<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>On-Premises</title><link>https://docs.sysdig.com/en/release-notes/sysdig-on-premises-release-notes/</link><description>Recent content on On-Premises</description><language>en</language><lastBuildDate>Fri, 10 Apr 2026 16:42:38 +0200</lastBuildDate><image><url> https://docs.sysdig.com/icons/sysdig-horizontal.png</url><title>On-Premises</title><link>https://docs.sysdig.com/en/release-notes/sysdig-on-premises-release-notes/</link><description>Sysdig logo</description></image><item><title>On-Premises - 7.7.0 Release, April 2026</title><link>https://docs.sysdig.com/en/release-notes/sysdig-on-premises-release-notes/#7.7.0-release-april-2026</link><description>Direct upgrades are supported from version: 6.x, 7.x</description><content:encoded><![CDATA[<h3 id="upgrade-process">Upgrade Process</h3>
<p><strong>Direct upgrades are supported from version:</strong> 6.x, 7.x</p>

<p>For compatibility matrix, see <a href="https://github.com/draios/onprem-install-docs/tree/main#k8s-support-matrix">Kubernetes support matrix</a>. For installation and upgrade instructions, see <a href="https://github.com/draios/onprem-install-docs/tree/main/7.X/7.7.0#installation-overview">Installation overview</a>.</p>

<h3 id="sysdig-secure">Sysdig Secure</h3>
<h4 id="local-scanning-for-kubernetes-container-workloads">Local Scanning for Kubernetes Container Workloads</h4>
<p>Sysdig Secure now supports Local Scanning, a new deployment option for Sysdig Vulnerability Management that runs scanners directly on Kubernetes nodes and hosts to discover and analyze images in place, including ephemeral and non‑registry images. This reduces dependence on central registries, closes visibility gaps across complex environments, and makes it easier to scale vulnerability coverage. Local Scanning requires <a href="https://docs.sysdig.com/en/release-notes/linux-host-shield-release-notes/#local-scanning-for-kubernetes-container-workloads">Host Shield 14.5.0</a>) or later.</p>

<p>For more information, see <a href="https://docs.sysdig.com/en/sysdig-secure/local-scanning/">Local Scanning</a>.</p>

<h4 id="host-and-kubernetes-response-actions-in-automations">Host and Kubernetes Response Actions in Automations</h4>
<p>Automations triggered from Runtime Events now support the full set of response actions, enabling faster containment and forensics directly from detections:</p>

<ul>

<li>Kill container</li>

<li>Stop container</li>

<li>Pause container</li>

<li>Kill Process</li>

<li>File acquire</li>

<li>File quarantine</li>

<li>Kill Pod</li>

<li>Kubernetes Rollout restart</li>

<li>Kubernetes Volume snapshot</li>

<li>Kubernetes Get Logs</li>

<li>Kubernetes Network isolate</li>
</ul>


<p>For more information, see <a href="https://docs.sysdig.com/en/automations/#response-actions">Response Actions in Automations</a>.</p>

<h4 id="graph-search">Graph Search</h4>
<p>Graph Search introduces an intuitive query builder on top of our graph database, allowing users to explore relationships across their On-Premise environments and Kubernetes assets and quickly surface the security issues that matter most in their environments. For more information, see <a href="https://docs.sysdig.com/en/graph-search">Graph Search</a>.</p>

<h3 id="sysdig-platform">Sysdig Platform</h3>
<h4 id="on-prem-platform-version-in-ui">On-Prem Platform Version in UI</h4>
<p>You can now access the On-Prem platform version directly in the UI from the Version &amp; License page under Settings, making it easier for administrators to see which Sysdig On-Prem release is running.</p>]]></content:encoded><guid isPermaLink="false">7.7.0 Release, April 2026</guid></item><item><title>On-Premises - 7.6.0 Release, February 2026</title><link>https://docs.sysdig.com/en/release-notes/sysdig-on-premises-release-notes/#7.6.0-release-february-2026</link><description>Direct upgrades are supported from version: 6.x, 7.x</description><content:encoded><![CDATA[<h3 id="upgrade-process-1">Upgrade Process</h3>
<p><strong>Direct upgrades are supported from version:</strong> 6.x, 7.x</p>

<p>For compatibility matrix, see <a href="https://github.com/draios/onprem-install-docs/tree/main#k8s-support-matrix">Kubernetes support matrix</a>. For installation and upgrade instructions, see <a href="https://github.com/draios/onprem-install-docs/tree/main/7.X/7.6.0#installation-overview">Installation overview</a>.</p>

<h3 id="sysdig-secure-1">Sysdig Secure</h3>
<h4 id="runtime-detection-file-integrity-monitoring-fim">Runtime Detection: File Integrity Monitoring (FIM)</h4>
<p>A new runtime detection type, File Integrity Monitoring (FIM), is now available. FIM enables you to monitor file changes and create detection policies aligned with PCI DSS requirements 10.5.5 and 11.5. FIM monitoring requires <a href="https://docs.sysdig.com/en/release-notes/linux-host-shield-release-notes/2025-archive/#fim-detections">Host Shield version 14.3</a> or later.</p>

<p>For more information, see <a href="/en/sysdig-secure/fim-policy/">FIM Policies</a>.</p>

<h4 id="events-feed-customizable-columns">Events Feed: Customizable Columns</h4>
<p>You can now customize the columns displayed in the <strong>Events Feed</strong> to view relevant attributes directly in the event list, without opening individual events. For more information, see <a href="/en/events-feed#customize-columns">Events Feed</a>.</p>

<h4 id="risk-spotlight-in-use-support-for-non-kubernetes-containers">Risk Spotlight (In-Use) Support for Non-Kubernetes Containers</h4>
<p>Risk Spotlight (In-Use) prioritization now supports non-Kubernetes container workloads, including Docker and Podman containers running on Linux hosts protected by Sysdig Host Shield. This enhancement allows you to reduce vulnerability noise and prioritize remediation efforts for your entire Linux ecosystem by focusing on the vulnerabilities that are actively executable across your Linux container environments.</p>

<p>For more information, see <a href="/en/sysdig-secure/risk-spotlight/">Risk Spotlight</a>.</p>

<h4 id="changes-to-list-matching-policies-and-rules">Changes to List Matching Policies and Rules</h4>
<p>Creation of new List Matching Policies and Rules is no longer supported. Existing policies and rules continue to function and can still be modified.</p>

<p>For new detections, use Falco rules, which provide expanded detection capabilities and flexibility.</p>

<p>For more information, see <a href="/en/sysdig-secure/list_matching_policy/#convert-to-falco-rules">List Matching Policy</a>.</p>

<h4 id="zones-additional-filtering-operators">Zones: Additional Filtering Operators</h4>
<p>Two new filtering operators are available for Zones:</p>

<ul>

<li><code>is not</code></li>

<li><code>does not contain</code></li>
</ul>


<p>These operators enable more precise exclusion filtering for events and findings.</p>

<h3 id="sysdig-monitor">Sysdig Monitor</h3>
<h4 id="recurring-alert-silencing-rules">Recurring Alert Silencing Rules</h4>
<p>Alert silencing rules now support recurring schedules, allowing you to automatically mute alerts during defined maintenance windows (for example, daily or weekly). Silences can be applied to the entire infrastructure within the selected team scope.</p>

<p>For more information, see <a href="/en/sysdig-monitor/silence-alert-notifications/#configure-recurring-silence-rule">Configure Recurring Silence Rule</a>.</p>]]></content:encoded><guid isPermaLink="false">7.6.0 Release, February 2026</guid></item></channel></rss>