%PDF- %PDF-
Direktori : /proc/self/root/backups/router/usr/local/opnsense/changelog/ |
Current File : //proc/self/root/backups/router/usr/local/opnsense/changelog/21.7.r2.htm |
<p>Hi there,</p><p>For more than 6 and a half years, OPNsense is driving innovation through modularising and hardening the open source firewall, with simple and reliable firmware upgrades, multi-language support, fast adoption of upstream software updates as well as clear and stable 2-Clause BSD licensing.</p><p>We thank all of you for helping test, shape and contribute to the project! We know it would not be the same without you. <3</p><p>Here are the full patch notes:</p><p><ul><li>system: prevent use of client certificates in web GUI</li><li>system: hide far gateway option for IPv6</li><li>system: isvalidpid() is not required for a single killbypid()</li><li>system: fix PHP 7.4 deprecated warning in IPv6 library</li><li>system: do not split XMLRPC password into multiple pieces</li><li>system: enable group sync for LDAP servers that do not return memberOf (contributed by rdd2)</li><li>interfaces: deprecate SLAAC addresses on linkdown</li><li>firewall: possibility to filter nat/rdr action in live log</li><li>firewall: use permanent promiscuous mode for pflog0</li><li>dhcp: assorted improvements surrounding dhcpd_staticmap() for real world operation</li><li>firmware: static template for firmware upgrade message</li><li>installer: assorted wording improvements</li><li>shell: fix IPv4 /31 assignment</li><li>unbound: add "unbound check" backend action</li><li>unbound: allow to retain cache on service reload</li><li>unbound: fix /var MFS dilemma for DNSBL after boot</li><li>unbound: remove deprecated custom options setting</li><li>rc: opnsense-beep melody database directory</li><li>plugins: os-acme-client 2.6[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/21.7/security/acme-client/pkg-descr">1</a>]</li><li>plugins: os-freeradius 1.9.15[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/21.7/net/freeradius/pkg-descr">2</a>]</li><li>plugins: os-haproxy 3.4[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/21.7/net/haproxy/pkg-descr">3</a>]</li><li>plugins: os-nextcloud-backup 1.0</li><li>plugins: os-nginx Phalcon 4 fixes</li><li>plugins: os-radsecproxy 1.0 (contributed by Tobias Boehnert)</li><li>plugins: os-tor Phalcon 4 fix</li><li>plugins: os-zabbix-agent 1.9[<a target="_blank" href="https://github.com/opnsense/plugins/blob/stable/21.7/net-mgmt/zabbix-agent/pkg-descr">4</a>]</li><li>src: separately log NAT and firewall rules in pf(4)</li><li>src: libcasper: fix descriptors numbers[<a target="_blank" href="https://www.freebsd.org/security/advisories/EN-21:19.libcasper.asc">5</a>]</li><li>src: linux: prevent integer overflow in futex_requeue[<a target="_blank" href="https://www.freebsd.org/security/advisories/EN-21:22.linux_futex.asc">6</a>]</li><li>ports: clog 1.0.2 fixes garbage header write on init</li><li>ports: php 7.4.21[<a target="_blank" href="https://www.php.net/ChangeLog-7.php#7.4.21">7</a>]</li><li>ports: suricata 5.0.7[<a target="_blank" href="https://redmine.openinfosecfoundation.org/versions/166">8</a>]</li></ul></p><p>Known issues and limitations:</p><p><ul><li>NextCloud backup feature moved from core to plugins. Please reinstall if needed.</li><li>IPsec identities are now set using their explicit type. See StrongSwan documentation[<a target="_blank" href="https://wiki.strongswan.org/projects/strongswan/wiki/IdentityParsing">9</a>] for the old automatic defaults.</li><li>Unbound custom options setting has been discontinued. Local override directory /usr/local/etc/unbound.opnsense.d exists.</li></ul></p><p>Please let us know about your experience!</p><p><br>Stay safe,<br> Your OPNsense team</p>