This feature introduces SAML 2.0 forsingle-sign-on support (SSO), enabling PaperCut NG/MF to integrate with external Identity Providers (IdPs) such as Microsoft Entra ID, Okta, and Ping Federate. This allows System Administrators to provide a consistent login flow and leverage IdP security features, including Multi-Factor Authentication (MFA), across all PaperCut touchpoints to significantly enhance environment security. [PO-4158], [PO-638]
Unified Authentication
We have redesigned the authentication architecture to provide a persistent “sign-in once” experience across the login web interfaces,Print Deploy, and the User Client. This reduces login fatigue for users and simplifies identity management for System Administrators by maintaining a single authenticated session across the platform.
EOL Device Management
To bolster environment security,PaperCut MF 26.0+ disables legacy End-of-Life(EOL) devices by default. During the upgrade, administrators will need to acknowledge this change, as your end-of-life devices will be disabled. If required, you can re-enable support for these device types via a toggle inOptions > Advanced(subject to a risk disclaimer and System Log entry). Once re-enabled, legacy devices will resume communication, and new end-of-life devices can be created (not recommended). Persistent “EOL” status banners and indicators will remain in the admin interface to help identify hardware that might require replacement. [PO-3930]
Fixes
Fixed an issue where logging out of the Mobile Print Release or Web Client interface could trigger an unintended background login request. [PO-1411]
We have introduced a refreshed, modern user interface for supported embedded MFDs, providing a consistent experience aligned with the PaperCut Hive interface. This update simplifies the user experience at the device, making it more intuitive for end-users. For new installations of PaperCut MF v26.0, the Modern UI is enabled by default. For upgraded systems, the Classic UI is retained, allowing System Administrators to transition devices to the Modern UI at their own pace viaOptions > General > Device Options.[CDSS-6054]
Fixes
HP OXP:Fixed an issue on HP devices where the native HP footer was visible when using the ‘Modern Embedded Interface’, preventing the PaperCut MF application from displaying in full screen. [CDSS-7082]
Xerox EIP 1.5+:
Fixed an issue where ‘Select Account’ list shows accounts by name when the select ‘By Code’ is set as default. [CDSS-7059]
Fixed an issue where an incorrect device status was displayed if invalid administrative credentials were provided during installation. [CDSS-6899]
Sharp OSA N2:Fixed an issue where the macOS printer auto-configuration tool failed to run on certain versions of macOS. [CDSS-7042]
Security
PaperCut NG/MF Version 26 includes upgrades of core dependencies and several third-party libraries. [PO-3782], [PO-4156], [PO-3511], [PO-4227], [PO-3567], [PO-4224], [PO-4063], [PO-4109], [PO-4277]
Significant improvements to internal user authentication speed. The hash encode strength was set too high. The default is now 12. Admins can change the strength in the security.properties file by editing user.internal.hash-encode.strength to a value between 4 and 31. [CDSS-6543]
Other notes
* indicates these devices require installing an updated version of the embedded software to access new features and fixes.