Use the approved 4.1.0 installer for your edition and confirm the version shown in the installed application. Published package availability is shown in Downloads & beta access.
Storage & TrueNAS Guide
Authentication choices
| Mode | ITAuditFactory requires |
|---|---|
| API key only | Management address + encrypted API key. API-key owner/account is optional evidence metadata and is not required for authentication. |
| Username + password | Service account or root username and encrypted password where the appliance permits it. |
| SSH service account + key/agent | SSH username and key/agent configuration; passwords are never placed on native SSH command lines. |
Legacy compatibility
Saved profiles labeled Service account + API key or REST API token remain compatible aliases for API-key authentication.
TLS
Strict certificate validation is the default. A per-device Allow untrusted/private TLS certificate for read-only collection only exception can permit evidence collection, but the certificate problem remains a warning/Needs Review; the exception never converts certificate health to PASS.
TrueNAS protocol note
The collector must report protocol/API availability as evidence. If the configured TrueNAS release does not support a requested endpoint, report NO_DATA/collection limitation rather than fabricating PASS/FAIL.
Troubleshooting
Use Live Audit Status to confirm worker start, Storage profile load, authentication mode, endpoint attempt, and returned error. Re-save the encrypted secret if the handoff cannot be opened under the current Windows user.