AntiMalwareJuly 31, 2026🇷🇺Translated from Russian

Indeed Certificate Manager 7.3 Adds OpenLDAP, Dogtag CA and Linux Domain Support

Company Indeed has released Indeed Certificate Manager 7.3, the latest version of its centralized certificate and key media management system. The primary focus of the update is Linux infrastructure, with the product gaining support for additional directories, an open certificate authority, and single sign-on via Kerberos.

Indeed CM now works with OpenLDAP and Alt Domain. This enables organizations to deploy PKI infrastructure entirely within Linux environments and avoid vendor lock-in for core directory services.

Another significant integration is Dogtag CA. The open-source certificate authority can now be used together with Indeed CM for issuing and managing the full certificate lifecycle. Administrators no longer need to handle the low-level cryptographic operations directly, as the system manages these tasks.

For access to Indeed CM services on Linux, Kerberos SSO has been implemented. Once a user authenticates to the domain, no additional credentials are required, reducing the number of passwords that must be remembered and lowering phishing risk.

Certificate protection has also been strengthened. Version 7.3 supports Rutoken BIO and three-factor authentication combining a hardware token, PIN code, and fingerprint. In integration with Rutoken Logon, a complex password scenario has been added where the password is automatically generated and stored on the token.

Additional features include storage of service notes about users and the ability to issue service certificates for client agents through SafeTech CA. The list of supported hardware now includes new JaCarta models.

Indeed CM 7.3 adds support for Windows Server 2025, Debian 13, and Alt 11, while remaining compatible with ALD Pro 3.0.

Related articles

AntiMalwareOther

Russian Data Centers Above 500 kW May Receive Protection from Forced Relocation Under Gilotina 2.0 Roadmap

Land plots hosting large data centers in Russia could gain special protection against seizure for state or municipal needs as part of the Gilotina 2.0 roadmap for the data center sector. The proposed ban, set to take effect on December 15, 2027, would apply to facilities with at least 500 kW capacity listed in the Russian registry of data centers. The measure aims to prevent the demolition of operational sites for territory redevelopment, recognizing that data centers cannot be easily disassembled and relocated like simpler structures. Industry groups have raised concerns over the 500 kW threshold and mandatory registry linkage, noting that participation in the registry is voluntary and that standardized methods to separate IT load from total power capacity are lacking. If relocation becomes unavoidable, developers would need to provide equivalent land or fund new construction, including full equipment transfer, power and connectivity infrastructure, capacity reservation, and compensation for early contract terminations with clients. Major operators including RTK-COD, MTS, and Megafon have backed the initiative while opposing compulsory registry ties, highlighting acute capacity shortages in Moscow where utilization reaches 95 percent.

HabrOther

R-Vision SIEM Debuts at Standoff 17 Cyber Battle and Processes 8.8 Million Correlation Events

R-Vision presented its SIEM solution for the first time at the Standoff 17 cyber exercise, where the akPots team used it to monitor a telecom operator infrastructure and investigate incidents. The product was deployed in two weeks, with 80 percent of required event sources already supported out of the box. During four days of continuous attacks the system triggered 46 correlation rules, generated more than 8.8 million correlation events and 40 thousand alerts, while analysts created 13 custom widgets and executed over 9,000 search queries. Resource consumption remained low, with the collector averaging 0.7 CPU and 1.9 GB RAM even under peak load. Participants rated the solution 4 or 5 out of 5 and highlighted raw-text search, the RQL query language and event grouping as the most useful features. The exercise also identified areas for interface and alert-description improvements.

HabrOther

From Security Champion to Engineering Security Culture: MTS Web Services Transforms DevSecOps Approach

MTS Web Services has shifted from a single Security Champion per team model to a broader engineering security culture that distributes responsibility across multiple specialists. The previous approach created overload for appointed champions, offered insufficient training, and failed to motivate appointed participants to grow their skills. The new strategy emphasizes voluntary participation, professional development through dedicated tracks, and integration of security practices into daily workflows and onboarding. Key changes include forming a DevSecOps guild, running regular workshops and Q&A sessions, embedding vulnerability scan results into team metrics, and adding competency maps with role-specific learning paths. The company now recognizes security heroes and high-performing teams while linking basic security training completion to performance indicators. Results show organic growth in engagement, with event numbers rising from a handful in 2023 to 18 in 2025 and product teams independently adopting secure development practices.

AntiMalwareOther

Security Vision SIEM Adds Monitoring for Missing Logs, Correlation Quality, and SOC SLA Compliance

Security Vision has released a major update to its SIEM platform that extends monitoring beyond external threats to the health of the data collection pipeline itself. The new release introduces continuous checks for source stability, allowing administrators to define acceptable event flow deviations and receive alerts when logs suddenly stop arriving. A dedicated dashboard now evaluates correlation rule performance through testing on simulated events and supports import/export in Sigma format for easier detection sharing across platforms. The StatAnalyser service applies statistical models to flag atypical behavior with special markers, while the incident card gains automated retrospective process-chain reconstruction that links parent processes, user sessions, and host movements. Additional oversight features track analyst SLA adherence and let managers drill from team-wide statistics into individual performance metrics. Overall, the platform aims to close the loop from data ingestion through detection, investigation, and response within a single managed workflow.