diff --git a/_posts/2020-05-06-MISP.2.4.125.released.md b/_posts/2020-05-06-MISP.2.4.125.released.md index f4ae434..9c3af56 100644 --- a/_posts/2020-05-06-MISP.2.4.125.released.md +++ b/_posts/2020-05-06-MISP.2.4.125.released.md @@ -6,12 +6,11 @@ featured: /assets/images/misp/blog/timeline-sight.png # MISP 2.4.125 released -A new version of MISP ([2.4.125](https://github.com/MISP/MISP/tree/v2.4.125)) has been released. This version includes various improvements including a major refactoring of the feed system, a new inbox system to allow self-registration, sightings in timeline visualisation and many more improvements. +A new version of MISP ([2.4.125](https://github.com/MISP/MISP/tree/v2.4.125)) has been released. This version includes various improvements including a major refactoring of the feed system, the addition of OTP, a new inbox system to allow for self-registration, sightings in the timeline visualisation and many more improvements. # new inbox system and self-registration feature -If you operate a large community such as an ISAC, the creation of new users can be a tedious task. The new self-registration feature allow organisation to get and review -registration before creating the real user in MISP. +If you operate a large community such as an ISAC, the creation of new users can be a tedious task. The new self-registration feature allows organisations to receive and review registration before creating the real user in MISP. - if the feature is enabled, users can unauthenticated send a registration request to MISP - request includes information on desired org and some privileges (sync / org admin / publisher) @@ -19,6 +18,10 @@ registration before creating the real user in MISP. - they can accept/discard them individually or en masse - users will be notified of their credentials automatically - quick user creation if the user asks for an org that doesn't exist yet + +# E-mail based OTP + +To add a second layer of security, OTP has been made available thanks to the contribution of @Golbark. If you would like to use this feature, please enable it via your security settings. Users will receive tokens via e-mail that they need to provide each time they authenticate and start a new session with MISP. # Feeds index refactoring and new features