SOT
    • Introduction
    • Release notes
      • 2026.01.01
      • 2025.03.00
        • RC2
        • RC1
      • 2025.02.01
        • SP10
        • SP9
        • SP8
        • SP7
        • SP6
        • SP5
        • SP3
        • SP2
        • SP1
      • 2025.02.00
        • SP25
        • SP24
        • SP23
        • SP22
        • SP21
        • SP20
        • SP19
        • SP18
        • SP17
        • SP16
        • SP15
        • SP14
        • SP13
        • SP12
        • SP11
        • SP10
        • SP9
        • SP8
        • SP7
        • SP6
        • SP5
        • SP4
        • SP3
        • SP2
        • SP1
    • Getting started
      • Getting access
      • Login
      • Main screen
      • Welcome dashboard
      • Detecting process anomalies
      • Analyzing data and detecting event sequences
      • Analyzing KPIs
    • How-tos
      • Monitors on production lines
        • Configuring the automatic login in the Smart Operations Toolkit
        • Configuring the automatic login to the identity provider with the Windows user
        • Setting cookies in the browser
        • Configuring the automatic logout in the Smart Operations Toolkit
        • Configuring the command line parameters in the browser
        • Known limitations and troubleshooting
      • Try out the APIs
    • Integration guide
      • Underlying concepts
        • Underlying concepts
        • Onboarding
        • Security
        • Communication
      • Integration journey
      • Example integrations
        • Node-RED
        • Power BI
      • Overview of APIs
    • Operations manual
      • Release
      • System architecture and interfaces
      • System requirements
        • Cluster requirements
        • Database requirements
        • Support for service meshes
      • Migration from previous SOT versions
      • Setup and configuration
        • Deployment process
        • Deployment with Helm
        • Advanced configuration
        • Integrations with external secret management solutions
        • Context paths
        • Service accounts and authorizations
        • Validation tests
        • Setup click once
        • Database user setup and configuration
      • Start and shutdown
      • Regular operations
        • User management & authentication
        • How to add additional tenants
        • How to access the cluster and pods
        • Automatic module role assignments in customer tenants
        • User credentials rotation - database and messaging secrets
      • Failure handling
        • Failure handling guidelines
        • Ansible operator troubleshooting
        • How to reach BCI for unresolved issues
      • Backup and restore
      • Logging and monitoring
        • The concept and conventions
        • ELK stack
        • ELK configurations aspects for beats
        • Proxy setup for ELK
        • Health endpoints configurations
      • Known limitations
      • Supporting functions
      • Security recommendations
        • Kubernetes
        • Security Best Practices for Databases
        • Certificates
        • Threat detection tools
    • Infrastructure manual
      • Release
      • System architecture and interfaces
        • RabbitMQ version support
      • System requirements
      • Migration from previous SOT infrastructure versions
      • Setup and configuration
        • Deployment process of the SOT infrastructure Helm chart
        • Deployment with Helm
      • Start and shutdown
      • Regular operations
        • RabbitMQ
          • User management & authentication
          • Disk size change
          • Upgrade performance with high performant disk type
          • Pod management policy
      • Failure handling
        • Connection failures
        • Data safety on the RabbitMQ side
        • Fix RabbitMQ cluster partitions
        • Delete unsynchronized RabbitMQ queues
        • How to reach BCI for unresolved issues
      • Backup and restore
      • Logging and monitoring
      • Known limitations
    • Training
    • Glossary
    • Further information and contact
Smart Operations Toolkit
  • Smart Operations Toolkit
    • Deviation Processor
    • Multitenant Access Control
    • Notification Service
    • Ticket Management
    • Web Portal
  • Shopfloor Management
    • Andon Live
    • KPI Reporting
    • Operational Routines
    • Shift Book
    • Shopfloor Management Administration
  • Product & Quality
    • Process Quality
    • AI Services
  • Machine & Equipment
    • Condition Monitoring
    • Device Portal
  • Enterprise & Shopfloor Integration
    • Information Router
    • Master Data Management

SOT Learning Portal

  • Smart Operations Toolkit
  • Release notes
  • 2026.01.01

2026.01.01

Date:

08.07.2026

Change classification:

2 - Major change

Artifacts
Helm charts

bcidockerregistry.azurecr.io/ias-release/helmchart/ias:202601.0.0-rev1
bcinexeediasregistry.azurecr.io/ias-release/helmchart/ias:202601.0.0-rev1

MESPKGs

\\BOSCH.com\DfsRB\DfsDE\DIV\BCI\Nexeed\IAS\Products\V2026.01.00\2026.01.00.00

Service descriptions
Operations manuals

NEXEED Learning Portal

User manual and developer guides

NEXEED Learning Portal

General notes

  • We are proud to announce the release of the Smart Operations Toolkit 2026.01.01.

  • This release combines the Nexeed IAS Distribution 2026.01.00 modules with the major releases of the self-developed modules AI-Services, Condition Monitoring, Information Router, and Process Quality.

AI-Services 2.0.0

Change classification:

1 - Minor change

Artifacts:

ai:2.0.0-rev28640187292

This release focuses on resolving UI version display discrepancies, updating core dependencies, strengthening system observability, and applying critical security updates.

Fixed

  • Portal UI
    Resolved a version mismatch so the correct software version is accurately displayed to users.

Changed

  • Enhanced observability
    Updated telemetry monitoring components for more accurate backend diagnostics and performance tracking.

  • Refined testing methodology
    Integrated a new system-testing approach and updated code-quality rules to ensure long-term stability and fewer regressions.

Security

  • Patched potential security vulnerabilities by upgrading essential third-party libraries across services (including Lodash-es, Hono, and deepdiff).

  • Standardized automated security scanning under the Mend framework.

Condition Monitoring 5.0.0

Change classification:

1 - Minor change

Artifacts:

cm:5.0.0-rev28594743050

This release introduces advanced analytical capabilities with the implementation of Nelson Rules, enhances data-stream security via Kafka SASL, and addresses various platform maintenance and vulnerability fixes.

Added

  • Nelson Rules
    Integrated Nelson Rules to help identify non-random patterns or out-of-control conditions in process data.

  • Updated user documentation with clearer overviews and precise examples to guide users on applying Nelson Rules effectively.

Security

  • Added SASL (Simple Authentication and Security Layer) authentication support for Kafka integrations, ensuring safer data streaming and messaging.

  • Resolved known security vulnerabilities (CVEs) across system dependencies.

  • Consolidated security scanning under a unified framework.

Information Router 3.0.0

Change classification:

1 - Minor change

Artifacts:

connectivity:3.0.0-rev28643280634

This release focuses on streamlining the system architecture by removing legacy modules, introducing new data synchronization capabilities, upgrading frontend frameworks, and applying critical security updates.

Added

  • Master Data Management (MDM) Sync
    Introduced a new project module for MDM synchronization, enhancing data consistency across environments.

Changed

  • User interface modernization
    Upgraded the underlying Angular framework and refined formatting to deliver better UI performance and responsiveness.

  • Aligned global environment and logging configurations to meet standard system standards, and improved cache handling (TenantCache) and Lock Manager performance.

Removed

  • Cleaned up the codebase by removing obsolete orchestration references, legacy asynchronous communication modes, and deprecated OpConXml modules.

Security

  • Upgraded critical third-party dependencies (such as Handlebars) to patch known security vulnerabilities (CVEs).

  • Fully integrated advanced security analysis (CodeQL and Mend scanning) for both frontend and backend modules to proactively secure code.

Process Quality 4.0.0

Change classification:

1 - Minor change

Artifacts:

pqm:4.0.0-rev28605566930

This release focuses on updating core frameworks, patching security vulnerabilities, and improving overall system stability.

Changed

  • Framework upgrade
    Upgraded the user interface to Angular 21 for improved responsiveness and long-term stability.

  • Refined background deployment workflows for faster, more reliable updates with minimal disruption.

Fixed

  • Resolved frontend issues for a more stable visual experience across all user workflows.

Security

  • Resolved security vulnerabilities (CVEs) by updating key third-party libraries, including Angular, Spring Boot, Jackson, and Lodash.

  • Eliminated potential injection risks by removing outdated query libraries.

  • Strengthened secure web server (Nginx) configurations and updated the underlying Java base image to the latest version.

  • Updated official open-source license disclosure documents to reflect current software versions.

Multitenant Access Control 1.39.1

Change classification:

1 - Minor change

Artifacts:

macma:1.39.1-rev2

Fixed

  • Applies a consistent 24px padding between the Commandbar and the Table across all views to improve layout consistency (382153)

  • IdP Manager users can now view the defined group mappers in the mappers list (read-only) (578592)

  • Module IDs are resolved correctly when navigating back and forth in the contract wizard (579357)

  • Replaced the reactive WebClient with a synchronous RestClient to restore stability of MACMA Core 1.39 under Spring Boot 4; cache executor pools were improved and explicit timeouts added to prevent stalls (581639)

Security

  • Applied security hotfixes to Keycloak 26.4.7-macma 8 to fix CVE-2026-11800 (581953) and CVE-2026-9086 (581954)

Master Data Management (MDM) 9.2.2

Change classification:

1 - Minor change

Artifacts:

mmpd:9.2.2-rev2

Added

  • Per-Logger log-level configuration with defaults (SECURITY / LIFE-CYCLE loggers default to INFO, others to WARN); a WARN is logged if SECURITY or LIFE-CYCLE is set away from INFO (570084)

  • Facility deletion is now controlled by user roles rather than a Helm variable, enabling privileged users to delete facilities without OPS involvement (575959)

  • Resolved locationId is now shown as a read-only text field with a Copy button and updates automatically when OpConLocationString changes (575965)

  • Device Type and Facility relationships are now visible on Error Definitions and Measuring Points (581093)

  • Filtering by Device on the Error Definitions and Measuring Points pages (581095)

Changed

  • Equipment topology view refreshed with clearer icons, a redesigned layout, and a new Expand Full Subtree action; auto-arrange yields a left-to-right tree and preserves child expansion state (578747)

Fixed

  • Stability improvements for the MMPD → MDM migration process prevent timeout during error code migration (569725)

  • Adjusted CultureCode and LanguageCode sizes to align with BCP-47 (language code 2 chars, culture code up to 10 chars) (571051)

  • Material type name now translated as "Material Type Name" instead of "Material Name" (574492)

  • Prevent automatic recentering when expanding a hierarchy so the current work area remains visible (575772)

  • Fixed stored HTML injection pentest finding (2026.01) (578240)

Notification Service 1.33.0

Change classification:

1 - Minor change

Artifacts:

notification:1.33.0-rev1

Added

  • Notifications now honor per-topic opt-out preferences defined by modules, delivering messages only to users who have not opted out; topic registrations apply across all tenants.

  • Notification emails now include direct View and Unsubscribe links for the related topic, letting users adjust topic-specific settings from the email footer.

  • Users can test their notification channels (Email or Web Push) from Notification Settings to verify configuration.

Changed

  • OpenTelemetry tracing now uses parent-based sampling (default 10 %, operator-configurable) for complete end-to-end visibility across services.

  • Default log levels standardized: SECURITY and LIFE-CYCLE logs use INFO, other logs use WARN, with a warning when overrides weaken security-critical logging.

Fixed

  • API enforces unique recipient emails, preventing duplicate recipients through the user-contact-details endpoint.

  • Notifications are no longer sent to deleted MACMA users.

  • BaseSync preserves local entities during transient remote API errors instead of deleting local data.

  • Direct notifications and templates now preserve Unicode (umlauts, accents, emojis) in subject and body.

  • Email distribution matches the selected resolution group.

Web Portal 5.26.3

Change classification:

1 - Minor change

Artifacts:

portal:5.26.3-rev1

Fixed

  • Banner now displays immediately when showBanner is called, without needing manual change detection (581472)

  • Toast notifications are now displayed at the bottom center of the screen (580244)

  • Footer configuration changes apply immediately without reloading the page (580245)

  • Last Accessed and Last Modified timestamps now respect the user’s profile time zone (581139)

Andon 2601.0.5

Change classification:

1 - Minor change

Artifacts:

smessentials:2601.0.5-rev2

General notes

  • Security patches.

KPI Reporting 2601.0.5

Change classification:

1 - Minor change

Artifacts:

smessentials:2601.0.5-rev2

General notes

  • Security patches.

Shift Book 2601.0.5

Change classification:

1 - Minor change

Artifacts:

smessentials:2601.0.5-rev2

General notes

  • Security patches.

Fixed

  • Fixed a regression bug that blocked editing downtimes in the hierarchical calendar.

  • Fixed editing of the downtime’s additional information in finalized shifts in some edge cases.

  • Fixed an issue in the creation of dynamic resources for fine-grained access.

The smessentials chart (2601.0.5-rev2) also delivers the deployed SM Administration and SM Config Bridge components; no separate change entries were published for those.

Operational Routines 2601.0.5

Change classification:

1 - Minor change

Artifacts:

smor:2601.0.5-rev1

Fixed

  • Fixed the template editor so the main content is no longer overlapped by the detail view; the main view updates correctly when the detail view is opened programmatically, preventing clipping and unwanted scrollbars (578389)

  • Made complete routine tiles in the routine overview clickable again.

Deviation Processor 1.15.1

Change classification:

1 - Minor change

Artifacts:

smdp:1.15.1-rev1

Fixed

  • Removed the generic MDM error text from the sustainability view to prevent misleading error messages (556480)

  • Fixed sync failures caused by long MDM error definitions; syncing now succeeds even when MDM text exceeds internal length limits, and errors in one type no longer block other synchronizations (570649)

Ticket Management 7.22.2

Change classification:

1 - Minor change

Artifacts:

tm:7.22.2-rev1

Added

  • Users can choose which ticket-change notifications they receive (via email and web push); notifications include the update category to reflect their preferences (564847)

Changed

  • OpenTelemetry tracing captures complete traces across services; the default sampler is parentbased_traceidratio at 10 %, operator-configurable via the Helm chart (570073)

Fixed

  • Deleting a filter in the dialog now preserves the current filter when Cancel is pressed (443834)

  • Reselecting the facility filter now resets the device list consistently and keeps filtering aligned with the backend (448073)

Contents

© Robert Bosch Manufacturing Solutions GmbH 2023-2026, all rights reserved

Changelog Corporate information Legal notice Data protection notice Third party licenses