Ask questions about Security & Compliance in relation to TimeXtender
Recently active
Dear Customers,We would like to update you regarding the potential impact of CVE-2025-30065, a recently disclosed vulnerability affecting certain versions of the Apache Parquet library.Our product uses Parquet.Net for reading and writing Parquet files. This library is implemented in .NET and is not affected by CVE-2025-30065, which specifically targets the parquet-avro module in the Apache Parquet Java ecosystem. Therefore, there is no exposure to this vulnerability within the core functionality of our application.Microsoft Fabric and Azure Data FactoryWe initially flagged potential risk in those environments based on observations that Microsoft Fabric and Azure Data Factory (ADF) make use of Apache Parquet version 1.13.1, which is one of the versions known to be vulnerable to CVE-2025-30065. However, we have since received official clarification from Microsoft confirming:They do not ship the parquet-avro module. The CVE does not apply to their runtime.This significantly reduces the ri
Hi all, We implemented a semantic model on Azure, granting access to our users through Azure AD groups. By creating roles that include Azure Tenant IDs and enforcing Row-Level Security (RLS) dynamic settings.However, we’ve encountered a challenge: when changes are made to certain fields, the RLS configurations can sometimes fail to enforce restrictions properly. This can lead to unintended access, where users in an AD group suddenly find themselves with visibility into all data, rather than the limited data they should see.To address this, we’re exploring ways to implement a more restrictive access model within the RLS role configuration. Specifically, we’re considering options that would prevent any data visibility until RLS settings are confirmed to be operational.Proposed Solution:Initial Data Restriction: Until the RLS settings are validated, no users should have access to any data. Validation Checks: Implementing a validation mechanism to ensure RLS settings are working correctly
Hello,I have created a semantic model of my project which is implemented as SSAS endpoint. Users usually connect to it through excel and browse the model.Fact tables are connected to dimension tables using ID key. I want the fact table to be filtered based on values on one of the columns in dimension (fact table has millions of records and there are around 500k distinct IDs of the dimension within it).Question is - if i apply row-level security on one of the columns in dimension - will it apply that to fact records as well? Or i must specifically apply the RLS onto the fact itself?Thank you
Good Day All,We have received a question with regards to SSO/MFA. Is it possible to utilize SSO or MFA in order to access TX to increase the security levels? If not, are there any other means in order to increase the security levels? Appreciate your response in here. Regards, Marc
Hi, One of our clients are looking to implement SQL Server connection encryption using the SQL Server Network Configuration\Protocols for MSSQL Server and setting this to 'Force Encryption' using an SSL certificate.This would be on the ETL DB server.Is this supported? The ETL DB is accessed by ETL Agile, Targit and SSRS. Best RegardsShahid Raja
Dear Cummunity, Is there a way to hook up the TimeXtender portal (app.timextender.com) to the Azure keyvault?We want to keep our login credentials safe and in one place so would be great to have them feed them from the keyvault to the portal.Thanks!= Daniel
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.