New Features & Enhancements
Enhanced Admin Experience for Client Connectivity Policy at Scale: Easily manage complex rulebases with more speed, flexibility, and control across the Client Connectivity policy. Enhancements include:
Concurrent editing – Multiple admins can modify policies in parallel without conflicts
Improved performance – Policy page is more responsive, especially for a large number of rules
GraphQL API support – Use the ClientConnectivityAddRule API to manage the Client Connectivity policy
BGP Inbound Route Filters for IPsec and Cloud Interconnect: IPsec and Cloud Interconnect sites now support inbound route filters, providing granular control and improved scalability to accept or drop BGP routes.
You can use CIDR lists or BGP communities to determine which routes to filter
Previously, this was available only for Socket sites
Click here to watch a video recording of this feature
New Release for macOS Client v5.10: During the week of August 24, 2025, we are starting to roll out the new macOS Client version 5.10. This version includes:
Remote internet security with one-time authentication:One-time authentication enables users to always have connectivity and protection with minimal interaction with the Client. Previously supported only for the Windows Client. To see if this impacts your users, read our FAQ.
An updated user interface that now includes more connectivity details
Performance enhancements and bug fixes
DEM Enhancements: We added the following improvements to the Experience Monitoring page:
The Remote Users and Office Users tabs provide the following new data columns:
Device Name - To help you monitor activity for the same user across multiple devices
Email - To distinguish between different users with the same name, each user’s email address is shown
For better data granularity, metrics that previously were limited to 5-minute buckets now report data in 1-minute buckets
Applies to Wi-Fi, CPU, and LAN Gateway metrics
New PoP Location API Query: The PoPLocationList query retrieves a list of all the PoP Locations in the Cato Cloud with details such as name and country. For example, you can use this API to configure Network Rules (such as traffic routing) or set a Socket to use a preferred PoP location.
CMA Enhancement to the Users Page: A new column indicating the Authentication Status is available in the Users Directory tab. This indicates whether your users have successfully set up their authentication.
PoP Announcements
New Cato PoPs will become available soon in the following locations:
Fortaleza, Brazil
Rome, Italy
Note:
Content described in this update is gradually rolled out to the Cato PoPs over a two-week period. In addition, new features are gradually activated in the Cato Management Application over the same two-week rollout period as the PoPs. For more information, see this article. See the Cato Status Page for more information about the planned maintenance schedule.