Octopus SaaS Authentication Server 6.8.6 is Now Available
Secret Double Octopus is pleased to announce the release of Octopus Cloud Authentication Server version 6.8.6. This release introduces new capabilities for mobile authenticator management, reporting, MDM-based enrollment control, VDI authentication support, service configuration improvements, and important bug fixes.
Release Summary
Version 6.8.6 includes enhancements designed to simplify and streamline the user authentication experience while maintaining the highest levels of security. Some of the new capabilities require updated agent versions.
Recommended Client Versions
To benefit from the latest capabilities, we strongly recommend using:
- Octopus Desk for Windows v4.3.4
- Octopus Desk for Mac v4.4
- The latest version of the Octopus Authenticator mobile app
What’s New in Version 6.8.6
Device-Specific Mobile Authenticator Configurations
Administrators can now customize the behavior of the Octopus Authenticator mobile app for individual mobile devices. This allows device-specific overrides of the global Octopus Authenticator settings configured in the System Settings menu.
Once a device-specific configuration is defined, the Authentication Server sends the customized configuration to the mobile app and continuously compares it with the global configuration to keep settings updated in real time.
Detailed Authenticators Report
A new report template provides comprehensive information about all authentication device types. The report includes a broad set of filtering options to help administrators generate reports that match their organizational needs.
A new Authenticator Override parameter allows administrators to identify mobile authenticators that have device-specific configurations.
Enforce MDM Enrollment
Octopus Authentication Server now supports the option to allow enrollment only for mobile devices managed by an MDM solution. The new MDM Settings section is available in the Octopus Management Console under:
System Settings > Devices
Mobile devices enrolled through an MDM solution are indicated in the user’s details with a dedicated case icon.
VDI Authentication Support
A new VDI option is available in the settings of Active Directory Authentication services under the Sign on tab. This allows administrators to specify whether the service supports authentication to VDI desktops.
The feature supports both persistent/static and non-persistent/random VDI machine assignment types.
Service Configuration Enhancements
- Keyword search for adding services: Administrators can now filter the Add a Service list by service name or related keywords.
- Issuer URL availability: The Issuer URL is now displayed in the service settings, under the Sign on tab, for OpenID Connect services and Entra ID EAM services.
Bug Fixes
| Issue Number | Issue Description | Status |
|---|---|---|
| SSA-19408 | OIDC authentication failures with MS Entra ID when the Entra ID token lacks UPN | Fixed |
| SSA-19697 | forcePasswordChange failure with Compatibility Mode OFF | Fixed |
| SSA-19364 | Incorrect default response_mode for OIDC Authorization Code Flow | Fixed |
Known Issues
Version 6.8.6 includes the following known issues, which are planned to be addressed in future versions:
- MDM-related issue: On integration with certain MDM solutions, the Mobile Device Recovery feature in Octopus Authenticator settings may not behave as expected on Android devices.
- VDI-related issue: Adaptive Authentication, Push Fatigue Protection, and Compatibility Mode OFF are currently supported for the Persistent/static assignment type only.
Additional Information
For more details about the new capabilities and configuration guidelines, please refer to the Octopus Management Console Admin Guide and the official Version 6.8.6 Release Notes.
Release Date: April 23, 2026
Product: Octopus Cloud Authentication Server
Version: 6.8.6