%PDF- %PDF-
Direktori : /backups/router/usr/local/opnsense/changelog/ |
Current File : //backups/router/usr/local/opnsense/changelog/24.1.7.htm |
<p>Hey,</p><p>Python was updated to version 3.11 along with the usual reliability patches in the core, plugins and third party software.</p><p>At the moment we are working on removing most of the Phalcon framework dependencies which have the side effect of speeding up the MVC/API bits. The new dashboard is also taking shape. Try it on the development version if you can and let us know what you think.</p><p>Here are the full patch notes:</p><p><ul><li>system: fix maximum log file size being ignored when there is only one file</li><li>system: make log rotate action available to Cron</li><li>system: remove get_current_theme() and improve static page templating</li><li>system: move radvd and rtsold to system log where they belong</li><li>system: deny access to .core files from web GUI and disable core dumps by default</li><li>system: adjust log levels in Google Drive backup</li><li>system: prevent out of memory on gateways migrations</li><li>interfaces: give DAD another second of delay to finish for the IPv6 renew</li><li>interfaces: reword the gateway selector default and help text to describe its function more accurately</li><li>ipsec: allow the equal sign for identity parsing in connections</li><li>isc-dhcp: make private consumers actually private where it matters</li><li>kea-dhcp: generate JSON payload from model</li><li>kea-dhcp: fix field separator for subnet domain search (contributed by KitKat31337)</li><li>openvpn: fix "attempt to read property..." in status page</li><li>openvpn: safeguard config access in updown_event.py</li><li>wireguard: pass endpoint to validator to avoid invalid QR code errors on mobile app</li><li>wireguard: add MTU when set on the instance</li><li>backend: allow to query multiple sysctl queries at once</li><li>mvc: pass isFieldChanged() to children in ContainerField</li><li>mvc: replace \Phalcon\Filter\Validation\Exception with \OPNsense\Base\ValidationException wrapper</li><li>mvc: extend model implementation to ease legacy migrations</li><li>mvc: change exception handling in runMigrations() to avoid mismatches in attributes being silently ignored</li><li>mvc: refactor grid search to fetch descriptive values from the model instead of trying to reconstruct them</li><li>mvc: replace array_map+strval for loop with cast to preserve execution time in BaseListField</li><li>ui: fix bootgrid parsing of timestamp</li><li>ui: improve tokenizer paste behaviour</li><li>plugins: os-acme-client 4.3[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/security/acme-client/pkg-descr">1</a>]</li><li>plugins: os-caddy 1.5.5[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/www/caddy/pkg-descr">2</a>]</li><li>plugins: os-crowdsec 1.0.8[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/security/crowdsec/pkg-descr">3</a>]</li><li>plugins: os-freeradius 1.9.23[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/net/freeradius/pkg-descr">4</a>]</li><li>plugins: os-frr 1.40[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/net/frr/pkg-descr">5</a>]</li><li>plugins: os-relayd 2.9 moves validation to model where it belongs</li><li>plugins: os-shadowsocks 1.1 adds transport mode option (contributed by xabbok255)</li><li>plugins: os-squid workaround for broken OpenSSL legacy provider handling</li><li>plugins: os-telegraf 1.12.11[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.1/net-mgmt/telegraf/pkg-descr">6</a>]</li><li>ports: libpfctl 0.11</li><li>ports: libucl 0.9.2</li><li>ports: lighttpd 1.4.76[<a target="_blank" href="https://www.lighttpd.net/2024/4/12/1.4.76/">7</a>]</li><li>ports: php 8.2.19[<a target="_blank" href="https://www.php.net/ChangeLog-8.php#8.2.19">8</a>]</li><li>ports: pecl-mcrypt 1.0.7</li><li>ports: python 3.11.9[<a target="_blank" href="https://docs.python.org/release/3.11.9/whatsnew/changelog.html">9</a>]</li><li>ports: strongswan 5.9.14[<a target="_blank" href="https://github.com/strongswan/strongswan/releases/tag/5.9.14">10</a>]</li><li>ports: suricata 7.0.5[<a target="_blank" href="https://suricata.io/2024/04/23/suricata-7-0-5-and-6-0-19-released/">11</a>]</li><li>ports: syslog-ng 4.7.1[<a target="_blank" href="https://github.com/syslog-ng/syslog-ng/releases/tag/syslog-ng-4.7.1">12</a>]</li><li>ports: unbound 1.20.0[<a target="_blank" href="https://nlnetlabs.nl/projects/unbound/download/#unbound-1-20-0">13</a>]</li></ul></p><p>A hotfix release was issued as 24.1.7_4:</p><p><ul><li>monit: fix referential constraint issue when dependency is removed</li><li>wireguard: move validation to correct spot when no instance address and peer address was provided</li><li>wireguard: also validate hostnames correctly in peer generator endpoint</li><li>backend: resolve deprecation warnings for sre_constants (contributed by MaxXor)</li><li>plugins: os-caddy fix for setup.sh not executing on a reload</li><li>plugins: os-crowdsec fix for LAPI mode startup problem</li><li>plugins: os-squid fix for another netaddr/ipaddr related migration issue</li></ul></p><p><br>Stay safe,<br> Your OPNsense team</p>