%PDF- %PDF-
Direktori : /backups/router/usr/local/opnsense/changelog/ |
Current File : //backups/router/usr/local/opnsense/changelog/24.7.9.htm |
<p>Dear all,</p><p>This is a minor update that further tweaks the trust store integration and firmware updates tying into it although in practice it does not change the current behaviour from a user perspective. If something is not behaving as usual afterwards please let us know.</p><p>A new plugin has been added to finally allow proxying ND messages for those people stuck on a single /64 prefix delegation. Otherwise it has been pretty quiet as you can see. But we will be back soon. ;)</p><p>Here are the full patch notes:</p><p><ul><li>system: revert CRLs in bundles as the default bundles will be removed in 25.1</li><li>system: migrate authoritative bundle location to /usr/local/etc/ssl/cert.pem</li><li>system: flush the global OpenSSL configuration to /etc/ssl/openssl.cnf as well</li><li>system: ignore gateway monitor status on boot when setting up routes</li><li>system: fix IP address validation not being displayed in the gateway form</li><li>system: add a "time-loop" around authentication for failed attempts</li><li>reporting: ISO dates and logical ranges in health graphs (contributed by Roy Orbitson)</li><li>interfaces: kill defunct route-to states with the stale gateway IP</li><li>firewall: make loopback traffic stateful again to fix its use with syncookie option</li><li>firewall: add 'Action' property to list of retrieved rules</li><li>firewall: use UUIDs as rule labels to ease tracking</li><li>firmware: refactor for generic config.sh use and related code audit</li><li>firmware: move the bogons update script to the firmware scripts, improve logging messages and use config.sh</li><li>firmware: opnsense-version: restored pre-2019 default output format (contributed by TotalGriffLock)</li><li>openvpn: add Require Client Provisioning option for instances</li><li>backend: add 'configd environment' debug action</li><li>mvc: always do stop/start on forced restart</li><li>mvc: remove obsolete sessionClose() use in Base, Firmware, Unbound and WireGuard controllers</li><li>plugins: os-debug 1.6</li><li>plugins: os-ndproxy 1.0 adds an IPv6 Neighbour Discovery proxy</li><li>plugins: os-wazuh-agent 1.2[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/24.7/security/wazuh-agent/pkg-descr">1</a>]</li><li>ports: py-duckdb 1.1.3[<a target="_blank" href="https://github.com/duckdb/duckdb/releases/tag/v1.1.3">2</a>]</li></ul></p><p>A hotfix release was issued as 24.7.9_1:</p><p><ul><li>system: reverted "time-loop" patch as it makes Local+TOTP authentication fail</li></ul></p><p><br>Stay safe,<br> Your OPNsense team</p>