## [1.8.0] - 2026-06-30

### Removed
- Removed the `enginepool-downloads-prod.azureedge.net` hostname from the `storage` entry. The remaining `enginepoolupdateprod.blob.core.windows.net` and `downloads.engine-pool.services.delinea.app` hostnames continue to serve engine storage and binary downloads (#741572)

## [1.7.0] - 2026-06-24

### Added
- Added `downloads.marketplace.delinea.com` to the `platform_marketplace` entry so customers can allowlist Platform Marketplace downloads. Protocol `tcp`, port `443` (#738661)

## [1.6.0] - 2026-06-11

### Removed
- Removed all `*.cloudamqp.com` hostnames from `platform_engine_messaging` across all regions (`us`, `au`, `ca`, `eu`, `sea`, `uae`, `uk`). The CA-signed `messagingXX-<region>.engine-pool.services.delinea.app` hostnames are now the only public hostnames for Platform Engine messaging endpoints (#735624)

### Changed
- Refreshed the `ipv4` list in `platform_engine_messaging` for every region so that it matches the A records currently published for the remaining `messagingXX-<region>.engine-pool.services.delinea.app` hostnames. IPs were derived by resolving each hostname through three independent public DNS resolvers (1.1.1.1, 8.8.8.8, 9.9.9.9) and confirming the answers were identical. Customers that allowlist by IP should update their firewall rules with the new ranges; hostname-based allowlisting is preferred because the underlying IPs may change without notice (#735624)
- Updated the `platform_engine_messaging` description to clarify that the `ipv4` list is a point-in-time snapshot of the hostnames' A records and that hostname-based allowlisting is preferred

## [1.5.0] - 2026-06-05

### Changed
- Renamed `webhooks` entry id to `platform_egress` to accurately reflect that these IP ranges represent all outbound traffic from the Delinea Platform tenant, not just webhook deliveries. Updated description to clarify that these ranges are the source of webhook deliveries, Entra ID Enterprise App service principal sign-ins for SSO, and other outbound API calls originating from the platform tenant (#731130)

## [1.4.0] - 2026-04-13

### Added
- Added `metallic-plum-duck.rmq5.cloudamqp.com` hostname to `platform_engine_messaging` for the `sea` region

## [1.3.0] - 2026-04-07

### Removed
- Removed port 5671 (AMQP) from `platform_engine_messaging` — AMQP fallback has been disabled; only port 443 (WebSocket) is required

## [1.2.0] - 2026-04-07

 ### Updated
 - SignalR marked as optional 

 ## [1.1.0] - 2026-04-06

 ### Added
 - EU CA-signed TCP relays 

 ## [1.0.0] - 2026-02-26

 ### Added
 - Initial release of network-requirements.json
