Skip to content

Webkassa iikoFront adapter 0.11.54-beta

Pre-release
Pre-release

Choose a tag to compare

@shtefanov shtefanov released this 24 Jul 12:26

Webkassa iikoFront adapter 0.11.54-beta

This beta adds the operator-facing one-click update flow prepared in
0.11.53-beta and fixes the Windows ACL problem found during its pilot
installation.

Added

  • An Установить button in Webkassa settings when the trusted beta manifest
    reports a newer version.
  • A separate UAC-elevated updater launcher that validates the manifest,
    package size and SHA-256 before closing iikoFront and installing the package.
  • UPDATE-WEBKASSA.cmd as a manual fallback launcher.

Fixed

  • Runtime ACLs no longer depend on the Windows administrator account that
    approved the installer or updater UAC prompt.
  • All local Windows users receive read/execute access to the installed plugin,
    setup utility and updater.
  • Plugin runtime directories use the language-independent BUILTIN\Users
    SID for Modify access, preventing Access denied when iikoFront runs under
    a different Windows account.

Security boundary

  • Configuration changes still require UAC.
  • Secrets, sidecar data, logs, backups and update packages remain writable only
    by Administrators or SYSTEM.
  • The updater retains trusted-host HTTPS, manifest validation, package-size
    validation, SHA-256 validation, safe ZIP extraction, backup and rollback.

Validation

  • Gateway contract tests passed.
  • Repository diff checks passed.
  • ZIP CRC and package layout were rechecked.
  • VERSION, package metadata, Manifest.xml identity/API V9, package size and
    SHA-256 were independently rechecked before publication.
  • The package contains both the UAC PowerShell launcher and the manual CMD
    fallback.

Package

Resto.Front.Api.Webkassa.V9-0.11.54-beta-20260716-001634.zip
size: 405750 bytes
sha256: a639e2a2c8e91db468a176eb1fc9dd23b8b9826322c38f1a63c8619eb1ea2ee8
minimum iikoFront: 9.5
iikoFront API: V9

Known issues

  • Stable unattended update remains blocked: detached package-signature
    verification with a pinned public key is not available.
  • loginPasswordOnly is not confirmed for Webkassa API v4 production; use
    apiKeyAndLoginPassword for the supported pilot configuration.

Update

Finish all sales and fiscal operations, open Webkassa settings and press
Установить. Confirm Windows UAC, wait for the updater to close iikoFront,
validate the package, create a backup and install the release. Start iikoFront
again after the updater reports success.

Rollback

Stop iikoFront and use the updater/installer rollback path to restore the
previous plugin-folder backup or reinstall 0.11.52-beta. Preserve
%ProgramData% configuration, DPAPI secrets, fiscal stores and queues; do not
delete operational data as part of rollback.

This is a beta prerelease for demo and pilot terminals. It does not publish or
promote the stable channel.