• New mechanism to replace wildcards in user edit screen. Personal/Unix support more wildcards like "$firstname".
  • Windows: added support for pager, otherPager, mobile, otherMobile, company and proxyAddresses (disabled by default in server profile)
  • Mail routing: enable for groups and allow to add/remove the extension
  • LAM Pro:
    • Password self reset: support for up to 3 security questions
    • 389ds: new wildcards for custom scripts: $INFO.389lockingStatusChange$ and $INFO.389deactivationStatusChange$
    • Custom scripts: custom button label supported for manual scripts



  • Windows: allow to show effective members of a group
  • Lamdaemon: support SSH key authentication
  • LAM Pro:
    • Group of names/members + roles: allow to show effective members of a group
    • Cron jobs:
      • Move or delete expired accounts (Shadow, Windows, qmail, FreeRadius)
      • 389ds: added job to notify before password expires
    • 389ds: manage password expiration time with module "Account locking"
  • Fixed bugs:
    • PHP 7 issues on edit page


  • Unix: support magic numbers for UIDs/GIDs (e.g. 389 server DNA plugin)
  • Samba 3: support for Samba password history (RFE 133)
  • LAM Pro:
    • New module for 389ds unlocking and deactivation status
    • Self registration: support for Google reCAPTCHA
    • Password notification jobs support CC and BCC
    • Self Service: Samba 3 supports password history and minimum age check


  • Requires PHP 5.4.0 or higher
  • PHP 7 support
  • Windows: support management of fax number
  • Login can show display name instead of server URL
  • Personal/Unix: support K5KEY hash type for smbk5pwd
  • New NIS netgroup module for hosts
  • Puppet: autocompletion for classes and variables, allow to enforce list of possible classes
  • fixed bugs:
    • Autoload errors in tree view
    • Set correct content type on JSON requests (174)
  • LAM Pro:
    • Support for LDAP views based on nsview object class
    • Password notification jobs support to print expiration date in email
    • PPolicy password notification job takes pwdExpireWarning into account
    • Custom fields: support calendar fields
    • Zarafa contacts: allow to create contacts without Unix extension
    • Added options for password rest page to server profile


  • Windows: support for additional attributes (jpegPhoto, title, carLicense, employeeNumber, employeeType, businessCategory, departmentNumber, ou, o, manager)
  • SSH public key: added possibility to add/remove SSH extension
  • MIT Kerberos: set krbExtraData for new accounts
  • IMAP: allow to specify initial folders to create
  • LAM Pro:
    • Users: allow to manage IP addresses with ipHost module
    • Self Service: added time zone setting in self service profile
    • Shadow: added job to notify before Shadow password expires
    • Windows: added job to notify before Windows password expires


  •  IMAP: support Windows users
  • SSH public key: check uploaded files if in right format
  • LAM Pro:
    • Self Service optimized also for mobile devices
    • MySQL support for cron jobs
    • Self registration: support auto-numbering for attributes (e.g. to create Unix accounts)


  • Microsoft IE 8 no longer supported
  • Security: added CSRF protection
  • NIS net groups: user module to manage NIS net groups on user page
  • Zarafa users: allow to change display format of "Send As"
  • User list: support to filter by account status
  • Lamdaemon: update group of home directory if user's primary group changes
  • Personal: allow to add ou=addressbook subentry for users (RFE 117)
  • Unix: support auto-UID/GID with msSFU30DomainInfo
  • Windows groups: support editing of member of
  • Central time zone setting in server profile
  • LAM Pro:
    • Cron job to notify users before password expires (PPolicy)
    • Password Self Reset: added 389 Directory Server schema file
    • Support for groupOfMembers (RFE 121)
    • Rfc2307bis Unix groups: added option to force syncing with group of names


  • Requires PHP 5.3.2 or higher
  • Templates for server profiles
  • Unix/Personal: support SASL as password hash type
  • PDF export: added option to print primary group members
  • Use HTTP_X_REAL_IP/HTTP_X_FORWARDED_FOR to log IP addresses (RFE 120)
  • LAM Pro:
    • Personal: support image file size limit and cropping (requires php-imagick) in self service
    • Password self reset: allow to enter custom security questions (RFE 115)
    • Unix groups (rfc2307bis): allow to sync members from group of (unique) names (RFE 116)
    • Self Service: support password change with old password (requires PHP >= 5.4.26)
  • Fixed bugs:
    • Self Service shows password reuse error after password change was required


  • Active Directory: support paged result as workaround for size limit exceeded
  • FreeRadius: support dialupAccess and radiusProfileDn
  • Usability improvements
  • LAM Pro:
    • Self service: added option if referrals should be followed


  • fixed bugs:
    • Blank page and "User tried to access entry of type ..." log message when DN suffix does not exactly match case in LDAP