud Services Portal and logging in to the on-prem host through the Device UI. The on-prem host will still be associated with the same account, but all of the service specific settings and connectivity to the cloud will be reset.

BloxOne DDI – July 27, 2020

New Features and Enhancements

3rd party identify provider (IdP) integration allows customer identity to be federated with customer owned Okta or Azure AD identity providers via the SAML 2.0 protocol.

As an administrator, when you set up the 3rd party IdP integration, you can optionally configure group mapping between IdP groups assigned to your users and BloxOne user groups. This feature completely automates the onboarding and offboarding process of your employees. You can set up 3rd party IdP federation in the newly released Infoblox SSO Portal.

Multi-factor authentication (MFA) can be defined based on OktaVerify when customers store their users' identity with Infoblox.

You can now define multi-factor authentication (MFA) based on OktaVerify when you store users’ identity with Infoblox. When configured, users are asked to define their MFA authentication at their first login and are required to authenticate using their chosen way of authentication on subsequent logins. You can set up MFA federation in the newly released Infoblox SSO Portal.

BloxOne DDI – June 30, 2020

New Features and Enhancements

DNS and DHCP data for both BloxOne and NIOS Grid is now visible on the Cloud Services Portal, if you have both BloxOne DDI and NIOS Grids in your data centers

The new NIOS Grid Connector enhancement makes NIOS DNS and DHCP data visible on the Cloud Services Portal. You can now view BloxOne DNS, BloxOne DHCP, NIOS Grid DNS, and NIOS Grid DHCP data through the Cloud Services Portal, if you have both BloxOne DDI and NIOS Grids in your data centers. 

BloxOne DDI – June 20, 2020

New Features and Enhancements

The Default IP space can now be associated with a DNS view, and the DNS associations with IP addresses are reflected in the IPAM view

This enhancement to the primary authoritative DNS functionality in BloxOne DDI allows an initial/default IP space to associate with a DNS View. DNS associations with IP addresses are now reflected in the IPAM view.

An enhancement to the primary authoritative DNS functionality enables the configuration of DDNS for zones that are managed by BloxOne DDI

This enhancement to the primary authoritative DNS functionality enables you to configure DDNS for zones that are managed by BloxOne DDI, without further manual configuration. A DHCP host may be configured to send DDNS updates to DNS hosts.

Admins can now add or remove tags for multiple objects simultaneously

This enhancement improves the admin’s ability to add or remove tags for multiple objects simultaneously. It allows users to create, update, delete, and read tags associated with any resource instance, based on their permissions. This enhancement increases admin productivity by eliminating repetitiveness and easing cumbersomeness of admin tasks.

Adjusting IP settings is now expanded to OVA on-prem hosts

You can now manage the configuration of your OVA (Open Virtualization Appliance) on-prem host via BloxOne Cloud. You can edit the settings for the IP interface, DNS local resolver, time, proxy, and Docker bridge. The ability to adjust these settings was previously limited to physical on-prem host only.

New dark color scheme on the Cloud Services Portal enhances viewing experience in low-light environments

Infoblox introduces a new dark color scheme on the Cloud Services Portal, which delivers an alternative viewing experience to users. Dark color scheme can be beneficial in low-light environments. You can switch between light mode and dark mode in User Preferences.

BloxOne DDI – May 23, 2020

New Features and Enhancements

Additional Role Based Access Control provisions to assign new roles and associated privileges/permissions to manage the DNS, DHCP and IPAM configurations

BloxOne DDI is introducing additional Role Based Access Control provisions to enable customers to have the flexibility to assign new roles and associated privileges/permissions to manage the DNS, DHCP and IPAM configurations in BloxOne DDI. These new roles will allow the customers to be more surgical in allocation of permissions in managing the DDI configurations based on the roles assigned. 

BloxOne DDI – May 9, 2020

New Features and Enhancements

DNS and DHCP statistics collected by on-prem host is sent to the Cloud for future reporting functionality

DNS and DHCP statistics that are currently being gathered on-prem will be sent to the cloud to support the addition of future reporting functionality.

Download and view DNS cache information 

This feature allows the user to download and view the contents of the DNS cache for a given on-prem host for troubleshooting purposes.

DHCP HA pairs can now be configured in an Active-Passive role 

This feature allows for DHCP HA pairs to be configured in active and passive roles, in addition to the existing active-active arrangement.  This allows for one on-prem host to serve an entire range, with another on-prem host to be standing by as a backup, should the active host be lost.

BloxOne DDI – April 21, 2020

New Features and Enhancements

New dark color scheme on the Cloud Services Portal enhances viewing experience in low-light environments

Infoblox introduces a new dark color scheme on the Cloud Services Portal, which delivers an alternative viewing experience to users. Dark color scheme can be beneficial in low-light environments. You can switch between light mode and dark mode in User Preferences. 

Automatic upgrades on the on-prem hosts ensure that your hosts are secure and contain the latest updates in functionality

Infoblox now automatically upgrades your on-prem hosts, physical or virtual, with new versions of services. This is implemented to ensure that your on-prem hosts are secure and contain the latest updates in functionality. Most of the updates happen in the background without any need to restart services or without any interference in the function of services deployed on the on-prem hosts. In some cases, there is the need for a service restart, which could interrupt those services for a few seconds. We understand that those few seconds at the wrong time of the day could affect your business. Therefore, we are adding the ability for you to schedule these updates to a specific time window during the week. The one-time update time will take into consideration the time zone set for the specific host. For example, setting an update window for Saturday from 6 to 10 a.m. would perform pending updates between 6 and 10 a.m. on Saturday CET in Berlin, EST in New York, and CST in Beijing. You can alternatively defer updates up to four weeks for the most critical times of the year.

Defining notification settings by user groups helps reduce the number of notification messages for specific users

You can now use user groups to define notification settings to reduce the number of notification messages users receive to a subset that is important to them. For example, you can configure for the administrator to receive account and host related notifications via e-mail, other users receive host and service notifications in-app only, while pager duty services could be used just for specific service notifications. You can also add additional text to e-mail notifications, for example, to identify next steps in resolution. 

Enabling multiple Cloud Data Connectors to receive data from a single NIOS Grid provides flexibility and improves performance during the transfers of log data

If you use NIOS in connection with BloxOne, you can now leverage increased scalability of the Cloud Data Connector (CDC) service. Several CDCs can be set up to receive data from a single NIOS Grid, providing increased flexibility and performance in transferring your NIOS log data.



BloxOne DDI – February 15, 2020

New Features and Enhancements

NIOS Grid Connector allows users to view DHCP and IPAM data that is configured on a NIOS Grid through the Cloud Services Portal

If you have configured NIOS Grids to communicate with BloxOne DDI, you can enable the NIOS Grid Connector service on the respective on-prem hosts to import certain IPAM data from the Grids to BloxOne DDI. You can then view the read-only IPAM data in the Cloud Services Portal, together with other network data. This capability provides you with a single interface for viewing comprehensive network data for your BloxOne Cloud infrastructure, such as global IP space, subnets, IP addresses, and DHCP lease data. This service can only be enabled on on-prem hosts running NIOS 8.5 or higher.

DNS Query/Response Logging is enabled with this release

Logging for DNS query and response is enabled by default. You can download the logs through the Cloud Services Portal. Depending on your business requirements, you can also disable logging.

Alerts and Notifications are sent when a configuration change results in an error for either DNS or DHCP

This release notifies users when a configuration change results in an error for either DNS or DHCP, as follows:

    • Host State - triggers a notification when an on-Prem host is in a Review Details state for a specified duration.
    • Last Host Activity - triggers a notification after a specific duration from the last known activity of the on-prem host.
New Service Integration with PagerDuty

You can now send notifications via PagerDuty.

BloxOne DDI – January 14, 2020

New Features and Enhancements

  • Replacing On-Prem Hosts

When you plan to replace an on-prem host with a new one, Infoblox now offers a “Replace” functionality to support zero-touch provisioning through the Cloud Services Portal. You can set up the new host and connect it to the Cloud Services Portal through zero-touch provisioning, while the old host is inactive. The replace function will automatically move the service configuration from the old host to the new one without the need to configure individual services. Services from the old host will be removed, and the host will be in the Pending state, which will require approval to rejoin the BloxOne Cloud.

  • Security Enhancement

BloxOne Cloud offers a security enhancement that allows you to disconnect problematic on-prem hosts due to misconfiguration or theft in the case of a physical host. You can disconnect the affected on-prem host from the BloxOne Cloud, which will stop all the services on the host. When you disconnect the host, it is no longer accessible from the cloud and is disconnected at the first reconnection to the internet. The on-prem host can be reconnected to the BloxOne Cloud only through a new zero-touch provisioning process, using a new token or a specific approval from the administrator in the case of a physical hosts.

  • Additional Diagnostic Tools

Infoblox has implemented additional diagnostic tools that administrators can use to get more visibility into individual on-prem hosts. Administrators can execute these tools on selected on-prem hosts and display the diagnostic results in a browser connected to the BloxOne Cloud, with the ability to download the results as well. The new diagnostic tools include the following: Traceroute, DNStest, Traffic Capture, NTP test, and the display of DNS and DHCP configuration file from the on-prem hosts.

  • Delivering RPZ Logs to On-Prem SIEMs

NIOS users who use the BloxOne Cloud can now benefit from an advanced Data Connector feature to deliver the RPZ logs to the on-prem SIEMs in CEF or LEEF format. They can also deliver the data to Splunk for reporting purposes in the CSV format.

  • Page Settings

The Cloud Services Portal now saves the last settings of a specific page, including filters and displayed columns. When you leave the page and log back in, the page will display information using the last configured filters and displayed columns. When necessary, you can reset the page configuration to default, which will remove the filters and restore to the default columns.

  • Notifications Enhancements

You can now integrate additional services, such as PageDuty and Webhooks, to receive notifications.

  • User Permissions Enhancements

This release expands user roles to include more granular permissions. For each user role, users can view all the supported permissions in the detailed panel to gain more visibility.

BloxOne DDI – December 5, 2019

Enhancement

  • User Experience Enhancement
    • This release of BloxOne Cloud introduces a modern, more dynamic, user experience. Main menus have been moved from the top of the screen to the left-hand side, where they can be expanded to show accordion-style, sub-menus or can be collapsed to display only individual icons when not in use. All workflows will remain unchanged.

BloxOne DDI – October 24, 2019

New Features

  • Automated DHCP Scope Management

The Automated DHCP Scope Management feature provides a number of enhancements to monitor and manage DHCP scopes. The feature allows you to set thresholds for DHCP ranges that will trigger configuration suggestions (e.g. proactively expanding ranges or subnets) to avoid issues associated with lack of available IP addresses.

This feature forms a basis for future enhancements in the variety and quality of configuration suggestions that the product will make using predicative algorithms and machine learning

  • Anycast Support for On-Prem DNS

This release of BloxOne Cloud introduces Anycast Synchronization Service between Anycast service and DNS service. Synchronization monitoring occurs on any DNS service to which the Anycast address is installed, enabled, or is functioning on port 53 and tied to the DNS service. In the event of co-deployment of multiple DNS services where ephemeral ports are used, connectivity is monitored between all hosts and Anycast service.

  • Coexistence of BloxOne DDI and DNS Forwarding Proxy

You can now deploy both the DNS forwarding proxy and BloxOne DDI DNS services on the same on-prem host when you have both the BloxOne Threat Defense and BloxOne DDI subscriptions.

  • DHCP Exclusion Range Support

This release of BloxOne Cloud introduces the ability to create a DHCP exclusion range within an existing DHCP range.  A DHCP exclusion range is a specified range of IP addresses residing within a DHCP range. IP addresses residing within the exclusion range are excluded from the pool of available IP addresses and are un-leasable. The DHCP server is prevented from assigning IP addresses within the exclusion range to network devices.

  • BloxOne DDI Licensing Tiers

This BloxOne DDI release introduces new licensing tiers. Each tier defines the features that are available to users. The new licensing tiers are as follows: Essentials, CA, Business, and Advanced. All existing users are converted to the CA licensing tier.

  • DHCP4 Fingerprint Enhancement

This release adds the "contains" operator for vendor class option (option 60)  in the DHCP fingerprint match rules. When you select "contains" as the operator and enter a value, BloxOne DDI matches all vendor IDs that contain the value you entered.

  • IPAM Visualization Improvement

The information panel in the IPAM view has been enhanced to display information about IP addresses that have been dynamically and statically provisioned.

BloxOne DDI – October 1, 2019

New Features

  • Role-Based Access Control

This release of BloxOne Cloud provides improved access control for customers with introduction of user groups, roles, and permissions. Assigning individual users to different user groups will change the permissions for the user. To make this process easier, Infoblox provides a set of default user groups corresponding to the "Administrator" and "User" roles, and adds new user groups for BloxOne DDI Administrators, BloxOne TD Administrators, BloxOne DDI Users, BloxOne TD Users, and Account Management. To keep existing access for users, no action is necessary. Infoblox will automatically assign existing users to the Administrators and User user groups based on their current access.

  • Troubleshooting Physical On-Prem Hosts

When an on-prem host is experiencing issues, troubleshooting problems can be accomplished using the Device UI. The Device UI displays a comprehensive view of the networking health for your on-prem host and can be used to perform corrective actions to address applicable issues.

BloxOne DDI – August 3, 2019

New Features

  • DHCP Fingerprints

This release of BloxOne DDI utilizes DHCP fingerprint detection to identify IPv4 mobile devices such as laptop computers, tablets, and smart phones, on your network. Using DHCP fingerprint detection is an efficient way to perform system identification. You can use DHCP fingerprint detection to track devices on your network and plan for future growth by accessing trending information such as the number of Apple iPhones versus that of Android phones that are on your network.

  • DNS Anycast Addressing

BloxOne DDI provides multiple Anycast IPv4 addresses to improve resiliency and reliability. In potential scenarios where one of the public IP addresses becomes unreachable in BloxOne DDI, additional configured Anycast IPv4 addresses can be added to the Anycast configuration.

  • IP Address Reservations

This release of BloxOne DDI supports IP address reservations. You can create a reservation as a static IP address for future use. You can reserve this static IP address and assign it to a client in the future.

  • Visualization of Abandoned Leases

You can now see all the abandoned leases in the visualization view.

  • Support for Multiple Primaries in DNS Server Groups

In this release of BloxOne DDI, you can include a group of primary name servers, a group of secondary name servers, nested DNS server groups, primary DNS servers, and/or secondary DNS servers in a DNS server group. This flexibility reduces the number of DNS server groups that you must manage, and it allows you to apply different configurations to different scenarios.

  • Audit Log Enhancements

You can now see the resource type of the object created, modified, or deleted when viewing the audit log. You can also limit the data displayed to only the resource type(s) you want to review.

BloxOne DDI – July 13, 2019

New Features

  • On-Prem Host Management

This release of BloxOne DDI introduces ZTP (Zero Touch Provisioning) that streamlines the deployment of on-prem hosts. You no longer need to pre-provision or create on-prem hosts and copy API keys through the Cloud Services Portal while deploying BloxOne appliances. BloxOne DDI now automatically detects the BloxOne physical appliances that you purchase through Infoblox. It also uses a secure join token mechanism to authenticate and deploy virtual appliances that you configure in your VM environments.

  • Notifications

The Cloud Services Portal displays notifications for specific events, such as license expiration or CPU usage. Infoblox implements deduplication for notifications to prevent notification floods, which identifies identical notifications and sets a grace period to stop duplicated notifications before sending them again.

BloxOne DDI – April 27, 2019

New Feature

  • Service Logs

This release introduces the support of service logs. You can now configure BloxOne DDI to display or export DNS and DHCP logs from your on-prem hosts. Depending on your service log configuration, you can view the logs in a separate browser window or download the log files (in .log format) for future reference.

BloxOne DDI – February 28, 2019

New Features

  • Support for Virtual Appliances

In addition to the BloxOne B1-105 physical appliance, you can deploy BloxOne DDI as a virtual appliance by installing the Infoblox Docker package in your Docker environment or the OVA package in your VM infrastructure.

  • Inheritance for DNS and DHCP Objects

This release supports multiple and linked inheritances for DNS and DHCP objects. DNS and DHCP properties follow a top-down inheritance hierarchy in which child objects automatically inherit properties from their parent objects by default, unless you override the properties at a child object level. The Cloud Services Portal displays the inheritance sources and values that are in effect for each DNS and DHCP object if applicable, so you can view the properties before overriding them. BloxOne DDI also links certain DNS and DHCP functions together so you can inherit or override their configurations as a group.

  • Next Available IP for Fixed Addresses

When you create a fixed address, you can configure BloxOne DDI to automatically assign the next available IP to the fixed address. The next available IP address is the first unused address in the subnet in which you configure the fixed address.

  • Using Tags

BloxOne DDI provides tags that you use to identify and group objects in your address spaces. A tag is a label that consists of a key and a value that you define. Tags are useful when you want to categorize DNS and DHCP objects by specific purposes, such as by location, so you can easily identify them based on the tags you assign to them.

  • Public API Support

The Cloud Services Portal provides a unified interface for displaying available public API calls. You can access API calls for BloxOne DDI through the Cloud Services Portal.

  • Filtering by Utilization

You can now filter IPAM objects by "Utilization" wherever applicable in the Cloud Services Portal. When you use this filtering option, you can view IP spaces by specifying the percentage of utilization you want to monitor. This filtering option allows you to identify the most utilized or the least utilized IP spaces or subnets, so you can manage your network infrastructure more effectively.

BloxOne DDI – BETA October 10, 2018

Infoblox BloxOne DDI is a cloud-managed solution which includes a fully integrated DNS (Domain Name System), DHCP (Dynamic Host Configuration Protocol), and IPAM (IP Address Management) suite with unified network views and a simplified data model. It provides a one-stop solution for your network infrastructure management, as well as secure monitoring and integrated management of your network spaces. For information about how to deploy the B1-105 appliance, refer to the Installation Guide for Trinzic B1-105 Appliance.