blob: 5ffd39c623fe25eebda73080c68fe5e9980c0f82 [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Willy Tarreau35dc13f2021-11-02 18:05:41 +010042021/11/02 : 2.5-dev12
5 - MINOR: httpclient: support payload within a buffer
6 - MINOR: httpclient/lua: support more HTTP methods
7 - MINOR: httpclient/lua: return an error when it can't generate the request
8 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
9 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
10 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
11 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
12 - CLEANUP: lua: Use a const address to retrieve info about a connection
13 - MINOR: connection: Add function to get src/dst without updating the connection
14 - MINOR: session: Add src and dst addresses to the session
15 - MINOR: stream-int: Add src and dst addresses to the stream-interface
16 - MINOR: frontend: Rely on client src and dst addresses at stream level
17 - MINOR: log: Rely on client addresses at the appropriate level to log messages
18 - MINOR: session: Rely on client source address at session level to log error
19 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
20 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
21 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
22 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
23 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
24 - MEDIUM: backend: Rely on addresses at stream level to init server connection
25 - MEDIUM: connection: Assign session addresses when PROXY line is received
26 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
27 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
28 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
29 - DOC: config: Fix alphabetical order of fc_* samples
30 - MINOR: tcp-sample: Add samples to get original info about client connection
31 - REGTESTS: Add script to test client src/dst manipulation at different levels
32 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
33 - BUILD: log: Fix compilation without SSL support
34 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
35 - MINOR: protocols: add a new protocol type selector
36 - MINOR: protocols: make use of the protocol type to select the protocol
37 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
38 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
39 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
40 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
41 - DEV: coccinelle: Add realloc_leak.cocci
42 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
43 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
44 - BUILD: atomic: fix build on mac/arm64
45 - MINOR: atomic: remove the memcpy() call and dependency on string.h
46 - MINOR: httpclient: request streaming with a callback
47 - MINOR: httpclient/lua: handle the streaming into the lua applet
48 - REGTESTS: lua: test httpclient with body streaming
49 - DOC: halog: Move the `-qry` parameter into the correct section in help text
50 - MINOR: halog: Rename -qry to -query
51 - CLEANUP: halog: Use consistent indentation in help()
52 - BUG/MINOR: halog: Add missing newlines in die() messages
53 - MINOR: halog: Add support for extracting captures using -hdr
54 - DOC: Typo fixed "it" should be "is"
55 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
56 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
57 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
58 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
59 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
60 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
61 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
62 - BUILD/MINOR: cpuset freebsd build fix
63 - BUG/MINOR: httpclient: use a placeholder value for Host header
64 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
65 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
66 - MINOR: stream: Improve dump of bogus streams
67 - DOC/peers: some grammar fixes for peers 2.1 spec
68 - MEDIUM: vars: make the var() sample fetch function really return type ANY
69 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
70
Willy Tarreaub4d0cd02021-10-22 19:40:44 +0200712021/10/22 : 2.5-dev11
72 - DEV: coccinelle: Add strcmp.cocci
73 - CLEANUP: Apply strcmp.cocci
74 - CI: Add `permissions` to GitHub Actions
75 - CI: Clean up formatting in GitHub Action definitions
76 - MINOR: add ::1 to predefined LOCALHOST acl
77 - CLEANUP: assorted typo fixes in the code and comments
78 - CLEANUP: Consistently `unsigned int` for bitfields
79 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
80 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
81 - MINOR: jwt: Empty the certificate tree during deinit
82 - MINOR: jwt: jwt_verify returns negative values in case of error
83 - MINOR: jwt: Do not rely on enum order anymore
84 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
85 - MINOR: httpclient/cli: access should be only done from expert mode
86 - DOC: management: doc about the CLI httpclient
87 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
88 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
89 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
90 - CLEANUP: dns: always detach the appctx from the dns session on release
91 - DEBUG: dns: add a few more BUG_ON at sensitive places
92 - BUG/MAJOR: resolvers: add other missing references during resolution removal
93 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
94 - BUILD: resolvers: avoid a possible warning on null-deref
95 - BUG/MEDIUM: resolvers: always check a valid item in query_list
96 - CLEANUP: always initialize the answer_list
97 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
98 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
99 - MEDIUM: resolvers: use a kill list to preserve the list consistency
100 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
101 - BUG/MEDIUM: checks: fix the starting thread for external checks
102 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
103 - MEDIUM: resolvers: hash the records before inserting them into the tree
104 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
105 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
106 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
107 - OPTIM: dns: use an atomic check for the list membership
108 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
109 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
110 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
111 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
112 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
113 - MINOR: quic: Increase the size of handshake RX UDP datagrams
114 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
115 - MINOR: memprof: report the delta between alloc and free on realloc()
116 - MINOR: memprof: add one pointer size to the size of allocations
117 - BUILD: fix compilation on NetBSD
118 - MINOR: backend: add traces for idle connections reuse
119 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
120 - MINOR: backend: improve perf with tcp proxies skipping idle conns
121 - MINOR: connection: remove unneeded memset 0 for idle conns
122
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +02001232021/10/16 : 2.5-dev10
124 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
125 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
126 - MINOR: rules: add a file name and line number to act_rules
127 - MINOR: stream: report the current rule in "show sess all" when known
128 - MINOR: stream: report the current filter in "show sess all" when known
129 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
130 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
131 - CI: github: switch to OpenSSL 3.0.0
132 - REGTESTS: ssl: Fix references to removed option in test description
133 - MINOR: ssl: Add ssllib_name_startswith precondition
134 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
135 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
136 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
137 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
138 - MEDIUM: h3: properly manage tx buffers for large data
139 - MINOR: mux-quic: standardize h3 settings sending
140 - CLEANUP: h3: remove dead code
141 - MINOR: mux-quic: implement standard method to detect if qcc is dead
142 - MEDIUM: mux-quic: defer stream shut if remaining tx data
143 - MINOR: mux: remove last occurences of qcc ring buffer
144 - MINOR: quic: handle CONNECTION_CLOSE frame
145 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
146 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
147 - MINOR: http: Add http_auth_bearer sample fetch
148 - MINOR: jwt: Parse JWT alg field
149 - MINOR: jwt: JWT tokenizing helper function
150 - MINOR: jwt: Insert public certificates into dedicated JWT tree
151 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
152 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
153 - REGTESTS: jwt: Add tests for the jwt_verify converter
154 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
155 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
156 - MINOR: proto_tcp: also report the attempted MSS values in error message
157 - MINOR: inet: report the faulty interface name in "bind" errors
158 - MINOR: protocol: report the file and line number for binding/listening errors
159 - MINOR: protocol: uniformize protocol errors
160 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
161 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
162 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
163 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
164 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
165 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
166 - MEDIUM: listener: add the "shards" bind keyword
167 - BUG/MEDIUM: resolvers: use correct storage for the target address
168 - MINOR: resolvers: merge address and target into a union "data"
169 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
170 - BUG/MEDIUM: jwt: fix base64 decoding error detection
171 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
172 - DOC: jwt: fix a typo in the jwt_verify() keyword description
173 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
174 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
175 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
176 - DOC: config: Move 'tcp-response content' at the right place
177 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
178 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
179 - MINOR: sample/arg: Be able to resolve args found in defaults sections
180 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
181 - MINOR: proxy: Be able to reference the defaults section used by a proxy
182 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
183 - MINOR: config: Finish configuration for referenced default proxies
184 - MINOR: config: No longer remove previous anonymous defaults section
185 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
186 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
187 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
188 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
189 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
190 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
191 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
192 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
193 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
194 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
195 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
196 - BUG/MINOR: listener: fix incorrect return on out-of-memory
197 - BUG/MINOR: listener: add an error check for unallocatable trash
198 - CLEANUP: listeners: remove unreachable code in clone_listener()
199
Willy Tarreau4c67bd62021-10-08 18:22:24 +02002002021/10/08 : 2.5-dev9
201 - head-truc
202 - REGTESTS: lua: test the httpclient:get() feature
203 - Revert "head-truc"
204 - BUG/MEDIUM: httpclient: replace ist0 by istptr
205 - MINOR: config: use a standard parser for the "nbthread" keyword
206 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
207 - MEDIUM: init: de-uglify the per-thread affinity setting
208 - MINOR: init: extract the setup and end of threads to their own functions
209 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
210 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
211 - MINOR: mux-h1: Be able to set custom status code on parsing error
212 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
213 - MEDIUM: h1: Force close mode for invalid uses of T-E header
214 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
215 - MINOR: http: Add 422-Unprocessable-Content error message
216 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
217 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
218 - REGTESTS: Add script to validate T-E header parsing
219 - REORG: pools: move default settings to defaults.h
220 - DOC: peers: fix doc "enable" statement on "peers" sections
221 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
222 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
223 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
224 - MINOR: ssl: Store the last SSL error code in case of read or write failure
225 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
226 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
227 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
228 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
229 - MINOR: arg: Be able to forbid unresolved args when building an argument list
230 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
231 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
232 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
233 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
234 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
235 - CLEANUP: tasks: remove the long-unused work_lists
236 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
237 - MINOR: time: uninline report_idle() and move it to task.c
238 - REORG: sched: move idle time calculation from time.h to task.h
239 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
240 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
241 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
242 - MINOR: httpclient: destroy() must free the headers and the ists
243 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
244 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
245 - MINOR: httpclient: test if started during stop_and_destroy()
246 - MINOR: httpclient/lua: implement garbage collection
247 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
248 - MINOR: httpclient: destroy checks if a client was started but not stopped
249 - BUG/MINOR: httpclient/lua: does not process headers when failed
250 - MINOR: httpclient/lua: supports headers via named arguments
251 - CLEANUP: server: always include the storage for SSL settings
252 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
253 - CLEANUP: sample: uninline sample_conv_var2smp_str()
254 - MINOR: sample: provide a generic var-to-sample conversion function
255 - BUG/MEDIUM: sample: properly verify that variables cast to sample
256 - BUILD: action: add the relevant structures for function arguments
257 - BUILD: extcheck: needs to include stream-t.h
258 - BUILD: hlua: needs to include stream-t.h
259 - BUILD: stats: define several missing structures in stats.h
260 - BUILD: resolvers: define missing types in resolvers.h
261 - BUILD: httpclient: include missing ssl_sock-t
262 - BUILD: sample: include openssl-compat
263 - BUILD: http_ana: need to include proxy-t to get redirect_rule
264 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
265 - BUILD: vars: need to include xxhash
266 - BUILD: peers: need to include eb{32/mb/pt}tree.h
267 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
268 - BUILD: compiler: add the container_of() and container_of_safe() macros
269 - BUILD: idleconns: include missing ebmbtree.h at several places
270 - BUILD: connection: connection.h needs list.h and server.h
271 - BUILD: tree-wide: add missing http_ana.h from many places
272 - BUILD: cfgparse-ssl: add missing errors.h
273 - BUILD: tcp_sample: include missing errors.h and session-t.h
274 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
275 - BUILD: tree-wide: add several missing activity.h
276 - BUILD: compat: fix -Wundef on SO_REUSEADDR
277 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
278 - REORG: pools: uninline the UAF allocator and force-inline the rest
279 - REORG: thread: uninline the lock-debugging code
280 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
281 - CLEANUP: remove some unneeded includes from applet-t.h
282 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
283 - CLEANUP: listeners: do not include openssl-compat
284 - CLEANUP: servers: do not include openssl-compat
285 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
286 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
287 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
288 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
289 - REORG: sample: move the crypto samples to ssl_sample.c
290 - REORG: sched: moved samp_time and idle_time to task.c as well
291 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
292 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
293 - REORG: activity: uninline activity_count_runtime()
294 - REORG: acitvity: uninline sched_activity_entry()
295 - CLEANUP: stream: remove many unneeded includes from stream-t.h
296 - CLEANUP: stick-table: no need to include socket nor in.h
297 - MINOR: connection: use uint64_t for the hashes
298 - REORG: connection: move the hash-related stuff to connection.c
299 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
300 - REORG: server: uninline the idle conns management functions
301 - REORG: ebtree: split structures into their own file ebtree-t.h
302 - CLEANUP: tree-wide: only include ebtree-t from type files
303 - REORG: connection: move the largest inlines from connection.h to connection.c
304 - CLEANUP: connection: do not include http_ana!
305 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
306 - REORG: connection: uninline the rest of the alloc/free stuff
307 - REORG: task: uninline the loop time measurement code
308 - CLEANUP: time: move a few configurable defines to defaults.h
309 - CLEANUP: fd: do not include time.h
310 - REORG: fd: uninline compute_poll_timeout()
311 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
312 - REORG: thread: move the thread init/affinity/stop to thread.c
313 - REORG: thread: move ha_get_pthread_id() to thread.c
314 - MINOR: thread: use a dedicated static pthread_t array in thread.c
315 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
316 - DOC: configuration: add clarification on escaping in keyword arguments
317 - BUG/MINOR: task: fix missing include with DEBUG_TASK
318 - MINOR: pools: report the amount used by thread caches in "show pools"
319 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
320 - MINOR: quic: Add a function to dump SSL stack errors
321 - MINOR: quic: BUG_ON() SSL errors.
322 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
323 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
324 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
325 - MINOR: mux-quic: release connection if no more bidir streams
326 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
327 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
328 - MINOR: qpack: do not encode invalid http status code
329 - MINOR: qpack: support non-indexed http status code encoding
330 - MINOR: qpack: fix memory leak on huffman decoding
331 - CLEANUP: mux-quic: remove unused code
332 - BUG/MINOR: quic: fix includes for compilation
333 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
334 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
335 - REORG: time: move time-keeping code and variables to clock.c
336 - REORG: clock: move the updates of cpu/mono time to clock.c
337 - MINOR: activity: get the run_time from the clock updates
338 - CLEANUP: clock: stop exporting before_poll and after_poll
339 - REORG: clock: move the clock_id initialization to clock.c
340 - REORG: clock/wdt: move wdt timer initialization to clock.c
341 - MINOR: clock: move the clock_ids to clock.c
342 - MINOR: wdt: move wd_timer to wdt.c
343 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
344 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
345 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
346 - REORG: thread/sched: move the thread_info flags to the thread_ctx
347 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
348 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
349 - MINOR: threads: introduce a minimalistic notion of thread-group
350 - MINOR: global: add a new "thread-groups" directive
351 - MINOR: global: add a new "thread-group" directive
352 - MINOR: threads: make tg point to the current thread's group
353 - MEDIUM: threads: automatically assign threads to groups
354 - MINOR: threads: set the group ID and its bit in the thread group
355 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
356 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
357 - MINOR: threads: add the current group ID in thread-local "tgid" variable
358 - MINOR: debug: report the group and thread ID in the thread dumps
359 - MEDIUM: listeners: support the definition of thread groups on bind lines
360 - MINOR: threads: add a new function to resolve config groups and masks
361 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
362 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
363
Willy Tarreau538f3e02021-09-24 15:52:17 +02003642021/09/24 : 2.5-dev8
365 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
366 - BUILD: halog: fix a -Wundef warning on non-glibc systems
367 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
368 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
369 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
370 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
371 - MINOR: pools: automatically disable malloc_trim() with external allocators
372 - MINOR: pools: report it when malloc_trim() is enabled
373 - DOC: Add .mailmap
374 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
375 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
376 - CLEANUP: acl: Remove unused variable when releasing an acl expression
377 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
378 - DOC: update Tim's address in .mailmap
379 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
380 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
381 - DOC: management: certificate files must be sanitized before injection
382 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
383 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
384 - BUG/MINOR: cli/payload: do not search for args inside payload
385 - BUILD: sockpair: do not set unused flag
386 - BUILD: proto_uxst: do not set unused flag
387 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
388 - MINOR: applet: remove the thread mask from appctx_new()
389 - REORG: threads: move ha_get_pthread_id() to tinfo.h
390 - CLEANUP: Apply ist.cocci
391 - DEV: coccinelle: Add ist.cocci
392 - CLEANUP: Apply bug_on.cocci
393 - DEV: coccinelle: Add xalloc_size.cocci
394 - DEV: coccinelle: Add bug_on.cocci
395 - CLEANUP: Apply xalloc_size.cocci
396 - DEV: coccinelle: Add xalloc_cast.cocci
397 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
398 - MINOR: httpclient: add the EOH when no headers where provided
399 - CLEANUP: Include check.h in flt_spoe.c
400 - CLEANUP: Remove unreachable `break` from parse_time_err()
401 - BUG/MINOR: server: allow 'enable health' only if check configured
402 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
403 - MINOR: server: enable more keywords for ssl checks for dynamic servers
404 - MINOR: server: enable more check related keywords for dynamic servers
405 - REORG: server: move slowstart init outside of checks
406 - MINOR: server: enable slowstart for dynamic server
407 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
408 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
409 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
410 - MINOR: quic: Move transport parmaters to anynomous struct.
411 - MINOR: mux_quic: Add QUIC mux layer.
412 - MINOR: connection: Add callbacks definitions for QUIC.
413 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
414 - MINOR: quic: Add a new definition to store STREAM frames.
415 - MINOR: h3: Add HTTP/3 definitions.
416 - MINOR: qpack: Add QPACK compression.
417 - MINOR: quic_sock: Finalize the QUIC connections.
418 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
419 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
420 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
421 - BUG/MINOR: quic: Wrong ->accept() error handling
422 - MINOR: quic: Add a wrapper function to update transport parameters.
423 - MINOR: quic: Update the streams transport parameters.
424 - MINOR: quic: Avoid header collisions
425 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
426 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
427 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
428 - MINOR: quic: Initialize the session before starting the xprt.
429 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
430 - MINOR: quic: QUIC conn initialization from I/O handler
431 - MINOR: quic: Remove header protection for conn with context
432 - MINOR: quic: Derive the initial secrets asap
433 - MINOR: quic: Remove header protection also for Initial packets
434 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
435 - MINOR: quic: quic_update_ack_ranges_list() code factorization
436 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
437 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
438 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
439 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
440 - BUG/MINOR: quic: Wrong RX packet reference counter usage
441 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
442 - MINOR: quic: Add a lock for RX packets
443 - MINOR: quic: Move the connection state
444 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
445 - MINOR: quic: Replace the RX list of packet by a thread safety one.
446 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
447 - MINOR: quic: Add useful traces for I/O dgram handler
448 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
449 - MINOR: quic: Connection allocations rework
450 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
451 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
452 - MINOR: quic: Add a ring buffer implementation for QUIC
453 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
454 - MINOR: quic: Add the QUIC v1 initial salt.
455 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
456 - MINOR: net_helper: add functions for pointers
457 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
458 - MINOR: proto_quic: Allocate TX ring buffers for listeners
459 - MINOR: quic: Initialize pointers to TX ring buffer list
460 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
461 - MINOR: quic_tls: Make use of the QUIC V1 salt.
462 - MINOR: quic: Remove old TX buffer implementation
463 - MINOR: Add function for TX packets reference counting
464 - MINOR: quic: Add TX packets at the very last time to their tree.
465 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
466 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
467 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
468 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
469 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
470 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
471 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
472 - MINOR: quic: Add a useful function to compute any frame length.
473 - MINOR: quic: Add the QUIC connection state to traces
474 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
475 - MINOR: quic: Add the packet type to quic_tx_packet struct
476 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
477 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
478 - MINOR: quic: Modify qc_build_cfrms() to support any frame
479 - MINOR: quic: quic_conn_io_cb() task rework
480 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
481 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
482 - MINOR: quic: Remove Application level related functions
483 - MINOR: quic: Rename functions which do not build only Handshake packets
484 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
485 - MINOR: quic: Add a pool for TX ring buffer internal buffer
486 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
487 - MINOR: quic: Missing acks encoded size updates.
488 - MINOR: quic: Evaluate the packet lengths in advance
489 - MINOR: quic: Update the TLS extension for QUIC transport parameters
490 - MINOR: quic: Fix handshake state debug strings
491 - MINOR: quic: Atomically get/set the connection state
492 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
493 - MINOR: quic: Coalesce Application level packets with Handshake packets.
494 - MINOR: quic: Wrong flags handling for acks
495 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
496 - MINOR: quic: Post handshake packet building improvements
497 - MINOR: quic: Prepare Application level packet asap.
498 - MINOR: h3: Send h3 settings asap
499 - MINOR: quic: Wrong STREAM frame length computing
500 - MINOR: quic: Wrong short packet minimum length
501 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
502 - MINOR: h3: change default settings
503 - MINOR: quic-enc: fix varint encoding
504 - MINOR: qpack: fix wrong comment
505 - MINOR: qpack: generate headers list on decoder
506 - MINOR: h3: parse headers to htx
507 - MINOR: h3: allocate stream on headers
508 - MEDIUM: mux-quic: implement ring buffer on stream tx
509 - MINOR: mux-quic: send SETTINGS on uni stream
510 - MINOR: h3: define snd_buf callback and divert mux ops
511 - MINOR: mux-quic: define FIN stream flag
512 - MINOR: qpack: create qpack-enc module
513 - MINOR: qpack: encode headers functions
514 - MINOR: h3: encode htx headers to QPACK
515 - MINOR: h3: send htx data
516 - MINOR: h3/mux: detect fin on last h3 frame of the stream
517 - MINOR: quic: Shorten some handshakes
518 - MINOR: quic: Make QUIC-TLS support at least two initial salts
519 - MINOR: quic: Attach the QUIC connection to a thread.
520 - MINOR: quic: Missing active_connection_id_limit default value
521 - MINOR: quic_sock: Do not flag QUIC connections as being set
522 - MINOR: buf: Add b_force_xfer() function
523 - MINOR: quic: Make use of buffer structs to handle STREAM frames
524 - MINOR: mux_quic: move qc_process() code to qc_send()
525 - MINOR: quic: Add a typedef for unsigned long long
526 - MINOR: quic: Confusion between TX/RX for the frame builders
527 - MINOR: quic: Wrong packet flags settings during frame building
528 - MINOR: quic: Constantness fixes for frame builders/parsers.
529 - MINOR: quic_tls: Client/serveur state reordering
530 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
531 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
532 - MINOR: quic: Initial packet number spaced not discarded
533 - MINOR: quic: Add useful trace about pktns discarding
534 - MINOR: mux_quic: Export the mux related flags
535 - MINOR: quic: Implement quic_conn_subscribe()
536 - MINOR: quic: Wake up the mux upon ACK receipt
537 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
538 - MINOR: quic: Implement qc_process_mux()
539 - MINOR: quic: Wake up the xprt from mux
540 - CLEANUP: quic: Remove useless inline functions
541 - MINOR: quic: RX packets memory leak
542 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
543 - MINOR: quic: Crash upon too big packets receipt
544 - MINOR: quic: define close handler
545 - MEDIUM: quic: implement mux release/conn free
546 - MINOR: quic: fix qcc subs initialization
547 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
548 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
549 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
550 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
551 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
552 - MINOR: htx: Add an HTX flag to know when a message is fragmented
553 - MINOR: htx: Add a function to know if the free space wraps
554 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
555 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
556 - BUG/MINOR: http-ana: increment internal_errors counter on response error
557 - MINOR: stats: Enable dark mode on stat web page
558 - CLEANUP: stats: Fix some alignment mistakes
559 - MINOR: httpclient: httpclient_data() returns the available data
560 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
561 - MINOR: httpclient/lua: httpclient:get() API in lua
562 - MINOR: httpclient/lua: implement the headers in the response object
563 - BUG/MINOR: httpclient/lua: return an error on argument check
564 - CLEANUP: slz: Mark `reset_refs` as static
565
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +02005662021/09/12 : 2.5-dev7
567 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
568 - CLEANUP: htx: remove comments about "must be < 256 MB"
569 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
570 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
571 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
572 - MINOR: vars: rename vars_init() to vars_init_head()
573 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
574 - REORG: vars: remerge sample_store{,_stream}() into var_set()
575 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
576 - MINOR: vars: add a VF_CREATEONLY flag for creation
577 - MINOR: vars: support storing empty sample data with a variable
578 - MINOR: vars: store flags into variables and add VF_PERMANENT
579 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
580 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
581 - MINOR: vars: preset a random seed to hash variables names
582 - MEDIUM: vars: replace the global name index with a hash
583 - CLEANUP: vars: remove the now unused var_names array
584 - MINOR: vars: centralize the lock/unlock into static inlines
585 - OPTIM: vars: only takes the variables lock on shared entries
586 - OPTIM: vars: remove internal bookkeeping for vars_global_size
587 - OPTIM: vars: do not keep variables usage stats if no limit is set
588 - BUILD: fix dragonfly build again on __read_mostly
589 - CI: Github Actions: temporarily disable Opentracing
590 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
591 - MINOR: htx: Skip headers with no value when adding a header list to a message
592 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
593 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
594 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
595 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
596 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
597 - CLEANUP: ebmbtree: Replace always-taken elseif by else
598 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
599 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
600 - BUG/MINOR: opentracing: enable the use of http headers without a set value
601 - CLEANUP: opentracing: use the haproxy function to generate uuid
602 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
603 - CI: Github Actions: re-enable Opentracing
604 - CLEANUP: opentracing: simplify the condition on the empty header
605 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
606
Willy Tarreauf653e832021-09-03 15:19:56 +02006072021/09/03 : 2.5-dev6
608 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
609 - BUG/MINOR: tools: Fix loop condition in dump_text()
610 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
611 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
612 - BUILD: tools: properly guard __GLIBC__ with defined()
613 - BUILD: globally enable -Wundef
614 - MINOR: log: Remove log-error-via-logformat option
615 - MINOR: log: Add new "error-log-format" option
616 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
617 - CLEANUP: Add missing include guard to signal.h
618 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
619 - MINOR: connection: Add a connection error code sample fetch for backend side
620 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
621 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
622 - CI: Github Actions: temporarily disable BoringSSL builds
623 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
624 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
625 - MINOR: sample: add missing ARGC_ entries
626 - BUG/MINOR: vars: properly set the argument parsing context in the expression
627 - DOC: configuration: remove wrong tcp-request examples in tcp-response
628 - MEDIUM: vars: add a new "set-var-fmt" action
629 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
630 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
631 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
632 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
633 - MINOR: log: make log-format expressions completely usable outside of req/resp
634 - MINOR: vars: add a "set-var-fmt" directive to the global section
635 - MEDIUM: vars: also support format strings in CLI's "set var" command
636 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
637 - MINOR: vars: make vars_get_by_* support an optional default value
638 - MINOR: vars: make the vars() sample fetch function support a default value
639 - BUILD: ot: add argument for default value to vars_get_by_name()
640
Willy Tarreau446344c2021-08-28 13:46:11 +02006412021/08/28 : 2.5-dev5
642 - MINOR: httpclient: initialize the proxy
643 - MINOR: httpclient: implement a simple HTTP Client API
644 - MINOR: httpclient/cli: implement a simple client over the CLI
645 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
646 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
647 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
648 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
649 - MINOR: server: check if srv is NULL in free_server()
650 - MINOR: proxy: check if p is NULL in free_proxy()
651 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
652 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
653 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
654 - REGTESTS: abortonclose: after retries, 503 is expected, not close
655 - REGTESTS: server: fix agent-check syntax and expectation
656 - BUG/MINOR: httpclient: fix uninitialized sl variable
657 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
658 - BUG/MINOR: httpclient: check if hdr_num is not 0
659 - MINOR: httpclient: cleanup the include files
660 - MINOR: hlua: take the global Lua lock inside a global function
661 - MINOR: tools: add FreeBSD support to get_exec_path()
662 - BUG/MINOR: systemd: ExecStartPre must use -Ws
663 - MINOR: systemd: remove the ExecStartPre line in the unit file
664 - MINOR: ssl: add an openssl version string parser
665 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
666 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
667 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
668 - BUG/MINOR: httpclient: remove deinit of the httpclient
669 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
670 - MINOR: httpclient: set verify none on the https server
671 - MINOR: httpclient: add the server to the proxy
672 - BUG/MINOR: httpclient: fix Host header
673 - BUILD: httpclient: fix build without OpenSSL
674 - CI: github-actions: remove obsolete options
675 - CLEANUP: assorted typo fixes in the code and comments
676 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
677 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
678 - MINOR: server: return the next srv instance on free_server
679 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
680 - MEDIUM: server: extend refcount for all servers
681 - MINOR: server: define non purgeable server flag
682 - MINOR: server: mark referenced servers as non purgeable
683 - MINOR: server: mark servers referenced by LUA script as non purgeable
684 - MEDIUM: server: allow to remove servers at runtime except non purgeable
685 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
686 - REGTEST: add missing lua requirements on server removal test
687 - REGTEST: fix haproxy required version for server removal test
688 - BUG/MINOR: proxy: don't dump servers of internal proxies
689 - REGTESTS: Use `feature cmd` for 2.5+ tests
690 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
691 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
692 - MINOR: compiler: implement an ONLY_ONCE() macro
693 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
694 - MEDIUM: ssl: Capture more info from Client Hello
695 - MINOR: sample: Expose SSL captures using new fetchers
696 - MINOR: sample: Add be2dec converter
697 - MINOR: sample: Add be2hex converter
698 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
699 - BUG/MINOR: time: fix idle time computation for long sleeps
700 - MINOR: time: add report_idle() to report process-wide idle time
701 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
702 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
703 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
704 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
705 - IMPORT: slz: silence a build warning with -Wundef
706 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
707
Willy Tarreau08d0f232021-08-17 14:08:55 +02007082021/08/17 : 2.5-dev4
709 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
710 - MINOR: doc: rename conn_status in `option httsplog`
711 - MINOR: proxy: disabled takes a stopping and a disabled state
712 - MINOR: stats: shows proxy in a stopped state
713 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
714 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
715 - MINOR: threads: make thread_release() not wait for other ones to complete
716 - MEDIUM: threads: add a stronger thread_isolate_full() call
717 - MEDIUM: servers: make the server deletion code run under full thread isolation
718 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
719 - MINOR: activity/fd: remove the dead_fd counter
720 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
721 - CLEANUP: fd: remove the now unused fd_set_running()
722 - CLEANUP: fd: remove the now unneeded fd_mig_lock
723 - BUG/MINOR: server: update last_change on maint->ready transitions too
724 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
725 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
726 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
727 - MINOR: server: unmark deprecated on enable health/agent cli
728 - MEDIUM: task: implement tasklet kill
729 - MINOR: server: initialize fields for dynamic server check
730 - MINOR: check: allocate default check ruleset for every backends
731 - MINOR: check: export check init functions
732 - MINOR: check: do not increment global maxsock at runtime
733 - MINOR: server: implement a refcount for dynamic servers
734 - MEDIUM: check: implement check deletion for dynamic servers
735 - MINOR: check: enable safe keywords for dynamic servers
736 - MEDIUM: server: implement check for dynamic servers
737 - MEDIUM: server: implement agent check for dynamic servers
738 - REGTESTS: server: add dynamic check server test
739 - MINOR: doc: specify ulimit-n usage for dynamic servers
740 - REGTESTS: server: fix dynamic server with checks test
741 - CI: travis-ci: temporarily disable arm64 builds
742 - BUG/MINOR: check: test if server is not null in purge
743 - MINOR: global: define MODE_STOPPING
744 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
745 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
746 - BUG/MINOR: check: do not reset check flags on purge
747 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
748 - BUG/MEDIUM: check: fix leak on agent-check purge
749 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
750 - BUG/MINOR: buffer: fix buffer_dump() formatting
751 - MINOR: channel: remove an htx block from a channel
752 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
753 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
754 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
755 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
756 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
757 - MINOR: filters/lua: Release filters before the lua context
758 - MINOR: lua: Add a function to get a reference on a table in the stack
759 - MEDIUM: lua: Process buffer data using an offset and a length
760 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
761 - DOC: Improve the lua documentation
762 - MEDIUM: filters/lua: Add support for dummy filters written in lua
763 - MINOR: lua: Add a function to get a filter attached to a channel class
764 - MINOR: lua: Add flags on the lua TXN to know the execution context
765 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
766 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
767 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
768 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
769 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
770 - DOC: config: Fix 'http-response send-spoe-group' documentation
771 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
772 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
773 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
774 - MINOR: cli: delare the CLI frontend as an internal proxy
775 - MINOR: proxy: disable warnings for internal proxies
776 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
777 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
778 - DOC: lua-api: Add documentation about lua filters
779 - CI: Remove obsolete USE_SLZ=1 CI job
780 - CLEANUP: assorted typo fixes in the code and comments
781 - CI: github actions: relax OpenSSL-3.0.0 version comparision
782 - BUILD: tools: get the absolute path of the current binary on NetBSD.
783 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
784 - DOC/MINOR: fix typo in management document
785 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
786 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
787 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
788 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
789 - BUG/MEDIUM: h2: give :authority precedence over Host
790 - REGTESTS: add a test to prevent h2 desync attacks
791
Willy Tarreau8441deb2021-08-01 18:19:51 +02007922021/08/01 : 2.5-dev3
793 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
794 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
795 - MEDIUM: proxy: remove long-broken 'option http_proxy'
796 - CLEANUP: http_ana: Remove now unused label from http_process_request()
797 - MINOR: deinit: always deinit the init_mutex on failed initialization
798 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
799 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
800 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
801 - BUILD/MINOR: memprof fix macOs build.
802 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
803 - BUG/MINOR: stats: Add missing agent stats on servers
804 - BUG/MINOR: check: fix the condition to validate a port-less server
805 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
806 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
807 - MINOR: ssl: use __objt_* variant when retrieving counters
808 - BUG/MINOR: systemd: must check the configuration using -Ws
809 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
810 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
811 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
812 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
813 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
814 - MINOR: mworker: the mworker CLI proxy is internal
815 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
816 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
817 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
818 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
819 - MINOR: connection: Add a connection error code sample fetch
820 - MINOR: ssl: Enable error fetches in case of handshake error
821 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
822 - MINOR: ssl: Define a default https log format
823 - MEDIUM: connection: Add option to disable legacy error log
824 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
825 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
826 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
827 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
828 - BUG/MINOR: select: fix excess number of dead/skip reported
829 - BUG/MINOR: poll: fix abnormally high skip_fd counter
830 - BUG/MINOR: pollers: always program an update for migrated FDs
831 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
832 - DOC: internals: document the FD takeover process
833 - MINOR: fd: update flags only once in fd_update_events()
834 - MINOR: poll/epoll: move detection of RDHUP support earlier
835 - REORG: fd: uninline fd_update_events()
836 - MEDIUM: fd: rely more on fd_update_events() to detect changes
837 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
838 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
839 - MEDIUM: atomic: relax the load/store barriers on x86_64
840 - BUILD: opentracing: fixed build when using pkg-config utility
841
Willy Tarreaubccc91d2021-07-17 12:35:11 +02008422021/07/17 : 2.5-dev2
843 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
844 - DOC: config: use CREATE USER for mysql-check
845 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
846 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
847 - MINOR: stick-table: make skttable_data_cast to use only std types
848 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
849 - MEDIUM: peers: handle arrays of std types in peers protocol
850 - DOC: stick-table: add missing documentation about gpt0 stored type
851 - MEDIUM: stick-table: add the new array of gpt data_type
852 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
853 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
854 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
855 - BUG/MEDIUM: sock: make sure to never miss early connection failures
856 - BUG/MINOR: cli: fix server name output in "show fd"
857 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
858 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
859 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
860 - MINOR: http: implement http_get_scheme
861 - MEDIUM: http: implement scheme-based normalization
862 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
863 - MEDIUM: h2: apply scheme-based normalization on h2 requests
864 - REGTESTS: add http scheme-based normalization test
865 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
866 - MINOR: http: implement http uri parser
867 - MINOR: http: use http uri parser for scheme
868 - MINOR: http: use http uri parser for authority
869 - REORG: http_ana: split conditions for monitor-uri in wait for request
870 - MINOR: http: use http uri parser for path
871 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
872 - MINOR: mux_h2: define config to disable h2 websocket support
873 - CLEANUP: applet: remove unused thread_mask
874 - BUG/MINOR: ssl: Default-server configuration ignored by server
875 - BUILD: add detection of missing important CFLAGS
876 - BUILD: lua: silence a build warning with TCC
877 - MINOR: srv: extract tracking server config function
878 - MINOR: srv: do not allow to track a dynamic server
879 - MEDIUM: server: support track keyword for dynamic servers
880 - REGTESTS: test track support for dynamic servers
881 - MINOR: init: verify that there is a single word on "-cc"
882 - MINOR: init: make -cc support environment variables expansion
883 - MINOR: arg: add a free_args() function to free an args array
884 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
885 - CLEANUP: hlua: use free_args() to release args arrays
886 - REORG: config: move the condition preprocessing code to its own file
887 - MINOR: cfgcond: start to split the condition parser to introduce terms
888 - MEDIUM: cfgcond: report invalid trailing chars after expressions
889 - MINOR: cfgcond: remerge all arguments into a single line
890 - MINOR: cfgcond: support negating conditional expressions
891 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
892 - MINOR: cfgcond: insert an expression between the condition and the term
893 - MINOR: cfgcond: support terms made of parenthesis around expressions
894 - REGTEST: make check_condition.vtc fail as soon as possible
895 - REGTESTS: add more complex check conditions to check_conditions.vtc
896 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
897
Willy Tarreau96a2f502021-06-30 16:16:14 +02008982021/06/30 : 2.5-dev1
899 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
900 - MINOR: ssl: Allow duplicated entries in the cafile_tree
901 - MEDIUM: ssl: Chain ckch instances in ca-file entries
902 - MINOR: ssl: Add reference to default ckch instance in bind_conf
903 - MINOR: ssl: Add helper functions to create/delete cafile entries
904 - MEDIUM: ssl: Add a way to load a ca-file content from memory
905 - MINOR: ssl: Add helper function to add cafile entries
906 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
907 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
908 - REGTESTS: ssl: Add new ca-file update tests
909 - MINOR: ssl: Add "abort ssl ca-file" CLI command
910 - MINOR: ssl: Add a cafile_entry type field
911 - MINOR: ssl: Refactorize the "show certificate details" code
912 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
913 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
914 - MINOR: ssl: Add "del ssl ca-file" CLI command
915 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
916 - DOC: ssl: Add documentation about CA file hot update commands
917 - DOC: internals: update the SSL architecture schema
918 - MINOR: ssl: Chain instances in ca-file entries
919 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
920 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
921 - MINOR: ssl: Add "abort ssl crl-file" CLI command
922 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
923 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
924 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
925 - DOC: ssl: Add documentation about CRL file hot update commands
926 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
927 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
928 - CI: introduce scripts/build-vtest.sh for installing VTest
929 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
930 - CI: github actions: add OpenTracing builds
931 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
932 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
933 - BUILD/MINOR: opentracing: fixed build when using clang
934 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
935 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
936 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
937 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
938 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
939 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
940 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
941 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
942 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
943 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
944 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
945 - MINOR: buf: Add function to realign a buffer with a specific head position
946 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
947 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
948 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
949 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
950 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
951 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
952 - MINOR: cfgparse: Fail when encountering extra arguments in macro
953 - DOC: intro: Fix typo in starter guide
954 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
955 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
956 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
957 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
958 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
959 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
960 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
961 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
962 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
963 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
964 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
965 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
966 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
967 - CLEANUP: http-ana: Remove useless if statement about L7 retries
968 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
969 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
970 - BUG/MINOR: vars: Be sure to have a session to get checks variables
971 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
972 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
973 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
974 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
975 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
976 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
977 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
978 - CI: github actions: add OpenSSL-3.0.0 builds
979 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
980 - MINOR: errors: allow empty va_args for diag variadic macro
981 - REORG: errors: split errors reporting function from log.c
982 - CLEANUP: server: fix cosmetic of error message on sni parsing
983 - MEDIUM: errors: implement user messages buffer
984 - MINOR: log: do not discard stderr when starting is over
985 - MEDIUM: errors: implement parsing context type
986 - MINOR: errors: use user messages context in print_message
987 - MINOR: log: display exec path on first warning
988 - MINOR: errors: specify prefix "config" for parsing output
989 - MINOR: log: define server user message format
990 - REORG: server: use parsing ctx for server parsing
991 - REORG: config: use parsing ctx for server config check
992 - MINOR: server: use parsing ctx for server init addr
993 - MINOR: server: use ha_alert in server parsing functions
994 - DOC: use the req.ssl_sni in examples
995 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
996 - CLEANUP: tools: Make errptr const in `parse_line()`
997 - MINOR: haproxy: Add `-cc` argument
998 - BUG: errors: remove printf positional args for user messages context
999 - CI: Make matrix.py executable and add shebang
1000 - BUILD: make tune.ssl.keylog available again
1001 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
1002 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
1003 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
1004 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
1005 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
1006 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
1007 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
1008 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
1009 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
1010 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
1011 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
1012 - REGTESTS: ssl: Add "show ssl ocsp-response" test
1013 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
1014 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
1015 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
1016 - MINOR: pools: do not maintain the lock during pool_flush()
1017 - MINOR: pools: call malloc_trim() under thread isolation
1018 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
1019 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
1020 - CLEANUP: pools: remove now unused seq and pool_free_list
1021 - MEDIUM: pools: remove the locked pools implementation
1022 - BUILD: ssl: Fix compilation with BoringSSL
1023 - BUG/MEDIUM: errors: include missing obj_type file
1024 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
1025 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
1026 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
1027 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
1028 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
1029 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
1030 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
1031 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
1032 - BUG/MINOR: server-state: load SRV resolution only if params match the config
1033 - MINOR: config: remove support for deprecated option "tune.chksize"
1034 - MINOR: config: completely remove support for "no option http-use-htx"
1035 - MINOR: log: remove the long-deprecated early log-format tags
1036 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
1037 - MINOR: config: reject long-deprecated "option forceclose"
1038 - MINOR: config: remove deprecated option "http-tunnel"
1039 - MEDIUM: proxy: remove the deprecated "grace" keyword
1040 - MAJOR: config: remove parsing of the global "nbproc" directive
1041 - BUILD: init: remove initialization of multi-process thread mappings
1042 - BUILD: log: remove unused fmt_directive()
1043 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
1044 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
1045 - CI: github actions: enable alpine/musl builds
1046 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
1047 - DOC: lua: Add a warning about buffers modification in HTTP
1048 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
1049 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
1050 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
1051 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
1052 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
1053 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
1054 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
1055 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
1056 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
1057 - BUG/MINOR: mworker: fix typo in chroot error message
1058 - CLEANUP: global: remove unused definition of stopping_task[]
1059 - MEDIUM: init: remove the loop over processes during init
1060 - MINOR: mworker: remove the initialization loop over processes
1061 - CLEANUP: global: remove the nbproc field from the global structure
1062 - CLEANUP: global: remove pid_bit and all_proc_mask
1063 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
1064 - MEDIUM: config: simplify cpu-map handling
1065 - MEDIUM: cpu-set: make the proc a single bit field and not an array
1066 - CLEANUP: global: remove unused definition of MAX_PROCS
1067 - MEDIUM: global: remove the relative_pid from global and mworker
1068 - DOC: update references to process numbers in cpu-map and bind-process
1069 - MEDIUM: config: warn about "bind-process" deprecation
1070 - CLEANUP: shctx: remove the different inter-process locking techniques
1071 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
1072 - MINOR: backend: only skip LB when there are actual connections
1073 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
1074 - MINOR: connection: add helper conn_append_debug_info()
1075 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
1076 - CLEANUP: mux-h2/traces: better align user messages
1077 - BUG/MINOR: stats: make "show stat typed desc" work again
1078 - MINOR: mux-h2: obey http-ignore-probes during the preface
1079 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
1080 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
1081 - CLEANUP: assorted typo fixes in the code and comments
1082 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
1083 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
1084 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
1085 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
1086 - REGTESTS: Remove support for REQUIRE_BINARIES
1087 - CI: ssl: enable parallel builds for OpenSSL on Linux
1088 - CI: ssl: do not needlessly build the OpenSSL docs
1089 - CI: ssl: keep the old method for ancient OpenSSL versions
1090 - CLEANUP: server: a separate function for initializing the per_thr field
1091 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
1092 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
1093 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
1094 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
1095 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
1096 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
1097 - BUG/MINOR: backend: do not set sni on connection reuse
1098 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
1099 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
1100 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
1101 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
1102 - MINOR: ssl: always initialize random generator
1103 - MINOR: ssl: check allocation in ssl_sock_init_srv
1104 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
1105 - MINOR: ssl: check allocation in parse npn/sni
1106 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
1107 - MINOR: ssl: render file-access optional on server crt loading
1108 - MINOR: ssl: split parse functions for alpn/check-alpn
1109 - MINOR: ssl: support ca-file arg for dynamic servers
1110 - MINOR: ssl: support crt arg for dynamic servers
1111 - MINOR: ssl: support crl arg for dynamic servers
1112 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
1113 - MINOR: ssl: support ssl keyword for dynamic servers
1114 - REGTESTS: server: test ssl support for dynamic servers
1115 - MINOR: queue: update the stream's pend_pos before queuing it
1116 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
1117 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
1118 - REGTESTS: fix maxconn update with agent-check
1119 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
1120 - MINOR: queue: update proxy->served once out of the loop
1121 - MEDIUM: queue: refine the locking in process_srv_queue()
1122 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
1123 - MINOR: queue: create a new structure type "queue"
1124 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
1125 - MINOR: server: replace the pendconns-related stuff with a struct queue
1126 - MEDIUM: queue: use a dedicated lock for the queues
1127 - MEDIUM: queue: simplify again the process_srv_queue() API
1128 - MINOR: queue: factor out the proxy/server queuing code
1129 - MINOR: queue: use atomic-ops to update the queue's index
1130 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
1131 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
1132 - MEDIUM: queue: unlock as soon as possible
1133 - MINOR: queue: make pendconn_first() take the lock by itself
1134 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
1135 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
1136 - DOC: config: Add missing actions in "tcp-request session" documentation
1137 - CLEANUP: dns: Remove a forgotten debug message
1138 - DOC: Replace issue templates by issue forms
1139 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
1140 - Revert "MEDIUM: queue: unlock as soon as possible"
1141 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
1142 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
1143 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
1144 - Revert "MINOR: queue: factor out the proxy/server queuing code"
1145 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
1146 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
1147 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
1148 - Revert "MINOR: queue: update proxy->served once out of the loop"
1149 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
1150 - MEDIUM: queue: update px->served and lb's take_conn once per loop
1151 - MEDIUM: queue: use a dedicated lock for the queues (v2)
1152 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
1153 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
1154 - MINOR: queue: factor out the proxy/server queuing code (v2)
1155 - MINOR: queue: use atomic-ops to update the queue's index (v2)
1156 - MEDIUM: queue: take the proxy lock only during the px queue accesses
1157 - MEDIUM: queue: use a trylock on the server's queue
1158 - MINOR: queue: add queue_init() to initialize a queue
1159 - MINOR: queue: add a pointer to the server and the proxy in the queue
1160 - MINOR: queue: store a pointer to the queue into the pendconn
1161 - MINOR: queue: remove the px/srv fields from pendconn
1162 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
1163 - BUG: backend: stop looking for queued connections once there's no more
1164 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
1165 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
1166 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
1167 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
1168 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
1169 - BUILD: Makefile: fix linkage for Haiku.
1170 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
1171 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
1172 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
1173 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
1174 - CLEANUP: tcp-act: Sort action lists
1175 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
1176 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
1177 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
1178 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
1179 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
1180 - CLEANUP: peers: re-write intdecode function comment.
1181
Willy Tarreau1f973062021-05-14 09:36:37 +020011822021/05/14 : 2.5-dev0
1183 - MINOR: version: it's development again
1184
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020011852021/05/14 : 2.4.0
1186 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
1187 - CLEANUP: cli/activity: Remove double spacing in set profiling command
1188 - CI: Build VTest with clang
1189 - CI: extend spellchecker whitelist, add "ists" as well
1190 - CLEANUP: assorted typo fixes in the code and comments
1191 - BUG/MINOR: memprof: properly account for differences for realloc()
1192 - MINOR: memprof: also report the method used by each call
1193 - MINOR: memprof: also report the totals and delta alloc-free
1194 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
1195 - BUG/MINOR: http_act: Fix normalizer names in error messages
1196 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
1197 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
1198 - IMPORT: slz: use the generic function for the last bytes of the crc32
1199 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
1200 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
1201 - BUILD: makefile: add a few popular ARMv8 CPU targets
1202 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
1203 - REGTESTS: stick-table: add src_conn_rate test
1204 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
1205 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
1206 - EXAMPLES: add a "basic-config-edge" example config
1207 - EXAMPLES: add a trivial config for quick testing
1208 - DOC: management: Correct example reload command in the document
1209 - Revert "CI: Build VTest with clang"
1210 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
1211 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
1212 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
1213 - DOC: config: Fix configuration example for mqtt
1214 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
1215 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
1216 - DOC: update min requirements in INSTALL
1217 - IMPORT: slz: use inttypes.h instead of stdint.h
1218 - BUILD: sample: use strtoll() instead of atoll()
1219 - MINOR: version: mention that it's LTS now.
1220
Willy Tarreau46b93af2021-05-10 07:50:26 +020012212021/05/10 : 2.4-dev19
1222 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
1223 - BUG/MEDIUM: cli: prevent memory leak on write errors
1224 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
1225 - MINOR: debug: add a new "debug dev sym" command in expert mode
1226 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
1227 - CI: Github Actions: switch to LibreSSL-3.3.3
1228 - MINOR: srv: close all idle connections on shutdown
1229 - MINOR: connection: move session_list member in a union
1230 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
1231 - MEDIUM: connection: close front idling connection on soft-stop
1232 - MINOR: tools: add functions to retrieve the address of a symbol
1233 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
1234 - MINOR: activity: add a "memory" entry to "profiling"
1235 - MINOR: activity: declare the storage for memory usage statistics
1236 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
1237 - MINOR: activity: clean up the show profiling io_handler a little bit
1238 - MINOR: activity: make "show profiling" support a few arguments
1239 - MINOR: activity: make "show profiling" also dump the memoery usage
1240 - MINOR: activity: add the profiling.memory global setting
1241 - BUILD: makefile: add new option USE_MEMORY_PROFILING
1242 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
1243 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
1244 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
1245 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
1246 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
1247 - REGTESTS: Add script to test abortonclose option
1248 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
1249 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
1250 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
1251 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
1252 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
1253 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
1254 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
1255 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
1256 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
1257 - BUG/MINOR: config: .if/.elif should also accept negative integers
1258 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
1259 - MINOR: config: keep up-to-date current file/line/section in the global struct
1260 - MINOR: config: support some pseudo-variables for file/line/section
1261 - BUILD: activity: do not include malloc.h
1262 - MINOR: arg: improve the error message on missing closing parenthesis
1263 - MINOR: global: export the build features string list
1264 - MINOR: global: add version comparison functions
1265 - MINOR: config: improve .if condition error reporting
1266 - MINOR: config: make cfg_eval_condition() support predicates with arguments
1267 - MINOR: config: add predicate "defined()" to conditional expression blocks
1268 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
1269 - MINOR: config: add predicate "feature" to detect certain built-in features
1270 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
1271 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
1272 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
1273 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
1274 - MINOR: config: add a new message directive: .diag
1275 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
1276 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
1277 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
1278 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
1279 - MINOR: global: define tainted flag
1280 - MINOR: cfgparse: add a new field flags in cfg_keyword
1281 - MINOR: cfgparse: implement experimental config keywords
1282 - MINOR: action: replace match_pfx by a keyword flags field
1283 - MINOR: action: implement experimental actions
1284 - MINOR: cli: set tainted when using CLI expert/experimental mode
1285 - MINOR: stats: report tainted on show info
1286 - MINOR: http_act: mark normalize-uri as experimental
1287 - BUILD: fix usage of ha_alert without format string
1288 - MINOR: proxy: define PR_CAP_LB
1289 - BUG/MINOR: server: do not report diag for peer servers with null weight
1290 - DOC: ssl: Extra files loading now works for backends too
1291 - ADDONS: make addons/ discoverable by git via .gitignore
1292 - DOC: ssl: Add information about crl-file option
1293 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
1294 - DOC: management: mention that some fields may be emitted as floats
1295 - MINOR: tools: implement trimming of floating point numbers
1296 - MINOR: tools: add a float-to-ascii conversion function
1297 - MINOR: freq_ctr: add new functions to report float measurements
1298 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
1299 - MINOR: stats: add the HTML conversion for float types
1300 - MINOR: stats: pass the appctx flags to stats_fill_info()
1301 - MINOR: stats: support an optional "float" option to "show info"
1302 - MINOR: stats: use tv_remain() to precisely compute the uptime
1303 - MINOR: stats: report uptime and start time as floats with subsecond resolution
1304 - MINOR: stats: make "show info" able to report rates as floats when asked
1305 - MINOR: config: mark tune.fd.edge-triggered as experimental
1306 - REORG: vars: move the "proc" scope variables out of the global struct
1307 - REORG: threads: move all_thread_mask() to thread.h
1308 - BUILD: wdt: include signal-t.h
1309 - BUILD: auth: include missing list.h
1310 - REORG: mworker: move proc_self from global to mworker
1311 - BUILD: ssl: ssl_utils requires chunk.h
1312 - BUILD: config: cfgparse-ssl.c needs tools.h
1313 - BUILD: wurfl: wurfl.c needs tools.h
1314 - BUILD: spoe: flt_spoe.c needs tools.h
1315 - BUILD: promex: service-prometheus.c needs tools.h
1316 - BUILD: resolvers: include tools.h
1317 - BUILD: config: include tools.h in cfgparse-listen.c
1318 - BUILD: htx: include tools.h in http_htx.c
1319 - BUILD: proxy: include tools.h in proxy.c
1320 - BUILD: session: include tools.h in session.c
1321 - BUILD: cache: include tools.h in cache.c
1322 - BUILD: sink: include tools.h in sink.c
1323 - BUILD: connection: include tools.h in connection.c
1324 - BUILD: server-state: include tools.h from server_state.c
1325 - BUILD: dns: include tools.h in dns.c
1326 - BUILD: payload: include tools.h in payload.c
1327 - BUILD: vars: include tools.h in vars.c
1328 - BUILD: compression: include tools.h in compression.c
1329 - BUILD: mworker: include tools.h from mworker.c
1330 - BUILD: queue: include tools.h from queue.c
1331 - BUILD: udp: include tools.h from proto_udp.c
1332 - BUILD: stick-table: include freq_ctr.h from stick_table.h
1333 - BUILD: server: include tools.h from server.c
1334 - BUILD: server: include missing proxy.h in server.c
1335 - BUILD: sink: include proxy.h in sink.c
1336 - BUILD: mworker: include proxy.h in mworker.c
1337 - BUILD: filters: include proxy.h in filters.c
1338 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
1339 - BUILD: connection: move list_mux_proto() to connection.c
1340 - REORG: stick-table: uninline stktable_alloc_data_type()
1341 - REORG: stick-table: move composite address functions to stick_table.h
1342 - REORG: config: uninline warnifnotcap() and failifnotcap()
1343 - BUILD: task: remove unused includes from task.c
1344 - MINOR: task: stop including stream.h from task.c
1345 - BUILD: connection: stop including listener-t.h
1346 - BUILD: hlua: include proxy.h from hlua.c
1347 - BUILD: mux-h1: include proxy.h from mux-h1.c
1348 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
1349 - BUILD: listener: include proxy.h from listener.c
1350 - BUILD: http-rules: include proxy.h from http_rules.c
1351 - BUILD: thread: include log.h from thread.c
1352 - BUILD: comp: include proxy.h from flt_http_comp.c
1353 - BUILD: fd: include log.h from fd.c
1354 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
1355 - BUILD: makefile: reorder object files by build time
1356 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
1357 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
1358 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
1359 - DOC: remove last occurrences of "HA-Proxy" syntax
1360 - DOC: peers: fix the protocol tag name in the doc
1361 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
1362 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
1363 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
1364 - MINOR: tools/rnd: compute the result outside of the CAS loop
1365 - BUILD: http_fetch: address a few aliasing warnings with older compilers
1366 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
1367 - BUILD: errors: include stdarg in errors.h
1368 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
1369 - MINOR: cli: make "help" support a command in argument
1370 - MINOR: cli: sort the output of the "help" keywords
1371 - CLEANUP: cli/mworker: properly align the help messages
1372 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
1373 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
1374 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
1375 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
1376 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
1377
Willy Tarreau080347f2021-05-01 08:25:15 +020013782021/05/01 : 2.4-dev18
1379 - DOC: Fix indentation for `path-strip-dot` normalizer
1380 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
1381 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
1382 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
1383 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
1384 - REORG: htx: Inline htx functions to add HTX blocks in a message
1385 - CLEANUP: assorted typo fixes in the code and comments
1386 - DOC: general: fix white spaces for HTML converter
1387 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
1388 - BUG/MINOR: cpuset: move include guard at the very beginning
1389 - BUG/MAJOR: fix build on musl with cpu_set_t support
1390 - BUG/MEDIUM: cpuset: fix build on MacOS
1391 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
1392 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
1393 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
1394 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
1395 - MEDIUM: http-ana: handle read error on server side if waiting for response
1396 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
1397 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
1398 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
1399 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
1400 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
1401 - DOC: general: fix example in set-timeout
1402 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
1403 - MINOR: config: add a new "default-path" global directive
1404 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
1405 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
1406 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
1407 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
1408 - BUG/MEDIUM: peers: reset commitupdate value in new conns
1409 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
1410 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
1411 - MINOR: peers: add informative flags about resync process for debugging
1412 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
1413 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
1414 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
1415 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
1416 - REGTESTS: server: fix cli_add_server due to previous trace update
1417 - REGTESTS: add minimal CLI "add map" tests
1418 - DOC: management: move "set var" to the proper place
1419 - CLEANUP: map: slightly reorder the add map function
1420 - MINOR: map: get rid of map_add_key_value()
1421 - MINOR: map: show the current and next pattern version in "show map"
1422 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
1423 - MINOR: pattern: support purging arbitrary ranges of generations
1424 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
1425 - MINOR: map/acl: add the "prepare map/acl" CLI command
1426 - MINOR: map/acl: add the "commit map/acl" CLI command
1427 - MINOR: map/acl: make "add map/acl" support an optional version number
1428 - CLEANUP: map/cli: properly align the map/acl help
1429 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
1430
Willy Tarreaubfd19d62021-04-23 19:11:10 +020014312021/04/23 : 2.4-dev17
1432 - MINOIR: mux-pt/trace: Register a new trace source with its events
1433 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
1434 - CI: travis: Drastically clean up .travis.yml
1435 - CLEANUP: pattern: make all pattern tables read-only
1436 - MINOR: trace: replace the trace() inline function with an equivalent macro
1437 - MINOR: initcall: uniformize the section names between MacOS and other unixes
1438 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
1439 - MINOR: compiler: add macros to declare section names
1440 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
1441 - MINOR: global: declare a read_mostly section
1442 - MINOR: fd: move a few read-mostly variables to their own section
1443 - MINOR: epoll: move epoll_fd to read_mostly
1444 - MINOR: kqueue: move kqueue_fd to read_mostly
1445 - MINOR: pool: move pool declarations to read_mostly
1446 - MINOR: threads: mark all_threads_mask as read_mostly
1447 - MINOR: server: move idle_conn_task to read_mostly
1448 - MINOR: protocol: move __protocol_by_family to read_mostly
1449 - MINOR: pattern: make the pat_lru_seed read_mostly
1450 - MINOR: trace: make trace sources read_mostly
1451 - MINOR: freq_ctr: add a generic function to report the total value
1452 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
1453 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
1454 - MINOR: freq_ctr: add the missing next_event_delay_period()
1455 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
1456 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
1457 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
1458 - MINOR: freq_ctr: simplify and improve the update function
1459 - CLEANUP: time: remove the now unused ms_left_scaled
1460 - MINOR: time: move the time initialization out of tv_update_date()
1461 - MINOR: time: remove useless variable copies in tv_update_date()
1462 - MINOR: time: change the global timeval and the the global tick at once
1463 - MEDIUM: time: make the clock offset global and no per-thread
1464 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
1465 - MINOR: trace: Add the checks as a possible trace source
1466 - MINOIR: checks/trace: Register a new trace source with its events
1467 - MINOR: hlua: Add function to release a lua function
1468 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
1469 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
1470 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
1471 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
1472 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
1473 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
1474 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
1475 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
1476 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
1477 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
1478 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
1479 - DOC: internals: update the SSL architecture schema
1480 - BUG/MEDIUM: sample: Fix adjusting size in field converter
1481 - MINOR: sample: add ub64dec and ub64enc converters
1482 - CLEANUP: sample: align samples list in sample.c
1483 - MINOR: ist: Add `istclear(struct ist*)`
1484 - CI: cirrus: install "pcre" package
1485 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
1486 - MINOR: opentracing: transfer of context names without prefix
1487 - MINOR: sample: converter: Add mjson library.
1488 - MINOR: sample: converter: Add json_query converter
1489 - CI: travis-ci: enable weekly graviton2 builds
1490 - DOC: ssl: Certificate hot update only works on fronted certificates
1491 - DOC: ssl: Certificate hot update works on server certificates
1492 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
1493 - MINOR: threads: Only consider running threads to end a thread harmeless period
1494 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
1495 - MINOR: logs: Add support of checks as session origin to format lf strings
1496 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
1497 - MINOR: connection: Make bc_http_major compatible with tcp-checks
1498 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
1499 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
1500 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
1501 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
1502 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
1503 - BUG/MINOR: logs: Report the true number of retries if there was no connection
1504 - BUILD: makefile: Redirect stderr to /dev/null when probing options
1505 - MINOR: uri_normalizer: Add uri_normalizer module
1506 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
1507 - MINOR: uri_normalizer: Add `http-request normalize-uri`
1508 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
1509 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
1510 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
1511 - MINOR: uri_normalizer: Add a `sort-query` normalizer
1512 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
1513 - MEDIUM: http_act: Rename uri-normalizers
1514 - DOC: Add introduction to http-request normalize-uri
1515 - DOC: Note that URI normalization is experimental
1516 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
1517 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
1518 - MINOR: pools: drop the unused static history of artificially failed allocs
1519 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
1520 - MEDIUM: pools: move the cache into the pool header
1521 - MINOR: pool: remove the size field from pool_cache_head
1522 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
1523 - MINOR: pools: enable the fault injector in all allocation modes
1524 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
1525 - MEDIUM: pools: unify pool_refill_alloc() across all models
1526 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
1527 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
1528 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
1529 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
1530 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
1531 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
1532 - MINOR: tools: add statistical_prng_range() to get a random number over a range
1533 - MINOR: pools: use cheaper randoms for fault injections
1534 - MINOR: pools: move the fault injector to __pool_alloc()
1535 - MINOR: pools: split the OS-based allocator in two
1536 - MINOR: pools: always use atomic ops to maintain counters
1537 - MINOR: pools: move pool_free_area() out of the lock in the locked version
1538 - MINOR: pools: factor the release code into pool_put_to_os()
1539 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
1540 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
1541 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
1542 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
1543 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
1544 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
1545 - CLEANUP: pools: uninline pool_put_to_cache()
1546 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
1547 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
1548 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
1549 - CONTRIB: mod_defender: import the minimal number of includes
1550 - CONTRIB: mod_defender: make the code build with the embedded includes
1551 - CONTRIB: modsecurity: import the minimal number of includes
1552 - CONTRIB: modsecurity: make the code build with the embedded includes
1553 - CLEANUP: sample: Improve local variables in sample_conv_json_query
1554 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
1555 - CLEANUP: sample: Use explicit return for successful `json_query`s
1556 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
1557 - CONTRIB: move spoa_example out of the tree
1558 - BUG/MINOR: server: free srv.lb_nodes in free_server
1559 - BUG/MINOR: logs: free logsrv.conf.file on exit
1560 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
1561 - MINOR: server: add log on dynamic server creation
1562 - MINOR: server: implement delete server cli command
1563 - CONTRIB: move spoa_server out of the tree
1564 - CONTRIB: move modsecurity out of the tree
1565 - BUG/MINOR: server: fix potential null gcc error in delete server
1566 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
1567 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
1568 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
1569 - CLEANUP: uri_normalizer: Remove trailing whitespace
1570 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
1571 - CONTRIB: move mod_defender out of the tree
1572 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
1573 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
1574 - MINOR: config: add a diag for invalid cpu-map statement
1575 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
1576 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
1577 - BUILD: makefile: fix the "make clean" target on strict bourne shells
1578 - IMPORT: slz: import slz into the tree
1579 - BUILD: compression: switch SLZ from out-of-tree to in-tree
1580 - CI: github: do not build libslz any more
1581 - CLEANUP: compression: remove calls to SLZ init functions
1582 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
1583 - MINOR: cpuset: define a platform-independent cpuset type
1584 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
1585 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
1586 - MINOR: thread: implement the detection of forced cpu affinity
1587 - MINOR: cfgparse: support the comma separator on parse_cpu_set
1588 - MEDIUM: cfgparse: detect numa and set affinity if needed
1589 - MINOR: global: add option to disable numa detection
1590 - BUG/MINOR: haproxy: fix compilation on macOS
1591 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
1592 - MINOR: time: avoid unneeded updates to now_offset
1593 - MINOR: time: avoid overwriting the same values of global_now
1594 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
1595 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
1596 - BUG/MINOR: peers: remove useless table check if initial resync is finished
1597 - BUG/MEDIUM: peers: re-work connection to new process during reload.
1598 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
1599 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
1600
Willy Tarreau86512dd2021-04-09 17:10:39 +020016012021/04/09 : 2.4-dev16
1602 - CLEANUP: dev/flags: remove useless test in the stdin number parser
1603 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
1604 - MINOR: acl: Add HTTP_2.0 predefined macro
1605 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
1606 - BUG/MINOR: tools: fix parsing "us" unit for timers
1607 - MINOR: server/bind: add support of new prefixes for addresses.
1608 - MINOR: log: register config file and line number on log servers.
1609 - MEDIUM: log: support tcp or stream addresses on log lines.
1610 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
1611 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
1612 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
1613 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
1614 - MINOR: fd: move .linger_risk into fdtab[].state
1615 - MINOR: fd: move .cloned into fdtab[].state
1616 - MINOR: fd: move .initialized into fdtab[].state
1617 - MINOR: fd: move .et_possible into fdtab[].state
1618 - MINOR: fd: move .exported into fdtab[].state
1619 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
1620 - MINOR: cli/show-fd: slightly reorganize the FD status flags
1621 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
1622 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
1623 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
1624 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
1625 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
1626 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
1627 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
1628 - MINOR: atomic: implement native BTS/BTR for x86
1629 - MINOR: ist: Add `istappend(struct ist, char)`
1630 - MINOR: ist: Add `istshift(struct ist*)`
1631 - MINOR: ist: Add `istsplit(struct ist*, char)`
1632 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
1633 - MINOR: opentracing: register config file and line number on log servers
1634 - MEDIUM: resolvers: add support of tcp address on nameserver line.
1635 - MINOR: ist: Rename istappend() to __istappend()
1636 - CLEANUP: htx: Make http_get_stline take a `const struct`
1637 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
1638 - CLEANUP: Remove useless malloc() casts
1639
Willy Tarreau59fa1d12021-04-02 19:16:32 +020016402021/04/02 : 2.4-dev15
1641 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
1642 - BUG/MINOR: stats: Apply proper styles in HTML status page.
1643 - BUG/MEDIUM: time: make sure to always initialize the global tick
1644 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
1645 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
1646 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
1647 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
1648 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
1649 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
1650 - MINOR: frontend: Create HTTP txn for HTX streams
1651 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
1652 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
1653 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
1654 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
1655 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
1656 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
1657 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
1658 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
1659 - MINOR: muxes: Show muxes flags when the mux list is displayed
1660 - DOC: config: Improve documentation about proto/check-proto keywords
1661 - MINOR: stream: Use stream type instead of proxy mode when appropriate
1662 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
1663 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
1664 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
1665 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
1666 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
1667 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
1668 - DOC: config: Add documentation about TCP to HTTP upgrades
1669 - REGTESTS: Add script to tests TCP to HTTP upgrades
1670 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
1671 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
1672 - MINOR: action: Use a generic function to check validity of an action rule list
1673 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
1674 - MEDIUM: http-rules: Add wait-for-body action on request and response side
1675 - REGTESTS: Add script to tests the wait-for-body HTTP action
1676 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
1677 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
1678 - MINOR: global: define diagnostic mode of execution
1679 - MINOR: cfgparse: diag for multiple nbthread statements
1680 - MINOR: server: diag for 0 weight server
1681 - MINOR: diag: create cfgdiag module
1682 - MINOR: diag: diag if servers use the same cookie value
1683 - MINOR: config: diag if global section after non-global
1684 - TESTS: slightly reorganize the code in the tests/ directory
1685 - TESTS: move tests/*.cfg to tests/config
1686 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
1687 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
1688 - CONTRIB: halog: fix issue with array of type char
1689 - CONTRIB: tcploop: add a shutr command
1690 - CONTRIB: debug: add the show-fd-to-flags script
1691 - CONTRIB: debug: split poll from flags
1692 - CONTRIB: move some dev-specific tools to dev/
1693 - BUILD: makefile: always build the flags utility
1694 - DEV: flags: replace the unneeded makefile with a README
1695 - BUILD: makefile: integrate the hpack tools
1696 - CONTRIB: merge ip6range with iprange
1697 - CONTRIB: move some admin-related sub-projects to admin/
1698 - CONTRIB: move halog to admin/
1699 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
1700 - BUILD: makefile: build halog with the correct flags
1701 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
1702 - CONTRIB: move prometheus-exporter to addons/promex
1703 - DOC: add a few words about USE_* and the addons directory
1704 - CONTRIB: move 51Degrees to addons/51degrees
1705 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
1706 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
1707 - CONTRIB: move contrib/opentracing to addons/ot
1708 - BUG/MINOR: opentracing: initialization after establishing daemon mode
1709 - DOC: clarify that compression works for HTTP/2
1710
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010017112021/03/27 : 2.4-dev14
1712 - MEDIUM: quic: Fix build.
1713 - MEDIUM: quic: Fix build.
1714 - CI: codespell: whitelist "Dragan Dosen"
1715 - CLEANUP: assorted typo fixes in the code and comments
1716 - CI: github actions: update LibreSSL to 3.2.5
1717 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
1718 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
1719 - REGTESTS: remove unneeded experimental-mode in cli add server test
1720 - REGTESTS: wait for proper return of enable server in cli add server test
1721 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
1722 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
1723 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
1724 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
1725 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
1726 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
1727 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
1728 - CLEANUP: compression: do not test for buffer before calling b_alloc()
1729 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
1730 - MINOR: channel: simplify the channel's buffer allocation
1731 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
1732 - CLEANUP: dynbuf: remove b_alloc_margin()
1733 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
1734 - CLEANUP: pools: remove the unused pool_get_first() function
1735 - MINOR: pools: make the pool allocator support a few flags
1736 - MINOR: pools: add pool_zalloc() to return a zeroed area
1737 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
1738 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
1739 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
1740 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
1741 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
1742 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
1743 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
1744 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
1745 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
1746 - MINOR: time: also provide a global, monotonic global_now_ms timer
1747 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
1748 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
1749 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
1750 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
1751 - CLEANUP: ssl: remove unused definitions
1752 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
1753 - MINOR: lua: Slightly improve function dumping the lua traceback
1754 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
1755 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
1756 - MINOR: fd: make fd_clr_running() return the remaining running mask
1757 - MINOR: fd: remove the unneeded running bit from fd_insert()
1758 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
1759 - CLEANUP: fd: remove unused fd_set_running_excl()
1760 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
1761 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
1762 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
1763 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
1764 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
1765 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
1766 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
1767 - BUG/MINOR: ssl: Fix update of default certificate
1768 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
1769 - BUILD: ssl: introduce fine guard for ssl random extraction functions
1770 - REORG: global: move initcall register code in a dedicated file
1771 - REORG: global: move free acl/action in their related source files
1772 - REORG: split proxy allocation functions
1773 - MINOR: proxy: implement a free_proxy function
1774 - MINOR: proxy: define cap PR_CAP_LUA
1775 - MINOR: lua: properly allocate the lua Socket proxy
1776 - MINOR: lua: properly allocate the lua Socket servers
1777 - MINOR: vars: make get_vars() allow the session to be null
1778 - MINOR: vars: make the var() sample fetch keyword depend on nothing
1779 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
1780 - MINOR: sample: make smp_resolve_args() return an allocate error message
1781 - MINOR: sample: add a new SMP_SRC_CONST sample capability
1782 - MINOR: sample: mark the truly constant sample fetch keywords as such
1783 - MINOR: sample: add a new CFG_PARSER context for samples
1784 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
1785 - MEDIUM: vars: add support for a "set-var" global directive
1786 - REGTESTS: add a basic reg-test for some "set-var" commands
1787 - MINOR: sample: add a new CLI_PARSER context for samples
1788 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
1789 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
1790 - MEDIUM: cli: add a new experimental "set var" command
1791 - MINOR: compat: add short aliases for a few very commonly used types
1792 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
1793 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
1794
Willy Tarreau09cc6692021-03-19 17:16:18 +010017952021/03/19 : 2.4-dev13
1796 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
1797 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
1798 - MINOR: tools: improve word fingerprinting by counting presence
1799 - MINOR: tools: do not sum squares of differences for word fingerprints
1800 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
1801 - MINOR: cli: sort the suggestions by order of relevance
1802 - MINOR: cli: limit spelling suggestions to 5
1803 - MINOR: cfgparse/proxy: also support spelling fixes on options
1804 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
1805 - MINOR: time: export the global_now variable
1806 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
1807 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
1808 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
1809 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
1810 - MINOR: cli: implement experimental-mode
1811 - REORG: server: add a free server function
1812 - MINOR: cfgparse: always alloc idle conns task
1813 - REORG: server: move keywords in srv_kws
1814 - MINOR: server: remove fastinter from mistyped kw list
1815 - REORG: server: split parse_server
1816 - REORG: server: move alert traces in parse_server
1817 - REORG: server: rename internal functions from parse_server
1818 - REORG: server: attach servers in parse_server
1819 - REORG: server: use flags for parse_server
1820 - MINOR: server: prepare parsing for dynamic servers
1821 - MINOR: stats: export function to allocate extra proxy counters
1822 - MEDIUM: server: implement 'add server' cli command
1823 - REGTESTS: implement test for 'add server' cli
1824 - MINOR: server: enable standard options for dynamic servers
1825 - MINOR: server: support keyword proto in 'add server' cli
1826 - BUG/MINOR: protocol: add missing support of dgram unix socket.
1827 - CLEANUP: Fix a typo in fix_is_valid description
1828 - MINOR: raw_sock: Add a close method.
1829 - MEDIUM: connections: Introduce a new XPRT method, start().
1830 - MEDIUM: connections: Implement a start() method for xprt_handshake.
1831 - MEDIUM: connections: Implement a start() method in ssl_sock.
1832 - MINOR: muxes: garbage collect the reset() method.
1833 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
1834 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
1835 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
1836
Willy Tarreauacdd47d2021-03-13 11:48:28 +010018372021/03/13 : 2.4-dev12
1838 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
1839 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
1840 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
1841 - MINOR: connection: Use a `struct ist` to store proxy_authority
1842 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
1843 - BUILD: task: fix build at -O0 with threads disabled
1844 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
1845 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
1846 - BUILD: connection: do not use VAR_ARRAY in struct tlv
1847 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
1848 - MINOR: build: force CC to set a return code when probing options
1849 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
1850 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
1851 - CLEANUP: config: also address the cfg_keyword API change in the compression code
1852 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
1853 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
1854 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
1855 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
1856 - BUG/MINOR: connection: Missing QUIC initialization
1857 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
1858 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
1859 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
1860 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
1861 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
1862 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
1863 - BUG/MINOR: server-state: properly handle the case where the base is not set
1864 - BUG/MINOR: server-state: use the argument, not the global state
1865 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
1866 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
1867 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
1868 - CLEANUP: actions: the keyword must always be const from the rule
1869 - MINOR: tools: add simple word fingerprinting to find similar-looking words
1870 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
1871 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
1872 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
1873 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
1874 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
1875 - MINOR: actions: add a function to suggest an action ressembling a given word
1876 - MINOR: http-rules: suggest approaching action names on mismatch
1877 - MINOR: tcp-rules: suggest approaching action names on mismatch
1878 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
1879 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
1880 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
1881 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
1882 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
1883 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
1884 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
1885 - MINOR: resolvers: new function find_srvrq_answer_record()
1886 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
1887 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
1888 - MINOR: resolvers: Use a function to remove answers attached to a resolution
1889 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
1890 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
1891 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
1892 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
1893 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
1894 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
1895 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
1896 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
1897 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
1898 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
1899 - CLEANUP: cli: fix misleading comment and better indent the access level flags
1900 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
1901 - MINOR: cli: test the appctx level for master access instead of comparing pointers
1902 - MINOR: cli: print the error message in the parser function itself
1903 - MINOR: cli: filter the list of commands to the matching part
1904 - MEDIUM: cli: apply spelling fixes for known commands before listing them
1905 - MINOR: tools: add the ability to update a word fingerprint
1906 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
1907 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
1908 - CLEANUP: cli: rename the last few "stats_" to "cli_"
1909 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
1910 - CLEANUP: assorted typo fixes in the code and comments
1911
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010019122021/03/05 : 2.4-dev11
1913 - CI: codespell: skip Makefile for spell check
1914 - CLEANUP: assorted typo fixes in the code and comments
1915 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
1916 - BUG/MINOR: connection: Use the client's dst family for adressless servers
1917 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
1918 - CLEANUP: Use ist2(const void*, size_t) whenever possible
1919 - CLEANUP: Use IST_NULL whenever possible
1920 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
1921 - BUILD: quic: Implicit conversion between SSL related enums.
1922 - DOC: spoe: Add a note about fragmentation support in HAProxy
1923 - MINOR: contrib: add support for heartbeat control messages.
1924 - MINOR: contrib: Enhance peers dissector heuristic.
1925 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
1926 - CLEANUP: Reapply the ist2() replacement patch
1927 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
1928 - CLEANUP: Use isttest(const struct ist) whenever possible
1929 - Revert "CI: Pin VTest to a known good commit"
1930 - CLEANUP: backend: fix a wrong comment
1931 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
1932 - MINOR: backend: handle reuse for conns with no server as target
1933 - REGTESTS: test http-reuse if no server target
1934 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
1935 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
1936 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
1937 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
1938 - DOC: fix originalto except clause on destination address
1939 - CLEANUP: Use the ist() macro whenever possible
1940 - CLEANUP: Replace for loop with only a condition by while
1941 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
1942 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
1943 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
1944 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
1945 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
1946 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
1947 - MINOR: pools: double the local pool cache size to 1 MB
1948 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
1949 - CLEANUP: stream: explain why we queue the stream at the head of the server list
1950 - MEDIUM: backend: use a trylock when trying to grab an idle connection
1951 - REORG: tools: promote the debug PRNG to more general use as a statistical one
1952 - OPTIM: lb-random: use a cheaper PRNG to pick a server
1953 - MINOR: task: stop abusing the nice field to detect a tasklet
1954 - MINOR: task: move the nice field to the struct task only
1955 - MEDIUM: task: extend the state field to 32 bits
1956 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
1957 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
1958 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
1959 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
1960 - MINOR: server: don't read curr_used_conns multiple times
1961 - CLEANUP: global: reorder some fields to respect cache lines
1962 - CLEANUP: sockpair: silence a coverity check about fcntl()
1963 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
1964 - MINOR: server: add a global list of all known servers
1965 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
1966 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
1967 - MINOR: server: move actconns to the per-thread structure
1968 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
1969 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
1970 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
1971 - BUILD: Fix build when using clang without optimizing.
1972 - CLEANUP: assorted typo fixes in the code and comments
1973
Willy Tarreau8ab65c22021-02-26 22:49:10 +010019742021/02/26 : 2.4-dev10
1975 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
1976 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
1977 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
1978 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
1979 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
1980 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
1981 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
1982 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
1983 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
1984 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
1985 - MINOR: stream: add an "epoch" to figure which streams appeared when
1986 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
1987 - MINOR: streams: use one list per stream instead of a global one
1988 - MEDIUM: streams: do not use the streams lock anymore
1989 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
1990 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
1991 - MINOR: tasks: do not maintain the rqueue_size counter anymore
1992 - CLEANUP: tasks: use a less confusing name for task_list_size
1993 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
1994 - MINOR: task: limit the remote thread wakeup to the global runqueue only
1995 - MINOR: task: move the allocated tasks counter to the per-thread struct
1996 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
1997 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
1998 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
1999 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
2000 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
2001 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
2002 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
2003 - DOC: Update the module list in MAINTAINERS file
2004 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
2005 - DOC: Update the HTX API documentation
2006 - DOC: Update the filters guide
2007 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
2008 - MINOR: task: split the counts of local and global tasks picked
2009 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
2010 - MINOR: task: don't decrement then increment the local run queue
2011 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
2012 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
2013 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
2014 - MINOR: task: make tasklet wakeup latency measurements more accurate
2015 - MINOR: server: Be more strict on the server-state line parsing
2016 - MINOR: server: Only fill one array when parsing a server-state line
2017 - MEDIUM: server: Refactor apply_server_state() to make it more readable
2018 - CLEANUP: server: Rename state_line node to node instead of name_name
2019 - CLEANUP: server: Rename state_line structure into server_state_line
2020 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
2021 - MINOR: server: Be more strict when reading the version of a server-state file
2022 - MEDIUM: server: Store parsed params of a server-state line in the tree
2023 - MINOR: server: Remove cached line from global server-state tree when found
2024 - MINOR: server: Move loading state of servers in a dedicated function
2025 - MEDIUM: server: Use a tree to store local server-state lines
2026 - MINOR: server: Parse and store server-state lines in a dedicated function
2027 - MEDIUM: server: Don't load server-state file if a line is corrupted
2028 - REORG: server: Export and rename some functions updating server info
2029 - REORG: server-state: Move functions to deal with server-state in its own file
2030 - MINOR: server-state: Don't load server-state file for serverless proxies
2031 - CLEANUP: muxes: Remove useless if condition in show_fd function
2032 - BUG/MINOR: stats: fix compare of no-maint url suffix
2033 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
2034 - MINOR: ssl: mark the SSL handshake tasklet as heavy
2035 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
2036 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
2037 - MINOR: task: add one extra tasklet class: TL_HEAVY
2038 - MINOR: task: place the heavy elements in TL_HEAVY
2039 - MINOR: task: only limit TL_HEAVY tasks but not others
2040 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
2041 - MINOR: tools: Add net_addr structure describing a network addess
2042 - MINOR: tools: Add function to compare an address to a network address
2043 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
2044 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
2045 - REGTESTS: Add script to test except param for fowardedfor/originalto options
2046 - DOC: scheduler: add a diagram showing the different queues and their usages
2047 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
2048 - CLEANUP: config: replace a few free() with ha_free()
2049 - CLEANUP: vars: always zero the pointers after a free()
2050 - CLEANUP: ssl: remove a useless "if" before freeing an error message
2051 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
2052 - CLEANUP: ssl: use realloc() instead of free()+malloc()
2053
Willy Tarreau31dd3932021-02-20 13:30:31 +010020542021/02/20 : 2.4-dev9
2055 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
2056 - CLEANUP: check: fix get_check_status_info declaration
2057 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
2058 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
2059 - MINOR: stats: add helper to get status string
2060 - MEDIUM: contrib/prometheus-exporter: add listen stats
2061 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
2062 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
2063 - BUG/MINOR: dns: missing test writing in output channel in session handler
2064 - BUG/MINOR: dns: fix ring attach control on dns_session_new
2065 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
2066 - BUG/MAJOR: connection: prevent double free if conn selected for removal
2067 - BUG/MINOR: session: atomically increment the tracked sessions counter
2068 - REGTESTS: fix http_reuse_conn_hash proxy test
2069 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
2070 - MINOR: connection: remove pointers for prehash in conn_hash_params
2071 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
2072 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
2073 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
2074 - OPTIM: server: switch the actconn list to an mt-list
2075 - Revert "MINOR: threads: change lock_t to an unsigned int"
2076 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
2077 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
2078 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
2079 - OPTIM: lb-leastconn: do not unlink the server if it did not change
2080 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
2081 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
2082 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
2083 - MINOR: cli: add missing agent commands for set server
2084 - BUILD/MEDIUM: da Adding pcre2 support.
2085 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
2086 - REGTESTS: reorder reuse conn proxy protocol test
2087 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
2088 - MINOR: tasks: refine the default run queue depth
2089 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
2090 - MINOR: mux_h2: do not try to remove front conn from idle trees
2091 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
2092 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
2093 - MINOR: connection: allocate dynamically hash node for backend conns
2094 - DOC: DeviceAtlas documentation typo fix.
2095 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
2096 - BUG/MINOR: http-rules: Always replace the response status on a return action
2097 - BUG/MINOR: server: Init params before parsing a new server-state line
2098 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
2099 - MEDIUM: server: Don't introduce a new server-state file version
2100 - DOC: contrib/prometheus-exporter: remove htx reference
2101 - REGTESTS: contrib/prometheus-exporter: test NaN values
2102 - REGTESTS: contrib/prometheus-exporter: test well known labels
2103 - CI: github actions: switch to stable LibreSSL release
2104 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
2105 - MINOR: dynbuf: make the buffer wait queue per thread
2106 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
2107 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
2108 - MINOR: sched: have one runqueue ticks counter per thread
2109
Willy Tarreaudc626ec2021-02-13 10:17:27 +010021102021/02/13 : 2.4-dev8
2111 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
2112 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
2113 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
2114 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
2115 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
2116 - CLEANUP: assorted typo fixes in the code and comments
2117 - CLEANUP: check: fix some typo in comments
2118 - CLEANUP: tools: typo in `strl2irc` mention
2119 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
2120 - MEDIUM: ssl: add a rwlock for SSL server session cache
2121 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
2122 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
2123 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
2124 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
2125 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
2126 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
2127 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
2128 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
2129 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
2130 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
2131 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
2132 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
2133 - BUG/MINOR: server: re-align state file fields number
2134 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
2135 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
2136 - CLEANUP: remove unused variable assigned found by Coverity
2137 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
2138 - BUG/MINOR: backend: hold correctly lock when killing idle conn
2139 - MEDIUM: connection: protect idle conn lists with locks
2140 - MEDIUM: connection: replace idle conn lists by eb trees
2141 - MINOR: backend: search conn in idle/safe trees after available
2142 - MINOR: backend: search conn in idle tree after safe on always reuse
2143 - MINOR: connection: prepare hash calcul for server conns
2144 - MINOR: connection: use the srv pointer for the srv conn hash
2145 - MINOR: backend: compare conn hash for session conn reuse
2146 - MINOR: connection: use sni as parameter for srv conn hash
2147 - MINOR: reg-tests: test http-reuse with sni
2148 - MINOR: backend: rewrite alloc of stream target address
2149 - MINOR: connection: use dst addr as parameter for srv conn hash
2150 - MINOR: reg-test: test http-reuse with specific dst addr
2151 - MINOR: backend: rewrite alloc of connection src address
2152 - MINOR: connection: use src addr as parameter for srv conn hash
2153 - MINOR: connection: use proxy protocol as parameter for srv conn hash
2154 - MINOR: reg-tests: test http-reuse with proxy protocol
2155 - MINOR: doc: update http reuse for new eligilible connections
2156 - BUG/MINOR: backend: fix compilation without ssl
2157 - REGTESTS: adjust http_reuse_conn_hash requirements
2158 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
2159 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
2160 - CI: cirrus: update FreeBSD image to 12.2
2161 - MEDIUM: cli: add check-addr command
2162 - MEDIUM: cli: add agent-port command
2163 - MEDIUM: server: add server-states version 2
2164 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
2165 - MINOR: server: enhance error precision when applying server state
2166 - BUG/MINOR: server: Fix server-state-file-name directive
2167 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
2168 - BUG/MEDIUM: config: don't pick unset values from last defaults section
2169 - BUG/MINOR: stats: revert the change on ST_CONVDONE
2170 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
2171 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
2172 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
2173 - BUILD: proxy: add missing compression-t.h to proxy-t.h
2174 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
2175 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
2176 - MEDIUM: proxy: only take defaults when a default proxy is passed.
2177 - MINOR: proxy: move the defproxy freeing code to proxy.c
2178 - MINOR: proxy: always properly reset the just freed default instance pointers
2179 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
2180 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
2181 - BUG/MINOR: server: parse_server() must take a const for the defproxy
2182 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
2183 - MINOR: proxy: add a new capability PR_CAP_DEF
2184 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
2185 - MINOR: cfgparse: use a pointer to the current default proxy
2186 - MINOR: proxy: also store the name for a defaults section
2187 - MINOR: proxy: support storing defaults sections into their own tree
2188 - MEDIUM: proxy: store the default proxies in a tree by name
2189 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
2190 - MINOR: http: add baseq sample fetch
2191 - CLEANUP: tcpcheck: Remove a useless test on port variable
2192 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
2193 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
2194 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
2195 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
2196 - DOC: tune: explain the origin of block size for ssl.cachesize
2197 - MINOR: tcp: add support for defer-accept on FreeBSD.
2198 - MINOR: ring: adds new ring_init function.
2199 - CLEANUP: channel: fix comment in ci_putblk.
2200 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
2201 - BUG/MINOR: resolvers: fix attribute packed struct for dns
2202 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
2203 - MINOR: resolvers: renames type dns_resolvers to resolvers.
2204 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
2205 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
2206 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
2207 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
2208 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
2209 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
2210 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
2211 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
2212 - MEDIUM: resolvers: split resolving and dns message exchange layers.
2213 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
2214 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
2215 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
2216
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010022172021/02/05 : 2.4-dev7
2218 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
2219 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
2220 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
2221 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
2222 - CLEANUP: stats: improve field selection for frontend http fields
2223 - CLEANUP: assorted typo fixes in the code and comments
2224 - DOC: Improve documentation of the various hdr() fetches
2225 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
2226 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
2227 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
2228 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
2229 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
2230 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
2231 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
2232 - MINOR: reg-tests: add http-reuse test
2233 - CLEANUP: srv: fix comment for pool-max-conn
2234 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
2235 - REORG: backend: simplify conn_backend_get
2236 - MINOR: ssl: Server ssl context prepare function refactoring
2237 - MINOR: ssl: Certificate chain loading refactorization
2238 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
2239 - MEDIUM: ssl: Enable backend certificate hot update
2240 - MINOR: ssl: Remove client_crt member of the server's ssl context
2241 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
2242 - CLEANUP: ssl: remove SSL_CTX function parameter
2243 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
2244 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
2245 - CI: Fix DEBUG_STRICT definition for Coverity
2246 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
2247 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
2248 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
2249 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
2250 - BUG/MEDIUM: session: only retrieve ready idle conn from session
2251 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
2252 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
2253 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
2254 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
2255 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
2256 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
2257 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
2258 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
2259 - MINOR: stream: Add a function to validate TCP to H1 upgrades
2260 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
2261 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
2262 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
2263 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
2264 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
2265 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
2266 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
2267 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
2268 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
2269 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
2270 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
2271 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
2272 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
2273 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
2274 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
2275 - MINOR: htx: Add a function to know if a block is the only one in a message
2276 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
2277 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
2278 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
2279 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
2280 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
2281 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
2282 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
2283 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
2284 - MINOR: h1: reject websocket handshake if missing key
2285 - MEDIUM: h1: generate WebSocket key on response if needed
2286 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
2287 - MEDIUM: h2: parse Extended CONNECT reponse to htx
2288 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
2289 - MEDIUM: h1: add a WebSocket key on handshake if needed
2290 - MEDIUM: mux_h2: generate Extended CONNECT response
2291 - MEDIUM: h2: parse Extended CONNECT request to htx
2292 - MEDIUM: h2: send connect protocol h2 settings
2293 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
2294 - MINOR: vtc: add websocket test
2295 - REGTESTS: Fix required versions for several scripts
2296 - REGTEST: Don't use the websocket to validate http-check
2297 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
2298 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
2299 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
2300 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
2301 - REGTESTS: set_ssl_server_cert.vtc: set as broken
2302 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
2303 - BUG/MINOR: backend: check available list allocation for reuse
2304 - CI: Fix the coverity builds
2305 - DOC: management: fix "show resolvers" alphabetical ordering
2306 - MINOR: tools: add print_time_short() to print a condensed duration value
2307 - MINOR: activity: make profiling more manageable
2308 - MINOR: activity: declare a new structure to collect per-function activity
2309 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
2310 - MINOR: activity: also report collected tasks stats in "show profiling"
2311 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
2312 - MINOR: activity: add a new "show tasks" command to list currently active tasks
2313 - MINOR: listener: export accept_queue_process
2314 - MINOR: session: export session_expire_embryonic()
2315 - MINOR: muxes: export the timeout and shutr task handlers
2316 - MINOR: checks: export a few functions that appear often in trace dumps
2317 - MINOR: peers: export process_peer_sync() to improve traces
2318 - MINOR: stick-tables: export process_table_expire()
2319 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
2320 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
2321 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
2322 - MINOR: http-conv: Don't check if argument list is set in sample converters
2323 - MINOR: sample: Don't check if argument list is set in sample fetches
2324 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
2325 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
2326 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
2327 - MINOR: contrib/prometheus-exporter: declare states for objects
2328 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
2329 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
2330 - MINOR: listener: export manage_global_listener_queue()
2331 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
2332 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
2333 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
2334 - MINOR: checks: Add function to get the result code corresponding to a status
2335 - MAJOR: contrib/prometheus-exporter: move health check status to labels
2336 - MINOR: contrib/prometheus-exporter: improve service status description field
2337 - MINOR: stats: improve pending connections description
2338 - MINOR: stats: improve max stats descriptions
2339 - MINOR: contrib/prometheus-exporter: use stats desc when possible
2340 - MINOR: contrib/prometheus-exporter: add uweight field
2341 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
2342 - CLEANUP: contrib/prometheus-exporter: remove unused includes
2343 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
2344 - CLEANUP: contrib/prometheus-exporter: remove description in README
2345 - DOC: contrib/prometheus-exporter: Add missing metrics in README
2346 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
2347 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
2348 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
2349 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
2350 - BUG/MINOR: mux_h2: fix incorrect stat titles
2351 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
2352 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
2353 - MINOR: server: Don't set the check port during the update from a state file
2354 - MINOR: dns: Don't set the check port during a server dns resolution
2355 - MEDIUM: check: remove checkport checkaddr flag
2356 - MEDIUM: server: adding support for check_port in server state
2357 - BUG/MINOR: check: consitent way to set agentaddr
2358 - MEDIUM: check: align agentaddr and agentport behaviour
2359 - DOC: server: Add missing params in comment of the server state line parsing
2360 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
2361 - REGTESTS: mark http-check-send.vtc as 2.4-only
2362 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
2363 - BUG/MINOR: ssl: do not try to use early data if not configured
2364 - REGTESTS: unbreak http-check-send.vtc
2365 - MINOR: cli/show_fd: report local and report ports when known
2366 - BUILD: Makefile: move REGTESTST_TYPE default setting
2367 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
2368 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
2369 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
2370 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
2371
Willy Tarreau24c41d52021-01-22 16:19:46 +010023722021/01/22 : 2.4-dev6
2373 - MINOR: converter: adding support for url_enc
2374 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
2375 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
2376 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
2377 - BUILD: Makefile: exclude broken tests by default
2378 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
2379 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
2380 - MINOR: contrib/prometheus-exporter: export build_info
2381 - DOC: fix some spelling issues over multiple files
2382 - CLEANUP: Fix spelling errors in comments
2383 - SCRIPTS: announce-release: fix typo in help message
2384 - CI: github: add a few more words to the codespell ignore list
2385 - DOC: Add maintainers for the Prometheus exporter
2386 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
2387 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
2388 - CLEANUP: sample: remove uneeded check in json validation
2389 - MINOR: reg-tests: add a way to add service dependency
2390 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
2391 - BUG/MINOR: reg-tests: fix service dependency script
2392 - MINOR: reg-tests: add base prometheus test
2393 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
2394 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
2395 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
2396 - BUG/MINOR: init: enforce strict-limits when using master-worker
2397 - MINOR: contrib/prometheus-exporter: avoid connection close header
2398 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
2399 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
2400 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
2401 - MINOR: server: Forbid server definitions in frontend sections
2402 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
2403 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
2404 - MINOR: pattern: add the missing generation ID manipulation functions
2405 - MINOR: peers: Add traces for peer control messages.
2406 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
2407 - BUILD: peers: fix build warning about unused variable
2408 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
2409 - MINOR: cache: Do not store responses with an unknown encoding
2410 - BUG/MINOR: peers: Possible appctx pointer dereference.
2411 - MINOR: build: discard echoing in help target
2412 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
2413 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
2414 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
2415 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
2416 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
2417 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
2418 - CLEANUP: tools: make resolve_sym_name() take a const pointer
2419 - CLEANUP: cli: make "show fd" use a const connection to access other fields
2420 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
2421 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
2422 - MINOR: ssl: provide a "show fd" helper to report important SSL information
2423 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
2424 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
2425 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
2426 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
2427 - CI: Pin VTest to a known good commit
2428 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
2429 - MINOR: cli/show_fd: report some easily detectable suspicious states
2430 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
2431 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
2432 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
2433 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
2434 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
2435 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
2436 - MINOR: http: Add HTTP 501-not-implemented error message
2437 - MINOR: muxes: Add exit status for errors about not implemented features
2438 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
2439 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
2440 - DOC: Remove space after comma in converter signature
2441 - DOC: Rename '<var name>' to '<var>' in converter signature
2442 - MINOR: stats: duplicate 3 fields in bytes in info
2443 - MINOR: stats: add new start time field
2444 - MINOR: contrib/prometheus-exporter: merge info description from stats
2445 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
2446 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
2447 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
2448 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
2449 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
2450 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
2451 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
2452 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
2453 - MINOR: debug: always export the my_backtrace function
2454 - MINOR: debug: extract the backtrace dumping code to its own function
2455 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
2456 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
2457 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
2458 - BUILD: debug: fix build warning by consuming the write() result
2459 - MINOR: lua: remove unused variable
2460 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
2461
Willy Tarreau421ed392021-01-06 17:41:32 +010024622021/01/06 : 2.4-dev5
2463 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
2464 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
2465 - MINOR: time: increase the minimum wakeup interval to 60s
2466 - MINOR: check: do not ignore a connection header for http-check send
2467 - REGTESTS: complete http-check test
2468 - CI: travis-ci: drop coverity scan builds
2469 - MINOR: atomic: don't use ; to separate instruction on aarch64.
2470 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
2471 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
2472 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
2473 - CLEANUP: xxhash: remove the unused src/xxhash.c
2474 - MINOR: sample: add the xxh3 converter
2475 - REGTESTS: add tests for the xxh3 converter
2476 - MINOR: protocol: Create proto_quic QUIC protocol layer.
2477 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
2478 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
2479 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
2480 - MINOR: connection: Add a new xprt to connection.
2481 - MINOR: ssl: Export definitions required by QUIC.
2482 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
2483 - MINOR: tools: Add support for QUIC addresses parsing.
2484 - MINOR: quic: Add definitions for QUIC protocol.
2485 - MINOR: quic: Import C source code files for QUIC protocol.
2486 - MINOR: listener: Add QUIC info to listeners and receivers.
2487 - MINOR: server: Add QUIC definitions to servers.
2488 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
2489 - MINOR: ssl: QUIC transport parameters parsing.
2490 - MINOR: quic: QUIC socket management finalization.
2491 - MINOR: cfgparse: QUIC default server transport parameters init.
2492 - MINOR: quic: Enable the compilation of QUIC modules.
2493 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
2494 - MINOR: quic: Attempt to make trace more readable
2495 - MINOR: quic: Make usage of the congestion control window.
2496 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
2497 - MINOR: quic: Code reordering to help in reviewing/modifying.
2498 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
2499 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
2500 - MINOR: quic: Update the initial salt to that of draft-29.
2501 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
2502 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
2503 - MINOR: quic: Add traces for quic_packet_encrypt().
2504 - MINOR: cache: Refactoring of secondary_key building functions
2505 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
2506 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
2507 - MINOR: cache: Add specific secondary key comparison mechanism
2508 - MINOR: http: Add helper functions to trim spaces and tabs
2509 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
2510 - REGTESTS: cache: Simplify vary.vtc file
2511 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
2512 - MINOR: cache: Remove redundant test in http_action_req_cache_use
2513 - MINOR: cache: Replace the "process-vary" option's expected values
2514 - CI: GitHub Actions: enable daily Coverity scan
2515 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
2516 - MEDIUM: stick-tables: Add srvkey option to stick-table
2517 - REGTESTS: add test for stickiness using "srvkey addr"
2518 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
2519 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
2520 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
2521 - MINOR: lua: Use consistent error message 'memory allocation failed'
2522 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
2523 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
2524 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
2525 - MINOR: qpack: Add static header table definitions for QPACK.
2526 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
2527 - CLEANUP: quic: Remove useless QUIC event trace definitions.
2528 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
2529 - MINOR: quic: Pass quic_conn struct to frame parsers.
2530 - BUG/MINOR: quic: Wrong STREAM frames parsing.
2531 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
2532 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
2533 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
2534 - MINOR: ssl: make tlskeys_list_get_next() take a list element
2535 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
2536 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
2537 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
2538 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
2539 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
2540 - CLEANUP: spoe: fix typo on `var_check_arg` comment
2541 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
2542 - CI: github actions: build several popular "contrib" tools
2543 - DOC: Improve the message printed when running `make` w/o `TARGET`
2544 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
2545 - REGTESTS: add unresolvable servers to srvkey-addr
2546 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
2547 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
2548 - SCRIPTS: improve announce-release to support different tag and versions
2549 - SCRIPTS: make announce release support preparing announces before tag exists
2550 - CLEANUP: assorted typo fixes in the code and comments
2551 - BUG/MINOR: srv: do not init address if backend is disabled
2552 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
2553 - CLEANUP: assorted typo fixes in the code and comments
2554 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
2555
Willy Tarreau4d711762020-12-21 11:54:56 +010025562020/12/21 : 2.4-dev4
2557 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
2558 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
2559 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
2560 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
2561 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
2562 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
2563 - MEDIUM: cache: Avoid going over duplicates lists too often
2564 - MINOR: cache: Add a max-secondary-entries cache option
2565 - CI: cirrus: drop CentOS 6 builds
2566 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
2567 - MINOR: vars: replace static functions with global ones
2568 - MINOR: opentracing: add ARGC_OT enum
2569 - CONTRIB: opentracing: add the OpenTracing filter
2570 - DOC: opentracing: add the OpenTracing filter section
2571 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
2572 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
2573 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
2574 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
2575 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
2576 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
2577 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
2578 - CLEANUP: debug: mark the RNG's seed as unsigned
2579 - CONTRIB: halog: fix build issue caused by %L printf format
2580 - CONTRIB: halog: mark the has_zero* functions unused
2581 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
2582 - CONTRIB: debug: address "poll" utility build on non-linux platforms
2583 - BUILD: plock: remove dead code that causes a warning in gcc 11
2584 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
2585 - BUG/MINOR: dns: SRV records ignores duplicated AR records
2586 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
2587 - CLEANUP: assorted typo fixes in the code and comments
2588 - DOC: assorted typo fixes in the documentation
2589 - CI: codespell: whitelist "te" and "nd" words
2590
Willy Tarreaua786c412020-12-11 17:22:51 +010025912020/12/11 : 2.4-dev3
2592 - MINOR: log: Logging HTTP path only with %HPO
2593 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
2594 - MINOR: traces: add a new level "error" below the "user" level
2595 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
2596 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
2597 - BUG/MINOR: lua: missing "\n" in error message
2598 - BUG/MINOR: lua: lua-load doesn't check its parameters
2599 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
2600 - BUG/MINOR: lua: Some lua init operation are processed unsafe
2601 - MINOR: actions: Export actions lookup functions
2602 - MINOR: actions: add a function returning a service pointer from its name
2603 - MINOR: cli: add a function to look up a CLI service description
2604 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
2605 - MINOR: cache: Improve accept_encoding_normalizer
2606 - MINOR: cache: Add entry to the tree as soon as possible
2607 - BUG/MINOR: trace: Wrong displayed trace level
2608 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
2609 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
2610 - MEDIUM: lua-thread: use atomics for memory accounting
2611 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
2612 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
2613 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
2614 - MINOR: lua-thread: Use NULL context for main lua state
2615 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
2616 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
2617 - MINOR: lua-thread: Split hlua_init() function in two parts
2618 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
2619 - MINOR: lua-thread: Split hlua_load function in two parts
2620 - MINOR: lua-thread: Split hlua_post_init() function in two parts
2621 - MINOR: lua-thread: Add the "thread" core variable
2622 - MEDIUM: lua-thread: No longer use locked context in initialization parts
2623 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
2624 - MINOR: lua-thread: Replace global gL var with an array of states
2625 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
2626 - MINOR: lua-thread: Replace state_from by state_id
2627 - MINOR: lua-thread: Store each function reference and init reference in array
2628 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
2629 - MINOR: lua-thread: Add verbosity in errors
2630 - REGTESTS: add a test for the threaded Lua code
2631 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
2632 - DOC/MINOR: Fix formatting in Management Guide
2633 - MINOR: cache: Do not store stale entry
2634 - MINOR: cache: Add extra "cache-control" value checks
2635 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
2636 - MINOR: cache: Consider invalid Age values as stale
2637 - BUG/MEDIUM: lua-thread: some parts must be initialized once
2638 - BUG/MINOR: lua-thread: close all states on deinit
2639 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
2640 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
2641 - MINOR: session: Add the idle duration field into the session
2642 - MINOR: mux-h1: Update session idle duration when data are received
2643 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
2644 - MINOR: logs: Use session idle duration when no stream is provided
2645 - MINOR: stream: Always get idle duration from the session
2646 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
2647 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
2648 - MINOR: muxes: Remove get_cs_info callback function now useless
2649 - MINOR: stream: Pass an optional input buffer when a stream is created
2650 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
2651 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
2652 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
2653 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
2654 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
2655 - MINOR: mux-h1: Add a rxbuf into the H1 stream
2656 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
2657 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
2658 - MINOR: mux-h1: rework the h1_timeout_task() function
2659 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
2660 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
2661 - MINOR: mux-h1: Rework how shutdowns are handled
2662 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
2663 - MINOR: mux-h1: Process next request for IDLE connection only
2664 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
2665 - MINOR: stick-tables: Add functions to update some values of a tracked counter
2666 - MINOR: session: Add functions to increase http values of tracked counters
2667 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
2668 - MINOR: logs: Get the multiplexer exist status when no stream is provided
2669 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
2670 - MAJOR: mux-h1: Create the client stream as later as possible
2671 - DOC: config: Add notes about errors emitted by H1 mux
2672 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
2673 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
2674 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
2675 - MEDIUM: http-ana: Don't process partial or empty request anymore
2676 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
2677 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
2678 - REGTESTS: Fix proxy_protocol_tlv_validation
2679 - MINOR: http-ana: Properly set message flags from the start-line flags
2680 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
2681 - MINOR: protocol: add a ->set_port() helper to address families
2682 - MINOR: listener: automatically set the port when creating listeners
2683 - MINOR: listener: now use a generic add_listener() function
2684 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
2685 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
2686 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
2687 - MINOR: protocol: remove the redundant ->sock_domain field
2688 - MINOR: protocol: export protocol definitions
2689 - CLEANUP: protocol: group protocol struct members by usage
2690 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
2691 - MINOR: connection: use the control layer's init/close
2692 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
2693 - BUG/MAJOR: spoa/python: Fixing return None
2694 - DOC: spoa/python: Fixing typo in IP related error messages
2695 - DOC: spoa/python: Rephrasing memory related error messages
2696 - DOC: spoa/python: Fixing typos in comments
2697 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
2698 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
2699 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
2700 - BUG/MEDIUM: spoa/python: Fixing references to None
2701 - DOC: email change of the DeviceAtlas maintainer
2702 - MINOR: cache: Dump secondary entries in "show cache"
2703 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
2704 - MINOR: stream-int: don't touch polling anymore on shutdown
2705 - MINOR: connection: implement cs_drain_and_close()
2706 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
2707 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
2708 - MINOR: checks: don't call conn_cond_update_polling() anymore
2709 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
2710 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
2711 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
2712 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
2713 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
2714 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
2715 - BUG/MINOR: tools: Reject size format not starting by a digit
2716 - MINOR: action: define enum for timeout type of the set-timeout rule
2717 - MINOR: stream: prepare the hot refresh of timeouts
2718 - MEDIUM: stream: support a dynamic server timeout
2719 - MEDIUM: stream: support a dynamic tunnel timeout
2720 - MEDIUM: http_act: define set-timeout server/tunnel action
2721 - MINOR: frontend: add client timeout sample fetch
2722 - MINOR: backend: add timeout sample fetches
2723 - MINOR: stream: add sample fetches
2724 - MINOR: stream: add timeout sample fetches
2725 - REGTESTS: add regtest for http-request set-timeout
2726 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
2727 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
2728 - MINOR: connection: remove sock-specific code from conn_sock_send()
2729 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
2730 - MINOR: protocol: add a ->drain() function at the connection control layer
2731 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
2732 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
2733 - MEDIUM: connection: make use of the control layer check_events/ignore_events
2734
Willy Tarreauc94431b2020-12-01 08:15:26 +010027352020/12/01 : 2.4-dev2
2736 - BUILD: Make DEBUG part of .build_opts
2737 - BUILD: Show the value of DEBUG= in haproxy -vv
2738 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
2739 - MINOR: stream: Add level 7 retries on http error 401, 403
2740 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
2741 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
2742 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
2743 - BUG/MEDIUM: http_act: Restore init of log-format list
2744 - DOC: better describes how to configure a fallback crt
2745 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
2746 - MINOR: cache: Prepare helper functions for Vary support
2747 - MEDIUM: cache: Add the Vary header support
2748 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
2749 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
2750 - BUG/MAJOR: peers: fix partial message decoding
2751 - DOC: cache: Add new caching limitation information
2752 - DOC: cache: Add information about Vary support
2753 - DOC: better document the config file format and escaping/quoting rules
2754 - DOC: Clarify %HP description in log-format
2755 - CI: github actions: update LibreSSL to 3.3.0
2756 - CI: github actions: enable 51degrees feature
2757 - MINOR: fd/threads: silence a build warning with threads disabled
2758 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
2759 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
2760 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
2761 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
2762 - MINOR: config: Deprecate and ignore tune.chksize global option
2763 - MINOR: config: Add a warning if tune.chksize is used
2764 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
2765 - MINOR: check: Always increment check health counter on CONPASS
2766 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
2767 - DOC: config: Make disable-on-404 option clearer on transition conditions
2768 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
2769 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
2770 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
2771 - MINOR: debug: add "debug dev sched" to stress the scheduler.
2772 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
2773 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
2774 - MINOR: task: remove tasklet_insert_into_tasklet_list()
2775 - MINOR: task: perform atomic counter increments only once per wakeup
2776 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
2777 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
2778 - BUG/MEDIUM: local log format regression.
2779
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010027802020/11/21 : 2.4-dev1
2781 - MINOR: ist: Add istend() function to return a pointer to the end of the string
2782 - MINOR: sample: Add converters to parse FIX messages
2783 - REGTEST: converter: Add a regtest for fix converters
2784 - MINOR: sample: Add converts to parses MQTT messages
2785 - REGTEST: converter: Add a regtest for MQTT converters
2786 - MINOR: compat: automatically include malloc.h on glibc
2787 - MEDIUM: pools: call malloc_trim() from pool_gc()
2788 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
2789 - MINOR: pattern: move the update revision to the pat_ref, not the expression
2790 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
2791 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
2792 - MINOR: pattern: make the delete and prune functions more generic
2793 - MEDIUM: pattern: link all final elements from the reference
2794 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
2795 - MINOR: pattern: remerge the list and tree deletion functions
2796 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
2797 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
2798 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
2799 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
2800 - MINOR: pattern: store a generation number in the reference patterns
2801 - MEDIUM: pattern: only match patterns that match the current generation
2802 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
2803 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
2804 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
2805 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
2806 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
2807 - MINOR: pattern: prepare removal of a pattern from the list head
2808 - MEDIUM: pattern: turn the pattern chaining to single-linked list
2809 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
2810 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
2811 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
2812 - MINOR: ssl: instantiate stats module
2813 - MINOR: ssl: count client hello for stats
2814 - MINOR: ssl: add counters for ssl sessions
2815 - DOC: config: Fix a typo on ssl_c_chain_der
2816 - MINOR: server: remove idle lock in srv_cleanup_connections
2817 - BUILD: ssl: silence build warning on uninitialised counters
2818 - BUILD: http-htx: fix build warning regarding long type in printf
2819 - REGTEST: ssl: test wildcard and multi-type + exclusions
2820 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
2821 - CI: Expand use of GitHub Actions for CI
2822 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
2823 - BUG/MINOR: pattern: a sample marked as const could be written
2824 - BUG/MINOR: lua: set buffer size during map lookups
2825 - MEDIUM: cache: Change caching conditions
2826 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
2827 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
2828 - MINOR: peers: Add traces to peer_treat_updatemsg().
2829 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
2830 - BUG/MINOR: peers: Missing TX cache entries reset.
2831 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
2832 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
2833 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
2834 - BUG/MEDIUM: check: reuse srv proto only if using same mode
2835 - MINOR: check: report error on incompatible proto
2836 - MINOR: check: report error on incompatible connect proto
2837 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
2838 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
2839 - MINOR: spoe: Don't close connection in sync mode on processing timeout
2840 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
2841 - MINOR: init: Fix the prototype for per-thread free callbacks
2842 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
2843 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
2844 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
2845 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
2846 - REGTESTS: Add sample_fetches/cook.vtc
2847 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
2848 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
2849 - CLEANUP: flt-trace: Remove unused random-parsing option
2850 - MINOR: flt-trace: Add an option to inhibits trace messages
2851 - MINOR: flt-trace: Use a bitfield for the trace options
2852 - REGTESTS: Add a script to test the random forwarding with several filters
2853 - REGTESTS: mark the abns test as broken again
2854 - REGTESTS: converter: add url_dec test
2855 - CI: Stop hijacking the hosts file
2856 - CI: Make the h2spec workflow more consistent with the VTest workflow
2857 - CI: travis-ci: remove amd64, osx builds
2858 - CI: travis-ci: arm64 are not allowed to fail anymore
2859 - DOC: add missing 3.10 in the summary
2860 - MINOR: ssl: remove client hello counters
2861 - MEDIUM: stats: add counters for failed handshake
2862 - MINOR: ssl: create common ssl_ctx init
2863 - MEDIUM: cli/ssl: configure ssl on server at runtime
2864 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
2865 - DOC: coding-style: update a few rules about pointers
2866 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
2867 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
2868 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
2869 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
2870 - BUG/MEDIUM: ssl: error when no certificate are found
2871 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
2872 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
2873 - CI: Github Actions: enable prometheus exporter
2874 - CI: Github Actions: remove LibreSSL-3.0.2 builds
2875 - CI: Github Actions: enable BoringSSL builds
2876 - CI: travis-ci: remove builds migrated to GH actions
2877 - BUILD: makefile: enable crypt(3) for OpenBSD
2878 - CI: Github Action: run "apt-get update" before packages restore
2879 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
2880 - CI: Pass the github.event_name to matrix.py
2881 - CI: Clean up Windows CI
2882 - DOC: clarify how to create a fallback crt
2883 - CLEANUP: connection: do not use conn->owner when the session is known
2884 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
2885 - REGTESTS: mark proxy_protocol_random_fail as broken
2886 - BUG/MINOR: http_htx: Fix searching headers by substring
2887 - MINOR: http_act: Add -m flag for del-header name matching method
2888
Willy Tarreau1db55792020-11-05 17:20:35 +010028892020/11/05 : 2.4-dev0
2890 - MINOR: version: it's development again.
2891 - DOC: mention in INSTALL that it's development again
2892
Willy Tarreau1c0a7222020-11-05 17:04:53 +010028932020/11/05 : 2.3.0
2894 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
2895 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
2896 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
2897 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
2898 - BUG/MINOR: checks: Report a socket error before any connection attempt
2899 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
2900 - MINOR: server: Copy configuration file and line for server templates
2901 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
2902 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
2903 - MINOR: debug: don't count free(NULL) in memstats
2904 - BUG/MINOR: filters: Skip disabled proxies during startup only
2905 - MINOR: mux_h2: capitalize frame type in stats
2906 - MINOR: mux_h2: add stat for total count of connections/streams
2907 - MINOR: stats: do not display empty stat module title on html
2908 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
2909 - BUG/MEDIUM: listener: only enable a listening listener if needed
2910 - BUG/MEDIUM: listener: never suspend inherited sockets
2911 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
2912 - MINOR: fd: add fd_want_recv_safe()
2913 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
2914 - REGTESTS: mark abns_socket as working now
2915 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
2916 - MINOR: sock: add a check against cross worker<->master socket activities
2917 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
2918 - BUG/MEDIUM: server: make it possible to kill last idle connections
2919 - MINOR: mworker/cli: the master CLI use its own applet
2920 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
2921 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
2922 - DOC: Add dns as an available domain to show stat
2923 - BUILD: makefile: usual reorder of objects for faster builds
2924 - DOC: update INSTALL to mention that TCC is supported
2925 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
2926 - MINOR: version: mention that it's stable now
2927
Willy Tarreaubd703e52020-10-31 13:17:06 +010029282020/10/31 : 2.3-dev9
2929 - CLEANUP: http_ana: remove unused assignation of `att_beg`
2930 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
2931 - BUG/MINOR: log: fix memory leak on logsrv parse error
2932 - BUG/MINOR: log: fix risk of null deref on error path
2933 - BUILD: ssl: more elegant OpenSSL early data support check
2934 - CI: github actions: update h2spec to 2.6.0
2935 - BUG/MINOR: cache: Check the return value of http_replace_res_status
2936 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
2937 - MINOR: cache: Process the If-Modified-Since header in conditional requests
2938 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
2939 - MINOR: mux-h2: register a stats module
2940 - MINOR: mux-h2: add counters instance to h2c
2941 - MINOR: mux-h2: add stats for received frame types
2942 - MINOR: mux-h2: report detected error on stats
2943 - MINOR: mux-h2: count open connections/streams on stats
2944 - BUG/MINOR: server: fix srv downtime calcul on starting
2945 - BUG/MINOR: server: fix down_time report for stats
2946 - BUG/MINOR: lua: initialize sample before using it
2947 - MINOR: cache: Add Expires header value parsing
2948 - MINOR: ist: Add a case insensitive istmatch function
2949 - BUG/MINOR: cache: Manage multiple values in cache-control header value
2950 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
2951 - MINOR: pattern: make pat_ref_append() return the newly added element
2952 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
2953 - MINOR: pattern: export pat_ref_push()
2954 - CLEANUP: pattern: use calloc() rather than malloc for structures
2955 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
2956
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020029572020/10/24 : 2.3-dev8
2958 - MINOR: backend: replace the lbprm lock with an rwlock
2959 - MINOR: lb/map: use seek lock and read locks where appropriate
2960 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
2961 - MINOR: lb/first: use a read lock in fas_get_next_server()
2962 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
2963 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
2964 - BUILD: ssl: make BoringSSL use its own version numbers
2965 - CLEANUP: threads: don't register an initcall when not debugging
2966 - MINOR: threads: change lock_t to an unsigned int
2967 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
2968 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
2969 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
2970 - MEDIUM: config: report that "nbproc" is deprecated
2971 - BUG/MINOR: listener: close before free in `listener_accept`
2972 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
2973 - BUG/MINOR: queue: properly report redistributed connections
2974 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
2975 - BUILD: makefile: add entries to build common debugging tools
2976 - BUG/MEDIUM: server: support changing the slowstart value from state-file
2977 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
2978 - MINOR: http: Add etag comparison function
2979 - MEDIUM: cache: Store the ETag information in the cache_entry
2980 - MEDIUM: cache: Add support for 'If-None-Match' request header
2981 - REGTEST: cache: Add if-none-match test case
2982 - CLEANUP: compression: Make use of http_get_etag_type()
2983 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
2984 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
2985 - MINOR: threads/debug: only report used lock stats
2986 - MINOR: threads/debug: only report lock stats for used operations
2987 - MINOR: proxy; replace the spinlock with an rwlock
2988 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
2989 - MINOR: proxy/cli: only take a read lock in "show errors"
2990 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
2991 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
2992 - MINOR: queue: reduce the locked area in pendconn_add()
2993 - OPTIM: queue: make the nbpend counters atomic
2994 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
2995 - MINOR: leastconn: take the queue length into account when queuing servers
2996 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
2997 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
2998 - MINOR: stats: support the "up" output modifier for "show stat"
2999 - MINOR: stats: also support a "no-maint" show stat modifier
3000 - MINOR: stats: indicate the number of servers in a backend's status
3001 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
3002 - REGTEST: ssl: test "set ssl cert" with separate key / crt
3003 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
3004 - MINOR: stats: report server's user-configured weight next to effective weight
3005 - CI: travis-ci: switch to Ubuntu 20.04
3006 - CONTRIB: release-estimator: Add release estimating tool
3007 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
3008 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
3009
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020030102020/10/17 : 2.3-dev7
3011 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
3012 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
3013 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
3014 - MINOR: fd: report an error message when failing initial allocations
3015 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
3016 - MINOR: sock: add sock_accept_conn() to test a listening socket
3017 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
3018 - MINOR: sockpair: implement the .rx_listening function
3019 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
3020 - CLEANUP: unix: make use of sock_accept_conn() where relevant
3021 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
3022 - CONTRIB: tcploop: implement a disconnect operation 'D'
3023 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
3024 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
3025 - BUG/MINOR: connection: fix loop iter on connection takeover
3026 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
3027 - MINOR: connection: improve list api usage
3028 - MINOR: mux/connection: add a new mux flag for HOL risk
3029 - MINOR: connection: don't check priv flag on free
3030 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
3031 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
3032 - MEDIUM: h2: remove conn from session on detach
3033 - MEDIUM: fcgi: remove conn from session on detach
3034 - DOC: Describe reuse safe for HOL handling
3035 - MEDIUM: proxy: remove obsolete "mode health"
3036 - MEDIUM: proxy: remove obsolete "monitor-net"
3037 - CLEANUP: protocol: remove the ->drain() function
3038 - CLEANUP: fd: finally get rid of fd_done_recv()
3039 - MINOR: connection: make sockaddr_alloc() take the address to be copied
3040 - MEDIUM: listener: allocate the connection before queuing a new connection
3041 - MINOR: session: simplify error path in session_accept_fd()
3042 - MINOR: connection: add new error codes for accept_conn()
3043 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
3044 - MINOR: protocol: add a new function accept_conn()
3045 - MINOR: sock: implement sock_accept_conn() to accept a connection
3046 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
3047 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
3048 - MEDIUM: listener: remove the second pass of fd manipulation at the end
3049 - MINOR: protocol: add a default I/O callback and put it into the receiver
3050 - MINOR: log: set the UDP receiver's I/O handler in the receiver
3051 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
3052 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
3053 - DOC: improve the documentation for "option nolinger"
3054 - BUG/MEDIUM: proxy: properly stop backends
3055 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
3056 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
3057 - MINOR: threads: add the transitions to/from the seek state
3058 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
3059 - BUILD: listener: avoir a build warning when threads are disabled
3060 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
3061 - MINOR: ssl: add volatile flags to ssl samples
3062 - MEDIUM: backend: reuse connection if using a static sni
3063 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
3064 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
3065 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
3066 - DOC: fix typo in MAX_SESS_STKCTR
3067
Willy Tarreaub7ffe192020-10-10 10:45:13 +020030682020/10/10 : 2.3-dev6
3069 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
3070 - BUILD: makefile: Update feature flags for OpenBSD
3071 - DOC: agent-check: fix typo in "fail" word expected reply
3072 - DOC: crt: advise to move away from cert bundle
3073 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
3074 - REGTEST: fix host part in balance-uri-path-only.vtc
3075 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
3076 - REGTEST: the iif converter test requires 2.3
3077 - REGTEST: make agent-check.vtc require 1.8
3078 - REGTEST: make abns_socket.vtc require 1.8
3079 - REGTEST: make map_regm_with_backref require 1.7
3080 - BUILD: makefile: Update feature flags for FreeBSD
3081 - OPTIM: backend/random: never queue on the server, always on the backend
3082 - OPTIM: backend: skip LB when we know the backend is full
3083 - BUILD: makefile: Fix building with closefrom() support enabled
3084 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
3085 - MINOR: tools: support for word expansion of environment in parse_line
3086 - BUILD: tools: fix minor build issue on isspace()
3087 - BUILD: makefile: Enable closefrom() support on Solaris
3088 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
3089 - MINOR: ssl: Add error if a crt-list might be truncated
3090 - MINOR: ssl: remove uneeded check in crtlist_parse_file
3091 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
3092 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
3093 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
3094 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
3095 - DOC: ssl: new "cert bundle" behavior
3096 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
3097 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
3098 - MINOR: counters: fix a typo in comment
3099 - BUG/MINOR: stats: fix validity of the json schema
3100 - REORG: stats: export some functions
3101 - MINOR: stats: add stats size as a parameter for csv/json dump
3102 - MINOR: stats: hide px/sv/li fields in applet struct
3103 - REORG: stats: extract proxy json dump
3104 - REORG: stats: extract proxies dump loop in a function
3105 - MINOR: hlua: Display debug messages on stderr only in debug mode
3106 - MINOR: stats: define the concept of domain for statistics
3107 - MINOR: stats: define additional flag px cap on domain
3108 - MEDIUM: stats: add delimiter for static proxy stats on csv
3109 - MEDIUM: stats: define an API to register stat modules
3110 - MEDIUM: stats: add abstract type to store counters
3111 - MEDIUM: stats: integrate static proxies stats in new stats
3112 - MINOR: stats: support clear counters for dynamic stats
3113 - MINOR: stats: display extra proxy stats on the html page
3114 - MINOR: stats: add config "stats show modules"
3115 - MINOR: dns/stats: integrate dns counters in stats
3116 - MINOR: stats: remove for loop declaration
3117 - DOC: ssl: fix typo about ocsp files
3118 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
3119 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
3120 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
3121 - CLEANUP: cache: Fix leak of cconf->c.name during config check
3122 - CLEANUP: ssl: Release cached SSL sessions on deinit
3123 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
3124 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
3125 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
3126 - CLEANUP: sock-unix: Remove an unreachable goto clause
3127 - BUG/MINOR: proxy: inc req counter on new syslog messages.
3128 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
3129 - MINOR: stats: inc req counter on listeners.
3130 - MINOR: channel: new getword and getchar functions on channel.
3131 - MEDIUM: log: syslog TCP support on log forward section.
3132 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
3133 - DOC: re-work log forward bind statement documentation.
3134 - DOC: fix a confusing typo on a regsub example
3135 - BUILD: Add a DragonFlyBSD target
3136 - BUG/MINOR: makefile: fix a tiny typo in the target list
3137 - BUILD: makefile: Update feature flags for NetBSD
3138 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
3139 - DOC: Add missing stats fields in the management doc
3140 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
3141 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
3142 - DOC: Fix typos in configuration.txt
3143 - BUG/MINOR: http: Fix content-length of the default 500 error
3144 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
3145 - REGTESTS: mark abns_socket as broken
3146 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
3147 - MEDIUM: listeners: don't bounce listeners management between queues
3148 - MEDIUM: init: stop disabled proxies after initializing fdtab
3149 - MEDIUM: listeners: make unbind_listener() converge if needed
3150 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
3151 - MEDIUM: listeners: remove the now unused ZOMBIE state
3152 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
3153 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
3154 - MINOR: listeners: introduce listener_set_state()
3155 - MINOR: proxy: maintain per-state counters of listeners
3156 - MEDIUM: proxy: remove the unused PR_STFULL state
3157 - MEDIUM: proxy: remove the PR_STERROR state
3158 - MEDIUM: proxy: remove state PR_STPAUSED
3159 - MINOR: startup: don't rely on PR_STNEW to check for listeners
3160 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
3161 - MEDIUM: proxy: replace proxy->state with proxy->disabled
3162 - MEDIUM: proxy: remove start_proxies()
3163 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
3164 - MINOR: listeners: check the current listener state in pause_listener()
3165 - MINOR: listeners: check the current listener earlier state in resume_listener()
3166 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
3167 - MINOR: protocol: introduce protocol_{pause,resume}_all()
3168 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
3169 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
3170 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
3171 - BUG/MEDIUM: listeners: correctly report pause() errors
3172 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
3173 - CLEANUP: protocol: remove the ->disable_all method
3174 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
3175 - MINOR: listeners: export enable_listener()
3176 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
3177 - CLEANUP: protocol: remove the ->enable_all method
3178 - CLEANUP: listeners: remove the now unused enable_all_listeners()
3179 - MINOR: protocol: rename the ->listeners field to ->receivers
3180 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
3181 - MINOR: protocol: implement an ->rx_resume() method
3182 - MINOR: listener: use the protocol's ->rx_resume() method when available
3183 - MINOR: sock: provide a set of generic enable/disable functions
3184 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
3185 - MINOR: protocol: add a new pair of enable/disable methods for listeners
3186 - MEDIUM: listeners: now use the listener's ->enable/disable
3187 - MINOR: listeners: split delete_listener() in two versions
3188 - MINOR: listeners: count unstoppable jobs on creation, not deletion
3189 - MINOR: listeners: add a new stop_listener() function
3190 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
3191 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
3192 - MEDIUM: proxy: centralize proxy status update and reporting
3193 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
3194 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
3195 - MEDIUM: udp: implement udp_suspend() and udp_resume()
3196 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
3197 - MEDIUM: listeners: always close master vs worker listeners
3198 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
3199 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
3200 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
3201 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
3202 - MEDIUM: receivers: add an rx_unbind() method in the protocols
3203 - MINOR: listeners: split do_unbind_listener() in two
3204 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
3205 - MEDIUM: config: mark "grace" as deprecated
3206 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
3207 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
3208 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
3209 - BUILD: makefile: Enable getaddrinfo() on OS/X
3210
Christopher Faulet05f01882020-09-25 18:40:47 +020032112020/09/25 : 2.3-dev5
3212 - DOC: Fix typo in iif() example
3213 - CLEANUP: Update .gitignore
3214 - BUILD: introduce possibility to define ABORT_NOW() conditionally
3215 - CI: travis-ci: help Coverity to recognize abort()
3216 - BUG/MINOR: Fix type passed of sizeof() for calloc()
3217 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
3218 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
3219 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
3220 - BUG/MINOR: ssl: verifyhost is case sensitive
3221 - BUILD: makefile: change default value of CC from gcc to cc
3222 - CI: travis-ci: split asan step out of running tests
3223 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
3224 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
3225 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
3226 - BUG/MINOR: log-forward: fail on unknown keywords
3227 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
3228 - BUG/MEDIUM: log-forward: always quit on parsing errors
3229 - MEDIUM: ssl: remove bundle support in crt-list and directories
3230 - MEDIUM: ssl/cli: remove support for multi certificates bundle
3231 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
3232 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
3233 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
3234 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
3235 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
3236 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
3237 - CLEANUP: ssl: remove utility functions for bundle
3238 - DOC: explain bundle emulation in configuration.txt
3239 - BUILD: fix build with openssl < 1.0.2 since bundle removal
3240 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
3241 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
3242 - MINOR: listener: create a new struct "settings" in bind_conf
3243 - MINOR: listener: move bind_proc and bind_thread to struct settings
3244 - MINOR: listener: move the interface to the struct settings
3245 - MINOR: listener: move the network namespace to the struct settings
3246 - REORG: listener: create a new struct receiver
3247 - REORG: listener: move the listening address to a struct receiver
3248 - REORG: listener: move the receiving FD to struct receiver
3249 - REORG: listener: move the listener's proto to the receiver
3250 - MINOR: listener: make sock_find_compatible_fd() check the socket type
3251 - REORG: listener: move the receiver part to a new file
3252 - MINOR: receiver: link the receiver to its settings
3253 - MINOR: receiver: link the receiver to its owner
3254 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
3255 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
3256 - MINOR: listener: move the INHERITED flag down to the receiver
3257 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
3258 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
3259 - MINOR: protocol: rename the ->bind field to ->listen
3260 - MINOR: protocol: add a new ->bind() entry to bind the receiver
3261 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
3262 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
3263 - MEDIUM: udp: make use of sock_inet_bind_receiver()
3264 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
3265 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
3266 - MEDIUM: sockpair: implement sockpair_bind_receiver()
3267 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
3268 - MEDIUM: protocol: explicitly start the receiver before the listener
3269 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
3270 - MINOR: protocol: add a new proto_fam structure for protocol families
3271 - MINOR: protocol: retrieve the family-specific fields from the family
3272 - CLEANUP: protocol: remove family-specific fields from struct protocol
3273 - MINOR: protocol: add a real family for existing FDs
3274 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
3275 - MINOR: tools: make str2sa_range() take more options than just resolve
3276 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
3277 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
3278 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
3279 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
3280 - MINOR: listener: remove the inherited arg to create_listener()
3281 - MINOR: tools: make str2sa_range() optionally return the fd
3282 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
3283 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
3284 - MINOR: config: do not test an inherited socket again
3285 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
3286 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
3287 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
3288 - MINOR: tools: remove the central test for "udp" in str2sa_range()
3289 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
3290 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
3291 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
3292 - MINOR: listener: pass the chosen protocol to create_listeners()
3293 - MINOR: tools: make str2sa_range() directly return the protocol
3294 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
3295 - MINOR: protocol: add the control layer type in the protocol struct
3296 - MEDIUM: protocol: store the socket and control type in the protocol array
3297 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
3298 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
3299 - MINOR: tools: drop listener detection hack from str2sa_range()
3300 - BUILD: sock_unix: add missing errno.h
3301 - MINOR: sock_inet: report the errno string in binding errors
3302 - MINOR: sock_unix: report the errno string in binding errors
3303 - BUILD: sock_inet: include errno.h
3304 - MINOR: h2/trace: also display the remaining frame length in traces
3305 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
3306 - BUG/MEDIUM: h2: report frame bits only for handled types
3307 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
3308 - BUG/MINOR: Fix memory leaks cfg_parse_peers
3309 - BUG/MINOR: config: Fix memory leak on config parse listen
3310 - MINOR: backend: make the "whole" option of balance uri take only one bit
3311 - MINOR: backend: add a new "path-only" option to "balance uri"
3312 - REGTESTS: add a few load balancing tests
3313 - BUG/MEDIUM: listeners: do not pause foreign listeners
3314 - BUG/MINOR: listeners: properly close listener FDs
3315 - BUILD: trace: include tools.h
3316
Willy Tarreau253c4dc2020-09-11 17:05:59 +020033172020/09/11 : 2.3-dev4
3318 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
3319 - BUG/MEDIUM: ssl: crt-list negative filters don't work
3320 - DOC: overhauling github issue templates
3321 - MEDIUM: cfgparse: Emit hard error on truncated lines
3322 - DOC: cache: Use '<name>' instead of '<id>' in error message
3323 - MINOR: cache: Reject duplicate cache names
3324 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
3325 - MINOR: stats: prevent favicon.ico requests for stats page
3326 - BUILD: tools: include auxv a bit later
3327 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
3328 - MEDIUM: ssl: Support certificate chaining for certificate generation
3329 - MINOR: ssl: Support SAN extension for certificate generation
3330 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
3331 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
3332 - MINOR: reload: determine the foreing binding status from the socket
3333 - MEDIUM: reload: stop passing listener options along with FDs
3334 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
3335 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
3336 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
3337 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
3338 - MEDIUM: reload: pass all exportable FDs, not just listeners
3339 - DOC: add description of pidfile in master-worker mode
3340 - BUG/MINOR: reload: do not fail when no socket is sent
3341 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
3342 - CLEANUP: tcp: stop exporting smp_fetch_src()
3343 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
3344 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
3345 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
3346 - REORG: sock: start to move some generic socket code to sock.c
3347 - MINOR: sock: introduce sock_inet and sock_unix
3348 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
3349 - MINOR: sock_inet: implement sock_inet_get_dst()
3350 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
3351 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
3352 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
3353 - REORG: listener: move xfer_sock_list to sock.{c,h}.
3354 - MINOR: sock: add interface and namespace length to xfer_sock_list
3355 - MINOR: sock: implement sock_find_compatible_fd()
3356 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
3357 - REORG: sock: move get_old_sockets() from haproxy.c
3358 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
3359 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
3360 - BUILD: sock_unix: fix build issue with isdigit()
3361 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
3362 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
3363 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
3364 - MINOR: http-htx: Handle an optional reason when replacing the response status
3365 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
3366 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
3367 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
3368 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
3369 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
3370 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
3371 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
3372 - REGTEST: increase some short timeouts to make tests more reliable
3373 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
3374 - BUILD: thread: limit the libgcc_s workaround to glibc only
3375 - MINOR: protocol: do not call proto->bind_all() anymore
3376 - MINOR: protocol: do not call proto->unbind_all() anymore
3377 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
3378 - MAJOR: init: start all listeners via protocols and not via proxies anymore
3379 - BUG/MINOR: startup: haproxy -s cause 100% cpu
3380 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
3381 - BUG/MEDIUM: doc: Fix replace-path action description
3382 - MINOR: http-rules: Add set-pathq and replace-pathq actions
3383 - MINOR: http-fetch: Add pathq sample fetch
3384 - REGTEST: Add a test for request path manipulations, with and without the QS
3385 - MINOR: Commit .gitattributes
3386 - CLEANUP: Update .gitignore
3387 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
3388 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
3389 - MINOR: server: Improve log message sent when server address is updated
3390 - DOC: ssl-load-extra-files only applies to certificates on bind lines
3391 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
3392 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
3393 - BUILD: threads: better workaround for late loading of libgcc_s
3394 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
3395 - BUILD: compiler: workaround a glibc madness around __attribute__()
3396 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
3397 - BUILD: trace: always have an argument before variadic args in macros
3398 - BUILD: traces: don't pass an empty argument for missing ones
3399 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
3400 - CLEANUP: Free old_argv on deinit
3401 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
3402 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
3403 - CLEANUP: haproxy: Free post_check_list in deinit()
3404 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
3405 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
3406 - MINOR: sample: Add iif(<true>,<false>) converter
3407
Willy Tarreauf104b532020-08-14 18:54:05 +020034082020/08/14 : 2.3-dev3
3409 - SCRIPTS: git-show-backports: make -m most only show the left branch
3410 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
3411 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
3412 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
3413 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
3414 - CLEANUP: dns: typo in reported error message
3415 - BUG/MAJOR: dns: disabled servers through SRV records never recover
3416 - BUG/MINOR: spoa-server: fix size_t format printing
3417 - DOC: spoa-server: fix false friends `actually`
3418 - BUG/MINOR: ssl: fix memory leak at OCSP loading
3419 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
3420 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
3421 - MINOR: arg: Add an argument type to keep a reference on opaque data
3422 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
3423 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
3424 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
3425 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
3426 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
3427 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
3428 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
3429 - MEDIUM: lua: Don't filter exported fetches and converters
3430 - MINOR: lua: Add support for userlist as fetches and converters arguments
3431 - MINOR: lua: Add support for regex as fetches and converters arguments
3432 - MINOR: arg: Use chunk_destroy() to release string arguments
3433 - BUG/MINOR: snapshots: leak of snapshots on deinit()
3434 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
3435 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
3436 - CLEANUP: fix all duplicated semicolons
3437 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
3438 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
3439 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
3440 - BUILD: makefile: don't disable -Wstringop-overflow anymore
3441 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
3442 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
3443 - BUG/MEDIUM: ssl: never generates the chain from the verify store
3444 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
3445 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
3446 - CLEANUP: ssl: remove poorly readable nested ternary
3447
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020034482020/07/31 : 2.3-dev2
3449 - DOC: ssl: req_ssl_sni needs implicit TLS
3450 - BUG/MEDIUM: arg: empty args list must be dropped
3451 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
3452 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
3453 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
3454 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
3455 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
3456 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
3457 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
3458 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
3459 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
3460 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
3461 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
3462 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
3463 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
3464 - BUILD: tools: fix build with static only toolchains
3465 - DOC: Use gender neutral language
3466 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
3467 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
3468 - BUG/MAJOR: dns: don't treat Authority records as an error
3469 - CI : travis-ci : prepare for using stock OpenSSL
3470 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
3471 - MEDIUM: lua: Add support for the Lua 5.4
3472 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
3473 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
3474 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
3475 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
3476 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
3477 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
3478 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
3479 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
3480 - MINOR: connection: Preinstall the mux for non-ssl connect
3481 - MINOR: stream-int: Be sure to have a mux to do sends and receives
3482 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
3483 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
3484 - CI: travis-ci: use better name for Coverity scan job
3485 - CI: travis-ci: use proper linking flags for SLZ build
3486 - BUG/MEDIUM: backend: always attach the transport before installing the mux
3487 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
3488 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
3489 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
3490 - MINOR: mux-h1: do not try to receive on backend before sending a request
3491 - CLEANUP: assorted typo fixes in the code and comments
3492 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
3493
Willy Tarreaue732cbd2020-07-17 15:13:19 +020034942020/07/17 : 2.3-dev1
3495 - MINOR: config: make strict limits enabled by default
3496 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
3497 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
3498 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
3499 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
3500 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
3501 - BUG/MINOR: haproxy: Free srule->file during deinit
3502 - BUG/MINOR: haproxy: Free srule->expr during deinit
3503 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
3504 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
3505 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
3506 - CLEANUP: haproxy: Free post_deinit_list in deinit()
3507 - CLEANUP: haproxy: Free server_deinit_list in deinit()
3508 - CLEANUP: haproxy: Free post_server_check_list in deinit()
3509 - CLEANUP: Add static void vars_deinit()
3510 - CLEANUP: Add static void hlua_deinit()
3511 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
3512 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
3513 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
3514 - MINOR: tcp: Support TCP keepalive parameters customization
3515 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
3516 - MINOR: lists: rename some MT_LIST operations to clarify them
3517 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
3518 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
3519 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
3520 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
3521 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
3522 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
3523 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
3524 - MINOR: connection: Set the SNI on server connections before installing the mux
3525 - MINOR: connection: Set new connection as private on reuse never
3526 - MINOR: connection: Add a wrapper to mark a connection as private
3527 - MEDIUM: connection: Add private connections synchronously in session server list
3528 - MINOR: connection: Use a dedicated function to look for a session's connection
3529 - MINOR: connection: Set the conncetion target during its initialisation
3530 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
3531 - MINOR: server: Factorize code to deal with reuse of server idle connections
3532 - MINOR: server: Factorize code to deal with connections removed from an idle list
3533 - CLEANUP: connection: remove unused field idle_time from the connection struct
3534 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
3535 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
3536 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
3537 - MINOR: backend: Add sample fetches to get the server's weight
3538 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
3539 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
3540 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
3541 - BUG/MINOR: backend: fix potential null deref on srv_conn
3542 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
3543 - MEDIUM: udp: adds minimal proto udp support for message listeners.
3544 - MEDIUM: log/sink: re-work and merge of build message API.
3545 - MINOR: log: adds syslog udp message handler and parsing.
3546 - MEDIUM: log: adds log forwarding section.
3547 - MINOR: log: adds counters on received syslog messages.
3548 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
3549 - BUG/MEDIUM: server: resolve state file handle leak on reload
3550 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
3551 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
3552 - BUILD: config: address build warning on raspbian+rpi4
3553 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
3554 - BUILD: config: fix again bugs gcc warnings on calloc
3555
Willy Tarreau33205c22020-07-07 16:35:28 +020035562020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02003557 - [RELEASE] Released version 2.3-dev0
3558 - MINOR: version: back to development, update status message
3559
35602020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02003561 - exact copy of 2.2.0
3562
Willy Tarreau3a00c912020-07-07 16:33:14 +020035632020/07/07 : 2.2.0
3564 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
3565 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
3566 - BUILD: tools: make resolve_sym_name() return a const
3567 - CLEANUP: auth: fix useless self-include of auth-t.h
3568 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
3569 - CLEANUP: assorted typo fixes in the code and comments
3570 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
3571 - DOC: fix tune.ssl.keylog sample fetches array
3572 - BUG/MINOR: ssl: check conn in keylog sample fetch
3573 - DOC: configuration: various typo fixes
3574 - MINOR: log: Remove unused case statement during the log-format string parsing
3575 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
3576 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
3577 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
3578 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
3579 - MINOR: mux-h1: Improve traces about the splicing
3580 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
3581 - BUG/MEDIUM: connection: Don't consider new private connections as available
3582 - BUG/MINOR: connection: See new connection as available only on reuse always
3583 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
3584 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
3585 - DOC: update INSTALL with new compiler versions
3586 - DOC: minor update to coding style file
3587 - MINOR: version: mention that it's an LTS release now
3588
Willy Tarreau62f11a52020-07-04 07:10:24 +020035892020/07/04 : 2.2-dev12
3590 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
3591 - MINOR: cli: make "show sess" stop at the last known session
3592 - CLEANUP: buffers: remove unused buffer_wq_lock lock
3593 - BUG/MEDIUM: buffers: always allocate from the local cache first
3594 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
3595 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
3596 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
3597 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
3598 - REORG: buffer: rename buffer.c to dynbuf.c
3599 - REORG: includes: create tinfo.h for the thread_info struct
3600 - CLEANUP: pool: only include the type files from types
3601 - MINOR: pools: move the LRU cache heads to thread_info
3602 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
3603 - MINOR: stats: add 3 new output values for the per-server idle conn state
3604 - MINOR: activity: add per-thread statistics on FD takeover
3605 - BUG/MINOR: server: start cleaning idle connections from various points
3606 - MEDIUM: server: improve estimate of the need for idle connections
3607 - MINOR: stats: add the estimated need of concurrent connections per server
3608 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
3609 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
3610 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
3611 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
3612 - BUG/MINOR: server: always count one idle slot for current thread
3613 - MEDIUM: server: use the two thresholds for the connection release algorithm
3614 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
3615 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
3616 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
3617 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
3618 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
3619 - MINOR: pools: increase MAX_BASE_POOLS to 64
3620 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
3621 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
3622 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
3623 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
3624 - BUG/MINOR: proxy: always initialize the trash in show servers state
3625 - MINOR: cli/proxy: add a new "show servers conn" command
3626 - MINOR: server: skip servers with no idle conns earlier
3627 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
3628 - MEDIUM: server: add a new pool-low-conn server setting
3629 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
3630 - MINOR: backend: don't always takeover from the same threads
3631 - MINOR: sched: make sched->task_list_size atomic
3632 - MEDIUM: sched: create a new TASK_KILLED task flag
3633 - MEDIUM: sched: implement task_kill() to kill a task
3634 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
3635 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
3636 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
3637 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
3638 - CLEANUP: connections: rename the toremove_lock to takeover_lock
3639 - MEDIUM: connections: Don't use a lock when moving connections to remove.
3640 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
3641 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
3642 - MINOR: config: add a new tune.idle-pool.shared global setting.
3643 - MINOR: 51d: silence a warning about null pointer dereference
3644 - MINOR: debug: add a new "debug dev memstats" command
3645 - MINOR: log-format: allow to preserve spacing in log format strings
3646 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
3647 - BUG/MAJOR: sched: make sure task_kill() always queues the task
3648 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
3649 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
3650 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
3651 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
3652 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
3653 - BUG/MINOR: log: missing timezone on iso dates.
3654 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
3655 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
3656 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
3657 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
3658 - BUG/MINOR: http_act: don't check capture id in backend (2)
3659 - BUILD: makefile: disable threads by default on OpenBSD
3660 - BUILD: peers: fix build warning with gcc 4.2.1
3661 - CI: cirrus-ci: exclude slow reg-tests
3662
Willy Tarreau4462af82020-06-26 22:01:04 +020036632020/06/26 : 2.2-dev11
3664 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
3665 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
3666 - BUG/MINOR: spoe: correction of setting bits for analyzer
3667 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
3668 - MINOR: cfgparse: Warn on truncated lines / files
3669 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
3670 - MINOR: debug: add a new DEBUG_FD build option
3671 - BUG/MINOR: tasks: make sure never to exceed max_processed
3672 - MINOR: task: add a new pointer to current tasklet queue
3673 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
3674 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
3675 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
3676 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
3677 - MINOR: ssl: free bind_conf_node in crtlist_free()
3678 - MINOR: ssl: free the crtlist and the ckch during the deinit()
3679 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
3680 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
3681 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
3682 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
3683 - MINOR: tasks: make current_queue an index instead of a pointer
3684 - MINOR: tasks: add a mask of the queues with active tasklets
3685 - MINOR: tasks: pass the queue index to run_task_from_list()
3686 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
3687 - MEDIUM: tasks: add a tune.sched.low-latency option
3688 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
3689 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
3690 - MINOR: tools: make parse_line() always terminate the args list
3691 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
3692 - MINOR: cfgparse: sanitize the output a little bit
3693 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
3694 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
3695 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
3696 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
3697 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
3698 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
3699 - MINOR: spoe: Don't systematically create new applets if processing rate is low
3700 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
3701 - BUILD: fix ssl_sample.c when building against BoringSSL
3702 - CI: travis-ci: switch BoringSSL builds to ninja
3703 - CI: extend spellchecker whitelist
3704 - DOC: assorted typo fixes in the documentation
3705 - CLEANUP: assorted typo fixes in the code and comments
3706 - MINOR: http: Add support for http 413 status
3707 - REGTEST: ssl: tests the ssl_f_* sample fetches
3708 - REGTEST: ssl: add some ssl_c_* sample fetches test
3709 - DOC: ssl: update the documentation of "commit ssl cert"
3710 - BUG/MINOR: cfgparse: correctly deal with empty lines
3711 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
3712
Willy Tarreaudc0936c2020-06-19 21:43:26 +020037132020/06/19 : 2.2-dev10
3714 - BUILD: include: add sys/types before netinet/tcp.h
3715 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
3716 - BUILD: Remove nowarn for warnings that do not trigger
3717 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
3718 - BUILD: Re-enable -Wimplicit-fallthrough
3719 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
3720 - BUILD: thread: add parenthesis around values of locking macros
3721 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
3722 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
3723 - CI: travis-ci: use "-O1" for clang builds
3724 - MINOR: haproxy: Add void deinit_and_exit(int)
3725 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
3726 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
3727 - BUILD: compression: make gcc 10 happy with free_zlib()
3728 - BUILD: atomic: add string.h for memcpy() on ARM64
3729 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
3730 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
3731 - BUILD: haproxy: mark deinit_and_exit() as noreturn
3732 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
3733 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
3734 - MINOR: tools: add a new configurable line parse, parse_line()
3735 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
3736 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
3737 - MINOR: http: do not close connections anymore after internal responses
3738 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
3739 - BUG/MINOR: spoe: add missing key length check before checking key names
3740 - MINOR: version: put the compiler version output into version.c not haproxy.c
3741 - MINOR: compiler: always define __has_feature()
3742 - MINOR: version: report the presence of the compiler's address sanitizer
3743 - BUILD: Fix build by including haproxy/global.h
3744 - BUG/MAJOR: connection: always disable ready events once reported
3745 - CLEANUP: activity: remove unused counter fd_lock
3746 - DOC: fd: make it clear that some fields ordering must absolutely be respected
3747 - MINOR: activity: report the number of times poll() reports I/O
3748 - MINOR: activity: rename confusing poll_* fields in the output
3749 - MINOR: fd: Fix a typo in a coment.
3750 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
3751 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
3752 - MINOR: activity: group the per-loop counters at the top
3753 - MINOR: activity: rename the "stream" field to "stream_calls"
3754 - MEDIUM: fd: refine the fd_takeover() migration lock
3755 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
3756 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
3757 - MINOR: peers: do not use localpeer as an array anymore
3758 - MEDIUM: peers: add the "localpeer" global option
3759 - MEDIUM: fd: add experimental support for edge-triggered polling
3760 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
3761 - MINOR: haproxy: process signals before runnable tasks
3762 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
3763 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
3764 - BUG/MINOR: cli: allow space escaping on the CLI
3765 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
3766 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
3767 - REGTEST: http-rules: test spaces in ACLs
3768 - REGTEST: http-rules: test spaces in ACLs with master CLI
3769 - BUG/MAJOR: init: properly compute the default global.maxpipes value
3770 - MEDIUM: map: make the "clear map" operation yield
3771 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
3772 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
3773 - BUG/MINOR: systemd: Wait for network to be online
3774 - DOC: configuration: Unindent non-code sentences in the protobuf example
3775 - DOC: configuration: http-check send was missing from matrix
3776
Willy Tarreau1385c882020-06-11 10:22:10 +020037772020/06/11 : 2.2-dev9
3778 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
3779 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
3780 - MINOR: checks: Remove dead code from process_chk_conn()
3781 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
3782 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
3783 - MINOR: lua: Use vars_unset_by_name_ifexist()
3784 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
3785 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
3786 - MINOR: lua: Make `set_var()` and `unset_var()` return success
3787 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
3788 - MEDIUM: ring: new section ring to declare custom ring buffers.
3789 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
3790 - REGTESTS: Require the version 2.2 to execute lua/set_var
3791 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
3792 - MINOR: checks: Remove useless tests on the connection and conn-stream
3793 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
3794 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
3795 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
3796 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
3797 - MINOR: pools: compute an estimate of each pool's average needed objects
3798 - MEDIUM: pools: directly free objects when pools are too much crowded
3799 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
3800 - MINOR: http-ana: Make the function http_reply_to_htx() public
3801 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
3802 - MINOR: http-rules: Use an action function to eval http-request auth rules
3803 - CLEANUP: http: Remove unused HTTP message templates
3804 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
3805 - MINOR: checks: I/O callback function only rely on the data layer wake callback
3806 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
3807 - BUG/MEDIUM: logs: fix trailing zeros on log message.
3808 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
3809 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
3810 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
3811 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
3812 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
3813 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
3814 - MINOR: ring: re-work ring attach generic API.
3815 - BUG/MINOR: error on unknown statement in ring section.
3816 - MEDIUM: ring: add server statement to forward messages from a ring
3817 - MEDIUM: ring: add new srv statement to support octet counting forward
3818 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
3819 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
3820 - BUILD: sink: address build warning on 32-bit architectures
3821 - BUG/MINOR: peers: fix internal/network key type mapping.
3822 - CLEANUP: regex: remove outdated support for regex actions
3823 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
3824 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
3825 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
3826 - DOC: add a line about comments in crt-list
3827 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
3828 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
3829 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
3830 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
3831 - BUG/MINOR: init: -x can have a parameter starting with a dash
3832 - BUG/MINOR: init: -S can have a parameter starting with a dash
3833 - BUG/MEDIUM: mworker: fix the reload with an -- option
3834 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
3835 - BUG/MINOR: mworker: fix a memleak when execvp() failed
3836 - MINOR: sample: Add secure_memcmp converter
3837 - REORG: ebtree: move the C files from ebtree/ to src/
3838 - REORG: ebtree: move the include files from ebtree to include/import/
3839 - REORG: ebtree: clean up remains of the ebtree/ directory
3840 - REORG: include: create new file haproxy/api-t.h
3841 - REORG: include: create new file haproxy/api.h
3842 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
3843 - CLEANUP: include: remove common/config.h
3844 - CLEANUP: include: remove unused template.h
3845 - REORG: include: move MIN/MAX from tools.h to compat.h
3846 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
3847 - CLEANUP: include: remove unused common/tools.h
3848 - REORG: include: move the base files from common/ to haproxy/
3849 - REORG: include: move version.h to haproxy/
3850 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
3851 - REORG: include: move openssl-compat.h from common/ to haproxy/
3852 - REORG: include: move ist.h from common/ to import/
3853 - REORG: include: move the BUG_ON() code to haproxy/bug.h
3854 - REORG: include: move debug.h from common/ to haproxy/
3855 - CLEANUP: debug: drop unused function p_malloc()
3856 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
3857 - REORG: include: move istbuf.h to haproxy/
3858 - REORG: include: split mini-clist into haproxy/list and list-t.h
3859 - REORG: threads: extract atomic ops from hathreads.h
3860 - CLEANUP: threads: remove a few needless includes of hathreads.h
3861 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
3862 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
3863 - REORG: include: move time.h from common/ to haproxy/
3864 - REORG: include: move integer manipulation functions from standard.h to intops.h
3865 - CLEANUP: include: remove excessive includes of common/standard.h
3866 - REORG: include: move freq_ctr to haproxy/
3867 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
3868 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
3869 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
3870 - MINOR: memory: don't let __pool_get_first() pick from the cache
3871 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
3872 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
3873 - MEDIUM: memory: make local pools independent on lockless pools
3874 - REORG: include: move common/memory.h to haproxy/pool.h
3875 - REORG: include: move common/chunk.h to haproxy/chunk.h
3876 - REORG: include: move activity to haproxy/
3877 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
3878 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
3879 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
3880 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
3881 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
3882 - REORG: include: move common/ticks.h to haproxy/ticks.h
3883 - REORG: include: split common/http.h into haproxy/http{,-t}.h
3884 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
3885 - REORG: include: move common/h1.h to haproxy/h1.h
3886 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
3887 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
3888 - REORG: include: move common/h2.h to haproxy/h2.h
3889 - REORG: include: move common/fcgi.h to haproxy/
3890 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
3891 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
3892 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
3893 - REORG: include: move shctx to haproxy/shctx{,-t}.h
3894 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
3895 - REORG: include: move fd.h to haproxy/fd{,-t}.h
3896 - REORG: include: move ring to haproxy/ring{,-t}.h
3897 - REORG: include: move sink.h to haproxy/sink{,-t}.h
3898 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
3899 - CLEANUP: include: remove empty raw_sock.h
3900 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
3901 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
3902 - REORG: include: move compression.h to haproxy/compression{,-t}.h
3903 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
3904 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
3905 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
3906 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
3907 - REORG: include: move action.h to haproxy/action{,-t}.h
3908 - REORG: include: move arg.h to haproxy/arg{,-t}.h
3909 - REORG: include: move auth.h to haproxy/auth{,-t}.h
3910 - REORG: include: move dns.h to haproxy/dns{,-t}.h
3911 - REORG: include: move flt_http_comp.h to haproxy/
3912 - REORG: include: move counters.h to haproxy/counters-t.h
3913 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
3914 - REORG: include: move capture.h to haproxy/capture{,-t}.h
3915 - REORG: include: move frontend.h to haproxy/frontend.h
3916 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
3917 - REORG: include: move http_rules.h to haproxy/http_rules.h
3918 - CLEANUP: include: remove unused mux_pt.h
3919 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
3920 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
3921 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
3922 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
3923 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
3924 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
3925 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
3926 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
3927 - REORG: include: move listener.h to haproxy/listener{,-t}.h
3928 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
3929 - REORG: include: move map to haproxy/map{,-t}.h
3930 - REORG: include: move payload.h to haproxy/payload.h
3931 - REORG: include: move sample.h to haproxy/sample{,-t}.h
3932 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
3933 - REORG: include: move vars.h to haproxy/vars{,-t}.h
3934 - REORG: include: split global.h into haproxy/global{,-t}.h
3935 - REORG: include: move task.h to haproxy/task{,-t}.h
3936 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
3937 - REORG: include: move signal.h to haproxy/signal{,-t}.h
3938 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
3939 - REORG: include: move connection.h to haproxy/connection{,-t}.h
3940 - REORG: include: move checks.h to haproxy/check{,-t}.h
3941 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
3942 - REORG: include: move peers.h to haproxy/peers{,-t}.h
3943 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
3944 - REORG: include: move session.h to haproxy/session{,-t}.h
3945 - REORG: include: move trace.h to haproxy/trace{,-t}.h
3946 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
3947 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
3948 - REORG: move applet.h to haproxy/applet{,-t}.h
3949 - REORG: include: move stats.h to haproxy/stats{,-t}.h
3950 - REORG: include: move cli.h to haproxy/cli{,-t}.h
3951 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
3952 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
3953 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
3954 - REORG: include: move channel.h to haproxy/channel{,-t}.h
3955 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
3956 - REORG: include: move filters.h to haproxy/filters{,-t}.h
3957 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
3958 - REORG: include: move log.h to haproxy/log{,-t}.h
3959 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
3960 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
3961 - REORG: include: move backend.h to haproxy/backend{,-t}.h
3962 - REORG: include: move queue.h to haproxy/queue{,-t}.h
3963 - REORG: include: move server.h to haproxy/server{,-t}.h
3964 - REORG: include: move stream.h to haproxy/stream{,-t}.h
3965 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
3966 - CLEANUP: hpack: export debug functions and move inlines to .h
3967 - REORG: check: move the e-mail alerting code to mailers.c
3968 - REORG: check: move tcpchecks away from check.c
3969 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
3970 - REORG: check: extract the external checks from check.{c,h}
3971 - CLEANUP: include: don't include stddef.h directly
3972 - CLEANUP: include: don't include proxy-t.h in global-t.h
3973 - CLEANUP: include: move sample_data out of sample-t.h
3974 - REORG: include: move the error reporting functions to from log.h to errors.h
3975 - BUILD: reorder objects in the Makefile for faster builds
3976 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
3977 - CLEANUP: include: make atomic.h part of the base API
3978 - REORG: include: move MAX_THREADS to defaults.h
3979 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
3980 - CLEANUP: include: tree-wide alphabetical sort of include files
3981 - REORG: include: make list-t.h part of the base API
3982 - REORG: dgram: rename proto_udp to dgram
3983
Willy Tarreau73b943b2020-05-22 16:19:04 +020039842020/05/22 : 2.2-dev8
3985 - MINOR: checks: Improve report of unexpected errors for expect rules
3986 - MEDIUM: checks: Add matching on log-format string for expect rules
3987 - DOC: Fix req.body and co documentation to be accurate
3988 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
3989 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
3990 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
3991 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
3992 - MINOR: checks/sample: Remove unnecessary tests on the sample session
3993 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
3994 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
3995 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
3996 - MINOR: checks: Support log-format string to set the body for HTTP send rules
3997 - DOC: Be more explicit about configurable check ok/error/timeout status
3998 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
3999 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
4000 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
4001 - REGTESTS: make the http-check-send test require version 2.2
4002 - BUG/MINOR: http-ana: fix NTLM response parsing again
4003 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
4004 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
4005 - MINOR: cfgparse: Improve error message for invalid \x sequences
4006 - CI: travis-ci: enable arm64 builds again
4007 - MEDIUM: ssl: increase default-dh-param to 2048
4008 - CI: travis-ci: skip pcre2 on arm64 build
4009 - CI: travis-ci: extend the build time for SSL to 60 minutes
4010 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
4011 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
4012 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
4013 - CLEANUP: remove THREAD_LOCAL from config.h
4014 - CI: travis-ci: upgrade LibreSSL versions
4015 - DOC: assorted typo fixes in the documentation
4016 - CI: extend spellchecker whitelist
4017 - CLEANUP: assorted typo fixes in the code and comments
4018 - MAJOR: contrib: porting spoa_server to support python3
4019 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
4020 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
4021 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
4022 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
4023 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
4024 - MINOR: sample: Add digest and hmac converters
4025 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
4026 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
4027 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
4028 - BUG/MINOR: pollers: remove uneeded free in global init
4029 - CLEANUP: select: enhance readability in init
4030 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
4031 - MINOR: soft-stop: let the first stopper only signal other threads
4032 - BUILD: select: only declare existing local labels to appease clang
4033 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
4034 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
4035 - DOC: retry-on can only be used with mode http
4036 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
4037 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
4038 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
4039 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
4040 - REORG: ssl: move macros and structure definitions to ssl_sock.h
4041 - CLEANUP: ssl: remove the shsess_* macros
4042 - REORG: move the crt-list structures in their own .h
4043 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
4044 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
4045 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
4046 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
4047 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
4048 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
4049 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
4050 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
4051 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
4052 - MINOR: ssl: remove static keyword in some SSL utility functions
4053 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
4054 - REORG: ssl: move sample fetches to src/ssl_sample.c
4055 - REORG: ssl: move utility functions to src/ssl_utils.c
4056 - DOC: ssl: update MAINTAINERS file
4057 - CI: travis-ci: switch arm64 builds to use openssl from distro
4058 - MINOR: stats: Prepare for more accurate moving averages
4059 - MINOR: stats: Expose native cum_req metric for a server
4060 - MEDIUM: stats: Enable more accurate moving average calculation for stats
4061 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
4062 - BUILD: ssl: include errno.h in ssl_crtlist.c
4063 - CLEANUP: acl: remove unused assignment
4064 - DOC/MINOR: halog: Add long help info for ic flag
4065 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
4066 - DOC: SPOE is no longer experimental
4067 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
4068 - MINOR: config: Don't dump keywords if argument is NULL
4069 - MEDIUM: checks: Make post-41 the default mode for mysql checks
4070 - BUG/MINOR: logs: prevent double line returns in some events.
4071 - MEDIUM: sink: build header in sink_write for log formats
4072 - MEDIUM: logs: buffer targets now rely on new sink_write
4073 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
4074 - MEDIUM: hpack: use a pool for the hpack table
4075 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
4076 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
4077 - MINOR: applet: adopt the wait list entry from the CLI
4078 - MINOR: ring: make the applet code not depend on the CLI
4079 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
4080 - CI: travis-ci: fix libslz download URL
4081 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
4082 - CLEANUP: http_ana: Remove unused TXN flags
4083 - BUG/MINOR: http-rules: Mark http return rules as final
4084 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
4085 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
4086 - MINOR: http-rules: Use http_reply structure for http return rules
4087 - MINOR: http-htx: Use a dedicated function to release http_reply objects
4088 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
4089 - MINOR: http-htx: Use a dedicated function to check http reply validity
4090 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
4091 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
4092 - MINOR: http-htx: Store default error messages in a global http reply array
4093 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
4094 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
4095 - MINOR: proxy: Add references on http replies for proxy error messages
4096 - MINOR: http-htx: Use http reply from the http-errors section
4097 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
4098 - MEDIUM: http-ana: Use http replies for HTTP error messages
4099 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
4100 - MINOR: htx: Add a function to copy a buffer in an HTX message
4101 - CLEANUP: channel: Remove channel_htx_copy_msg() function
4102 - MINOR: http-ana: Add a function to write an http reply in an HTX message
4103 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
4104 - DOC: Fix "errorfile" description in the configuration manual
4105 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
4106 - BUILD: hpack: make sure the hpack table can still be built standalone
4107 - CONTRIB: hpack: make use of the simplified standalone HPACK API
4108 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
4109
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020041102020/05/05 : 2.2-dev7
4111 - MINOR: version: Show uname output in display_version()
4112 - CI: run weekly OpenSSL "no-deprecated" builds
4113 - CLEANUP: log: fix comment of parse_logformat_string()
4114 - DOC: Improve documentation on http-request set-src
4115 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
4116 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
4117 - MINOR: ssl: add ssl-skip-self-issued-ca global option
4118 - BUG/MINOR: ssl: default settings for ssl server options are not used
4119 - MINOR: config: add a global directive to set default SSL curves
4120 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
4121 - DOC: internals: update the SSL architecture schema
4122 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
4123 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
4124 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
4125 - DOC: option logasap does not depend on mode
4126 - MEDIUM: memory: make pool_gc() run under thread isolation
4127 - MINOR: contrib: make the peers wireshark dissector a plugin
4128 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
4129 - BUG/MINOR: check: Update server address and port to execute an external check
4130 - MINOR: mini-clist: Add functions to iterate backward on a list
4131 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
4132 - MINOR: server: respect warning and alert semantic
4133 - BUG/MINOR: checks: Respect the no-check-ssl option
4134 - BUG/MEDIUM: server/checks: Init server check during config validity check
4135 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
4136 - BUG/MINOR: checks: chained expect will not properly wait for enough data
4137 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
4138 - MINOR: checks: Use an enum to describe the tcp-check rule type
4139 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
4140 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
4141 - MINOR: checks: simplify tcp expect config parser
4142 - MINOR: checks: add min-recv tcp-check expect option
4143 - MINOR: checks: add linger option to tcp connect
4144 - MINOR: checks: define a tcp expect type
4145 - MEDIUM: checks: rewrite tcp-check expect block
4146 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
4147 - MINOR: checks: add rbinary expect match type
4148 - MINOR: checks: Simplify functions to get step id and comment
4149 - MEDIUM: checks: capture groups in expect regexes
4150 - MINOR: checks: Don't use a static tcp rule list head
4151 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
4152 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
4153 - MINOR: checks: Set the tcp-check rule index during parsing
4154 - MINOR: checks: define tcp-check send type
4155 - MINOR: checks: define a tcp-check connect type
4156 - MEDIUM: checks: Add implicit tcp-check connect rule
4157 - MAJOR: checks: Refactor and simplify the tcp-check loop
4158 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
4159 - MINOR: checks/vars: Add a check scope for variables
4160 - MEDIUM: checks: Parse custom action rules in tcp-checks
4161 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
4162 - MINOR: checks: Add the sni option for tcp-check connect rules
4163 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
4164 - MINOR: checks: Add the alpn option for tcp-check connect rules
4165 - MINOR: ssl: Export a generic function to parse an alpn string
4166 - MINOR: checks: Add the default option for tcp-check connect rules
4167 - MINOR: checks: Add the addr option for tcp-check connect rule
4168 - MEDIUM: checks: Support expression to set the port
4169 - MEDIUM: checks: Support log-format strings for tcp-check send rules
4170 - MINOR: log: Don't depends on a stream to process samples in log-format string
4171 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
4172 - MEDIUM: checks: Add a shared list of tcp-check rules
4173 - MINOR: sample: add htonl converter
4174 - MINOR: sample: add cut_crlf converter
4175 - MINOR: sample: add ltrim converter
4176 - MINOR: sample: add rtrim converter
4177 - MINOR: checks: Use a name for the healthcheck status enum
4178 - MINOR: checks: Add option to tcp-check expect rules to customize error status
4179 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
4180 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
4181 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
4182 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
4183 - MINOR: checks: Relax the default option for tcp-check connect rules
4184 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
4185 - MINOR: checks: Export the tcpcheck_eval_ret enum
4186 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
4187 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
4188 - MEDIUM: checks: Implement redis check using tcp-check rules
4189 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
4190 - MEDIUM: checks: Implement smtp check using tcp-check rules
4191 - MEDIUM: checks: Implement postgres check using tcp-check rules
4192 - MEDIUM: checks: Implement MySQL check using tcp-check rules
4193 - MEDIUM: checks: Implement LDAP check using tcp-check rules
4194 - MEDIUM: checks: Implement SPOP check using tcp-check rules
4195 - MINOR: server/checks: Move parsing of agent keywords in checks.c
4196 - MINOR: server/checks: Move parsing of server check keywords in checks.c
4197 - MEDIUM: checks: Implement agent check using tcp-check rules
4198 - REGTEST: Adapt regtests about checks to recent changes
4199 - MINOR: Produce tcp-check info message for pure tcp-check rules only
4200 - MINOR: checks: Add an option to set success status of tcp-check expect rules
4201 - MINOR: checks: Improve log message of tcp-checks on success
4202 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
4203 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
4204 - MINOR: proxy/checks: Register a keyword to parse http-check rules
4205 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
4206 - MINOR: proxy/checks: Register a keyword to parse external-check rules
4207 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
4208 - MINOR: checks: Use an indirect string to represent the expect matching string
4209 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
4210 - MINOR: standard: Add my_memspn and my_memcspn
4211 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
4212 - MAJOR: checks: Implement HTTP check using tcp-check rules
4213 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
4214 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
4215 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
4216 - MINOR: checks/obj_type: Add a new object type for checks
4217 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
4218 - MINOR: checks: Use the check as origin when a session is created
4219 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
4220 - MINOR: connection: Add a function to install a mux for a health-check
4221 - MAJOR: checks: Use the best mux depending on the protocol for health checks
4222 - MEDIUM: checks: Implement default TCP check using tcp-check rules
4223 - MINOR: checks: Remove unused code about pure TCP checks
4224 - CLEANUP: checks: Reorg checks.c file to be more readable
4225 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
4226 - MINOR: ist: Add a function to retrieve the ist pointer
4227 - MINOR: checks: Use ist API as far as possible
4228 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
4229 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
4230 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
4231 - REGTEST: Add scripts to test based tcp-check health-checks
4232 - Revert "MEDIUM: checks: capture groups in expect regexes"
4233 - DOC: Add documentation about comments for tcp-check and http-check directives
4234 - DOC: Fix the tcp-check and http-check directives layout
4235 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
4236 - MINOR: checks: Support mux protocol definition for tcp and http health checks
4237 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
4238 - MINOR: checks: Support list of status codes on http-check expect rules
4239 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
4240 - REGTEST: Add a script to validate agent checks
4241 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
4242 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
4243 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
4244 - BUG/MINOR: checks/server: use_ssl member must be signed
4245 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
4246 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
4247 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
4248 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
4249 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
4250 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
4251 - BUG/MINOR: checks: Remove wrong variable redeclaration
4252 - BUG/MINOR: checks: Properly handle truncated mysql server messages
4253 - CLEANUP: checks: Remove unused code when ldap server message is parsed
4254 - MINOR: checks: Make the use of the check's server more explicit on connect
4255 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
4256 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
4257 - BUG/MINOR: checks: Don't lose warning on proxy capability
4258 - MINOR: log: Add "Tu" timer
4259 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
4260 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
4261 - REGTEST: ssl: test the client certificate authentication
4262 - DOC: give a more accurate description of what check does
4263 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
4264 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
4265 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
4266 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
4267 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
4268 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
4269 - MINOR: http-htx: Export functions to update message authority and host
4270 - MINOR: checks: Don't support multiple host header for http-check send rule
4271 - MINOR: checks: Skip some headers for http-check send rules
4272 - MINOR: checks: Keep the Host header and the request uri synchronized
4273 - CLEANUP: checks: Fix checks includes
4274 - DOC: Fix send rules in the http-check connect example
4275 - DOC: Add more info about request formatting in http-check send description
4276 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
4277 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
4278 - REGTEST: ssl: improve the "set ssl cert" test
4279 - CLEANUP: ssl: silence a build warning when threads are disabled
4280 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
4281 - MINOR: threads: export the POSIX thread ID in panic dumps
4282 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
4283 - BUG/MEDIUM: shctx: really check the lock's value while waiting
4284 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
4285 - MINOR: stream: report the list of active filters on stream crashes
4286 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
4287 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
4288 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
4289 - BUG/MEDIUM: connections: force connections cleanup on server changes
4290 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
4291 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
4292 - CLEANUP: connections: align function declaration
4293 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
4294 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
4295 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
4296 - MINOR: checks: Add support of payload-based sample fetches
4297 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
4298 - MINOR: checks: Add support of server side ssl sample fetches
4299 - MINOR: checks: Add support of HTTP response sample fetches
4300 - MINOR: http-htx: Support different methods to look for header names
4301 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
4302 - BUG/MINOR: checks: Support multiple HTTP expect rules
4303 - REGTEST: checks: Fix sync condition for agent-check
4304 - MEDIUM: checks: Support matching on headers for http-check expect rules
4305 - MINOR: lua: allow changing port with set_addr
4306 - BUG/MINOR: da: Fix HTX message prefetch
4307 - BUG/MINOR: wurfl: Fix HTX message prefetch
4308 - BUG/MINOR: 51d: Fix HTX message prefetch
4309 - MINOR: ist: add istadv() function
4310 - MINOR: ist: add istissame() function
4311 - MINOR: istbuf: add ist2buf() function
4312 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
4313 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
4314 - DOC: update intro.txt for 2.2
4315 - DOC: intro: add a contacts section
4316
Willy Tarreaud0089302020-04-17 14:19:38 +020043172020/04/17 : 2.2-dev6
4318 - BUG/MINOR: ssl: memory leak when find_chain is NULL
4319 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
4320 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
4321 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
4322 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
4323 - BUG/MINOR: peers: Use after free of "peers" section.
4324 - CI: github actions: add weekly h2spec test
4325 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
4326 - MINOR: build: Fix build in mux_h1
4327 - CLEANUP: remove obsolete comments
4328 - BUG/MEDIUM: dns: improper parsing of aditional records
4329 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
4330 - MINOR: listener: add so_name sample fetch
4331 - MEDIUM: stream: support use-server rules with dynamic names
4332 - MINOR: servers: Add a counter for the number of currently used connections.
4333 - MEDIUM: connections: Revamp the way idle connections are killed
4334 - MINOR: cli: add a general purpose pointer in the CLI struct
4335 - MINOR: ssl: add a list of bind_conf in struct crtlist
4336 - REORG: ssl: move SETCERT enum to ssl_sock.h
4337 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
4338 - REORG: ssl: move some functions above crtlist_load_cert_dir()
4339 - MINOR: ssl: use crtlist_free() upon error in directory loading
4340 - MINOR: ssl: add a list of crtlist_entry in ckch_store
4341 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
4342 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
4343 - MEDIUM: ssl/cli: 'add ssl crt-list' command
4344 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
4345 - BUG/MINOR: ssl: entry->ckch_inst not initialized
4346 - REGTEST: ssl/cli: change test type to devel
4347 - REGTEST: make the PROXY TLV validation depend on version 2.2
4348 - CLEANUP: assorted typo fixes in the code and comments
4349 - BUG/MINOR: stats: Fix color of draining servers on stats page
4350 - DOC: internals: Fix spelling errors in filters.txt
4351 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
4352 - REGTEST: make the unique-id test depend on version 2.0
4353 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
4354 - MINOR: ssl: split the line parsing of the crt-list
4355 - MINOR: ssl/cli: support filters and options in add ssl crt-list
4356 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
4357 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
4358 - REGTEST: ssl: pollute the crt-list file
4359 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
4360 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
4361 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
4362 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
4363 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
4364 - CLEANUP: assorted typo fixes in the code and comments
4365 - DOC: management: add the new crt-list CLI commands
4366 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
4367 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
4368 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
4369 - CI: use better SSL library definition
4370 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
4371 - CI: travis-ci: upgrade openssl to 1.1.1f
4372 - MINOR: ssl: improve the errors when a crt can't be open
4373 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
4374 - CI: adopt openssl download script to download all versions
4375 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
4376 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
4377 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
4378 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
4379 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
4380 - CLEANUP: ssl: use the refcount for the SSL_CTX'
4381 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
4382 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
4383 - CLEANUP: ssl: remove a commentary in struct ckch_inst
4384 - MINOR: ssl: initialize all list in ckch_inst_new()
4385 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
4386 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
4387 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
4388 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
4389 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
4390 - REORG: ssl: move some free/new functions
4391 - MINOR: ssl: crtlist_entry_{new, free}
4392 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
4393 - MINOR: ssl: don't alloc ssl_conf if no option found
4394 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
4395 - BUG/MINOR: peers: Incomplete peers sections should be validated.
4396 - MINOR: init: report in "haproxy -c" whether there were warnings or not
4397 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
4398 - MINOR: init: report the compiler version in haproxy -vv
4399 - CLEANUP: assorted typo fixes in the code and comments
4400 - MINOR: init: report the haproxy version and executable path once on errors
4401 - DOC: Make how "option redispatch" works more explicit
4402 - BUILD: Makefile: add linux-musl to TARGET
4403 - CLEANUP: assorted typo fixes in the code and comments
4404 - CLEANUP: http: Fixed small typo in parse_http_return
4405 - DOC: hashing: update link to hashing functions
4406
Willy Tarreau3328f182020-03-23 09:43:45 +010044072020/03/23 : 2.2-dev5
4408 - CLEANUP: ssl: is_default is a bit in ckch_inst
4409 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
4410 - DOC: ssl: clarify security implications of TLS tickets
4411 - CLEANUP: remove support for Linux i686 vsyscalls
4412 - CLEANUP: drop support for USE_MY_ACCEPT4
4413 - CLEANUP: remove support for USE_MY_EPOLL
4414 - CLEANUP: remove support for USE_MY_SPLICE
4415 - CLEANUP: remove the now unused common/syscall.h
4416 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
4417 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
4418 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
4419 - CLEANUP: ssl: separate the directory loading in a new function
4420 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
4421 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
4422 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
4423 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
4424 - BUG/MAJOR: list: fix invalid element address calculation
4425 - BUILD: stream-int: fix a few includes dependencies
4426 - MINOR: mt_lists: Appease gcc.
4427 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
4428 - MINOR: servers: Kill priv_conns.
4429 - MINOR: lists: fix indentation.
4430 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
4431 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
4432 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
4433 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
4434 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
4435 - BUG/MINOR: haproxy/threads: try to make all threads leave together
4436 - Revert "BUILD: travis-ci: enable s390x builds"
4437 - BUILD: travis-ci: enable regular s390x builds
4438 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
4439 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
4440 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
4441 - CLEANUP: connection: Add blank line after declarations in PP handling
4442 - CLEANUP: assorted typo fixes in the code and comments
4443 - CI: add spellcheck github action
4444 - DOC: correct typo in alert message about rspirep
4445 - CI: travis: switch linux builds to clang-9
4446 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
4447 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
4448 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
4449 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
4450 - CLEANUP: connection: Stop directly setting an ist's .ptr
4451 - CI: travis: revert to clang-7 for BoringSSL tests
4452 - BUILD: on ARM, must be linked to libatomic.
4453 - BUILD: makefile: fix regex syntax in ARM platform detection
4454 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
4455 - REORG: ssl: move ssl_sock_load_cert()
4456 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
4457 - MEDIUM: ssl: allow crt-list caching
4458 - MINOR: ssl: directories are loaded like crt-list
4459 - BUG/MINOR: ssl: can't open directories anymore
4460 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
4461 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
4462 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
4463 - MINOR: ssl/cli: show/dump ssl crt-list
4464 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
4465 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
4466 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
4467 - MINOR: tasks: Provide the tasklet to the callback.
4468 - BUG/MINOR: ssl: memleak of struct crtlist_entry
4469 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
4470 - BUILD: makefile: fix expression again to detect ARM platform
4471 - CI: travis: re-enable ASAN on clang
4472 - CI: travis: proper group output redirection together with travis_wait
4473 - DOC: assorted typo fixes in the documentation
4474 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
4475 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
4476 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
4477 - MINOR: ssl/cli: 'new ssl cert' command
4478 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
4479 - MEDIUM: sessions: Don't be responsible for connections anymore.
4480 - MEDIUM: servers: Split the connections into idle, safe, and available.
4481 - MINOR: fd: Implement fd_takeover().
4482 - MINOR: connections: Add a new mux method, "takeover".
4483 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
4484 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
4485 - MEDIUM: connections: Attempt to get idle connections from other threads.
4486 - MEDIUM: mux_h1: Implement the takeover() method.
4487 - MEDIUM: mux_h2: Implement the takeover() method.
4488 - MEDIUM: mux_fcgi: Implement the takeover() method.
4489 - MEDIUM: connections: Kill connections even if we are reusing one.
4490 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
4491 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
4492 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
4493 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
4494 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
4495 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
4496 - CI: run travis-ci builds on push only, skip pull requests
4497 - CI: temporarily disable unstable travis arm64 builds
4498 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
4499 - BUG/MINOR: connections: Make sure we free the connection on failure.
4500 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
4501 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
4502 - BUG/MINOR: connections: Set idle_time before adding to idle list.
4503 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
4504 - REGTEST: increase timeouts on the seamless-reload test
4505 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
4506 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
4507
Willy Tarreau5a753bd2020-03-09 14:57:20 +010045082020/03/09 : 2.2-dev4
4509 - MEDIUM: buffer: remove the buffer_wq lock
4510 - MINOR: ssl: move find certificate chain code to its own function
4511 - MINOR: ssl: resolve issuers chain later
4512 - MINOR: ssl: resolve ocsp_issuer later
4513 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
4514 - BUG/MINOR: h2: reject again empty :path pseudo-headers
4515 - MINOR: wdt: always clear sigev_value to make valgrind happy
4516 - MINOR: epoll: always initialize all of epoll_event to please valgrind
4517 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
4518 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
4519 - BUILD: cirrus-ci: suppress OS version check when installing packages
4520 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
4521 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
4522 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
4523 - MINOR: fd: merge the read and write error bits into RW error
4524 - BUG/MINOR: dns: ignore trailing dot
4525 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
4526 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
4527 - MINOR: mux-h1: Remove useless case-insensitive comparisons
4528 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
4529 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
4530 - MEDIUM: connection: don't stop receiving events in the FD handler
4531 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
4532 - BUG/MINOR: arg: don't reject missing optional args
4533 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
4534 - MINOR: debug: report the task handler's pointer relative to main
4535 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
4536 - MINOR: haproxy: export main to ease access from debugger
4537 - MINOR: haproxy: export run_poll_loop
4538 - MINOR: task: export run_tasks_from_list
4539 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
4540 - MINOR: tools: add new function dump_addr_and_bytes()
4541 - MINOR: tools: add resolve_sym_name() to resolve function pointers
4542 - MINOR: debug: use resolve_sym_name() to dump task handlers
4543 - MINOR: cli: make "show fd" rely on resolve_sym_name()
4544 - MEDIUM: debug: add support for dumping backtraces of stuck threads
4545 - MINOR: debug: call backtrace() once upon startup
4546 - MINOR: ssl: add "ca-verify-file" directive
4547 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
4548 - BUILD: Makefile: include librt before libpthread
4549 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
4550 - MINOR: wdt: do not depend on USE_THREAD
4551 - MINOR: debug: report the number of entries in the backtrace
4552 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
4553 - MINOR: debug: use our own backtrace function on clang+x86_64
4554 - MINOR: debug: dump the whole trace if we can't spot the starting point
4555 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
4556 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
4557 - CLEANUP: contrib/spoa_example: Fix several typos
4558 - BUILD: makefile: do not modify the build options during make reg-tests
4559 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
4560 - MEDIUM: stream-int: make sure to try to immediately validate the connection
4561 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
4562 - MEDIUM: connection: only call ->wake() for connect() without I/O
4563 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
4564 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
4565 - REGTEST: Add unique-id reg-test
4566 - MINOR: stream: Add stream_generate_unique_id function
4567 - MINOR: stream: Use stream_generate_unique_id
4568 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
4569 - MINOR: ssl/cli: support crt-list filters
4570 - MINOR: ssl: reach a ckch_store from a sni_ctx
4571 - DOC: fix incorrect indentation of http_auth_*
4572 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
4573 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
4574 - MINOR: ist: Add `IST_NULL` macro
4575 - MINOR: ist: Add `int isttest(const struct ist)`
4576 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
4577 - CLEANUP: Use `isttest()` and `istfree()`
4578 - MINOR: ist: Add `struct ist istdup(const struct ist)`
4579 - MINOR: proxy: Make `header_unique_id` a `struct ist`
4580 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
4581 - OPTIM: startup: fast unique_id allocation for acl.
4582 - DOC: configuration.txt: fix various typos
4583 - DOC: assorted typo fixes in the documentation and Makefile
4584 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
4585 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
4586 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
4587 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
4588 - MINOR: htx: Add a function to return a block at a specific offset
4589 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
4590 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
4591 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
4592 - BUG/MINOR: filters: Forward everything if no data filters are called
4593 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
4594 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
4595 - BUG/MINOR: http-ana: Reset request analysers on a response side error
4596 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
4597 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
4598 - MINOR: lua: Add function to know if a channel is a response one
4599 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
4600 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
4601 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
4602 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
4603 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
4604 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
4605 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
4606 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
4607 - BUG/MINOR: http-rules: Fix a typo in the reject action function
4608 - MINOR: cache/filters: Initialize the cache filter when stream is created
4609 - MINOR: compression/filters: Initialize the comp filter when stream is created
4610 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
4611 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
4612 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
4613 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
4614 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
4615 - BUILD: ssl: include mini-clist.h
4616 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
4617 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
4618 - BUILD: listener: types/listener.h must not include standard.h
4619 - BUG/MEDIUM: random: initialize the random pool a bit better
4620 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
4621 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
4622 - BUILD: cirrus-ci: get rid of unstable freebsd images
4623 - MINOR: tools: add 64-bit rotate operators
4624 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
4625 - MINOR: backend: use a single call to ha_random32() for the random LB algo
4626 - BUG/MINOR: checks/threads: use ha_random() and not rand()
4627 - MINOR: sample: make all bits random on the rand() sample fetch
4628 - MINOR: tools: add a generic function to generate UUIDs
4629 - DOC: fix typo about no-tls-tickets
4630 - DOC: improve description of no-tls-tickets
4631 - DOC: assorted typo fixes in the documentation
4632 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
4633
Willy Tarreau32bf97f2020-02-25 18:14:02 +010046342020/02/25 : 2.2-dev3
4635 - SCRIPTS: announce-release: place the send command in the mail's header
4636 - SCRIPTS: announce-release: allow the user to force to overwrite old files
4637 - SCRIPTS: backport: fix the master branch detection
4638 - BUG/MINOR: http-act: Set stream error flag before returning an error
4639 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
4640 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
4641 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
4642 - DOC: schematic of the SSL certificates architecture
4643 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
4644 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
4645 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
4646 - BUILD: cirrus-ci: workaround "pkg install" bug
4647 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
4648 - BUG/MINOR: connection: correctly retry I/O on signals
4649 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
4650 - BUILD: http_act: cast file sizes when reporting file size error
4651 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
4652 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
4653 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
4654 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
4655 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
4656 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
4657 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
4658 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
4659 - SCRIPTS: make announce-release executable again
4660 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
4661 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
4662 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
4663 - CLEANUP: ssl: remove unused functions in openssl-compat.h
4664 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
4665 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
4666 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
4667 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
4668 - MEDIUM: arg: make make_arg_list() stop after its own arguments
4669 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
4670 - MEDIUM: arg: make make_arg_list() support quotes in arguments
4671 - MINOR: sample: make sample_parse_expr() able to return an end pointer
4672 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
4673 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
4674 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
4675 - BUILD: enable ERR=1 in github cygwin builds
4676 - BUG/MINOR: arg: fix again incorrect argument length check
4677 - MINOR: sample: regsub now supports backreferences
4678 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
4679 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
4680 - MINOR: filters: Forward data only if the last filter forwards something
4681 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
4682 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
4683 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
4684 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
4685 - MINOR: ssl: add "issuers-chain-path" directive.
4686 - REGTESTS: use "command -v" instead of "which"
4687 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
4688 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
4689 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
4690 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
4691 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
4692 - MINOR: checks: do not call conn_xprt_stop_send() anymore
4693 - CLEANUP: epoll: place the struct epoll_event in the stack
4694 - MEDIUM: connection: remove the intermediary polling state from the connection
4695 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
4696 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
4697 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
4698 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
4699 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
4700 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
4701 - MINOR: ist: add an iststop() function
4702 - BUG/MINOR: http: http-request replace-path duplicates the query string
4703 - CLEANUP: sample: use iststop instead of a for loop
4704 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
4705 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
4706 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
4707 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
4708 - BUILD: fix recent build failure on unaligned archs
4709 - MINOR: ssl: load the key from a dedicated file
4710 - BUG/MINOR: ssl: load .key in a directory only after PEM
4711 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
4712 - CLEANUP: conn: Do not pass a pointer to likely
4713 - CLEANUP: net_helper: Do not negate the result of unlikely
4714 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
4715 - CLEANUP: cfgparse: Fix type of second calloc() parameter
4716 - BUILD: ssl: only pass unsigned chars to isspace()
4717 - BUILD: general: always pass unsigned chars to is* functions
4718 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
4719 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
4720 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
4721 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
4722 - CLEANUP: stick-tables: use read_u32() to display a node's key
4723 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
4724 - MINOR: pattern: fix all remaining strict aliasing issues
4725 - CLEANUP: lua: fix aliasing issues in the address matching code
4726 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
4727 - BUILD: makefile: re-enable strict aliasing
4728 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
4729 - MINOR: compiler: add new alignment macros
4730 - BUILD: ebtree: improve architecture-specific alignment
4731 - MINOR: config: mark global.debug as deprecated
4732 - BUILD: travis-ci: enable s390x builds
4733 - MINOR: ssl/cli: 'show ssl cert' displays the chain
4734 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
4735 - MINOR: ssl/cli: reorder 'show ssl cert' output
4736 - CLEANUP: ssl: move issuer_chain tree and definition
4737 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
4738
Willy Tarreau4c47d912020-02-07 04:12:19 +010047392020/02/07 : 2.2-dev2
4740 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
4741 - MEDIUM: cli: Allow multiple filter entries for "show table"
4742 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
4743 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
4744 - BUILD: stick-table: fix build errors introduced by last stick-table change
4745 - BUG/MINOR: cli: Missing arg offset for filter data values.
4746 - MEDIUM: streams: Always create a conn_stream in connect_server().
4747 - MEDIUM: connections: Get ride of the xprt_done callback.
4748 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
4749 - BUILD: CI: move cygwin builds to Github Actions
4750 - MINOR: cli: Report location of errors or any extra data for "show table"
4751 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
4752 - CLEANUP: backend: remove useless test for inexistent connection
4753 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
4754 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
4755 - BUG/MINOR: ssl: increment issuer refcount if in chain
4756 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
4757 - BUG/MINOR: ssl: typo in previous patch
4758 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
4759 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
4760 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
4761 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
4762 - MINOR: stream-int: always report received shutdowns
4763 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
4764 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
4765 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
4766 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
4767 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
4768 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
4769 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
4770 - BUG/MINOR: stktable: report the current proxy name in error messages
4771 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
4772 - MINOR: lua: Add hlua_prepend_path function
4773 - MINOR: lua: Add lua-prepend-path configuration option
4774 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
4775 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
4776 - BUG/MINOR: http-ana: Increment the backend counters on the backend
4777 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
4778 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
4779 - REGTESTS: make the set_ssl_cert test require version 2.2
4780 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
4781 - MINOR: ssl: Remove dead code.
4782 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
4783 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
4784 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
4785 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
4786 - BUILD: CI: disable slow regtests on Travis
4787 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
4788 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
4789 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
4790 - BUG/MINOR: dns: allow 63 char in hostname
4791 - MINOR: proxy: clarify number of connections log when stopping
4792 - DOC: word converter ignores delimiters at the start or end of input string
4793 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
4794 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
4795 - MEDIUM: pipe/thread: reduce the locking overhead
4796 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
4797 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
4798 - MINOR: tasks: move the list walking code to its own function
4799 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
4800 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
4801 - OPTIM: task: refine task classes default CPU bandwidth ratios
4802 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
4803 - MINOR: task: permanently flag tasklets waking themselves up
4804 - MINOR: task: make sched->current also reflect tasklets
4805 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
4806 - OPTIM: task: readjust CPU bandwidth distribution since last update
4807 - MINOR: task: don't set TASK_RUNNING on tasklets
4808 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
4809 - MINOR: memory: Only init the pool spinlock once.
4810 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
4811 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
4812 - MINOR: ssl: ssl-load-extra-files configure loading of files
4813 - SCRIPTS: add a new "backport" script to simplify long series of backports
4814 - BUG/MINOR: ssl: we may only ignore the first 64 errors
4815 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
4816 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
4817 - CLEANUP: hpack: remove a redundant test in the decoder
4818 - CLEANUP: peers: Remove unused static function `free_dcache`
4819 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
4820 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
4821 - CONTRIB: debug: add the possibility to decode the value as certain types only
4822 - CONTRIB: debug: support reporting multiple values at once
4823 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
4824 - MINOR: global: Set default tune.maxrewrite value during global structure init
4825 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
4826 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
4827 - MINOR: htx: Add a function to append an HTX message to another one
4828 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
4829 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
4830 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
4831 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
4832 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
4833 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
4834 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
4835 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
4836 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
4837 - MINOR: http-ana: Add a function for forward internal responses
4838 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
4839 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
4840 - MEDIUM: http-rules: Add the return action to HTTP rules
4841 - MEDIUM: http-rules: Support extra headers for HTTP return actions
4842 - CLEANUP: lua: Remove consistency check for sample fetches and actions
4843 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
4844 - MINOR: lua: Get the action return code on the stack when an action finishes
4845 - MINOR: lua: Create the global 'act' object to register all action return codes
4846 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
4847 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
4848 - REGTESTS: Add reg tests for the HTTP return action
4849 - REGTESTS: Add a reg test for http-after-response rulesets
4850 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
4851 - MINOR: acl: Warn when an ACL is named 'or'
4852 - CONTRIB: debug: also support reading values from stdin
4853 - SCRIPTS: backport: use short revs and resolve the initial commit
4854 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
4855
Willy Tarreau71f95fa2020-01-22 10:34:58 +010048562020/01/22 : 2.2-dev1
4857 - DOC: this is development again
4858 - MINOR: version: this is development again, update the status
4859 - SCRIPTS: update create-release to fix the changelog on new branches
4860 - CLEANUP: ssl: Clean up error handling
4861 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
4862 - BUG/MINOR: h1: Don't test the host header during response parsing
4863 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
4864 - DOC: Clarify behavior of server maxconn in HTTP mode
4865 - MINOR: ssl: deduplicate ca-file
4866 - MINOR: ssl: compute ca-list from deduplicate ca-file
4867 - MINOR: ssl: deduplicate crl-file
4868 - CLEANUP: dns: resolution can never be null
4869 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
4870 - DOC: ssl/cli: set/commit/abort ssl cert
4871 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
4872 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
4873 - BUG/MINOR: stats: Fix HTML output for the frontends heading
4874 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
4875 - DOC: clarify matching strings on binary fetches
4876 - DOC: Fix ordered list in summary
4877 - DOC: move the "group" keyword at the right place
4878 - MEDIUM: init: prevent process and thread creation at runtime
4879 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
4880 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
4881 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
4882 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
4883 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
4884 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
4885 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
4886 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
4887 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
4888 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
4889 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
4890 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
4891 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
4892 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
4893 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
4894 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
4895 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
4896 - BUG/MINOR: listener: also clear the error flag on a paused listener
4897 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
4898 - MINOR: listener: make the wait paths cleaner and more reliable
4899 - MINOR: listener: split dequeue_all_listener() in two
4900 - REORG: listener: move the global listener queue code to listener.c
4901 - DOC: document the listener state transitions
4902 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
4903 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
4904 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
4905 - DOC: listeners: add a few missing transitions
4906 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
4907 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
4908 - DOC: proxies: HAProxy only supports 3 connection modes
4909 - DOC: remove references to the outdated architecture.txt
4910 - BUG/MINOR: log: fix minor resource leaks on logformat error path
4911 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
4912 - BUG/MINOR: listener: do not immediately resume on transient error
4913 - BUG/MINOR: server: make "agent-addr" work on default-server line
4914 - BUG/MINOR: listener: fix off-by-one in state name check
4915 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
4916 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
4917 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
4918 - REGTEST: Add an HTX reg-test to check an edge case
4919 - DOC: clarify the fact that replace-uri works on a full URI
4920 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
4921 - BUG/MINOR: sample: always check converters' arguments
4922 - MINOR: sample: Validate the number of bits for the sha2 converter
4923 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
4924 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
4925 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
4926 - MINOR: debug: support logging to various sinks
4927 - MINOR: http: add a new "replace-path" action
4928 - REGTEST: ssl: test the "set ssl cert" CLI command
4929 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
4930 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
4931 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
4932 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
4933 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
4934 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
4935 - REGTEST: make the "set ssl cert" require version 2.1
4936 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
4937 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
4938 - BUG/MINOR: state-file: do not store duplicates in the global tree
4939 - BUG/MINOR: state-file: do not leak memory on parse errors
4940 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
4941 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
4942 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
4943 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
4944 - BUILD: travis-ci: reenable address sanitizer for clang builds
4945 - BUG/MINOR: checks: refine which errno values are really errors.
4946 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
4947 - CLEANUP: connection: conn->xprt is never NULL
4948 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
4949 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
4950 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
4951 - MINOR: connection: check for connection validation earlier
4952 - MINOR: connection: remove the double test on xprt_done_cb()
4953 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
4954 - MINOR: poller: do not call the IO handler if the FD is not active
4955 - OPTIM: epoll: always poll for recv if neither active nor ready
4956 - OPTIM: polling: do not create update entries for FD removal
4957 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
4958 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
4959 - BUILD: CI: modernize cirrus-ci
4960 - MINOR: config: disable busy polling on old processes
4961 - MINOR: ssl: Remove unused variable "need_out".
4962 - BUG/MINOR: h1: Report the right error position when a header value is invalid
4963 - BUG/MINOR: proxy: Fix input data copy when an error is captured
4964 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
4965 - BUG/MINOR: channel: inject output data at the end of output
4966 - BUG/MEDIUM: session: do not report a failure when rejecting a session
4967 - MEDIUM: dns: implement synchronous send
4968 - MINOR: raw_sock: make sure to disable polling once everything is sent
4969 - MINOR: http: Add 410 to http-request deny
4970 - MINOR: http: Add 404 to http-request deny
4971 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
4972 - BUILD: cirrus-ci: choose proper openssl package name
4973 - BUG/MAJOR: listener: do not schedule a task-less proxy
4974 - CLEANUP: server: remove unused err section in server_finalize_init
4975 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
4976 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
4977 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
4978 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
4979 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
4980 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
4981 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
4982 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
4983 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
4984 - REGTEST: mcli/mcli_start_progs: start 2 programs
4985 - BUG/MEDIUM: mworker: remain in mworker mode during reload
4986 - DOC: clarify crt-base usage
4987 - CLEANUP: compression: remove unused deinit_comp_ctx section
4988 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
4989 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
4990 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
4991 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
4992 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
4993 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
4994 - CLEANUP: cli: deduplicate the code in _getsocks
4995 - BUG/MINOR: stream: don't mistake match rules for store-request rules
4996 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
4997 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
4998 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
4999 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
5000 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
5001 - BUILD: pattern: include errno.h
5002 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
5003 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
5004 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
5005 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
5006 - REORG: stream/backend: move backend-specific stuff to backend.c
5007 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
5008 - MEDIUM: connection: merge the send_wait and recv_wait entries
5009 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
5010 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
5011 - MEDIUM: mux-h1: merge recv_wait and send_wait
5012 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
5013 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
5014 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
5015 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
5016 - DOC: Fix copy and paste mistake in http-response replace-value doc
5017 - BUG/MINOR: cache: Fix leak of cache name in error path
5018 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
5019 - BUG/MINOR: 51d: Fix bug when HTX is enabled
5020 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
5021 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
5022 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
5023 - DOC: Add a section to document the internal sample fetches
5024 - MINOR: mux-h1: Inherit send flags from the upper layer
5025 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
5026 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
5027 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
5028 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
5029 - MEDIUM: http-rules: Register an action keyword for all http rules
5030 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
5031 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
5032 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
5033 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
5034 - MINOR: counters: Add a counter to report internal processing errors
5035 - MEDIUM: http-ana: Properly handle internal processing errors
5036 - MINOR: http-rules: Add a rule result to report internal error
5037 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
5038 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
5039 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
5040 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
5041 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
5042 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
5043 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
5044 - MINOR: counters: Review conditions to increment counters from analysers
5045 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
5046 - MINOR: http-rules: Handle all message rewrites the same way
5047 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
5048 - MEDIUM: http-rules: Enable the strict rewriting mode by default
5049 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
5050 - MINOR: actions: Add a function pointer to release args used by actions
5051 - MINOR: actions: Regroup some info about HTTP rules in the same struct
5052 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
5053 - MINOR: actions: Rename the act_flag enum into act_opt
5054 - MINOR: actions: Add flags to configure the action behaviour
5055 - MINOR: actions: Use an integer to set the action type
5056 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
5057 - MINOR: http-rules: Make replace-header and replace-value custom actions
5058 - MINOR: http-rules: Make set-header and add-header custom actions
5059 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
5060 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
5061 - MEDIUM: http-rules: Make early-hint custom actions
5062 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
5063 - MINOR: tcp-rules: Make tcp-request capture a custom action
5064 - MINOR: http-rules: Add release functions for existing HTTP actions
5065 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
5066 - MINOR: tcp-rules: Add release functions for existing TCP actions
5067 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
5068 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
5069 - MINOR: http-htx: Add functions to create HTX redirect message
5070 - MINOR: config: Use dedicated function to parse proxy's errorfiles
5071 - MINOR: config: Use dedicated function to parse proxy's errorloc
5072 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
5073 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
5074 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
5075 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
5076 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
5077 - MINOR: http-rules: Support an optional status on deny rules for http reponses
5078 - MINOR: http-rules: Use same function to parse request and response deny actions
5079 - MINOR: http-ana: Add an error message in the txn and send it when defined
5080 - MEDIUM: http-rules: Support an optional error message in http deny rules
5081 - REGTEST: Add a strict rewriting mode reg test
5082 - REGEST: Add reg tests about error files
5083 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
5084 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
5085 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
5086 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
5087 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
5088 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
5089 - BUILD: CI: introduce ARM64 builds
5090 - BUILD: ssl: more elegant anti-replay feature presence check
5091 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
5092 - MEDIUM: dns: use Additional records from SRV responses
5093 - CLEANUP: Consistently `unsigned int` for bitfields
5094 - CLEANUP: pattern: remove the pat_time definition
5095 - BUG/MINOR: http_act: don't check capture id in backend
5096 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
5097
Willy Tarreau2e077f82019-11-25 20:36:16 +010050982019/11/25 : 2.2-dev0
5099 - exact copy of 2.1.0
5100
Willy Tarreaue54b43a2019-11-25 19:47:40 +010051012019/11/25 : 2.1.0
5102 - BUG/MINOR: init: fix set-dumpable when using uid/gid
5103 - MINOR: init: avoid code duplication while setting identify
5104 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
5105 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
5106 - MINOR: peers: Alway show the table info for disconnected peers.
5107 - MINOR: peers: Add TX/RX heartbeat counters.
5108 - MINOR: peers: Add debugging information to "show peers".
5109 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
5110 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
5111 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
5112 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
5113 - BUILD/MINOR: ssl: fix compiler warning about useless statement
5114 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
5115 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
5116 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
5117 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
5118 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
5119 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
5120 - DOC: Update http-buffer-request description to remove the part about chunks
5121 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
5122 - DOC: internal: document the init calls
5123 - MEDIUM: dns: Add resolve-opts "ignore-weight"
5124 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
5125 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
5126 - MINOR: ssl/cli: display warning during 'commit ssl cert'
5127 - MINOR: version: report the version status in "haproxy -v"
5128 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
5129 - DOC: Add documentation about the use-service action
5130 - MINOR: ssl: fix possible null dereference in error handling
5131 - BUG/MINOR: ssl: fix curve setup with LibreSSL
5132 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
5133 - CLEANUP: ssl: check if a transaction exists once before setting it
5134 - BUG/MINOR: cli: fix out of bounds in -S parser
5135 - MINOR: ist: add ist_find_ctl()
5136 - BUG/MAJOR: h2: reject header values containing invalid chars
5137 - BUG/MAJOR: h2: make header field name filtering stronger
5138 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
5139 - MINOR: h2: add a function to report H2 error codes as strings
5140 - MINOR: mux-h2/trace: report the connection and/or stream error code
5141 - SCRIPTS: create-release: show the correct origin name in suggested commands
5142 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
5143 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
5144 - BUILD: reorder the objects in the makefile
5145 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
5146 - MINOR: version: indicate that this version is stable
5147
Willy Tarreau84681322019-11-15 18:49:37 +010051482019/11/15 : 2.1-dev5
5149 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
5150 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
5151 - BUG/MINOR: ssl/cli: fix an error when a file is not found
5152 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
5153 - DOC: fix date and http_date keywords syntax
5154 - MINOR: peers: Add "log" directive to "peers" section.
5155 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
5156 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
5157 - MINOR: flt_trace: Rename macros to print trace messages
5158 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
5159 - MEDIUM: stream/trace: Register a new trace source with its events
5160 - MINOR: doc: http-reuse connection pool fix
5161 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
5162 - MINOR: http-ana: Remove the unused function http_reset_txn()
5163 - BUG/MINOR: action: do-resolve now use cached response
5164 - BUG: dns: timeout resolve not applied for valid resolutions
5165 - DOC: management: fix typo on "cache_lookups" stats output
5166 - BUG/MINOR: stream: init variables when the list is empty
5167 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
5168 - BUG/MINOR: queue/threads: make the queue unlinking atomic
5169 - BUG/MEDIUM: Make sure we leave the session list in session_free().
5170 - CLEANUP: session: slightly simplify idle connection cleanup logic
5171 - MINOR: memory: also poison the area on freeing
5172 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
5173 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
5174 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
5175 - BUILD: contrib/da: remove an "unused" warning
5176 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
5177 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
5178 - MINOR: freq_ctr: Make the sliding window sums thread-safe
5179 - MINOR: stream: Remove the lock on the proxy to update time stats
5180 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
5181 - MINOR: stats: Report max times in addition of the averages for sessions
5182 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
5183 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
5184 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
5185 - DOC: Add missing stats fields in the management manual
5186 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
5187 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
5188 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
5189 - MINOR: sink: Set the default max length for a message to BUFSIZE
5190 - MINOR: ring: make the parse function automatically set the handler/release
5191 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
5192 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
5193
Willy Tarreau1753cb52019-11-03 15:43:10 +010051942019/11/03 : 2.1-dev4
5195 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
5196 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
5197 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
5198 - DOC: remove obsolete section about header manipulation
5199 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
5200 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
5201 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
5202 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
5203 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
5204 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
5205 - BUILD/MINOR: ssl: shut up a build warning about format truncation
5206 - BUILD: do not disable -Wformat-truncation anymore
5207 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
5208 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
5209 - MINOR: mux: Add a new method to get informations about a mux.
5210 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
5211 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
5212 - MINOR: doc: fix busy-polling performance reference
5213 - MINOR: config: allow no set-dumpable config option
5214 - MINOR: init: always fail when setrlimit fails
5215 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
5216 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
5217 - REGTEST: vtest can now enable mcli with its own flag
5218 - BUG/MINOR: config: Update cookie domain warn to RFC6265
5219 - MINOR: sample: add us/ms support to date/http_date
5220 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
5221 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
5222 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
5223 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
5224 - BUG/MINOR: stats: properly check the path and not the whole URI
5225 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
5226 - BUG/MINOR: ssl: ckch->chain must be initialized
5227 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
5228 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
5229 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
5230 - MINOR: backend: Add srv_name sample fetche
5231 - DOC: Add GitHub issue config.yml
5232
Willy Tarreauc70df532019-10-25 15:48:53 +020052332019/10/25 : 2.1-dev3
5234 - MINOR: mux-h2/trace: missing conn pointer in demux full message
5235 - MINOR: mux-h2: add a per-connection list of blocked streams
5236 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
5237 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
5238 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
5239 - BUG/MINOR: peers: crash on reload without local peer.
5240 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
5241 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
5242 - MINOR: htx: Adapt htx_dump() to be used from traces
5243 - MINOR: mux-h1/trace: register a new trace source with its events
5244 - MINOR: proxy: Store http-send-name-header in lower case
5245 - MINOR: http: Remove headers matching the name of http-send-name-header option
5246 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
5247 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
5248 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
5249 - MINOR: fcgi: Add function to get the string representation of a record type
5250 - MINOR: mux-fcgi/trace: Register a new trace source with its events
5251 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
5252 - DOC: clarify some points around http-send-name-header's behavior
5253 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
5254 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
5255 - DOC: fix typo in Prometheus exporter doc
5256 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
5257 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
5258 - MINOR: http: Add a function to get the authority into a URI
5259 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
5260 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
5261 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
5262 - MEDIUM: h2: make the request parser rebuild a complete URI
5263 - MINOR: h2: report in the HTX flags when the request has an authority
5264 - MEDIUM: mux-h2: do not map Host to :authority on output
5265 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
5266 - MINOR: stats: mention in the help message support for "json" and "typed"
5267 - MINOR: stats: get rid of the ST_CONVDONE flag
5268 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
5269 - MINOR: stats: always merge the uri_auth flags into the appctx flags
5270 - MINOR: stats: set the appctx flags when initializing the applet only
5271 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
5272 - MINOR: stats: make stats_dump_fields_json() directly take flags
5273 - MINOR: stats: uniformize the calling convention of the dump functions
5274 - MINOR: stats: support the "desc" output format modifier for info and stat
5275 - MINOR: stats: prepare to add a description with each stat/info field
5276 - MINOR: stats: make "show stat" and "show info"
5277 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
5278 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
5279 - BUILD: stats: fix missing '=' sign in array declaration
5280 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
5281 - MINOR: list: add new macro MT_LIST_BEHEAD
5282 - MEDIUM: task: Split the tasklet list into two lists.
5283 - MINOR: h2: Document traps to be avoided on multithread.
5284 - MINOR: lists: Try to use local variables instead of macro arguments.
5285 - MINOR: lists: Fix alignement of \ when relevant.
5286 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
5287 - MINOR: ssl: crt-list do ckchn_lookup
5288 - REORG: ssl: rename ckch_node to ckch_store
5289 - REORG: ssl: move structures to ssl_sock.h
5290 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
5291 - MINOR: ssl: initialize explicitly the sni_ctx trees
5292 - BUG/MINOR: ssl: abort on sni allocation failure
5293 - BUG/MINOR: ssl: free the sni_keytype nodes
5294 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
5295 - MEDIUM: ssl: introduce the ckch instance structure
5296 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
5297 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
5298 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
5299 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
5300 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
5301 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
5302 - MINOR: ssl: load the sctl in/from the ckch
5303 - MINOR: ssl: load the ocsp in/from the ckch
5304 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
5305 - BUG/MINOR: ssl: fix build without SSL
5306 - BUG/MINOR: ssl: fix build without multi-cert bundles
5307 - BUILD: ssl: wrong #ifdef for SSL engines code
5308 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
5309 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
5310 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
5311 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
5312 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
5313 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
5314 - BUG/MINOR: mux-h1: Capture ignored parsing errors
5315 - MINOR: h1: Reject requests with different occurrences of the header host
5316 - MINOR: h1: Reject requests if the authority does not match the header host
5317 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
5318 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
5319 - BUG/MINOR: WURFL: fix send_log() function arguments
5320 - BUG/MINOR: ssl: fix error messages for OCSP loading
5321 - BUG/MINOR: ssl: can't load ocsp files
5322 - MINOR: version: make the version strings variables, not constants
5323 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
5324 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
5325 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
5326 - BUILD: travis-ci: limit build to branches "master" and "next"
5327 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
5328 - BUILD/SMALL: threads: enable threads on osx
5329 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
5330 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
5331 - BUG/MINOR: cache: also cache absolute URIs
5332 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
5333 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
5334 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
5335 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
5336 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
5337 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
5338 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
5339 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
5340 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
5341 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
5342 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
5343 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
5344 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
5345 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
5346 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
5347 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
5348 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
5349 - CLEANUP: bind: handle warning label on bind keywords parsing.
5350 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
5351 - BUG/MINOR: mworker/cli: reload fail with inherited FD
5352 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
5353 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
5354 - BUG/MINOR: cache: alloc shctx after check config
5355 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
5356 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
5357 - REGTESTS: make seamless-reload depend on 1.9 and above
5358 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
5359 - BUG/MINOR: dns: allow srv record weight set to 0
5360 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
5361 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
5362 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
5363 - BUG/MINOR: mux-h2: do not emit logs on backend connections
5364 - CLEANUP: ssl: remove old TODO commentary
5365 - CLEANUP: ssl: fix SNI/CKCH lock labels
5366 - MINOR: ssl: OCSP functions can load from file or buffer
5367 - MINOR: ssl: load sctl from buf OR from a file
5368 - MINOR: ssl: load issuer from file or from buffer
5369 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
5370 - BUG/MINOR: ssl/cli: fix looking up for a bundle
5371 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
5372 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
5373 - MINOR: ssl: copy a ckch from src to dst
5374 - MINOR: ssl: new functions duplicate and free a ckch_store
5375 - MINOR: ssl/cli: assignate a new ckch_store
5376 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
5377 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
5378 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
5379 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
5380 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
5381 - MINOR: tcp: avoid confusion in time parsing init
5382 - MINOR: debug: add a new "debug dev stream" command
5383 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
5384 - REORG: move CLI access level definitions to cli.h
5385 - MINOR: cli: add an expert mode to hide dangerous commands
5386 - MINOR: debug: make most debug CLI commands accessible in expert mode
5387 - MINOR: stats/debug: maintain a counter of debug commands issued
5388 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
5389
Willy Tarreaucb8f03f2019-10-01 18:13:09 +020053902019/10/01 : 2.1-dev2
5391 - DOC: management: document reuse and connect counters in the CSV format
5392 - DOC: management: document cache_hits and cache_lookups in the CSV format
5393 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
5394 - MINOR: applet: make appctx use their own pool
5395 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
5396 - BUG/MEDIUM: http/htx: unbreak option http_proxy
5397 - BUG/MINOR: backend: do not try to install a mux when the connection failed
5398 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
5399 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
5400 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
5401 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
5402 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
5403 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
5404 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
5405 - MINOR: proto_htx: Add the function htx_return_srv_error()
5406 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
5407 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
5408 - DOC: htx: Update comments in HTX files
5409 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
5410 - MINOR: htx: Deduce the number of used blocks from tail and head values
5411 - MINOR: htx: Use an array of char to store HTX blocks
5412 - MINOR: htx: Slightly update htx_dump() to report better messages
5413 - DOC: htx: Add internal documentation about the HTX
5414 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
5415 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
5416 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
5417 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
5418 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
5419 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
5420 - MINOR: config: Remove tests on the option 'http-use-htx'
5421 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
5422 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
5423 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
5424 - MINOR: cache: Remove tests on the option 'http-use-htx'
5425 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
5426 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
5427 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
5428 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
5429 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
5430 - MINOR: http_act: Remove code relying on the legacy HTTP mode
5431 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
5432 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
5433 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
5434 - MINOR: stats: Remove code relying on the legacy HTTP mode
5435 - MAJOR: filters: Remove code relying on the legacy HTTP mode
5436 - MINOR: stream: Remove code relying on the legacy HTTP mode
5437 - MAJOR: http: Remove the HTTP legacy code
5438 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
5439 - MINOR: proto_http: Remove unused http txn flags
5440 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
5441 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
5442 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
5443 - CLEANUP: proto_http: Remove unecessary includes and comments
5444 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
5445 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
5446 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
5447 - MINOR: proxy: Remove support of the option 'http-tunnel'
5448 - DOC: config: Update as a result of the legacy HTTP removal
5449 - MEDIUM: config: Remove parsing of req* and rsp* directives
5450 - MINOR: proxy: Remove the unused list of block rules
5451 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
5452 - DOC: config: Remove unsupported req* and rsp* keywords
5453 - MINOR: global: Preset tune.max_http_hdr to its default value
5454 - MINOR: http: Don't store raw HTTP errors in chunks anymore
5455 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
5456 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
5457 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
5458 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
5459 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
5460 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
5461 - MINOR: connection: add conn_get_src() and conn_get_dst()
5462 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
5463 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
5464 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
5465 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
5466 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
5467 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
5468 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
5469 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
5470 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
5471 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
5472 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
5473 - MINOR: connection: add new src and dst fields
5474 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
5475 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
5476 - MINOR: lua: switch to conn->dst for a connection's target address
5477 - MINOR: peers: use conn->dst for the peer's target address
5478 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
5479 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
5480 - MINOR: proxy: switch to conn->src in error snapshots
5481 - MINOR: session: use conn->src instead of conn->addr.from
5482 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
5483 - MINOR: unix: use conn->dst for the target address in ->connect()
5484 - MINOR: sockpair: use conn->dst for the target address in ->connect()
5485 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
5486 - MINOR: checks: replace conn->addr.to with conn->dst
5487 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
5488 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
5489 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
5490 - MINOR: connection: create a new pool for struct sockaddr_storage
5491 - MEDIUM: connection: make sure all address producers allocate their address
5492 - MAJOR: connection: remove the addr field
5493 - MINOR: connection: don't use clear_addr() anymore, just release the address
5494 - MINOR: stream: add a new target_addr entry in the stream structure
5495 - MAJOR: stream: store the target address into s->target_addr
5496 - MINOR: peers: now remove the remote connection setup code
5497 - MEDIUM: lua: do not allocate the remote connection anymore
5498 - MEDIUM: backend: always release any existing prior connection in connect_server()
5499 - MEDIUM: backend: remove impossible cases from connect_server()
5500 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
5501 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
5502 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
5503 - BUG/MINOR: http_htx: Support empty errorfiles
5504 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
5505 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
5506 - BUG/MINOR: proxy: always lock stop_proxy()
5507 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
5508 - BUILD: threads: add the definition of PROTO_LOCK
5509 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
5510 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
5511 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
5512 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
5513 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
5514 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
5515 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
5516 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
5517 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
5518 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
5519 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
5520 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
5521 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
5522 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
5523 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
5524 - MEDIUM: ssl: split the loading of the certificates
5525 - MEDIUM: ssl: lookup and store in a ckch_node tree
5526 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
5527 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
5528 - MINOR: ssl: use STACK_OF for chain certs
5529 - MINOR: ssl: add extra chain compatibility
5530 - MINOR: ssl: check private key consistency in loading
5531 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
5532 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
5533 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
5534 - MAJOR: fd: Get rid of the fd cache.
5535 - MEDIUM: pollers: Remember the state for read and write for each threads.
5536 - MEDIUM: mux-h2: don't try to read more than needed
5537 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
5538 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
5539 - BUG/MINOR: debug: fix a small race in the thread dumping code
5540 - MINOR: wdt: also consider that waiting in the thread dumper is normal
5541 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
5542 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
5543 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
5544 - BUG/MINOR: ssl: fix ressource leaks on error
5545 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
5546 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
5547 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
5548 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
5549 - BUG/MINOR: stream-int: also update analysers timeouts on activity
5550 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
5551 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
5552 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
5553 - DOC: Add 'Question.md' issue template, discouraging asking questions
5554 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
5555 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
5556 - BUILD: travis-ci: enable daily Coverity scan
5557 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
5558 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
5559 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
5560 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
5561 - BUG/MINOR: mux-h2: always send stream window update before connection's
5562 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
5563 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
5564 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
5565 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
5566 - MINOR: cache: add method to cache hash
5567 - MINOR: cache: allow caching of OPTIONS request
5568 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
5569 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
5570 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
5571 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
5572 - CLEANUP: buffer: replace b_drop() with b_free()
5573 - CLEANUP: task: move the cpu_time field to the task-only part
5574 - MINOR: cli: add two new states to print messages on the CLI
5575 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
5576 - CLEANUP: cli: replace all occurrences of manual handling of return messages
5577 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
5578 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
5579 - BUG/MINOR: lua: fix setting netfilter mark
5580 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
5581 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
5582 - BUG/MINOR: stats: Wait the body before processing POST requests
5583 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
5584 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
5585 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
5586 - MINOR: debug: indicate the applet name when the task is task_run_applet()
5587 - MINOR: tools: add append_prefixed_str()
5588 - MINOR: lua: export applet and task handlers
5589 - MEDIUM: debug: make the thread dump code show Lua backtraces
5590 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
5591 - MINOR: list: add LIST_SPLICE() to merge one list into another
5592 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
5593 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
5594 - MINOR: sink: create definitions a minimal code for event sinks
5595 - MINOR: sink: add a support for file descriptors
5596 - MINOR: trace: start to create a new trace subsystem
5597 - MINOR: trace: add allocation of buffer-sized trace buffers
5598 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
5599 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
5600 - MINOR: trace/cli: add "show trace" to report trace state and statistics
5601 - MINOR: trace: implement a very basic trace() function
5602 - MINOR: trace: add the file name and line number in the prefix
5603 - MINOR: trace: make trace() now also take a level in argument
5604 - MINOR: trace: implement a call to a decode function
5605 - MINOR: trace: add per-level macros to produce traces
5606 - MINOR: trace: add a definition of typed arguments to trace()
5607 - MINOR: trace: make sure to always stop the locking when stopping or pausing
5608 - MINOR: trace: add the possibility to lock on some arguments
5609 - MINOR: trace: parse the "lock" argument to trace
5610 - MINOR: trace: retrieve useful pointers and enforce lock-on
5611 - DOC: management: document the "trace" and "show trace" commands
5612 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
5613 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
5614 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
5615 - DOC: fixed typo in management.txt
5616 - BUG/MINOR: mworker: disable SIGPROF on re-exec
5617 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
5618 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
5619 - MINOR: backend: Add srv_queue converter
5620 - MINOR: sink: set the fd-type sinks to non-blocking
5621 - MINOR: tools: add a function varint_bytes() to report the size of a varint
5622 - MINOR: buffer: add functions to read/write varints from/to buffers
5623 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
5624 - MINOR: sink: now call the generic fd write function
5625 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
5626 - MINOR: ring: add a ring_write() function
5627 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
5628 - MINOR: sink: add support for ring buffers
5629 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
5630 - MINOR: sink: now report the number of dropped events on output
5631 - MINOR: trace: support a default callback for the source
5632 - MINOR: trace: extend the source location to 13 chars
5633 - MINOR: trace: show thread number and source name in the trace
5634 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
5635 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
5636 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
5637 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
5638 - MINOR: trace: change the "payload" level to "data" and move it
5639 - MINOR: trace: prepend the function name for developer level traces
5640 - MINOR: trace: also report the trace level in the output
5641 - MINOR: trace: change the detail_level to per-source verbosity
5642 - MINOR: mux-h2/trace: register a new trace source with its events
5643 - MINOR: mux-h2/trace: add the default decoding callback
5644 - MEDIUM: mux-h2/trace: add lots of traces all over the code
5645 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
5646 - MINOR: mux-h2/trace: add a new verbosity level "clean"
5647 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
5648 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
5649 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
5650 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
5651 - CLEANUP: mux-h2/trace: lower-case event names
5652 - MINOR: trace: extend default event names to 12 chars
5653 - BUG/MINOR: ring: fix the way watchers are counted
5654 - MINOR: cli: extend the CLI context with a list and two offsets
5655 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
5656 - MEDIUM: ring: implement a wait mode for watchers
5657 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
5658 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
5659 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
5660 - CLEANUP: fd: remove leftovers of the fdcache
5661 - MINOR: fd: add a new "initialized" bit in the fdtab struct
5662 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
5663 - MEDIUM: log: use the new generic fd_write_frag_line() function
5664 - MINOR: log: add a target type instead of hacking the address family
5665 - MEDIUM: log: add support for logging to a ring buffer
5666 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
5667 - MINOR: build: add linux-glibc-legacy build TARGET
5668 - BUG/MEDIUM: peers: local peer socket not bound.
5669 - BUILD: connection: silence gcc warning with extra parentheses
5670 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
5671 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
5672 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
5673 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
5674 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
5675 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
5676 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
5677 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
5678 - MEDIUM: fd: remove the FD_EV_POLLED status bit
5679 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
5680 - MINOR: fd: make updt_fd_polling() a normal function
5681 - CONTRIB: debug: add new program "poll" to test poll() events
5682 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
5683 - BUG/MINOR: checks: start sending the request right after connect()
5684 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
5685 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
5686 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
5687 - BUILD: CI: add basic CentOS 6 cirrus build
5688 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
5689 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
5690 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
5691 - MEDIUM: fd: mark the FD as ready when it's inserted
5692 - MINOR: fd: add two new calls fd_cond_{recv,send}()
5693 - MEDIUM: connection: enable reading only once the connection is confirmed
5694 - MINOR: fd: add two flags ERR and SHUT to describe FD states
5695 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
5696 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
5697 - MINOR: stats: report the number of idle connections for each server
5698 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
5699 - BUILD/MINOR: auth: enabling for osx
5700 - BUG/MINOR: listener: Fix a possible null pointer dereference
5701 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
5702 - MINOR: stats: Add JSON export from the stats page
5703 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
5704 - MINOR: sample: Add UUID-fetch
5705 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
5706 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
5707 - BUG/MINOR: backend: Fix a possible null pointer dereference
5708 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
5709 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
5710 - BUILD: CI: temporarily disable ASAN
5711 - MINOR: htx: Add a flag on HTX message to report processing errors
5712 - MINOR: mux-h1: Report a processing error during output processing
5713 - MINOR: http-ana: Handle HTX errors first during message analysis
5714 - MINOR: http-ana: Remove err_state field from http_msg
5715 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
5716 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
5717 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
5718 - MINOR: istbuf: Add the function b_isteqi()
5719 - MINOR: log: Provide a function to emit a log for an application
5720 - MINOR: http: Add function to parse value of the header Status
5721 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
5722 - MINOR: h1-htx: Use the same function to copy message payload in all cases
5723 - MINOR: muxes/htx: Ignore pseudo header during message formatting
5724 - MINOR: fcgi: Add code related to FCGI protocol
5725 - MEDIUM: fcgi-app: Add FCGI application and filter
5726 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
5727 - MINOR: doc: Add documentation about the FastCGI support
5728 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
5729 - BUILD: CI: install golang-1.13 when building BoringSSL
5730 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
5731 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
5732 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
5733 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
5734 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
5735 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
5736 - MEDIUM: list: Separate "locked" list from regular list.
5737 - MINOR: mt_lists: Add new macroes.
5738 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
5739 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
5740 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
5741 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
5742 - TESTS: Add a stress-test for mt_lists.
5743 - BUILD: travis-ci: add PCRE2, SLZ build
5744 - BUG/MINOR: build: fix event ports (Solaris)
5745 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
5746 - OPTIM: listeners: use tasklets for the multi-queue rings
5747 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
5748 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
5749 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
5750 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
5751 - CLEANUP: task: remove impossible test
5752 - CLEANUP: task: cache the task_per_thread pointer
5753 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
5754 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
5755 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
5756 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
5757 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
5758 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
5759 - MINOR: h2/trace: report the frame type when known
5760 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
5761 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
5762 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
5763 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
5764 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
5765 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
5766 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
5767 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
5768 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
5769 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
5770 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
5771 - BUG/MEDIUM: spoe: Use a different engine-id per process
5772 - MINOR: spoe: Improve generation of the engine-id
5773 - MINOR: spoe: Support the async mode with several threads
5774 - MINOR: http: Add server name header from HTTP multiplexers
5775 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
5776 - MINOR: stats: Add the support of float fields in stats
5777 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
5778 - DOC: Fix documentation about the cli command to get resolver stats
5779 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
5780 - BUG/MINOR: stats: Add a missing break in a switch statement
5781 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
5782 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
5783 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
5784 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
5785 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
5786 - DOC: replace utf-8 quotes by ascii ones
5787 - BUG/MEDIUM: fd: HUP is an error only when write is active
5788 - BUG/MINOR: action: do-resolve does not yield on requests with body
5789 - Revert "MINOR: cache: allow caching of OPTIONS request"
5790
Willy Tarreaudb514072019-07-16 19:15:28 +020057912019/07/16 : 2.1-dev1
5792 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
5793 - DOC: this is a development branch again.
5794 - MEDIUM: Make 'block' directive fatal
5795 - MEDIUM: Make 'redispatch' directive fatal
5796 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
5797 - MEDIUM: Remove 'option independant-streams'
5798 - MINOR: sample: Add sha2([<bits>]) converter
5799 - MEDIUM: server: server-state global file stored in a tree
5800 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
5801 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
5802 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
5803 - MINOR: htx: Add the function htx_change_blk_value_len()
5804 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
5805 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
5806 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
5807 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
5808 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
5809 - BUILD: mworker: silence two printf format warnings around getpid()
5810 - BUILD: makefile: use :space: instead of digits to count commits
5811 - BUILD: makefile: adjust the sed expression of "make help" for solaris
5812 - BUILD: makefile: do not rely on shell substitutions to determine git version
5813 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
5814 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
5815 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
5816 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
5817 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
5818 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
5819 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
5820 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
5821 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
5822 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
5823 - BUG/MINOR: log: Detect missing sampling ranges in config
5824 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
5825 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
5826 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
5827 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
5828 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
5829 - BUG/MINOR: mworker/cli: don't output a \n before the response
5830 - BUG/MEDIUM: checks: unblock signals in external checks
5831 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
5832 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
5833 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
5834 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
5835 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
5836 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
5837 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
5838 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
5839 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
5840 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
5841 - BUG/MEDIUM: servers: Authorize tfo in default-server.
5842 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
5843 - MINOR: server: Add "no-tfo" option.
5844 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
5845 - MINOR: action: Add the return code ACT_RET_DONE for actions
5846 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
5847 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
5848 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
5849 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
5850 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
5851 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
5852 - DOC: contrib: spoa_server Add some hints for building spoa_server
5853 - DOC: Fix typo in intro.txt
5854 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
5855 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
5856 - MINOR: pools: release the pool's lock during the malloc/free calls
5857 - MINOR: pools: always pre-initialize allocated memory outside of the lock
5858 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
5859 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
5860 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
5861 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
5862 - BUG/MEDIUM: da: cast the chunk to string.
5863 - DOC: Fix typos and grammer in configuration.txt
5864 - CLEANUP: proto_tcp: Remove useless header inclusions.
5865 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
5866 - MINOR: task: introduce work lists
5867 - BUG/MAJOR: listener: fix thread safety in resume_listener()
5868 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
5869 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
5870 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
5871 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
5872 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
5873 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
5874 - MEDIUM: mworker-prog: Add user/group options to program section
5875 - REGTESTS: checks: tcp-check connect to multiple ports
5876 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
5877
Willy Tarreau9dc6b972019-06-16 21:49:47 +020058782019/06/16 : 2.1-dev0
5879 - exact copy of 2.0.0
5880
Willy Tarreauba236302019-06-16 20:00:26 +020058812019/06/16 : 2.0.0
5882 - MINOR: fd: Don't use atomic operations when it's not needed.
5883 - DOC: mworker-prog: documentation for the program section
5884 - MINOR: http: add a new "http-request replace-uri" action
5885 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
5886 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
5887 - MINOR: mworker: change formatting in uptime field of "show proc"
5888 - MINOR: mworker: add the HAProxy version in "show proc"
5889 - MINOR: doc: Remove -Ds option in man page
5890 - MINOR: doc: add master-worker in the man page
5891 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
5892 - BUILD: Silence gcc warning about unused return value
5893 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
5894 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
5895 - MINOR: doc: update the manpage and usage message about -S
5896 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
5897 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
5898 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
5899 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
5900 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
5901 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
5902 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
5903 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
5904 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
5905 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
5906 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
5907 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
5908 - MINOR: h2: Set flags about the request's scheme on the start-line
5909 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
5910 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
5911 - MEDIUM: server: server-state only rely on server name
5912 - CLEANUP: connection: rename the wait_event.task field to .tasklet
5913 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
5914 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
5915 - DOC: add some environment variables in section 2.3
5916 - BUILD: makefile: clarify the "help" output and list options
5917 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
5918 - BUG: tasks: fix bug introduced by latest scheduler cleanup
5919 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
5920 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
5921 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
5922 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
5923 - BUILD: makefile: further clarify the "help" output and list targets
5924 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
5925 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
5926 - DOC: update few references to the linux* targets and change them to linux-glibc
5927 - BUILD: makefile: detect and reject recently removed linux targets
5928 - BUILD: makefile: enable linux namespaces by default on linux
5929 - BUILD: makefile: enable TFO on linux platforms
5930 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
5931 - DOC: small updates to the CONTRIBUTING file
5932 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
5933 - CLEANUP: removed obsolete examples an move a few to better places
5934 - DOC: Fix typos in CONTRIBUTING
5935 - DOC: update the outdated ROADMAP file
5936 - DOC: create a BRANCHES file to explain the life cycle
5937 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
5938 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
5939 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
5940 - BUILD: tools: work around an internal compiler bug in gcc-3.4
5941 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
5942 - BUILD: makefile: enable USE_RT on Solaris
5943 - BUILD: makefile: do not use echo -n
5944 - DOC: mention a few common build errors in the INSTALL file
5945
Willy Tarreauca3551f2019-06-11 19:28:00 +020059462019/06/11 : 2.0-dev7
5947 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
5948 - MINOR: tools: add new bitmap manipulation functions
5949 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
5950 - MINOR: chunks: Make sure trash_size is only set once.
5951 - Revert "MINOR: chunks: Make sure trash_size is only set once."
5952 - MINOR: threads: serialize threads initialization
5953 - MINOR peers: data structure simplifications for server names dictionary cache.
5954 - DOC: peers: Update for dictionary cache entries for peers protocol.
5955 - MINOR: dict: Store the length of the dictionary entries.
5956 - MINOR: peers: A bit of optimization when encoding cached server names.
5957 - MINOR: peers: Optimization for dictionary cache lookup.
5958 - MEDIUM: tools: improve time format error detection
5959 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
5960 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
5961 - MINOR: threads: avoid clearing harmless twice in thread_release()
5962 - MEDIUM: threads: add thread_sync_release() to synchronize steps
5963 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
5964 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
5965 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
5966 - MEDIUM: init/threads: don't use spinlocks during the init phase
5967 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
5968 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
5969 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
5970 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
5971 - MINOR: htx: Add the function htx_move_blk_before()
5972 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
5973 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
5974 - MINOR: http: turn default error files to HTTP/1.1
5975 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
5976 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
5977 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
5978 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
5979 - MINOR: contrib/spoa_server: Add random IP score
5980 - DOC/MINOR: contrib/spoa_server: Fix typo in README
5981
Willy Tarreaub57f1092019-06-07 06:12:59 +020059822019/06/07 : 2.0-dev6
5983 - BUG/MEDIUM: connection: fix multiple handshake polling issues
5984 - MINOR: connection: also stop receiving after a SOCKS4 response
5985 - MINOR: mux-h1: don't try to recv() before the connection is ready
5986 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
5987 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
5988 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
5989 - CONTRIB: debug: add 4 missing connection/conn_stream flags
5990 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
5991 - MINOR: server: increase the default pool-purge-delay to 5 seconds
5992 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
5993 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
5994 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
5995 - BUILD: task: fix a build warning when threads are disabled
5996 - CLEANUP: peers: Remove tabs characters.
5997 - CLEANUP: peers: Replace hard-coded values by macros.
5998 - BUG/MINOR: peers: Wrong stick-table update message building.
5999 - MINOR: dict: Add dictionary new data structure.
6000 - MINOR: peers: Add a LRU cache implementation for dictionaries.
6001 - MINOR: stick-table: Add "server_name" new data type.
6002 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
6003 - MINOR: proxy: Add a "server by name" tree to proxy.
6004 - MINOR: server: Add a dictionary for server names.
6005 - MINOR: stream: Stickiness server lookup by name.
6006 - MINOR: peers: Make peers protocol support new "server_name" data type.
6007 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
6008 - REGTEST: Add a basic server by name stickiness reg test.
6009 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
6010 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
6011 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
6012 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
6013 - BUILD: travis-ci improvements
6014 - MINOR: SSL: add client/server random sample fetches
6015 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
6016 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
6017 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
6018 - MEDIUM: mux-h1: refactor output processing
6019 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
6020 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
6021 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
6022 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
6023 - MEDIUM: htx: Add the parsing of trailers of chunked messages
6024 - MINOR: htx: Don't use end-of-data blocks anymore
6025 - BUG/MINOR: mux-h1: Don't send more data than expected
6026 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
6027 - BUG/MINOR: peers: Wrong "server_name" decoding.
6028 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
6029 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
6030 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
6031 - MEDIUM: ssl: Handle subscribe by itself.
6032 - MINOR: ssl: Make ssl_sock_handshake() static.
6033 - MINOR: connections: Add a new xprt method, remove_xprt.
6034 - MINOR: connections: Add a new xprt method, add_xprt().
6035 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
6036 - MEDIUM: connections: Remove CONN_FL_SOCK*
6037 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
6038 - BUG/MINOR: peers: Wrong server name parsing.
6039 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
6040 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
6041 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
6042 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
6043 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
6044 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
6045 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
6046 - MEDIUM: stream: re-arrange the connection setup status reporting
6047 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
6048 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
6049 - MEDIUM: stream: rearrange the events to remove the loop
6050 - MEDIUM: stream: only loop on flags relevant to the analysers
6051 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
6052 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
6053 - BUILD: peers: fix a build warning about an incorrect intiialization
6054 - BUG/MINOR: time: make sure only one thread sets global_now at boot
6055 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
6056
Willy Tarreauabc874e2019-06-02 12:06:08 +020060572019/06/02 : 2.0-dev5
6058 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
6059 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
6060 - BUILD: watchdog: condition it to USE_RT
6061 - MINOR: raw_sock: report global traffic statistics
6062 - MINOR: stats: report the global output bit rate in human readable form
6063 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
6064 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
6065 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
6066 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
6067 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
6068 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
6069 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
6070 - DOC: fix typos
6071 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
6072 - OPTIM: freq-ctr: don't take the date lock for most updates
6073 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
6074 - CLEANUP: debug: remove the TRACE() macro
6075 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
6076 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
6077 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
6078 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
6079 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
6080 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
6081 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
6082 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
6083 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
6084 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
6085 - BUILD: ssl: fix latest LibreSSL reg-test error
6086 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
6087 - MINOR: cli/activity: add 3 general purpose counters in development mode
6088 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
6089 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
6090 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
6091 - MEDIUM: config: now alert when two servers have the same name
6092 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
6093 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
6094 - MINOR: htx: Store the head position instead of the wrap one
6095 - MINOR: htx: Store start-line block's position instead of address of its payload
6096 - MINOR: htx: Add functions to get the first block of an HTX message
6097 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
6098 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
6099 - CLEANUP: htx: Remove unused function htx_get_stline()
6100 - MINOR: http/htx: Use sl_pos directly to replace the start-line
6101 - MEDIUM: http/htx: Perform analysis relatively to the first block
6102 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
6103 - MINOR: htx: Add function htx_get_max_blksz()
6104 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
6105 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
6106 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
6107 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
6108 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
6109 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
6110 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
6111 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
6112 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
6113 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
6114 - MEDIUM: htx: 1xx messages are now part of the final reponses
6115 - MINOR: channel/htx: Add function to forward headers of an HTX message
6116 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
6117 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
6118 - MEDIUM: htx: Store the first block position instead of the start-line one
6119 - MINOR: stats/htx: don't use the first block position but the head one
6120 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
6121 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
6122 - MEDIUM: filters/htx: Filter body relatively to the first block
6123 - MINOR: htx: Optimize htx_drain() when all data are drained
6124 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
6125 - MINOR: htx: remove the unused function htx_find_blk()
6126 - MINOR: htx: Remove support of pseudo headers because it is unused
6127 - BUG/MEDIUM: http: fix "http-request reject" when not final
6128 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
6129 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
6130 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
6131 - MINOR: htx: make htx_add_data() return the transmitted byte count
6132 - MEDIUM: htx: make htx_add_data() never defragment the buffer
6133 - MINOR: activity: write totals on the "show activity" output
6134 - MINOR: activity: report totals and average separately
6135 - MEDIUM: poller: separate the wait time from the wake events
6136 - MINOR: activity: report the number of failed pool/buffer allocations
6137 - MEDIUM: buffers: relax the buffer lock a little bit
6138 - MINOR: task: turn the WQ lock to an RW_LOCK
6139 - MEDIUM: task: don't grab the WR lock just to check the WQ
6140 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
6141 - MEDIUM: sessions: Introduce session flags.
6142 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
6143 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
6144 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
6145 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
6146 - MEDIUM: tasks: Get rid of active_tasks_mask.
6147 - MEDIUM: connection: Upstream SOCKS4 proxy support
6148 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
6149 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
6150
Willy Tarreau56740692019-05-22 20:48:33 +020061512019/05/22 : 2.0-dev4
6152 - BUILD: enable freebsd builds on cirrus-ci
6153 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
6154 - MEDIUM: Make 'option forceclose' actually warn
6155 - MEDIUM: Make 'resolution_pool_size' directive fatal
6156 - DOC: management: place "show activity" at the right place
6157 - MINOR: cli/activity: show the dumping thread ID starting at 1
6158 - MINOR: task: export global_task_mask
6159 - MINOR: cli/debug: add a thread dump function
6160 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
6161 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
6162 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
6163 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
6164 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
6165 - BUG/MINOR: debug: don't check the call date on tasklets
6166 - MINOR: thread: implement ha_thread_relax()
6167 - MINOR: task: put barriers after each write to curr_task
6168 - MINOR: task: always reset curr_task when freeing a task or tasklet
6169 - MINOR: stream: detach the stream from its own task on stream_free()
6170 - MEDIUM: debug/threads: implement an advanced thread dump system
6171 - REGTEST: extend the check duration on tls_health_checks and mark it slow
6172 - DOC: fix "successful" typo
6173 - MINOR: init: setenv HAPROXY_CFGFILES
6174 - MINOR: threads/init: synchronize the threads startup
6175 - MEDIUM: init/mworker: make the pipe register function a regular initcall
6176 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
6177 - CLEANUP: threads: remove the now unused START_LOCK label
6178 - MINOR: init/threads: make the global threads an array of structs
6179 - MINOR: threads: add each thread's clockid into the global thread_info
6180 - CLEANUP: stream: remove an obsolete debugging test
6181 - MINOR: tools: add dump_hex()
6182 - MINOR: debug: implement ha_panic()
6183 - MINOR: debug/cli: add some debugging commands for developers
6184 - MINOR: tools: provide a may_access() function and make dump_hex() use it
6185 - MINOR: debug: make ha_panic() report threads starting at 1
6186 - REORG: compat: move some integer limit definitions from standard.h to compat.h
6187 - REORG: threads: move the struct thread_info from global.h to hathreads.h
6188 - MINOR: compat: make sure to always define clockid_t
6189 - MINOR: threads: always place the clockid in the struct thread_info
6190 - MINOR: threads: add a thread-local thread_info pointer "ti"
6191 - MINOR: time: move the cpu, mono, and idle time to thread_info
6192 - MINOR: time: add a function to retrieve another thread's cputime
6193 - MINOR: debug: report each thread's cpu usage in "show thread"
6194 - BUILD: threads: only assign the clock_id when supported
6195 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
6196 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
6197 - MAJOR: polling: add event ports support (Solaris)
6198 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
6199 - CLEANUP: time: refine the test on _POSIX_TIMERS
6200 - MINOR: compat: define a new empty type empty_t for non-implemented fields
6201 - CLEANUP: time: switch clockid_t to empty_t when not available
6202 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
6203 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
6204 - MINOR: debug: switch to SIGURG for thread dumps
6205 - CLEANUP: threads: really move thread_info to hathreads.c
6206 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
6207 - CLEANUP: debug: always report harmless/want_rdv even without threads
6208 - MINOR: threads: implement ha_tkill() and ha_tkillall()
6209 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
6210 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
6211 - MINOR: debug: dump streams when an applet, iocb or stream is known
6212 - MINOR: threads: add a "stuck" flag to the thread_info struct
6213 - MINOR: threads: add a timer_t per thread in thread_info
6214 - MAJOR: watchdog: implement a thread lockup detection mechanism
6215 - MINOR: stream: remove the cpu time detection from process_stream()
6216 - MINOR: connection: report the mux names in "haproxy -vv"
6217 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
6218 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
6219 - MINOR: WURFL: call header_retireve_callback() in dummy library
6220 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
6221 - MINOR: WURFL: shows log messages during module initialization
6222 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
6223 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
6224 - MEDIUM: WURFL: HTX awareness.
6225 - MINOR: WURFL: module version bump to 2.0
6226 - MINOR: WURFL: do not emit warnings when not configured
6227 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
6228 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
6229 - BUILD: travis: add sanitizers to travis-ci builds
6230 - BUILD: time: remove the test on _POSIX_C_SOURCE
6231 - CLEANUP: build: rename some build macros to use the USE_* ones
6232 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
6233 - BUG/MEDIUM: dns: make the port numbers unsigned
6234 - MEDIUM: config: deprecate the antique req* and rsp* commands
6235
Willy Tarreaua257a9b2019-05-15 16:51:48 +020062362019/05/15 : 2.0-dev3
6237 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
6238 - CLEANUP: peers: remove useless annoying tabulations.
6239 - CLEANUP: peers: replace timeout constants by macros.
6240 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
6241 - DOC: The option httplog is no longer valid in a backend.
6242 - DOC: peers: Peers protocol documentation update.
6243 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
6244 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
6245 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
6246 - BUILD: Makefile: remove outdated support for dlmalloc
6247 - BUILD: Makefile: consider a variable's origin and not its value for the options list
6248 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
6249 - BUILD: Makefile: shorten default settings declaration
6250 - BUILD: Makefile: clean up the target declarations
6251 - BUILD: report the whole feature set with their status in haproxy -vv
6252 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
6253 - REGTEST: script: make the script use the new features list
6254 - REGTEST: script: remove platform-specific assigments of OPTIONS
6255 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
6256 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
6257 - BUILD/MINOR: listener: Silent a few signedness warnings.
6258 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
6259 - BUG/MEDIUM: mworker: don't free the wrong child when not found
6260 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
6261 - BUG/MAJOR: checks: segfault during tcpcheck_main
6262 - BUILD: makefile: work around an old bug in GNU make-3.80
6263 - BUILD: makefile: work around another bug in make 3.80
6264 - BUILD: http: properly mark some struct as extern
6265 - BUILD: chunk: properly declare pool_head_trash as extern
6266 - BUILD: cache: avoid a build warning with some compilers/linkers
6267 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
6268 - MINOR: tools: add an unsetenv() implementation
6269 - BUILD: re-implement an initcall variant without using executable sections
6270 - BUILD: use inttypes.h instead of stdint.h
6271 - BUILD: connection: fix naming of ip_v field
6272 - BUILD: makefile: fix build of IPv6 header on aix51
6273 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
6274 - BUILD: define unsetenv on AIX 5.1
6275 - BUILD: Makefile: disable shared cache on AIX 5.1
6276 - MINOR: ssl: Add aes_gcm_dec converter
6277 - REORG: mworker: move serializing functions to mworker.c
6278 - REORG: mworker: move signals functions to mworker.c
6279 - REORG: mworker: move IPC functions to mworker.c
6280 - REORG: mworker: move signal handlers and related functions
6281 - REORG: mworker: move mworker_cleanlisteners to mworker.c
6282 - MINOR: mworker: calloc mworker_proc structures
6283 - MINOR: mworker: don't use children variable anymore
6284 - MINOR: cli: export cli_parse_default() definition in cli.h
6285 - REORG: mworker/cli: move CLI functions to mworker.c
6286 - MEDIUM: mworker-prog: implement program for master-worker
6287 - MINOR: mworker/cli: show programs in 'show proc'
6288 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
6289 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
6290 - MINOR: cli: export HAPROXY_CLI environment variable
6291 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
6292 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
6293 - REGTEST: http-capture/h00000: Relax a regex matching the log message
6294 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
6295 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
6296 - REGTEST: log/b00000: Be sure the client always hits its timeout
6297 - REGTEST: lua/b00003: Relax the regex matching the log message
6298 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
6299 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
6300 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
6301 - BUG/MEDIUM: htx: fix random premature abort of data transfers
6302 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
6303 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
6304 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
6305 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
6306 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
6307 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
6308 - MINOR: skip get_gmtime where tm is unused
6309 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
6310 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
6311 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
6312 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
6313 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
6314 - BUG/MINOR: listener: renice the accept ring processing task
6315 - MINOR: cli/listener: report the number of accepts on "show activity"
6316 - MINOR: cli/activity: report the accept queue sizes in "show activity"
6317 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
6318 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
6319 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
6320 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
6321 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
6322 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
6323 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
6324 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
6325 - MINOR: mux-h1: Simplify handling of 1xx responses
6326 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
6327 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
6328 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
6329 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
6330 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
6331 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
6332 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
6333 - MINOR: stream: Set a flag when the stream uses the HTX
6334 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
6335 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
6336 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
6337 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
6338 - MEDIUM: muxes: Add an optional input buffer during mux initialization
6339 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
6340 - MEDIUM: muxes: Be prepared to don't own connection during the release
6341 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
6342 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
6343 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
6344 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
6345 - MAJOR: htx: Enable the HTX mode by default for all proxies
6346 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
6347 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
6348 - CLEANUP: task: do not export rq_next anymore
6349 - MEDIUM: tasks: improve fairness between the local and global queues
6350 - MEDIUM: tasks: only base the nice offset on the run queue depth
6351 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
6352 - BUG/MEDIUM: map: Fix memory leak in the map converter
6353 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
6354 - BUILD: task/thread: fix single-threaded build of task.c
6355 - BUILD: cli/threads: fix build in single-threaded mode
6356 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
6357 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
6358 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
6359 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
6360 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
6361 - BUILD: address a few cases of "static <type> inline foo()"
6362 - BUILD: do not specify "const" on functions returning structs or scalars
6363 - BUILD: htx: fix a used uninitialized warning on is_cookie2
6364 - MINOR: peers: Add a new command to the CLI for peers.
6365 - DOC: update for "show peers" CLI command.
6366 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
6367 - MEDIUM: mworker: store the leaving state of a process
6368 - MEDIUM: mworker-prog: implements 'option start-on-reload'
6369 - CLEANUP: mworker: remove the type field in mworker_proc
6370 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
6371 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
6372 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
6373 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
6374 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
6375 - BUG/MINOR: mworker: mworker_kill should apply on every children
6376 - BUG/MINOR: mworker: don't exit with an ambiguous value
6377 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
6378 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
6379 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
6380 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
6381 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
6382 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
6383 - MINOR: mux-h1: Handle read0 during TCP splicing
6384 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
6385 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
6386 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
6387 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
6388 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
6389 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
6390 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
6391 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
6392 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
6393 - BUG/MEDIUM: applets: Don't use task_in_rq().
6394 - BUG/MAJOR: task: make sure never to delete a queued task
6395 - MINOR: task/thread: factor out a wake-up condition
6396 - CLEANUP: task: remain consistent when using the task's handler
6397 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
6398 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
6399 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
6400 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
6401 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
6402 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
6403 - BUG/MINOR: mworker: disable busy polling in the master process
6404 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
6405 - MEDIUM: ssl: Give ssl_sock its own context.
6406 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
6407 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
6408 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
6409 - MEDIUM: ssl: provide our own BIO.
6410 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
6411 - MINOR: peers: adds counters on show peers about tasks calls.
6412 - MEDIUM: enable travis-ci builds
6413 - MINOR: fd: Add a counter of used fds.
6414 - MEDIUM: connections: Add a way to control the number of idling connections.
6415 - BUG/MEDIUM: maps: only try to parse the default value when it's present
6416 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
6417 - REGTEST: Missing REQUIRE_VERSION declarations.
6418 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
6419 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
6420 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
6421 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
6422 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
6423 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
6424 - MINOR: gcc: Fix a silly gcc warning in connect_server()
6425 - MINOR: ssl/cli: async fd io-handlers printable on show fd
6426 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
6427 - BUILD: add USE_WURFL to the list of known build options
6428 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
6429 - BUILD: wurfl: build fix for 1.9/2.0 code base
6430 - CLEANUP: wurfl: removed deprecated methods
6431 - DOC: wurfl: added point of contact in MAINTAINERS file
6432 - MINOR: wurfl: enabled multithreading mode
6433 - MINOR: contrib: dummy wurfl library
6434 - MINOR: dns: dns_requester structures are now in a memory pool
6435 - MINOR: dns: move callback affection in dns_link_resolution()
6436 - MINOR: obj_type: new object type for struct stream
6437 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
6438 - MINOR: log: Extract some code to send syslog messages.
6439 - REGTEST: replace LEVEL option by a more human readable one.
6440 - REGTEST: rename the reg test files.
6441 - REGTEST: adapt some reg tests after renaming.
6442 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
6443 - BUG/MAJOR: stream: Missing DNS context initializations.
6444 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
6445 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
6446 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
6447 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
6448 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
6449 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
6450 - CLEANUP: task: report calls as unsigned in show sess
6451 - MINOR: tasks/activity: report the context switch and task wakeup rates
6452 - MINOR: stream: measure and report a stream's call rate in "show sess"
6453 - MINOR: applet: measure and report an appctx's call rate in "show sess"
6454 - BUILD: extend Travis CI config to support more platforms
6455 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
6456 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
6457 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
6458 - BUILD: travis: remove the "allow_failures" entry
6459 - BUG/MINOR: activity: always initialize the profiling variable
6460 - MINOR: activity: make the profiling status per thread and not global
6461 - MINOR: activity: enable automatic profiling turn on/off
6462 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
6463 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
6464 - MINOR: connection: make the debugging helper functions safer
6465 - MINOR: stream/debug: make a stream dump and crash function
6466 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
6467 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
6468 - MEDIUM: streams: measure processing time and abort when detecting bugs
6469 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
6470 - MEDIUM: da: HTX mode support.
6471 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
6472 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
6473 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
6474 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
6475 - DOC: contrib/modsecurity: Typos and fix the reject example
6476 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
6477 - MINOR: log: Add "sample" new keyword to "log" lines.
6478 - MINOR: log: Enable the log sampling and load-balancing feature.
6479 - DOC: log: Document the sampling and load-balancing logging feature.
6480 - REGTEST: Add a new reg test for log load-balancing feature.
6481 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
6482 - REGTEST: Make this reg test be Linux specific.
6483 - CLEANUP: task: move the task_per_thread definition to task.h
6484 - MINOR: activity: report context switch counts instead of rates
6485 - MINOR: threads: Implement HA_ATOMIC_LOAD().
6486 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
6487 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
6488 - MINOR: config: Test validity of tune.maxaccept during the config parsing
6489 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
6490 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
6491 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
6492 - BUG/MINOR: haproxy: fix rule->file memory leak
6493 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
6494 - BUG/MINOR: checks: free memory allocated for tasklets
6495 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
6496 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
6497 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
6498 - MINOR: threads: flatten the per-thread cpu-map
6499 - MINOR: init/threads: remove the useless tids[] array
6500 - MINOR: init/threads: make the threads array global
6501 - BUG/MEDIUM: ssl: Use the early_data API the right way.
6502 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
6503 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
6504 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
6505 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
6506 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
6507 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
6508 - BUG/MINOR: logs/threads: properly split the log area upon startup
6509 - BUILD: extend travis-ci matrix
6510 - CLEANUP: Remove appsession documentation
6511 - DOC: Fix typo in keyword matrix
6512 - BUILD: remove "build_libressl" duplicate declaration
6513 - BUILD: travis-ci: get back to osx without openssl support
6514 - BUILD: enable several LibreSSL hacks, including
6515 - BUILD: temporarily mark LibreSSL builds as allowed to fail
6516 - BUILD: travis: TMPDIR replacement.
6517 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
6518 - MINOR: doc: Document allow-0rtt on the server line.
6519 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
6520 - MEDIUM: proto: Change the prototype of the connect() method.
6521 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
6522 - MINOR: config: Extract the code of "stick-table" line parsing.
6523 - BUILD/MINOR: stick-table: Compilation fix.
6524 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
6525 - MINOR: stick-tables: Add peers process binding computing.
6526 - MINOR: stick-table: Add prefixes to stick-table names.
6527 - MINOR: peers: Do not emit global stick-table names.
6528 - DOC: Update for "table" lines in "peers" section.
6529 - REGTEST: Add reg tests for "table" lines in "peers" sections.
6530 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
6531 - REGTEST: make the tls_health_checks test much faster
6532 - REGTEST: make the "table in peers" test require v2.0
6533 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
6534 - BUG/MEDIUM: h2/htx: always fail on too large trailers
6535 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
6536 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
6537 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
6538 - REGTEST: Flag some slow reg tests.
6539 - REGTEST: Reg tests file renaming.
6540 - REGTEST: Wrong renaming for one reg test.
6541 - REGTEST: Wrong assumption in IP:port logging test.
6542 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
6543 - MINOR: systemd: Use the variables from /etc/default/haproxy
6544 - MINOR: systemd: Make use of master socket in systemd unit
6545 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
6546 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
6547 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
6548 - CLEANUP: task: remove unneeded tests before task_destroy()
6549 - MINOR: mworker: support a configurable maximum number of reloads
6550 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
6551 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
6552 - BUG/MINOR: mux-h1: Fix the parsing of trailers
6553 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
6554 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
6555 - MINOR: htx: Don't try to append a trailer block with the previous one
6556 - MINOR: htx: Remove support for unused OOB HTX blocks
6557 - BUILD: travis-ci bugfixes and improvements
6558 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
6559 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
6560 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
6561 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
6562 - BUILD: ssl: make libressl use its own version numbers
6563 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
6564 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
6565 - BUILD: ssl: fix libressl build again after aes-gcm-enc
6566 - REORG: ssl: move openssl-compat from proto to common
6567 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
6568 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
6569 - CLEANUP: ssl: make inclusion of openssl headers safe
6570 - BUILD: add BoringSSL to travis-ci build matrix
6571 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
6572 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
6573 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
6574 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
6575 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
6576 - MEDIUM: streams: Add a new http action, disable-l7-retry.
6577 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
6578 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
6579 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
6580 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
6581 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
6582 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
6583 - BUILD: threads: fix again the __ha_cas_dw() definition
6584 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
6585 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
6586 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
6587 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
6588 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
6589 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
6590 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
6591 - BUG/MAJOR: ssl: segfault upon an heartbeat request
6592 - MINOR: spoa-server: Clone the v1.7 spoa-example project
6593 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
6594 - MINOR: spoa-server: Externalise debug functions
6595 - MINOR: spoe-server: rename "worker" functions
6596 - MINOR: spoa-server: Replace the thread init system by processes
6597 - MINOR: spoa-server: With debug mode, start only one process
6598 - MINOR: spoa-server: Allow registering external processes
6599 - MINOR: spoa-server: Allow registering message processors
6600 - MINOR: spoa-server: Load files
6601 - MINOR: spoa-server: Prepare responses
6602 - MINOR: spoa-server: Execute registered callbacks
6603 - MINOR: spoa-server: Add Lua processing
6604 - MINOR: spoa-server: Add python
6605 - MINOR/DOC: spoe-server: Add documentation
6606 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
6607 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
6608 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
6609 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
6610 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
6611 - CLEANUP: connection: remove the handle field from the wait_event struct
6612 - BUG/MINOR: log: Wrong log format initialization.
6613 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
6614 - BUG/MINOR: mworker: use after free when the PID not assigned
6615 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
6616 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
6617 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
6618 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
6619 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
6620 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
6621 - MINOR: mux-h2: add macros to check multiple stream states at once
6622 - MINOR: mux-h2: stop relying on CS_FL_REOS
6623 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
6624 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
6625 - MINOR: debug: add a new BUG_ON macro
6626 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
6627 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
6628 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
6629 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
6630
Willy Tarreau6e893b92019-03-26 05:40:51 +010066312019/03/26 : 2.0-dev2
6632 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
6633 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
6634 - MINOR: lists: Implement locked variations.
6635 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
6636 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
6637 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
6638 - MINOR: cfgparse: Add a cast to make gcc happier.
6639 - BUG/MEDIUM: standard: Wrong reallocation size.
6640 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
6641 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
6642 - MAJOR: config: disable support for nbproc and nbthread in parallel
6643 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
6644 - MAJOR: listener: do not hold the listener lock in listener_accept()
6645 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
6646 - MINOR: tools: implement functions to look up the nth bit set in a mask
6647 - MINOR: listener: pre-compute some thread counts per bind_conf
6648 - MINOR: listener: implement multi-queue accept for threads
6649 - MAJOR: listener: use the multi-queue for multi-thread listeners
6650 - MINOR: activity: add accept queue counters for pushed and overflows
6651 - MINOR: config: add global tune.listener.multi-queue setting
6652 - MAJOR: threads: enable one thread per CPU by default
6653 - DOC: update management.txt to reflect that threads are used by default
6654 - BUG/MINOR: config: don't over-count the global maxsock value
6655 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
6656 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
6657 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
6658 - MINOR: list: make the delete and pop operations idempotent
6659 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
6660 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
6661 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
6662 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
6663 - MINOR: listener: introduce listener_backlog() to report the backlog value
6664 - MINOR: listener: do not needlessly set l->maxconn
6665 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
6666 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
6667 - MINOR: peers: Add a message for heartbeat.
6668 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
6669 - BUG/MINOR: init: never lower rlim_fd_max
6670 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
6671 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
6672 - MINOR: init: make the maxpipe computation more accurate
6673 - MINOR: init: move some maxsock updates earlier
6674 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
6675 - REGTEST: fix a spurious "nbthread 4" in the connection test
6676 - DOC: update the text related to the global maxconn value
6677 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
6678 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
6679 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
6680 - MINOR: htx: unconditionally handle parsing errors in requests or responses
6681 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
6682 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
6683 - MINOR: sample: Code factorization "ungrpc" converter.
6684 - MINOR: sample: Rework gRPC converter code.
6685 - CLEANUP: wurfl: remove dead, broken and unmaintained code
6686 - MINOR: config: relax the range checks on cpu-map
6687 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
6688 - MINOR: sample: Extract some protocol buffers specific code.
6689 - DOC: Remove tabs and fixed punctuation.
6690 - MINOR: sample: Add a protocol buffers specific converter.
6691 - REGTEST: Peers reg tests.
6692 - REGTEST: Enable reg tests with HEAD HTTP method usage.
6693 - MINOR: lists: add a LIST_DEL_INIT() macro
6694 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
6695 - MINOR: listener: improve incoming traffic distribution
6696 - MINOR: tools: implement my_flsl()
6697 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
6698 - CLEANUP: listener: remove old thread bit mapping
6699 - MINOR: listener: move thr_idx from the bind_conf to the listener
6700 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
6701 - BUG/MAJOR: config: Wrong maxconn adjustment.
6702 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
6703 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
6704 - MINOR: fd: Remove debugging code.
6705 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
6706 - MINOR: threads: Implement __ha_barrier_atomic*.
6707 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
6708 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
6709 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
6710 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
6711 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
6712 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
6713 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
6714 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
6715 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
6716 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
6717 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
6718 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
6719 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
6720 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
6721 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
6722 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
6723 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
6724 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
6725 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
6726 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
6727 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
6728 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
6729 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
6730 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
6731 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
6732 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
6733 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
6734 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
6735 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
6736 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
6737 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
6738 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
6739 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
6740 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
6741 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
6742 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
6743 - MEDIUM: list: Remove useless barriers.
6744 - MEDIUM: list: Use _HA_ATOMIC_*
6745 - MEDIUM: connections: Use _HA_ATOMIC_*
6746 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
6747 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
6748 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
6749 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
6750 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
6751 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
6752 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
6753 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
6754 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
6755 - MINOR: stats: Move stuff about the stats status codes in stats files
6756 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
6757 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
6758 - BUILD: listener: shut up a build warning when threads are disabled
6759 - BUILD: Makefile: allow the reg-tests target to be verbose
6760 - BUILD: Makefile: resolve LEVEL before calling run-regtests
6761 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
6762 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
6763 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
6764 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
6765 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
6766 - MINOR: muxes: Report the Last read with a dedicated flag
6767 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
6768 - BUILD: tools: fix a build warning on some 32-bit archs
6769 - MINOR: init: report the list of optionally available services
6770 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
6771 - BUG/MINOR: cache: Fully consume large requests in the cache applet
6772 - BUG/MINOR: stats: Fully consume large requests in the stats applet
6773 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
6774 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
6775 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
6776 - MINOR: stats/cache: Handle the header Expect when applets are registered
6777 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
6778 - CLEANUP: cache: don't export http_cache_applet anymore
6779 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
6780 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
6781 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
6782 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
6783 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
6784 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
6785 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
6786 - CLEANUP: mux-h2: add some comments to help understand the code
6787 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
6788 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
6789 - BUG/MEDIUM: h2: Try to be fair when sending data.
6790 - BUG/MINOR: proto-http: Don't forward request body anymore on error
6791 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
6792 - MINOR: connection: and new flag to mark end of input (EOI)
6793 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
6794 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
6795 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
6796 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
6797 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
6798 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
6799 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
6800 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
6801 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
6802 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
6803 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
6804 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
6805 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
6806 - CONTRIB: debug: report the CS and CF's EOI flags
6807 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
6808
Willy Tarreau6c1b6672019-02-26 16:43:49 +010068092019/02/26 : 2.0-dev1
6810 - MINOR: mux-h2: only increase the connection window with the first update
6811 - REGTESTS: remove the expected window updates from H2 handshakes
6812 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
6813 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
6814 - MEDIUM: mux-h2: remove padlen during headers phase
6815 - MINOR: h2: add a bit-based frame type representation
6816 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
6817 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
6818 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
6819 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
6820 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
6821 - MINOR: buffers: add a new b_move() function
6822 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
6823 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
6824 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
6825 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
6826 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
6827 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
6828 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
6829 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
6830 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
6831 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
6832 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
6833 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
6834 - MEDIUM: servers: Be smarter when switching connections.
6835 - MEDIUM: sessions: Keep track of which connections are idle.
6836 - MINOR: payload: add sample fetch for TLS ALPN
6837 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
6838 - MINOR: channel: Add the function channel_add_input
6839 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
6840 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
6841 - BUG/MAJOR: htx: Return the good block address after a defrag
6842 - MINOR: lb: allow redispatch when using consistent hash
6843 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
6844 - BUG/MEDIUM: mux-h2: always restart reading if data are available
6845 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
6846 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
6847 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
6848 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
6849 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
6850 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
6851 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
6852 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
6853 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
6854 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
6855 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
6856 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
6857 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
6858 - MINOR: mux-h2: remove a misleading and impossible test
6859 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
6860 - MINOR: mux-h2: check for too many streams only for idle streams
6861 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
6862 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
6863 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
6864 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
6865 - MINOR: htx: add a new function to add a block without filling it
6866 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
6867 - MEDIUM: mux-h2: pass trailers to HTX
6868 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
6869 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
6870 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
6871 - MINOR: h1: make the H1 headers block parser able to parse headers only
6872 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
6873 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
6874 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
6875 - MINOR: mux-h1: Add the subscription events in "show fd" command
6876 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
6877 - BUG/MINOR: cache/htx: Be sure to count partial trailers
6878 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
6879 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
6880 - MINOR: connections: Remove a stall comment.
6881 - BUG/MEDIUM: cli: make "show sess" really thread-safe
6882 - BUILD: add a new file "version.c" to carry version updates
6883 - MINOR: stream/htx: add the HTX flags output in "show sess all"
6884 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
6885 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
6886 - BUG/MINOR: lua: bad args are returned for Lua actions
6887 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
6888 - MINOR: htx: Add an helper function to get the max space usable for a block
6889 - MINOR: channel/htx: Add HTX version for some helper functions
6890 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
6891 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
6892 - DOC: regtest: make it clearer what the purpose of the "broken" series is
6893 - REGTEST: mailers: add new test for 'mailers' section
6894 - REGTEST: Add a reg test for health-checks over SSL/TLS.
6895 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
6896 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
6897 - BUG/MINOR: compression: Disable it if another one is already in progress
6898 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
6899 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
6900 - REGTEST: Add some informatoin to test results.
6901 - MINOR: htx: Add a function to truncate all blocks after a specific offset
6902 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
6903 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
6904 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
6905 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
6906 - DOC: http-request cache-use / http-response cache-store expects cache name
6907 - REGTEST: "capture (request|response)" regtest.
6908 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
6909 - REGTEST: filters: add compression test
6910 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
6911 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
6912 - DOC: Be a bit more explicit about allow-0rtt security implications.
6913 - MINOR: mux-h1: make the mux_h1_ops struct static
6914 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
6915 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
6916 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
6917 - REGTESTS: test case for map_regm commit 271022150d
6918 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
6919 - REGTESTS: Basic tests for using maps to redirect requests / select backend
6920 - DOC: REGTESTS README varnishtest -Dno-htx= define.
6921 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
6922 - MINOR: checks: Store the proxy in checks.
6923 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
6924 - REGTEST: Switch to vtest.
6925 - REGTEST: Adapt reg test doc files to vtest.
6926 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
6927 - BUG/MINOR: base64: dec func ignores padding for output size checking
6928 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
6929 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
6930 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
6931 - BUG/MINOR: backend: balance uri specific options were lost across defaults
6932 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
6933 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
6934 - MINOR: backend: make headers and RDP cookie also use arg_str/len
6935 - MINOR: backend: add new fields in lbprm to store more LB options
6936 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
6937 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
6938 - MINOR: backend: move hash_balance_factor out of chash
6939 - MEDIUM: backend: move all LB algo parameters into an union
6940 - MINOR: backend: make the random algorithm support a number of draws
6941 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
6942 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
6943 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
6944 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
6945 - DOC: add a missing space in the documentation for bc_http_major
6946 - REGTEST: checks basic stats webpage functionality
6947 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
6948 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
6949 - DOC: add github issue templates
6950 - MINOR: cfgparse: Extract some code to be re-used.
6951 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
6952 - CLEANUP: cfgparse: Code reindentation.
6953 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
6954 - MINOR: cfgparse: Rework peers frontend init.
6955 - MINOR: cfgparse: Simplication.
6956 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
6957 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
6958 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
6959 - DOC: peers: SSL/TLS documentation for "peers"
6960 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
6961 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
6962 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
6963 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
6964 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
6965 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
6966 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
6967 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
6968 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
6969 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
6970 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
6971 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
6972 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
6973 - MINOR: h2: declare new sets of frame types
6974 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
6975 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
6976 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
6977 - BUG/MINOR: hpack: return a compression error on invalid table size updates
6978 - MINOR: server: make sure pool-max-conn is >= -1
6979 - BUG/MINOR: stream: take care of synchronous errors when trying to send
6980 - CLEANUP: server: fix indentation mess on idle connections
6981 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
6982 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
6983 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
6984 - MINOR: server: add a max-reuse parameter
6985 - MINOR: mux-h2: always consider a server's max-reuse parameter
6986 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
6987 - MINOR: stream: don't wait before retrying after a failed connection reuse
6988 - MEDIUM: h2: always parse and deduplicate the content-length header
6989 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
6990 - CLEANUP: h2: Remove debug printf in mux_h2.c
6991 - MINOR: cfgparse: make the process/thread parser support a maximum value
6992 - MINOR: threads: make MAX_THREADS configurable at build time
6993 - DOC: nbthread is no longer experimental.
6994 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
6995 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
6996 - BUG/MINOR: spoe: corrected fragmentation string size
6997 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
6998 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
6999 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
7000 - SCRIPTS: add the issue tracker URL to the announce script
7001 - MINOR: peers: Extract some code to be reused.
7002 - CLEANUP: peers: Indentation fixes.
7003 - MINOR: peers: send code factorization.
7004 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
7005 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
7006 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
7007 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
7008 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
7009 - CLEANUP: peers: Be more generic.
7010 - MINOR: peers: move error handling to reduce the size of the I/O handler.
7011 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
7012 - MINOR: peers: move send code to reduce the size of the I/O handler.
7013 - CLEANUP: peers: Remove useless statements.
7014 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
7015 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
7016 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
7017 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
7018 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
7019 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
7020 - CLEANUP: mux-h2: remove two useless but misleading assignments
7021 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
7022 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
7023 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
7024 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
7025 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
7026 - BUG/MEDIUM: peers: Handle mux creation failure.
7027 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
7028 - BUG/MEDIUM: compression: Rewrite strong ETags
7029 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
7030 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
7031 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
7032 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
7033 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
7034 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
7035 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
7036 - MINOR: h2: add a generic frame checker
7037 - MEDIUM: mux-h2: check the frame validity before considering the stream state
7038 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
7039 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
7040 - DOC: compression: Update the reasons for disabled compression
7041 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
7042 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
7043 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
7044 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
7045 - BUG/MEDIUM: peers: Peer addresses parsing broken.
7046 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
7047 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
7048 - BUG/MINOR: stream: don't close the front connection when facing a backend error
7049 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
7050 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
7051 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
7052 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
7053 - BUG/MINOR: server: fix logic flaw in idle connection list management
7054 - MINOR: mux-h2: max-concurrent-streams should be unsigned
7055 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
7056 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
7057 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
7058 - MINOR: xref: Add missing barriers.
7059 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
7060 - MINOR: debug: Add an option that causes random allocation failures.
7061 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
7062 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
7063 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
7064 - BUG/MINOR: backend: check srv_conn before dereferencing it
7065 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
7066 - BUG/MEDIUM: mux-h2: always set :authority on request output
7067 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
7068 - BUG/MINOR: threads: fix the process range of thread masks
7069 - BUG/MINOR: config: fix bind line thread mask validation
7070 - CLEANUP: threads: fix misleading comment about all_threads_mask
7071 - CLEANUP: threads: use nbits to calculate the thread mask
7072 - OPTIM: listener: optimize cache-line packing for struct listener
7073 - MINOR: tools: improve the popcount() operation
7074 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
7075 - MINOR: global: add proc_mask() and thread_mask()
7076 - MINOR: config: simplify bind_proc processing using proc_mask()
7077 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
7078 - BUG/MINOR: compression: properly report compression stats in HTX mode
7079 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
7080 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
7081 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
7082 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
7083 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
7084 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
7085 - DOC: ssl: Stop documenting ciphers example to use
7086 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
7087 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
7088 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
7089 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
7090 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
7091 - MINOR: config: make MAX_PROCS configurable at build time
7092 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
7093 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
7094 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
7095 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
7096 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
7097 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
7098 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
7099 - BUG/MAJOR: stream: avoid double free on unique_id
7100 - BUILD/MINOR: stream: avoid a build warning with threads disabled
7101 - BUILD/MINOR: tools: fix build warning in the date conversion functions
7102 - BUILD/MINOR: peers: remove an impossible null test in intencode()
7103 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
7104 - BUG/MEDIUM: peers: Missing peer initializations.
7105 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
7106 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
7107 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
7108 - BUILD/MEDIUM: initcall: Fix build on MacOS.
7109 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
7110 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
7111 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
7112 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
7113 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
7114 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
7115 - MINOR: mux-h2: Set HTX extra value when possible
7116 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
7117 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
7118 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
7119 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
7120 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
7121 - MINOR: fd: add a new my_closefrom() function to close all FDs
7122 - MINOR: checks: use my_closefrom() to close all FDs
7123 - MINOR: fd: implement an optimised my_closefrom() function
7124 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
7125 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
7126 - BUG/MAJOR: listener: Make sure the listener exist before using it.
7127 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
7128 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
7129 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
7130 - MINOR: htx: Add function to drain data from an HTX message
7131 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
7132 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
7133 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
7134 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
7135 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
7136 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
7137 - BUG/MEDIUM: h2: advertise to servers that we don't support push
7138 - MINOR: standard: Add a function to parse uints (dotted notation).
7139 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
7140 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
7141 - MINOR: sample: Add two sample converters for protocol buffers.
7142 - DOC: sample: Add gRPC related documentation.
7143
Willy Tarreaufba74ea2018-12-22 11:19:45 +010071442018/12/22 : 2.0-dev0
7145 - BUG/MAJOR: connections: Close the connection before freeing it.
7146 - REGTEST: Require the option LUA to run lua tests
7147 - REGTEST: script: Process script arguments before everything else
7148 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
7149 - REGTEST: script: Add the option --clean to remove previous log direcotries
7150 - REGTEST: script: Add the option --debug to show logs on standard ouput
7151 - REGTEST: script: Add the option --keep-logs to keep all log directories
7152 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
7153 - REGTEST: script: Print only errors in the results report
7154 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
7155 - REGTEST: Make reg-tests target support argument.
7156 - REGTEST: Fix a typo about barrier type.
7157 - REGTEST: Be less Linux specific with a syslog regex.
7158 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
7159 - REGTEST: Exclude freebsd target for some reg tests.
7160 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
7161 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
7162 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
7163 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
7164 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
7165 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
7166 - MEDIUM: mux_h1: Implement h1_show_fd.
7167 - REGTEST: script: Add support of alternatives in requited options list
7168 - REGTEST: Add a basic test for the compression
7169 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
7170 - REGTEST: A basic test for "http-buffer-request"
7171 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
7172 - MINOR: ssl: Add ssl_sock_set_alpn().
7173 - MEDIUM: checks: Add check-alpn.
7174 - wip
7175
Willy Tarreau82230502018-12-19 19:13:17 +010071762018/12/19 : 1.9.0
7177 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
7178 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
7179 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
7180 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
7181 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
7182 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
7183 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
7184 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
7185 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
7186 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
7187 - MINOR: cli/stream: add the conn_stream in "show sess" output
7188 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
7189 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
7190 - MINOR: objtype: report a few missing types in names and base pointers
7191 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
7192 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
7193 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
7194 - BUG/MINOR: mux-h1: report the correct frontend in error captures
7195 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
7196 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
7197 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
7198 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
7199 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
7200 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
7201 - MINOR: compression: Remove the thread_local variable buf_output
7202 - CLEANUP: connection: rename subscription events values and event field
7203 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
7204 - MINOR: connection: remove an unwelcome dependency on struct stream
7205 - CLEANUP: stream-int: consistently call the si/stream_int functions
7206 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
7207 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
7208 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
7209 - MEDIUM: stream-int: always consider all CS errors on the send side
7210 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
7211 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
7212 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
7213 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
7214 - MINOR: connection: add cs_set_error() to set the error bits
7215 - CLEANUP: mux-h2: make use of cs_set_error()
7216 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
7217 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
7218 - MINOR: cli/show_fd: report that a connection is back or not
7219 - SCRIPTS: add the slack channel URL to the announce script
7220 - CLEANUP: remove my name and address from the copyright banner
7221 - DOC: mention in the readme that 1.9 is a stable version now
7222
Willy Tarreau2a7d6502018-12-16 22:35:06 +010072232018/12/16 : 1.9-dev11
7224 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
7225 - REGTEST/MINOR: remove double body specification for server txresp
7226 - BUG/MEDIUM: connections: Remove error flags when retrying.
7227 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
7228 - REGTEST/MINOR: remove health-check that can make the test fail
7229 - DOC: clarify that check-sni needs an argument.
7230 - DOC: refer to check-sni in the documentation of sni
7231 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
7232 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
7233 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
7234 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
7235 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
7236 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
7237 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
7238 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
7239 - MINOR: hpack: simplify the len to bytes conversion
7240 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
7241 - MINOR: hpack: optimize header encoding for short names
7242 - CONTRIB: hpack: add a compressed stream generator for the encoder
7243 - MEDIUM: hpack: make it possible to encode any static header name
7244 - MINOR: hpack: move the length computation and encoding functions to .h
7245 - MINOR: hpack: provide a function to encode a short indexed header
7246 - MINOR: hpack: provide a function to encode a long indexed header
7247 - MINOR: hpack: provide new functions to encode the ":status" header
7248 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
7249 - MINOR: hpack: provide a function to encode an HTTP method
7250 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
7251 - MINOR: hpack: provide a function to encode an HTTP scheme
7252 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
7253 - MINOR: hpack: provide a function to encode an HTTP path
7254 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
7255 - REGTEST: add the HTTP rules test involving HTX processing
7256 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
7257 - MEDIUM: cli: rework the CLI proxy parser
7258 - MINOR: cli: parse prompt command in the CLI proxy
7259 - MINOR: cli: implements 'quit' in the CLI proxy
7260 - BUG/MINOR: cli: wait for payload data even without prompt
7261 - MEDIUM: cli: handle payload in CLI proxy
7262 - MINOR: cli: use pcli_flags for prompt activation
7263 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
7264 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
7265 - MINOR: cache: Register the cache as a data filter only if response is cacheable
7266 - MEDIUM: cache/htx: Add the HTX support into the cache
7267 - MINOR: cache: Improve and simplify the cache configuration check
7268 - MINOR: filters: Export the name of known filters
7269 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
7270 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
7271 - REORG: htx: merge types+proto into common/htx.h
7272 - REORG: http: create http_msg.c to place there some legacy HTTP parts
7273 - REORG: h1: move legacy http functions to http_msg.c
7274 - REORG: h1: move the h1_state definition to proto_http
7275 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
7276 - REORG: h1: merge types+proto into common/h1.h
7277 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
7278 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
7279 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
7280 - BUG/MINOR: mux-h2: refrain from muxing during the preface
7281 - BUG/MINOR: mux-h2: advertise a larger connection window size
7282 - DOC: master CLI documentation in management.txt
7283 - MINOR: mux-h2: avoid copying large blocks into full buffers
7284 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
7285 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
7286 - MINOR: cli: change 'show proc' output of old processes
7287 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
7288 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
7289 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
7290 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
7291 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
7292 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
7293 - REGTEST: the cache regtest requires haproxy 1.9
7294 - MEDIUM: cli: store CLI level in the appctx
7295 - MEDIUM: cli: show and change CLI permissions
7296 - CLEANUP: cli: use dedicated define instead of appctx ones
7297 - MEDIUM: cli: handle CLI level from the master CLI
7298 - BUG/MEDIUM: cli: handle correctly prefix and payload
7299 - BUILD: Makefile: Implements the help target
7300 - REGTESTS: adjust the http-rules regtest to support window updates
7301 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
7302 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
7303 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
7304 - MEDIUM: mux: Add an optional "reset" method.
7305 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
7306 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
7307 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
7308 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
7309 - MEDIUM: htx: Try to take a connection over if it has no owner.
7310 - REGTEST: Reg testing improvements.
7311 - REGTEST: Add a first test for health-checks.
7312 - REGTEST: Reg test for "check" health-check option.
7313 - REGTEST: level 1 health-check test 2.
7314 - REGTEST: Add miscellaneous reg tests for health-checks.
7315 - REGTEST: add a few HTTP messaging tests
7316 - MINOR: lb: make the leastconn algorithm more accurate
7317 - REGTEST: fix missing space in checks/s00001
7318 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
7319 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
7320 - MINOR: connection: realign empty buffers in muxes, not transport layers
7321 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
7322 - MINOR: backend: count the number of connect and reuse per server and per backend
7323 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
7324 - MINOR: tools: increase the number of ITOA strings to 16
7325 - MINOR: cache: report the number of cache lookups and cache hits
7326 - MEDIUM: tasks: check the global task mask instead of the thread number
7327 - MINOR: mworker: set all_threads_mask and pid_bit to 1
7328 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
7329 - BUG/MINOR: stats: Parse post data for HTX streams
7330 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
7331 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
7332 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
7333 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
7334 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
7335 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
7336 - MINOR: lua: Remove useless check on the messages state in HTTP functions
7337 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
7338 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
7339 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
7340 - MINOR: cli: implements 'reload' on master CLI
7341 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
7342 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
7343 - BUG/MAJOR: backend: only update server's counters when the server exists
7344 - MINOR: tools: preset the port of fd-based "sockets" to zero
7345 - BUG/MINOR: log: fix logging to both FD and IP
7346 - REGTEST: Add a reg test for HTTP cookies.
7347 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
7348 - BUILD: thread: properly report multi-thread support
7349 - BUG/MINOR: logs: leave startup-logs global and not per-thread
7350 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
7351 - BUG/MAJOR: compression/cache: Make it really works with these both filters
7352 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
7353 - MEDIUM: proxy: Set http-reuse safe as default.
7354 - MEDIUM: servers: Add a command to limit the number of idling connections.
7355 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
7356 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
7357 - MEDIUM: mux: provide the session to the init() and attach() method.
7358 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
7359 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
7360 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
7361 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
7362 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
7363 - MINOR: pools: Cast to volatile int * instead of int *.
7364 - MINOR: debug: make the ABORT_NOW macro use a volatile int
7365 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
7366 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
7367 - DOC: clarify the agent-check status line syntax
7368 - BUG/MAJOR: hpack: fix length check for short names encoding
7369 - DOC: split the README into README + INSTALL
7370
Willy Tarreau72e92272018-12-08 16:20:55 +010073712018/12/08 : 1.9-dev10
7372 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
7373 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
7374 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
7375 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
7376 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
7377 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
7378 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
7379 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
7380 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
7381 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
7382 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
7383 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
7384 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
7385 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
7386 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
7387 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
7388 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
7389 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
7390 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
7391 - BUG/MEDIUM: h1: Correctly report used data with no len.
7392 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
7393 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
7394 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
7395 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
7396 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
7397 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
7398 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
7399 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
7400 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
7401 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
7402 - MEDIUM: channel/htx: Add functions for forward HTX data
7403 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
7404 - CLEANUP: htx: Fix indentation here and there in HTX files
7405 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
7406 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
7407 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
7408 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
7409 - BUG/MEDIUM: mworker: stop every tasks in the master
7410 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
7411 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
7412 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
7413 - MINOR: stream-int: add a new blocking condition on the remote connection
7414 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
7415 - BUG/MEDIUM: lua: block on remote connection establishment
7416 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
7417 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
7418 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
7419 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
7420 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
7421 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
7422 - REGTEST: Move LUA reg test 4 to level 1.
7423 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
7424 - MEDIUM: ist: always turn header names to lower case
7425 - MINOR: h2: don't turn HTX header names to lower case anymore
7426 - MEDIUM: ist: use local conversion arrays to case conversion
7427 - MINOR: htx: switch to case sensitive search of lower case header names
7428 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
7429 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
7430 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
7431 - REGTEST: add a basic test for HTTP rules manipulating headers
7432 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
7433 - MINOR: sample: add bc_http_major
7434 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
7435 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
7436 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
7437 - MINOR: compiler: add a new macro ALREADY_CHECKED()
7438 - BUILD: h2: mark the start line already checked to avoid warnings
7439 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
7440
Willy Tarreauda7e3be2018-12-02 19:31:37 +010074412018/12/02 : 1.9-dev9
7442 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
7443 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
7444 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
7445 - MINOR: compression: always create the compression pool
7446 - BUG/MEDIUM: mworker: fix FD leak upon reload
7447 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
7448 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
7449 - MINOR: initcall: introduce a way to register init functions to call at boot
7450 - MINOR: init: process all initcalls in order at boot time
7451 - MEDIUM: init: convert all trivial registration calls to initcalls
7452 - MINOR: thread: provide a set of lock initialisers
7453 - MINOR: threads: add new macros to declare self-initializing locks
7454 - MEDIUM: init: use self-initializing spinlocks and rwlocks
7455 - MINOR: initcall: apply initcall to all register_build_opts() calls
7456 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
7457 - MINOR: initcall: use initcalls for section parsers
7458 - MINOR: memory: add a callback function to create a pool
7459 - MEDIUM: init: use initcall for all fixed size pool creations
7460 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
7461 - MEDIUM: initcall: use initcalls for a few initialization functions
7462 - MEDIUM: memory: make the pool cache an array and not a thread_local
7463 - MINOR: ssl: free ctx when libssl doesn't support NPN
7464 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
7465 - MINOR: h2: make struct h2_ops static
7466 - BUG/MEDIUM: mworker: avoid leak of client socket
7467 - REORG: mworker: declare master variable in global.h
7468 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
7469 - CLEANUP: http: Fix typo in init_http's comment
7470 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
7471 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
7472 - REGTEST/MINOR: script: add run-regtests.sh script
7473 - REGTEST: Add a basic test for the cache.
7474 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
7475 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
7476 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
7477 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
7478 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
7479 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
7480 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
7481 - REGTEST: Fix several issues.
7482 - REGTEST: lua: check socket functionality from a lua-task
7483 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
7484 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
7485 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
7486 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
7487 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
7488 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
7489 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
7490 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
7491 - MAJOR: sessions: Store multiple outgoing connections in the session.
7492 - MEDIUM: session: Steal owner-less connections on end of transaction.
7493 - MEDIUM: server: Be smarter about deciding to reuse the last server.
7494 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
7495 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
7496 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
7497 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
7498 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
7499 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
7500 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
7501 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
7502 - BUG/MINOR: connection: report mux modes when HTX is supported
7503 - MINOR: htx: add a function to cut the beginning of a DATA block
7504 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
7505 - MINOR: mux-h1: Implement get_cs_info() callback
7506 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
7507 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
7508 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
7509 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
7510 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
7511 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
7512 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
7513 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
7514 - MINOR: htx: Add function to add an HTX block just before another one
7515 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
7516 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
7517 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
7518 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
7519 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
7520 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
7521 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
7522 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
7523 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
7524 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
7525 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
7526 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
7527 - MINOR: proto_htx: Send valid HTX message to send 30x responses
7528 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
7529 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
7530 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
7531 - MINOR: mux-h1: Capture bad H1 messages
7532 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
7533 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
7534 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
7535 - MEDIUM: compression: Adapt to be compatible with the HTX representation
7536 - MINOR: h2: implement H2->HTX request header frame transcoding
7537 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
7538 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
7539 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
7540 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
7541 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
7542 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
7543 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
7544 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
7545 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
7546 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
7547 - MINOR: listener: the mux_proto entry in the bind_conf is const
7548 - MINOR: connection: create conn_get_best_mux_entry()
7549 - MINOR: server: the mux_proto entry in the server is const
7550 - MINOR: config: make sure to associate the proper mux to bind and servers
7551 - MINOR: hpack: add ":path" to the list of common header fields
7552 - MINOR: h2: add new functions to produce an HTX message from an H2 response
7553 - MINOR: mux-h2: mention that the mux is compatible with both sides
7554 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
7555 - MEDIUM: mux-h2: start to create the outgoing mux
7556 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
7557 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
7558 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
7559 - MEDIUM: mux-h2: Implement h2_attach().
7560 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
7561 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
7562 - MINOR: connection: Fix a comment.
7563 - MINOR: mux: add a "max_streams" method.
7564 - MEDIUM: servers: Add a way to keep idle connections alive.
7565 - CLEANUP: fix typos in the htx subsystem
7566 - CLEANUP: Fix typo in the chunk headers file
7567 - CLEANUP: Fix typos in the h1 subsystem
7568 - CLEANUP: Fix typos in the h2 subsystem
7569 - CLEANUP: Fix a typo in the mini-clist header
7570 - CLEANUP: Fix a typo in the proto_htx subsystem
7571 - CLEANUP: Fix typos in the proto_tcp subsystem
7572 - CLEANUP: Fix a typo in the signal subsystem
7573 - CLEANUP: Fix a typo in the session subsystem
7574 - CLEANUP: Fix a typo in the queue subsystem
7575 - CLEANUP: Fix typos in the shctx subsystem
7576 - CLEANUP: Fix typos in the socket pair protocol subsystem
7577 - CLEANUP: Fix typos in the map management functions
7578 - CLEANUP: Fix typo in the fwrr subsystem
7579 - CLEANUP: Fix typos in the cli subsystem
7580 - CLEANUP: Fix typo in the 51d subsystem
7581 - CLEANUP: Fix a typo in the base64 subsystem
7582 - CLEANUP: Fix a typo in the connection subsystem
7583 - CLEANUP: Fix a typo in the protocol header file
7584 - CLEANUP: Fix a typo in the checks header file
7585 - CLEANUP: Fix typos in the file descriptor subsystem
7586 - CLEANUP: Fix a typo in the listener subsystem
7587 - BUG/MINOR: lb-map: fix unprotected update to server's score
7588 - BUILD: threads: fix minor build warnings when threads are disabled
7589
Willy Tarreau0b936ad2018-11-25 09:16:46 +010075902018/11/25 : 1.9-dev8
7591 - REORG: config: extract the global section parser into cfgparse-global
7592 - REORG: config: extract the proxy parser into cfgparse-listen.c
7593 - BUILD: update the list of supported targets and compilers in makefile and readme
7594 - BUILD: reorder the objects in the makefile
7595 - BUILD: Makefile: make "V=1" show some of the commands that are executed
7596 - BUILD: Makefile: add the quiet mode to a few more targets
7597 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
7598 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
7599 - MINOR: cli: format `show proc` to be more readable
7600 - MINOR: cli: displays uptime in `show proc`
7601 - MINOR: cli: show master information in 'show proc'
7602 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
7603 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
7604 - BUG/MINOR: mux-h1: Enable keep-alive on server side
7605 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
7606 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
7607 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
7608 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
7609 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
7610 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
7611 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
7612 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
7613 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
7614 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
7615 - MEDIUM: mworker: wait mode use standard init code path
7616 - MINOR: log: introduce ha_notice()
7617 - MINOR: mworker: use ha_notice to announce a new worker
7618 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
7619 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
7620 - MEDIUM: signal: signal_unregister() removes every handlers
7621 - BUG/MEDIUM: mworker: unregister the signals of main()
7622 - MINOR: cli: add a few missing includes in proto/cli.h
7623 - REORG: time/activity: move activity measurements to activity.{c,h}
7624 - MINOR: activity: report the average loop time in "show activity"
7625 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
7626 - MEDIUM: tasks: collect per-task CPU time and latency
7627 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
7628 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
7629 - BUG/MINOR: cli: Fix memory leak
7630 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
7631 - MINOR: poller: move the call of tv_update_date() back to the pollers
7632 - MINOR: polling: add an option to support busy polling
7633 - MINOR: server: Add "alpn" and "npn" keywords.
7634 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
7635 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
7636 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
7637 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
7638 - REGTEST: add the option to test only a specific set of files
7639 - REGTEST: add a test for connections to a "dispatch" address
7640 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
7641 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
7642 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
7643 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
7644 - MEDIUM: servers: Store the connection in the SI until we have a mux.
7645 - BUG/MEDIUM: h2: wake the processing task up after demuxing
7646 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
7647
Willy Tarreau5c0e41b2018-11-18 22:33:00 +010076482018/11/18 : 1.9-dev7
7649 - BUILD: cache: fix a build warning regarding too large an integer for the age
7650 - CLEANUP: fix typos in the comments of the Makefile
7651 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
7652 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
7653 - CLEANUP: fix typos in comments for contrib/spoa_example
7654 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
7655 - DOC: Fix typos in README and CONTRIBUTING
7656 - MINOR: log: slightly improve error message syntax on log failure
7657 - DOC: logs: the format directive was missing from the second log part
7658 - MINOR: log: report the number of dropped logs in the stats
7659 - MEDIUM: log: add support for logging to existing file descriptors
7660 - MEDIUM: log: support a new "short" format
7661 - MEDIUM: log: add a new "raw" format
7662 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
7663 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
7664 - MINOR: namespaces: don't build namespace.c if disabled
7665 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
7666 - MINOR: http: Add new "early-hint" http-request action.
7667 - MINOR: http: Make new "early-hint" http-request action really be parsed.
7668 - MINOR: http: Implement "early-hint" http request rules.
7669 - MINOR: doc: Add information about "early-hint" http-request action.
7670 - DOC: early-hints: fix truncated line.
7671 - MINOR: mworker: only close std{in,out,err} in daemon mode
7672 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
7673 - BUG/MEDIUM: Make sure stksess is properly aligned.
7674 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
7675 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
7676 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
7677 - CONTRIB: debug: fix build related to conn_stream flags change
7678 - REGTEST: fix scripts 1 and 3 to accept development version
7679 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
7680 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
7681 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
7682 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
7683 - MEDIUM: jobs: support unstoppable jobs for soft stop
7684 - MEDIUM: listeners: support unstoppable listener
7685 - MEDIUM: cli: worker socketpair is unstoppable
7686 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
7687 - MINOR: stream: move the conn_stream specific calls to the stream-int
7688 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
7689 - CLEANUP: h2: minimum documentation for recent API changes
7690 - MINOR: mux: implement a get_first_cs() method
7691 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
7692 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
7693 - MINOR: stream-int: expand the flags to 32-bit
7694 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
7695 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
7696 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
7697 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
7698 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
7699 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
7700 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
7701 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
7702 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
7703 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
7704 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
7705 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
7706 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
7707 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
7708 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
7709 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
7710 - MEDIUM: connections: Wait until the connection is established to try to recv.
7711 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
7712 - MINOR: mux: Add a new "avail_streams" method.
7713 - MINOR: mux: Add a destroy() method.
7714 - MINOR: sessions: Start to store the outgoing connection in sessions.
7715 - MAJOR: connections: Detach connections from streams.
7716 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
7717 - MINOR: htx: Add proto_htx.c file
7718 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
7719 - MINOR: http: Add standalone functions to parse a start-line or a header
7720 - MINOR: http: Call http_send_name_header with the stream instead of the txn
7721 - MINOR: conn_stream: Add a flag to notify the SI some data were received
7722 - MINOR: http: Add macros to check if a stream uses the HTX representation
7723 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
7724 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
7725 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
7726 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
7727 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
7728 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
7729 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
7730 - MINOR: proto_htx: Add some functions to handle HTX messages
7731 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
7732 - MINOR: http_htx: Add functions to replace part of the start-line
7733 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
7734 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
7735 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
7736 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
7737 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
7738 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
7739 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
7740 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
7741 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
7742 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
7743 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
7744 - MINOR: proto_htx: Add functions htx_send_name_header
7745 - MINOR: proto_htx: Add functions htx_perform_server_redirect
7746 - MINOR: proto_htx: Add functions to handle the stats applet
7747 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
7748 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
7749 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
7750 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
7751 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
7752 - MINOR: http_fetch: Add smp_prefetch_htx
7753 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
7754 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
7755 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
7756 - MINOR: stream: Don't reset sov value with HTX messages
7757 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
7758 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
7759 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
7760 - CLEANUP: Fix some typos in the haproxy subsystem
7761 - CLEANUP: Fix typos in the dns subsystem
7762 - CLEANUP: Fix typos in the pattern subsystem
7763 - CLEANUP: fix 2 typos in the xxhash subsystem
7764 - CLEANUP: fix a few typos in the comments of the server subsystem
7765 - CLEANUP: fix a misspell in tests/filltab25.c
7766 - CLEANUP: fix a typo found in the stream subsystem
7767 - CLEANUP: fix typos in comments in ebtree
7768 - CLEANUP: fix typos in reg-tests
7769 - CLEANUP: fix typos in the comments of the vars subsystem
7770 - CLEANUP: fix typos in the hlua_fcn subsystem
7771 - CLEANUP: fix typos in the proto_http subsystem
7772 - CLEANUP: fix typos in the proxy subsystem
7773 - CLEANUP: fix typos in the ssl_sock subsystem
7774 - DOC: Fix typos in different subsections of the documentation
7775 - DOC: fix a few typos in the documentation
7776 - MINOR: Fix an error message thrown when we run out of memory
7777 - MINOR: Fix typos in error messages in the proxy subsystem
7778 - MINOR: fix typos in the examples files
7779 - CLEANUP: Fix a typo in the stats subsystem
7780 - CLEANUP: Fix typos in the acl subsystem
7781 - CLEANUP: Fix typos in the cache subsystem
7782 - CLEANUP: Fix typos in the cfgparse subsystem
7783 - CLEANUP: Fix typos in the filters subsystem
7784 - CLEANUP: Fix typos in the http subsystem
7785 - CLEANUP: Fix typos in the log subsystem
7786 - CLEANUP: Fix typos in the peers subsystem
7787 - CLEANUP: Fix typos in the regex subsystem
7788 - CLEANUP: Fix typos in the sample subsystem
7789 - CLEANUP: Fix typos in the spoe subsystem
7790 - CLEANUP: Fix typos in the standard subsystem
7791 - CLEANUP: Fix typos in the stick_table subsystem
7792 - CLEANUP: Fix typos in the task subsystem
7793 - MINOR: Fix typo in error message in the standard subsystem
7794 - CLEANUP: fix typos in the comments of hlua
7795 - MINOR: Fix typo in the error 500 output of hlua
7796 - MINOR: Fix a typo in a warning message in the spoe subsystem
7797
Willy Tarreau96079492018-11-11 10:43:39 +010077982018/11/11 : 1.9-dev6
7799 - BUG/MEDIUM: tools: fix direction of my_ffsl()
7800 - BUG/MINOR: cli: forward the whole command on master CLI
7801 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
7802 - MINOR: compat: automatically detect support for crypt_r()
7803 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
7804 - DOC: split the http-request actions in their own section
7805 - DOC: split the http-response actions in their own section
7806 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
7807 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
7808 - MINOR: stats: report the number of active jobs and listeners in "show info"
7809 - MINOR: stats: report the number of active peers in "show info"
7810 - MINOR: stats: report the number of currently connected peers
7811 - MINOR: cli: show the number of reload in 'show proc'
7812 - MINOR: cli: can't connect to the target CLI
7813 - MEDIUM: mworker: does not create the CLI proxy when no listener
7814 - MINOR: mworker: displays more information when leaving
7815 - MEDIUM: mworker: exit with the incriminated exit code
7816 - MINOR: mworker: displays a message when a worker is forked
7817 - MEDIUM: mworker: leave when the master die
7818 - CLEANUP: stream-int: retro-document si_cs_io_cb()
7819 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
7820 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
7821 - BUG/MEDIUM: cli: crash when trying to access a worker
7822 - DOC: restore note about "independant" typo
7823 - MEDIUM: stream: implement stream_buf_available()
7824 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
7825 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
7826 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
7827 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
7828 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
7829 - MINOR: stream-int: make it clear that si_ops cannot be null
7830 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
7831 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
7832 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
7833 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
7834 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
7835 - MINOR: stream-int: replace si_update() with si_update_both()
7836 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
7837 - CLEANUP: stream-int: remove the now unused si->update() function
7838 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
7839 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
7840 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
7841
Willy Tarreaubddf2922018-10-28 20:39:31 +010078422018/10/28 : 1.9-dev5
7843 - BUILD: Makefile: add the new ERR variable to force -Werror
7844 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
7845 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
7846 - CLEANUP: http: Remove the unused function http_find_header
7847 - MINOR: h1: Export some functions parsing the value of some HTTP headers
7848 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
7849 - MINOR: proxy: add a new option "http-use-htx"
7850 - BUG/MEDIUM: pools: fix the minimum allocation size
7851 - MINOR: shctx: Shared objects block by block allocation.
7852 - MINOR: cache: Larger HTTP objects caching.
7853 - MINOR: shctx: Add a maximum object size parameter.
7854 - MINOR: cache: Add "max-object-size" option.
7855 - DOC: Update about the cache support for big objects.
7856 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
7857 - BUG/MINOR: cache: Wrong usage of shctx_init().
7858 - BUG/MINOR: ssl: Wrong usage of shctx_init().
7859 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
7860 - MINOR: shctx: Change max. object size type to unsigned int.
7861 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
7862 - CLEANUP: tools: fix misleading comment above function LIM2A
7863 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
7864 - BUG/MINOR: only mark connections private if NTLM is detected
7865 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
7866 - MINOR: stream: don't prune variables if the list is empty
7867 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
7868 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
7869 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
7870 - MEDIUM: stream: don't try to send first in process_stream()
7871 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
7872 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
7873 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
7874 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
7875 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
7876 - MINOR: mworker: number of reload in the life of a worker
7877 - MEDIUM: mworker: each worker socketpair is a CLI listener
7878 - REORG: mworker: move struct mworker_proc to global.h
7879 - MINOR: server: export new_server() function
7880 - MEDIUM: mworker: move proc_list gen before proxies startup
7881 - MEDIUM: mworker: add proc_list in global.h
7882 - MEDIUM: mworker: proxy for the master CLI
7883 - MEDIUM: mworker: create CLI listeners from argv[]
7884 - MEDIUM: cli: disable some keywords in the master
7885 - MEDIUM: mworker: find the server ptr using a CLI prefix
7886 - MEDIUM: cli: 'show proc' displays processus
7887 - MEDIUM: cli: implement 'mode cli' proxy analyzers
7888 - MINOR: cli: displays sockpair@ in "show cli sockets"
7889 - MEDIUM: cli: enable "show cli sockets" for the master
7890 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
7891 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
7892 - MEDIUM: mworker: stop the master proxy in the workers
7893 - MEDIUM: channel: reorder the channel analyzers for the cli
7894 - MEDIUM: cli: write a prompt for the CLI proxy of the master
7895 - MINOR: cli: helper to write an response message and close
7896 - MINOR: cache: Add "Age" header.
7897 - REGTEST: make the IP+port logging test more reliable
7898 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
7899 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
7900 - BUG/MINOR: backend: assign the wait list after the error check
7901
Willy Tarreau01fbe742018-10-21 20:28:30 +020079022018/10/21 : 1.9-dev4
7903 - BUILD: Allow configuration of pcre-config path
7904 - DOC: clarify force-private-cache is an option
7905 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
7906 - REORG: http: move the code to different files
7907 - REORG: http: move HTTP rules parsing to http_rules.c
7908 - CLEANUP: http: remove some leftovers from recent cleanups
7909 - BUILD: Makefile: add a "make opts" target to simply show the build options
7910 - BUILD: Makefile: speed up compiler options detection
7911 - BUG/MINOR: backend: check that the mux installed properly
7912 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
7913 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
7914 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
7915 - MINOR: ssl: cleanup old openssl API call
7916 - MINOR: ssl: generate-certificates for BoringSSL
7917 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
7918 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
7919 - CLEANUP: haproxy: Remove unused variable
7920 - CLEANUP: h1: Fix debug warnings for h1 headers
7921 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
7922 - MEDIUM: task: perform a single tree lookup per run queue batch
7923 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
7924 - BUG/MINOR: threads: move declaration of capabilities to config.h
7925 - OPTIM: tools: optimize my_ffsl() for x86_64
7926 - BUG/MINOR: h2: null-deref
7927 - BUG/MINOR: checks: queues null-deref
7928 - MINOR: connections: Introduce an unsubscribe method.
7929 - MEDIUM: connections: Change struct wait_list to wait_event.
7930 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
7931 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
7932 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
7933 - MINOR: http: Move comment about some HTTP macros in the right header file
7934 - MINOR: stats: Add missing include
7935 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
7936 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
7937 - MEDIUM: http: Ignore http-tunnel option on backend
7938 - MINOR: http: Use same flag for httpclose and forceclose options
7939 - MINOR: h1: Add EOH marker during headers parsing
7940 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
7941 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
7942 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
7943 - MINOR: log: make sess_log() support sess=NULL
7944 - MINOR: chunk: add chunk_cpy() and chunk_cat()
7945 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
7946 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
7947 - MINOR: h2: don't try to send data before preface
7948 - MINOR: h2: unify the mux init function
7949 - MINOR: h2: retrieve the front proxy from the caller instead of the session
7950 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
7951 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
7952 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
7953 - BUG/MEDIUM: stream: don't crash on out-of-memory
7954 - BUILD: compiler: add a new statement "__unreachable()"
7955 - BUILD: lua: silence some compiler warnings about potential null derefs
7956 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
7957 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
7958 - BUILD: stick-table: make sure not to fail on task_new() during initialization
7959 - BUILD: peers: check allocation error during peers_init_sync()
7960 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
7961 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
7962 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
7963 - MAJOR: tasks: create per-thread wait queues
7964 - OPTIM: tasks: group all tree roots per cache line
7965 - DOC: Fix a few typos
7966 - MINOR: pools: allocate most memory pools from an array
7967 - MINOR: pools: split pool_free() in the lockfree variant
7968 - MEDIUM: pools: implement a thread-local cache for pool entries
7969 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
7970 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
7971 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
7972 - MINOR: lua: all functions calling lua_yieldk() may return
7973 - BUILD: lua: silence some compiler warnings after WILL_LJMP
7974 - BUILD: Makefile: silence an option conflict warning with clang
7975 - MINOR: server: Use memcpy() instead of strncpy().
7976 - CLEANUP: state-file: make the path concatenation code a bit more consistent
7977 - MINOR: build: Disable -Wstringop-overflow.
7978 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
7979 - MINOR: peers: use defines instead of enums to appease clang.
7980 - DOC: fix reference to map files in MAINTAINERS
7981 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
7982 - MINOR: poller: move time and date computation out of the pollers
7983 - BUILD: memory: fix pointer declaration for atomic CAS
7984 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
7985 - MINOR: time: add now_mono_time() and now_cpu_time()
7986 - MEDIUM: time: measure the time stolen by other threads
7987 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
7988 - BUILD: compiler: rename __unreachable() to my_unreachable()
7989 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
7990 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
7991 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
7992 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
7993 - BUG/MEDIUM: stream: Make sure polling is right on retry.
7994 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
7995 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
7996 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
7997 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
7998 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
7999 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
8000
Willy Tarreau27010f02018-09-29 20:17:33 +020080012018/09/29 : 1.9-dev3
8002 - BUG/MINOR: h1: don't consider the status for each header
8003 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
8004 - MINOR: h1: parse the Connection header field
8005 - DOC: Fix typos in lua documentation
8006 - MINOR: h1: Add H1_MF_XFER_LEN flag
8007 - MINOR: http: add http_hdr_del() to remove a header from a list
8008 - MINOR: h1: add headers to the list after controls, not before
8009 - MEDIUM: h1: better handle transfer-encoding vs content-length
8010 - MEDIUM: h1: deduplicate the content-length header
8011 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
8012 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
8013 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
8014 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
8015 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
8016 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
8017 - MINOR: stream-int: make si_appctx() never fail
8018 - BUILD: ssl_sock: remove build warnings on potential null-derefs
8019 - BUILD: stats: remove build warnings on potential null-derefs
8020 - BUILD: stream: address null-deref build warnings at -Wextra
8021 - BUILD: http: address a couple of null-deref warnings at -Wextra
8022 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
8023 - BUILD: dns: fix null-deref build warning at -Wextra
8024 - BUILD: checks: silence a null-deref build warning at -Wextra
8025 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
8026 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
8027 - BUILD: sockpair: silence a build warning at -Wextra
8028 - BUILD: build with -Wextra and sort out certain warnings
8029 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
8030 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
8031 - DOC: Update configuration doc about the maximum number of stick counters.
8032 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
8033 - MINOR: h2/stream_interface: Reintroduce te wake() method.
8034 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
8035 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
8036 - MEDIUM: lua: Add stick table support for Lua.
8037
Willy Tarreau253006d2018-09-12 18:59:48 +020080382018/09/12 : 1.9-dev2
8039 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
8040 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
8041 - BUG/MEDIUM: servers: check the queues once enabling a server
8042 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
8043 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
8044 - CLEANUP: backend: Move mux install to call it at only one place
8045 - MINOR: conn_stream: add an tx buffer to the conn_stream
8046 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
8047 - MINOR: backend: Try to find the best mux for outgoing connections
8048 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
8049 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
8050 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
8051 - MINOR: mux: Print the list of existing mux protocols during HA startup
8052 - MEDIUM: checks: use the new rendez-vous point to spread check result
8053 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
8054 - MINOR: threads: remove the previous synchronization point
8055 - MAJOR: server: make server state changes synchronous again
8056 - CLEANUP: server: remove the update list and the update lock
8057 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
8058 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
8059 - MINOR: mux: Change get_mux_proto to get an ist as parameter
8060 - MINOR: mux: Improve the message with the list of existing mux protocols
8061 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
8062 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
8063 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
8064 - BUG/MEDIUM: connection/mux: take care of serverless proxies
8065 - MINOR: queue: make sure the pendconn is released before logging
8066 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
8067 - MINOR: queue: store the queue index in the stream when enqueuing
8068 - MINOR: queue: replace the linked list with a tree
8069 - MEDIUM: add set-priority-class and set-priority-offset
8070 - MEDIUM: queue: adjust position based on priority-class and priority-offset
8071 - DOC: update the roadmap about priority queues
8072 - BUG/MINOR: ssl: empty connections reported as errors.
8073 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
8074 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
8075 - MINOR: connections: Get rid of txbuf.
8076 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
8077 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
8078 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
8079 - MINOR: stream_interface: Give stream_interface its own wait_list.
8080 - MINOR: mux_h2: Don't use h2_send() as a callback.
8081 - MINOR: checks: Add event_srv_chk_io().
8082 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
8083 - BUG/MEDIUM: sessions: Don't use t->state.
8084 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
8085 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
8086 - BUG/MINOR: map: fix map_regm with backref
8087 - DOC: dns: explain set server ... fqdn requires resolver
8088 - DOC: add documentation for prio_class and prio_offset sample fetches.
8089 - DOC: ssl: Use consistent naming for TLS protocols
8090 - DOC: update the layering design notes
8091 - MINOR: tasks: Don't special-case when nbthreads == 1
8092 - MINOR: fd cache: And the thread_mask with all_threads_mask.
8093 - BUG/MEDIUM: lua: socket timeouts are not applied
8094 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
8095 - BUG/MEDIUM: server: update our local state before propagating changes
8096 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
8097 - DOC: server/threads: document which functions need to be called with/without locks
8098 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
8099 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
8100 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
8101 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
8102 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
8103 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
8104 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
8105 - BUG/MEDIUM: connection: don't forget to always delete the list's head
8106 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
8107 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
8108 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
8109 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
8110 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
8111 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
8112 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
8113 - BUG/MEDIUM: connection: don't store recv() result into trash.data
8114 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
8115 - MINOR: chunk: remove impossible tests on negative chunk->data
8116 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
8117 - DOC: Fix spelling error in configuration doc
8118 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
8119 - REGTEST/MINOR: Add a new class of regression testing files.
8120 - BUG/MEDIUM: unix: provide a ->drain() function
8121 - MINOR: connection: make conn_sock_drain() work for all socket families
8122 - BUG/MINOR: lua: Bad HTTP client request duration.
8123 - REGEST/MINOR: Add reg testing files.
8124 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
8125 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
8126 - BUG/MEDIUM: lua: reset lua transaction between http requests
8127 - MINOR: add be_conn_free sample fetch
8128 - MINOR: Add srv_conn_free sample fetch
8129 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
8130 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
8131 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
8132 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
8133 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
8134 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
8135 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
8136 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
8137 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
8138 - MINOR: tools: make date2str_log() take some consts
8139 - MINOR: thread: implement HA_ATOMIC_XADD()
8140 - BUG/MINOR: stream: use atomic increments for the request counter
8141 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
8142 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
8143 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
8144 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
8145 - MINOR: log: make the backend fall back to the frontend when there's no stream
8146 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
8147 - MINOR: log: don't unconditionally pick log info from s->logs
8148 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
8149 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
8150 - MINOR: log: do not dereference a null stream to access captures
8151 - MINOR: log: be sure not to dereference a null stream for a target
8152 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
8153 - MINOR: log: use NULL for the unique_id if there is no stream
8154 - MINOR: log: keep a copy of s->flags early to avoid a dereference
8155 - MINOR: log: use zero as the request counter if there is no stream
8156 - MEDIUM: log: make sess_build_logline() support being called with no stream
8157 - MINOR: log: provide a function to emit a log for a session
8158 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
8159 - BUG/MINOR: h1: fix buffer shift after realignment
8160 - MINOR: connection: make the initialization more consistent
8161 - MINOR: connection: add new function conn_get_proxy()
8162 - MINOR: connection: add new function conn_is_back()
8163 - MINOR: log: One const should be enough.
8164 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
8165 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
8166 - MINOR: snapshot: restart on the event ID and not the stream ID
8167 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
8168 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
8169 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
8170 - MINOR: proxy: add a new generic proxy_capture_error()
8171 - MINOR: http: make the HTTP error capture rely on the generic proxy code
8172 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
8173 - REORG: cli: move the "show errors" handler from http to proxy
8174 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
8175 - MEDIUM: snapshots: dynamically allocate the snapshots
8176 - MEDIUM: snapshot: merge the captured data after the descriptor
8177 - MEDIUM: mworker: remove register/unregister signal functions
8178 - MEDIUM: mworker: use the haproxy poll loop
8179 - BUG/MINOR: mworker: no need to stop peers for each proxy
8180 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
8181 - MEDIUM: mworker: block SIGCHLD until the master is ready
8182 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
8183 - MEDIUM: startup: unify signal init between daemon and mworker mode
8184 - MINOR: mworker: don't deinit the poller fd when in wait mode
8185 - MEDIUM: mworker: master wait mode use its own initialization
8186 - MEDIUM: mworker: replace the master pipe by socketpairs
8187 - MINOR: mworker: keep and clean the listeners
8188 - MEDIUM: threads: close the thread-waker pipe during deinit
8189 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
8190 - REORG: http: move the HTTP semantics definitions to http.h/http.c
8191 - REORG: http: move http_get_path() to http.c
8192 - REORG: http: move error codes production and processing to http.c
8193 - REORG: http: move the log encoding tables to log.c
8194 - REORG: http: move some header value processing functions to http.c
8195 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
8196 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
8197 - MEDIUM: protocol: sockpair protocol
8198 - TESTS: add a python wrapper for sockpair@
8199 - BUG/MINOR: server: Crash when setting FQDN via CLI.
8200 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
8201 - BUILD: fix build without thread
8202 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
8203 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
8204 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
8205 - MEDIUM: connections: Get rid of the recv() method.
8206 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
8207 - MEDIUM: h2: always subscribe to receive if allowed.
8208 - MEDIUM: h2: Don't use a wake() method anymore.
8209 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
8210 - MINOR: connections: Add a "handle" field to wait_list.
8211 - MEDIUM: mux_h2: Revamp the send path when blocking.
8212 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
8213 - MINOR: checks: Give checks their own wait_list.
8214 - MINOR: conn_streams: Remove wait_list from conn_streams.
8215 - REORG: h1: create a new h1m_state
8216 - MINOR: h1: add the restart offsets into struct h1m
8217 - MINOR: h1: remove the unused states from h1m_state
8218 - MINOR: h1: provide a distinct init() function for request and response
8219 - MINOR: h1: add a message flag to indicate that a message carries a response
8220 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
8221 - MINOR: h1: properly pre-initialize err_pos to -2
8222 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
8223 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
8224 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
8225 - MEDIUM: h1: make the parser support a pointer to a start line
8226 - MEDIUM: h1: let the caller pass the initial parser's state
8227 - MINOR: h1: make the message parser support a null <hdr> argument
8228 - MEDIUM: h1: support partial message parsing
8229 - MEDIUM: h1: remove the useless H1_MSG_BODY state
8230 - MINOR: h2: store the HTTP status into the H2S, not the H1M
8231 - MINOR: h1: remove the HTTP status from the H1M struct
8232 - MEDIUM: h1: implement the request parser as well
8233 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
8234 - MINOR: connection: pass the proxy when creating a connection
8235 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
8236 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
8237 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
8238
Willy Tarreau65e94d12018-08-02 18:12:50 +020082392018/08/02 : 1.9-dev1
8240 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
8241 - DOC: cache: update sections and fix some typos
8242 - BUILD/MINOR: deviceatlas: enable thread support
8243 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
8244 - BUG/MEDIUM: ssl: don't allocate shctx several time
8245 - BUG/MEDIUM: cache: bad computation of the remaining size
8246 - BUILD: checks: don't include server.h
8247 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
8248 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
8249 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
8250 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
8251 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
8252 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
8253 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
8254 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
8255 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
8256 - MINOR: config: report when "monitor fail" rules are misplaced
8257 - BUG/MINOR: mworker: fix validity check for the pipe FDs
8258 - BUG/MINOR: mworker: detach from tty when in daemon mode
8259 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
8260 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
8261 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
8262 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
8263 - BUG/MINOR: hpack: fix debugging output of pseudo header names
8264 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
8265 - BUG/MINOR: hpack: reject invalid header index
8266 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
8267 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
8268 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
8269 - BUG/MINOR: h2: try to abort closed streams as soon as possible
8270 - BUG/MINOR: h2: ":path" must not be empty
8271 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
8272 - BUG/MINOR: h2: the TE header if present may only contain trailers
8273 - BUG/MEDIUM: h2: enforce the per-connection stream limit
8274 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
8275 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
8276 - BUG/MINOR: h2: properly check PRIORITY frames
8277 - BUG/MINOR: h2: reject response pseudo-headers from requests
8278 - BUG/MEDIUM: h2: remove connection-specific headers from request
8279 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
8280 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
8281 - BUG/MINOR: action: Don't check http capture rules when no id is defined
8282 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
8283 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
8284 - BUG/MEDIUM: mworker: also close peers sockets in the master
8285 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
8286 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
8287 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
8288 - BUG/MEDIUM: h2: fix handling of end of stream again
8289 - MINOR: mworker: Update messages referencing exit-on-failure
8290 - MINOR: mworker: Improve wording in `void mworker_wait()`
8291 - CONTRIB: halog: Add help text for -s switch in halog program
8292 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
8293 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
8294 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
8295 - DOC: notifications: add precisions about thread usage
8296 - BUG/MEDIUM: lua/notification: memory leak
8297 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
8298 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
8299 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
8300 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
8301 - BUG/MEDIUM: h2: work around a connection API limitation
8302 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
8303 - MINOR: h2: store the demux padding length in the h2c struct
8304 - BUG/MEDIUM: h2: support uploading partial DATA frames
8305 - MINOR: h2: don't demand that a DATA frame is complete before processing it
8306 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
8307 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
8308 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
8309 - BUG/MEDIUM: h2: fix stream limit enforcement
8310 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
8311 - MINOR: sample: add len converter
8312 - BUG: MAJOR: lb_map: server map calculation broken
8313 - BUG: MINOR: http: don't check http-request capture id when len is provided
8314 - MINOR: sample: rename the "len" converter to "length"
8315 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
8316 - DOC/MINOR: intro: typo, wording, formatting fixes
8317 - MINOR: netscaler: respect syntax
8318 - MINOR: netscaler: remove the use of cip_magic only used once
8319 - MINOR: netscaler: rename cip_len to clarify its uage
8320 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
8321 - BUG/MAJOR: netscaler: address truncated CIP header detection
8322 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
8323 - MEDIUM: netscaler: do not analyze original IP packet size
8324 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
8325 - MINOR: spoe: add force-set-var option in spoe-agent configuration
8326 - CONTRIB: iprange: Fix compiler warning in iprange.c
8327 - CONTRIB: halog: Fix compiler warnings in halog.c
8328 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
8329 - MINOR: mux: add flags to describe a mux's capabilities
8330 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
8331 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
8332 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
8333 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
8334 - MINOR: http: adjust the list of supposedly cacheable methods
8335 - MINOR: http: update the list of cacheable status codes as per RFC7231
8336 - MINOR: http: start to compute the transaction's cacheability from the request
8337 - BUG/MINOR: http: do not ignore cache-control: public
8338 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
8339 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
8340 - MINOR: http: add a function to check request's cache-control header field
8341 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
8342 - BUG/MEDIUM: cache: replace old object on store
8343 - BUG/MEDIUM: cache: respect the request cache-control header
8344 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
8345 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
8346 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
8347 - BUG/MEDIUM: h2: properly handle and report some stream errors
8348 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
8349 - DOC/MINOR: configuration: typo, formatting fixes
8350 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
8351 - BUG/MEDIUM: mworker: don't close stdio several time
8352 - MINOR: don't close stdio anymore
8353 - BUG/MEDIUM: http: don't automatically forward request close
8354 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
8355 - MINOR: h2: add a function to report pseudo-header names
8356 - DEBUG: hpack: make hpack_dht_dump() expose the output file
8357 - DEBUG: hpack: add more traces to the hpack decoder
8358 - CONTRIB: hpack: add an hpack decoder
8359 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
8360 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
8361 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
8362 - CLEANUP: rbtree: remove
8363 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
8364 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
8365 - DOC: lua: Fix typos in comments of hlua_socket_receive
8366 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
8367 - BUG/MINOR: lua: Fix return value of Socket.settimeout
8368 - MINOR: dns: Handle SRV record weight correctly.
8369 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
8370 - MINOR: hathreads: add support for gcc < 4.7
8371 - BUILD/MINOR: ancient gcc versions atomic fix
8372 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
8373 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
8374 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
8375 - DOC: clarify the scope of ssl_fc_is_resumed
8376 - CONTRIB: debug: fix a few flags definitions
8377 - BUG/MINOR: poll: too large size allocation for FD events
8378 - MINOR: sample: add date_us sample
8379 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
8380 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
8381 - MINOR: global/threads: move cpu_map at the end of the global struct
8382 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
8383 - MINOR: global: add some global activity counters to help debugging
8384 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
8385 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
8386 - BUG/MEDIUM: fd: maintain a per-thread update mask
8387 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
8388 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
8389 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
8390 - BUG/MEDIUM: threads/mworker: fix a race on startup
8391 - BUG/MINOR: mworker: only write to pidfile if it exists
8392 - MINOR: threads: Fix build when we're not compiling with threads.
8393 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
8394 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
8395 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
8396 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
8397 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
8398 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
8399 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
8400 - CLEANUP: sample: Fix comment encoding of sample.c
8401 - CLEANUP: sample: Fix outdated comment about sample casts functions
8402 - BUG/MINOR: sample: Fix output type of c_ipv62ip
8403 - CLEANUP: Fix typo in ARGT_MSK6 comment
8404 - CLEANUP: standard: Use len2mask4 in str2mask
8405 - MINOR: standard: Add str2mask6 function
8406 - MINOR: config: Add support for ARGT_MSK6
8407 - MEDIUM: sample: Add IPv6 support to the ipmask converter
8408 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
8409 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
8410 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
8411 - MINOR: fd: don't report maxfd in alert messages
8412 - MEDIUM: polling: start to move maxfd computation to the pollers
8413 - CLEANUP: fd/threads: remove the now unused fdtab_lock
8414 - MINOR: poll: more accurately compute the new maxfd in the loop
8415 - CLEANUP: fd: remove the unused "new" field
8416 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
8417 - MEDIUM: select: make use of hap_fd_* functions
8418 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
8419 - MEDIUM: select: don't use the old FD state anymore
8420 - MEDIUM: poll: don't use the old FD state anymore
8421 - MINOR: fd: pass the iocb and owner to fd_insert()
8422 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
8423 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
8424 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
8425 - DOC: don't suggest using http-server-close
8426 - MINOR: introduce proxy-v2-options for send-proxy-v2
8427 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
8428 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
8429 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
8430 - MINOR: spoe: Always link a SPOE context with the applet processing it
8431 - MINOR: spoe: Replace sending_rate by a frequency counter
8432 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
8433 - MEDIUM: spoe: Use an ebtree to manage idle applets
8434 - MINOR: spoa_example: Count the number of frames processed by each worker
8435 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
8436 - MINOR: init: make stdout unbuffered
8437 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
8438 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
8439 - MINOR: compiler: introduce offsetoff().
8440 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
8441 - MINOR: threads: add test and set/reset operations
8442 - MINOR: pools/threads: Implement lockless memory pools.
8443 - MAJOR: fd/threads: Make the fdcache mostly lockless.
8444 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
8445 - MAJOR: fd: compute the new fd polling state out of the fd lock
8446 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
8447 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
8448 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
8449 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
8450 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
8451 - MEDIUM: fd: make updt_fd_polling() use atomics
8452 - MEDIUM: poller: use atomic ops to update the fdtab mask
8453 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
8454 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
8455 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
8456 - MINOR: fd: reorder fd_add_to_fd_list()
8457 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
8458 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
8459 - MINOR: init: emit warning when -sf/-sd cannot parse argument
8460 - BUILD: fd/threads: fix breakage build breakage without threads
8461 - DOC: Describe routing impact of using interface keyword on bind lines
8462 - DOC: Mention -Ws in the list of available options
8463 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
8464 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
8465 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
8466 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
8467 - BUILD/MINOR: memory: stdint is needed for uintptr_t
8468 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
8469 - DOC: lua: new prototype for function "register_action()"
8470 - DOC: cfgparse: Warn on option (tcp|http)log in backend
8471 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
8472 - MINOR: sample: add a new "concat" converter
8473 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
8474 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
8475 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
8476 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
8477 - CLEANUP: cfgparse: Remove unused label end
8478 - CLEANUP: spoe: Remove unused label retry
8479 - CLEANUP: h2: Remove unused labels from mux_h2.c
8480 - CLEANUP: pools: Remove unused end label in memory.h
8481 - CLEANUP: standard: Fix typo in IPv6 mask example
8482 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
8483 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
8484 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
8485 - MINOR: stats: display the number of threads in the statistics.
8486 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
8487 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
8488 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
8489 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
8490 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
8491 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
8492 - MINOR: ssl: extract full pkey info in load_certificate
8493 - MINOR: ssl: add ssl_sock_get_pkey_algo function
8494 - MINOR: ssl: add ssl_sock_get_cert_sig function
8495 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
8496 - MINOR: connection: add proxy-v2-options authority
8497 - MINOR: systemd: Add section for SystemD sandboxing to unit file
8498 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
8499 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
8500 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
8501 - MINOR: h2: provide and use h2s_detach() and h2s_free()
8502 - MEDIUM: h2: use a single buffer allocator
8503 - MINOR/BUILD: fix Lua build on Mac OS X
8504 - BUILD/MINOR: fix Lua build on Mac OS X (again)
8505 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
8506 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
8507 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
8508 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
8509 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
8510 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
8511 - CLEANUP: ssl: Remove a duplicated #include
8512 - CLEANUP: cli: Remove a leftover debug message
8513 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
8514 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
8515 - BUG/MINOR: force-persist and ignore-persist only apply to backends
8516 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
8517 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
8518 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
8519 - TESTS: Add a testcase for multi-port + multi-server listener issue
8520 - CLEANUP: dns: remove duplicate code in src/dns.c
8521 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
8522 - BUG/MINOR: cli: Ensure all command outputs end with a LF
8523 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
8524 - BUILD: ssl: Fix build with OpenSSL without NPN capability
8525 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
8526 - BUG/MINOR: lua: return bad error messages
8527 - CLEANUP: lua/syntax: lua is a name and not an acronym
8528 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
8529 - BUG/MINOR: tcp-check: use the server's service port as a fallback
8530 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
8531 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
8532 - BUILD/BUG: enable -fno-strict-overflow by default
8533 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
8534 - DOC: log: more than 2 log servers are allowed
8535 - MINOR: hash: add new function hash_crc32c
8536 - MINOR: proxy-v2-options: add crc32c
8537 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
8538 - REORG: compact "struct server"
8539 - MINOR: samples: add crc32c converter
8540 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
8541 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
8542 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
8543 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
8544 - BUG/MINOR: lua: the function returns anything
8545 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
8546 - CLEANUP: lua: typo fix in comments
8547 - BUILD/MINOR: fix build when USE_THREAD is not defined
8548 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
8549 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
8550 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
8551 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
8552 - BUILD/MINOR: cli: fix a build warning introduced by last commit
8553 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
8554 - MINOR: h2: always call h2s_detach() in h2_detach()
8555 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
8556 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
8557 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
8558 - BUILD/MINOR: threads: always export thread_sync_io_handler()
8559 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
8560 - MINOR: h2: implement a basic "show_fd" function
8561 - MINOR: cli: report cache indexes in "show fd"
8562 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
8563 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
8564 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
8565 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
8566 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
8567 - BUG/MINOR: cache: fix "show cache" output
8568 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
8569 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
8570 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
8571 - BUG/MINOR: spoe: Register the variable to set when an error occurred
8572 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
8573 - MINOR: spoe: Add metrics in to know time spent in the SPOE
8574 - MINOR: spoe: Add options to store processing times in variables
8575 - MINOR: log: move 'log' keyword parsing in dedicated function
8576 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
8577 - MINOR: spoe: Add loggers dedicated to the SPOE agent
8578 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
8579 - MINOR: spoe: use agent's logger to log SPOE messages
8580 - MINOR: spoe: Add counters to log info about SPOE agents
8581 - BUG/MAJOR: cache: always initialize newly created objects
8582 - MINOR: servers: Support alphanumeric characters for the server templates names
8583 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
8584 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
8585 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
8586 - MINOR: proxy: Add fe_defbe fetcher
8587 - MINOR: config: Warn if resolvers has no nameservers
8588 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
8589 - MINOR: cli: Ensure the CLI always outputs an error when it should
8590 - MEDIUM: sample: Extend functionality for field/word converters
8591 - MINOR: export localpeer as an environment variable
8592 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
8593 - BUILD: sample: avoid build warning in sample.c
8594 - BUG/CRITICAL: h2: fix incorrect frame length check
8595 - DOC: lua: update the links to the config and Lua API
8596 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
8597 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
8598 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
8599 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
8600 - MINOR: h2: detect presence of CONNECT and/or content-length
8601 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
8602 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
8603 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
8604 - MEDIUM: cli: Add payload support
8605 - MINOR: map: Add payload support to "add map"
8606 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
8607 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
8608 - MINOR: sample: Add strcmp sample converter
8609 - MINOR: http: Add support for 421 Misdirected Request
8610 - BUG/MINOR: config: disable http-reuse on TCP proxies
8611 - MINOR: ssl: disable SSL sample fetches when unsupported
8612 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
8613 - BUG/MINOR: checks: Fix check->health computation for flapping servers
8614 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
8615 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
8616 - MINOR: backend: implement random-based load balancing
8617 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
8618 - MINOR: lua: Add server name & puid to LUA Server class.
8619 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
8620 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
8621 - BUG/MEDIUM: task: Don't free a task that is about to be run.
8622 - MINOR: fd: Make the lockless fd list work with multiple lists.
8623 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
8624 - MINOR: pollers: move polled_mask outside of struct fdtab.
8625 - BUG/MINOR: lua: schedule socket task upon lua connect()
8626 - BUG/MINOR: lua: ensure large proxy IDs can be represented
8627 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
8628 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
8629 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
8630 - BUG/MEDIUM: ssl: properly protect SSL cert generation
8631 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
8632 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
8633 - BUG/MEDIUM: spoe: Flags are not encoded in network order
8634 - CLEANUP: spoe: Remove unused variables the agent structure
8635 - DOC: spoe: fix a typo
8636 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
8637 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
8638 - DOC: add some description of the pending rework of the buffer structure
8639 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
8640 - MINOR: lua: Improve error message
8641 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
8642 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
8643 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
8644 - BUG/BUILD: threads: unbreak build without threads
8645 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
8646 - BUG/MEDIUM: lua/socket: Length required read doesn't work
8647 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
8648 - MAJOR: tasks: Create a per-thread runqueue.
8649 - MAJOR: tasks: Introduce tasklets.
8650 - MINOR: tasks: Make the number of tasks to run at once configurable.
8651 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
8652 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
8653 - MINOR: http: Log warning if (add|set)-header fails
8654 - DOC: management: add the new wrew stats column
8655 - MINOR: stats: also report the failed header rewrites warnings on the stats page
8656 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
8657 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
8658 - MINOR: task: Also consider the task list size when getting global tasks.
8659 - MINOR: dns: Implement `parse-resolv-conf` directive
8660 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
8661 - MINOR: task/notification: Is notifications registered ?
8662 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
8663 - BUG/MAJOR: lua: Dead lock with sockets
8664 - BUG/MEDIUM: lua/socket: Notification error
8665 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
8666 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
8667 - DOC: contrib/modsecurity: few typo fixes
8668 - DOC: SPOE.txt: fix a typo
8669 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
8670 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
8671 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
8672 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
8673 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
8674 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
8675 - MINOR: task: Fix a compiler warning by adding a cast.
8676 - MINOR: stats: also report the nice and number of calls for applets
8677 - MINOR: applet: assign the same nice value to a new appctx as its owner task
8678 - MINOR: task: Fix compiler warning.
8679 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
8680 - MINOR: tasks: Don't define rqueue if we're building without threads.
8681 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
8682 - MINOR: lua: Increase debug information
8683 - BUG/MEDIUM: threads: handle signal queue only in thread 0
8684 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
8685 - BUG/MINOR: signals: ha_sigmask macro for multithreading
8686 - BUG/MAJOR: map: fix a segfault when using http-request set-map
8687 - DOC: regression testing: Add a short starting guide.
8688 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
8689 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
8690 - BUG/MINOR: lua: Segfaults with wrong usage of types.
8691 - BUG/MAJOR: ssl: Random crash with cipherlist capture
8692 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
8693 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
8694 - MINOR: tests: First regression testing file.
8695 - MINOR: reg-tests: Add reg-tests/README file.
8696 - MINOR: reg-tests: Add a few regression testing files.
8697 - DOC: Add new REGTEST tag info about reg testing.
8698 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
8699 - MINOR: Some spelling cleanup in the comments.
8700 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
8701 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
8702 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
8703 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
8704 - REGTEST/MINOR: Add levels to reg-tests target.
8705 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
8706 - BUG/BUILD: threads: unbreak build without threads
8707 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
8708 - MINOR: stick-tables: make stktable_release() do nothing on NULL
8709 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
8710 - MINOR: startup: change session/process group settings
8711 - MINOR: systemd: consider exit status 143 as successful
8712 - REGTEST/MINOR: Wrong URI syntax.
8713 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
8714 - CLEANUP: dns: inacurate comment about prefered IP score
8715 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
8716 - MINOR: dns: new DNS options to allow/prevent IP address duplication
8717 - REGTEST/MINOR: Unexpected curl URL globling.
8718 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
8719 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
8720 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
8721 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
8722 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
8723 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
8724 - MINOR: tasklet: Set process to NULL.
8725 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
8726 - MINOR: buffer: switch buffer sizes and offsets to size_t
8727 - MINOR: buffer: add a few basic functions for the new API
8728 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
8729 - MINOR: buffer: Add b_set_data().
8730 - MINOR: buffer: introduce b_realign_if_empty()
8731 - MINOR: compression: pass the channel to http_compression_buffer_end()
8732 - MINOR: channel: add a few basic functions for the new buffer API
8733 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
8734 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
8735 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
8736 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
8737 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
8738 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
8739 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
8740 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
8741 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
8742 - MINOR: buffer: remove bi_ptr()
8743 - MINOR: buffer: remove bo_ptr()
8744 - MINOR: buffer: remove bo_end()
8745 - MINOR: buffer: remove bi_end()
8746 - MINOR: buffer: remove bo_contig_data()
8747 - MINOR: buffer: merge b{i,o}_contig_space()
8748 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
8749 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
8750 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
8751 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
8752 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
8753 - MINOR: h2: clarify the fact that the send functions are unsigned
8754 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
8755 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
8756 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
8757 - MINOR: h1: make h1_measure_trailers() use an offset and a count
8758 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
8759 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
8760 - MINOR: buffer: get rid of b_end() and b_to_end()
8761 - MINOR: buffer: make b_getblk_nc() take const pointers
8762 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
8763 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
8764 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
8765 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
8766 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
8767 - MINOR: connection: add a flags argument to rcv_buf()
8768 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
8769 - MINOR: buffer: get rid of b_ptr() and convert its last users
8770 - MINOR: buffer: use b_room() to determine available space in a buffer
8771 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
8772 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
8773 - MINOR: buffer: make bo_putchar() use b_tail()
8774 - MINOR: buffer: replace buffer_full() with channel_full()
8775 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
8776 - MINOR: buffer: replace buffer_pending() with ci_data()
8777 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
8778 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
8779 - MINOR: buffer: use b_orig() to replace most references to b->data
8780 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
8781 - MINOR: channel: remove almost all references to buf->i and buf->o
8782 - MINOR: channel: Add co_set_data().
8783 - MEDIUM: channel: adapt to the new buffer API
8784 - MINOR: checks: adapt to the new buffer API
8785 - MEDIUM: h2: update to the new buffer API
8786 - MINOR: buffer: remove unused bo_add()
8787 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
8788 - MINOR: stats: adapt to the new buffers API
8789 - MINOR: cli: use the new buffer API
8790 - MINOR: cache: use the new buffer API
8791 - MINOR: stream-int: use the new buffer API
8792 - MINOR: stream: use wrappers instead of directly manipulating buffers
8793 - MINOR: backend: use new buffer API
8794 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
8795 - MINOR: filters: convert to the new buffer API
8796 - MINOR: payload: convert to the new buffer API
8797 - MEDIUM: h1: port to new buffer API.
8798 - MINOR: flt_trace: adapt to the new buffer API
8799 - MEDIUM: compression: start to move to the new buffer API
8800 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
8801 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
8802 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
8803 - MAJOR: start to change buffer API
8804 - MINOR: buffer: remove the check for output on b_del()
8805 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
8806 - MINOR: buffer: rename the "data" field to "area"
8807 - MEDIUM: buffers: move "output" from struct buffer to struct channel
8808 - MINOR: buffer: replace bi_fast_delete() with b_del()
8809 - MINOR: buffer: replace b{i,o}_put* with b_put*
8810 - MINOR: buffer: add a new file for ist + buffer manipulation functions
8811 - MINOR: checks: use b_putist() instead of b_putstr()
8812 - MINOR: buffers: remove b_putstr()
8813 - CLEANUP: buffer: minor cleanups to buffer.h
8814 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
8815 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
8816 - MINOR: buffer: rename the data length member to '->data'
8817 - MAJOR: buffer: finalize buffer detachment
8818 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
8819 - MAJOR: chunks: replace struct chunk with struct buffer
8820 - DOC: buffers: document the new buffers API
8821 - DOC: buffers: remove obsolete docs about buffers
8822 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
8823 - MINOR: connections/mux: Add a new "subscribe" method.
8824 - MEDIUM: connections/mux: Revamp the send direction.
8825 - MINOR: connection: simplify subscription by adding a registration function
8826 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
8827 - BUG/MINOR: build: Fix compilation with debug mode enabled
8828 - BUILD: Generate sha256 checksums in publish-release
8829 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
8830 - MINOR: debug: Add checks for conn_stream flags
8831 - MINOR: ist: Add the function isteqi
8832 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
8833 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
8834 - MINOR: buffers: simplify b_contig_space()
8835 - MINOR: buffers: split b_putblk() into __b_putblk()
8836 - MINOR: buffers: add b_xfer() to transfer data between buffers
8837 - DOC: add some design notes about the new layering model
8838 - MINOR: conn_stream: add a new CS_FL_REOS flag
8839 - MINOR: conn_stream: add an rx buffer to the conn_stream
8840 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
8841 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
8842 - MINOR: h2: make each H2 stream support an intermediary input buffer
8843 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
8844 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
8845 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
8846 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
8847 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
8848 - MEDIUM: h2: perform a single call to the data layer in demux()
8849 - MEDIUM: h2: don't call data_cb->recv() anymore
8850 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
8851 - MEDIUM: h2: use the default conn_stream's receive function
8852 - DOC: add more design feedback on the new layering model
8853 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
8854 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
8855 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
8856 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
8857 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
8858 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
8859 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
8860 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
8861 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
8862 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
8863 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
8864 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
8865 - MINOR: queue: centralize dequeuing code a bit better
8866 - MEDIUM: queue: make pendconn_free() work on the stream instead
8867 - DOC: queue: document the expected locking model for the server's queue
8868 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
8869 - MINOR: queue: use a distinct variable for the assigned server and the queue
8870 - MINOR: queue: implement pendconn queue locking functions
8871 - MEDIUM: queue: get rid of the pendconn lock
8872 - MINOR: tasks: Make active_tasks_mask volatile.
8873 - MINOR: tasks: Make global_tasks_mask volatile.
8874 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
8875 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
8876 - BUG/MEDIUM: threads/sync: use sched_yield when available
8877 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
8878 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
8879 - BUG/MINOR: config: stick-table is not supported in defaults section
8880 - BUILD/MINOR: threads: unbreak build with threads disabled
8881 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
8882 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
8883 - MINOR: threads: move "nbthread" parsing to hathreads.c
8884 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
8885 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
8886 - BUILD/MINOR: compiler: fix offsetof() on older compilers
8887 - SCRIPTS: git-show-backports: add missing quotes to "echo"
8888 - MINOR: threads: add more consistency between certain variables in no-thread case
8889 - MEDIUM: hathreads: implement a more flexible rendez-vous point
8890 - BUG/MEDIUM: cli: make "show fd" thread-safe
8891
Willy Tarreaub3066502017-11-26 19:50:17 +010088922017/11/26 : 1.9-dev0
8893
Willy Tarreau0b787922017-11-26 19:25:23 +010088942017/11/26 : 1.8.0
8895 - BUG/MEDIUM: stream: don't automatically forward connect nor close
8896 - BUG/MAJOR: stream: ensure analysers are always called upon close
8897 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
8898 - MEDIUM: mworker: Add systemd `Type=notify` support
8899 - BUG/MEDIUM: cache: free callback to remove from tree
8900 - CLEANUP: cache: remove unused struct
8901 - MEDIUM: cache: enable the HTTP analysers
8902 - CLEANUP: cache: remove wrong comment
8903 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
8904 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
8905 - MINOR: threads/atomic: implement pl_mb() in asm on x86
8906 - MINOR: threads/atomic: implement pl_bts() on non-x86
8907 - MINOR: threads/build: atomic: replace the few inlines with macros
8908 - BUILD: threads/plock: fix a build issue on Clang without optimization
8909 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
8910 - BUILD: compiler: add a new type modifier __maybe_unused
8911 - BUILD: h2: mark some inlined functions "unused"
8912 - BUILD: server: check->desc always exists
8913 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
8914 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
8915 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
8916 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
8917 - BUG/MINOR: systemd: ignore daemon mode
8918 - CONTRIB: spoa_example: allow to compile outside HAProxy.
8919 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
8920 - CONTRIB: spoa_example: remove last dependencies on type "sample"
8921 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
8922 - CLEANUP: cache: reorder includes
8923 - MEDIUM: shctx: use unsigned int for len and block_count
8924 - MEDIUM: cache: "show cache" on the cli
8925 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
8926 - BUG/MEDIUM: cache: refcount forbids to free the objects
8927 - BUG/MEDIUM: cache fix cli_kws structure
8928 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
8929 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
8930 - MINOR: ssl: Don't disable early data handling if we could not write.
8931 - MINOR: pools: prepare functions to override malloc/free in pools
8932 - MINOR: pools: implement DEBUG_UAF to detect use after free
8933 - BUG/MEDIUM: threads/time: fix time drift correction
8934 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
8935 - MINOR: sample: Add "thread" sample fetch
8936 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
8937 - BUG/MINOR: stream: fix tv_request calculation for applets
8938 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
8939 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
8940 - MINOR: ssl: Handle reading early data after writing better.
8941 - MINOR: mux: Make sure every string is woken up after the handshake.
8942 - MEDIUM: cache: store sha1 for hashing the cache key
8943 - MINOR: http: implement the "http-request reject" rule
8944 - MINOR: h2: send RST_STREAM before GOAWAY on reject
8945 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
8946 - MINOR: h2: make use of client-fin timeout after GOAWAY
8947 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
8948 - MINOR: ssl: Handle early data with BoringSSL
8949 - BUG/MEDIUM: stream: always release the stream-interface on abort
8950 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
8951 - MINOR: cache: move the refcount decrease in the applet release
8952 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
8953 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
8954 - MINOR: config: Slightly change how parse_process_number works
8955 - MINOR: config: Export parse_process_number and use it wherever it's applicable
8956 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
8957 - MINOR: config: Add auto-increment feature for cpu-map
8958 - MINOR: config: Support partial ranges in cpu-map directive
8959 - MINOR:: config: Remove thread-map directive
8960 - MINOR: config: Add the threads support in cpu-map directive
8961 - MINOR: config: Add threads support for "process" option on "bind" lines
8962 - MEDIUM: listener: Bind listeners on a thread subset if specified
8963 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
8964 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
8965 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
8966 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
8967 - DOC: update the roadmap file with the latest changes merged in 1.8
8968 - DOC: fix mangled version in peers protocol documentation
8969 - DOC: add initial peers protovol v2.0 documentation.
8970 - DOC: mention William as maintainer of the cache and master-worker
8971 - DOC: add Christopher and Emeric as maintainers of the threads
8972 - MINOR: cache: replace a fprint() by an abort()
8973 - MEDIUM: cache: max-age configuration keyword
8974 - DOC: explain HTTP2 timeout behavior
8975 - DOC: cache: configuration and management
8976 - MAJOR: mworker: exits the master on failure
8977 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
8978 - MINOR: task: keep a pointer to the currently running task
8979 - MINOR: task: align the rq and wq locks
8980 - MINOR: fd: cache-align fdtab and fdcache locks
8981 - MINOR: buffers: cache-align buffer_wq_lock
8982 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
8983 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
8984 - CLEANUP: checks: remove 16 bytes of holes in struct check
8985 - CLEANUP: cache: more efficiently pack the struct cache
8986 - CLEANUP: fd: place the lock at the beginning of struct fdtab
8987 - CLEANUP: pools: align pools on a cache line
8988 - DOC: config: add a few bits about how to configure HTTP/2
8989 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
8990 - BUILD: Makefile: reorder object files by size
8991
Willy Tarreaucfe14662017-11-19 09:55:29 +010089922017/11/19 : 1.8-rc4
8993 - BUG/MEDIUM: cache: does not cache if no Content-Length
8994 - BUILD: thread/pipe: fix build without threads
8995 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
8996 - MINOR: debug/flags: Add missing flags
8997 - MINOR: threads: Use __decl_hathreads to declare locks
8998 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
8999 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
9000 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
9001 - MINOR: ebtree/scope: add a function to find next node from a parent
9002 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
9003 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
9004 - BUG/MEDIUM: cache: use msg->sov to forward header
9005 - MINOR: cache: forward data with headers
9006 - MINOR: cache: disable cache if shctx_row_data_append fail
9007 - BUG/MINOR: threads: tid_bit must be a unsigned long
9008 - CLEANUP: tasks: Remove useless double test on rq_next
9009 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
9010 - MINOR: tools: add a function to dump a scope-aware tree to a file
9011 - MINOR: tools: improve the DOT dump of the ebtree
9012 - MINOR: tools: emphasize the node being worked on in the tree dump
9013 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
9014 - DOC: peers: Add a first version of peers protocol v2.1.
9015 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
9016 - MINOR: mworker: display an accurate error when the reexec fail
9017 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
9018 - BUG/MEDIUM: mworker: does not deinit anymore
9019 - BUG/MEDIUM: mworker: does not close inherited FD
9020 - MINOR: tests: add a python wrapper to test inherited fd
9021 - BUG/MINOR: Allocate the log buffers before the proxies startup
9022 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
9023 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
9024 - MINOR: applets: Use a bitfield to track applets activity per-thread
9025 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
9026 - MEDIUM: applets: Don't process more than 200 active applets at once
9027 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
9028 - MINOR: SSL: Store the ASN1 representation of client sessions.
9029 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
9030 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
9031
Willy Tarreau34650d52017-11-11 09:06:48 +010090322017/11/11 : 1.8-rc3
9033 - BUILD: use MAXPATHLEN instead of NAME_MAX.
9034 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
9035 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
9036 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
9037 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
9038 - CLEANUP: checks: remove return statements in locked functions
9039 - BUG/MINOR: cli: add severity in "set server addr" parser
9040 - CLEANUP: server: get rid of return statements in the CLI parser
9041 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
9042 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
9043 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
9044 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
9045 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
9046 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
9047 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
9048 - BUG/MEDIUM: threads: don't try to free build option message on exit
9049 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
9050 - MINOR: add master-worker in the warning about nbproc
9051 - MINOR: mworker: allow pidfile in mworker + foreground
9052 - MINOR: mworker: write parent pid in the pidfile
9053 - MINOR: mworker: do not store child pid anymore in the pidfile
9054 - MINOR: ebtree: implement the scope-aware functions for eb32
9055 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
9056 - MINOR: ebtree: update the eb32sc parent node's scope on delete
9057 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
9058 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
9059 - MAJOR: task: make use of the scope-aware ebtree functions
9060 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
9061 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
9062 - MINOR: threads: use faster locks for the spin locks
9063 - MINOR: tasks: only visit filled task slots after processing them
9064 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
9065 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
9066 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
9067 - DOC: Add note about encrypted password CPU usage
9068 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
9069 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
9070 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
9071 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
9072 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
9073 - BUG/MEDIUM: h2: fix some wrong error codes on connections
9074 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
9075 - BUILD: enable USE_THREAD for Solaris build.
9076 - BUG/MEDIUM: h2: don't close the connection is there are data left
9077 - MINOR: h2: don't re-enable the connection's task when we're closing
9078 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
9079 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
9080 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
9081 - BUG/MINOR: h2: don't send GOAWAY on failed response
9082 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
9083 - BUG/MINOR: comp: fix compilation warning compiling without compression.
9084 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
9085 - BUG/MAJOR: threads/tasks: fix the scheduler again
9086 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
9087 - MINOR: ssl: Handle session resumption with TLS 1.3
9088 - MINOR: ssl: Spell 0x10101000L correctly.
9089 - MINOR: ssl: Handle sending early data to server.
9090 - BUILD: ssl: fix build of backend without ssl
9091 - BUILD: shctx: do not depend on openssl anymore
9092 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
9093 - BUG/MEDIUM: h2: reject non-3-digit status codes
9094 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
9095 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
9096 - BUG/MEDIUM: h2: split the function to send RST_STREAM
9097 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
9098 - MINOR: tools: don't use unlikely() in hex2i()
9099 - BUG/MEDIUM: h2: support orphaned streams
9100 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
9101 - CLEANUP: mux: remove the unused "release()" function
9102 - MINOR: cli: make "show fd" report the fd's thread mask
9103 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
9104 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
9105 - MEDIUM: http: always reject the "PRI" method
9106
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +010091072017/11/03 : 1.8-rc2
9108 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
9109 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
9110 - MINOR: mux: Only define pipe functions on linux.
9111 - MINOR: cache: Remove useless test for nonzero.
9112 - MINOR: cache: Don't confuse act_return and act_parse_ret.
9113 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
9114 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
9115 - BUG/MAJOR: fix deadlock on healthchecks.
9116 - BUG/MINOR: thread: fix a typo in the debug code
9117 - BUILD: shctx: allow to be built without openssl
9118 - BUG/MEDIUM: cache: don't try to resolve wrong filters
9119 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
9120 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
9121 - BUG/MINOR: stdarg.h inclusion
9122 - BUG/MINOR: dns: fix missing lock protection on server.
9123 - BUG/MINOR: lua: fix missing lock protection on server.
9124 - BUILD: enable USE_THREAD for OpenBSD build.
9125 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
9126 - MINOR: thread: report multi-thread support in haproxy -vv
9127
Willy Tarreau901f75c2017-10-31 23:18:29 +010091282017/10/31 : 1.8-rc1
9129 - BUG/MEDIUM: server: Allocate tmptrash before using it.
9130 - CONTRIB: trace: add the possibility to place trace calls in the code
9131 - CONTRIB: trace: try to display the function's return value on exit
9132 - CONTRIB: trace: report the base name only for file names
9133 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
9134 - MINOR: ssl: build with recent BoringSSL library
9135 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
9136 - BUG/MINOR: cli: restore "set ssl tls-key" command
9137 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
9138 - IMPORT: sha1: import SHA1 functions
9139 - MINOR: sample: add the sha1 converter
9140 - MINOR: sample: add the hex2i converter
9141 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
9142 - MINOR: ssl: don't abort after sending 16kB
9143 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
9144 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
9145 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
9146 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
9147 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
9148 - BUG/MINOR: checks: Don't forget to release the connection on error case.
9149 - MINOR: buffer: add the buffer input manipulation functions
9150 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
9151 - MEDIUM: cfgparse: post section callback
9152 - MEDIUM: cfgparse: post parsing registration
9153 - MINOR: lua: add uuid to the Class Proxy
9154 - MINOR: hlua: Add regex class
9155 - MINOR: http: Mark the 425 code as "Too Early".
9156 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
9157 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
9158 - MINOR: ssl: generated certificate is missing in switchctx early callback
9159 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
9160 - BUILD: Makefile: disable -Wunused-label
9161 - MINOR: ssl/proto_http: Add keywords to take care of early data.
9162 - BUG/MINOR: lua: const attribute of a string is overridden
9163 - MINOR: ssl: Don't abuse ssl_options.
9164 - MINOR: update proxy-protocol-v2 #define
9165 - MINOR: merge ssl_sock_get calls for log and ppv2
9166 - MINOR: add ALPN information to send-proxy-v2
9167 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
9168 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
9169 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
9170 - REORG: shctx: move lock functions and struct
9171 - MEDIUM: shctx: allow the use of multiple shctx
9172 - REORG: shctx: move ssl functions to ssl_sock.c
9173 - MEDIUM: shctx: separate ssl and shctx
9174 - MINOR: shctx: rename lock functions
9175 - MINOR: h1: store the status code in the H1 message
9176 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
9177 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
9178 - MINOR: action: Add trk_idx inline function
9179 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
9180 - MINOR: action: Add a function pointer in act_rule struct to check its validity
9181 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
9182 - MINOR: action: Add a functions to check http capture rules
9183 - MINOR: action: Factorize checks on rules calling check_ptr if defined
9184 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
9185 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
9186 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
9187 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
9188 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
9189 - MINOR: spoe: Move message encoding in its own function
9190 - MINOR: spoe: Add a type to qualify the message list during encoding
9191 - MINOR: spoe: Add a generic function to encode a list of SPOE message
9192 - MEDIUM: spoe/rules: Process "send-spoe-group" action
9193 - BUG/MINOR: dns: Fix CLI keyword declaration
9194 - MAJOR: dns: Refactor the DNS code
9195 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
9196 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
9197 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
9198 - MINOR: standard: Add memvprintf function
9199 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
9200 - MINOR: cli: Add "show startup-logs" command
9201 - MINOR: startup: Extend the scope the MODE_STARTING flag
9202 - MINOR: threads: Prepare makefile to link with pthread
9203 - MINOR: threads: Add THREAD_LOCAL macro
9204 - MINOR: threads: Add atomic-ops and plock includes in import dir
9205 - MEDIUM: threads: Add hathreads header file
9206 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
9207 - MINOR: threads: Add nbthread parameter
9208 - MEDIUM: threads: Adds a set of functions to handle sync-point
9209 - MAJOR: threads: Start threads to experiment multithreading
9210 - MINOR: threads: Define the sync-point inside run_poll_loop
9211 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
9212 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
9213 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
9214 - MEDIUM: threads/logs: Make logs thread-safe
9215 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
9216 - MAJOR: threads/fd: Make fd stuffs thread-safe
9217 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
9218 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
9219 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
9220 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
9221 - WIP: SQUASH WITH SYNC POINT
9222 - MAJOR: threads/task: handle multithread on task scheduler
9223 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
9224 - MEDIUM: threads/listeners: Make listeners thread-safe
9225 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
9226 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
9227 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
9228 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
9229 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
9230 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
9231 - MINOR: threads/sample: Change temp_smp into a thread local variable
9232 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
9233 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
9234 - MAJOR: threads/applet: Handle multithreading for applets
9235 - MAJOR: threads/peers: Make peers thread safe
9236 - MAJOR: threads/buffer: Make buffer wait queue thread safe
9237 - MEDIUM: threads/stream: Make streams list thread safe
9238 - MAJOR: threads/ssl: Make SSL part thread-safe
9239 - MEDIUM: threads/queue: Make queues thread-safe
9240 - MAJOR: threads/map: Make acls/maps thread safe
9241 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
9242 - MEDIUM: thread/vars: Make vars thread-safe
9243 - MEDIUM: threads/filters: Add init/deinit callback per thread
9244 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
9245 - MEDIUM: threads/compression: Make HTTP compression thread-safe
9246 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
9247 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
9248 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
9249 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
9250 - MEDIUM: threads/xref: Convert xref function to a thread safe model
9251 - MEDIUM: threads/tasks: Add lock around notifications
9252 - MEDIUM: thread/spoe: Make the SPOE thread-safe
9253 - MEDIUM: thread/dns: Make DNS thread-safe
9254 - MINOR: threads: Add thread-map config parameter in the global section
9255 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
9256 - MINOR: threads/checks: Set the task process_mask when a check is executed
9257 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
9258 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
9259 - MINOR: threads: Don't start when device a detection module is used
9260 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
9261 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
9262 - MAJOR: threads: Offically enable the threads support in HAProxy
9263 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
9264 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
9265 - BUILD: stick-tables: silence an uninitialized variable warning
9266 - BUG/MINOR: dns: Fix SRV records with the new thread code.
9267 - MINOR: ssl: Remove the global allow-0rtt option.
9268 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
9269 - CLEANUP: threads: rename process_mask to thread_mask
9270 - MINOR: h1: add a function to measure the trailers length
9271 - MINOR: threads: add a portable barrier for threads and non-threads
9272 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
9273 - BUG/MEDIUM: threads: Initialize the sync-point
9274 - MEDIUM: connection: start to introduce a mux layer between xprt and data
9275 - MINOR: connection: implement alpn registration of muxes
9276 - MINOR: mux: register the pass-through mux for any ALPN string
9277 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
9278 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
9279 - MINOR: connection: introduce conn_stream
9280 - MINOR: mux: add more methods to mux_ops
9281 - MINOR: connection: introduce the conn_stream manipulation functions
9282 - MINOR: mux_pt: implement remaining mux_ops methods
9283 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
9284 - MINOR: connection: make conn_stream users also check for per-stream error flag
9285 - MINOR: conn_stream: new shutr/w status flags
9286 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
9287 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
9288 - MINOR: connection: add cs_close() to close a conn_stream
9289 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
9290 - MEDIUM: connection: replace conn_full_close() with cs_close()
9291 - MEDIUM: connection: make mux->detach() release the connection
9292 - MEDIUM: stream: do not forcefully close the client connection anymore
9293 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
9294 - MEDIUM: connection: add a destroy callback
9295 - MINOR: session: release the listener with the session, not the stream
9296 - MEDIUM: session: make use of the connection's destroy callback
9297 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
9298 - MINOR: hpack: implement the HPACK Huffman table decoder
9299 - MINOR: hpack: implement the header tables management
9300 - MINOR: hpack: implement the decoder
9301 - MEDIUM: hpack: implement basic hpack encoding
9302 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
9303 - MINOR: h2: create a very minimalistic h2 mux
9304 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
9305 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
9306 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
9307 - MINOR: h2: create the h2c struct and allocate its pool
9308 - MINOR: h2: create the h2s struct and the associated pool
9309 - MINOR: h2: handle two extra stream states for errors
9310 - MINOR: h2: add a frame header descriptor for incoming frames
9311 - MEDIUM: h2: allocate and release the h2c context on connection init/end
9312 - MEDIUM: h2: implement basic recv/send/wake functions
9313 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
9314 - MEDIUM: h2: implement the mux buffer allocator
9315 - MINOR: h2: add the connection and stream flags listing the causes for blocking
9316 - MINOR: h2: add function h2s_id() to report a stream's ID
9317 - MINOR: h2: small function to know when the mux is busy
9318 - MINOR: h2: new function h2c_error to mark an error on the connection
9319 - MINOR: h2: new function h2s_error() to mark an error on a stream
9320 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
9321 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
9322 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
9323 - MINOR: h2: add stream lookup function based on the stream ID
9324 - MINOR: h2: create dummy idle and closed streams
9325 - MINOR: h2: add the function to create a new stream
9326 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
9327 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
9328 - MINOR: h2: also terminate the connection on shutr
9329 - MEDIUM: h2: properly consider all conditions for end of connection
9330 - MEDIUM: h2: wake the connection up for send on pending streams
9331 - MEDIUM: h2: start to implement the frames processing loop
9332 - MINOR: h2: add a function to send a GOAWAY error frame
9333 - MINOR: h2: match the H2 connection preface on init
9334 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
9335 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
9336 - MEDIUM: h2: process streams pending for sending
9337 - MINOR: h2: send a real SETTINGS frame based on the configuration
9338 - MEDIUM: h2: detect the presence of the first settings frame
9339 - MINOR: h2: create a stream parser for the demuxer
9340 - MINOR: h2: implement PING frames
9341 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
9342 - MINOR: h2: lookup the stream during demuxing
9343 - MEDIUM: h2: honor WINDOW_UPDATE frames
9344 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
9345 - MINOR: h2: handle CONTINUATION frames
9346 - MEDIUM: h2: partial implementation of h2_detach()
9347 - MEDIUM: h2: unblock a connection when its current stream detaches
9348 - MEDIUM: h2: basic processing of HEADERS frame
9349 - MEDIUM: h2: don't use trash to decode headers!
9350 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
9351 - MEDIUM: h2: send the H1 response body as DATA frames
9352 - MEDIUM: h2: skip the response trailers if any
9353 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
9354 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
9355 - MEDIUM: h2: handle request body in DATA frames
9356 - MINOR: h2: handle RST_STREAM frames
9357 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
9358 - MINOR: h2: use a common function to signal some and all streams.
9359 - MEDIUM: h2: handle GOAWAY frames
9360 - MINOR: h2: centralize the check for the idle streams
9361 - MINOR: h2: centralize the check for the half-closed(remote) streams
9362 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
9363 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
9364 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
9365 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
9366 - MEDIUM: h2: apply a timeout to h2 connections
9367 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
9368 - MEDIUM: shctx: forbid shctx to read more than expected
9369 - MEDIUM: cache: configuration parsing and initialization
9370 - MEDIUM: cache: store objects in cache
9371 - MEDIUM: cache: deliver objects from cache
9372
Willy Tarreauf08137c2017-10-22 10:13:45 +020093732017/10/22 : 1.8-dev3
9374 - REORG: ssl: move defines and methodVersions table upper
9375 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
9376 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
9377 - MEDIUM: ssl: disable SSLv3 per default for bind
9378 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
9379 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
9380 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
9381 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
9382 - BUG/MEDIUM: build without openssl broken
9383 - BUG/MINOR: warning: need_resend may be used uninitialized
9384 - BUG/MEDIUM: misplaced exit and wrong exit code
9385 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
9386 - BUILD: scripts: make publish-release support bare repositories
9387 - BUILD: scripts: add an automatic mode for publish-release
9388 - BUILD: scripts: add a "quiet" mode to publish-release
9389 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
9390 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
9391 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
9392 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
9393 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
9394 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
9395 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
9396 - BUG/MAJOR: server: Segfault after parsing server state file.
9397 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
9398 - scripts: create-release pass -n to tail
9399 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
9400 - BUG/MEDIUM: fix segfault when no argument to -x option
9401 - MINOR: warning on multiple -x
9402 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
9403 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
9404 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
9405 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
9406 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
9407 - DOC: fix references to the section about the unix socket
9408 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
9409 - MAJOR: task: task scheduler rework.
9410 - MINOR: task/stream: tasks related to a stream must be init by the caller.
9411 - MINOR: queue: Change pendconn_get_next_strm into private function
9412 - MINOR: backends: Change get_server_sh/get_server_uh into private function
9413 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
9414 - MEDIUM: stream: make stream_new() always set the target and analysers
9415 - MINOR: frontend: initialize HTTP layer after the debugging code
9416 - MINOR: connection: add a .get_alpn() method to xprt_ops
9417 - MINOR: ssl: add a get_alpn() method to ssl_sock
9418 - MINOR: frontend: retrieve the ALPN name when available
9419 - MINOR: frontend: report the connection's ALPN in the debug output
9420 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
9421 - MINOR: connection: send data before receiving
9422 - MAJOR: applet: applet scheduler rework.
9423 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
9424 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
9425 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
9426 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
9427 - MINOR: compression: Use a memory pool to allocate compression states
9428 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
9429 - DOC: fix references to the section about time format.
9430 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
9431 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
9432 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
9433 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
9434 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
9435 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
9436 - MINOR: peers: Add additional information to stick-table definition messages.
9437 - BUG/MINOR: http: properly handle all 1xx informational responses
9438 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
9439 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
9440 - CLEANUP: hdr_idx: make some function arguments const where possible
9441 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
9442 - BUG/MINOR: lua: In error case, the safe mode is not removed
9443 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
9444 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
9445 - BUG/MEDIUM: lua: bad memory access
9446 - BUG/MINOR: Lua: variable already initialized
9447 - DOC: update CONTRIBUTING regarding optional parts and message format
9448 - DOC: update the list of OpenSSL versions in the README
9449 - BUG/MINOR: http: Set the response error state in http_sync_res_state
9450 - MINOR: http: Reorder/rewrite checks in http_resync_states
9451 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
9452 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
9453 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
9454 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
9455 - BUG/MINOR: contrib/modsecurity: BSD build fix
9456 - BUG/MINOR: contrib/mod_defender: build fix
9457 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
9458 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
9459 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
9460 - MINOR: tools: add a portable timegm() alternative
9461 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
9462 - DOC: Updated 51Degrees git URL to point to a stable version.
9463 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
9464 - MINOR: memory: remove macros
9465 - BUG/MINOR: lua: Fix Server.get_addr() port values
9466 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
9467 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
9468 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
9469 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
9470 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
9471 - MINOR: task: always preinitialize the task's timeout in task_init()
9472 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
9473 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
9474 - MINOR: lua: Add proxy as member of proxy object.
9475 - DOC: lua: Proxy class doc update
9476 - MINOR: lua: Add lists of frontends and backends
9477 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
9478 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
9479 - MINOR: ssl: add a new error codes for wrong server certificates
9480 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
9481 - MINOR: ssl: add "no-ca-names" parameter for bind
9482 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
9483 - DOC: fix alphabetical order of "show commands" in management.txt
9484 - MINOR: listener: add a function to return a listener's state as a string
9485 - MINOR: cli: add a new "show fd" command
9486 - BUG/MEDIUM: ssl: Fix regression about certificates generation
9487 - MINOR: Add server port field to server state file.
9488 - MINOR: ssl: allow to start without certificate if strict-sni is set
9489 - MINOR: dns: Cache previous DNS answers.
9490 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
9491 - Add a few functions to do unaligned access.
9492 - MINOR: dns: Handle SRV records.
9493 - MINOR: check: Fix checks when using SRV records.
9494 - MINOR: doc: Document SRV label usage.
9495 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
9496 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
9497 - BUILD/MINOR: build without openssl still broken
9498 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
9499 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
9500 - MINOR: init: Fix CPU affinity setting on FreeBSD.
9501 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
9502 - MINOR: dns: update record dname matching for SRV query types
9503 - MINOR: dns: update dns response buffer reading pointer due to SRV record
9504 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
9505 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
9506 - MINOR: dns: ability to use a SRV resolution for multiple backends
9507 - MINOR: dns: enable caching of responses for server set by a SRV record
9508 - MINOR: dns: new dns record type (RTYPE) for OPT
9509 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
9510 - MINOR: dns: default "hold obsolete" timeout set to 0
9511 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
9512 - MINOR: session: add a streams field to the session struct
9513 - MINOR: stream: link the stream to its session
9514 - MEDIUM: session: do not free a session until no stream references it
9515 - MINOR: ist: implement very simple indirect strings
9516 - TESTS: ist: add a test file for the functions
9517 - MINOR: http: export some of the HTTP parser macros
9518 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
9519 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
9520 - MINOR: dns: Maximum DNS udp payload set to 8192
9521 - MINOR: dns: automatic reduction of DNS accpeted payload size
9522 - MINOR: dns: make SRV record processing more verbose
9523 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
9524 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
9525 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
9526 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
9527 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
9528 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
9529 - MINOR: lua: properly process the contents of the content-length field
9530 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
9531 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
9532 - OPTIM: lua: don't add "Connection: close" on the response
9533 - REORG/MEDIUM: connection: introduce the notion of connection handle
9534 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
9535 - MEDIUM: connection: get rid of data->init() which was not for data
9536 - MEDIUM: stream: make stream_new() allocate its own task
9537 - CLEANUP: listener: remove the unused handler field
9538 - MEDIUM: session: add a pointer to a struct task in the session
9539 - MINOR: stream: provide a new stream creation function for connections
9540 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
9541 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
9542 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
9543 - DOC: add CLI info on privilege levels
9544 - DOC: Refer to Mozilla TLS info / config generator
9545 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
9546 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
9547 - DOC: Add note about "* " prefix in CSV stats
9548 - CLEANUP: memory: Remove unused function pool_destroy
9549 - MINOR: listeners: Change listener_full and limit_listener into private functions
9550 - MINOR: listeners: Change enable_listener and disable_listener into private functions
9551 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
9552 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
9553 - MINOR: backends: Make get_server_* functions explicitly static
9554 - MINOR: applet: Check applets_active_queue before processing applets queue
9555 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
9556 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
9557 - MINOR: logs: Use dedicated function to init/deinit log buffers
9558 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
9559 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
9560 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
9561 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
9562 - MINOR: fd: Add fd_active function
9563 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
9564 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
9565 - MINOR: freq_ctr: Return the new value after an update
9566 - MEDIUM: check: server states and weight propagation re-work
9567 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
9568 - MINOR: fd: Add fd_update_events function
9569 - MINOR: polling: Use fd_update_events to update events seen for a fd
9570 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
9571 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
9572 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
9573 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
9574 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
9575 - MINOR: xref: Add a new xref system
9576 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
9577 - MINOR: tasks: Move Lua notification from Lua to tasks
9578 - MINOR: net_helper: Inline functions meant to be inlined.
9579 - MINOR: cli: add socket commands and config to prepend informational messages with severity
9580 - MINOR: add severity information to cli feedback messages
9581 - BUILD: Makefile: add a function to detect support by the compiler of certain options
9582 - BUILD: Makefile: shut certain gcc/clang stupid warnings
9583 - BUILD: Makefile: improve detection of support for compiler warnings
9584 - MINOR: peers: don't reference the incoming listener on outgoing connections
9585 - MINOR: frontend: don't retrieve ALPN on the critical path
9586 - MINOR: protocols: always pass a "port" argument to the listener creation
9587 - MINOR: protocols: register the ->add function and stop calling them directly
9588 - MINOR: unix: remove the now unused proto_uxst.h file
9589 - MINOR: listeners: new function create_listeners
9590 - MINOR: listeners: make listeners count consistent with reality
9591 - MEDIUM: session: take care of incrementing/decrementing jobs
9592 - MINOR: listener: new function listener_release
9593 - MINOR: session: small cleanup of conn_complete_session()
9594 - MEDIUM: session: factor out duplicated code for conn_complete_session
9595 - MEDIUM: session: count the frontend's connections at a single place
9596 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
9597 - BUG/MINOR: compression: Check response headers before http-response rules eval
9598 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
9599 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
9600 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
9601 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
9602 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
9603 - MINOR: tools: make my_htonll() more efficient on x86_64
9604 - MINOR: buffer: add b_del() to delete a number of characters
9605 - MINOR: buffer: add b_end() and b_to_end()
9606 - MINOR: net_helper: add functions to read from vectors
9607 - MINOR: net_helper: add write functions
9608 - MINOR: net_helper: add 64-bit read/write functions
9609 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
9610 - MINOR: ist: add a macro to ease const array initialization
9611 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
9612 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
9613 - BUG/MINOR: log: fixing small memory leak in error code path.
9614 - BUG/MINOR: contrib/halog: fixing small memory leak
9615 - BUG/MEDIUM: tcp/http: set-dst-port action broken
9616 - CLEANUUP: checks: don't set conn->handle.fd to -1
9617 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
9618 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
9619 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
9620 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
9621 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
9622 - CLEANUP: checks: remove misleading comments and statuses for external process
9623 - CLEANUP: checks: don't report report the fork() error twice
9624 - CLEANUP: checks: do not allocate a connection for process checks
9625 - TESTS: checks: add a simple test config for external checks
9626 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
9627 - TESTS: checks: add a simple test config for tcp-checks
9628 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
9629 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
9630 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
9631 - MEDIUM: checks: do not allocate a permanent connection anymore
9632 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
9633 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
9634 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
9635 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
9636 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
9637 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
9638 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
9639 - MINOR: session: remove the list of streams from struct session
9640 - DOC: fix some typos
9641 - MINOR: server: add the srv_queue() sample fetch method
9642 - MINOR: payload: add new sample fetch functions to process distcc protocol
9643 - MAJOR: servers: propagate server status changes asynchronously.
9644 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
9645 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
9646 - MINOR: server: Handle weight increase in consistent hash.
9647 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
9648 - BUG/MINOR: tools: fix my_htonll() on x86_64
9649 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
9650 - BUG/MAJOR: lua: scheduled task is freezing.
9651 - MINOR: buffer: add bo_del() to delete a number of characters from output
9652 - MINOR: buffer: add a function to match against string patterns
9653 - MINOR: buffer: add two functions to inject data into buffers
9654 - MINOR: buffer: add buffer_space_wraps()
9655 - REORG: channel: finally rename the last bi_* / bo_* functions
9656 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
9657 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
9658 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
9659 - MINOR: ist: add ist0() to add a trailing zero to a string.
9660 - BUG/MEDIUM: log: check result details truncated.
9661 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
9662 - REORG: http: move some very http1-specific parts to h1.{c,h}
9663 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
9664 - REORG: http: move the HTTP/1 header block parser to h1.c
9665 - MEDIUM: http: make the chunk size parser only depend on the buffer
9666 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
9667 - MINOR: h1: add struct h1m for basic HTTP/1 messages
9668 - MINOR: http: add very simple header management based on double strings
9669 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
9670 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
9671 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
9672 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
9673 - MINOR: connection: add conn_stop_tracking() to disable tracking
9674 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
9675 - MINOR: unix: use conn_full_close() instead of conn_force_close()
9676 - MINOR: checks: use conn_full_close() instead of conn_force_close()
9677 - MINOR: session: use conn_full_close() instead of conn_force_close()
9678 - MINOR: stream: use conn_full_close() instead of conn_force_close()
9679 - MINOR: stream: use conn_full_close() instead of conn_force_close()
9680 - MINOR: backend: use conn_full_close() instead of conn_force_close()
9681 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
9682 - MINOR: connection: remove conn_force_close()
9683 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
9684
Willy Tarreauf57a29a2017-06-02 15:59:51 +020096852017/06/02 : 1.8-dev2
9686 - CLEANUP: server: moving netinet/tcp.h inclusion
9687 - DOC: changed "block"(deprecated) examples to http-request deny
9688 - DOC: add few comments to examples.
9689 - DOC: update sample code for PROXY protocol
9690 - DOC: mention lighttpd 1.4.46 implements PROXY
9691 - MINOR server: Restrict dynamic cookie check to the same proxy.
9692 - DOC: stick-table is available in frontend sections
9693 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
9694 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
9695 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
9696 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
9697 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
9698 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
9699 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
9700 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
9701 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
9702 - BUG/MEDIUM: servers: unbreak server weight propagation
9703 - MINOR: lua: ensure the memory allocator is used all the time
9704 - MINOR: cli: Add a command to send listening sockets.
9705 - MINOR: global: Add an option to get the old listening sockets.
9706 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
9707 - MINOR: doc: document the -x flag
9708 - MINOR: proxy: Don't close FDs if not our proxy.
9709 - MINOR: socket transfer: Set a timeout on the socket.
9710 - MINOR: systemd wrapper: add support for passing the -x option.
9711 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
9712 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
9713 - CLEANUP: logs: typo: simgle => single
9714 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
9715 - MEDIUM: config: don't check config validity when there are fatal errors
9716 - BUG/MAJOR: Use -fwrapv.
9717 - BUG/MINOR: server: don't use "proxy" when px is really meant.
9718 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
9719 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
9720 - MINOR: server: Extract the code responsible of copying default-server settings.
9721 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
9722 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
9723 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
9724 - DOC: Add documentation for new "server-template" keyword.
9725 - DOC: add layer 4 links/cross reference to "block" keyword.
9726 - DOC: errloc/errorloc302/errorloc303 missing status codes.
9727 - BUG/MEDIUM: lua: memory leak
9728 - CLEANUP: lua: remove test
9729 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
9730 - BUG/MINOR: change header-declared function to static inline
9731 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
9732 - MINOR: Add binary encoding request header sample fetch
9733 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
9734 - MINOR: Add ModSecurity wrapper as contrib
9735 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
9736 - DOC: update RFC references
9737 - CONTRIB: tcploop: add action "X" to execute a command
9738 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
9739 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
9740 - BUG/MINOR: checks: don't send proxy protocol with agent checks
9741 - MINOR: ssl: add prefer-client-ciphers
9742 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
9743 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
9744 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
9745 - MINOR: ssl: support TLSv1.3 for bind and server
9746 - MINOR: ssl: show methods supported by openssl
9747 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
9748 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
9749 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
9750 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
9751 - MINOR: sample: Add b64dec sample converter
9752 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
9753 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
9754 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
9755 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
9756 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
9757 - MAJOR: ssl: add openssl async mode support
9758 - MEDIUM: ssl: handle multiple async engines
9759 - MINOR: boringssl: basic support for OCSP Stapling
9760 - MEDIUM: mworker: replace systemd mode by master worker mode
9761 - MEDIUM: mworker: handle reload and signals
9762 - MEDIUM: mworker: wait mode on reload failure
9763 - MEDIUM: mworker: try to guess the next stats socket to use with -x
9764 - MEDIUM: mworker: exit-on-failure option
9765 - MEDIUM: mworker: workers exit when the master leaves
9766 - DOC: add documentation for the master-worker mode
9767 - MEDIUM: systemd: Type=forking in unit file
9768 - MAJOR: systemd-wrapper: get rid of the wrapper
9769 - MINOR: log: Add logurilen tunable.
9770 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
9771 - MINOR: dns: smallest DNS fqdn size
9772 - MINOR: dns: functions to manage memory for a DNS resolution structure
9773 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
9774 - REORG: dns: dns_option structure, storage of hostname_dn
9775 - MINOR: dns: new snr_check_ip_callback function
9776 - MAJOR: dns: save a copy of the DNS response in struct resolution
9777 - MINOR: dns: implement a LRU cache for DNS resolutions
9778 - MINOR: dns: make 'ancount' field to match the number of saved records
9779 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
9780 - MAJOR/REORG: dns: DNS resolution task and requester queues
9781 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
9782 - MINOR: Add Mod Defender integration as contrib
9783 - CLEANUP: str2mask return code comment: non-zero -> zero.
9784 - MINOR: tools: make debug_hexdump() use a const char for the string
9785 - MINOR: tools: make debug_hexdump() take a string prefix
9786 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
9787
Willy Tarreau7b677262017-04-03 09:27:49 +020097882017/04/03 : 1.8-dev1
9789 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
9790 - BUG/MINOR: stats: make field_str() return an empty string on NULL
9791 - DOC: Spelling fixes
9792 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
9793 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
9794 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
9795 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
9796 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
9797 - BUG/MAJOR: stream: fix session abort on resource shortage
9798 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
9799 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
9800 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
9801 - DOC: Fix map table's format
9802 - DOC: Added 51Degrees conv and fetch functions to documentation.
9803 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
9804 - DOC: mention that req_tot is for both frontends and backends
9805 - BUG/MEDIUM: variables: some variable name can hide another ones
9806 - MINOR: lua: Allow argument for actions
9807 - BUILD: rearrange target files by build time
9808 - CLEANUP: hlua: just indent functions
9809 - MINOR: lua: give HAProxy variable access to the applets
9810 - BUG/MINOR: stats: fix be/sessions/max output in html stats
9811 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
9812 - DOC: lua: Documentation about some entry missing
9813 - DOC: lua: Add documentation about variable manipulation from applet
9814 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
9815 - DOC: Add undocumented argument of the trace filter
9816 - DOC: Fix some typo in SPOE documentation
9817 - MINOR: cli: Remove useless call to bi_putchk
9818 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
9819 - MINOR: applet: Count number of (active) applets
9820 - MINOR: task: Rename run_queue and run_queue_cur counters
9821 - BUG/MEDIUM: stream: Save unprocessed events for a stream
9822 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
9823 - BUILD/MEDIUM: Fixing the build using LibreSSL
9824 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
9825 - SCRIPTS: git-show-backports: fix a harmless typo
9826 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
9827 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
9828 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
9829 - CLEANUP: applet/table: add an "action" entry in ->table context
9830 - CLEANUP: applet: remove the now unused appctx->private field
9831 - DOC: lua: documentation about time parser functions
9832 - DOC: lua: improve links
9833 - DOC: lua: section declared twice
9834 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
9835 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
9836 - BUG/MINOR: cli: "show cli sockets" would always report process 64
9837 - CLEANUP: lua: rename one of the lua appctx union
9838 - BUG/MINOR: lua/cli: bad error message
9839 - MEDIUM: lua: use memory pool for hlua struct in applets
9840 - MINOR: lua/signals: Remove Lua part from signals.
9841 - DOC: cli: show cli sockets
9842 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
9843 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
9844 - CLEANUP: applet: group all CLI contexts together
9845 - CLEANUP: stats: move a misplaced stats context initialization
9846 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
9847 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
9848 - MINOR: appctx/cli: remove the env entry from the appctx union
9849 - MINOR: appctx/cli: remove the "be" entry from the appctx union
9850 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
9851 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
9852 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
9853 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
9854 - MINOR/DOC: lua: just precise one thing
9855 - DOC: fix small typo in fe_id (backend instead of frontend)
9856 - BUG/MINOR: Fix the sending function in Lua's cosocket
9857 - BUG/MINOR: lua: memory leak executing tasks
9858 - BUG/MINOR: lua: bad return code
9859 - BUG/MINOR: lua: memleak when Lua/cli fails
9860 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
9861 - CLEANUP: haproxy: statify unexported functions
9862 - MINOR: haproxy: add a registration for build options
9863 - CLEANUP: wurfl: use the build options list to report it
9864 - CLEANUP: 51d: use the build options list to report it
9865 - CLEANUP: da: use the build options list to report it
9866 - CLEANUP: namespaces: use the build options list to report it
9867 - CLEANUP: tcp: use the build options list to report transparent modes
9868 - CLEANUP: lua: use the build options list to report it
9869 - CLEANUP: regex: use the build options list to report the regex type
9870 - CLEANUP: ssl: use the build options list to report the SSL details
9871 - CLEANUP: compression: use the build options list to report the algos
9872 - CLEANUP: auth: use the build options list to report its support
9873 - MINOR: haproxy: add a registration for post-check functions
9874 - CLEANUP: checks: make use of the post-init registration to start checks
9875 - CLEANUP: filters: use the function registration to initialize all proxies
9876 - CLEANUP: wurfl: make use of the late init registration
9877 - CLEANUP: 51d: make use of the late init registration
9878 - CLEANUP: da: make use of the late init registration code
9879 - MINOR: haproxy: add a registration for post-deinit functions
9880 - CLEANUP: wurfl: register the deinit function via the dedicated list
9881 - CLEANUP: 51d: register the deinitialization function
9882 - CLEANUP: da: register the deinitialization function
9883 - CLEANUP: wurfl: move global settings out of the global section
9884 - CLEANUP: 51d: move global settings out of the global section
9885 - CLEANUP: da: move global settings out of the global section
9886 - MINOR: cfgparse: add two new functions to check arguments count
9887 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
9888 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
9889 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
9890 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
9891 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
9892 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
9893 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
9894 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
9895 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
9896 - MINOR: tcp-rules: check that the listener exists before updating its counters
9897 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
9898 - MINOR: listener: move the transport layer pointer to the bind_conf
9899 - MEDIUM: move listener->frontend to bind_conf->frontend
9900 - MEDIUM: ssl: remote the proxy argument from most functions
9901 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
9902 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
9903 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
9904 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
9905 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
9906 - MINOR: connection: add a minimal transport layer registration system
9907 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
9908 - CLEANUP: connection: unexport raw_sock and ssl_sock
9909 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
9910 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
9911 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
9912 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
9913 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
9914 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
9915 - BUG/MINOR: systemd: potential zombie processes
9916 - DOC: Add timings events schemas
9917 - BUILD: lua: build failed on FreeBSD.
9918 - MINOR: samples: add xx-hash functions
9919 - MEDIUM: regex: pcre2 support
9920 - BUG/MINOR: option prefer-last-server must be ignored in some case
9921 - MINOR: stats: Support "select all" for backend actions
9922 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
9923 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
9924 - BUG/MINOR: http: report real parser state in error captures
9925 - BUILD: scripts: automatically update the branch in version.h when releasing
9926 - MINOR: tools: add a generic hexdump function for debugging
9927 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
9928 - MINOR: http: custom status reason.
9929 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
9930 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
9931 - BUG/MINOR: tools: fix off-by-one in port size check
9932 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
9933 - MEDIUM: server: split the address and the port into two different fields
9934 - MINOR: tools: make str2sa_range() return the port in a separate argument
9935 - MINOR: server: take the destination port from the port field, not the addr
9936 - MEDIUM: server: disable protocol validations when the server doesn't resolve
9937 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
9938 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
9939 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
9940 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
9941 - MINOR: proto_http.c 502 error txt typo.
9942 - DOC: add deprecation notice to "block"
9943 - MINOR: compression: fix -vv output without zlib/slz
9944 - BUG/MINOR: Reset errno variable before calling strtol(3)
9945 - MINOR: ssl: don't show prefer-server-ciphers output
9946 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
9947 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
9948 - MAJOR: ssl: bind configuration per certificat
9949 - MINOR: ssl: add curve suite for ECDHE negotiation
9950 - MINOR: checks: Add agent-addr config directive
9951 - MINOR: cli: Add possiblity to change agent config via CLI/socket
9952 - MINOR: doc: Add docs for agent-addr configuration variable
9953 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
9954 - BUILD: ssl: fix to build (again) with boringssl
9955 - BUILD: ssl: fix build on OpenSSL 1.0.0
9956 - BUILD: ssl: silence a warning reported for ERR_remove_state()
9957 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
9958 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
9959 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
9960 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
9961 - MINOR: server: extend the flags to 32 bits
9962 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
9963 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
9964 - BUG/MAJOR: dns: restart sockets after fork()
9965 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
9966 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
9967 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
9968 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
9969 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
9970 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
9971 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
9972 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
9973 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
9974 - MINOR: http: don't close when redirect location doesn't start with "/"
9975 - MEDIUM: boringssl: support native multi-cert selection without bundling
9976 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
9977 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
9978 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
9979 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
9980 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
9981 - MEDIUM: ssl: remove ssl-options from crt-list
9982 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
9983 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
9984 - MINOR: ssl: improved cipherlist captures
9985 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
9986 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
9987 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
9988 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
9989 - MINOR: spoe: Remove SPOE details from the appctx structure
9990 - MINOR: spoe: Add status code in error variable instead of hardcoded value
9991 - MINOR: spoe: Send a log message when an error occurred during event processing
9992 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
9993 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
9994 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
9995 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
9996 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
9997 - MAJOR: spoe: refactor the filter to clean up the code
9998 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
9999 - REORG: spoe: Move struct and enum definitions in dedicated header file
10000 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
10001 - MINOR: spoe: Improve implementation of the payload fragmentation
10002 - MINOR: spoe: Add support of negation for options in SPOE configuration file
10003 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
10004 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
10005 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
10006 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
10007 - DOC: spoe: Update SPOE documentation to reflect recent changes
10008 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
10009 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
10010 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
10011 - BUG/MINOR: Fix "get map <map> <value>" CLI command
10012 - MINOR: Add nbsrv sample converter
10013 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
10014 - MINOR: Add hostname sample fetch
10015 - CLEANUP: Remove comment that's no longer valid
10016 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
10017 - MINOR: http-request tarpit deny_status.
10018 - CLEANUP: http: make http_server_error() not set the status anymore
10019 - MEDIUM: stats: Add JSON output option to show (info|stat)
10020 - MEDIUM: stats: Add show json schema
10021 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
10022 - MINOR: server: Add dynamic session cookies.
10023 - MINOR: cli: Let configure the dynamic cookies from the cli.
10024 - BUG/MINOR: checks: attempt clean shutw for SSL check
10025 - CONTRIB: tcploop: make it build on FreeBSD
10026 - CONTRIB: tcploop: fix time format to silence build warnings
10027 - CONTRIB: tcploop: report action 'K' (kill) in usage message
10028 - CONTRIB: tcploop: fix connect's address length
10029 - CONTRIB: tcploop: use the trash instead of NULL for recv()
10030 - BUG/MEDIUM: listener: do not try to rebind another process' socket
10031 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
10032 - CLEANUP: config: Typo in comment.
10033 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
10034 - TESTS: add a test configuration to stress handshake combinations
10035 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
10036 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
10037 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
10038 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
10039 - BUG: payload: fix payload not retrieving arbitrary lengths
10040 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
10041 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
10042 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
10043 - MINOR: doc: 2.4. Examples should be 2.5. Examples
10044 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
10045 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
10046 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
10047 - OPTIM: poll: enable support for POLLRDHUP
10048 - MINOR: kqueue: exclusively rely on the kqueue returned status
10049 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
10050 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
10051 - DOC/MINOR: Fix typos in proxy protocol doc
10052 - DOC: Protocol doc: add checksum, TLV type ranges
10053 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
10054 - DOC: Protocol doc: add noop TLV
10055 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
10056 - MINOR: dns: improve DNS response parsing to use as many available records as possible
10057 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
10058 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
10059 - MINOR: server: Make 'default-server' support 'backup' keyword.
10060 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
10061 - CLEANUP: server: code alignement.
10062 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
10063 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
10064 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
10065 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
10066 - CLEANUP: server: code alignement.
10067 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
10068 - MINOR: server: Make 'default-server' support 'ssl' keyword.
10069 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
10070 - CLEANUP: server: code alignement.
10071 - MINOR: server: Make 'default-server' support 'verify' keyword.
10072 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
10073 - MINOR: server: Make 'default-server' support 'check' keyword.
10074 - MINOR: server: Make 'default-server' support 'track' setting.
10075 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
10076 - MINOR: server: Make 'default-server' support 'redir' keyword.
10077 - MINOR: server: Make 'default-server' support 'observe' keyword.
10078 - MINOR: server: Make 'default-server' support 'cookie' keyword.
10079 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
10080 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
10081 - MINOR: server: Make 'default-server' support 'namespace' keyword.
10082 - MINOR: server: Make 'default-server' support 'source' keyword.
10083 - MINOR: server: Make 'default-server' support 'sni' keyword.
10084 - MINOR: server: Make 'default-server' support 'addr' keyword.
10085 - MINOR: server: Make 'default-server' support 'disabled' keyword.
10086 - MINOR: server: Add 'no-agent-check' server keyword.
10087 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
10088 - MINOR: doc: fix use-server example (imap vs mail)
10089 - BUG/MEDIUM: tcp: don't require privileges to bind to device
10090 - BUILD: make the release script use shortlog for the final changelog
10091 - BUILD: scripts: fix typo in announce-release error message
10092 - CLEANUP: time: curr_sec_ms doesn't need to be exported
10093 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
10094 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
10095 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
10096 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
10097 - CLEANUP: http: Remove channel_congested function
10098 - CLEANUP: buffers: Remove buffer_bounce_realign function
10099 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
10100 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
10101 - MINOR: http: Add debug messages when HTTP body analyzers are called
10102 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
10103 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
10104 - DOC: fix parenthesis and add missing "Example" tags
10105 - DOC: update the contributing file
10106 - DOC: log-format/tcplog/httplog update
10107 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
10108
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100101092016/11/25 : 1.8-dev0
10110
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100101112016/11/25 : 1.7.0
10112 - SCRIPTS: make publish-release also copy the new SPOE doc
10113 - BUILD: http: include types/sample.h in proto_http.h
10114 - BUILD: debug/flags: remove test for SF_COMP_READY
10115 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
10116 - MINOR: lua: add function which return true if the channel is full.
10117 - MINOR: lua: add ip addresses and network manipulation function
10118 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
10119 - CONTRIB: tcploop: implement fork()
10120 - CONTRIB: tcploop: implement logging when called with -v
10121 - CONTRIB: tcploop: update the usage output
10122 - CONTRIB: tcploop: support sending plain strings
10123 - CONTRIB: tcploop: don't report failed send() or recv()
10124 - CONTRIB: tcploop: add basic loops via a jump instruction
10125 - BUG/MEDIUM: channel: bad unlikely macro
10126 - CLEANUP: lua: move comment
10127 - CLEANUP: lua: control executed twice
10128 - BUG/MEDIUM: ssl: Store certificate filename in a variable
10129 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
10130 - CLEANUP: ssl: Remove goto after return dead code
10131 - CLEANUP: ssl: Fix bind keywords name in comments
10132 - DOC: ssl: Use correct wording for ca-sign-pass
10133 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
10134 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
10135 - MINOR: cli: add private pointer and release function
10136 - MEDIUM: lua: Add cli handler for Lua
10137 - BUG/MEDIUM: connection: check the control layer before stopping polling
10138 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
10139 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
10140 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
10141 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
10142 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
10143 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
10144 - MINOR: spoe: Remove useless 'timeout ack' option
10145 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
10146 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
10147 - MINOR: spoe: Add "option set-on-error" statement
10148 - MINOR: stats: correct documentation of process ID for typed output
10149 - BUILD: contrib: fix ip6range build on Centos 7
10150 - BUILD: fix build on Solaris 10/11
10151 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
10152 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
10153 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
10154 - MINOR: connection: add a few functions to report the data and xprt layers' names
10155 - MINOR: connection: add names for transport and data layers
10156 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
10157 - REORG: cli: split dumpstats.h in stats.h and cli.h
10158 - REORG: cli: move ssl CLI functions to ssl_sock.c
10159 - REORG: cli: move map and acl code to map.c
10160 - REORG: cli: move show stat resolvers to dns.c
10161 - MINOR: cli: create new function cli_has_level() to validate permissions
10162 - MINOR: server: create new function cli_find_server() to find a server
10163 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
10164 - REORG: cli: move 'set server' to server.c
10165 - REORG: cli: move 'show pools' to memory.c
10166 - REORG: cli: move 'show servers' to proxy.c
10167 - REORG: cli: move 'show sess' to stream.c
10168 - REORG: cli: move 'show backend' to proxy.c
10169 - REORG: cli: move get/set weight to server.c
10170 - REORG: cli: move "show stat" to stats.c
10171 - REORG: cli: move "show info" to stats.c
10172 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
10173 - REORG: cli: move table dump/clear/set to stick_table.c
10174 - REORG: cli: move "show errors" out of cli.c
10175 - REORG: cli: make "show env" also use the generic keyword registration
10176 - REORG: cli: move "set timeout" to its own handler
10177 - REORG: cli: move "clear counters" to stats.c
10178 - REORG: cli: move "set maxconn global" to its own handler
10179 - REORG: cli: move "set maxconn server" to server.c
10180 - REORG: cli: move "set maxconn frontend" to proxy.c
10181 - REORG: cli: move "shutdown sessions server" to stream.c
10182 - REORG: cli: move "shutdown session" to stream.c
10183 - REORG: cli: move "shutdown frontend" to proxy.c
10184 - REORG: cli: move "{enable|disable} frontend" to proxy.c
10185 - REORG: cli: move "{enable|disable} server" to server.c
10186 - REORG: cli: move "{enable|disable} health" to server.c
10187 - REORG: cli: move "{enable|disable} agent" to server.c
10188 - REORG: cli: move the "set rate-limit" functions to their own parser
10189 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
10190 - CLEANUP: cli: simplify the request parser a little bit
10191 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
10192 - BUILD: server: remove a build warning introduced by latest series
10193 - BUG/MINOR: log-format: uncatched memory allocation functions
10194 - CLEANUP: log-format: useless file and line in json converter
10195 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
10196 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
10197 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
10198 - CLEANUP: log-format: remove unused arguments
10199 - MEDIUM: log-format: strict parsing and enable fail
10200 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
10201 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
10202 - BUILD: vars: remove a build warning on vars.c
10203 - MINOR: lua: add utility function for check boolean argument
10204 - MINOR: lua: Add tokenize function.
10205 - BUG/MINOR: conf: calloc untested
10206 - MINOR: http/conf: store the use_backend configuration file and line for logs
10207 - MEDIUM: log-format: Use standard HAProxy log system to report errors
10208 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
10209 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
10210 - MINOR: cli: make "show stat" support a proxy name
10211 - MINOR: cli: make "show errors" support a proxy name
10212 - MINOR: cli: make "show errors" capable of dumping only request or response
10213 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
10214 - CLEANUP: counters: move from 3 types to 2 types
10215 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
10216 - REORG: tcp-rules: move tcp rules processing to their own file
10217 - REORG: stkctr: move all the stick counters processing to stick-tables.c
10218 - DOC: update the roadmap file with the latest changes
10219
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100102202016/11/09 : 1.7-dev6
10221 - DOC: fix the entry for hash-balance-factor config option
10222 - DOC: Fix typo in description of `-st` parameter in man page
10223 - CLEANUP: cfgparse: Very minor spelling correction
10224 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
10225 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
10226 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
10227 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
10228 - MINOR: peers: remove the pointer to the stream
10229 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
10230 - DOC: stats: provide state details for show servers state
10231 - MEDIUM: tools: make str2ip2() preserve existing ports
10232 - CLEANUP: tools: make ipcpy() preserve the original port
10233 - OPTIM: http: move all http character classs tables into a single one
10234 - OPTIM: http: improve parsing performance of long header lines
10235 - OPTIM: http: improve parsing performance of long URIs
10236 - OPTIM: http: optimize lookup of comma and quote in header values
10237 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
10238 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
10239 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
10240 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
10241 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
10242 - DOC: move the device detection modules documentation to their own files
10243 - CLEANUP: wurfl: reduce exposure in the rest of the code
10244 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
10245 - MINOR: stream: make option contstats usable again
10246 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
10247 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
10248 - MAJOR: server: postpone address resolution
10249 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
10250 - MINOR: server: indicate in the logs when RMAINT is cleared
10251 - MINOR: stats: indicate it when a server is down due to resolution
10252 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
10253 - MINOR: dns: implement extra 'hold' timers.
10254 - MAJOR: dns: runtime resolution can change server admin state
10255 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
10256 - MEDIUM: server: add a new init-addr server line setting
10257 - MEDIUM: server: make use of init-addr
10258 - MINOR: server: implement init-addr none
10259 - MEDIUM: server: make libc resolution failure non-fatal
10260 - MINOR: server: add support for explicit numeric address in init-addr
10261 - DOC: add some documentation for the "init-addr" server keyword
10262 - MINOR: init: add -dr to ignore server address resolution failures
10263 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
10264 - BUG: vars: Fix 'set-var' converter because of a typo
10265 - CLEANUP: remove last references to 'ruleset' section
10266 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
10267 - MINOR: filters: Update filters documentation accordingly to recent changes
10268 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
10269 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
10270 - MINOR: flt_trace: Add hexdump option to dump forwarded data
10271 - MINOR: cfgparse: Add functions to backup and restore registered sections
10272 - MINOR: cfgparse: Parse scope lines and save the last one parsed
10273 - REORG: sample: move code to release a sample expression in sample.c
10274 - MINOR: vars: Allow '.' in variable names
10275 - MINOR: vars: Add vars_set_by_name_ifexist function
10276 - MEDIUM: vars: Add a per-process scope for variables
10277 - MINOR: vars: Add 'unset-var' action/converter
10278 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
10279 - MINOR: spoe: add random ip-reputation service as SPOA example
10280 - MINOR: spoe/checks: Add support for SPOP health checks
10281 - DOC: update ROADMAP file
10282
Willy Tarreau608efa12016-10-25 22:22:00 +0200102832016/10/25 : 1.7-dev5
10284 - MINOR: cfgparse: few memory leaks fixes.
10285 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
10286 - CLEANUP: logs: remove unused log format field definitions
10287 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
10288 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
10289 - CLEANUP: proto_http: Removing useless variable assignation
10290 - CLEANUP: dumpstats: Removing useless variables allocation
10291 - CLEANUP: dns: Removing usless variable & assignation
10292 - BUG/MINOR: payload: fix SSLv2 version parser
10293 - MINOR: cli: allow the semi-colon to be escaped on the CLI
10294 - MINOR: cli: change a server health check port through the stats socket
10295 - BUG/MINOR: Fix OSX compilation errors
10296 - MAJOR: check: find out which port to use for health check at run time
10297 - MINOR: server: introduction of 3 new server flags
10298 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
10299 - MINOR: cli: ability to change a server's port
10300 - CLEANUP/MINOR dns: comment do not follow up code update
10301 - MINOR: chunk: new strncat function
10302 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
10303 - MINOR: dns: new MAX values
10304 - MINOR: dns: new macro to compute DNS header size
10305 - MINOR: dns: new DNS structures to store received packets
10306 - MEDIUM: dns: new DNS response parser
10307 - MINOR: dns: query type change when last record is a CNAME
10308 - MINOR: dns: proper domain name validation when receiving DNS response
10309 - MINOR: dns: comments in types/dns.h about structures endianness
10310 - BUG/MINOR: displayed PCRE version is running release
10311 - MINOR: show Built with PCRE version
10312 - MINOR: show Running on zlib version
10313 - MEDIUM: make SO_REUSEPORT configurable
10314 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
10315 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
10316 - BUG/MINOR: stats: report the correct conn_time in backend's html output
10317 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
10318 - MINOR: Add fe_req_rate sample fetch
10319 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
10320 - MEDIUM: cli: register CLI keywords with cli_register_kw()
10321 - BUILD: Make use of accept4() on OpenBSD.
10322 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
10323 - DOC: fix missed entry for "set-{src,dst}{,-port}"
10324 - BUG/MINOR: vars: use sess and not s->sess in action_store()
10325 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
10326 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
10327 - MINOR: stats: output dcon
10328 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
10329 - MINOR: counters: add new fields for denied_sess
10330 - MEDIUM: tcp: add registration and processing of TCP L5 rules
10331 - MINOR: stats: emit dses
10332 - DOC: document tcp-request session
10333 - MINOR: ssl: add debug traces
10334 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
10335 - BUG/MINOR: ssl: Check malloc return code
10336 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
10337 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
10338 - BUG/MINOR: systemd: always restore signals before execve()
10339 - BUG/MINOR: systemd: check return value of calloc()
10340 - MINOR: systemd: report it when execve() fails
10341 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
10342 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
10343 - MINOR: backend: add hash-balance-factor option for hash-type consistent
10344 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
10345 - MEDIUM: server: Implement bounded-load hash algorithm
10346 - SCRIPTS: make git-show-backports also dump a "git show" command
10347 - MINOR: build: Allow linking to device-atlas library file
10348 - MINOR: stats: Escape equals sign on socket dump
10349
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200103502016/08/14 : 1.7-dev4
10351 - MINOR: add list_append_word function
10352 - MEDIUM: init: use list_append_word in haproxy.c
10353 - MEDIUM: init: allow directory as argument of -f
10354 - CLEANUP: config: detect double registration of a config section
10355 - MINOR: log: add the %Td log-format specifier
10356 - MEDIUM: filters: Move HTTP headers filtering in its own callback
10357 - MINOR: filters: Simplify calls to analyzers using 2 new macros
10358 - MEDIUM: filters: Add pre and post analyzer callbacks
10359 - DOC: filters: Update the filters documentation accordingly to recent changes
10360 - BUG/MEDIUM: init: don't use environment locale
10361 - SCRIPTS: teach git-show-backports how to report upstream commits
10362 - SCRIPTS: make git-show-backports capable of limiting its history
10363 - BUG/MAJOR: fix listening IP address storage for frontends
10364 - BUG/MINOR: fix listening IP address storage for frontends (cont)
10365 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
10366 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
10367 - BUG/MEDIUM: stick-tables: fix breakage in table converters
10368 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
10369 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
10370 - BUILD: fix build on Solaris 11
10371 - BUG/MEDIUM: config: fix multiple declaration of section parsers
10372 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
10373 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
10374 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
10375 - DOC: update doc about tls-tickets-keys dump
10376 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
10377 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
10378 - MEDIUM: tcp/http: add 'set-src-port' action
10379 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
10380 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
10381 - BUILD/MEDIUM: rebuild everything when an include file is changed
10382 - BUILD/MEDIUM: force a full rebuild if some build options change
10383 - BUG/MEDIUM: lua: converters doesn't work
10384 - BUG/MINOR: http: add-header: header name copied twice
10385 - BUG/MEDIUM: http: add-header: buffer overwritten
10386 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
10387 - MINOR: stream: export the function 'smp_create_src_stkctr'
10388 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
10389 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
10390 - BUG/MINOR: http: url32+src should use the big endian version of url32
10391 - BUG/MINOR: http: url32+src should check cli_conn before using it
10392 - DOC: http: add documentation for url32 and url32+src
10393 - BUG/MINOR: fix http-response set-log-level parsing error
10394 - MINOR: systemd: Use variable for config and pidfile paths
10395 - MINOR: systemd: Perform sanity check on config before reload
10396 - MEDIUM: ssl: support SNI filters with multicerts
10397 - MINOR: ssl: crt-list parsing factor
10398 - BUILD: ssl: fix typo causing a build failure in the multicert patch
10399 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
10400 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
10401 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
10402 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
10403 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
10404 - BUG/MAJOR: external-checks: use asynchronous signal delivery
10405 - BUG/MINOR: external-checks: do not unblock undesired signals
10406 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
10407 - BUG/MEDIUM: filters: Fix data filtering when data are modified
10408 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
10409 - BUG/MINOR: srv-state: fix incorrect output of state file
10410 - BUG/MINOR: ssl: close ssl key file on error
10411 - BUG/MINOR: http: fix misleading error message for response captures
10412 - BUG/BUILD: don't automatically run "make" on "make install"
10413 - DOC: add missing doc for http-request deny [deny_status <status>]
10414 - CLEANUP: dumpstats: u64 field is an unsigned type.
10415 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
10416 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
10417 - MINOR: new function my_realloc2 = realloc + free upon failure
10418 - CLEANUP: fixed some usages of realloc leading to memory leak
10419 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
10420 - CLEANUP: connection: using internal struct to hold source and dest port.
10421 - DOC: spelling fixes
10422 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
10423 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
10424 - BUG/MINOR: Fix endiness issue in DNS header creation code
10425 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
10426 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
10427 - MEDIUM: http: implement http-response track-sc* directive
10428 - BUG/MINOR: peers: Fix peers data decoding issue
10429 - BUG/MINOR: peers: don't count track-sc multiple times on errors
10430 - MINOR: standard: add function "escape_string"
10431 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
10432 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
10433 - DOC: lua: remove old functions
10434 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
10435 - DOC: fix json converter example and error message
10436 - BUG/MEDIUM: stream-int: completely detach connection on connect error
10437 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
10438 - BUILD: make proto_tcp.c compatible with musl library
10439 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
10440 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
10441 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
10442 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
10443 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
10444 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
10445 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
10446 - MINOR: sample: use smp_make_rw() in upper/lower converters
10447 - MINOR: tcp: add dst_is_local and src_is_local
10448 - BUG/MINOR: peers: some updates are pushed twice after a resync.
10449 - BUILD: protocol: fix some build errors on OpenBSD
10450 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
10451 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
10452 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
10453 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
10454 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
10455 - BUILD: compression: remove a warning when no compression lib is used
10456 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
10457 - MINOR: tcp: add further tcp info fetchers
10458 - BUG/MINOR: peers: empty chunks after a resync.
10459 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
10460 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
10461 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
10462 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
10463
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200104642016/05/10 : 1.7-dev3
10465 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
10466 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
10467 - BUILD: namespaces: fix a potential build warning in namespaces.c
10468 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
10469 - DOC: add encoding to json converter example
10470 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
10471 - DOC: Clarify tunes.vars.xxx-max-size settings
10472 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
10473 - CLEANUP: connection: fix double negation on memcmp()
10474 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
10475 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
10476 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
10477 - BUG/MINOR: lua: can't load external libraries
10478 - BUG/MINOR: prevent the dump of uninitialized vars
10479 - CLEANUP: map: it seems that the map were planed to be chained
10480 - MINOR: lua: move class registration facilities
10481 - MINOR: lua: remove some useless checks
10482 - CLEANUP: lua: Remove two same functions
10483 - MINOR: lua: refactor the Lua object registration
10484 - MINOR: lua: precise message when a critical error is catched
10485 - MINOR: lua: post initialization
10486 - MINOR: lua: Add internal function which strip spaces
10487 - MINOR: lua: convert field to lua type
10488 - DOC: "addr" parameter applies to both health and agent checks
10489 - DOC: timeout client: pointers to timeout http-request
10490 - DOC: typo on stick-store response
10491 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
10492 - DOC: typo: ACL subdir match
10493 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
10494 - DOC: regsub: parser limitation about the inability to use closing square brackets
10495 - DOC: typo: req.uri is now replaced by capture.req.uri
10496 - DOC: name set-gpt0 mismatch with the expected keyword
10497 - MINOR: http: sample fetch which returns unique-id
10498 - MINOR: dumpstats: extract stats fields enum and names
10499 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
10500 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
10501 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
10502 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
10503 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
10504 - MINOR: lua: dump general info
10505 - MINOR: lua: add class proxy
10506 - MINOR: lua: add class server
10507 - MINOR: lua: add class listener
10508 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
10509 - MEDIUM: proxy: use dynamic allocation for error dumps
10510 - CLEANUP: remove unneeded casts
10511 - CLEANUP: uniformize last argument of malloc/calloc
10512 - DOC: fix "needed" typo
10513 - BUG/MINOR: dumpstats: fix write to global chunk
10514 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
10515 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
10516 - CLEANUP: proto_http: few corrections for gcc warnings.
10517 - BUG/MINOR: DNS: resolution structure change
10518 - BUG/MINOR : allow to log cookie for tarpit and denied request
10519 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
10520 - OPTIM/MINOR: session: abort if possible before connecting to the backend
10521 - DOC: http: rename the unique-id sample and add the documentation
10522 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
10523 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
10524 - BUG/MINOR: server: risk of over reading the pref_net array.
10525 - BUG/MINOR: cfgparse: couple of small memory leaks.
10526 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
10527 - DOC: fix discrepancy in the example for http-request redirect
10528 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
10529 - CLEANUP: .gitignore cleanup
10530 - DOC: Clarify IPv4 address / mask notation rules
10531 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
10532 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
10533 - BUG/MINOR: listener: stop unbound listeners on startup
10534 - BUG/MINOR: fix maxaccept computation according to the frontend process range
10535 - TESTS: add blocksig.c to run tests with all signals blocked
10536 - MEDIUM: unblock signals on startup.
10537 - MINOR: filters: Print the list of existing filters during HA startup
10538 - MINOR: filters: Typo in an error message
10539 - MINOR: filters: Filters must define the callbacks struct during config parsing
10540 - DOC: filters: Add filters documentation
10541 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
10542 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
10543 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
10544 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
10545 - MINOR: Add ability for agent-check to set server maxconn
10546 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
10547 - MINOR: filters: add opaque data
10548 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
10549 - MINOR: lua: migrate the argument mask to 64 bits type.
10550 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
10551 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
10552 - BUG/MEDIUM: http: fix incorrect reporting of server errors
10553 - MINOR: channel: add new function channel_congested()
10554 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
10555 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
10556 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
10557 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
10558 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
10559 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
10560 - MINOR: stats: fix typo in help messages
10561 - MINOR: stats: show stat resolvers missing in the help message
10562 - BUG/MINOR: dns: fix DNS header definition
10563 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
10564 - CLEANUP: don't ignore scripts in .gitignore
10565 - BUILD: add a few release and backport scripts in scripts/
10566
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100105672016/03/14 : 1.7-dev2
10568 - DOC: lua: fix lua API
10569 - DOC: mailers: typo in 'hostname' description
10570 - DOC: compression: missing mention of libslz for compression algorithm
10571 - BUILD/MINOR: regex: missing header
10572 - BUG/MINOR: stream: bad return code
10573 - DOC: lua: fix somme errors and add implicit types
10574 - MINOR: lua: add set/get priv for applets
10575 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
10576 - BUG/MINOR: http: Be sure to process all the data received from a server
10577 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
10578 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
10579 - DOC: ssl: fixed some formatting errors in crt tag
10580 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
10581 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
10582 - MINOR: chunk: make chunk_initstr() take a const string
10583 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
10584 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
10585 - MINOR: lru: new function to delete <nb> least recently used keys
10586 - DOC: add Ben Shillito as the maintainer of 51d
10587 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
10588 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
10589 - BUG/MINOR: 51d: Releases workset back to pool.
10590 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
10591 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
10592 - MINOR: rename master process name in -Ds (systemd mode)
10593 - DOC: fix a few spelling mistakes
10594 - DOC: fix "workaround" spelling
10595 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
10596 - MINOR: fix the return type for dns_response_get_query_id() function
10597 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
10598 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
10599 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
10600 - BUG/MEDIUM: servers state: server port is used uninitialized
10601 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
10602 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
10603 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
10604 - MEDIUM: pools: add a new flag to avoid rounding pool size up
10605 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
10606 - BUG/MINOR: stream: don't force retries if the server is DOWN
10607 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
10608 - MINOR: unix: don't mention free ports on EAGAIN
10609 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
10610 - MINOR: stats: send content-length with the redirect to allow keep-alive
10611 - BUG: stream_interface: Reuse connection even if the output channel is empty
10612 - DOC: remove old tunnel mode assumptions
10613 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
10614 - BUG/MEDIUM: http-reuse: do not share private connections across backends
10615 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
10616 - BUG/MINOR: stats: fix missing comma in stats on agent drain
10617 - MAJOR: filters: Add filters support
10618 - MINOR: filters: Do not reset stream analyzers if the client is gone
10619 - REORG: filters: Prepare creation of the HTTP compression filter
10620 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
10621 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
10622 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
10623 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
10624 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
10625 - MINOR: filters: Add stream_filters structure to hide filters info
10626 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
10627 - MINOR: filters: Remove unused or useless stuff and do small optimizations
10628 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
10629 - MINOR: filters/http: Slightly update the parsing of chunks
10630 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
10631 - MINOR: filters: Add an filter example
10632 - MINOR: filters: Extract proxy stuff from the struct filter
10633 - MINOR: map: Add regex matching replacement
10634 - BUG/MINOR: lua: unsafe initialization
10635 - DOC: lua: fix somme errors
10636 - MINOR: lua: file dedicated to unsafe functions
10637 - MINOR: lua: add "now" time function
10638 - MINOR: standard: add RFC HTTP date parser
10639 - MINOR: lua: Add date functions
10640 - MINOR: lua: move common function
10641 - MINOR: lua: merge function
10642 - MINOR: lua: Add concat class
10643 - MINOR: standard: add function "escape_chunk"
10644 - MEDIUM: log: add a new log format flag "E"
10645 - DOC: add server name at rate-limit sessions example
10646 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
10647 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
10648 - DOC: LUA: fix some typos and syntax errors
10649 - MINOR: cli: add a new "show env" command
10650 - MEDIUM: config: allow to manipulate environment variables in the global section
10651 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
10652 - MINOR: mailers: increase default timeout to 10 seconds
10653 - MINOR: mailers: use <CRLF> for all line endings
10654 - BUG/MAJOR: lua: segfault using Concat object
10655 - DOC: lua: copyrights
10656 - MINOR: common: mask conversion
10657 - MEDIUM: dns: extract options
10658 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
10659 - MINOR: mailers: make it possible to configure the connection timeout
10660 - BUG/MAJOR: lua: applets can't sleep.
10661 - BUG/MINOR: server: some prototypes are renamed
10662 - BUG/MINOR: lua: Useless copy
10663 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
10664 - BUG/MINOR: server: fix the format of the warning on address change
10665 - CLEANUP: server: add "const" to some message strings
10666 - MINOR: server: generalize the "updater" source
10667 - BUG/MEDIUM: chunks: always reject negative-length chunks
10668 - BUG/MINOR: systemd: ensure we don't miss signals
10669 - BUG/MINOR: systemd: report the correct signal in debug message output
10670 - BUG/MINOR: systemd: propagate the correct signal to haproxy
10671 - MINOR: systemd: ensure a reload doesn't mask a stop
10672 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
10673 - CLEANUP: stats: Avoid computation with uninitialized bits.
10674 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
10675 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
10676 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
10677 - BUG/MAJOR: samples: check smp->strm before using it
10678 - MINOR: sample: add a new helper to initialize the owner of a sample
10679 - MINOR: sample: always set a new sample's owner before evaluating it
10680 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
10681 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
10682 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
10683 - MINOR: stats: create fields types suitable for all CSV output data
10684 - MINOR: stats: add all the "show info" fields in a table
10685 - MEDIUM: stats: fill all the show info elements prior to displaying them
10686 - MINOR: stats: add a function to emit fields into a chunk
10687 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
10688 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
10689 - MINOR: stats: add a declaration of all stats fields
10690 - MINOR: stats: don't hard-code the CSV fields list anymore
10691 - MINOR: stats: create stats fields storage and CSV dump function
10692 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
10693 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
10694 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
10695 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
10696 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
10697 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
10698 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
10699 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
10700 - MEDIUM: stats: move the server state coloring logic to the server dump function
10701 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
10702 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
10703 - MINOR: stats: make CSV report server check status only when enabled
10704 - MINOR: stats: only report backend's down time if it has servers
10705 - MINOR: stats: prepend '*' in front of the check status when in progress
10706 - MINOR: stats: make HTML stats dump rely on the table for the check status
10707 - MINOR: stats: add agent_status, agent_code, agent_duration to output
10708 - MINOR: stats: add check_desc and agent_desc to the output fields
10709 - MINOR: stats: add check and agent's health values in the output
10710 - MEDIUM: stats: make the HTML server state dump use the CSV states
10711 - MEDIUM: stats: only report observe errors when observe is set
10712 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
10713 - MEDIUM: stats: report server's address in the CSV output
10714 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
10715 - MEDIUM: stats: compute the color code only in the HTML form
10716 - MEDIUM: stats: report the listeners' address in the CSV output
10717 - MEDIUM: stats: make it possible to report the WAITING state for listeners
10718 - REORG: stats: dump the frontend's HTML stats via a generic function
10719 - REORG: stats: dump the socket stats via the generic function
10720 - REORG: stats: dump the server stats via the generic function
10721 - REORG: stats: dump the backend stats via the generic function
10722 - MEDIUM: stats: add a new "mode" column to report the proxy mode
10723 - MINOR: stats: report the load balancing algorithm in CSV output
10724 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
10725 - MINOR: stats: report number of intercepted requests for frontend and backends
10726 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
10727 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
10728 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
10729 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
10730 - MINOR: stats: add functions to emit typed fields into a chunk
10731 - MEDIUM: stats: support "show info typed" on the CLI
10732 - MEDIUM: stats: implement a typed output format for stats
10733 - DOC: document the "show info typed" and "show stat typed" output formats
10734 - MINOR: cfgparse: warn when uid parameter is not a number
10735 - MINOR: cfgparse: warn when gid parameter is not a number
10736 - BUG/MINOR: standard: Avoid free of non-allocated pointer
10737 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
10738 - CLEANUP: http: fix a build warning introduced by a recent fix
10739 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
10740
Willy Tarreaucb928252015-12-20 23:33:18 +0100107412015/12/20 : 1.7-dev1
10742 - DOC: specify that stats socket doc (section 9.2) is in management
10743 - BUILD: install only relevant and existing documentation
10744 - CLEANUP: don't ignore debian/ directory if present
10745 - BUG/MINOR: dns: parsing error of some DNS response
10746 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
10747 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
10748 - MEDIUM: dns: Don't use the ANY query type
10749 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
10750 - DOC: fix a typo for a "deviceatlas" keyword
10751 - FIX: small typo in an example using the "Referer" header
10752 - MINOR: cli: ability to set per-server maxconn
10753 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
10754 - DEBUG/MEDIUM: memory: optionally protect free data in pools
10755 - DEBUG/MEDIUM: memory: add optional control pool memory operations
10756 - MEDIUM: memory: add accounting for failed allocations
10757 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
10758 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
10759 - BUG/MINOR: dns: unable to parse CNAMEs response
10760 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
10761 - DOC: deviceatlas: more example use cases.
10762 - MINOR: config: allow IPv6 bracketed literals
10763 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
10764 - BUILD: add Haiku as supported target.
10765 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
10766 - DOC: typo on capture.res.hdr and capture.req.hdr
10767 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
10768 - CLEANUP: use direction names in place of numeric values
10769 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
10770 - MINOR: check: add agent-send server parameter
10771 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
10772 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
10773 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
10774 - BUILD: freebsd: double declaration
10775 - BUG/MEDIUM: lua: clean output buffer
10776 - BUILD: check for libressl to be able to build against it
10777 - DOC: lua-api/index.rst small example fixes, spelling correction.
10778 - DOC: lua: architecture and first steps
10779 - DOC: relation between timeout http-request and option http-buffer-request
10780 - BUILD: Make deviceatlas require PCRE
10781 - BUG: http: do not abort keep-alive connections on server timeout
10782 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
10783 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
10784 - BUILD/MINOR: http: proto_http.h needs sample.h
10785 - BUG/MEDIUM: http: don't enable auto-close on the response side
10786 - BUG/MEDIUM: stream: fix half-closed timeout handling
10787 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
10788 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
10789 - BUG/MEDIUM: sample: urlp can't match an empty value
10790 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
10791 - CLEANUP: proxy: calloc call inverted arguments
10792 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
10793 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
10794 - DOC: Edited 51Degrees section of README/
10795 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
10796 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
10797 - BUG/MINOR: checks: typo in an email-alert error message
10798 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
10799 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
10800 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
10801 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
10802 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
10803 - MINOR: ssl: Added cert_key_and_chain struct
10804 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
10805 - MINOR: ssl: Added multi cert support for crt-list config keyword
10806 - MEDIUM: ssl: Added multi cert support for loading crt directories
10807 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
10808 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
10809 - MINOR: config: make tune.recv_enough configurable
10810 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
10811 - DOC: ssl: Adding docs for Multi-Cert bundling
10812 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
10813 - BUG/MEDIUM: peers: old stick table updates could be repushed.
10814 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
10815 - REORG/MINOR: lua: convert boolean "int" to bitfield
10816 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
10817 - BUG/MINOR: lua: Lua applets must not use http_txn
10818 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
10819 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
10820 - CLEANUP: lua: bad error messages
10821 - CONTRIB: initiate a debugging suite to make debugging easier
10822
Willy Tarreau991b4782015-10-13 21:48:10 +0200108232015/10/13 : 1.7-dev0
10824 - exact copy of 1.6.0
10825
Willy Tarreau844028b2015-10-13 18:52:22 +0200108262015/10/13 : 1.6.0
10827 - BUG/MINOR: Handle interactive mode in cli handler
10828 - DOC: global section missing parameters
10829 - DOC: backend section missing parameters
10830 - DOC: stats paramaters available in frontend
10831 - MINOR: lru: do not allocate useless memory in lru64_lookup
10832 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
10833 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
10834 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
10835 - MINOR: ssl: Read the file used to generate certificates in any order
10836 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
10837 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
10838 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
10839 - BUILD: Fix the build on OSX (htonll/ntohll)
10840 - BUILD: enable build on Linux/s390x
10841 - BUG/MEDIUM: lua: direction test failed
10842 - MINOR: lua: fix a spelling error in some error messages
10843 - CLEANUP: cli: ensure we can never double-free error messages
10844 - BUG/MEDIUM: lua: force server-close mode on Lua services
10845 - MEDIUM: init: support more command line arguments after pid list
10846 - MEDIUM: init: support a list of files on the command line
10847 - MINOR: debug: enable memory poisonning to use byte 0
10848 - BUILD: ssl: fix build error introduced by recent commit
10849 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
10850 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
10851 - DOC: mention the "namespace" options for bind and server lines
10852 - DOC: add the "management" documentation
10853 - DOC: move the stats socket documentation from config to management
10854 - MINOR: examples: update haproxy.spec to mention new docs
10855 - DOC: mention management.txt in README
10856 - DOC: remove haproxy-{en,fr}.txt
10857 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
10858 - MINOR: init: report use of libslz instead of "no compression"
10859 - CLEANUP: examples: remove some obsolete and confusing files
10860 - CLEANUP: examples: remove obsolete configuration file samples
10861 - CLEANUP: examples: fix the example file content-sw-sample.cfg
10862 - CLEANUP: examples: update sample file option-http_proxy.cfg
10863 - CLEANUP: examples: update sample file ssl.cfg
10864 - CLEANUP: tests: move a test file from examples/ to tests/
10865 - CLEANUP: examples: shut up warnings in transparent proxy example
10866 - CLEANUP: tests: removed completely obsolete test files
10867 - DOC: update ROADMAP to remove what was done in 1.6
10868 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
10869
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200108702015/10/06 : 1.6-dev7
10871 - MINOR: cli: Dump all resolvers stats if no resolver section is given
10872 - BUG: config: external-check command validation is checking for incorrect arguments.
10873 - DOC: documentation format cleanups
10874 - DOC: lua: few typos.
10875 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
10876 - BUG/MEDIUM: logs: segfault writing to log from Lua
10877 - DOC: fix lua use-service example
10878 - MINOR: payload: add support for tls session ticket ext
10879 - MINOR: lua: remove the run flag
10880 - MEDIUM: lua: change the timeout execution
10881 - MINOR: lua: rename the tune.lua.applet-timeout
10882 - DOC: lua: update Lua doc
10883 - DOC: lua: update doc according with the last Lua changes
10884 - MINOR: http/tcp: fill the avalaible actions
10885 - DOC: reorder misplaced res.ssl_hello_type in the doc
10886 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
10887 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
10888 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
10889 - BUILD: server: fix build warnings introduced by load-server-state
10890 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
10891
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200108922015/09/28 : 1.6-dev6
10893 - BUG/MAJOR: can't enable a server through the stat socket
10894 - MINOR: server: Macro definition for server-state
10895 - MINOR: cli: new stats socket command: show servers state
10896 - DOC: stats socket command: show servers state
10897 - MINOR: config: new global directive server-state-base
10898 - DOC: global directive server-state-base
10899 - MINOR: config: new global section directive: server-state-file
10900 - DOC: new global directive: server-state-file
10901 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
10902 - DOC: load-server-state-from-file
10903 - MINOR: init: server state loaded from file
10904 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
10905 - MINOR: cli: new stats socket command: show backend
10906 - DOC: servers state seamless reload example
10907 - BUG: dns: can't connect UDP socket on FreeBSD
10908 - MINOR: cfgparse: New function cfg_unregister_sections()
10909 - MINOR: chunk: New function free_trash_buffers()
10910 - BUG/MEDIUM: main: Freeing a bunch of static pointers
10911 - MINOR: proto_http: Externalisation of previously internal functions
10912 - MINOR: global: Few new struct fields for da module
10913 - MAJOR: da: Update of the DeviceAtlas API module
10914 - DOC: DeviceAtlas new keywords
10915 - DOC: README: DeviceAtlas sample configuration updates
10916 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
10917 - MEDIUM: log: use a separate buffer for the header and for the message
10918 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
10919 - MEDIUM: logs: add support for RFC5424 header format per logger
10920 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
10921 - DOC: mention support for the RFC5424 syslog message format
10922 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
10923 - MEDIUM: logs: pass the trailing "\n" as an iovec
10924 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
10925 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
10926 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
10927 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
10928 - MINOR: global: Added new fields for 51Degrees device detection
10929 - DOC: Added more explanation for 51Degrees V3.2
10930 - BUILD: Changed 51Degrees option to support V3.2
10931 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
10932 - MINOR: 51d: Improved string handling for LRU cache
10933 - DOC: add references to rise/fall for the fastinter explanation
10934 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
10935 - BUG/MAJOR: lua: potential unexpected aborts()
10936 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
10937 - MINOR: action: add private configuration
10938 - MINOR: action: add reference to the original keywork matched for the called parser.
10939 - MINOR: lua: change actions registration
10940 - MEDIUM: proto_http: smp_prefetch_http initialize txn
10941 - MINOR: channel: rename function chn_sess to chn_strm
10942 - CLEANUP: lua: align defines
10943 - MINOR: http: export http_get_path() function
10944 - MINOR: http: export the get_reason() function
10945 - MINOR: http: export function http_msg_analyzer()
10946 - MINOR: http: split initialization
10947 - MINOR: lua: reset pointer after use
10948 - MINOR: lua: identify userdata objects
10949 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
10950 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
10951 - CLEANUP: lua: use calloc in place of malloc
10952 - BUG/MEDIUM: lua: longjmp function must be unregistered
10953 - BUG/MEDIUM: lua: forces a garbage collection
10954 - BUG/MEDIUM: lua: wakeup task on bad conditions
10955 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
10956 - MINOR: lua: extend socket address to support non-IP families
10957 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
10958 - BUG/MEDIUM: lua: socket destroy before reading pending data
10959 - MEDIUM: lua: change the GC policy
10960 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
10961 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
10962 - MINOR: applet: add init function
10963 - MINOR: applet: add an execution timeout
10964 - MINOR: stream/applet: add use-service action
10965 - MINOR: lua: add AppletTCP class and service
10966 - MINOR: lua: add AppletHTTP class and service
10967 - DOC: lua: some documentation update
10968 - DOC: add the documentation about internal circular lists
10969 - DOC: add a CONTRIBUTING file
10970 - DOC: add a MAINTAINERS file
10971 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
10972 - DOC: update coding-style to reference checkpatch.pl
10973 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
10974 - BUG/MINOR: args: add name for ARGT_VAR
10975 - DOC: add more entries to MAINTAINERS
10976 - DOC: add more entries to MAINTAINERS
10977 - CLEANUP: stream-int: remove obsolete function si_applet_call()
10978 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
10979 - BUG/MEDIUM: http: do not dereference strm_li(stream)
10980 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
10981 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
10982 - MINOR: stream-int: use si_release_endpoint() to close idle conns
10983 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
10984 - BUG/MEDIUM: acl: always accept match "found"
10985 - MINOR: applet: rename applet_runq to applet_active_queue
10986 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
10987 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
10988 - MINOR: stream-int: implement a new stream_int_update() function
10989 - MEDIUM: stream-int: factor out the stream update functions
10990 - MEDIUM: stream-int: call stream_int_update() from si_update()
10991 - MINOR: stream-int: export stream_int_update_*
10992 - MINOR: stream-int: move the applet_pause call out of the stream updates
10993 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
10994 - MINOR: stream-int: implement the stream_int_notify() function
10995 - MEDIUM: stream-int: use the same stream notification function for applets and conns
10996 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
10997 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
10998 - BUG/MEDIUM: applet: fix reporting of broken write situation
10999 - BUG/MINOR: stats: do not call cli_release_handler 3 times
11000 - BUG/MEDIUM: cli: properly handle closed output
11001 - MINOR: cli: do not call the release handler on internal error.
11002 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
11003 - DEBUG: add p_malloc() to return a poisonned memory area
11004 - CLEANUP: lua: remove unneeded memset(0) after calloc()
11005 - MINOR: lua: use the proper applet wakeup mechanism
11006 - BUG/MEDIUM: lua: better fix for the protocol check
11007 - BUG/MEDIUM: lua: properly set the target on the connection
11008 - MEDIUM: actions: pass a new "flags" argument to custom actions
11009 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
11010 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
11011 - MEDIUM: lua: only allow actions to yield if not in a final call
11012 - DOC: clarify how to make use of abstract sockets in socat
11013 - CLEANUP: config: make the errorloc/errorfile messages less confusing
11014 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
11015 - BUG/MINOR: config: check that tune.bufsize is always positive
11016 - MEDIUM: config: set tune.maxrewrite to 1024 by default
11017 - DOC: add David Carlier as maintainer of da.c
11018 - DOC: fix some broken unexpected unicode chars in the Lua doc.
11019 - BUG/MEDIUM: proxy: ignore stopped peers
11020 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
11021 - MEDIUM: init: completely deallocate unused peers
11022 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
11023 - DOC: remove outdated actions lists on tcp-request/response
11024 - MEDIUM: tcp: add new tcp action "silent-drop"
11025 - DOC: add URLs to optional libraries in the README
11026
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200110272015/09/14 : 1.6-dev5
11028 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
11029 - BUG/MEDIUM: dns: DNS resolution doesn't start
11030 - BUG/MAJOR: dns: dns client resolution infinite loop
11031 - MINOR: dns: coding style update
11032 - MINOR: dns: new bitmasks to use against DNS flags
11033 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
11034 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
11035 - MEDIUM: dns: handling of truncated response
11036 - MINOR: DNS client query type failover management
11037 - MINOR: dns: no expected DNS record type found
11038 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
11039 - BUG/MINOR: DNS request retry counter used for retry only
11040 - DOC: DNS documentation updated
11041 - MEDIUM: actions: remove ACTION_STOP
11042 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
11043 - BUG/MINOR: lua: last log character truncated.
11044 - CLEANUP: typo: bad indent
11045 - CLEANUP: actions: missplaced includes
11046 - MINOR: build: missing header
11047 - CLEANUP: lua: Merge log functions
11048 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
11049 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
11050 - BUG/MAJOR: http: don't call http_send_name_header() after an error
11051 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
11052 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
11053 - BUG/MEDIUM: dns: use the correct server hostname when resolving
11054
Willy Tarreau61d301f2015-08-30 00:17:17 +0200110552015/08/30 : 1.6-dev4
11056 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
11057 - DOC: typo in 'redirect', 302 code meaning
11058 - DOC: typos in tcp-check expect examples
11059 - DOC: resolve-prefer default value and default-server update
11060 - MINOR: DNS counters: increment valid counter
11061 - BUG/MEDIUM: DNS resolution response parsing broken
11062 - MINOR: server: add new SRV_ADMF_CMAINT flag
11063 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
11064 - BUG/MEDIUM: dns: wrong first time DNS resolution
11065 - BUG/MEDIUM: lua: Lua tasks fail to start.
11066 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
11067 - DOC/MINOR: fix OpenBSD versions where haproxy works
11068 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
11069 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
11070 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
11071 - BUILD: ssl: Allow building against libssl without SSLv3.
11072 - DOC: clarify some points about SSL and the proxy protocol
11073 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
11074 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
11075 - DOC: match several lua configuration option names to those implemented in code
11076 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
11077 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
11078 - MINOR: stream: initialize the current_rule field to NULL on stream init
11079 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
11080 - CLEANUP: proto_http: remove useless initialisation
11081 - CLEANUP: http/tcp actions: remove the scope member
11082 - BUG/MINOR: proto_tcp: custom action continue is ignored
11083 - MINOR: proto_tcp: add session in the action prototype
11084 - MINOR: vars: reduce the code size of some wrappers
11085 - MINOR: Move http method enum from proto_http to sample
11086 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
11087 - MINOR: sample/proto_tcp: export "smp_fetch_src"
11088 - MEDIUM: cli: rely on the map's output type instead of the sample type
11089 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
11090 - BUG/MEDIUM: vars: segfault during the configuration parsing
11091 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
11092 - BUG/MEDIUM: lua: bad error processing
11093 - MINOR: samples: rename a struct from sample_storage to sample_data
11094 - MINOR: samples: rename some struct member from "smp" to "data"
11095 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
11096 - MINOR: samples: extract the anonymous union and create the union sample_value
11097 - MINOR: samples: rename union from "data" to "u"
11098 - MEDIUM: 51degrees: Adapt the 51Degrees library
11099 - MINOR: samples: data assignation simplification
11100 - MEDIUM: pattern/map: Maps can returns various types
11101 - MINOR: map: The map can return IPv4 and IPv6
11102 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
11103 - MINOR: actions: Remove the data opaque pointer
11104 - MINOR: lua: use the hlua_rule type in place of opaque type
11105 - MINOR: vars: use the vars types as argument in place of opaque type
11106 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
11107 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
11108 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
11109 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
11110 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
11111 - MEDIUM: capture: Move the capture configuration storage in the union
11112 - MINOR: actions: add "from" information
11113 - MINOR: actions: remove the mark indicating the last entry in enum
11114 - MINOR: actions: Declare all the embedded actions in the same header file
11115 - MINOR: actions: change actions names
11116 - MEDIUM: actions: Add standard return code for the action API
11117 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
11118 - MINOR: proto_tcp: proto_tcp.h is now useles
11119 - MINOR: actions: mutualise the action keyword lookup
11120 - MEDIUM: actions: Normalize the return code of the configuration parsers
11121 - MINOR: actions: Remove wrappers
11122 - MAJOR: stick-tables: use sample types in place of dedicated types
11123 - MEDIUM: stick-tables: use the sample type names
11124 - MAJOR: stick-tables: remove key storage from the key struct
11125 - MEDIUM: stick-tables: Add GPT0 in the stick tables
11126 - MINOR: stick-tables: Add GPT0 access
11127 - MINOR: stick-tables: Add GPC0 actions
11128 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
11129 - DOC: ssl: missing LF
11130 - MINOR: lua: add core.done() function
11131 - DOC: fix function name
11132 - BUG/MINOR: lua: in some case a sample may remain undefined
11133 - DOC: fix "http_action_set_req_line()" comments
11134 - MINOR: http: Action for manipulating the returned status code.
11135 - MEDIUM: lua: turns txn:close into txn:done
11136 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
11137 - BUILD: link with libdl if needed for Lua support
11138 - CLEANUP: backend: factor out objt_server() in connect_server()
11139 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
11140 - MEDIUM: stream-int: simplify si_alloc_conn()
11141 - MINOR: stream-int: add new function si_detach_endpoint()
11142 - MINOR: server: add a list of private idle connections
11143 - MINOR: connection: add a new list member in the connection struct
11144 - MEDIUM: stream-int: queue idle connections at the server
11145 - MINOR: stream-int: make si_idle_conn() only accept valid connections
11146 - MINOR: server: add a list of already used idle connections
11147 - MINOR: connection: add a new flag CO_FL_PRIVATE
11148 - MINOR: config: add new setting "http-reuse"
11149 - MAJOR: backend: initial work towards connection reuse
11150 - MAJOR: backend: improve the connection reuse mechanism
11151 - MEDIUM: backend: implement "http-reuse safe"
11152 - MINOR: server: add a list of safe, already reused idle connections
11153 - MEDIUM: backend: add the "http-reuse aggressive" strategy
11154 - DOC: document the new http-reuse directive
11155 - DOC: internals: document next steps for HTTP connection reuse
11156 - DOC: mention that %ms is left-padded with zeroes.
11157 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
11158 - MAJOR: http: remove references to appsession
11159 - CLEANUP: config: remove appsession initialization
11160 - CLEANUP: appsession: remove appsession.c and sessionhash.c
11161 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
11162 - CLEANUP: proxy: remove last references to appsession
11163 - CLEANUP: appsession: remove the last include files
11164 - DOC: remove documentation about appsession
11165 - CLEANUP: .gitignore: ignore more test files
11166 - CLEANUP: .gitignore: finally ignore everything but what is known.
11167 - MEDIUM: config: emit a warning on a frontend without listener
11168 - DOC: add doc/internals/entities-v2.txt
11169 - DOC: add doc/linux-syn-cookies.txt
11170 - DOC: add design thoughts on HTTP/2
11171 - DOC: add some thoughts on connection sharing for HTTP/2
11172 - DOC: add design thoughts on dynamic buffer allocation
11173 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
11174 - DOC: add new file intro.txt
11175 - MAJOR: tproxy: remove support for cttproxy
11176 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
11177 - DOC: lua: replace txn:close with txn:done in lua-api
11178 - DOC: intro: minor updates and fixes
11179 - DOC: intro: fix too long line.
11180 - DOC: fix example of http-request using ssl_fc_session_id
11181 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
11182 - CLEANUP: lua: fix some indent issues
11183 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
11184 - DOC: lua: mention than txn:close was renamed txn:done.
11185
Willy Tarreau50bdda62015-07-22 17:32:56 +0200111862015/07/22 : 1.6-dev3
11187 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
11188 - MEDIUM: http: Add new 'set-src' option to http-request
11189 - DOC usesrc root privileges requirments
11190 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
11191 - MINOR: proxy: bit field for proxy_find_best_match diff status
11192 - MINOR: server: new server flag: SRV_F_FORCED_ID
11193 - MINOR: server: server_find functions: id, name, best_match
11194 - DOC: dns: fix chapters syntax
11195 - BUILD/MINOR: tools: rename popcount to my_popcountl
11196 - BUILD: add netbsd TARGET
11197 - MEDIUM: 51Degrees code refactoring and cleanup
11198 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
11199 - DOC: add notes about the "51degrees-cache-size" parameter
11200 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
11201 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
11202 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
11203 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
11204 - BUG/MINOR: lua: type error in the arguments wrapper
11205 - CLEANUP: vars: remove unused struct
11206 - BUG/MINOR: http/sample: gmtime/localtime can fail
11207 - MINOR: standard: add 64 bits conversion functions
11208 - MAJOR: sample: converts uint and sint in 64 bits signed integer
11209 - MAJOR: arg: converts uint and sint in sint
11210 - MEDIUM: sample: switch to saturated arithmetic
11211 - MINOR: vars: returns variable content
11212 - MEDIUM: vars/sample: operators can use variables as parameter
11213 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
11214 - BUILD/MINOR: lua: fix a harmless build warning
11215 - BUILD/MINOR: stats: fix build warning due to condition always true
11216 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
11217 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
11218 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
11219 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
11220 - MINOR: vars: make the accounting not depend on the stream
11221 - MEDIUM: vars: move the session variables to the session, not the stream
11222 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
11223 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
11224 - BUG/MAJOR: tcp: tcp rulesets were still broken
11225 - MINOR: stats: improve compression stats reporting
11226 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
11227 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
11228 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
11229 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
11230 - MINOR: args: add new context for servers
11231 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
11232 - MINOR: ssl: provide ia function to set the SNI extension on a connection
11233 - MEDIUM: ssl: add sni support on the server lines
11234 - CLEANUP: stream: remove a useless call to si_detach()
11235 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
11236 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
11237 - MINOR: stream-int: only use si_release_endpoint() to release a connection
11238 - MINOR: standard: provide htonll() and ntohll()
11239 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
11240 - BUG/MAJOR: dns: fix the length of the string to be copied
11241
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200112422015/06/17 : 1.6-dev2
11243 - BUG/MINOR: ssl: Display correct filename in error message
11244 - MEDIUM: logs: Add HTTP request-line log format directives
11245 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
11246 - BUG/MINOR: check: fix tcpcheck error message
11247 - MINOR: use an int instead of calling tcpcheck_get_step_id
11248 - MINOR: tcpcheck_rule structure update
11249 - MINOR: include comment in tcpcheck error log
11250 - DOC: tcpcheck comment documentation
11251 - MEDIUM: server: add support for changing a server's address
11252 - MEDIUM: server: change server ip address from stats socket
11253 - MEDIUM: protocol: add minimalist UDP protocol client
11254 - MEDIUM: dns: implement a DNS resolver
11255 - MAJOR: server: add DNS-based server name resolution
11256 - DOC: server name resolution + proto DNS
11257 - MINOR: dns: add DNS statistics
11258 - MEDIUM: http: configurable http result codes for http-request deny
11259 - BUILD: Compile clean when debug options defined
11260 - MINOR: lru: Add the possibility to free data when an item is removed
11261 - MINOR: lru: Add lru64_lookup function
11262 - MEDIUM: ssl: Add options to forge SSL certificates
11263 - MINOR: ssl: Export functions to manipulate generated certificates
11264 - MEDIUM: config: add DeviceAtlas global keywords
11265 - MEDIUM: global: add the DeviceAtlas required elements to struct global
11266 - MEDIUM: sample: add the da-csv converter
11267 - MEDIUM: init: DeviceAtlas initialization
11268 - BUILD: Makefile: add options to build with DeviceAtlas
11269 - DOC: README: explain how to build with DeviceAtlas
11270 - BUG/MEDIUM: http: fix the url_param fetch
11271 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
11272 - MAJOR: peers: peers protocol version 2.0
11273 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
11274 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
11275 - MEDIUM: peers: support of any stick-table data-types for sync
11276 - BUG/MAJOR: sample: regression on sample cast to stick table types.
11277 - CLEANUP: deinit: remove codes for cleaning p->block_rules
11278 - DOC: Fix L4TOUT typo in documentation
11279 - DOC: set-log-level in Logging section preamble
11280 - BUG/MEDIUM: compat: fix segfault on FreeBSD
11281 - MEDIUM: check: include server address and port in the send-state header
11282 - MEDIUM: backend: Allow redispatch on retry intervals
11283 - MINOR: Add TLS ticket keys reference and use it in the listener struct
11284 - MEDIUM: Add support for updating TLS ticket keys via socket
11285 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
11286 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
11287 - DOC: Update doc about weight, act and bck fields in the statistics
11288 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
11289 - MINOR: ssl: add a destructor to free allocated SSL ressources
11290 - MEDIUM: ssl: add the possibility to use a global DH parameters file
11291 - MEDIUM: ssl: replace standards DH groups with custom ones
11292 - MEDIUM: stats: Add enum srv_stats_state
11293 - MEDIUM: stats: Separate server state and colour in stats
11294 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
11295 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
11296 - MEDIUM: Lower priority of email alerts for log-health-checks messages
11297 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
11298 - MEDIUM: Document when email-alerts are sent
11299 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
11300 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
11301 - BUG/MINOR: utf8: remove compilator warning
11302 - MEDIUM: map: uses HAProxy facilities to store default value
11303 - BUG/MINOR: lua: error in detection of mandatory arguments
11304 - BUG/MINOR: lua: set current proxy as default value if it is possible
11305 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
11306 - BUG/MEDIUM: lua: undetected infinite loop
11307 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
11308 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
11309 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
11310 - BUILD: lua: it miss the '-ldl' directive
11311 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
11312 - MINOR: http: split the function http_action_set_req_line() in two parts
11313 - MINOR: http: split http_transform_header() function in two parts.
11314 - MINOR: http: export function inet_set_tos()
11315 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
11316 - MINOR: lua: create and register HTTP class
11317 - DOC: lua: fix some typos
11318 - MINOR: lua: add log functions
11319 - BUG/MINOR: lua: Fix SSL initialisation
11320 - DOC: lua: some fixes
11321 - MINOR: lua: (req|res)_get_headers return more than one header value
11322 - MINOR: lua: map system integration in Lua
11323 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
11324 - MINOR: sample: add url_dec converter
11325 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
11326 - MEDIUM: sample change the prototype of sample-fetches and converters functions
11327 - MINOR: sample: fill the struct sample with the options.
11328 - MEDIUM: sample: change the prototype of sample-fetches functions
11329 - MINOR: http: split the url_param in two parts
11330 - CLEANUP: http: bad indentation
11331 - MINOR: http: add body_param fetch
11332 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
11333 - DOC: http: req.body_param documentation
11334 - MINOR: proxy: custom capture declaration
11335 - MINOR: capture: add two "capture" converters
11336 - MEDIUM: capture: Allow capture with slot identifier
11337 - MINOR: http: add array of generic pointers in http_res_rules
11338 - MEDIUM: capture: adds http-response capture
11339 - MINOR: common: escape CSV strings
11340 - MEDIUM: stats: escape some strings in the CSV dump
11341 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
11342 - MINOR: lua: Lua tcp action are not final action
11343 - DOC: lua: schematics about lua socket organization
11344 - BUG/MINOR: debug: display (null) in place of "meth"
11345 - DOC: mention the "lua action" in documentation
11346 - MINOR: standard: add function that converts signed int to a string
11347 - BUG/MINOR: sample: wrong conversion of signed values
11348 - MEDIUM: sample: Add type any
11349 - MINOR: debug: add a special converter which display its input sample content.
11350 - MINOR: tcp: increase the opaque data array
11351 - MINOR: tcp/http/conf: extends the keyword registration options
11352 - MINOR: build: fix build dependency
11353 - MEDIUM: vars: adds support of variables
11354 - MINOR: vars: adds get and set functions
11355 - MINOR: lua: Variable access
11356 - MINOR: samples: add samples which returns constants
11357 - BUG/MINOR: vars/compil: fix some warnings
11358 - BUILD: add 51degrees options to makefile.
11359 - MINOR: global: add several 51Degrees members to global
11360 - MINOR: config: add 51Degrees config parsing.
11361 - MINOR: init: add 51Degrees initialisation code
11362 - MEDIUM: sample: add fiftyone_degrees converter.
11363 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
11364 - MEDIUM: sample: add trie support to 51Degrees
11365 - DOC: add 51Degrees notes to configuration.txt.
11366 - DOC: add build indications for 51Degrees to README.
11367 - MEDIUM: cfgparse: introduce weak and strong quoting
11368 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
11369 - MINOR: cfgparse: remove line size limitation
11370 - MEDIUM: cfgparse: expand environment variables
11371 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
11372 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
11373 - CLEANUP: cfgparse: remove reference to 'ruleset' section
11374 - MEDIUM: cfgparse: check section maximum number of arguments
11375 - MEDIUM: cfgparse: max arguments check in the global section
11376 - MEDIUM: cfgparse: check max arguments in the proxies sections
11377 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
11378 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
11379 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
11380 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
11381 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
11382 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
11383 - MINOR: connection: implement conn_sock_send()
11384 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
11385 - MEDIUM: connection: make conn_drain() perform more controls
11386 - REORG: connection: move conn_drain() to connection.c and rename it
11387 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
11388 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
11389 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
11390 - BUG/MEDIUM: peers: correctly configure the client timeout
11391 - MINOR: peers: centralize configuration of the peers frontend
11392 - MINOR: proxy: store the default target into the frontend's configuration
11393 - MEDIUM: stats: use frontend_accept() as the accept function
11394 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
11395 - CLEANUP: listeners: remove unused timeout
11396 - MEDIUM: listener: store the default target per listener
11397 - BUILD: fix automatic inclusion of libdl.
11398 - MEDIUM: lua: implement a simple memory allocator
11399 - MEDIUM: compression: postpone buffer adjustments after compression
11400 - MEDIUM: compression: don't send leading zeroes with chunk size
11401 - BUG/MINOR: compression: consider the expansion factor in init
11402 - MINOR: http: check the algo name "identity" instead of the function pointer
11403 - CLEANUP: compression: statify all algo-specific functions
11404 - MEDIUM: compression: add a distinction between UA- and config- algorithms
11405 - MEDIUM: compression: add new "raw-deflate" compression algorithm
11406 - MEDIUM: compression: split deflate_flush() into flush and finish
11407 - CLEANUP: compression: remove unused reset functions
11408 - MAJOR: compression: integrate support for libslz
11409 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
11410 - BUG/MAJOR: http: null-terminate the http actions keywords list
11411 - CLEANUP: lua: remove the unused hlua_sleep memory pool
11412 - BUG/MAJOR: lua: use correct object size when initializing a new converter
11413 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
11414 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
11415 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
11416 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
11417 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
11418 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
11419 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
11420 - REORG/MAJOR: session: rename the "session" entity to "stream"
11421 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
11422 - MINOR: session: start to reintroduce struct session
11423 - MEDIUM: stream: allocate the session when a stream is created
11424 - MEDIUM: stream: move the listener's pointer to the session
11425 - MEDIUM: stream: move the frontend's pointer to the session
11426 - MINOR: session: add a pointer to the session's origin
11427 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
11428 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
11429 - MEDIUM: http: move header captures from http_txn to struct stream
11430 - MINOR: http: create a dedicated pool for http_txn
11431 - MAJOR: http: move http_txn out of struct stream
11432 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
11433 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
11434 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
11435 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
11436 - MAJOR: sample: pass a pointer to the session to each sample fetch function
11437 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
11438 - CLEANUP: stream: don't set ->target to the incoming connection anymore
11439 - MINOR: stream: move session initialization before the stream's
11440 - MINOR: session: store the session's accept date
11441 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
11442 - MINOR: session: implement session_free() and use it everywhere
11443 - MINOR: session: add stick counters to the struct session
11444 - REORG: stktable: move the stkctr_* functions from stream to sticktable
11445 - MEDIUM: streams: support looking up stkctr in the session
11446 - MEDIUM: session: update the session's stick counters upon session_free()
11447 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
11448 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
11449 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
11450 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
11451 - MAJOR: stream: don't initialize the stream anymore in stream_accept
11452 - MEDIUM: session: remove the task pointer from the session
11453 - REORG: session: move the session parts out of stream.c
11454 - MINOR: stream-int: make appctx_new() take the applet in argument
11455 - MEDIUM: peers: move the appctx initialization earlier
11456 - MINOR: session: introduce session_new()
11457 - MINOR: session: make use of session_new() when creating a new session
11458 - MINOR: peers: make use of session_new() when creating a new session
11459 - MEDIUM: peers: initialize the task before the stream
11460 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
11461 - CLEANUP: stream.c: do not re-attach the connection to the stream
11462 - MEDIUM: stream: isolate connection-specific initialization code
11463 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
11464 - MEDIUM: peers: make use of stream_accept_session()
11465 - MEDIUM: frontend: make ->accept only return +/-1
11466 - MEDIUM: stream: return the stream upon accept()
11467 - MEDIUM: frontend: move some stream initialisation to stream_new()
11468 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
11469 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
11470 - MEDIUM: frontend: move some remaining stream settings to stream_new()
11471 - CLEANUP: frontend: remove one useless local variable
11472 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
11473 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
11474 - MINOR: lua: minor cleanup in hlua_socket_new()
11475 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
11476 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
11477 - CLEANUP: stream-int: swap stream-int and appctx declarations
11478 - CLEANUP: namespaces: fix protection against multiple inclusions
11479 - MINOR: session: maintain the session count stats in the session, not the stream
11480 - MEDIUM: session: adjust the connection flags before stream_new()
11481 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
11482 - CLEANUP: poll: move the conditions for waiting out of the poll functions
11483 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
11484 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
11485 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
11486 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
11487 - DOC: update the entities diagrams
11488 - BUG/MEDIUM: http: properly retrieve the front connection
11489 - MINOR: applet: add a new "owner" pointer in the appctx
11490 - MEDIUM: applet: make the applet not depend on a stream interface anymore
11491 - REORG: applet: move the applet definitions out of stream_interface
11492 - CLEANUP: applet: rename struct si_applet to applet
11493 - REORG: stream-int: create si_applet_ops dedicated to applets
11494 - MEDIUM: applet: add basic support for an applet run queue
11495 - MEDIUM: applet: implement a run queue for active appctx
11496 - MEDIUM: stream-int: add a new function si_applet_done()
11497 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
11498 - MAJOR: stream: use a regular ->update for all stream interfaces
11499 - MEDIUM: dumpstats: don't unregister the applet anymore
11500 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
11501 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
11502 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
11503 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
11504 - MEDIUM: stream-int: pause the appctx if the task is woken up
11505 - BUG/MAJOR: tcp: only call registered actions when they're registered
11506 - BUG/MEDIUM: peers: fix applet scheduling
11507 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
11508 - MINOR: tools: provide an rdtsc() function for time comparisons
11509 - IMPORT: lru: import simple ebtree-based LRU functions
11510 - IMPORT: hash: import xxhash-r39
11511 - MEDIUM: pattern: add a revision to all pattern expressions
11512 - MAJOR: pattern: add LRU-based cache on pattern matching
11513 - BUG/MEDIUM: http: remove content-length from chunked messages
11514 - DOC: http: update the comments about the rules for determining transfer-length
11515 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
11516 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
11517 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
11518 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
11519 - MEDIUM: http: disable support for HTTP/0.9 by default
11520 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
11521 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
11522 - MEDIUM: init: don't stop proxies in parent process when exiting
11523 - MINOR: stick-table: don't attach to peers in stopped state
11524 - MEDIUM: config: initialize stick-tables after peers, not before
11525 - MEDIUM: peers: add the ability to disable a peers section
11526 - MINOR: peers: store the pointer to the signal handler
11527 - MEDIUM: peers: unregister peers that were never started
11528 - MEDIUM: config: propagate the table's process list to the peers sections
11529 - MEDIUM: init: stop any peers section not bound to the correct process
11530 - MEDIUM: config: validate that peers sections are bound to exactly one process
11531 - MAJOR: peers: allow peers section to be used with nbproc > 1
11532 - DOC: relax the peers restriction to single-process
11533 - DOC: document option http-ignore-probes
11534 - DOC: fix the comments about the meaning of msg->sol in HTTP
11535 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
11536 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
11537 - MEDIUM: stream: move HTTP request body analyser before process_common
11538 - MEDIUM: http: add a new option http-buffer-request
11539 - MEDIUM: http: provide 3 fetches for the body
11540 - DOC: update the doc on the proxy protocol
11541 - BUILD: pattern: fix build warnings introduced in the LRU cache
11542 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
11543 - CLEANUP: config: fix misleading information in error message.
11544 - MINOR: config: report the number of processes using a peers section in the error case
11545 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
11546 - MEDIUM: http: add new "capture" action for http-request
11547 - BUG/MEDIUM: http: fix the http-request capture parser
11548 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
11549 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
11550 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
11551 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
11552 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
11553 - CLEANUP: checks: simplify the loop processing of tcp-checks
11554 - BUG/MAJOR: checks: always check for end of list before proceeding
11555 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
11556 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
11557 - MEDIUM: http: make url_param iterate over multiple occurrences
11558 - BUG/MEDIUM: peers: apply a random reconnection timeout
11559 - MEDIUM: config: reject invalid config with name duplicates
11560 - MEDIUM: config: reject conflicts in table names
11561 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
11562 - MINOR: proxy: simply ignore duplicates in proxy name lookups
11563 - MINOR: config: don't open-code proxy name lookups
11564 - MEDIUM: config: clarify the conflicting modes detection for backend rules
11565 - CLEANUP: proxy: remove now unused function findproxy_mode()
11566 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
11567 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
11568 - MINOR: proxy: add a new function proxy_find_by_id()
11569 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
11570 - MEDIUM: proxy: add a new proxy_find_best_match() function
11571 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
11572 - MINOR: http: prepare support for parsing redirect actions on responses
11573 - MEDIUM: http: implement http-response redirect rules
11574 - MEDIUM: http: no need to close the request on redirect if data was parsed
11575 - BUG/MEDIUM: http: fix body processing for the stats applet
11576 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
11577 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
11578 - CLEANUP: da: move the converter registration to da.c
11579 - CLEANUP: da: register the config keywords in da.c
11580 - CLEANUP: adjust the envelope name in da.h to reflect the file name
11581 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
11582 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
11583 - BUILD: fix build warning when not using 51degrees
11584 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
11585 - BUILD: ssl: fix recent build breakage on older SSL libs
11586
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100115872015/03/11 : 1.6-dev1
11588 - CLEANUP: extract temporary $CFG to eliminate duplication
11589 - CLEANUP: extract temporary $BIN to eliminate duplication
11590 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
11591 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
11592 - CLEANUP: extract quiet_check() to avoid duplication
11593 - BUG/MINOR: don't start haproxy on reload
11594 - DOC: Address issue where documentation is excluded due to a gitignore rule.
11595 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
11596 - BUILD: fix "make install" to support spaces in the install dirs
11597 - BUG/MINOR: config: http-request replace-header arg typo
11598 - BUG: config: error in http-response replace-header number of arguments
11599 - DOC: missing track-sc* in http-request rules
11600 - BUILD: lua: missing ifdef related to SSL when enabling LUA
11601 - BUG/MEDIUM: regex: fix pcre_study error handling
11602 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
11603 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
11604 - MEDIUM: Improve signal handling in systemd wrapper.
11605 - DOC: fix typo in Unix Socket commands
11606 - BUG/MEDIUM: checks: external checks can't change server status to UP
11607 - BUG/MEDIUM: checks: segfault with external checks in a backend section
11608 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
11609 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
11610 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
11611 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
11612 - BUG/MINOR: log: fix request flags when keep-alive is enabled
11613 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
11614 - MINOR: checks: allow external checks in backend sections
11615 - MEDIUM: checks: provide environment variables to the external checks
11616 - MINOR: checks: update dynamic environment variables in external checks
11617 - DOC: checks: environment variables used by "external-check command"
11618 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
11619 - MINOR: ssl: load certificates in alphabetical order
11620 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
11621 - MINOR: lua: typo in an error message
11622 - MINOR: report the Lua version in -vv
11623 - MINOR: lua: add a compilation error message when compiled with an incompatible version
11624 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
11625 - BUILD: try to automatically detect the Lua library name
11626 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
11627 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
11628 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
11629 - MEDIUM: connection: add new bit in Proxy Protocol V2
11630 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
11631 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
11632 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
11633 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
11634 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
11635 - MINOR: ssl: add statement to force some ssl options in global.
11636 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
11637 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
11638 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
11639 - MINOR: samples: adds the bytes converter.
11640 - MINOR: samples: adds the field converter.
11641 - MINOR: samples: add the word converter.
11642 - BUG/MINOR: server: move the directive #endif to the end of file
11643 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
11644 - DOC: fix a few typos
11645 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
11646 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
11647 - BUG/MINOR: parse: refer curproxy instead of proxy
11648 - BUG/MINOR: parse: check the validity of size string in a more strict way
11649 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
11650 - DOC: expand the docs for the provided stats.
11651 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
11652 - MEDIUM: ssl: Certificate Transparency support
11653 - MEDIUM: stats: proxied stats admin forms fix
11654 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
11655 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
11656 - MAJOR: namespace: add Linux network namespace support
11657 - MINOR: systemd: Check configuration before start
11658 - BUILD: ssl: handle boringssl in openssl version detection
11659 - BUILD: ssl: disable OCSP when using boringssl
11660 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
11661 - MINOR: ssl: don't use boringssl's cipher_list
11662 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
11663 - MINOR: stats: fix minor typo in HTML page
11664 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
11665 - MEDIUM: Add support for configurable TLS ticket keys
11666 - DOC: Document the new tls-ticket-keys bind keyword
11667 - DOC: clearly state that the "show sess" output format is not fixed
11668 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
11669 - DOC: httplog does not support 'no'
11670 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
11671 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
11672 - BUG/MEDIUM: Consistently use 'check' in process_chk
11673 - MEDIUM: Add external check
11674 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
11675 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
11676 - MEDIUM: Remove connect_chk
11677 - MEDIUM: Refactor init_check and move to checks.c
11678 - MEDIUM: Add free_check() helper
11679 - MEDIUM: Move proto and addr fields struct check
11680 - MEDIUM: Attach tcpcheck_rules to check
11681 - MEDIUM: Add parsing of mailers section
11682 - MEDIUM: Allow configuration of email alerts
11683 - MEDIUM: Support sending email alerts
11684 - DOC: Document email alerts
11685 - MINOR: Remove trailing '.' from email alert messages
11686 - MEDIUM: Allow suppression of email alerts by log level
11687 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
11688 - MINOR: deinit: fix memory leak
11689 - MINOR: http: export the function 'smp_fetch_base32'
11690 - BUG/MEDIUM: http: tarpit timeout is reset
11691 - MINOR: sample: add "json" converter
11692 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
11693 - MINOR: map/acl/dumpstats: remove the "Done." message
11694 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
11695 - BUG/MINOR: pattern: error message missing
11696 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
11697 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
11698 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
11699 - MEDIUM: task: call session analyzers if the task is woken by a message.
11700 - MEDIUM: protocol: automatically pick the proto associated to the connection.
11701 - MEDIUM: channel: wake up any request analyzer on response activity
11702 - MINOR: converters: add a "void *private" argument to converters
11703 - MINOR: converters: give the session pointer as converter argument
11704 - MINOR: sample: add private argument to the struct sample_fetch
11705 - MINOR: global: export function and permits to not resolve DNS names
11706 - MINOR: sample: add function for browsing samples.
11707 - MINOR: global: export many symbols.
11708 - MINOR: includes: fix a lot of missing or useless includes
11709 - MEDIUM: tcp: add register keyword system.
11710 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
11711 - MEDIUM: http: change the code returned by the response processing rule functions
11712 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
11713 - MINOR: channel: functions to get data from a buffer without copy
11714 - MEDIUM: lua: lua integration in the build and init system.
11715 - MINOR: lua: add ease functions
11716 - MINOR: lua: add runtime execution context
11717 - MEDIUM: lua: "com" signals
11718 - MINOR: lua: add the configuration directive "lua-load"
11719 - MINOR: lua: core: create "core" class and object
11720 - MINOR: lua: post initialisation bindings
11721 - MEDIUM: lua: add coroutine as tasks.
11722 - MINOR: lua: add sample and args type converters
11723 - MINOR: lua: txn: create class TXN associated with the transaction.
11724 - MINOR: lua: add shared context in the lua stack
11725 - MINOR: lua: txn: import existing sample-fetches in the class TXN
11726 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
11727 - MINOR: lua: register and execute sample-fetches in LUA
11728 - MINOR: lua: register and execute converters in LUA
11729 - MINOR: lua: add bindings for tcp and http actions
11730 - MINOR: lua: core: add sleep functions
11731 - MEDIUM: lua: socket: add "socket" class for TCP I/O
11732 - MINOR: lua: core: pattern and acl manipulation
11733 - MINOR: lua: channel: add "channel" class
11734 - MINOR: lua: txn: object "txn" provides two objects "channel"
11735 - MINOR: lua: core: can set the nice of the current task
11736 - MINOR: lua: core: can yield an execution stack
11737 - MINOR: lua: txn: add binding for closing the client connection.
11738 - MEDIUM: lua: Lua initialisation "on demand"
11739 - BUG/MAJOR: lua: send function fails and return bad bytes
11740 - MINOR: remove unused declaration.
11741 - MINOR: lua: remove some #define
11742 - MINOR: lua: use bitfield and macro in place of integer and enum
11743 - MINOR: lua: set skeleton for Lua execution expiration
11744 - MEDIUM: lua: each yielding function returns a wake up time.
11745 - MINOR: lua: adds "forced yield" flag
11746 - MEDIUM: lua: interrupt the Lua execution for running other process
11747 - MEDIUM: lua: change the sleep function core
11748 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
11749 - DOC: lua: Lua configuration documentation
11750 - MINOR: lua: add the struct session in the lua channel struct
11751 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
11752 - BUG/MEDIUM: lua: reset flags before resuming execution
11753 - BUG/MEDIUM: lua: fix infinite loop about channel
11754 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
11755 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
11756 - MEDIUM: lua: use the Lua-5.3 version of the library
11757 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
11758 - BUG/MEDIUM: lua: can't handle the response bytes
11759 - BUG/MEDIUM: lua: segfault with buffer_replace2
11760 - BUG/MINOR: lua: check buffers before initializing socket
11761 - BUG/MINOR: log: segfault if there are no proxy reference
11762 - BUG/MEDIUM: lua: sockets don't have buffer to write data
11763 - BUG/MEDIUM: lua: cannot connect socket
11764 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
11765 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
11766 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
11767 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
11768 - MINOR: replace the Core object by a simple model.
11769 - MEDIUM: lua: change the objects configuration
11770 - MEDIUM: lua: create a namespace for the fetches
11771 - MINOR: converters: add function to browse converters
11772 - MINOR: lua: wrapper for converters
11773 - MINOR: lua: replace function (req|get)_channel by a variable
11774 - MINOR: lua: fetches and converters can return an empty string in place of nil
11775 - DOC: lua api
11776 - BUG/MEDIUM: sample: fix random number upper-bound
11777 - BUG/MINOR: stats:Fix incorrect printf type.
11778 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
11779 - BUG/MINOR: logs: properly initialize and count log sockets
11780 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
11781 - BUG/MINOR: counters: do not untrack counters before logging
11782 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
11783 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
11784 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
11785 - BUILD: remove TODO from the spec file and add README
11786 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
11787 - MEDIUM: log: support a user-configurable max log line length
11788 - DOC: provide an example of how to use ssl_c_sha1
11789 - BUILD: checks: external checker needs signal.h
11790 - BUILD: checks: kill a minor warning on Solaris in external checks
11791 - BUILD: http: fix isdigit & isspace warnings on Solaris
11792 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
11793 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
11794 - MEDIUM: listener: implement a per-protocol pause() function
11795 - MEDIUM: listener: support rebinding during resume()
11796 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
11797 - DOC: explicitly mention the limits of abstract namespace sockets
11798 - DOC: minor fix on {sc,src}_kbytes_{in,out}
11799 - DOC: fix alphabetical sort of converters
11800 - MEDIUM: stick-table: implement lookup from a sample fetch
11801 - MEDIUM: stick-table: add new converters to fetch table data
11802 - MINOR: samples: add two converters for the date format
11803 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
11804 - DOC: remove references to CPU=native in the README
11805 - DOC: mention that "compression offload" is ignored in defaults section
11806 - DOC: mention that Squid correctly responds 400 to PPv2 header
11807 - BUILD: fix dependencies between config and compat.h
11808 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
11809 - MEDIUM: stick-table: make it easier to register extra data types
11810 - BUG/MINOR: http: base32+src should use the big endian version of base32
11811 - MINOR: sample: allow IP address to cast to binary
11812 - MINOR: sample: add new converters to hash input
11813 - MINOR: sample: allow integers to cast to binary
11814 - BUILD: report commit ID in git versions as well
11815 - CLEANUP: session: move the stick counters declarations to stick_table.h
11816 - MEDIUM: http: add the track-sc* actions to http-request rules
11817 - BUG/MEDIUM: connection: fix proxy v2 header again!
11818 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
11819 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
11820 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
11821 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
11822 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
11823 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
11824 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
11825 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
11826 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
11827 - MEDIUM: http: enable header manipulation for 101 responses
11828 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
11829 - MEDIUM: config: properly propagate process binding between proxies
11830 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
11831 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
11832 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
11833 - MEDIUM: config: report it when tcp-request rules are misplaced
11834 - DOC: indicate in the doc that track-sc* can wait if data are missing
11835 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
11836 - MEDIUM: systemd-wrapper: support multiple executable versions and names
11837 - BUG/MEDIUM: remove debugging code from systemd-wrapper
11838 - BUG/MEDIUM: http: adjust close mode when switching to backend
11839 - BUG/MINOR: config: don't propagate process binding on fatal errors.
11840 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
11841 - BUG/MINOR: tcp-check: report the correct failed step in the status
11842 - DOC: indicate that weight zero is reported as DRAIN
11843 - BUG/MEDIUM: config: avoid skipping disabled proxies
11844 - BUG/MINOR: config: do not accept more track-sc than configured
11845 - BUG/MEDIUM: backend: fix URI hash when a query string is present
11846 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
11847 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
11848 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
11849 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
11850 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
11851 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
11852 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
11853 - MEDIUM: ssl: add support for smaller SSL records
11854 - MINOR: session: release a few other pools when stopping
11855 - MINOR: task: release the task pool when stopping
11856 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
11857 - BUG/MAJOR: frontend: initialize capture pointers earlier
11858 - BUG/MINOR: stats: correctly set the request/response analysers
11859 - MAJOR: polling: centralize calls to I/O callbacks
11860 - DOC: fix typo in the body parser documentation for msg.sov
11861 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
11862 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
11863 - DEBUG: pools: apply poisonning on every allocated pool
11864 - BUG/MAJOR: sessions: unlink session from list on out of memory
11865 - BUG/MEDIUM: patterns: previous fix was incomplete
11866 - BUG/MEDIUM: payload: ensure that a request channel is available
11867 - BUG/MINOR: tcp-check: don't condition data polling on check type
11868 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
11869 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
11870 - BUG/MINOR: config: fix typo in condition when propagating process binding
11871 - BUG/MEDIUM: config: do not propagate processes between stopped processes
11872 - BUG/MAJOR: stream-int: properly check the memory allocation return
11873 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
11874 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
11875 - BUG/MEDIUM: compression: correctly report zlib_mem
11876 - CLEANUP: lists: remove dead code
11877 - CLEANUP: memory: remove dead code
11878 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
11879 - MINOR: memory: cut pool allocator in 3 layers
11880 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
11881 - MINOR: stream-int: retrieve session pointer from stream-int
11882 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
11883 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
11884 - MINOR: buffer: move buffer initialization after channel initialization
11885 - MINOR: buffer: only use b_free to release buffers
11886 - MEDIUM: buffer: always assign a dummy empty buffer to channels
11887 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
11888 - MEDIUM: channel: do not report full when buf_empty is present on a channel
11889 - MINOR: session: group buffer allocations together
11890 - MINOR: buffer: implement b_alloc_fast()
11891 - MEDIUM: buffer: implement b_alloc_margin()
11892 - MEDIUM: session: implement a basic atomic buffer allocator
11893 - MAJOR: session: implement a wait-queue for sessions who need a buffer
11894 - MAJOR: session: only allocate buffers when needed
11895 - MINOR: stats: report a "waiting" flags for sessions
11896 - MAJOR: session: only wake up as many sessions as available buffers permit
11897 - MINOR: config: implement global setting tune.buffers.reserve
11898 - MINOR: config: implement global setting tune.buffers.limit
11899 - MEDIUM: channel: implement a zero-copy buffer transfer
11900 - MEDIUM: stream-int: support splicing from applets
11901 - OPTIM: stream-int: try to send pending spliced data
11902 - CLEANUP: session: remove session_from_task()
11903 - DOC: add missing entry for log-format and clarify the text
11904 - MINOR: logs: add a new per-proxy "log-tag" directive
11905 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
11906 - MINOR: config: extend the default max hostname length to 64 and beyond
11907 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
11908 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
11909 - MINOR: channel: add channel_in_transit()
11910 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
11911 - MEDIUM: channel: make bi_avail() use channel_in_transit()
11912 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
11913 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
11914 - MINOR: channel: rename channel_full() to !channel_may_recv()
11915 - MINOR: channel: rename buffer_reserved() to channel_reserved()
11916 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
11917 - MINOR: channel: rename bi_avail() to channel_recv_max()
11918 - MINOR: channel: rename bi_erase() to channel_truncate()
11919 - BUG/MAJOR: log: don't try to emit a log if no logger is set
11920 - MINOR: tools: add new round_2dig() function to round integers
11921 - MINOR: global: always export some SSL-specific metrics
11922 - MINOR: global: report information about the cost of SSL connections
11923 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
11924 - MINOR: http: add a new fetch "query" to extract the request's query string
11925 - MINOR: hash: add new function hash_crc32
11926 - MINOR: samples: provide a "crc32" converter
11927 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
11928 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
11929 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
11930 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
11931 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
11932 - MINOR: args: add type-specific flags for each arg in a list
11933 - MINOR: args: implement a new arg type for regex : ARGT_REG
11934 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
11935 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
11936 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
11937 - MEDIUM: http: implement http-request set-{method,path,query,uri}
11938 - DOC: fix missing closing brackend on regsub
11939 - MEDIUM: samples: provide basic arithmetic and bitwise operators
11940 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
11941 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
11942 - BUG/MINOR: http: abort request processing on filter failure
11943 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
11944 - MINOR: ssl/server: add the "no-ssl-reuse" server option
11945 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
11946 - MINOR: http: add a new function to iterate over each header line
11947 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
11948 - MEDIUM: task: always ensure that the run queue is consistent
11949 - BUILD: Makefile: add -Wdeclaration-after-statement
11950 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
11951 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
11952 - MEDIUM: protocol: use a family array to index the protocol handlers
11953 - BUILD: lua: cleanup many mixed occurrences declarations & code
11954 - BUG/MEDIUM: task: fix recently introduced scheduler skew
11955 - BUG/MINOR: lua: report the correct function name in an error message
11956 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
11957 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
11958 - MINOR: lua: convert IP addresses to type string
11959 - CLEANUP: lua: use the same function names in C and Lua
11960 - REORG/MAJOR: move session's req and resp channels back into the session
11961 - CLEANUP: remove now unused channel pool
11962 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
11963 - MEDIUM: stream-int: add a flag indicating which side the SI is on
11964 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
11965 - MEDIUM: stream-interface: remove now unused pointers to channels
11966 - MEDIUM: stream-int: make si_sess() use the stream int's side
11967 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
11968 - MEDIUM: stream-int: remove any reference to the owner
11969 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
11970 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
11971 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
11972 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
11973 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
11974 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
11975 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
11976 - CLEANUP: session: use local variables to access channels / stream ints
11977 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
11978 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
11979 - CLEANUP: stream-int: limit usage of si_ic/si_oc
11980 - CLEANUP: lua: limit usage of si_ic/si_oc
11981 - MINOR: channel: add chn_sess() helper to retrieve session from channel
11982 - MEDIUM: session: simplify receive buffer allocator to only use the channel
11983 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
11984 - CLEANUP: lua: remove the session pointer from hlua_channel
11985 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
11986 - MEDIUM: lua: remove struct hlua_channel
11987 - MEDIUM: lua: remove hlua_sample_fetch
11988
Willy Tarreau15480d72014-06-19 21:10:58 +0200119892014/06/19 : 1.6-dev0
11990 - exact copy of 1.5.0
11991
Willy Tarreau9229f122014-06-19 21:01:06 +0200119922014/06/19 : 1.5.0
11993 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
11994 - MEDIUM: ssl: basic OCSP stapling support.
11995 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
11996 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
11997 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
11998 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
11999 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
12000 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
12001 - MEDIUM: Break out check establishment into connect_chk()
12002 - MEDIUM: Add port_to_str helper
12003 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
12004 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
12005 - MINOR: regex: fix a little configuration memory leak.
12006 - MINOR: regex: Create JIT compatible function that return match strings
12007 - MEDIUM: regex: replace all standard regex function by own functions
12008 - MEDIUM: regex: Remove null terminated strings.
12009 - MINOR: regex: Use native PCRE API.
12010 - MINOR: missing regex.h include
12011 - DOC: Add Exim as Proxy Protocol implementer.
12012 - BUILD: don't use type "uint" which is not portable
12013 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
12014 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
12015 - CLEANUP: http: don't clear CF_READ_NOEXP twice
12016 - DOC: fix proxy protocol v2 decoder example
12017 - DOC: fix remaining occurrences of "pattern extraction"
12018 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
12019 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
12020 - MINOR: sample: improve sample_fetch_string() to report partial contents
12021 - MINOR: capture: extend the captures to support non-header keys
12022 - MINOR: tcp: prepare support for the "capture" action
12023 - MEDIUM: tcp: add a new tcp-request capture directive
12024 - MEDIUM: session: allow shorter retry delay if timeout connect is small
12025 - MEDIUM: session: don't apply the retry delay when redispatching
12026 - MEDIUM: session: redispatch earlier when possible
12027 - MINOR: config: warn when tcp-check rules are used without option tcp-check
12028 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
12029 - DOC: proxy protocol example parser was still wrong
12030 - DOC: minor updates to the proxy protocol doc
12031 - CLEANUP: connection: merge proxy proto v2 header and address block
12032 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
12033 - MINOR: tools: add new functions to quote-encode strings
12034 - DOC: clarify the CSV format
12035 - MEDIUM: stats: report the last check and last agent's output on the CSV status
12036 - MINOR: freq_ctr: introduce a new averaging method
12037 - MEDIUM: session: maintain per-backend and per-server time statistics
12038 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
12039 - BUG/MINOR: http: fix typos in previous patch
12040 - DOC: remove the ultra-obsolete TODO file
12041 - DOC: update roadmap
12042 - DOC: minor updates to the README
12043 - DOC: mention the maxconn limitations with the select poller
12044 - DOC: commit a few old design thoughts files
12045
Willy Tarreau2e858402014-05-28 17:50:53 +0200120462014/05/28 : 1.5-dev26
12047 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
12048 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
12049 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
12050 - MINOR: fix a few memory usage errors
12051 - CONTRIB: halog: Filter input lines by date and time through timestamp
12052 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
12053 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
12054 - MINOR: acl: set "str" as default match for strings
12055 - DOC: Add some precisions about acl default matching method
12056 - MEDIUM: acl: strenghten the option parser to report invalid options
12057 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
12058 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
12059 - MINOR: stats: improve alignment of color codes to save one line of header
12060 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
12061 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
12062 - MINOR: server: use functions to detect state changes and to update them
12063 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
12064 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
12065 - BUG/MAJOR: config: don't free valid regex memory
12066 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
12067 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
12068 - MEDIUM: proxy: make timeout parser a bit stricter
12069 - REORG/MEDIUM: server: split server state and flags in two different variables
12070 - REORG/MEDIUM: server: move the maintenance bits out of the server state
12071 - MAJOR: server: use states instead of flags to store the server state
12072 - REORG: checks: put the functions in the appropriate files !
12073 - MEDIUM: server: properly support and propagate the maintenance status
12074 - MEDIUM: server: allow multi-level server tracking
12075 - CLEANUP: checks: rename the server_status_printf function
12076 - MEDIUM: checks: simplify server up/down/nolb transitions
12077 - MAJOR: checks: move health checks changes to set_server_check_status()
12078 - MINOR: server: make the status reporting function support a reason
12079 - MINOR: checks: simplify health check reporting functions
12080 - MINOR: server: implement srv_set_stopped()
12081 - MINOR: server: implement srv_set_running()
12082 - MINOR: server: implement srv_set_stopping()
12083 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
12084 - MEDIUM: checks: simplify success notification using srv_set_running()
12085 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
12086 - MEDIUM: stats: report a server's own state instead of the tracked one's
12087 - MINOR: server: make use of srv_is_usable() instead of checking eweight
12088 - MAJOR: checks: add support for a new "drain" administrative mode
12089 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
12090 - MEDIUM: stats: introduce new actions to simplify admin status management
12091 - MINOR: cli: introduce a new "set server" command
12092 - MINOR: stats: report a distinct output for DOWN caused by agent
12093 - MINOR: checks: support specific check reporting for the agent
12094 - MINOR: checks: support a neutral check result
12095 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
12096 - MEDIUM: cli: add support for enabling/disabling health checks.
12097 - MEDIUM: stats: report down caused by agent prior to reporting up
12098 - MAJOR: agent: rework the response processing and support additional actions
12099 - MINOR: stats: improve the stats web page to support more actions
12100 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
12101 - DOC: document the workarouds for Google Chrome's bogus pre-connect
12102 - MINOR: stats: report SSL key computations per second
12103 - MINOR: stats: add counters for SSL cache lookups and misses
12104
Willy Tarreaua3393952014-05-10 15:16:43 +0200121052014/05/10 : 1.5-dev25
12106 - MEDIUM: connection: Implement and extented PROXY Protocol V2
12107 - MINOR: ssl: clean unused ACLs declarations
12108 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
12109 - MINOR: ssl: merge client's and frontend's certificate functions.
12110 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
12111 - MINOR: ssl: adds sample converter base64 for binary type.
12112 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
12113 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
12114 - MAJOR: ssl: Change default locks on ssl session cache.
12115 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
12116 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
12117 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
12118 - BUG/MEDIUM: patterns: last fix was still not enough
12119 - MINOR: http: export the smp_fetch_cookie function
12120 - MINOR: http: generic pointer to rule argument
12121 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
12122 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
12123 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
12124 - BUG/MINOR: http: log 407 in case of proxy auth
12125 - MINOR: http: rely on the message body parser to send 100-continue
12126 - MEDIUM: http: move reqadd after execution of http_request redirect
12127 - MEDIUM: http: jump to dedicated labels after http-request processing
12128 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
12129 - BUG/MINOR: http: block rules forgot to increment the session's request counter
12130 - MEDIUM: http: move Connection header processing earlier
12131 - MEDIUM: http: remove even more of the spaghetti in the request path
12132 - MINOR: http: silently support the "block" action for http-request
12133 - CLEANUP: proxy: rename "block_cond" to "block_rules"
12134 - MEDIUM: http: emulate "block" rules using "http-request" rules
12135 - MINOR: http: remove the now unused loop over "block" rules
12136 - MEDIUM: http: factorize the "auth" action of http-request and stats
12137 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
12138 - MINOR: config: add minimum support for emitting warnings only once
12139 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
12140 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
12141 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
12142 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
12143 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
12144 - BUILD: config: remove a warning with clang
12145 - BUG/MAJOR: http: connection setup may stall on balance url_param
12146 - BUG/MEDIUM: http/session: disable client-side expiration only after body
12147 - BUG/MEDIUM: http: correctly report request body timeouts
12148 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
12149 - MEDIUM: listener: make the accept function more robust against pauses
12150 - BUILD: syscalls: remove improper inline statement in front of syscalls
12151 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
12152 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
12153 - DOC: add some explanation on the shared cache build options in the readme.
12154 - MEDIUM: proxy: only adjust the backend's bind-process when already set
12155 - MEDIUM: config: limit nbproc to the machine's word size
12156 - MEDIUM: config: check the bind-process settings according to nbproc
12157 - MEDIUM: listener: parse the new "process" bind keyword
12158 - MEDIUM: listener: inherit the process mask from the proxy
12159 - MAJOR: listener: only start listeners bound to the same processes
12160 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
12161 - CLEANUP: config: set the maxaccept value for peers listeners earlier
12162 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
12163 - BUG/MINOR: checks: correctly configure the address family and protocol
12164 - MINOR: tools: split is_addr() and is_inet_addr()
12165 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
12166 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
12167 - MEDIUM: checks: only complain about the missing port when the check uses TCP
12168 - MEDIUM: unix: implement support for Linux abstract namespace sockets
12169 - DOC: map_beg was missing from the table of map_* converters
12170 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
12171 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
12172 - BUILD: remove the obsolete BSD and OSX makefiles
12173 - MEDIUM: unix: avoid a double connect probe when no data are sent
12174 - DOC: stop referencing the slow git repository in the README
12175 - BUILD: only build the systemd wrapper on Linux 2.6 and above
12176 - DOC: update roadmap with completed tasks
12177 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
12178
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200121792014/04/26 : 1.5-dev24
12180 - MINOR: pattern: find element in a reference
12181 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
12182 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
12183 - DOC: Full section dedicated to the converters
12184 - MEDIUM: http: register http-request and http-response keywords
12185 - BUG/MINOR: compression: correctly report incoming byte count
12186 - BUG/MINOR: http: don't report server aborts as client aborts
12187 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
12188 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
12189 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
12190 - BUG/MAJOR: http: fix timeouts during data forwarding
12191 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
12192 - MEDIUM: http: move skipping of 100-continue earlier
12193 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
12194 - CLEANUP: general: get rid of all old occurrences of "session *t"
12195 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
12196 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
12197 - MEDIUM: http: enable analysers to have keep-alive on stats
12198 - REORG: http: move HTTP Connection response header parsing earlier
12199 - MINOR: stats: always emit HTTP/1.1 in responses
12200 - MINOR: http: add capture.req.ver and capture.res.ver
12201 - MINOR: checks: add a new global max-spread-checks directive
12202 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
12203 - MINOR: http: implement the max-keep-alive-queue setting
12204 - DOC: fix alphabetic order of tcp-check
12205 - MINOR: connection: add a new error code for SSL with heartbeat
12206 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
12207 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
12208 - BUILD: http: remove a warning on strndup
12209 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
12210 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
12211 - MINOR: ssl: finally catch the heartbeats missing the padding
12212
Willy Tarreau8317b282014-04-23 01:49:41 +0200122132014/04/23 : 1.5-dev23
12214 - BUG/MINOR: reject malformed HTTP/0.9 requests
12215 - MINOR: systemd wrapper: re-execute on SIGUSR2
12216 - MINOR: systemd wrapper: improve logging
12217 - MINOR: systemd wrapper: propagate exit status
12218 - BUG/MINOR: tcpcheck connect wrong behavior
12219 - MEDIUM: proxy: support use_backend with dynamic names
12220 - MINOR: stats: Enhancement to stats page to provide information of last session time.
12221 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
12222 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
12223 - DOC: fix fetching samples syntax
12224 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
12225 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
12226 - DOC: fix typo
12227 - CLEANUP: code style: use tabs to indent codes instead of spaces
12228 - DOC: fix a few config typos.
12229 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
12230 - DOC: lowercase format string in unique-id
12231 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
12232 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
12233 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
12234 - BUG/MINOR: build: handle whitespaces in wc -l output
12235 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
12236 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
12237 - BUG/MEDIUM: map: The map parser includes blank lines.
12238 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
12239 - MINOR: standard: add function "encode_chunk"
12240 - BUG/MINOR: http: fix encoding of samples used in http headers
12241 - MINOR: sample: add hex converter
12242 - MEDIUM: sample: change the behavior of the bin2str cast
12243 - MAJOR: auth: Change the internal authentication system.
12244 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
12245 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
12246 - MEDIUM: pattern: Change the prototype of the function pattern_register().
12247 - CONTRIB: ip6range: add a network IPv6 range to mask converter
12248 - MINOR: pattern: separe list element from the data part.
12249 - MEDIUM: pattern: add indexation function.
12250 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
12251 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
12252 - MINOR: sample: dont call the sample cast function "c_none"
12253 - MINOR: standard: Add function for converting cidr to network mask.
12254 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
12255 - MEDIUM: sample/http_proto: Add new type called method
12256 - MINOR: dumpstats: Group map inline help
12257 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
12258 - MINOR: dumpstats: change map inline sentences
12259 - MINOR: dumpstats: change the "get map" display management
12260 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
12261 - MEDIUM: pattern: The match function browse itself the list or the tree.
12262 - MEDIUM: pattern: Index IPv6 addresses in a tree.
12263 - MEDIUM: pattern: add delete functions
12264 - MEDIUM: pattern: add prune function
12265 - MEDIUM: pattern: add sample lookup function.
12266 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
12267 - MINOR: map/pattern: The sample parser is stored in the pattern
12268 - MAJOR: pattern/map: Extends the map edition system in the patterns
12269 - MEDIUM: pattern: merge same pattern
12270 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
12271 - MINOR: pattern: Each pattern is identified by unique id.
12272 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
12273 - MINOR: pattern: The function "pattern_register()" is no longer used.
12274 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
12275 - MINOR: pattern: store configuration reference for each acl or map pattern.
12276 - MINOR: pattern: Each pattern expression element store the reference struct.
12277 - MINOR: dumpstats: display the reference for th key/pattern and value.
12278 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
12279 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
12280 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
12281 - MINOR: pattern/map/acl: Centralization of the file parsers
12282 - MINOR: pattern: Check if the file reference is not used with acl and map
12283 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
12284 - MEDIUM: dumpstats: Display error message during add of values.
12285 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
12286 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
12287 - MINOR: cli: Block the usage of the command "acl add" in many cases.
12288 - MINOR: doc: Update the documentation about the map and acl
12289 - MINOR: pattern: index duplicates
12290 - MINOR: configuration: File and line propagation
12291 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
12292 - MINOR: standard: Disable ip resolution during the runtime
12293 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
12294 - MINOR: pattern: forbid dns resolutions
12295 - DOC: document "get map" / "get acl" on the CLI
12296 - MEDIUM: acl: Change the acl register struct
12297 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
12298 - DOC: pattern: pattern organisation schematics
12299 - MINOR: pattern/cli: Update used terms in documentation and cli
12300 - MINOR: cli: remove information about acl or map owner.
12301 - MINOR: session: don't always assume there's a listener
12302 - MINOR: pattern: Add function to prune and reload pattern list.
12303 - MINOR: standard: Add ipv6 support in the function url2sa().
12304 - MEDIUM: config: Dynamic sections.
12305 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
12306 - MINOR: http: Add the "language" converter to for use with accept-language
12307 - BUG/MINOR: log: Don't dump empty unique-id
12308 - BUG/MAJOR: session: fix a possible crash with src_tracked
12309 - DOC: Update "language" documentation
12310 - MINOR: http: add the function "del-header" to the directives http-request and http-response
12311 - DOC: add some information on capture.(req|res).hdr
12312 - MINOR: http: capture.req.method and capture.req.uri
12313 - MINOR: http: optimize capture.req.method and capture.req.uri
12314 - MINOR: session: clean up the connection free code
12315 - BUG/MEDIUM: checks: immediately report a connection success
12316 - MEDIUM: connection: don't use real send() flags in snd_buf()
12317 - OPTIM: ssl: implement dynamic record size adjustment
12318 - MINOR: stats: report exact last session time in backend too
12319 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
12320 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
12321 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
12322 - MINOR: channel: add the date of last read in the channel
12323 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
12324 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
12325 - MINOR: config: make the stream interface idle timer user-configurable
12326 - MINOR: config: add global directives to set default SSL ciphers
12327 - MINOR: sample: add a rand() sample fetch to return a sample.
12328 - BUG/MEDIUM: config: immediately abort if peers section has no name
12329 - BUG/MINOR: ssl: fix syntax in config error message
12330 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
12331 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
12332 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
12333 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
12334 - MEDIUM: acl: fix pattern type for payload / payload_lv
12335 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
12336 - BUG/MEDIUM: compression: fix the output type of the compressor name
12337 - BUG/MEDIUM: http: don't start to forward request data before the connect
12338 - MINOR: http: release compression context only in http_end_txn()
12339 - MINOR: protect ebimtree/ebistree against multiple inclusions
12340 - MEDIUM: proxy: create a tree to store proxies by name
12341 - MEDIUM: proxy: make findproxy() use trees to look up proxies
12342 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
12343 - MEDIUM: stick-table: lookup table names using trees.
12344 - MEDIUM: config: faster lookup for duplicated proxy name
12345 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
12346 - MINOR: sample: move smp_to_type to sample.c
12347 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
12348 - REORG: cfgparse: move server keyword parsing to server.c
12349 - BUILD: adjust makefile for AIX 5.1
12350 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
12351 - CLEANUP: pattern: move array definitions to proto/ and not types/
12352 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
12353 - BUILD: ssl: previous patch failed
12354 - BUILD/MEDIUM: standard: get rid of the last strcpy()
12355 - BUILD/MEDIUM: standard: get rid of sprintf()
12356 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
12357 - BUILD/MEDIUM: checks: get rid of sprintf()
12358 - BUILD/MEDIUM: http: remove calls to sprintf()
12359 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
12360 - BUILD/MINOR: ssl: remove one call to sprintf()
12361 - MEDIUM: http: don't reject anymore message bodies not containing the url param
12362 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
12363 - CLEANUP: http: rename http_process_request_body()
12364 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
12365 - MINOR: http: make msg->eol carry the last CRLF length
12366 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
12367 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
12368 - MAJOR: http: don't update msg->sov anymore while processing the body
12369 - MINOR: http: add a small helper to compute the amount of body bytes present
12370 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
12371 - MINOR: http: add a small helper to compute how far to rewind to find URI
12372 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
12373 - MAJOR: http: reset msg->sov after headers are forwarded
12374 - MEDIUM: http: forward headers again while waiting for connection to complete
12375 - BUG/MINOR: http: deinitialize compression after a parsing error
12376 - BUG/MINOR: http: deinitialize compression after a compression error
12377 - MEDIUM: http: headers must be forwarded even if data was already inspected
12378 - MAJOR: http: re-enable compression on chunked encoding
12379 - MAJOR: http/compression: fix chunked-encoded response processing
12380 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
12381 - MEDIUM: http: start to centralize the forwarding code
12382 - MINOR: http: further cleanups of response forwarding function
12383 - MEDIUM: http: only allocate the temporary compression buffer when needed
12384 - MAJOR: http: centralize data forwarding in the request path
12385 - CLEANUP: http: document the response forwarding states
12386 - CLEANUP: http: remove all calls to http_silent_debug()
12387 - DOC: internal: add some reminders about HTTP parsing and pointer states
12388 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
12389 - BUG/MINOR: stats: last session was not always set
12390 - DOC: add pointer to the Cyril's HTML doc in the README
12391 - MEDIUM: config: relax use_backend check to make the condition optional
12392 - MEDIUM: config: report misplaced http-request rules
12393 - MEDIUM: config: report misplaced use-server rules
12394 - DOC: update roadmap with what was done.
12395
Willy Tarreau1a34d572014-02-03 00:41:29 +0100123962014/02/03 : 1.5-dev22
12397 - MEDIUM: tcp-check new feature: connect
12398 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
12399 - MINOR: ssl: handshake optim for long certificate chains.
12400 - BUG/MINOR: pattern: pattern comparison executed twice
12401 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
12402 - BUG/MEDIUM: pattern: Segfault in binary parser
12403 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
12404 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
12405 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
12406 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
12407 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
12408 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
12409 - MINOR: doc: Bad cli function name.
12410 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
12411 - BUILD: last release inadvertently prepended a "+" in front of the date
12412 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
12413 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
12414 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
12415 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
12416 - MINOR: http: try to stick to same server after status 401/407
12417 - BUG/MINOR: http: always disable compression on HTTP/1.0
12418 - OPTIM: poll: restore polling after a poll/stop/want sequence
12419 - OPTIM: http: don't stop polling for read on the client side after a request
12420 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
12421 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
12422 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
12423 - BUG/MINOR: stream-int: do not clear the owner upon unregister
12424 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
12425 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
12426 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
12427 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
12428 - OPTIM: session: set the READ_DONTWAIT flag when connecting
12429 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
12430 - MINOR: session: factor out the connect time measurement
12431 - MEDIUM: session: prepare to support earlier transitions to the established state
12432 - MEDIUM: stream-int: make si_connect() return an established state when possible
12433 - MINOR: checks: use an inline function for health_adjust()
12434 - OPTIM: session: put unlikely() around the freewheeling code
12435 - MEDIUM: config: report a warning when multiple servers have the same name
12436 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
12437 - BUILD/MINOR: listener: remove a glibc warning on accept4()
12438 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
12439 - BUILD: listener: fix recent accept4() again
12440 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
12441 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
12442 - MEDIUM: listener: fix polling management in the accept loop
12443 - MINOR: protocol: improve the proto->drain() API
12444 - MINOR: connection: add a new conn_drain() function
12445 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
12446 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
12447 - MINOR: connection: add more error codes to report connection errors
12448 - MEDIUM: tcp: report connection error at the connection level
12449 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
12450 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
12451 - DOC: fix misleading information about SIGQUIT
12452 - BUG/MAJOR: fix freezes during compression
12453 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
12454 - BUILD: fix VERDATE exclusion regex
12455 - CLEANUP: polling: rename "spec_e" to "state"
12456 - DOC: add a diagram showing polling state transitions
12457 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
12458 - REORG: polling: rename "fd_spec" to "fd_cache"
12459 - REORG: polling: rename the cache allocation functions
12460 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
12461 - MAJOR: polling: rework the whole polling system
12462 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
12463 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
12464 - MEDIUM: connection: add check for readiness in I/O handlers
12465 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
12466 - MINOR: stream-interface: no need to call fd_stop_both() on error
12467 - MEDIUM: connection: no need to recheck FD state
12468 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
12469 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
12470 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
12471 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
12472 - MEDIUM: polling: centralize polled events processing
12473 - MINOR: polling: create function fd_compute_new_polled_status()
12474 - MINOR: cli: add more information to the "show info" output
12475 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
12476 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
12477 - REORG: stats: move the stats socket states to dumpstats.c
12478 - MINOR: cli: add the new "show pools" command
12479 - BUG/MEDIUM: counters: flush content counters after each request
12480 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
12481 - MINOR: tools: add very basic support for composite pointers
12482 - MEDIUM: counters: stop relying on session flags at all
12483 - BUG/MINOR: cli: fix missing break in command line parser
12484 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
12485 - MAJOR: http: update connection mode configuration
12486 - MEDIUM: http: make keep-alive + httpclose be passive mode
12487 - MAJOR: http: switch to keep-alive mode by default
12488 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
12489 - BUG/MEDIUM: listener: improve detection of non-working accept4()
12490 - BUILD: listener: add fcntl.h and unistd.h
12491 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
12492
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100124932013/12/17 : 1.5-dev21
12494 - MINOR: stats: don't use a monospace font to report numbers
12495 - MINOR: session: remove debugging code
12496 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
12497 - MEDIUM: http: make option http_proxy automatically rewrite the URL
12498 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
12499 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
12500 - BUG/MEDIUM: checks: servers must not start in slowstart mode
12501 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
12502 - MEDIUM: stream-int: implement a very simplistic idle connection manager
12503 - DOC: update the ROADMAP file
12504
Willy Tarreau11f64d62013-12-16 02:32:37 +0100125052013/12/16 : 1.5-dev20
12506 - DOC: add missing options to the manpage
12507 - DOC: add manpage references to all system calls
12508 - DOC: update manpage reference to haproxy-en.txt
12509 - DOC: remove -s and -l options from the manpage
12510 - DOC: missing information for the "description" keyword
12511 - DOC: missing http-send-name-header keyword in keyword table
12512 - MINOR: tools: function my_memmem() to lookup binary contents
12513 - MEDIUM: checks: add send/expect tcp based check
12514 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
12515 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
12516 - DOC: Documentation for hashing function, with test results.
12517 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
12518 - BUILD: ssl: compilation issue with openssl v0.9.6.
12519 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
12520 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
12521 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
12522 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
12523 - CLEANUP: session: remove event_accept() which was not used anymore
12524 - BUG/MINOR: deinit: free fdinfo while doing cleanup
12525 - DOC: minor typo fix in documentation
12526 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
12527 - BUG/MINOR: use the same check condition for server as other algorithms
12528 - DOC: fix typo in comments
12529 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
12530 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
12531 - MINOR: buffer: align the last output line of buffer_dump()
12532 - MINOR: buffer: align the last output line if there are less than 8 characters left
12533 - DOC: stick-table: modify the description
12534 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
12535 - CLEANUP: code style: use tabs to indent codes
12536 - DOC: checkcache: block responses with cacheable cookies
12537 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
12538 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
12539 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
12540 - LOW: systemd-wrapper: Write debug information to stdout
12541 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
12542 - MEDIUM: http: add IPv6 support for "set-tos"
12543 - DOC: ssl: update build instructions to use new SSL_* variables
12544 - BUILD/MINOR: systemd: fix compiler warning about unused result
12545 - url32+src - like base32+src but whole url including parameters
12546 - BUG/MINOR: fix forcing fastinter in "on-error"
12547 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
12548 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
12549 - MEDIUM: Split up struct server's check element
12550 - MEDIUM: Move result element to struct check
12551 - MEDIUM: Paramatise functions over the check of a server
12552 - MEDIUM: cfgparse: Factor out check initialisation
12553 - MEDIUM: Add state to struct check
12554 - MEDIUM: Move health element to struct check
12555 - MEDIUM: Add helper for task creation for checks
12556 - MEDIUM: Add helper function for failed checks
12557 - MEDIUM: Log agent fail, stopped or down as info
12558 - MEDIUM: Remove option lb-agent-chk
12559 - MEDIUM: checks: Add supplementary agent checks
12560 - MEDIUM: Do not mark a server as down if the agent is unavailable
12561 - MEDIUM: Set rise and fall of agent checks to 1
12562 - MEDIUM: Add enable and disable agent unix socket commands
12563 - MEDIUM: Add DRAIN state and report it on the stats page
12564 - BUILD/MINOR: missing header file
12565 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
12566 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
12567 - MINOR: http: some exported functions were not in the header file
12568 - MINOR: http: change url_decode to return the size of the decoded string.
12569 - BUILD/MINOR: missing header file
12570 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
12571 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
12572 - MINOR: sample: export the generic sample conversion parser
12573 - MINOR: sample: export sample_casts
12574 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
12575 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
12576 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
12577 - MINOR: tools: Add a function to convert buffer to an ipv6 address
12578 - MINOR: acl: export acl arrays
12579 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
12580 - MINOR: acl: Extract the pattern matching function
12581 - MINOR: sample: Define new struct sample_storage
12582 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
12583 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
12584 - MEDIUM: pattern: create pattern expression
12585 - MEDIUM: pattern: rename "acl" prefix to "pat"
12586 - MEDIUM: sample: let the cast functions set their output type
12587 - MINOR: sample: add a private field to the struct sample_conv
12588 - MINOR: map: Define map types
12589 - MEDIUM: sample: add the "map" converter
12590 - MEDIUM: http: The redirect strings follows the log format rules.
12591 - BUG/MINOR: acl: acl parser does not recognize empty converter list
12592 - BUG/MINOR: map: The map list was declared in the map.h file
12593 - MINOR: map: Cleanup the initialisation of map descriptors.
12594 - MEDIUM: map: merge identical maps
12595 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
12596 - BUG/MEDIUM: map: Bad map file parser
12597 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
12598 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
12599 - MINOR: map: export map_get_reference() function
12600 - MINOR: pattern: Each pattern sets the expected input type
12601 - MEDIUM: acl: Last patch change the output type
12602 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
12603 - MINOR: standard: The function parse_binary() can use preallocated buffer
12604 - MINOR: regex: Change the struct containing regex
12605 - MINOR: regex: Copy the original regex expression into string.
12606 - MINOR: pattern: add support for compiling patterns for lookups
12607 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
12608 - MINOR: map: export parse output sample functions
12609 - MINOR: pattern: add function to lookup a specific entry in pattern list
12610 - MINOR: pattern/map: Each pattern must free the associated sample
12611 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
12612 - MEDIUM: map: dynamic manipulation of maps
12613 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
12614 - BUG/MINOR: log: junk at the end of syslog packet
12615 - MINOR: Makefile: provide cscope rule
12616 - DOC: compression: chunk are not compressed anymore
12617 - MEDIUM: session: disable lingering on the server when the client aborts
12618 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
12619 - DOC: remove the comment saying that SSL certs are not checked on the server side
12620 - BUG: counters: third counter was not stored if others unset
12621 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
12622 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
12623 - BUG/MAJOR: http: sample prefetch code was not properly migrated
12624 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
12625 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
12626 - OPTIM: splicing: use splice() for the last block when relevant
12627 - MEDIUM: sample: handle comma-delimited converter list
12628 - MINOR: sample: fix sample_process handling of unstable data
12629 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
12630 - MINOR: sample: add a new "date" fetch to return the current date
12631 - MINOR: samples: add the http_date([<offset>]) sample converter.
12632 - DOC: minor improvements to the part on the stats socket.
12633 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
12634 - MINOR: payload: split smp_fetch_rdp_cookie()
12635 - MINOR: counters: factor out smp_fetch_sc*_tracked
12636 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
12637 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
12638 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
12639 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
12640 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
12641 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
12642 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
12643 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
12644 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
12645 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
12646 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
12647 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
12648 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
12649 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
12650 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
12651 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
12652 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
12653 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
12654 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
12655 - MINOR: session: make the number of stick counter entries more configurable
12656 - MEDIUM: counters: support passing the counter number as a fetch argument
12657 - MEDIUM: counters: support looking up a key in an alternate table
12658 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
12659 - MINOR: cli: make it possible to enter multiple values at once with "set table"
12660 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
12661 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
12662 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
12663 - MINOR: config: warn when a server with no specific port uses rdp-cookie
12664 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
12665 - DOC: add a mention about the limited chunk size
12666 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
12667 - MEDIUM: stick-tables: flush old entries upon soft-stop
12668 - MINOR: tcp: add new "close" action for tcp-response
12669 - MINOR: payload: provide the "res.len" fetch method
12670 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
12671 - MINOR: http: compute response time before processing headers
12672 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
12673 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
12674 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
12675 - BUG/MEDIUM: session: risk of crash on out of memory conditions
12676 - BUG/MINOR: peers: set the accept date in outgoing connections
12677 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
12678 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
12679 - MINOR: acl: add a warning when an ACL keyword is used without any value
12680 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
12681 - BUG/MINOR: acl: remove patterns from the tree before freeing them
12682 - MEDIUM: backend: add support for the wt6 hash
12683 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
12684 - OPTIM/MINOR: mark the source address as already known on accept()
12685 - BUG/MINOR: stats: don't count tarpitted connections twice
12686 - CLEANUP: http: homogenize processing of denied req counter
12687 - CLEANUP: http: merge error handling for req* and http-request *
12688 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
12689 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
12690 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
12691 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
12692 - MINOR: stats: report correct throttling percentage for servers in slowstart
12693 - OPTIM: connection: fold the error handling with handshake handling
12694 - MINOR: peers: accept to learn strings of different lengths
12695 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
12696 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
12697 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
12698 - BUG/MINOR: connection: fix typo in error message report
12699 - BUG/MINOR: backend: fix target address retrieval in transparent mode
12700 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
12701 - BUG/MINOR: log: fix log-format parsing errors
12702 - DOC: add some information about how to apply converters to samples
12703 - MINOR: acl/pattern: use types different from int to clarify who does what.
12704 - MINOR: pattern: import acl_find_match_name() into pattern.h
12705 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
12706 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
12707 - BUG/MINOR: http: usual deinit stuff in last commit
12708 - BUILD: log: silent a warning about isblank() with latest patches
12709 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
12710 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
12711 - BUG/MINOR: checks: don't consider errno and use conn->err_code
12712 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
12713 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
12714 - BUG/MINOR: tcp: check that no error is pending during a connect probe
12715 - BUG/MINOR: connection: check EINTR when sending a PROXY header
12716 - MEDIUM: connection: set the socket shutdown flags on socket errors
12717 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
12718 - MINOR: connection: clear errno prior to checking for errors
12719 - BUG/MINOR: checks: do not trust errno in write event before any syscall
12720 - MEDIUM: checks: centralize error reporting
12721 - OPTIM: checks: don't poll on recv when using plain TCP connects
12722 - OPTIM: checks: avoid setting SO_LINGER twice
12723 - MINOR: tools: add a generic binary hex string parser
12724 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
12725 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
12726 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
12727 - BUG/MINOR: acl: fix sample expression error reporting
12728 - BUG/MINOR: checks: tcp-check actions are enums, not flags
12729 - MEDIUM: checks: make tcp-check perform multiple send() at once
12730 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
12731 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
12732 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
12733 - CLEANUP: stream_interface: remove unused field err_loc
12734 - MEDIUM: stats: don't use conn->xprt_st anymore
12735 - MINOR: session: add a simple function to retrieve a session from a task
12736 - MEDIUM: stats: don't use conn->xprt_ctx anymore
12737 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
12738 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
12739 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
12740 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
12741 - MAJOR: stats: move the HTTP stats handling to its applet
12742 - MEDIUM: stats: move request argument processing to the final step
12743 - MEDIUM: session: detect applets from the session by using s->target
12744 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
12745 - MAJOR: session: pass applet return traffic through the response analysers
12746 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
12747 - MINOR: stream-int: make the shutr/shutw functions void
12748 - MINOR: obj: provide a safe and an unsafe access to pointed objects
12749 - MINOR: connection: add a field to store an object type
12750 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
12751 - MEDIUM: stream interface: move the peers' ptr into the applet context
12752 - MINOR: stream-interface: move the applet context to its own struct
12753 - MINOR: obj: introduce a new type appctx
12754 - MINOR: stream-int: rename ->applet to ->appctx
12755 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
12756 - MINOR: stream-int: add a new pointer to the end point
12757 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
12758 - MAJOR: stream interface: remove the ->release function pointer
12759 - MEDIUM: stream-int: make ->end point to the connection or the appctx
12760 - CLEANUP: stream-int: remove obsolete si_ctrl function
12761 - MAJOR: stream-int: stop using si->conn and use si->end instead
12762 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
12763 - MEDIUM: session: attach incoming connection to target on embryonic sessions
12764 - MINOR: connection: add conn_init() to (re)initialize a connection
12765 - MINOR: checks: call conn_init() to properly initialize the connection.
12766 - MINOR: peers: make use of conn_init() to initialize the connection
12767 - MINOR: session: use conn_init() to initialize the connections
12768 - MINOR: http: use conn_init() to reinitialize the server connection
12769 - MEDIUM: connection: replace conn_prepare with conn_assign
12770 - MINOR: get rid of si_takeover_conn()
12771 - MINOR: connection: add conn_new() / conn_free()
12772 - MAJOR: connection: add two new flags to indicate readiness of control/transport
12773 - MINOR: stream-interface: introduce si_reset() and si_set_state()
12774 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
12775 - MINOR: connection: replace conn_assign with conn_attach
12776 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
12777 - MAJOR: stream interface: dynamically allocate the outgoing connection
12778 - MEDIUM: connection: move the send_proxy offset to the connection
12779 - MINOR: connection: check for send_proxy during the connect(), not the SI
12780 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
12781 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
12782 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
12783 - MAJOR: stream-interface: dynamically allocate the applet context
12784 - MEDIUM: session: automatically register the applet designated by the target
12785 - MEDIUM: stats: delay appctx initialization
12786 - CLEANUP: peers: use less confusing state/status code names
12787 - MEDIUM: peers: delay appctx initialization
12788 - MINOR: stats: provide some appctx information in "show sess all"
12789 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
12790 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
12791 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
12792 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
12793 - DIET/MINOR: session: reduce the struct session size by 8 bytes
12794 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
12795 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
12796 - MINOR: http: switch the http state to an enum
12797 - MINOR: http: use an enum for the auth method in http_auth_data
12798 - DIET/MINOR: task: reduce struct task size by 8 bytes
12799 - MINOR: stream_interface: add reporting of ressouce allocation errors
12800 - MINOR: session: report lack of resources using the new stream-interface's error code
12801 - BUILD: simplify the date and version retrieval in the makefile
12802 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
12803 - BUILD: use format tags in VERDATE and SUBVERS files
12804 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
12805 - CLEANUP: check: server port is unsigned
12806 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
12807 - MINOR: tools: buf2ip6 must not modify output on failure
12808 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
12809 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
12810 - MINOR: arg: improve wording on error reporting
12811 - BUG/MEDIUM: sample: simplify and fix the argument parsing
12812 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
12813 - MEDIUM: acl: fix the initialization order of the ACL expression
12814 - CLEANUP: acl: remove useless blind copy-paste from sample converters
12815 - TESTS: add regression tests for ACL and sample expression parsers
12816 - BUILD: time: adapt the type of TV_ETERNITY to the local system
12817 - MINOR: chunks: allocate the trash chunks before parsing the config
12818 - BUILD: definitely silence some stupid GCC warnings
12819 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
12820 - MINOR: checks: improve handling of the servers tracking chain
12821 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
12822 - MINOR: checks: use an enum instead of flags to report a check result
12823 - MINOR: checks: rename the state flags
12824 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
12825 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
12826 - MINOR: checks: fix agent check interval computation
12827 - MINOR: checks: add a PAUSED state for the checks
12828 - MINOR: checks: create the agent tasks even when no check is configured
12829 - MINOR: checks: add a flag to indicate what check is an agent
12830 - MEDIUM: checks: enable agent checks even if health checks are disabled
12831 - BUG/MEDIUM: checks: ensure we can enable a server after boot
12832 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
12833 - BUG/MAJOR: session: repair tcp-request connection rules
12834 - BUILD: fix SUBVERS extraction in the Makefile
12835 - BUILD: pattern: silence a warning about uninitialized value
12836 - BUILD: log: fix build warning on Solaris
12837 - BUILD: dumpstats: fix build error on Solaris
12838 - DOC: move option pgsql-check to the correct place
12839 - DOC: move option tcp-check to the proper place
12840 - MINOR: connection: add simple functions to report connection readiness
12841 - MEDIUM: connection: centralize handling of nolinger in fd management
12842 - OPTIM: http: set CF_READ_DONTWAIT on response message
12843 - OPTIM: http: do not re-enable reading on client side while closing the server side
12844 - MINOR: config: add option http-keep-alive
12845 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
12846 - MAJOR: stream-int: handle the connection reuse in si_connect()
12847 - MAJOR: http: add the keep-alive transition on the server side
12848 - MAJOR: backend: enable connection reuse
12849 - MINOR: http: add option prefer-last-server
12850 - MEDIUM: http: do not report connection errors for second and further requests
12851
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200128522013/06/17 : 1.5-dev19
12853 - MINOR: stats: remove the autofocus on the scope input field
12854 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
12855 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
12856 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
12857 - MEDIUM: ssl: improve crt-list format to support negation
12858 - BUG: ssl: fix crt-list for clients not supporting SNI
12859 - MINOR: stats: show soft-stopped servers in different color
12860 - BUG/MINOR: config: "source" does not work in defaults section
12861 - BUG: regex: fix pcre compile error when using JIT
12862 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
12863 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
12864 - MINOR: show PCRE version and JIT status in -vv
12865 - BUG/MINOR: jit: don't rely on USE flag to detect support
12866 - DOC: readme: add suggestion to link against static openssl
12867 - DOC: examples: provide simplified ssl configuration
12868 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
12869 - MINOR: tproxy: add support for FreeBSD
12870 - MINOR: tproxy: add support for OpenBSD
12871 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
12872 - CLEANUP: fix minor typo in error message.
12873 - CLEANUP: fix missing include <string.h> in proto/listener.h
12874 - CLEANUP: protect checks.h from multiple inclusions
12875 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
12876 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
12877 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
12878 - BUG/MEDIUM: splicing is broken since 1.5-dev12
12879 - BUG/MAJOR: acl: add implicit arguments to the resolve list
12880 - BUG/MINOR: tcp: fix error reporting for TCP rules
12881 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
12882 - MINOR: stick-table: allow to allocate an entry without filling it
12883 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
12884 - MINOR: session: only call http_send_name_header() when changing the server
12885 - MINOR: tcp: report the erroneous word in tcp-request track*
12886 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
12887 - BUG/MEDIUM: log: fix regression on log-format handling
12888 - MEDIUM: log: report file name, line number, and directive name with log-format errors
12889 - BUG/MINOR: cli: "clear table" did not work anymore without a key
12890 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
12891 - BUG/MAJOR: http: compression still has defects on chunked responses
12892 - BUG/MINOR: stats: fix confirmation links on the stats interface
12893 - BUG/MINOR: stats: the status bar does not appear anymore after a change
12894 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
12895 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
12896 - BUG/MINOR: fix unterminated ACL array in compression
12897 - BUILD: last fix broke non-linux platforms
12898 - MINOR: init: indicate the SSL runtime version on -vv.
12899 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
12900 - BUILD: stdbool is not portable (again)
12901 - DOC: readme: add a small reminder about restrictions to respect in the code
12902 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
12903 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
12904 - DOC: fix wrong copy-paste in the rspdel example
12905 - MINOR: counters: make it easier to extend the amount of tracked counters
12906 - MEDIUM: counters: add support for tracking a third counter
12907 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
12908 - BUG/MAJOR: http: always ensure response buffer has some room for a response
12909 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
12910 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
12911 - MINOR: log: add a new flag 'L' for locally processed requests
12912 - MINOR: http: add full-length header fetch methods
12913 - MEDIUM: protocol: implement a "drain" function in protocol layers
12914 - MEDIUM: http: add a new "http-response" ruleset
12915 - MEDIUM: http: add the "set-nice" action to http-request and http-response
12916 - MEDIUM: log: add a log level override value in struct session
12917 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
12918 - MEDIUM: http: add support for "set-tos" in http-request/http-response
12919 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
12920 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
12921 - MEDIUM: acl: automatically detect the type of certain fetches
12922 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
12923 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
12924 - DOC: major reorg of ACL + sample fetch
12925 - CLEANUP: http: remove the bogus urlp_ip ACL match
12926 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
12927 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
12928 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
12929 - DOC: update ROADMAP file
12930 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
12931 - MEDIUM: stats: add proxy name filtering on the statistic page
12932
Willy Tarreau289dd922013-04-03 02:26:31 +0200129332013/04/03 : 1.5-dev18
12934 - DOCS: Add explanation of intermediate certs to crt paramater
12935 - DOC: typo and minor fixes in compression paragraph
12936 - MINOR: config: http-request configuration error message misses new keywords
12937 - DOC: minor typo fix in documentation
12938 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
12939 - MEDIUM: ssl: add bind-option "strict-sni"
12940 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
12941 - MEDIUM: regex: Use PCRE JIT in acl
12942 - DOC: simplify bind option "interface" explanation
12943 - DOC: tfo: bump required kernel to linux-3.7
12944 - BUILD: add explicit support for TFO with USE_TFO
12945 - MEDIUM: New cli option -Ds for systemd compatibility
12946 - MEDIUM: add haproxy-systemd-wrapper
12947 - MEDIUM: add systemd service
12948 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
12949 - BUG/MEDIUM: remove supplementary groups when changing gid
12950 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
12951 - BUG/MINOR: Correct logic in cut_crlf()
12952 - CLEANUP: checks: Make desc argument to set_server_check_status const
12953 - CLEANUP: dumpstats: Make cli_release_handler() static
12954 - MEDIUM: server: Break out set weight processing code
12955 - MEDIUM: server: Allow relative weights greater than 100%
12956 - MEDIUM: server: Tighten up parsing of weight string
12957 - MEDIUM: checks: Add agent health check
12958 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
12959 - BUG/MINOR: time: frequency counters are not totally accurate
12960 - BUG/MINOR: http: don't process abortonclose when request was sent
12961 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
12962 - BUG/MEDIUM: checks: ignore late resets after valid responses
12963 - DOC: fix bogus recommendation on usage of gpc0 counter
12964 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
12965 - MINOR: signal: don't block SIGPROF by default
12966 - OPTIM: epoll: make use of EPOLLRDHUP
12967 - OPTIM: splice: detect shutdowns and avoid splice() == 0
12968 - OPTIM: splice: assume by default that splice is working correctly
12969 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
12970 - BUG/MEDIUM: peers: only the last peers section was used by tables
12971 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
12972 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
12973 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
12974 - BUG/MINOR: config: free peer's address when exiting upon parsing error
12975 - BUG/MINOR: config: check the proper variable when parsing log minlvl
12976 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
12977 - BUG/MINOR: cli: show sess should always validate s->listener
12978 - BUG/MINOR: log: improper NULL return check on utoa_pad()
12979 - CLEANUP: http: remove a useless null check
12980 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
12981 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
12982 - BUG/MEDIUM: tools: off-by-one in quote_arg()
12983 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
12984 - BUG/MINOR: unix: remove the 'level' field from the ux struct
12985 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
12986 - CLEANUP: config: slowstart is never negative
12987 - CLEANUP: config: maxcompcpuusage is never negative
12988 - BUG/MEDIUM: log: emit '-' for empty fields again
12989 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
12990 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
12991 - BUILD: improve the makefile's support for libpcre
12992 - MEDIUM: halog: add support for counting per source address (-ic)
12993 - MEDIUM: tools: make str2sa_range support all address syntaxes
12994 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
12995 - MEDIUM: config: use str2sa_range() to parse server addresses
12996 - MEDIUM: config: use str2sa_range() to parse peers addresses
12997 - MINOR: tests: add a config file to ease address parsing tests.
12998 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
12999 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
13000 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
13001 - MINOR: config: report missing peers section name
13002 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
13003 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
13004 - MINOR: tools: prepare str2sa_range() to return an error message
13005 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
13006 - MINOR: tools: prepare str2sa_range() to accept a prefix
13007 - MEDIUM: tools: make str2sa_range() parse unix addresses too
13008 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
13009 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
13010 - MEDIUM: config: use str2sa_range() to parse log addresses
13011 - CLEANUP: tools: remove str2sun() which is not used anymore.
13012 - MEDIUM: config: add complete support for str2sa_range() in dispatch
13013 - MEDIUM: config: add complete support for str2sa_range() in server addr
13014 - MEDIUM: config: add complete support for str2sa_range() in 'server'
13015 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
13016 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
13017 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
13018 - CLEANUP: config: do not use multiple errmsg at once
13019 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
13020 - MAJOR: listener: support inheriting a listening fd from the parent
13021 - MAJOR: tools: support environment variables in addresses
13022 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
13023 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
13024 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
13025 - DOC: mention the new HTTP 307 and 308 redirect statues
13026 - MEDIUM: poll: do not use FD_* macros anymore
13027 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
13028 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
13029 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
13030 - BUILD: fix usual isdigit() warning on solaris
13031 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
13032 - OPTIM: buffer: remove one jump in buffer_count()
13033 - OPTIM: http: improve branching in chunk size parser
13034 - OPTIM: http: optimize the response forward state machine
13035 - BUILD: enable poll() by default in the makefile
13036 - BUILD: add explicit support for Mac OS/X
13037 - BUG/MAJOR: http: use a static storage for sample fetch context
13038 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
13039 - BUG/MAJOR: http: fix regression introduced by commit a890d072
13040 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
13041 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
13042 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
13043 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
13044 - MINOR: log: indicate it when some unreliable sample fetches are logged
13045 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
13046 - MINOR: backend: rename sample fetch functions and declare the sample keywords
13047 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
13048 - MINOR: listener: rename sample fetch functions and declare the sample keywords
13049 - MEDIUM: http: unify acl and sample fetch functions
13050 - MINOR: session: rename sample fetch functions and declare the sample keywords
13051 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
13052 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
13053 - MAJOR: acl: remove fetch argument validation from the ACL struct
13054 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
13055 - MINOR: payload: add new direction-explicit sample fetches
13056 - CLEANUP: acl: remove ACL hooks which were never used
13057 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
13058 - MINOR: sample: provide a function to report the name of a sample check point
13059 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
13060 - CLEANUP: acl: remove unused references to ACL_USE_*
13061 - MINOR: http: replace acl_parse_ver with acl_parse_str
13062 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
13063 - MAJOR: acl: add option -m to change the pattern matching method
13064 - MINOR: acl: remove the use_count in acl keywords
13065 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
13066 - MEDIUM: acl: support using sample fetches directly in ACLs
13067 - MEDIUM: http: remove val_usr() to validate user_lists
13068 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
13069 - MINOR: ssl: add support for the "alpn" bind keyword
13070 - MINOR: http: status code 303 is HTTP/1.1 only
13071 - MEDIUM: http: implement redirect 307 and 308
13072 - MINOR: http: status 301 should not be marked non-cacheable
13073
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100130742012/12/28 : 1.5-dev17
13075 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
13076 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
13077 - BUG/MINOR: stats: last fix was still wrong
13078 - BUG/MINOR: stats: http-request rules still don't cope with stats
13079 - BUG/MINOR: http: http-request add-header emits a corrupted header
13080 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
13081 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
13082 - BUILD: log: unused variable svid
13083 - CLEANUP: http: rename the misleading http_check_access_rule
13084 - MINOR: http: move redirect rule processing to its own function
13085 - REORG: config: move the http redirect rule parser to proto_http.c
13086 - MEDIUM: http: add support for "http-request redirect" rules
13087 - MEDIUM: http: add support for "http-request tarpit" rule
13088
Willy Tarreau69eda352012-12-24 16:48:14 +0100130892012/12/24 : 1.5-dev16
13090 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
13091 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
13092 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
13093 - MINOR: contrib: make the iprange tool grep for addresses
13094 - CLEANUP: polling: gcc doesn't always optimize constants away
13095 - OPTIM: poll: optimize fd management functions for low register count CPUs
13096 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
13097 - OPTIM: epoll: use a temp variable for intermediary flag computations
13098 - OPTIM: epoll: current fd does not count as a new one
13099 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
13100 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
13101 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
13102 - BUG/MINOR: stream_interface: don't return when the fd is already set
13103 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
13104 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
13105 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
13106 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
13107 - BUG/MINOR: http: don't abort client connection on premature responses
13108 - BUILD: no need to clean up when making git-tar
13109 - MINOR: log: add a tag for amount of bytes uploaded from client to server
13110 - BUG/MEDIUM: log: fix possible segfault during config parsing
13111 - MEDIUM: log: change a few log tokens to make them easier to remember
13112 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
13113 - MEDIUM: log-format: make the format parser more robust and more extensible
13114 - MINOR: sample: support cast from bool to string
13115 - MINOR: samples: add a function to fetch and convert any sample to a string
13116 - MINOR: log: add lf_text_len
13117 - MEDIUM: log: add the ability to include samples in logs
13118 - REORG: stats: massive code reorg and cleanup
13119 - REORG: stats: move the HTTP header injection to proto_http
13120 - REORG: stats: functions are now HTTP/CLI agnostic
13121 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
13122 - MINOR: chunks: centralize the trash chunk allocation
13123 - MEDIUM: stats: use hover boxes instead of title to report details
13124 - MEDIUM: stats: use multi-line tips to display detailed counters
13125 - MINOR: tools: simplify the use of the int to ascii macros
13126 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
13127 - MINOR: http: prepare to support more http-request actions
13128 - MINOR: log: make parse_logformat_string() take a const char *
13129 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
13130
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100131312012/12/12 : 1.5-dev15
13132 - DOC: add a few precisions on compression
13133 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
13134 - BUG/MINOR: ssl: One free session in cache remains unused.
13135 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
13136 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
13137 - MINOR: acl: add fetch for server session rate
13138 - BUG/MINOR: compression: Content-Type is case insensitive
13139 - MINOR: compression: disable on multipart or status != 200
13140 - BUG/MINOR: http: don't report client aborts as server errors
13141 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
13142 - MINOR: http: factor out the content-type checks
13143 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
13144 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
13145 - BUG/MINOR: http: disable compression when message has no body
13146 - MINOR: compression: make the stats a bit more robust
13147 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
13148 - MINOR: connection: don't remove failed handshake flags
13149 - MEDIUM: connection: add an error code in connections
13150 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
13151 - MEDIUM: connection: add error reporting for the PROXY protocol header
13152 - MEDIUM: connection: add error reporting for the SSL
13153 - DOC: document the connection error format in logs
13154 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
13155 - BUILD: stdbool is not portable
13156 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
13157 - BUG/MAJOR: raw_sock: must check error code on hangup
13158 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
13159 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
13160 - MINOR: stats: add a few more information on session dump
13161 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
13162 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
13163 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
13164 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
13165 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
13166 - CLEANUP: proto_tcp: use the same code to bind servers and backends
13167 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
13168 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
13169 - MEDIUM: proto_tcp: add support for tracking L7 information
13170 - MEDIUM: counters: add sc1_trackers/sc2_trackers
13171 - MINOR: http: add the "base32" pattern fetch function
13172 - MINOR: http: add the "base32+src" fetch method.
13173 - CLEANUP: session: use an array for the stick counters
13174 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
13175 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
13176 - BUG/MAJOR: connection: always recompute polling status upon I/O
13177 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
13178 - MINOR: config: improve error checking on TCP stick-table tracking
13179 - DOC: add some clarifications to the readme
13180
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100131812012/11/26 : 1.5-dev14
13182 - DOC: fix minor typos
13183 - BUG/MEDIUM: compression: does not forward trailers
13184 - MINOR: buffer_dump with ASCII
13185 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
13186 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
13187 - BUG/MINOR: checks: don't mark the FD as closed before transport close
13188 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
13189 - MINOR: cli: report the msg state in full text in "show sess $PTR"
13190 - CLEANUP: checks: rename some server check flags
13191 - MAJOR: checks: rework completely bogus state machine
13192 - BUG/MINOR: checks: slightly clean the state machine up
13193 - MEDIUM: checks: avoid waking the application up for pure TCP checks
13194 - MEDIUM: checks: close the socket as soon as we have a response
13195 - BUG/MAJOR: checks: close FD on all timeouts
13196 - MINOR: checks: fix recv polling after connect()
13197 - MEDIUM: connection: provide a common conn_full_close() function
13198 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
13199 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
13200 - MINOR: listeners: make the accept loop more robust when maxaccept==0
13201 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
13202 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
13203 - BUG/MINOR: stats: fix inversion of the report of a check in progress
13204 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
13205 - BUG/MEDIUM: connection: always disable polling upon error
13206 - MINOR: connection: abort earlier when errors are detected
13207 - BUG/MEDIUM: checks: report handshake failures
13208 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
13209 - MINOR: tcp: add support for the "v6only" bind option
13210 - MINOR: stats: also report the computed compression savings in html stats
13211 - MINOR: stats: report the total number of compressed responses per front/back
13212 - MINOR: tcp: add support for the "v4v6" bind option
13213 - DOC: stats: document the comp_rsp stats column
13214 - BUILD: buffer: fix another isprint() warning on solaris
13215 - MINOR: cli: add support for the "show sess all" command
13216 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
13217 - MINOR: cli: improve output format for show sess $ptr
13218
Willy Tarreauad15d122012-11-22 01:11:33 +0100132192012/11/22 : 1.5-dev13
13220 - BUILD: fix build issue without USE_OPENSSL
13221 - BUILD: fix compilation error with DEBUG_FULL
13222 - DOC: ssl: remove prefer-server-ciphers documentation
13223 - DOC: ssl: surround keywords with quotes
13224 - DOC: fix minor typo on http-send-name-header
13225 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
13226 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
13227 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
13228 - BUILD: report zlib support in haproxy -vv
13229 - DOC: compression: add some details and clean up the formatting
13230 - DOC: Change is_ssl acl to ssl_fc acl in example
13231 - DOC: make it clear what the HTTP request size is
13232 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
13233 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
13234 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
13235 - DOC: ssl: add 'ecdhe' statement on 'bind'
13236 - MEDIUM: ssl: add client certificate authentication support
13237 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
13238 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
13239 - DOC: ssl: add fetch and ACL 'client_cert'
13240 - MINOR: ssl: add ignore verify errors options
13241 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
13242 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
13243 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
13244 - MINOR: ssl: add fetches and ACLs to return verify errors
13245 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
13246 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
13247 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
13248 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
13249 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
13250 - MEDIUM: config: authorize frontend and listen without bind.
13251 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
13252 - DOC: ssl: add 'no-tls-tickets' statement documentation.
13253 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
13254 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
13255 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
13256 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
13257 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
13258 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
13259 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
13260 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
13261 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
13262 - MINOR: ssl: use bit fields to store ssl options instead of one int each
13263 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
13264 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
13265 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
13266 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
13267 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
13268 - MEDIUM: ssl: reject ssl server keywords in default-server statement
13269 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
13270 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
13271 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
13272 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
13273 - MINOR: acl: add parse and match primitives to use binary type on ACLs
13274 - MINOR: sample: export 'sample_get_trash_chunk(void)'
13275 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
13276 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
13277 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
13278 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
13279 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
13280 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
13281 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
13282 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
13283 - MINOR: ssl: add 'crt' statement on server.
13284 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
13285 - BUG/MEDIUM: ssl: review polling on reneg.
13286 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
13287 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
13288 - MINOR: build: allow packagers to specify the ssl cache size
13289 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
13290 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
13291 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
13292 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
13293 - DOC: duplicate ssl_sni section
13294 - MEDIUM: HTTP compression (zlib library support)
13295 - CLEANUP: use struct comp_ctx instead of union
13296 - BUILD: remove dependency to zlib.h
13297 - MINOR: compression: memlevel and windowsize
13298 - MEDIUM: use pool for zlib
13299 - MINOR: compression: try init in cfgparse.c
13300 - MINOR: compression: init before deleting headers
13301 - MEDIUM: compression: limit RAM usage
13302 - MINOR: compression: tune.comp.maxlevel
13303 - MINOR: compression: maximum compression rate limit
13304 - MINOR: log-format: check number of arguments in cfgparse.c
13305 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
13306 - BUG/MINOR: compression: deinit zlib only when required
13307 - MEDIUM: compression: don't compress when no data
13308 - MEDIUM: compression: use pool for comp_ctx
13309 - MINOR: compression: rate limit in 'show info'
13310 - MINOR: compression: report zlib memory usage
13311 - BUG/MINOR: compression: dynamic level increase
13312 - DOC: compression: unsupported cases.
13313 - MINOR: compression: CPU usage limit
13314 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
13315 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
13316 - MINOR: config: add a function to indent error messages
13317 - REORG: split "protocols" files into protocol and listener
13318 - MEDIUM: config: replace ssl_conf by bind_conf
13319 - CLEANUP: listener: remove unused conf->file and conf->line
13320 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
13321 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
13322 - MEDIUM: move bind SSL parsing to ssl_sock
13323 - MINOR: config: improve error reporting for "bind" lines
13324 - MEDIUM: config: move the common "bind" settings to listener.c
13325 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
13326 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
13327 - MINOR: listener: add a scope field in the bind keyword lists
13328 - MINOR: config: pass the file and line to config keyword parsers
13329 - MINOR: stats: fill the file and line numbers in the stats frontend
13330 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
13331 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
13332 - REORG: listener: move unix perms from the listener to the bind_conf
13333 - BUG: backend: balance hdr was broken since 1.5-dev11
13334 - MINOR: standard: make memprintf() support a NULL destination
13335 - MINOR: config: make str2listener() use memprintf() to report errors.
13336 - MEDIUM: stats: remove the stats_sock struct from the global struct
13337 - MINOR: ssl: set the listeners' data layer to ssl during parsing
13338 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
13339 - DOC: move bind options to their own section
13340 - DOC: stats: refer to "bind" section for "stats socket" settings
13341 - DOC: fix index to reference bind and server options
13342 - BUG: http: do not print garbage on invalid requests in debug mode
13343 - BUG/MINOR: config: check the proper pointer to report unknown protocol
13344 - CLEANUP: connection: offer conn_prepare() to set up a connection
13345 - CLEANUP: config: fix typo inteface => interface
13346 - BUG: stats: fix regression introduced by commit 4348fad1
13347 - MINOR: cli: allow to set frontend maxconn to zero
13348 - BUG/MAJOR: http: chunk parser was broken with buffer changes
13349 - MEDIUM: monitor: simplify handling of monitor-net and mode health
13350 - MINOR: connection: add a pointer to the connection owner
13351 - MEDIUM: connection: make use of the owner instead of container_of
13352 - BUG/MINOR: ssl: report the L4 connection as established when possible
13353 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
13354 - BUG/MINOR: config: use a copy of the file name in proxy configurations
13355 - BUG/MEDIUM: listener: don't pause protocols that do not support it
13356 - MEDIUM: proxy: add the global frontend to the list of normal proxies
13357 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
13358 - MINOR: signal: really ignore signals configured with no handler
13359 - MINOR: buffers: add a few functions to write chars, strings and blocks
13360 - MINOR: raw_sock: always report asynchronous connection errors
13361 - MEDIUM: raw_sock: improve connection error reporting
13362 - REORG: connection: rename the data layer the "transport layer"
13363 - REORG: connection: rename app_cb "data"
13364 - MINOR: connection: provide a generic data layer wakeup callback
13365 - MINOR: connection: split conn_prepare() in two functions
13366 - MINOR: connection: add an init callback to the data_cb struct
13367 - MEDIUM: session: use a specific data_cb for embryonic sessions
13368 - MEDIUM: connection: use a generic data-layer init() callback
13369 - MEDIUM: connection: reorganize connection flags
13370 - MEDIUM: connection: only call the data->wake callback on activity
13371 - MEDIUM: connection: make it possible for data->wake to return an error
13372 - MEDIUM: session: register a data->wake callback to process errors
13373 - MEDIUM: connection: don't call the data->init callback upon error
13374 - MEDIUM: connection: it's not the data layer's role to validate the connection
13375 - MEDIUM: connection: automatically disable polling on error
13376 - REORG: connection: move the PROXY protocol management to connection.c
13377 - MEDIUM: connection: add a new local send-proxy transport callback
13378 - MAJOR: checks: make use of the connection layer to send checks
13379 - REORG: server: move the check-specific parts into a check subsection
13380 - MEDIUM: checks: use real buffers to store requests and responses
13381 - MEDIUM: check: add the ctrl and transport layers in the server check structure
13382 - MAJOR: checks: completely use the connection transport layer
13383 - MEDIUM: checks: add the "check-ssl" server option
13384 - MEDIUM: checks: enable the PROXY protocol with health checks
13385 - CLEANUP: checks: remove minor warnings for assigned but not used variables
13386 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
13387 - BUG: connection: fix regression from commit 9e272bf9
13388 - CLEANUP: cttproxy: remove a warning on undeclared close()
13389 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
13390 - MEDIUM: listener: add support for linux's accept4() syscall
13391 - MINOR: halog: sort output by cookie code
13392 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
13393 - BUG/MINOR: halog: fix help message for -ut/-uto
13394 - MINOR: halog: add a parameter to limit output line count
13395 - BUILD: accept4: move the socketcall declaration outside of accept4()
13396 - MINOR: server: add minimal infrastructure to parse keywords
13397 - MINOR: standard: make indent_msg() support empty messages
13398 - MEDIUM: server: check for registered keywords when parsing unknown keywords
13399 - MEDIUM: server: move parsing of keyword "id" to server.c
13400 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
13401 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
13402 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
13403 - MEDIUM: connection: always unset the transport layer upon close
13404 - BUG/MINOR: session: fix some leftover from debug code
13405 - BUG/MEDIUM: session: enable the conn_session_update() callback
13406 - MEDIUM: connection: add a flag to hold the transport layer
13407 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
13408 - MINOR: log: make lf_text use a const char *
13409 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
13410 - REORG: http: rename msg->buf to msg->chn since it's a channel
13411 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
13412 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
13413 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
13414 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
13415 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
13416 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
13417 - OPTIM: channel: reorganize struct members to improve cache efficiency
13418 - CLEANUP: session: remove term_trace which is not used anymore
13419 - OPTIM: session: reorder struct session fields
13420 - OPTIM: connection: pack the struct target
13421 - DOC: document relations between internal entities
13422 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
13423 - BUILD: ssl: fix shctx build on older compilers
13424 - MEDIUM: ssl: add support for the "npn" bind keyword
13425 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
13426 - MINOR: chunk: provide string compare functions
13427 - MINOR: sample: accept fetch keywords without parenthesis
13428 - MEDIUM: sample: pass an empty list instead of a null for fetch args
13429 - MINOR: ssl: improve socket behaviour upon handshake abort.
13430 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
13431 - MEDIUM: listener: provide a fallback for accept4() when not supported
13432 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
13433 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
13434 - OPTIM: channel: inline channel_forward's fast path
13435 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
13436 - OPTIM: tools: inline hex2i()
13437 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
13438 - MINOR: compression: automatically disable compression for older browsers
13439 - MINOR: compression: optimize memLevel to improve byte rate
13440 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
13441 - BUILD: fix coexistence of openssl and zlib
13442 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
13443 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
13444 - MINOR: tools: add a clear_addr() function to unset an address
13445 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
13446 - CLEANUP: remove trashlen
13447 - MAJOR: session: detach the connections from the stream interfaces
13448 - DOC: update document describing relations between internal entities
13449 - BUILD: make it possible to specify ZLIB path
13450 - MINOR: compression: add an offload option to remove the Accept-Encoding header
13451 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
13452 - CLEANUP: completely remove trashlen
13453 - MINOR: chunk: add a function to reset a chunk
13454 - CLEANUP: replace chunk_printf() with chunk_appendf()
13455 - MEDIUM: make the trash be a chunk instead of a char *
13456 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
13457 - MEDIUM: stick-table: allocate the table key of size buffer size
13458 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
13459 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
13460 - OPTIM: session: don't process the whole session when only timers need a refresh
13461 - BUG/MINOR: session: mark the handshake as complete earlier
13462 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
13463 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
13464 - MAJOR: sepoll: make the poller totally event-driven
13465 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
13466 - BUILD: compression: remove a build warning
13467 - MEDIUM: fd: don't unset fdtab[].updated upon delete
13468 - REORG: fd: move the speculative I/O management from ev_sepoll
13469 - REORG: fd: move the fd state management from ev_sepoll
13470 - REORG: fd: centralize the processing of speculative events
13471 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
13472 - BUILD: stream_interface: remove si_fd() and its references
13473 - BUILD: compression: enable build in BSD and OSX Makefiles
13474 - MAJOR: ev_select: make the poller support speculative events
13475 - MAJOR: ev_poll: make the poller support speculative events
13476 - MAJOR: ev_kqueue: make the poller support speculative events
13477 - MAJOR: polling: replace epoll with sepoll and remove sepoll
13478 - MAJOR: polling: remove unused callbacks from the poller struct
13479 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
13480 - CLEANUP: channel: remove any reference of the hijackers
13481 - CLEANUP: stream_interface: remove the external task type target
13482 - MAJOR: connection: replace struct target with a pointer to an enum
13483 - BUG: connection: fix typo in previous commit
13484 - BUG: polling: don't skip polled events in the spec list
13485 - MINOR: splice: disable it when the system returns EBADF
13486 - MINOR: build: allow packagers to specify the default maxzlibmem
13487 - BUG: halog: fix broken output limitation
13488 - BUG: proxy: fix server name lookup in get_backend_server()
13489 - BUG: compression: do not always increment the round counter on allocation failure
13490 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
13491 - MINOR: global: don't prevent nbproc from being redefined
13492 - MINOR: config: support process ranges for "bind-process"
13493 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
13494 - MINOR: ssl: rename and document the tune.ssl.cachesize option
13495 - DOC: update the PROXY protocol spec to support v2
13496 - MINOR: standard: add a simple popcount function
13497 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
13498 - BUG: compression: properly disable compression when content-type does not match
13499 - MINOR: cli: report connection status in "show sess xxx"
13500 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
13501 - BUILD: cli: fix build when SSL is enabled
13502 - MINOR: cli: report the fd state in "show sess xxx"
13503 - MINOR: cli: report an error message on missing argument to compression rate
13504 - MINOR: http: add some debugging functions to pretty-print msg state names
13505 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
13506 - DOC: documentation on http header capture is wrong
13507 - MINOR: http: allow the cookie capture size to be changed
13508 - DOC: http header capture has not been limited in size for a long time
13509 - DOC: update readme with build methods for BSD
13510 - BUILD: silence a warning on Solaris about usage of isdigit()
13511 - MINOR: stats: report HTTP compression stats per frontend and per backend
13512 - MINOR: log: add '%Tl' to log-format
13513 - MINOR: samples: update the url_param fetch to match parameters in the path
13514
Willy Tarreau16216822012-09-10 09:46:55 +0200135152012/09/10 : 1.5-dev12
13516 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
13517 - MEDIUM: ssl: add support for prefer-server-ciphers option
13518 - MINOR: IPv6 support for transparent proxy
13519 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
13520 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
13521 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
13522 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
13523 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
13524 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
13525 - MEDIUM: ssl: protect against client-initiated renegociation
13526 - BUILD: add optional support for SSL via the USE_OPENSSL flag
13527 - MEDIUM: ssl: add shared memory session cache implementation.
13528 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
13529 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
13530 - MEDIUM: ssl: add support for SNI and wildcard certificates
13531 - DOC: Typos cleanup
13532 - DOC: fix name for "option independant-streams"
13533 - DOC: specify the default value for maxconn in the context of a proxy
13534 - BUG/MINOR: to_log erased with unique-id-format
13535 - LICENSE: add licence exception for OpenSSL
13536 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
13537 - BUILD: add an AIX 5.2 (and later) target.
13538 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
13539 - MINOR: halog: use the more recent dual-mode fgets2 implementation
13540 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
13541 - CLEANUP: halog: make clean should also remove .o files
13542 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
13543 - OPTIM: halog: improve cold-cache behaviour when loading a file
13544 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
13545 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
13546 - MEDIUM: pattern: add the "base" sample fetch method
13547 - OPTIM: i386: make use of kernel-mode-linux when available
13548 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
13549 - BUG/MINOR: polling: some events were not set in various pollers
13550 - MINOR: http: add the urlp_val ACL match
13551 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
13552 - MINOR: stats/cli: add plans to support more stick-table actions
13553 - MEDIUM: stats/cli: add support for "set table key" to enter values
13554 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
13555 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
13556 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
13557 - REORG/MINOR: connection: move declaration to its own include file
13558 - REORG/MINOR: checks: put a struct connection into the server
13559 - MINOR: connection: add flags to the connection struct
13560 - MAJOR: get rid of fdtab[].state and use connection->flags instead
13561 - MINOR: fd: add a new I/O handler to fdtab
13562 - MEDIUM: polling: prepare to call the iocb() function when defined.
13563 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
13564 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
13565 - MINOR: connection: add a handler for fd-based connections
13566 - MAJOR: connection: replace direct I/O callbacks with the connection callback
13567 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
13568 - MEDIUM: connection: remove the FD_POLL_* flags only once
13569 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
13570 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
13571 - CLEANUP: remove the now unused fdtab direct I/O callbacks
13572 - MAJOR: remove the stream interface and task management code from sock_*
13573 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
13574 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
13575 - MAJOR: connection: add a new CO_FL_CONNECTED flag
13576 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
13577 - MAJOR: connection: call data layer handshakes from the handler
13578 - MEDIUM: fd: remove the EV_FD_COND_* primitives
13579 - MINOR: sock_raw: move calls to si_data_close upper
13580 - REORG: connection: replace si_data_close() with conn_data_close()
13581 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
13582 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
13583 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
13584 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
13585 - MEDIUM: connection: add definitions for dual polling mechanisms
13586 - MEDIUM: connection: make use of the new polling functions
13587 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
13588 - MEDIUM: checks: don't use FD_WAIT_* anymore
13589 - MINOR: fd: get rid of FD_WAIT_*
13590 - MEDIUM: stream_interface: offer a generic function for connection updates
13591 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
13592 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
13593 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
13594 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
13595 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
13596 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
13597 - REORG/MAJOR: extract "struct buffer" from "struct channel"
13598 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
13599 - REORG: sock_raw: rename the files raw_sock*
13600 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
13601 - MAJOR: raw_sock: temporarily disable splicing
13602 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
13603 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
13604 - MAJOR: connection: split the send call into connection and stream interface
13605 - MAJOR: stream-interface: restore splicing mechanism
13606 - MAJOR: stream-interface: make conn_notify_si() more robust
13607 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
13608 - MAJOR: stream-interface: don't commit polling changes in every callback
13609 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
13610 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
13611 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
13612 - REORG: buffers: split buffers into chunk,buffer,channel
13613 - MAJOR: channel: remove the BF_OUT_EMPTY flag
13614 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
13615 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
13616 - MINOR: buffer: provide a new buffer_full() function
13617 - MAJOR: channel: stop relying on BF_FULL to take action
13618 - MAJOR: channel: remove the BF_FULL flag
13619 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
13620 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
13621 - CLEANUP: channel: use "channel" instead of "buffer" in function names
13622 - REORG: connection: move the target pointer from si to connection
13623 - MAJOR: connection: move the addr field from the stream_interface
13624 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
13625 - MEDIUM: proto_tcp: remove any dependence on stream_interface
13626 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
13627 - MEDIUM: connection: add an ->init function to data layer
13628 - MAJOR: session: introduce embryonic sessions
13629 - MAJOR: connection: make the PROXY decoder a handshake handler
13630 - CLEANUP: frontend: remove the old proxy protocol decoder
13631 - MAJOR: connection: rearrange the polling flags.
13632 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
13633 - MEDIUM: connection: complete the polling cleanups
13634 - MEDIUM: connection: avoid calling handshakes when polling is required
13635 - MAJOR: stream_interface: continue to update data polling flags during handshakes
13636 - CLEANUP: fd: remove fdtab->flags
13637 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
13638 - CLEANUP: includes: fix includes for a number of users of fd.h
13639 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
13640 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
13641 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
13642 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
13643 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
13644 - BUILD: ssl: fix shctx build on RHEL with futex
13645 - BUILD: include sys/socket.h to fix build failure on FreeBSD
13646 - BUILD: fix build error without SSL (ssl_cert)
13647 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
13648 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
13649 - MEDIUM: config: support per-listener backlog and maxconn
13650 - MINOR: session: do not send an HTTP/500 error on SSL sockets
13651 - MEDIUM: config: implement maxsslconn in the global section
13652 - BUG: tcp: close socket fd upon connect error
13653 - MEDIUM: connection: improve error handling around the data layer
13654 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
13655 - BUILD: shut a gcc warning introduced by commit 269ab31
13656 - MEDIUM: config: centralize handling of SSL config per bind line
13657 - BUILD: makefile: report USE_OPENSSL status in build options
13658 - BUILD: report openssl build settings in haproxy -vv
13659 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
13660 - DOC: add a special acknowledgement for the stud project
13661 - DOC: add missing SSL options for servers and listeners
13662 - BUILD: automatically add -lcrypto for SSL
13663 - DOC: add some info about openssl build in the README
13664
Willy Tarreau02c7c142012-06-04 00:43:45 +0200136652012/06/04 : 1.5-dev11
13666 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
13667 - BUG/MAJOR: trash must always be the size of a buffer
13668 - DOC: fix minor regex example issue and improve doc on stats
13669 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
13670 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
13671 - MINOR: checks: add on-marked-up option
13672 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
13673 - MEDIUM: stream_interface: remove the si->init
13674 - MINOR: buffers: add a rewind function
13675 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
13676 - MAJOR: http: stop using msg->sol outside the parsers
13677 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
13678 - MEDIUM: http: get rid of msg->som which is not used anymore
13679 - MEDIUM: http: msg->sov and msg->sol will never wrap
13680 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
13681 - BUG/MINOR: stop connect timeout when connect succeeds
13682 - REORG: move the send-proxy code to tcp_connect_write()
13683 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
13684 - MINOR: stream_interface: introduce a new "struct connection" type
13685 - REORG/MINOR: stream_interface: move si->fd to struct connection
13686 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
13687 - MINOR: stream_interface: add a data channel close function
13688 - MEDIUM: stream_interface: call si_data_close() before releasing the si
13689 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
13690 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
13691 - MINOR: add a new function call tracer for debugging purposes
13692 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
13693 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
13694 - BUG/MEDIUM: register peer sync handler in the proper order
13695 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
13696 - BUG/MINOR: fix option httplog validation with TCP frontends
13697 - BUG/MINOR: log: don't report logformat errors in backends
13698 - REORG/MINOR: use dedicated proxy flags for the cookie handling
13699 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
13700 - MINOR: http: add support for "httponly" and "secure" cookie attributes
13701 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
13702 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
13703 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
13704 - MEDIUM: stats: add the ability to kill sessions from the admin interface
13705 - BUILD: add support for linux kernels >= 2.6.28
13706
Willy Tarreauffb89472012-05-14 07:26:56 +0200137072012/05/14 : 1.5-dev10
13708 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
13709 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
13710 - CLEANUP: auth: make the code build again with DEBUG_AUTH
13711 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
13712 - REORG: use the name sock_raw instead of stream_sock
13713 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
13714 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
13715 - CLEANUP: sock_raw: remove last references to stream_sock
13716 - CLEANUP: stream_interface: stop exporting socket layer functions
13717 - MINOR: stream_interface: add an init callback to sock_ops
13718 - MEDIUM: stream_interface: derive the socket operations from the target
13719 - MAJOR: fd: remove the need for the socket layer to recheck the connection
13720 - MINOR: session: call the socket layer init function when a session establishes
13721 - MEDIUM: session: add support for tunnel timeouts
13722 - MINOR: standard: add a new debug macro : fddebug()
13723 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
13724 - OPTIM: proto_http: don't enable quick-ack on empty buffers
13725 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
13726 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
13727
Willy Tarreaua0564f32012-05-08 21:56:27 +0200137282012/05/08 : 1.5-dev9
13729 - MINOR: Add release callback to si_applet
13730 - CLEANUP: Fix some minor typos
13731 - MINOR: Add TO/FROM_SET flags to struct stream_interface
13732 - CLEANUP: Fix some minor whitespace issues
13733 - MINOR: stats admin: allow unordered parameters in POST requests
13734 - CLEANUP: fix typo in findserver() log message
13735 - MINOR: stats admin: use the backend id instead of its name in the form
13736 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
13737 - DOC: cleanup indentation, alignment, columns and chapters
13738 - DOC: fix some keywords arguments documentation
13739 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
13740 - BUG/MAJOR: log: possible segfault with logformat
13741 - MEDIUM: log: split of log_format generation
13742 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
13743 - MEDIUM: log: Unique ID
13744 - MINOR: log: log-format: usable without httplog and tcplog
13745 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
13746 - MINOR: contrib/iprange: add a network IP range to mask converter
13747 - MEDIUM: session: implement the "use-server" directive
13748 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
13749 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
13750 - MEDIUM: http: add cookie and scookie ACLs
13751 - CLEANUP: lb_first: add reference to a paper describing the original idea
13752 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
13753 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
13754 - BUILD: http: make extract_cookie_value() return an int not size_t
13755 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
13756 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
13757 - MINOR: standard: add a memprintf() function to build formatted error messages
13758 - CLEANUP: remove a few warning about unchecked return values in debug code
13759 - MEDIUM: move message-related flags from transaction to message
13760 - DOC: add a diagram to explain how circular buffers work
13761 - MAJOR: buffer rework: replace ->send_max with ->o
13762 - MAJOR: buffer: replace buf->l with buf->{o+i}
13763 - MINOR: buffers: provide simple pointer normalization functions
13764 - MINOR: buffers: remove unused function buffer_contig_data()
13765 - MAJOR: buffers: replace buf->w with buf->p - buf->o
13766 - MAJOR: buffers: replace buf->r with buf->p + buf->i
13767 - MAJOR: http: move buffer->lr to http_msg->next
13768 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
13769 - CLEANUP: http: remove unused http_msg->col
13770 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
13771 - MEDIUM: http: add a pointer to the buffer in http_msg
13772 - MAJOR: http: make http_msg->sol relative to buffer's origin
13773 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
13774 - MEDIUM: http: remove buffer arg in a few header manipulation functions
13775 - MEDIUM: http: remove buffer arg in http_capture_bad_message
13776 - MEDIUM: http: remove buffer arg in http_msg_analyzer
13777 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
13778 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
13779 - MEDIUM: http: remove buffer arg in chunk parsing functions
13780 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
13781 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
13782 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
13783 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
13784 - MEDIUM: buffers: rename a number of buffer management functions
13785 - MEDIUM: http: add a prefetch function for ACL pattern fetch
13786 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
13787 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
13788 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
13789 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
13790 - MEDIUM: add a new typed argument list parsing framework
13791 - MAJOR: acl: make use of the new argument parsing framework
13792 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
13793 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
13794 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
13795 - MAJOR: acl: ensure that implicit table and proxies are valid
13796 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
13797 - MEDIUM: pattern: replace type pattern_arg with type arg
13798 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
13799 - MEDIUM: pattern: use the standard arg parser
13800 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
13801 - MEDIUM: pattern: report the precise argument parsing error when known.
13802 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
13803 - MINOR: pattern: add a new 'sample' type to store fetched data
13804 - MEDIUM: pattern: add new sample types to replace pattern types
13805 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
13806 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
13807 - MEDIUM: acl: get rid of the SET_RES flags
13808 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
13809 - MINOR: pattern: replace struct pattern with struct sample
13810 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
13811 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
13812 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
13813 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
13814 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
13815 - MEDIUM: acl/pattern: use the same direction scheme
13816 - MEDIUM: acl/pattern: start merging common sample fetch functions
13817 - MEDIUM: pattern: ensure that sample types always cast into other types.
13818 - MEDIUM: acl/pattern: factor out the src/dst address fetches
13819 - MEDIUM: acl: implement payload and payload_lv
13820 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
13821 - MINOR: stick_table: centralize the handling of empty keys
13822 - MINOR: pattern: centralize handling of unstable data in pattern_process()
13823 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
13824 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
13825 - MINOR: acl: add a val_args field to keywords
13826 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
13827 - MEDIUM: http: merge acl and pattern header fetch functions
13828 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
13829 - MEDIUM: acl: report parsing errors to the caller
13830 - MINOR: arg: improve error reporting on invalid arguments
13831 - MINOR: acl: report errors encountered when loading patterns from files
13832 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
13833 - REORG: use the name "sample" instead of "pattern" to designate extracted data
13834 - REORG: rename "pattern" files
13835 - MINOR: acl: add types to ACL patterns
13836 - MINOR: standard: add an IPv6 parsing function (str62net)
13837 - MEDIUM: acl: support IPv6 address matching
13838 - REORG: stream_interface: create a struct sock_ops to hold socket operations
13839 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
13840 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
13841 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
13842 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
13843 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
13844 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
13845 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
13846 - MEDIUM: http: improve error capture reports
13847 - MINOR: acl: add the cook_val() match to match a cookie against an integer
13848 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
13849 - MEDIUM: memory: add the ability to poison memory at run time
13850 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
13851 - MINOR: cfgparse: use a common errmsg pointer for all parsers
13852 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
13853 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
13854 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
13855
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200138562012/03/26 : 1.5-dev8
13857 - MINOR: patch for minor typo (ressources/resources)
13858 - MEDIUM: http: add support for sending the server's name in the outgoing request
13859 - DOC: mention that default checks are TCP connections
13860 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
13861 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
13862 - CLEANUP: Fix HCHK spelling errors
13863 - BUG/MINOR: fix typo in processing of http-send-name-header
13864 - MEDIUM: log: Use linked lists for loggers
13865 - BUILD: fix declaration inside a scope block
13866 - REORG: log: split send_log function
13867 - MINOR: config: Parse the string of the log-format config keyword
13868 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
13869 - MINOR: Date and time fonctions that don't use snprintf
13870 - MEDIUM: log: make http_sess_log use log_format
13871 - DOC: log-format documentation
13872 - MEDIUM: log: use log_format for mode tcplog
13873 - MEDIUM: log-format: backend source address %Bi %Bp
13874 - BUG/MINOR: log-format: fix %o flag
13875 - BUG/MEDIUM: bad length in log_format and __send_log
13876 - MINOR: logformat %st is signed
13877 - BUILD/MINOR: fix the source URL in the spec file
13878 - DOC: acl is http_first_req, not http_req_first
13879 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
13880 - MINOR: acl: add new matches for header/path/url length
13881 - BUILD: halog: make halog build on solaris
13882 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
13883 - MINOR: remove the client/server side distinction in SI addresses
13884 - MINOR: halog: add support for matching queued requests
13885 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
13886 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
13887 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
13888 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
13889 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
13890 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
13891 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
13892 - CLEANUP: rename possibly confusing struct field "tracked"
13893 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
13894 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
13895 - MEDIUM: buffers: add some new primitives and rework existing ones
13896 - BUG: buffers: don't return a negative value on buffer_total_space_res()
13897 - MINOR: buffers: make buffer_pointer() support negative pointers too
13898 - CLEANUP: kill buffer_replace() and use an inline instead
13899 - BUG: tcp: option nolinger does not work on backends
13900 - CLEANUP: ebtree: remove a few annoying signedness warnings
13901 - CLEANUP: ebtree: clarify licence and update to 6.0.6
13902 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
13903 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
13904 - BUG: ebtree: ebst_lookup() could return the wrong entry
13905 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
13906 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
13907 - MINOR: acl: add support for TLS server name matching using SNI
13908 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
13909 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
13910 - MINOR: pattern: export the global temporary pattern
13911 - CLEANUP: patterns: get rid of pattern_data_setstring()
13912 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
13913 - MINOR: acl: include pattern.h to make pattern migration more transparent
13914 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
13915 - MEDIUM: acl: use temp_pattern to store any integer-type information
13916 - MEDIUM: acl: use temp_pattern to store any address-type information
13917 - CLEANUP: acl: integer part of acl_test is not used anymore
13918 - MEDIUM: acl: use temp_pattern to store any string-type information
13919 - CLEANUP: acl: remove last data fields from the acl_test struct
13920 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
13921 - MEDIUM: patterns: the hdr() pattern is now of type string
13922 - DOC: add minimal documentation on how ACLs work internally
13923 - DOC: add a coding-style file
13924 - OPTIM: halog: keep a fast path for the lines-count only
13925 - CLEANUP: silence a warning when building on sparc
13926 - BUG: http: tighten the list of allowed characters in a URI
13927 - MEDIUM: http: block non-ASCII characters in URIs by default
13928 - DOC: add some documentation from RFC3986 about URI format
13929 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
13930 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
13931 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
13932 - MINOR: halog: add some help on the command line
13933 - BUILD: fix build error on FreeBSD
13934 - BUG: fix double free in peers config error path
13935 - MEDIUM: improve config check return codes
13936 - BUILD: make it possible to look for pcre in the default system paths
13937 - MINOR: config: emit a warning when 'default_backend' masks servers
13938 - MINOR: backend: rework the LC definition to support other connection-based algos
13939 - MEDIUM: backend: add the 'first' balancing algorithm
13940 - BUG: fix httplog trailing LF
13941 - MEDIUM: increase chunk-size limit to 2GB-1
13942 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
13943 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
13944 - BUG: checks: fix server maintenance exit sequence
13945 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
13946 - DOC: enumerate valid status codes for "observe layer7"
13947 - MINOR: buffer: switch a number of buffer args to const
13948 - CLEANUP: silence signedness warning in acl.c
13949 - BUG: stream_sock: si->release was not called upon shutw()
13950 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
13951 - BUG/CRITICAL: log: fix risk of crash in development snapshot
13952 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
13953 - MINOR: config: disable header captures in TCP mode and complain
13954
Willy Tarreau60612eb2011-09-10 23:43:11 +0200139552011/09/10 : 1.5-dev7
13956 - [BUG] fix binary stick-tables
13957 - [MINOR] http: *_dom matching header functions now also split on ":"
13958 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
13959 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
13960 - [MINOR] check: add redis check support
13961 - [DOC] small fixes to clearly distinguish between keyword and variables
13962 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
13963 - [DOC] Minor spelling fixes and grammatical enhancements
13964 - [CLEANUP] dumpstats: make symbols static where possible
13965 - [MINOR] Break out dumping table
13966 - [MINOR] Break out processing of clear table
13967 - [MINOR] Allow listing of stick table by key
13968 - [MINOR] Break out all stick table socat command parsing
13969 - [MINOR] More flexible clearing of stick table
13970 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
13971 - [MINOR] Allow showing and clearing by key of integer stick tables
13972 - [MINOR] Allow showing and clearing by key of string stick tables
13973 - [CLEANUP] Remove assigned but unused variables
13974 - [CLEANUP] peers.h: fix declarations
13975 - [CLEANUP] session.c: Make functions static where possible
13976 - [MINOR] Add active connection list to server
13977 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
13978 - [MINOR] Add down termination condition
13979 - [MINOR] Make appsess{,ion}_refresh static
13980 - [MINOR] Add rdp_cookie pattern fetch function
13981 - [CLEANUP] Remove unnecessary casts
13982 - [MINOR] Add non-stick server option
13983 - [MINOR] Consistently use error in tcp_parse_tcp_req()
13984 - [MINOR] Consistently free expr on error in cfg_parse_listen()
13985 - [MINOR] Free rdp_cookie_name on denint()
13986 - [MINOR] Free tcp rules on denint()
13987 - [MINOR] Free stick table pool on denint()
13988 - [MINOR] Free stick rules on denint()
13989 - [MEDIUM] Fix stick-table replication on soft-restart
13990 - [MEDIUM] Correct ipmask() logic
13991 - [MINOR] Correct type in table dump examples
13992 - [MINOR] Fix build error in stream_int_register_handler()
13993 - [MINOR] Use DPRINTF in assign_server()
13994 - [BUG] checks: http-check expect could fail a check on multi-packet responses
13995 - [DOC] fix minor typo in the "dispatch" doc
13996 - [BUG] proto_tcp: fix address binding on remote source
13997 - [MINOR] http: don't report the "haproxy" word on the monitoring response
13998 - [REORG] http: move HTTP error codes back to proto_http.h
13999 - [MINOR] http: make the "HTTP 200" status code configurable.
14000 - [MINOR] http: partially revert the chunking optimization for now
14001 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
14002 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
14003 - [MEDIUM] http: add support for "http-no-delay"
14004 - [OPTIM] http: optimize chunking again in non-interactive mode
14005 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
14006 - [OPTIM] stream_sock: don't use splice on too small payloads
14007 - [MINOR] config: make it possible to specify a cookie even without a server
14008 - [BUG] stats: support url-encoded forms
14009 - [MINOR] config: automatically compute a default fullconn value
14010 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
14011 - [DOC] add missing entry or stick store-response
14012 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
14013 - [BUG] halog: correctly handle truncated last line
14014 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
14015 - [MINOR] halog: add support for HTTP log matching (-H)
14016 - [MINOR] halog: gain back performance before SKIP_CHAR fix
14017 - [OPTIM] halog: cache some common fields positions
14018 - [OPTIM] halog: check once for correct line format and reuse the pointer
14019 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
14020 - [OPTIM] halog: remove support for tab delimiters in input data
14021 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
14022 - [MINOR] session: try to emit a 500 response on memory allocation errors
14023 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
14024 - [BUG] stream_sock: disable listener when system resources are exhausted
14025 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
14026 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
14027 - [MINOR] listeners: add listen_full() to mark a listener full
14028 - [MINOR] listeners: add support for queueing resource limited listeners
14029 - [MEDIUM] listeners: put listeners in queue upon resource shortage
14030 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
14031 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
14032 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
14033 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
14034 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
14035 - [MINOR] proxy: make session rate-limit more accurate
14036 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
14037 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
14038 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
14039 - [MINOR] task: new function task_schedule() to schedule a wake up
14040 - [MAJOR] proxy: finally get rid of maintain_proxies()
14041 - [BUG] proxy: stats frontend and peers were missing many initializers
14042 - [MEDIUM] listeners: add a global listener management task
14043 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
14044 - [DOC] fix typos, "#" is a sharp, not a dash
14045 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
14046 - [MEDIUM] checks: group health checks methods by values and save option bits
14047 - [MINOR] session-counters: add the ability to clear the counters
14048 - [BUG] check: http-check expect + regex would crash in defaults section
14049 - [MEDIUM] http: make x-forwarded-for addition conditional
14050 - [REORG] build: move syscall redefinition to specific places
14051 - [CLEANUP] update the year in the copyright banner
14052 - [BUG] possible crash in 'show table' on stats socket
14053 - [BUG] checks: use the correct destination port for sending checks
14054 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
14055 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
14056 - [DOC] fixed a few "sensible" -> "sensitive" errors
14057 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
14058 - [BUG] http: trailing white spaces must also be trimmed after headers
14059 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
14060 - [MINOR] http: take a capture of too large requests and responses
14061 - [MINOR] http: take a capture of truncated responses
14062 - [MINOR] http: take a capture of bad content-lengths.
14063 - [DOC] add a few old and uncommitted docs
14064 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
14065 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
14066 - [MINOR] halog: support backslash-escaped quotes
14067 - [CLEANUP] remove dirty left-over of a debugging message
14068 - [MEDIUM] stats: disable complex socket reservation for stats socket
14069 - [CLEANUP] remove a useless test in manage_global_listener_queue()
14070 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
14071 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
14072 - [MINOR] stats: report the current and max global connection rates
14073 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
14074 - [BUG] peers: don't pre-allocate 65000 connections to each peer
14075 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
14076 - [BUG] peers: the peer frontend must not emit any log
14077 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
14078 - [BUG] peers: don't keep a peers section which has a NULL frontend
14079 - [BUG] peers: ensure the peers are resumed if they were paused
14080 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
14081 - [MEDIUM] session: make session_shutdown() an independant function
14082 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
14083 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
14084 - [MEDIUM] stats: offer the possibility to kill sessions by server
14085 - [MINOR] halog: do not consider byte 0x8A as end of line
14086 - [MINOR] frontend: ensure debug message length is always initialized
14087 - [OPTIM] halog: make fgets parse more bytes by blocks
14088 - [OPTIM] halog: add assembly version of the field lookup code
14089 - [MEDIUM] poll: add a measurement of idle vs work time
14090 - [CLEANUP] startup: report only the basename in the usage message
14091 - [MINOR] startup: add an option to change to a new directory
14092 - [OPTIM] task: don't scan the run queue if we know it's empty
14093 - [BUILD] stats: stdint is not present on solaris
14094 - [DOC] update the README file to reflect new naming rules for patches
14095 - [MINOR] stats: report the number of requests intercepted by the frontend
14096 - [DOC] update ROADMAP file
14097
Willy Tarreau04df1122011-04-08 00:56:41 +0200140982011/04/08 : 1.5-dev6
14099 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
14100 - [BUG] TCP source tracking was broken with IPv6 changes
14101 - [BUG] stick-tables did not work when converting IPv6 to IPv4
14102 - [CRITICAL] fix risk of crash when dealing with space in response cookies
14103
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200141042011/03/29 : 1.5-dev5
14105 - [BUG] standard: is_addr return value for IPv4 was inverted
14106 - [MINOR] update comment about IPv6 support for server
14107 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
14108 - [DOC] update IPv6 support for bind
14109 - [DOC] document IPv6 support for server
14110 - [DOC] fix a minor typo
14111 - [MEDIUM] IPv6 support for syslog
14112 - [DOC] document IPv6 support for syslog
14113 - [MEDIUM] IPv6 support for stick-tables
14114 - [DOC] document IPv6 support for stick-tables
14115 - [DOC] update ROADMAP file
14116 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
14117 - [MINOR] frontend: add a make_proxy_line function
14118 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
14119 - [MEDIUM] server: add support for the "send-proxy" option
14120 - [DOC] update the spec on the proxy protocol
14121 - [BUILD] proto_tcp: fix build issue with CTTPROXY
14122 - [DOC] update ROADMAP file
14123 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
14124 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
14125 - [BUILD] add the USE_GETADDRINFO build option
14126 - [TESTS] provide a test case for various address formats
14127 - [BUG] session: conn_retries was not always initialized
14128 - [BUG] log: retrieve the target from the session, not the SI
14129 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
14130 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
14131 - [BUG] http: fix content-length handling on 32-bit platforms
14132 - [OPTIM] buffers: uninline buffer_forward()
14133 - [BUG] stream_sock: fix handling for server side PROXY protocol
14134 - [MINOR] acl: add support for table_cnt and table_avl matches
14135 - [DOC] update ROADMAP file
14136
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100141372011/03/13 : 1.5-dev4
14138 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
14139 - [MINOR] unix sockets : inherits the backlog size from the listener
14140 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
14141 - [DOC] fix a minor typo
14142 - [DOC] fix ignore-persist documentation
14143 - [MINOR] add warnings on features not compatible with multi-process mode
14144 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
14145 - [MINOR] stats: add support for several packets in stats admin
14146 - [BUG] stats: admin commands must check the proxy state
14147 - [BUG] stats: admin web interface must check the proxy state
14148 - [MINOR] http: add pattern extraction method to stick on query string parameter
14149 - [MEDIUM] add internal support for IPv6 server addresses
14150 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
14151 - [MINOR] log: add support for passing the forwarded hostname
14152 - [MINOR] log: ability to override the syslog tag
14153 - [MINOR] checks: add PostgreSQL health check
14154 - [DOC] update ROADMAP file
14155 - [BUILD] pattern: use 'int' instead of 'int32_t'
14156 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
14157 - [BUG] debug: report the correct poller list in verbose mode
14158 - [BUG] capture: do not capture a cookie if there is no memory left
14159 - [BUG] appsession: fix possible double free in case of out of memory
14160 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
14161 - [BUG] http: correctly update the header list when removing two consecutive headers
14162 - [BUILD] add the CPU=native and ARCH=32/64 build options
14163 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
14164 - [CLEANUP] hash: move the avalanche hash code globally available
14165 - [MEDIUM] hash: add support for an 'avalanche' hash-type
14166 - [DOC] update roadmap file
14167 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
14168 - [OPTIM] http: don't send each chunk in a separate packet
14169 - [DOC] fix minor typos reported recently in the peers section
14170 - [DOC] fix another typo in the doc
14171 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
14172 - [BUG] http chunking: don't report a parsing error on connection errors
14173 - [BUG] stream_interface: truncate buffers when sending error messages
14174 - [MINOR] http: support wrapping messages in error captures
14175 - [MINOR] http: capture incorrectly chunked message bodies
14176 - [MINOR] stats: add global event ID and count
14177 - [BUG] http: analyser optimizations broke pipelining
14178 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
14179 - [BUG] http: fix incorrect error reporting during data transfers
14180 - [CRITICAL] session: correctly leave turn-around and queue states on abort
14181 - [BUG] session: release slot before processing pending connections
14182 - [MINOR] tcp: add support for dynamic MSS setting
14183 - [BUG] stick-table: correctly terminate string keys during lookups
14184 - [BUG] acl: fix handling of empty lines in pattern files
14185 - [BUG] stick-table: use the private buffer when padding strings
14186 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
14187 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
14188 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
14189 - [REVERT] undo the stick-table string key lookup fixes
14190 - [MINOR] http: improve url_param pattern extraction to ignore empty values
14191 - [BUILD] frontend: shut a warning with TCP_MAXSEG
14192 - [BUG] http: update the header list's tail when removing the last header
14193 - [DOC] fix minor typo in the proxy protocol doc
14194 - [DOC] fix typos (http-request instead of http-check)
14195 - [BUG] http: use correct ACL pointer when evaluating authentication
14196 - [BUG] cfgparse: correctly count one socket per port in ranges
14197 - [BUG] startup: set the rlimits before binding ports, not after.
14198 - [BUG] acl: srv_id must return no match when the server is NULL
14199 - [MINOR] acl: add ability to check for internal response-only parameters
14200 - [MINOR] acl: srv_id is only valid in responses
14201 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
14202 - [BUG] acl: fd leak when reading patterns from file
14203 - [DOC] fix minor typo in "usesrc"
14204 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
14205 - [BUG] http: fix computation of message body length after forwarding has started
14206 - [BUG] http: balance url_param did not work with first parameters on POST
14207 - [TESTS] update the url_param regression test to test check_post too
14208 - [DOC] update ROADMAP
14209 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
14210 - [BUG] config: don't crash on empty pattern files.
14211 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
14212 - [REORG] stream_interface: move the st0, st1 and private members to the applet
14213 - [REORG] stream_interface: split the struct members in 3 parts
14214 - [REORG] session: move client and server address to the stream interface
14215 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
14216 - [MEDIUM] stream_interface: store the target pointer and type
14217 - [CLEANUP] stream_interface: remove the applet.handler pointer
14218 - [MEDIUM] log: take the logged server name from the stream interface
14219 - [CLEANUP] session: remove data_source from struct session
14220 - [CLEANUP] stats: make all dump functions only rely on the stream interface
14221 - [REORG] session: move the data_ctx struct to the stream interface's applet
14222 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
14223 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
14224 - [MINOR] session: add a pointer to the new target into the session
14225 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
14226 - [CLEANUP] stream_interface: use inline functions to manipulate targets
14227 - [MAJOR] session: remove the ->srv pointer from struct session
14228 - [MEDIUM] stats: split frontend and backend stats
14229 - [MEDIUM] http: always evaluate http-request rules before stats http-request
14230 - [REORG] http: move the http-request rules to proto_http
14231 - [BUG] http: stats were not incremented on http-request deny
14232 - [MINOR] checks: report it if checks fail due to socket creation error
14233
Willy Tarreau442e8342010-11-11 23:29:35 +0100142342010/11/11 : 1.5-dev3
14235 - [DOC] fix http-request documentation
14236 - [MEDIUM] enable/disable servers from the stats web interface
14237 - [MEDIUM] stats: add an admin level
14238 - [DOC] stats: document the "stats admin" statement
14239 - [MINOR] startup: print the proxy socket which caused an error
14240 - [CLEANUP] Remove unneeded chars allocation
14241 - [MINOR] config: detect options not supported due to compilation options
14242 - [MINOR] Add pattern's fetchs payload and payload_lv
14243 - [MINOR] frontend: improve accept-proxy header parsing
14244 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
14245 - [MEDIUM] Enhance message errors management on binds
14246 - [MINOR] Manage unix socket source field on logs
14247 - [MINOR] Manage unix socket source field on session dump on sock stats
14248 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
14249 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
14250 - [MINOR] Manage socket type unix for some logs
14251 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
14252 - [MINOR] Support listener's sockets unix on http logs.
14253 - [MEDIUM] Add supports of bind on unix sockets.
14254 - [BUG] stick table purge failure if size less than 255
14255 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
14256 - [MEDIUM] Implement tcp inspect response rules
14257 - [DOC] tcp-response content and inspect
14258 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
14259 - [DOC] acls rep_ssl_hello and req_ssl_hello
14260 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
14261 - [DOC] new type binary in stick-table
14262 - [DOC] stick store-response and new patterns payload and payload_lv
14263 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
14264 - [MEDIUM] Create updates tree on stick table to manage sync.
14265 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
14266 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
14267 - [MEDIUM] Manage soft stop on peers proxy
14268 - [DOC] add documentation for peers section
14269 - [MINOR] checks: add support for LDAPv3 health checks
14270 - [MINOR] add better support to "mysql-check"
14271 - [BUG] Restore info about available active/backup servers
14272 - [CONTRIB] Update haproxy.pl
14273 - [CONTRIB] Update Cacti Tempates
14274 - [CONTRIB] add templates for Cacti.
14275 - [BUG] http: don't consider commas as a header delimitor within quotes
14276 - [MINOR] support a global jobs counter
14277 - [DOC] add a summary about cookie incompatibilities between specs and browsers
14278 - [DOC] fix description of cookie "insert" and "indirect" modes
14279 - [MEDIUM] http: fix space handling in the request cookie parser
14280 - [MEDIUM] http: fix space handling in the response cookie parser
14281 - [DOC] fix typo in the queue() definition (backend, not frontend)
14282 - [BUG] deinit: unbind listeners before freeing them
14283 - [BUG] stream_interface: only call si->release when both dirs are closed
14284 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
14285 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
14286 - [MINOR] halog: add '-tc' to sort by termination codes
14287 - [MINOR] halog: skip non-traffic logs for -st and -tc
14288 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
14289 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
14290 - [DOC] bind option is "defer-accept", not "defer_accept"
14291 - [DOC] missing index entry for http-check send-state
14292 - [DOC] tcp-request inspect-delay is for backends too
14293 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
14294 - [BUG] stream_sock: try to flush any extra pending request data after a POST
14295 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
14296 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
14297 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
14298 - [MEDIUM] checks: add support for HTTP contents lookup
14299 - [TESTS] add test-check-expect to test various http-check methods
14300 - [MINOR] global: add "tune.chksize" to change the default check buffer size
14301 - [MINOR] cookie: add options "maxidle" and "maxlife"
14302 - [MEDIUM] cookie: support client cookies with some contents appended to their value
14303 - [MINOR] http: make some room in the transaction flags to extend cookies
14304 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
14305 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
14306 - [MINOR] add encode/decode function for 30-bit integers from/to base64
14307 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
14308 - [MEDIUM] cookie: set the date in the cookie if needed
14309 - [DOC] document the cookie maxidle and maxlife parameters
14310 - [BUG] checks: don't log backend down for all zero-weight servers
14311 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
14312 - [BUG] config: report correct keywords for "observe"
14313 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
14314 - [MINOR] acl: add the http_req_first match
14315 - [DOC] fix typos about bind-process syntax
14316 - [BUG] cookie: correctly unset default cookie parameters
14317 - [MINOR] cookie: add support for the "preserve" option
14318 - [BUG] ebtree: fix duplicate strings insertion
14319 - [CONTRIB] halog: report per-url counts, errors and times
14320 - [CONTRIB] halog: minor speed improvement in timer parser
14321 - [MINOR] buffers: add a new request analyser flag for PROXY mode
14322 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
14323 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
14324 - [MINOR] standard: change arg type from const char* to char*
14325 - [MINOR] frontend: add a new analyser to parse a proxied connection
14326 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
14327 - [DOC] add the proxy protocol's specifications
14328 - [DOC] document the 'accept-proxy' bind option
14329 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
14330 - [DOC] add references to unix socket handling
14331 - [MINOR] move MAXPATHLEN definition to compat.h
14332 - [MEDIUM] unix sockets: cleanup the error reporting path
14333 - [BUG] session: don't stop forwarding of data upon last packet
14334 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
14335 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
14336 - [BUG] accept: don't close twice upon error
14337 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
14338 - [OPTIM] stream_sock: don't clear FDs that are already cleared
14339 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
14340
Willy Tarreau37242fa2010-08-28 19:21:00 +0200143412010/08/28 : 1.5-dev2
14342 - [MINOR] startup: release unused structs after forking
14343 - [MINOR] startup: don't wait for nothing when no old pid remains
14344 - [CLEANUP] reference product branch 1.5
14345 - [MEDIUM] signals: add support for registering functions and tasks
14346 - [MEDIUM] signals: support redistribution of signal zero when stopping
14347 - [BUG] http: don't set auto_close if more data are expected
14348
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200143492010/08/25 : 1.5-dev1
14350 - [BUG] stats: session rate limit gets garbaged in the stats
14351 - [DOC] mention 'option http-server-close' effect in Tq section
14352 - [DOC] summarize and highlight persistent connections behaviour
14353 - [DOC] add configuration samples
14354 - [BUG] http: dispatch and http_proxy modes were broken for a long time
14355 - [BUG] http: the transaction must be initialized even in TCP mode
14356 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
14357 - [BUG] consistent hash: balance on all servers, not only 2 !
14358 - [CONTRIB] halog: report per-server status codes, errors and response times
14359 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
14360 - [BUG] client: always ensure to zero rep->analysers
14361 - [BUG] session: clear BF_READ_ATTACHED before next I/O
14362 - [BUG] http: automatically close response if req is aborted
14363 - [BUG] proxy: connection rate limiting was eating lots of CPU
14364 - [BUG] http: report correct flags in case of client aborts during body
14365 - [TESTS] refine non-regression tests and add 4 new tests
14366 - [BUG] debug: wrong pointer was used to report a status line
14367 - [BUG] debug: correctly report truncated messages
14368 - [DOC] document the "dispatch" keyword
14369 - [BUG] stick_table: fix possible memory leak in case of connection error
14370 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
14371 - [MINOR] accept: count the incoming connection earlier
14372 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
14373 - [CLEANUP] client: move some ACLs away to their respective locations
14374 - [CLEANUP] rename client -> frontend
14375 - [MEDIUM] separate protocol-level accept() from the frontend's
14376 - [MINOR] proxy: add a list to hold future layer 4 rules
14377 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
14378 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
14379 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
14380 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
14381 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
14382 - [CLEANUP] buffer->cto is not used anymore
14383 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
14384 - [MEDIUM] session: initialize server-side timeouts after connect()
14385 - [MEDIUM] backend: initialize the server stream_interface upon connect()
14386 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
14387 - [MEDIUM] session: move the conn_retries attribute to the stream interface
14388 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
14389 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
14390 - [MAJOR] frontend: reorder the session initialization upon accept
14391 - [MINOR] proxy: add an accept() callback for the application layer
14392 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
14393 - [MEDIUM] stats: rely on the standard session_accept() function
14394 - [MINOR] buffer: refine the flags that may wake an analyser up.
14395 - [MINOR] stream_sock: don't dereference a non-existing frontend
14396 - [MINOR] session: differenciate between accepted connections and received connections
14397 - [MEDIUM] frontend: count the incoming connection earlier
14398 - [MINOR] frontend: count denied TCP requests separately
14399 - [CLEANUP] stick_table: add/clarify some comments
14400 - [BUILD] memory: add a few missing parenthesis to the pool management macros
14401 - [MINOR] stick_table: add support for variable-sized data
14402 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
14403 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
14404 - [MEDIUM] stick_table: add room for extra data types
14405 - [MINOR] stick_table: add support for "conn_cum" data type.
14406 - [MEDIUM] stick_table: don't overwrite data when storing an entry
14407 - [MINOR] config: initialize stick tables after all the parsing
14408 - [MINOR] stick_table: provide functions to return stksess data from a type
14409 - [MEDIUM] stick_table: move the server ID to a generic data type
14410 - [MINOR] stick_table: enable it for frontends too
14411 - [MINOR] stick_table: export the stick_table_key
14412 - [MINOR] tcp: add per-source connection rate limiting
14413 - [MEDIUM] stick_table: separate storage and update of session entries
14414 - [MEDIUM] stick-tables: add a reference counter to each entry
14415 - [MINOR] session: add a pointer to the tracked counters for the source
14416 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
14417 - [BUG] config: report the correct proxy type in tcp-request errors
14418 - [MINOR] config: provide a function to quote args in a more friendly way
14419 - [BUG] stick_table: the fix for the memory leak caused a regression
14420 - [MEDIUM] backend: support servers on 0.0.0.0
14421 - [BUG] stick-table: correctly refresh expiration timers
14422 - [MEDIUM] stream-interface: add a ->release callback
14423 - [MINOR] proxy: add a "parent" member to the structure
14424 - [MEDIUM] session: make it possible to call an I/O handler on both SI
14425 - [MINOR] tools: add a fast div64_32 function
14426 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
14427 - [MINOR] errors: provide new status codes for config parsing functions
14428 - [BUG] http: denied requests must not be counted as denied resps in listeners
14429 - [MINOR] tools: add a get_std_op() function to parse operators
14430 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
14431 - [MAJOR] stream_sock: better wakeup conditions on read()
14432 - [BUG] session: analysers must be checked when SI state changes
14433 - [MINOR] http: reset analysers to listener's, not frontend's
14434 - [MEDIUM] session: support "tcp-request content" rules in backends
14435 - [BUILD] always match official tags when doing git-tar
14436 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
14437 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
14438 - [MINOR] tcp: src_count acl does not have a permanent result
14439 - [MAJOR] session: add track-counters to track counters related to the session
14440 - [MINOR] stick-table: provide a table lookup function
14441 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
14442 - [MEDIUM] session: move counter ACL fetches from proto_tcp
14443 - [MEDIUM] session: add concurrent connections counter
14444 - [MEDIUM] session: add data in and out volume counters
14445 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
14446 - [MEDIUM] session-counters: automatically update tracked connection count
14447 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
14448 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
14449 - [MEDIUM] session: add a counter on the cumulated number of sessions
14450 - [MINOR] config: support a comma-separated list of store data types in stick-table
14451 - [MEDIUM] stick-tables: add support for arguments to data_types
14452 - [MEDIUM] stick-tables: add stored data argument type checking
14453 - [MEDIUM] session counters: add conn_rate and sess_rate counters
14454 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
14455 - [MINOR] stktable: add a stktable_update_key() function
14456 - [MINOR] session-counters: add a general purpose counter (gpc0)
14457 - [MEDIUM] session-counters: add HTTP req/err tracking
14458 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
14459 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
14460 - [CLEANUP] stick-table: declare stktable_data_types as extern
14461 - [MEDIUM] stick-table: make use of generic types for stored data
14462 - [MINOR] stats: correctly report errors on "show table" and "clear table"
14463 - [MEDIUM] stats: add the ability to dump table entries matching criteria
14464 - [DOC] configuration: document all the new tracked counters
14465 - [DOC] stats: document "show table" and "clear table"
14466 - [MAJOR] session-counters: split FE and BE track counters
14467 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
14468 - [MEDIUM] session counters: automatically remove expired entries.
14469 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
14470 - [MEDIUM] session-counters: make it possible to count connections from frontend
14471 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
14472 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
14473 - [CLEANUP] stats: use stksess_kill() to remove table entries
14474 - [DOC] update the references to session counters and to tcp-request connection
14475 - [DOC] cleanup: split a few long lines
14476 - [MEDIUM] http: forward client's close when abortonclose is set
14477 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
14478 - [BUG] stats: global stats timeout may be specified before stats socket.
14479 - [BUG] conf: add tcp-request content rules to the correct list
14480
Willy Tarreau21475e32010-05-23 08:46:08 +0200144812010/05/23 : 1.5-dev0
14482 - exact copy of 1.4.6
14483
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200144842010/05/16 : 1.4.6
14485 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
14486 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
14487 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
14488 - [DOC] add a few precisions about the use of RDP cookies
14489
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200144902010/05/13 : 1.4.5
14491 - [DOC] report minimum kernel version for tproxy in the Makefile
14492 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
14493 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
14494 - [DOC] fix ignore-persist/force-persist documentation
14495 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
14496 - [DOC] doc/configuration.txt: fix typos
14497 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
14498 - [MINOR] fix possible crash in debug mode with invalid responses
14499 - [MINOR] halog: add support for statisticts on status codes
14500 - [OPTIM] halog: use a faster zero test in fgets()
14501 - [OPTIM] halog: minor speedup by using unlikely()
14502 - [OPTIM] halog: speed up fgets2-64 by about 10%
14503 - [DOC] refresh the README file and merge the CONTRIB file into it
14504 - [MINOR] acl: support loading values from files
14505 - [MEDIUM] ebtree: upgrade to version 6.0
14506 - [MINOR] acl trees: add flags and union members to store values in trees
14507 - [MEDIUM] acl: add ability to insert patterns in trees
14508 - [MEDIUM] acl: add tree-based lookups of exact strings
14509 - [MEDIUM] acl: add tree-based lookups of networks
14510 - [MINOR] acl: ignore empty lines and comments in pattern files
14511 - [MINOR] stick-tables: add support for "stick on hdr"
14512
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200145132010/04/07 : 1.4.4
14514 - [BUG] appsession should match the whole cookie name
14515 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
14516 - [MEDIUM] backend: move the transparent proxy address selection to backend
14517 - [MINOR] add very fast IP parsing functions
14518 - [MINOR] add new tproxy flags for dynamic source address binding
14519 - [MEDIUM] add ability to connect to a server from an IP found in a header
14520 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
14521 - [MINOR] http: make it possible to pretend keep-alive when doing close
14522 - [MINOR] config: report "default-server" instead of "(null)" in error messages
14523
Willy Tarreau75934a12010-03-30 09:50:08 +0200145242010/03/30 : 1.4.3
14525 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
14526 - [MEDIUM] session: better fix for connection to servers with closed input
14527 - [DOC] indicate in the doc how to bind to port ranges
14528 - [BUG] backend: L7 hashing must not be performed on incomplete requests
14529 - [TESTS] add a simple program to test connection resets
14530 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
14531 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
14532 - [MINOR] config: allow "slowstart 0s"
14533 - [BUILD] 'make tags' did not consider files ending in '.c'
14534 - [MINOR] checks: add the ability to disable a server in the config
14535
Willy Tarreauda618cb2010-03-17 23:41:57 +0100145362010/03/17 : 1.4.2
14537 - [CLEANUP] product branch update
14538 - [DOC] Some more documentation cleanups
14539 - [BUG] clf logs segfault when capturing a non existant header
14540 - [OPTIM] config: only allocate check buffer when checks are enabled
14541 - [MEDIUM] checks: support multi-packet health check responses
14542 - [CLEANUP] session: remove duplicate test
14543 - [BUG] http: don't wait for response data to leave buffer is client has left
14544 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
14545 - [MINOR] stats: don't send empty lines in "show errors"
14546 - [MINOR] stats: make the data dump function reusable for other purposes
14547 - [MINOR] stats socket: add show sess <id> to dump details about a session
14548 - [BUG] stats: connection reset counters must be plain ascii, not HTML
14549 - [BUG] url_param hash may return a down server
14550 - [MINOR] force null-termination of hostname
14551 - [MEDIUM] connect to servers even when the input has already been closed
14552 - [BUG] don't merge anonymous ACLs !
14553 - [BUG] config: fix endless loop when parsing "on-error"
14554 - [MINOR] http: don't mark a server as failed when it returns 501/505
14555 - [OPTIM] checks: try to detect the end of response without polling again
14556 - [BUG] checks: don't report an error when recv() returns an error after data
14557 - [BUG] checks: don't abort when second poll returns an error
14558 - [MINOR] checks: make shutdown() silently fail
14559 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
14560 - [BUG] init: unconditionally catch SIGPIPE
14561 - [BUG] checks: don't wait for a close to start parsing the response
14562
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100145632010/03/04 : 1.4.1
14564 - [BUG] Clear-cookie path issue
14565 - [DOC] fix typo on stickiness rules
14566 - [BUILD] fix BSD and OSX makefiles for missing files
14567 - [BUILD] includes order breaks OpenBSD build
14568 - [BUILD] fix some build warnings on Solaris with is* macros
14569 - [BUG] logs: don't report "last data" when we have just closed after an error
14570 - [BUG] logs: don't report "proxy request" when server closes early
14571 - [BUILD] fix platform-dependant build issues related to crypt()
14572 - [STATS] count transfer aborts caused by client and by server
14573 - [STATS] frontend requests were not accounted for failed requests
14574 - [MINOR] report total number of processed connections when stopping a proxy
14575 - [DOC] be more clear about the limitation to one single monitor-net entry
14576
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100145772010/02/26 : 1.4.0
14578 - [MINOR] stats: report maint state for tracking servers too
14579 - [DOC] fix summary to add pattern extraction
14580 - [DOC] Documentation cleanups
14581 - [BUG] cfgparse memory leak and missing free calls in deinit()
14582 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
14583 - [EXAMPLES] add auth.cfg
14584 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
14585 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
14586 - [BUILD] auth: don't use unnamed unions
14587 - [BUG] config: report unresolvable host names as errors
14588 - [BUILD] fix build breakage with DEBUG_FULL
14589 - [DOC] fix a typo about timeout check and clarify the explanation.
14590 - [MEDIUM] http: don't use trash to realign large buffers
14591 - [STATS] report HTTP requests (total and rate) in frontends
14592 - [STATS] separate frontend and backend HTTP stats
14593 - [MEDIUM] http: revert to use a swap buffer for realignment
14594 - [MINOR] stats: report the request rate in frontends as cell titles
14595 - [MINOR] stats: mark areas with an underline when tooltips are available
14596 - [DOC] reorder some entries to maintain the alphabetical order
14597 - [DOC] cleanup of the keyword matrix
14598
Willy Tarreaub05613d2010-02-02 10:18:28 +0100145992010/02/02 : 1.4-rc1
14600 - [MEDIUM] add a maintenance mode to servers
14601 - [MINOR] http-auth: last fix was wrong
14602 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
14603 - [MINOR] Base64 decode
14604 - [MINOR] generic auth support with groups and encrypted passwords
14605 - [MINOR] add ACL_TEST_F_NULL_MATCH
14606 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
14607 - [MINOR] acl: add http_auth and http_auth_group
14608 - [MAJOR] use the new auth framework for http stats
14609 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
14610 - [STATS] make it possible to change a CLI connection timeout
14611 - [BUG] patterns: copy-paste typo in type conversion arguments
14612 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
14613 - [MINOR] standard: str2mask: string to netmask converter
14614 - [MINOR] pattern: add support for argument parsers for converters
14615 - [MINOR] pattern: add the "ipmask()" converting function
14616 - [MINOR] config: off-by-one in "stick-table" after list of converters
14617 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
14618 - [BUG] restore accidentely removed line in last patch !
14619 - [MINOR] checks: make the HTTP check code add the CRLF itself
14620 - [MINOR] checks: add the server's status in the checks
14621 - [BUILD] halog: make without arch-specific optimizations
14622 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
14623 - [MINOR] http: disable keep-alive when process is going down
14624 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
14625 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
14626 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
14627 - [MINOR] prepare req_*/rsp_* to receive a condition
14628 - [CLEANUP] config: specify correct const char types to warnif_* functions
14629 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
14630 - [MEDIUM] http: make the request filter loop check for optional conditions
14631 - [MEDIUM] http: add support for conditional request filter execution
14632 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
14633 - [MEDIUM] http: add support for conditional request header addition
14634 - [MEDIUM] http: add support for conditional response header rewriting
14635 - [DOC] add some missing ACLs about response header matching
14636 - [MEDIUM] http: add support for proxy authentication
14637 - [MINOR] http-auth: make the 'unless' keyword work as expected
14638 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
14639 - [MEDIUM] add support for anonymous ACLs
14640 - [MEDIUM] http: switch to tunnel mode after status 101 responses
14641 - [MEDIUM] http: stricter processing of the CONNECT method
14642 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
14643 - [MINOR] config: fix too large ssl-hello-check message.
14644 - [BUG] fix error response in case of server error
14645
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100146462010/01/25 : 1.4-dev8
14647 - [CLEANUP] Keep in sync "defaults" support between documentation and code
14648 - [MEDIUM] http: add support for Proxy-Connection header
14649 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
14650 - [MINOR] http: remove a copy-paste typo in transaction cleaning
14651 - [BUG] http: trim any excess buffer data when recycling a connection
14652
Willy Tarreau6939b552010-01-25 01:54:37 +0100146532010/01/25 : 1.4-dev7
14654 - [BUG] appsession: possible memory leak in case of out of memory condition
14655 - [MINOR] config: don't accept 'appsession' in defaults section
14656 - [MINOR] Add function to parse a size in configuration
14657 - [MEDIUM] Add stick table (persistence) management functions and types
14658 - [MEDIUM] Add pattern fetch management types and functions
14659 - [MEDIUM] Add src dst and dport pattern fetches.
14660 - [MEDIUM] Add stick table configuration and init.
14661 - [MEDIUM] Add stick and store rules analysers.
14662 - [MINOR] add option "mysql-check" to use MySQL health checks
14663 - [BUG] health checks: fix requeued message
14664 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
14665 - [BUG] checks: fix newline termination
14666 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
14667 - [BUG] appsession's sessid must be reset at end of transaction
14668 - [BUILD] appsession did not build anymore under gcc-2.95
14669 - [BUG] server redirection used an uninitialized string.
14670 - [MEDIUM] http: fix handling of message pointers
14671 - [MINOR] http: fix double slash prefix with server redirect
14672 - [MINOR] http redirect: add the ability to append a '/' to the URL
14673 - [BUG] stream_interface: fix retnclose and remove cond_close
14674 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
14675 - [MINOR] http: move appsession 'sessid' from session to http_txn
14676 - [OPTIM] reorder http_txn to optimize cache lines placement
14677 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
14678 - [MINOR] http: add a separate "http-keep-alive" timeout
14679 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
14680 - [DOC] fix various too large lines
14681 - [DOC] remove several trailing spaces
14682 - [DOC] add the doc about stickiness
14683 - [BUILD] remove a warning in standard.h on AIX
14684 - [BUG] checks: chars are unsigned on AIX, check was always true
14685 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
14686 - [BUG] check: we must not check for error before reading a response
14687 - [BUG] buffers: remove remains of wrong obsolete length check
14688 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
14689 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
14690 - [MEDIUM] http: don't switch to tunnel mode upon close
14691 - [DOC] add documentation about connection header processing
14692 - [MINOR] http: add http_remove_header2() to remove a header value.
14693 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
14694 - [MAJOR] http: rework request Connection header handling
14695 - [MAJOR] http: rework response Connection header handling
14696 - [MINOR] add the ability to force kernel socket buffer size.
14697 - [BUG] http_server_error() must not purge a previous pending response
14698 - [OPTIM] http: don't delay response if next request is incomplete
14699 - [MINOR] add the "force-persist" statement to force persistence on down servers
14700 - [MINOR] http: logs must report persistent connections to down servers
14701 - [BUG] buffer_replace2 must never change the ->w entry
14702
Willy Tarreau11f8f542010-01-08 07:49:44 +0100147032010/01/08 : 1.4-dev6
14704 - [BUILD] warning in stream_interface.h
14705 - [BUILD] warning ultoa_r returns char *
14706 - [MINOR] hana: only report stats if it is enabled
14707 - [MINOR] stats: add "a link" & "a href" for sockets
14708 - [MINOR]: stats: add show-legends to report additional informations
14709 - [MEDIUM] default-server support
14710 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
14711 - [MINOR] stats: add href to tracked server
14712 - [BUG] stats: show UP/DOWN status also in tracking servers
14713 - [DOC] Restore ability to search a keyword at the beginning of a line
14714 - [BUG] stats: cookie should be reported under backend not under proxy
14715 - [BUG] cfgparser/stats: fix error message
14716 - [BUG] http: disable auto-closing during chunk analysis
14717 - [BUG] http: fix hopefully last closing issue on data forwarding
14718 - [DEBUG] add an http_silent_debug function to debug HTTP states
14719 - [MAJOR] http: fix again the forward analysers
14720 - [BUG] http_process_res_common() must not skip the forward analyser
14721 - [BUG] http: some possible missed close remain in the forward chain
14722 - [BUG] http: redirect needed to be updated after recent changes
14723 - [BUG] http: don't set no-linger on response in case of forced close
14724 - [MEDIUM] http: restore the original behaviour of option httpclose
14725 - [TESTS] add a file to test various connection modes
14726 - [BUG] http: check options before the connection header
14727 - [MAJOR] session: fix the order by which the analysers are run
14728 - [MEDIUM] session: also consider request analysers added during response
14729 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
14730 - [BUG] http: memory leak with captures when using keep-alive
14731 - [BUG] http: fix for capture memory leak was incorrect
14732 - [MINOR] http redirect: use proper call to return last response
14733 - [MEDIUM] http: wait for some flush of the response buffer before a new request
14734 - [MEDIUM] session: limit the number of analyser loops
14735
Willy Tarreau1f445892010-01-03 23:23:36 +0100147362010/01/03 : 1.4-dev5
14737 - [MINOR] server tracking: don't care about the tracked server's mode
14738 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
14739 - [MEDIUM] appsession: add the "request-learn" option
14740 - [BUG] Configuration parser bug when escaping characters
14741 - [MINOR] CSS & HTML fun
14742 - [MINOR] Collect & provide http response codes received from servers
14743 - [BUG] Fix silly typo: hspr_other -> hrsp_other
14744 - [MINOR] Add "a name" to stats page
14745 - [MINOR] add additional "a href"s to stats page
14746 - [MINOR] Collect & provide http response codes for frontends, fix backends
14747 - [DOC] some small spell fixes and unifications
14748 - [MEDIUM] Decrease server health based on http responses / events, version 3
14749 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
14750 - [BUG] config: fix erroneous check on cookie domain names, again
14751 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
14752 - [DOC] trivial fix for man page
14753 - [MINOR] config: report all supported options for the "bind" keyword
14754 - [MINOR] tcp: add support for the defer_accept bind option
14755 - [MINOR] unix socket: report the socket path in case of bind error
14756 - [CONTRIB] halog: support searching by response time
14757 - [DOC] add a reminder about obsolete documents
14758 - [DOC] point to 1.4 doc, not 1.3
14759 - [DOC] option tcp-smart-connect was missing from index
14760 - [MINOR] http: detect connection: close earlier
14761 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
14762 - [OPTIM] move some rarely used fields out of fdtab
14763 - [MEDIUM] fd: merge fd_list into fdtab
14764 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
14765 - [MINOR] http: add new transaction flags for keep-alive and content-length
14766 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
14767 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
14768 - [MINOR] http request: simplify the test of no-data
14769 - [MEDIUM] http request: simplify POST length detection
14770 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
14771 - [MAJOR] http: create the analyser which waits for a response
14772 - [MINOR] http: pre-set the persistent flags in the transaction
14773 - [MEDIUM] http response: check body length and set transaction flags
14774 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
14775 - [MINOR] http: remove the last call to stream_int_return
14776 - [IMPORT] import ebtree v5.0 into directory ebtree/
14777 - [MEDIUM] build: switch ebtree users to use new ebtree version
14778 - [CLEANUP] ebtree: remove old unused files
14779 - [BUG] definitely fix regparm issues between haproxy core and ebtree
14780 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
14781 - [BUILD] missing #ifndef in ebmbtree.h
14782 - [BUILD] missing #ifndef in ebsttree.h
14783 - [MINOR] tools: add hex2i() function to convert hex char to int
14784 - [MINOR] http: create new MSG_BODY sub-states
14785 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
14786 - [DOC] option is "defer-accept", not "defer_accept"
14787 - [MINOR] http: keep pointer to beginning of data
14788 - [BUG] x-original-to: name was not set in default instance
14789 - [MINOR] http: detect tunnel mode and set it in the session
14790 - [BUG] config: fix error message when config file is not found
14791 - [BUG] config: fix wrong handling of too large argument count
14792 - [BUG] config: disable 'option httplog' on TCP proxies
14793 - [BUG] config: fix erroneous check on cookie domain names
14794 - [BUG] config: cookie domain was ignored in defaults sections
14795 - [MINOR] config: support passing multiple "domain" statements to cookies
14796 - [MINOR] ebtree: add functions to lookup non-null terminated strings
14797 - [MINOR] config: don't report error on all subsequent files on failure
14798 - [BUG] second fix for the printf format warning
14799 - [BUG] check_post: limit analysis to the buffer length
14800 - [MEDIUM] http: process request body in a specific analyser
14801 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
14802 - [MAJOR] http: completely process the "connection" header
14803 - [MINOR] http: only consider chunk encoding with HTTP/1.1
14804 - [MAJOR] buffers: automatically compute the maximum buffer length
14805 - [MINOR] http: move the http transaction init/cleanup code to proto_http
14806 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
14807 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
14808 - [MEDIUM] http: rework chunk-size parser
14809 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
14810 - [MINOR] buffers: add buffer_ignore() to skip some bytes
14811 - [BUG] http: offsets are relative to the buffer, not to ->som
14812 - [MEDIUM] http: automatically re-aling request buffer
14813 - [BUG] http: body parsing must consider the start of message
14814 - [MINOR] new function stream_int_cond_close()
14815 - [MAJOR] http: implement body parser
14816 - [BUG] http: typos on several unlikely() around header insertion
14817 - [BUG] stream_sock: wrong max computation on recv
14818 - [MEDIUM] http: rework the buffer alignment logic
14819 - [BUG] buffers: wrong size calculation for displaced data
14820 - [MINOR] stream_sock: prepare for closing when all pending data are sent
14821 - [MEDIUM] http: add two more states for the closing period
14822 - [MEDIUM] http: properly handle "option forceclose"
14823 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
14824 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
14825 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
14826 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
14827 - [MINOR] config: option forceclose is valid in frontends too
14828 - [BUILD] halog: insufficient include path in makefile
14829 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
14830 - [MEDIUM] http: make the parsers able to wait for a buffer flush
14831 - [MAJOR] http: add support for option http-server-close
14832 - [BUG] http: ensure we abort data transfer on write error
14833 - [BUG] last fix was overzealous and disabled server-close
14834 - [BUG] http: fix erroneous trailers size computation
14835 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
14836 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
14837 - [BUG] http: redirects were broken by chunk changes
14838 - [BUG] http: the request URI pointer is relative to the buffer
14839 - [OPTIM] http: don't immediately enable reading on request
14840 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
14841 - [BUG] http: take care of errors, timeouts and aborts during the data phase
14842 - [MINOR] http: don't wait for sending requests to the server
14843 - [MINOR] http: make the conditional redirect support keep-alive
14844 - [BUG] http: fix cookie parser to support spaces and commas in values
14845 - [MINOR] config: some options were missing for "redirect"
14846 - [MINOR] redirect: add support for unconditional rules
14847 - [MINOR] config: centralize proxy struct initialization
14848 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
14849 - [MEDIUM] config: remove the limitation of 10 config files
14850 - [CLEANUP] http: remove a remaining impossible condition
14851 - [OPTIM] http: optimize a bit the construct of the forward loops
14852
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200148532009/10/12 : 1.4-dev4
14854 - [DOC] add missing rate_lim and rate_max
14855 - [MAJOR] struct chunk rework
14856 - [MEDIUM] Health check reporting code rework + health logging, v3
14857 - [BUG] check if rise/fall has an argument and it is > 0
14858 - [MINOR] health checks logging unification
14859 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
14860 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
14861 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
14862 - [MINOR] Introduce include/types/counters.h
14863 - [CLEANUP] Move counters to dedicated structures
14864 - [MINOR] Add "clear counters" to clear statistics counters
14865 - [MEDIUM] Collect & provide separate statistics for sockets, v2
14866 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
14867 - [MINOR] acl: don't report valid acls as potential mistakes
14868 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
14869 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
14870 - [MINOR] Capture & display more data from health checks, v2
14871 - [BUG] task.c: don't assing last_timer to node-less entries
14872 - [BUG] http stats: large outputs sometimes got some parts chopped off
14873 - [MINOR] backend: export some functions to recount servers
14874 - [MINOR] backend: uninline some LB functions
14875 - [MINOR] include time.h from freq_ctr.h as is uses "now".
14876 - [CLEANUP] backend: move LB algos to individual files
14877 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
14878 - [CLEANUP] proxy: move last lb-specific bits to their respective files
14879 - [MINOR] backend: separate declarations of LB algos from their lookup method
14880 - [MINOR] backend: reorganize the LB algorithm selection
14881 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
14882 - [MINOR] report list of supported pollers with -vv
14883 - [DOC] log-health-checks is an option, not a directive
14884 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
14885 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
14886 - [MINOR] stats: strip CR and LF from the input command line
14887 - [BUG] don't refresh timeouts late after detected activity
14888 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
14889 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
14890 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
14891 - [MEDIUM] stats: don't use s->ana_state anymore
14892 - [MINOR] remove now obsolete ana_state from the session struct
14893 - [MEDIUM] stats: make HTTP stats use an I/O handler
14894 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
14895 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
14896 - [MINOR] config: reference file and line with any listener/proxy/server declaration
14897 - [MINOR] config: report places of duplicate names or IDs
14898 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
14899 - [MINOR] tools: add a new get_next_id() function
14900 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
14901 - [OPTIM] counters: move some max numbers to the counters struct
14902 - [BUG] counters: fix segfault on missing counters for a listener
14903 - [MEDIUM] backend: implement consistent hashing variation
14904 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
14905 - [MINOR] stats: use 'clear counters all' to clear all values
14906 - [MEDIUM] add access restrictions to the stats socket
14907 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
14908 - [MINOR] proxy: provide function to retrieve backend/server pointers
14909 - [MINOR] add the "initial weight" to the server struct.
14910 - [MEDIUM] stats: add the "get weight" command to report a server's weight
14911 - [MEDIUM] stats: add the "set weight" command
14912 - [BUILD] add a 'make tags' target
14913 - [MINOR] stats: add support for numeric IDs in set weight/get weight
14914 - [MINOR] stats: use a dedicated state to output static data
14915 - [OPTIM] stats: check free space before trying to print
14916
Willy Tarreau9f389e02009-09-24 00:12:50 +0200149172009/09/24 : 1.4-dev3
14918 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
14919 - [MEDIUM] Collect & show information about last health check, v3
14920 - [MINOR] export the hostname variable so that all the code can access it
14921 - [MINOR] stats: add a new node-name setting
14922 - [MEDIUM] remove old experimental tcpsplice option
14923 - [BUILD] fix build for systems without SOL_TCP
14924 - [MEDIUM] move connection establishment from backend to the SI.
14925 - [MEDIUM] make the global stats socket part of a frontend
14926 - [MEDIUM] session: account per-listener connections
14927 - [MINOR] session: switch to established state if no connect function
14928 - [MEDIUM] make the unix stats sockets use the generic session handler
14929 - [CLEANUP] unix: remove uxst_process_session()
14930 - [CLEANUP] move remaining stats sockets code to dumpstats
14931 - [MINOR] move the initial task's nice value to the listener
14932 - [MINOR] cleanup set_session_backend by using pre-computed analysers
14933 - [MINOR] set s->srv_error according to the analysers
14934 - [MEDIUM] set rep->analysers from fe and be analysers
14935 - [MEDIUM] replace BUFSIZE with buf->size in computations
14936 - [MEDIUM] make it possible to change the buffer size in the configuration
14937 - [MEDIUM] report error on buffer writes larger than buffer size
14938 - [MEDIUM] stream_interface: add and use ->update function to resync
14939 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
14940 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
14941 - [BUG] tarpit did not work anymore
14942 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
14943 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
14944 - [MINOR] buffers: provide more functions to handle buffer data
14945 - [MEDIUM] buffers: provide new buffer_feed*() function
14946 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
14947 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
14948 - [BUG] buffer_forward() would not correctly consider data already scheduled
14949 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
14950 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
14951 - [MAJOR] http: add support for HTTP 1xx informational responses
14952 - [MINOR] buffers: inline buffer_si_putchar()
14953 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
14954 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
14955 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
14956 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
14957 - [MEDIUM] add support for infinite forwarding
14958 - [BUILD] stream_interface: fix conflicting declaration
14959 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
14960 - [BUG] variable buffer size ignored at initialization time
14961 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
14962 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
14963 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
14964 - [MINOR] stream_interface: add iohandler callback
14965 - [MINOR] stream_interface: add functions to support running as internal/external tasks
14966 - [MEDIUM] session: call iohandler for embedded tasks (applets)
14967 - [MINOR] add a ->private member to the stream_interface
14968 - [MEDIUM] stats: prepare the connection for closing before dumping
14969 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
14970
Willy Tarreau68dcd252009-08-09 22:57:09 +0200149712009/08/09 : 1.4-dev2
14972 - [BUG] task: fix possible crash when some timeouts are not configured
14973 - [BUG] log: option tcplog would log to global if no logger was defined
14974
Willy Tarreaub03d2982009-07-29 22:38:32 +0200149752009/07/29 : 1.4-dev1
14976 - [MINOR] acl: add support for matching of RDP cookies
14977 - [MEDIUM] add support for RDP cookie load-balancing
14978 - [MEDIUM] add support for RDP cookie persistence
14979 - [MINOR] add a new CLF log format
14980 - [MINOR] startup: don't imply -q with -D
14981 - [BUG] ensure that we correctly re-start old process in case of error
14982 - [MEDIUM] add support for binding to source port ranges during connect
14983 - [MINOR] config: track "no option"/"option" changes
14984 - [MINOR] config: support resetting options do default values
14985 - [MEDIUM] implement option tcp-smart-accept at the frontend
14986 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
14987 - [MEDIUM] implement tcp-smart-connect option at the backend
14988 - [MEDIUM] add support for TCP MSS adjustment for listeners
14989 - [MEDIUM] support setting a server weight to zero
14990 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
14991 - [MAJOR] session: don't clear buffer status flags anymore
14992 - [MAJOR] session: only check for timeouts when they have just occurred.
14993 - [MAJOR] session: simplify buffer error handling
14994 - [MEDIUM] config: split parser and checker in two functions
14995 - [MEDIUM] config: support loading multiple configuration files
14996 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
14997 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
14998 - [MEDIUM] splice: set the capability on each stream_interface
14999 - [BUG] http: redirect rules were processed too early
15000 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
15001 - [MEDIUM] http: split request waiter from request processor
15002 - [MEDIUM] session: tell analysers what bit they were called for
15003 - [MAJOR] http: complete splitting of the remaining stages
15004 - [MINOR] report in the proxies the requirements for ACLs
15005 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
15006 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
15007 - [MINOR] prepare callers of session_set_backend to handle errors
15008 - [BUG] default ACLs did not properly set the ->requires flag
15009 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
15010 - [MINOR] ensure we can jump from swiching rules to http without data
15011 - [MINOR] http: take http request timeout from the backend
15012 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
15013 - [BUILD] report commit date and not author's date as build date
15014 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
15015 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
15016 - [BUG] stream_sock: don't stop reading when the poller reports an error
15017 - [BUG] config: tcp-request content only accepts "if" or "unless"
15018 - [BUG] task: fix possible timer drift after update
15019 - [MINOR] apply tcp-smart-connect option for the checks too
15020 - [MINOR] stats: better displaying in MSIE
15021 - [MINOR] config: improve error reporting in global section
15022 - [MINOR] config: improve error reporting in listen sections
15023 - [MINOR] config: the "capture" keyword is not allowed in backends
15024 - [MINOR] config: improve error reporting when checking configuration
15025 - [BUILD] fix a minor build warning on AIX
15026 - [BUILD] use "git cmd" instead of "git-cmd"
15027 - [CLEANUP] report 2009 not 2008 in the copyright banner.
15028 - [MINOR] print usage on the stats sockets upon invalid commands
15029 - [MINOR] acl: detect and report potential mistakes in ACLs
15030 - [BUILD] fix incorrect printf arg count with tcp_splice
15031 - [BUG] fix random pauses on last segment of a series
15032 - [BUILD] add support for build under Cygwin
15033
Willy Tarreau79158882009-06-09 11:59:08 +0200150342009/06/09 : 1.4-dev0
15035 - exact copy of 1.3.18
15036
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200150372009/05/10 : 1.3.18
15038 - [MEDIUM] add support for "balance hdr(name)"
15039 - [CLEANUP] give a little bit more information in error message
15040 - [MINOR] add X-Original-To: header
15041 - [BUG] x-original-to: fix missing initialization to default value
15042 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
15043 - [MINOR] improve reporting of misplaced acl/reqxxx rules
15044 - [MEDIUM] http: add options to ignore invalid header names
15045 - [MEDIUM] http: capture invalid requests/responses even if accepted
15046 - [BUILD] add format(printf) to printf-like functions
15047 - [MINOR] fix several printf formats and missing arguments
15048 - [BUG] stats: total and lbtot are unsigned
15049 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
15050 - [CLEANUP] remove unused make option from haproxy.spec
15051 - [BUILD] make it possible to pass alternative arch at build time
15052 - [MINOR] switch all stat counters to 64-bit
15053 - [MEDIUM] ensure we don't recursively call pool_gc2()
15054 - [CRITICAL] uninitialized response field can sometimes cause crashes
15055 - [BUG] fix wrong pointer arithmetics in HTTP message captures
15056 - [MINOR] rhel init script : support the reload operation
15057 - [MINOR] add basic signal handling functions
15058 - [BUILD] add signal.o to all makefiles
15059 - [MEDIUM] call signal_process_queue from run_poll_loop
15060 - [MEDIUM] pollers: don't wait if a signal is pending
15061 - [MEDIUM] convert all signals to asynchronous signals
15062 - [BUG] O(1) pollers should check their FD before closing it
15063 - [MINOR] don't close stdio fds twice
15064 - [MINOR] add options dontlog-normal and log-separate-errors
15065 - [DOC] minor fixes and rearrangements
15066 - [BUG] fix parser crash on unconditional tcp content rules
15067 - [DOC] rearrange the configuration manual and add a summary
15068 - [MINOR] standard: provide a new 'my_strndup' function
15069 - [MINOR] implement per-logger log level limitation
15070 - [MINOR] compute the max of sessions/s on fe/be/srv
15071 - [MINOR] stats: report max sessions/s and limit in CSV export
15072 - [MINOR] stats: report max sessions/s and limit in HTML stats
15073 - [MINOR] stats/html: use the arial font before helvetica
15074
Willy Tarreauf459b422009-03-29 15:26:57 +0200150752009/03/29 : 1.3.17
15076 - Update specfile to build for v2.6 kernel.
15077 - [BUG] reset the stream_interface connect timeout upon connect or error
15078 - [BUG] reject unix accepts when connection limit is reached
15079 - [MINOR] show sess: report number of calls to each task
15080 - [BUG] don't call epoll_ctl() on closed sockets
15081 - [BUG] stream_sock: disable I/O on fds reporting an error
15082 - [MINOR] sepoll: don't count two events on the same FD.
15083 - [MINOR] show sess: report a lot more information about sessions
15084 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
15085 - [BUG] don't set an expiration date directly from now_ms
15086 - [MINOR] implement ulltoh() to write HTML-formatted numbers
15087 - [MINOR] stats/html: group digits by 3 to clarify numbers
15088 - [BUILD] remove haproxy-small.spec
15089 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
15090
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100150912009/03/22 : 1.3.16
15092 - [BUILD] Fixed Makefile for linking pcre
15093 - [CONTRIB] selinux policy for haproxy
15094 - [MINOR] show errors: encode backslash as well as non-ascii characters
15095 - [MINOR] cfgparse: some cleanups in the consistency checks
15096 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
15097 - [MINOR] tcp-inspect: permit the use of no-delay inspection
15098 - [MEDIUM] reverse internal proxy declaration order to match configuration
15099 - [CLEANUP] config: catch and report some possibly wrong rule ordering
15100 - [BUG] connect timeout is in the stream interface, not the buffer
15101 - [BUG] session: errors were not reported in termination flags in TCP mode
15102 - [MINOR] tcp_request: let the caller take care of errors and timeouts
15103 - [CLEANUP] http: remove some commented out obsolete code in process_response
15104 - [MINOR] update ebtree to version 4.1
15105 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
15106 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
15107 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
15108 - [MINOR] sched: permit a task to stay up between calls
15109 - [MINOR] task: keep a task count and clean up task creators
15110 - [MINOR] stats: report number of tasks (active and running)
15111 - [BUG] server check intervals must not be null
15112 - [OPTIM] stream_sock: don't retry to read after a large read
15113 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
15114 - [MEDIUM] session: don't resync FSMs on non-interesting changes
15115 - [BUG] check for global.maxconn before doing accept()
15116 - [OPTIM] sepoll: do not re-check whole list upon accepts
15117
Willy Tarreau8185ced2009-03-09 22:45:53 +0100151182009/03/09 : 1.3.16-rc2
15119 - [BUG] stream_sock: write timeout must be updated when forwarding !
15120
Willy Tarreauff63b432009-03-09 01:03:42 +0100151212009/03/09 : 1.3.16-rc1
15122 - appsessions: cleanup DEBUG_HASH and initialize request_counter
15123 - [MINOR] acl: add new keyword "connslots"
15124 - [MINOR] cfgparse: fix off-by 2 in error message size
15125 - [BUILD] fix build with gcc 4.3
15126 - [BUILD] fix MANDIR default location to match documentation
15127 - [TESTS] add a debug patch to help trigger the stats bug
15128 - [BUG] Flush buffers also where there are exactly 0 bytes left
15129 - [MINOR] Allow to specify a domain for a cookie
15130 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
15131 - [MEDIUM] Fix memory freeing at exit
15132 - [MEDIUM] Fix memory freeing at exit, part 2
15133 - [BUG] Fix listen & more of 2 couples <ip>:<port>
15134 - [DOC] remove buggy comment for use_backend
15135 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
15136 - [MEDIUM] add support for URI hash depth and length limits
15137 - [MINOR] permit renaming of x-forwarded-for header
15138 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
15139 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
15140 - [MEDIUM] upgrade to ebtree v4.0
15141 - [DOC] update the README file with new build options
15142 - [MEDIUM] reduce risk of event starvation in ev_sepoll
15143 - [MEDIUM] detect streaming buffers and tag them as such
15144 - [MEDIUM] add support for conditional HTTP redirection
15145 - [BUILD] make install should depend on haproxy not "all"
15146 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
15147 - [BUG] event pollers must not wait if a task exists in the run queue
15148 - [BUG] queue management: wake oldest request in queues
15149 - [BUG] log: reported queue position was offed-by-one
15150 - [BUG] fix the dequeuing logic to ensure that all requests get served
15151 - [DOC] documentation for the "retries" parameter was missing.
15152 - [MEDIUM] implement a monotonic internal clock
15153 - [MEDIUM] further improve monotonic clock by check forward jumps
15154 - [OPTIM] add branch prediction hints in list manipulations
15155 - [MAJOR] replace ultree with ebtree in wait-queues
15156 - [BUG] we could segfault during exit while freeing uri_auths
15157 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
15158 - [MINOR] introduce now_ms, the current date in milliseconds
15159 - [BUG] disable buffer read timeout when reading stats
15160 - [MEDIUM] rework the wait queue mechanism
15161 - [BUILD] change declaration of base64tab to fix build with Intel C++
15162 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
15163 - [MAJOR] use an ebtree instead of a list for the run queue
15164 - [MEDIUM] introduce task->nice and boot access to statistics
15165 - [OPTIM] task_queue: assume most consecutive timers are equal
15166 - [BUILD] silent a warning in unlikely() with gcc 4.x
15167 - [MAJOR] convert all expiration timers from timeval to ticks
15168 - [BUG] use_backend would not correctly consider "unless"
15169 - [TESTS] added test-acl.cfg to test some ACL combinations
15170 - [MEDIUM] add support for configuration keyword registration
15171 - [MEDIUM] modularize the global "stats" keyword configuration parser
15172 - [MINOR] cfgparse: add support for warnings in external functions
15173 - [MEDIUM] modularize the "timeout" keyword configuration parser
15174 - [MAJOR] implement tcp request content inspection
15175 - [MINOR] acl: add a new parsing function: parse_dotted_ver
15176 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
15177 - [CLEANUP] remove unused include/types/client.h
15178 - [CLEANUP] remove many #include <types/xxx> from C files
15179 - [CLEANUP] remove dependency on obsolete INTBITS macro
15180 - [DOC] document the new "tcp-request" keyword and associated ACLs
15181 - [MINOR] acl: add REQ_CONTENT to the list of default acls
15182 - [MEDIUM] acl: permit fetch() functions to set the result themselves
15183 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
15184 - [MINOR] acl: add the "wait_end" acl verb
15185 - [MEDIUM] acl: enforce ACL type checking
15186 - [MEDIUM] acl: set types on all currently known ACL verbs
15187 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
15188 - [CLEANUP] remove 65 useless NULL checks before free
15189 - [MEDIUM] memory: update pool_free2() to support NULL pointers
15190 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
15191 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
15192 - [MEDIUM] process_srv: don't rely at all on client state
15193 - [MEDIUM] process_cli: don't rely at all on server state
15194 - [BUG] fix segfault with url_param + check_post
15195 - [BUG] server timeout was not considered in some circumstances
15196 - [BUG] client timeout incorrectly rearmed while waiting for server
15197 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
15198 - [MAJOR] get rid of SV_STANALYZE (step 2)
15199 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
15200 - [MAJOR] completely separate HTTP and TCP states on the request path
15201 - [BUG] fix recently introduced loop when client closes early
15202 - [MAJOR] get rid of the SV_STHEADERS state
15203 - [MAJOR] better separation of response processing and server state
15204 - [MAJOR] clearly separate HTTP response processing from TCP server state
15205 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
15206 - [MINOR] term_trace: add better instrumentations to trace the code
15207 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
15208 - [BUG] process_response must not enable the read FD
15209 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
15210 - [BUG] process_response: do not touch srv_state
15211 - [BUG] maintain_proxies must not disable backends
15212 - [CLEANUP] get rid of BF_SHUT*_PENDING
15213 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
15214 - [MAJOR] process_session: rely only on buffer flags
15215 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
15216 - [MEDIUM] centralize buffer timeout checks at the top of process_session
15217 - [MINOR] ensure the termination flags are set by process_xxx
15218 - [MEDIUM] session: move the analysis bit field to the buffer
15219 - [OPTIM] process_cli/process_srv: reduce the number of tests
15220 - [BUG] regparm is broken on gcc < 3
15221 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
15222 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
15223 - [BUG] process_cli/process_srv: don't call shutdown when already done
15224 - [BUG] process_request: HTTP body analysis must return zero if missing data
15225 - [TESTS] test-fsm: 22 regression tests for state machines
15226 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
15227 - [BUG] fix harmless but wrong fd insertion sequence
15228 - [MEDIUM] make it possible for analysers to follow the whole session
15229 - [MAJOR] rework of the server FSM
15230 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
15231 - [MEDIUM] massive cleanup of process_srv()
15232 - [MEDIUM] second level of code cleanup for process_srv_data
15233 - [MEDIUM] third cleanup and optimization of process_srv_data()
15234 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
15235 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
15236 - [MAJOR] make the client side use stream_sock_process_data()
15237 - [MEDIUM] split stream_sock_process_data
15238 - [OPTIM] stream_sock_read must check for null-reads more often
15239 - [MINOR] only call flow analysers when their read side is connected.
15240 - [MEDIUM] reintroduce BF_HIJACK with produce_content
15241 - [MINOR] re-arrange buffer flags and rename some of them
15242 - [MINOR] do not check for BF_SHUTR when computing write timeout
15243 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
15244 - [OPTIM] reduce the number of calls to task_wakeup()
15245 - [OPTIM] force inlining of large functions with gcc >= 3
15246 - [MEDIUM] indicate a reason for a task wakeup
15247 - [MINOR] change type of fdtab[]->owner to void*
15248 - [MAJOR] make stream sockets aware of the stream interface
15249 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
15250 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
15251 - [MEDIUM] process_session: make use of the new buffer flags
15252 - [CLEANUP] process_session: move debug outputs out of the critical loop
15253 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
15254 - [OPTIM] add compiler hints in tick_is_expired()
15255 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
15256 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
15257 - [MINOR] add an expiration flag to the stream_sock_interface
15258 - [MAJOR] migrate the connection logic to stream interface
15259 - [MAJOR] add a connection error state to the stream_interface
15260 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
15261 - [MEDIUM] continue layering cleanups.
15262 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
15263 - [MEDIUM] remove stream_sock_update_data()
15264 - [MINOR] maintain a global session list in order to ease debugging
15265 - [BUG] shutw must imply close during a connect
15266 - [MEDIUM] process shutw during connection attempt
15267 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
15268 - [MAJOR] complete layer4/7 separation
15269 - [CLEANUP] move the session-related functions to session.c
15270 - [MINOR] call session->do_log() for logging
15271 - [MINOR] replace the ambiguous client_return function by stream_int_return
15272 - [MINOR] replace client_retnclose() with stream_int_retnclose()
15273 - [MINOR] replace srv_close_with_err() with http_server_error()
15274 - [MEDIUM] make the http server error function a pointer in the session
15275 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
15276 - [MINOR] stream_sock_data_finish() should not expose fd
15277 - [MEDIUM] extract TCP request processing from HTTP
15278 - [MEDIUM] extract the HTTP tarpit code from process_request().
15279 - [MEDIUM] move the HTTP request body analyser out of process_request().
15280 - [MEDIUM] rename process_request to http_process_request
15281 - [BUG] fix forgotten server session counter
15282 - [MINOR] declare process_session in session.h, not proto_http.h
15283 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
15284 - [MINOR] add an analyser code for UNIX stats request
15285 - [MINOR] pre-set analyser flags on the listener at registration time
15286 - [BUG] do not forward close from cons to prod with analysers
15287 - [MEDIUM] ensure that sock->shutw() also closes read for init states
15288 - [MINOR] add an analyser state in struct session
15289 - [MAJOR] make unix sockets work again with stats
15290 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
15291 - [MINOR] move the listener reference from fd to session
15292 - [MEDIUM] reference the current hijack function in the buffer itself
15293 - [MINOR] slightly rebalance stats_dump_{raw,http}
15294 - [MINOR] add a new back-reference type : struct bref
15295 - [MINOR] add back-references to sessions for later use by a dumper.
15296 - [MEDIUM] add support for "show sess" in unix stats socket
15297 - [BUG] do not release the connection slot during a retry
15298 - [BUG] dynamic connection throttling could return a max of zero conns
15299 - [BUG] do not try to pause backends during reload
15300 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
15301 - [BUG] acl-related keywords are not allowed in defaults sections
15302 - [BUG] cookie capture is declared in the frontend but checked on the backend
15303 - [BUG] critical errors should be reported even in daemon mode
15304 - [MINOR] redirect: add support for the "drop-query" option
15305 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
15306 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
15307 - [BUG] do not dequeue requests on a dead server
15308 - [BUG] do not dequeue the backend's pending connections on a dead server
15309 - [MINOR] stats: indicate if a task is running in "show sess"
15310 - [BUG] check timeout must not be changed if timeout.check is not set
15311 - [BUG] "option transparent" is for backend, not frontend !
15312 - [MINOR] transfer errors were not reported anymore in data phase
15313 - [MEDIUM] add a send limit to a buffer
15314 - [MEDIUM] don't report buffer timeout when there is I/O activity
15315 - [MEDIUM] indicate when we don't care about read timeout
15316 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
15317 - [MEDIUM] enable inter-stream_interface wakeup calls
15318 - [MAJOR] implement autonomous inter-socket forwarding
15319 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
15320 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
15321 - [MEDIUM] i/o: rework ->to_forward and ->send_max
15322 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
15323 - [OPTIM] buffer: replace rlim by max_len
15324 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
15325 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
15326 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
15327 - [MEDIUM] split stream_sock_write() into callback and core functions
15328 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
15329 - [MINOR] stream_sock: fix a few wrong empty calculations
15330 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
15331 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
15332 - [MEDIUM] splice: add configuration options and set global.maxpipes
15333 - [MINOR] introduce structures required to support Linux kernel splicing
15334 - [MEDIUM] add definitions for Linux kernel splicing
15335 - [MAJOR] complete support for linux 2.6 kernel splicing
15336 - [BUG] reserve some pipes for backends with splice enabled
15337 - [MEDIUM] splice: add hints to support older buggy kernels
15338 - [MEDIUM] introduce pipe pools
15339 - [MEDIUM] splice: make use of pipe pools
15340 - [STATS] report pipe usage in the statistics
15341 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
15342 - [BUILD] fix snapshot date extraction with negative timezones
15343 - [MEDIUM] move global tuning options to the global structure
15344 - [MEDIUM] splice: add the global "nosplice" option
15345 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
15346 - [BUG] we must not exit if protocol binding only returns a warning
15347 - [MINOR] add support for bind interface name
15348 - [BUG] inform the user when root is expected but not set
15349 - [MEDIUM] add support for source interface binding
15350 - [MEDIUM] add support for source interface binding at the server level
15351 - [MEDIUM] implement bind-process to limit service presence by process
15352 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
15353 - [DOC] filled the logging section of the configuration manual
15354 - [DOC] document HTTP status codes
15355 - [DOC] document a few missing info about errorfile
15356 - [BUG] fix random memory corruption using "show sess"
15357 - [BUG] fix unix socket processing of interrupted output
15358 - [DOC] add diagrams of queuing and future ACL design
15359 - [BUILD] proto_http did not build on gcc-2.95
15360 - [BUG] the "source" keyword must first clear optional settings
15361 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
15362 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
15363 - [MEDIUM] store a complete dump of request and response errors in proxies
15364 - [MEDIUM] implement error dump on unix socket with "show errors"
15365 - [DOC] document "show errors"
15366 - [MINOR] errors dump must use user-visible date, not internal date.
15367 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
15368 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
15369 - [MEDIUM] measure and report session rate on frontend, backends and servers
15370 - [BUG] the "connslots" keyword was matched as "connlots"
15371 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
15372 - [MEDIUM] implement "rate-limit sessions" for the frontend
15373 - [BUG] interface binding: length must include the trailing zero
15374 - [BUG] typo in timeout error reporting : report *res and not *err
15375 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
15376 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
15377 - [BUG] switch server-side stream interface to close in case of abort
15378 - [CLEANUP] remove last references to term_trace
15379 - [OPTIM] freq_ctr: do not rotate the counters when reading
15380 - [BUG] disable any analysers for monitoring requests
15381 - [BUG] rate-limit in defaults section was ignored
15382 - [BUG] task: fix handling of duplicate keys
15383 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
15384 - [OPTIM] displace tasks in the wait queue only if absolutely needed
15385 - [MEDIUM] minor update to the task api: let the scheduler queue itself
15386 - [BUG] event_accept() must always wake the task up, even in health mode
15387 - [CLEANUP] task: distinguish between clock ticks and timers
15388 - [OPTIM] task: reduce the number of calls to task_queue()
15389 - [OPTIM] do not re-check req buffer when only response has changed
15390 - [CLEANUP] don't enable kernel splicing when socket is closed
15391 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
15392 - [MINOR] buffers: implement buffer_flush()
15393 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
15394 - [BUILD] build fixes for Solaris
15395 - [BUILD] proto_http did not build on gcc-2.95 (again)
15396 - [CONTRIB] halog: fast log parser for haproxy
15397 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
15398
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200153992008/04/19 : 1.3.15
15400 - [BUILD] Added support for 'make install'
15401 - [BUILD] Added 'install-man' make target for installing the man page
15402 - [BUILD] Added 'install-bin' make target
15403 - [BUILD] Added 'install-doc' make target
15404 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
15405 - [BUILD] Changed 'install' target to install the binaries first
15406 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
15407 - [MEDIUM]: Inversion for options
15408 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
15409 - [BUG]: Restore clearing t->logs.bytes
15410 - [MEDIUM]: rework checks handling
15411 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
15412 - [MEDIUM] Implement "track [<backend>/]<server>"
15413 - [MINOR] Implement persistent id for proxies and servers
15414 - [BUG] Don't increment server connections too much + fix retries
15415 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
15416 - [MAJOR] proto_uxst rework -> SNMP support
15417 - [BUG] appsession lookup in URL does not work
15418 - [BUG] transparent proxy address was ignored in backend
15419 - [BUG] hot reconfiguration failed because of a wrong error check
15420 - [DOC] big update to the configuration manual
15421 - [DOC] large update to the configuration manual
15422 - [DOC] document more options
15423 - [BUILD] major rework of the GNU Makefile
15424 - [STATS] add support for "show info" on the unix socket
15425 - [DOC] document options forwardfor to logasap
15426 - [MINOR] add support for the "backlog" parameter
15427 - [OPTIM] introduce global parameter "tune.maxaccept"
15428 - [MEDIUM] introduce "timeout http-request" in frontends
15429 - [MINOR] tarpit timeout is also allowed in backends
15430 - [BUG] increment server connections for each connect()
15431 - [MEDIUM] add a turn-around state of one second after a connection failure
15432 - [BUG] fix typo in redispatched connection
15433 - [DOC] document options nolinger to ssl-hello-chk
15434 - [DOC] added documentation for "option tcplog" to "use_backend"
15435 - [BUG] connect_server: server might not exist when sending error report
15436 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
15437 - [MEDIUM] add non-local bind to connect() on Linux
15438 - [MINOR] add transparent proxy support for balabit's Tproxy v4
15439 - [BUG] use backend's source and not server's source with tproxy
15440 - [BUG] fix overlapping server flags
15441 - [MEDIUM] fix server health checks source address selection
15442 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
15443 - [DOC] added "server", "source" and "stats" keywords
15444 - [DOC] all server parameters have been documented
15445 - [DOC] document all req* and rsp* keywords.
15446 - [DOC] added documentation about HTTP header manipulations
15447 - [BUG] log response byte count, not request
15448 - [BUILD] code did not build in full debug mode
15449 - [BUG] fix truncated responses with sepoll
15450 - [MINOR] use s->frt_addr as the server's address in transparent proxy
15451 - [MINOR] fix configuration hint about timeouts
15452 - [DOC] minor cleanup of the doc and notice to contributors
15453 - [MINOR] report correct section type for unknown keywords.
15454 - [BUILD] update MacOS Makefile to build on newer versions
15455 - [DOC] fix erroneous "useallbackups" option in the doc
15456 - [DOC] applied small fixes from early readers
15457 - [MINOR] add configuration support for "redir" server keyword
15458 - [MEDIUM] completely implement the server redirection method
15459 - [TESTS] add a test case for the server redirection mechanism
15460 - [DOC] add a configuration entry for "server ... redir <prefix>"
15461 - [BUILD] backend.c and checks.c did not build without tproxy !
15462 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
15463 - [BUILD] backend.c and checks.c did not build without tproxy !
15464 - [OPTIM] used unsigned ints for HTTP state and message offsets
15465 - [OPTIM] GCC4's builtin_expect() is suboptimal
15466 - [BUG] failed conns were sometimes incremented in the frontend!
15467 - [BUG] timeout.check was not pre-set to eternity
15468 - [TESTS] add test-pollers.cfg to easily report pollers in use
15469 - [BUG] do not apply timeout.connect in checks if unset
15470 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
15471 - [MINOR] silent gcc for a wrong warning
15472 - [CLEANUP] update .gitignore to ignore more temporary files
15473 - [CLEANUP] report dlmalloc's source path only if explictly specified
15474 - [BUG] str2sun could leak a small buffer in case of error during parsing
15475 - [BUG] option allbackups was not working anymore in roundrobin mode
15476 - [MAJOR] implementation of the "leastconn" load balancing algorithm
15477 - [BUILD] ensure that users don't build without setting the target anymore.
15478 - [DOC] document the leastconn LB algo
15479 - [MEDIUM] fix stats socket limitation to 16 kB
15480 - [DOC] fix unescaped space in httpchk example.
15481 - [BUG] fix double-decrement of server connections
15482 - [TESTS] add a test case for port mapping
15483 - [TESTS] add a benchmark for integer hashing
15484 - [TESTS] add new methods in ip-hash test file
15485 - [MAJOR] implement parameter hashing for POST requests
15486
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100154872007/12/06 : 1.3.14
15488 - New option http_proxy (Alexandre Cassen)
15489 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
15490 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
15491 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
15492 - use backends only with use_backend directive (Krzysztof Oledzki)
15493 - Handle long lines properly (Krzysztof Oledzki)
15494 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
15495 - continous statistics (Krzysztof Oledzki)
15496 - add support for logging via a UNIX socket (Robert Tsai)
15497 - fix error checking in strl2ic/strl2uic()
15498 - fix calls to localtime()
15499 - provide easier-to-use ultoa_* functions
15500 - provide easy-to-use limit_r and LIM2A* macros
15501 - add a simple test for the status page
15502 - move error codes to common/errors.h
15503 - silent warning about LIST_* being redefined on OpenBSD
15504 - add socket address length to the protocols
15505 - group PR_O_BALANCE_* bits into a checkable value
15506 - externalize the "balance" option parser to backend.c
15507 - introduce the "url_param" balance method
15508 - make default_backend work in TCP mode too
15509 - disable warning about localtime_r on Solaris
15510 - adjust error messages about conflicting proxies
15511 - avoid calling some layer7 functions if not needed
15512 - simplify error path in event_accept()
15513 - add an options field to the listeners
15514 - added a new state to listeners
15515 - unbind_listener() must use fd_delete() and not close()
15516 - add a generic unbind_listener() primitive
15517 - add a generic delete_listener() primitive
15518 - add a generic unbind_all_listeners() primitive
15519 - create proto_tcp and move initialization of proxy listeners
15520 - stats: report numerical process ID, proxy ID and server ID
15521 - relative_pid was not initialized
15522 - missing header names in raw stats output
15523 - fix missing parenthesis in check_response_for_cacheability
15524 - small optimization on session_process_counters()
15525 - merge ebtree version 3.0
15526 - make ebtree headers multiple-include compatible
15527 - ebtree: include config.h for REGPRM*
15528 - differentiate between generic LB params and map-specific ones
15529 - add a weight divisor to the struct proxy
15530 - implement the Fast Weighted Round Robin (FWRR) algo
15531 - include filltab25.c to experiment on FWRR for dynamic weights
15532 - merge test-fwrr.cfg to validate dynamic weights
15533 - move the load balancing algorithm to be->lbprm.algo
15534 - change server check result to a bit field
15535 - implement "http-check disable-on-404" for graceful shutdown
15536 - secure the calling conditions of ->set_server_status_{up,down}
15537 - report disabled servers as "NOLB" when they are still UP
15538 - document the "http-check disable-on-404" option
15539 - http-check disable-on-404 is not limited to HTTP mode
15540 - add a test file for disable-on-404
15541 - use distinct bits per load-balancing algorithm type
15542 - implement the slowstart parameter for servers
15543 - document the server's slowstart parameter
15544 - stats: report the server warm up status in a "throttle" column
15545 - fix 2 minor issues on AIX
15546 - add the "nbsrv" ACL verb
15547 - add the "fail" condition to monitor requests
15548 - remove a warning from gcc due to htons() in standard.c
15549 - fwrr: ensure that we never overflow in placements
15550 - store the build options to report with -vv
15551 - fix the status return of the init script (R.I. Pienaar)
15552 - stats: real time monitoring script for unix socket (Prizee)
15553 - document "nbsrv" and "monitor fail"
15554 - restrict the set of allowed characters for identifiers
15555 - implement a time parsing function
15556 - add support for time units in the configuration
15557 - add a bit of documentation about timers
15558 - introduce separation between contimeout, and tarpit + queue
15559 - introduce the "timeout" keyword
15560 - grouped all timeouts in one structure
15561 - slowstart is in ms, not seconds
15562 - slowstart: ensure we don't start with a null weight
15563 - report the number of times each server was selected
15564 - fix build on AIX due to recent log changes
15565 - fix build on Solaris due to recent log changes
15566
Willy Tarreaue855f422007-10-18 22:38:22 +0200155672007/10/18 : 1.3.13
15568 - replace the code under O'Reilly license (Arnaud Cornet)
15569 - add a small man page (Arnaud Cornet)
15570 - stats: report haproxy's version by default (Krzysztof Oledzki)
15571 - stats: count server retries and redispatches (Krzysztof Oledzki)
15572 - core: added easy support for Doug Lea's malloc (dlmalloc)
15573 - core: fade out memory usage when stopping proxies
15574 - core: moved the sockaddr pointer to the fdtab structure
15575 - core: add generic protocol support
15576 - core: implement client-side support for PF_UNIX sockets
15577 - stats: implement the CSV output
15578 - stats: add a link to the CSV export HTML page
15579 - stats: implement the statistics output on a unix socket
15580 - config: introduce the "stats" keyword in global section
15581 - build: centralize version and date into one file for each
15582 - tests: added a new hash algorithm
15583
155842007/10/18 : 1.3.12.3
15585 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
15586 - fix double-free during clean exit (Krzysztof Oledzki)
15587 - prevent the system from sending an RST when closing health-checks
15588 (Krzysztof Oledzki)
15589 - do not add a cache-control header when on non-cacheable responses
15590 (Krzysztof Oledzki)
15591 - spread health checks even more (Krzysztof Oledzki)
15592 - stats: scope "." must match the backend and not the frontend
15593 - fixed call to chroot() during startup
15594 - fix wrong timeout computation in event_accept()
15595 - remove condition for exit() under fork() failure
15596
155972007/09/20 : 1.3.12.2
15598 - fix configuration sanity checks for TCP listeners
15599 - set the log socket receive window to zero bytes
15600 - pre-initialize timeouts to infinity, not zero
15601 - fix the SIGHUP message not to alert on server-less proxies
15602 - timeouts and retries could be ignored when switching backend
15603 - added a file to check that "retries" works.
15604 - O'Reilly has clarified its license
15605
156062007/09/05 : 1.3.12.1
15607 - spec I/O: fix allocations of spec entries for an FD
15608 - ensure we never overflow in chunk_printf()
15609 - improve behaviour with large number of servers per proxy
15610 - add support for "stats refresh <interval>"
15611 - stats page: added links for 'refresh' and 'hide down'
15612 - fix backend's weight in the stats page.
15613 - the "stats" keyword is not allowed in a pure frontend.
15614 - provide a test configuration file for stats and checks
15615
Willy Tarreaub21152b2007-06-17 23:41:40 +0200156162007/06/17 : 1.3.12
15617 - fix segfault at exit when using captures
15618 - bug: negation in ACL conds was not cleared between terms
15619 - errorfile: use a local file to feed error messages
15620 - acl: support '-i' to ignore case when matching
15621 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
15622 - acl: support maching on 'path' component
15623 - acl: implement matching on header values
15624 - acl: distinguish between request and response headers
15625 - acl: permit to return any header when no name specified
15626 - acl: provide default ACLs
15627 - added the 'use_backend' keyword for full content-switching
15628 - acl: specify the direction during fetches
15629 - acl: provide the argument length for fetch functions
15630 - acl: provide a reference to the expr to fetch()
15631 - improve memory freeing upon exit
15632 - str2net() must not change the const char *
15633 - shut warnings 'is*' macros from ctype.h on solaris
15634
Willy Tarreaua3503e02007-06-03 17:27:07 +0200156352007/06/03 : 1.3.11.4
15636 - do not re-arm read timeout in SHUTR state !
15637 - optimize I/O by detecting system starvation
15638 - the epoll FD must not be shared between processes
15639 - limit the number of events returned by *poll*
15640
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200156412007/05/14 : 1.3.11.3
15642 - pre-initialize timeouts with tv_eternity during parsing
15643
Willy Tarreaufc273c22007-05-14 03:42:47 +0200156442007/05/14 : 1.3.11.2
15645 - fixed broken health-checks since switch to timeval
15646
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200156472007/05/14 : 1.3.11.1
15648 - fixed ev_kqueue which was forgotten during the switch to timeval
15649 - allowed null timeouts for past events in select
15650
Willy Tarreau544eb402007-05-14 02:42:33 +0200156512007/05/14 : 1.3.11
15652 - fixed ev_sepoll again by rewriting the state machine
15653 - switched all timeouts to timevals instead of milliseconds
15654 - improved memory management using mempools v2.
15655 - several minor optimizations
15656
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200156572007/05/09 : 1.3.10.2
15658 - fixed build on OpenBSD (missing types.h)
15659
Willy Tarreau13398d32007-05-09 22:58:28 +0200156602007/05/09 : 1.3.10.1
15661 - fixed sepoll transition matrix (two states were missing)
15662
Willy Tarreau61beedf2007-05-09 01:44:58 +0200156632007/05/08 : 1.3.10
15664 - several fixes in ev_sepoll
15665 - fixed some expiration dates on some tasks
15666 - fixed a bug in connection establishment detection due to speculative I/O
15667 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
15668 - implemented URI hashing algorithm (Guillaume Dallaire)
15669 - implemented SMTP health checks (Peter van Dijk)
15670 - replaced the rbtree with ul2tree from old scheduler project
15671 - new framework for generic ACL support
15672 - added the 'acl' and 'block' keywords to the config language
15673 - added several ACL criteria and matches (IP, port, URI, ...)
15674 - cleaned up and better modularization for some time functions
15675 - fixed list macros
15676 - fixed useless memory allocation in str2net()
15677 - store the original destination address in the session
15678
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200156792007/04/15 : 1.3.9
15680 - modularized the polling mechanisms and use function pointers instead
15681 of macros at many places
15682 - implemented support for FreeBSD's kqueue() polling mechanism
15683 - fixed a warning on OpenBSD : MIN/MAX redefined
15684 - change socket registration order at startup to accomodate kqueue.
15685 - several makefile cleanups to support old shells
15686 - fix build with limits.h once for all
15687 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
15688 - fdtab now holds the results of polling
15689 - implemented support for speculative I/O processing with epoll()
15690 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
15691 - auto-registering of pollers at load time
15692
Willy Tarreau42c76592007-04-03 20:30:13 +0200156932007/04/03 : 1.3.8.2
15694 - rewriting either the status line or request line could crash the
15695 process due to a pointer which ought to be reset before parsing.
15696 - rewriting the status line in the response did not work, it caused
15697 a 502 Bad Gateway due to an erroneous state during parsing
15698
Willy Tarreauef6d7612007-04-01 11:06:22 +0200156992007/04/01 : 1.3.8.1
15700 - fix reqadd when no option httpclose is used.
15701 - removed now unused fiprm and beprm from proxies
15702 - split logs into two versions : TCP and HTTP
15703 - added some docs about http headers storage and acls
15704 - added a VIM script for syntax color highlighting (Bruno Michel)
15705
Willy Tarreaud661cc02007-03-26 00:24:56 +0200157062007/03/25 : 1.3.8
15707 - fixed several bugs which might have caused a crash with bad configs
15708 - several optimizations in header processing
15709 - many progresses towards transaction-based processing
15710 - option forwardfor may be used in frontends
15711 - completed HTTP response processing
15712 - some code refactoring between request and response processing
15713 - new HTTP header manipulation functions
15714 - optimizations on the recv() patch to reduce CPU usage under very
15715 high data rates.
15716 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
15717 - username/groupname support from Marcus Rueckert
15718 - added the "except" keyword to the "forwardfor" option (Bryan German)
15719 - support for health-checks on other addresses (Fabrice Dulaunoy)
15720 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
15721 - do not insert "Connection: close" in HTTP/1.0 messages
15722
Willy Tarreau9cabf702007-01-26 23:49:01 +0100157232007/01/26 : 1.3.7
15724 - fix critical bug introduced with 1.3.6 : an empty request header
15725 may lead to a crash due to missing pointer assignment
15726 - hdr_idx might be left uninitialized in debug mode
15727 - fixed build on FreeBSD due to missing fd_set declaration
15728
Willy Tarreaue7a24382007-01-22 08:57:44 +0100157292007/01/22 : 1.3.6.1
15730 - change in the header chaining broke cookies and authentication
15731
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100157322007/01/22 : 1.3.6
15733 - stats now support the HEAD method too
15734 - extracted http request from the session
15735 - huge rework of the HTTP parser which is now a 28-state FSM.
15736 - linux-style likely/unlikely macros for optimization hints
15737 - do not create a server socket when there's no server
15738 - imported lots of docs
15739
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100157402007/01/07 : 1.3.5
15741 - stats: swap color sets for active and backup servers
15742 - try to guess server check port when unset
15743 - added complete support and doc for TCP Splicing
15744 - replace the wait-queue linked list with an rbtree.
15745 - a few bugfixes and cleanups
15746
Willy Tarreau85270da2007-01-02 00:59:39 +0100157472007/01/02 : 1.3.4
15748 - support for cttproxy on the server side to present the client
15749 address to the server.
15750 - added support for SO_REUSEPORT on Linux (needs kernel patch)
15751 - new RFC2616-compliant HTTP request parser with header indexing
15752 - split proxies in frontends, rulesets and backends
15753 - implemented the 'req[i]setbe' to select a backend depending
15754 on the contents
15755 - added the 'default_backend' keyword to select a default BE.
15756 - new stats page featuring FEs and BEs + bytes in both dirs
15757 - improved log format to indicate the backend and the time in ms.
15758 - lots of cleanups
15759
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200157602006/10/15 : 1.3.3
15761 - fix broken redispatch option in case the connection has already
15762 been marked "in progress" (ie: nearly always).
15763 - support regparm on x86 to speed up some often called functions
15764 - removed a few useless calls to gettimeofday() in log functions.
15765 - lots of 'const char*' cleanups
15766 - turn every FD_* into functions which are faster on recent CPUs
15767
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200157682006/09/03 : 1.3.2
15769 - started the changes towards I/O completion callbacks. stream_sock* have
15770 replaced event_*.
15771 - added the new "reqtarpit" and "reqitarpit" protection features
15772
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200157732006/07/09 : 1.3.1 (1.2.15)
15774 - now, haproxy warns about missing timeout during startup to try to
15775 eliminate all those buggy configurations.
15776 - added "Content-Type: text/html" in responses wherever appropriate, as
15777 suggested by Cameron Simpson.
15778 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
15779 test server's health
15780 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
15781 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
15782 at once.
15783
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200157842006/06/29 : 1.3.0
15785 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020015786 difference is expected at all.
15787 - fixed a bug by which neither stats nor error messages could be returned if
15788 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020015789
willy tarreau7e6328d2006-05-21 23:26:20 +0200157902006/05/21 : 1.2.14
15791 - new HTML status report with the 'stats' keyword.
15792 - added the 'abortonclose' option to better resist traffic surges
15793 - implemented dynamic traffic regulation with the 'minconn' option
15794 - show request time on denied requests
15795 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
15796 - now a proxy instance is allowed to run without servers, which is
15797 useful to dedicate one instance to stats
15798 - added lots of error counters
15799 - a missing parenthesis preventd matching of cacheable cookies
15800 - a missing parenthesis in poll_loop() might have caused missed events.
15801
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200158022006/05/14 : 1.2.13.1
15803 - an uninitialized field in the struct session could cause a crash when
15804 the session was freed. This has been encountered on Solaris only.
15805 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
15806 be nice to them by performing a soft stop if pause fails.
15807
willy tarreauc3a2e072006-05-13 18:51:38 +0200158082006/05/13 : 1.2.13
15809 - 'maxconn' server parameter to do per-server session limitation
15810 - queueing to support non-blocking session limitation
15811 - fixed removal of cookies for cookie-less servers such as backup servers
15812 - two separate wait queues for expirable and non-expirable tasks provide
15813 better performance with lots of sessions.
15814 - some code cleanups and performance improvements
15815 - made state dumps a bit more verbose
15816 - fixed missing checks for NULL srv in dispatch mode
15817 - load balancing on backup servers was not possible in source hash mode.
15818 - two session flags shared the same bit, but fortunately they were not
15819 compatible.
15820
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200158212006/04/15 : 1.2.12
15822 Very few changes preparing for more important changes to support per-server
15823 session limitations and queueing :
15824 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
15825 - added the 'weight' parameter to the servers, limited to 1..256. It applies
15826 to roundrobin and source hash.
15827 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
15828
willy tarreaue0dd2692006-03-30 16:27:34 +0200158292006/03/30 : 1.2.11.1
15830 - under some conditions, it might have been possible that when the
15831 last dead server became available, it would not have been used
15832 till another one would have changed state. Could not be reproduced
15833 at all, however seems possible from the code.
15834
willy tarreaud2058dc2006-03-25 20:35:41 +0100158352006/03/25 : 1.2.11
15836 - added the '-db' command-line option to disable backgrounding.
15837 - added the -sf/-st command-line arguments which are used to specify
15838 a list of pids to send a FINISH or TERMINATE signal upon startup.
15839 They will also be asked to release their port if a bind fails.
15840 - reworked the startup mechanism to allow the sending of a signal to a list
15841 of old pids if a socket cannot be bound, with a retry for a limited amount
15842 of time (1 second by default).
15843 - added the ability to enforce limits on memory usage.
15844 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
15845 - re-architectured the server round-robin mechanism to ease integration of
15846 other algorithms. It now relies on the number of active and backup servers.
15847 - added a counter for the number of active and backup servers, and report
15848 these numbers upon SIGHUP or state change.
15849
willy tarreaubfad5742006-03-23 14:19:11 +0100158502006/03/23 : 1.2.10.1
15851 - while fixing the backup server round-robin "feature", a new bug was
15852 introduced which could miss some backup servers.
15853 - the displayed proxy name was wrong when dumping upon SIGHUP.
15854
willy tarreauaaff30e2006-03-19 21:30:41 +0100158552006/03/19 : 1.2.10
15856 - assert.h is needed when DEBUG is defined.
15857 - ENORMOUS long standing bug affecting the epoll polling system :
15858 event_data is a union, not a structure !
15859 - Make fd management more robust and easier to debug. Also some
15860 micro-optimisations.
15861 - Limit the number of consecutive accept() in multi-process mode.
15862 This produces a more evenly distributed load across the processes and
15863 slightly improves performance by reducing bottlenecks.
15864 - Make health-checks be more regular, and faster to retry after a timeout.
15865 - Fixed some messages to ease parsing of alerts.
15866 - provided a patch to enable epoll on RHEL3 kernels.
15867 - Separated OpenBSD build from the main Makefile into a new one.
15868
willy tarreau50be0172006-03-15 19:41:19 +0100158692006/03/15 : 1.2.9
15870 - haproxy could not be stopped after being paused, it had to be woken up
15871 first. This has been fixed.
15872 - the 'ulimit-n' parameter is now optional and by default computed from
15873 maxconn + the number of listeners + the number of health-checks.
15874 - it is now possible to specify a maximum number of connections at build
15875 time with the SYSTEM_MAXCONN define. The value set in the configuration
15876 file will then be limited to this value, and only the command-line '-n'
15877 option will be able to bypass it. It will prevent against accidental
15878 high memory usage on small systems.
15879 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
15880 versions did not detect a line beginning with a space as the continuation
15881 of previous header. It is now correct.
15882 - health checks sent to servers configured with identical intervals were
15883 sent in perfect synchronisation because the initial time was the same
15884 for all. This could induce high load peaks when fragile servers were
15885 hosting tens of instances for the same application. Now the load is
15886 spread evenly across the smallest interval amongst a listener.
15887 - a new 'forceclose' option was added to make the proxy close the outgoing
15888 channel to the server once it has sent all its headers and the server
15889 starts responding. This helps some servers which don't close upon the
15890 'Connection: close' header. It implies 'option httpclose'.
15891 - there was a bug in the way the backup servers were handled. They were
15892 erroneously load-balanced while the doc said the opposite. Since
15893 load-balanced backup servers is one of the features some people have
15894 been asking for, the problem was fixed to reflect the documented
15895 behaviour and a new option 'allbackups' was introduced to provide the
15896 feature to those who need it.
15897 - a never ending connect() could lead to a fast select() loop if its
15898 timeout times the number of retransmits exceeded the server read or write
15899 timeout, because the later was used to compute select()'s timeout while
15900 the connection timeout was not reached.
15901 - now we initialize the libc's localtime structures very early so that even
15902 under OOM conditions, we can still send dated error messages without
15903 segfaulting.
15904 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
15905 descriptors are closed.
15906
willy tarreau065f1c02006-01-29 22:10:07 +0100159072006/01/29 : 1.2.8
15908 - fixed a nasty bug affecting poll/epoll which could return unmodified data
15909 from the server to the client, and sometimes lead to memory corruption
15910 crashing the process.
15911 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
15912
159132005/12/18 : 1.2.7.1
15914 - the "retries" option was ignored because connect() could not return an
15915 error if the connection failed before the timeout.
15916 - TCP health-checks could not detect a connection refused in poll/epoll
15917 mode.
15918
willy tarreaua56eca72005-12-18 01:34:42 +0100159192005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010015920 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
15921 least on Solaris, this caused the libc's regex primitives to be used instead
15922 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010015923 - delayed the quiet mode during startup so that most of the startup alerts can
15924 be displayed even in quiet mode.
15925 - display an alert when a listener has no address, invalid or no port, or when
15926 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010015927 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010015928
willy tarreaub952e1d2005-12-18 01:31:20 +0100159292005/10/09 : 1.2.7rc (1.1.33rc)
15930 - second batch of socklen_t changes.
15931 - clean-ups from Cameron Simpson.
15932 - because tv_remain() does not know about eternity, using no timeout can
15933 make select() spin around a null time-out. Bug reported by Cameron Simpson.
15934 - client read timeout was not properly set to eternity initialized after an
15935 accept() if it was not set in the config. It remained undetected so long
15936 because eternity is 0 and newly allocated pages are zeroed by the system.
15937 - do not call get_original_dst() when not in transparent mode.
15938 - implemented a workaround for a bug in certain epoll() implementations on
15939 linux-2.4 kernels (epoll-lt <= 0.21).
15940 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
15941
willy tarreauc5f73ed2005-12-18 01:26:38 +0100159422005/08/07 : 1.2.6
15943 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
15944
159452005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010015946 - added the number of active sessions (proxy/process) in the logs
15947
159482005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010015949 - the time-out fix introduced in 1.1.25 caused a corner case where it was
15950 possible for a client to keep a connection maintained regardless of the
15951 timeout if the server closed the connection during the HEADER phase,
15952 while the client ignored the close request while doing nothing in the
15953 other direction. This has been fixed now by ensuring that read timeouts
15954 are re-armed when switching to any SHUTW state.
15955
159562005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
15957 - enhanced error reporting in the logs. Now the proxy will precisely detect
15958 various error conditions related to the system and/or process limits, and
15959 generate LOG_EMERG logs indicating that a resource has been exhausted.
15960 - logs will contain two new characters for the error cause : 'R' indicates
15961 a resource exhausted, and 'I' indicates an internal error, though this
15962 one should never happen.
15963 - server connection timeouts can now be reported in the logs (sC), as well
15964 as connections refused because of maxconn limitations (PC).
15965
159662005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
15967 - new global configuration keyword "ulimit-n" may be used to raise the FD
15968 limit to usable values.
15969 - a warning is now displayed on startup if the FD limit is lower than the
15970 configured maximum number of sockets.
15971
159722005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
15973 - new configuration keyword "monitor-net" makes it possible to be monitored
15974 by external devices which connect to the proxy without being logged nor
15975 forwarded to any server. Particularly useful on generic TCPv4 relays.
15976
willy tarreau5dffb602005-12-18 01:15:23 +0100159772005/06/21 : 1.2.5.2
15978 - fixed build on PPC where chars are unsigned by default
15979
willy tarreau08dedbe2005-12-18 01:13:48 +0100159802005/05/02 : 1.2.5.1
15981 - dirty hack to fix a bug introduced with epoll : if we close an FD and
15982 immediately reassign it to another session through a connect(), the
15983 Prev{Read,Write}Events are not updated, which causes trouble detecting
15984 changes, thus leading to many timeouts at high loads.
15985
willy tarreau64a3cc32005-12-18 01:13:11 +0100159862005/04/30 : 1.2.5 (1.1.31)
15987 - changed the runtime argument to disable epoll() to '-de'
15988 - changed the runtime argument to disable poll() to '-dp'
15989 - added global options 'nopoll' and 'noepoll' to do the same at the
15990 configuration level.
15991 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
15992 support epoll().
15993 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
15994 - conditionned signals redirection to #ifdef DEBUG_MEMORY
15995
willy tarreau1c2ad212005-12-18 01:11:29 +0100159962005/04/26 : 1.2.5-pre4
15997 - made epoll() support a compile-time option : ENABLE_EPOLL
15998 - provided a very little libc replacement for a possibly missing epoll()
15999 implementation which can be enabled by -DUSE_MY_EPOLL
16000 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
16001 The equivalent runtime argument becomes '-P'. A few tests show that it
16002 performs like select() with many fds, but slightly slower (certainly
16003 because of the higher amount of memory involved).
16004 - separated the 3 polling methods and the tasks scheduler into 4 distinct
16005 functions which makes the code a lot more modular.
16006 - moved some event tables to private static declarations inside the poller
16007 functions.
16008 - the poller functions can now initialize themselves, run, and cleanup.
16009 - changed the runtime argument to enable epoll() to '-E'.
16010 - removed buggy epoll_ctl() code in the client_retnclose() function. This
16011 function was never meant to remove anything.
16012 - fixed a typo which caused glibc to yell about a double free on exit.
16013 - removed error checking after epoll_ctl(DEL) because we can never know if
16014 the fd is still active or already closed.
16015 - added a few entries in the makefile
16016
willy tarreauad90a0c2005-12-18 01:09:15 +0100160172005/04/25 : 1.2.5-pre3
16018 - experimental epoll() support (use temporary '-e' argument)
16019
160202005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010016021 - implemented the HTTP 303 code for error redirection. This forces the
16022 browser to fetch the given URI with a GET request. The new keyword for
16023 this is 'errorloc303', and a new 'errorloc302' keyword has been created
16024 to make them easily distinguishable.
16025 - added more controls in the parser for valid use of '\x' sequence.
16026 - few fixes from Alex & Klaus
16027
willy tarreauad90a0c2005-12-18 01:09:15 +0100160282005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010016029 - fixed a few errors in the documentation
16030
160312005/02/13
16032 - do not pre-initialize unused file-descriptors before select() anymore.
16033
willy tarreau12350152005-12-18 01:03:27 +0100160342005/01/22 : 1.2.4
16035 - merged Alexander Lazic's and Klaus Wagner's work on application
16036 cookie-based persistence. Since this is the first merge, this version is
16037 not intended for general use and reports are more than welcome. Some
16038 documentation is really needed though.
16039
willy tarreau0174f312005-12-18 01:02:42 +0100160402005/01/22 : 1.2.3 (1.1.30)
16041 - add an architecture guide to the documentation
16042 - released without any changes
16043
160442004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
16045 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
16046 compatible with Apache. This limit can be configured in the makefile now.
16047 Thanks to Eric Fehr for the checks.
16048 - added a per-server "source" option which now makes it possible to bind to
16049 a different source for each (potentially identical) server.
16050 - changed cookie-based server selection slightly to allow several servers to
16051 share a same cookie, thus making it possible to associate backup servers to
16052 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
16053 - added the cookie 'prefix' mode which makes it possible to use persistence
16054 with thin clients which support only one cookie. The server name is prefixed
16055 before the application cookie, and restore back.
16056 - fixed the order of servers within an instance to match documentation. Now
16057 the servers are *really* used in the order of their declaration. This is
16058 particularly important when multiple backup servers are in use.
16059
willy tarreau4302f492005-12-18 01:00:37 +0100160602004/10/18 : 1.2.2 (1.1.29)
16061 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
16062 option was enabled without the 'tcplog' option.
16063 - encode_string() would use hdr_encode_map instead of the map argument.
16064
160652004/08/10 : (1.1.29-pre2)
16066 - the logged request is now encoded with '#XX' for unprintable characters
16067 - new keywords 'capture request header' and 'capture response header' enable
16068 logging of arbitrary HTTP headers in requests and responses
16069 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
16070
willy tarreau982249e2005-12-18 00:57:06 +0100160712004/06/06 : 1.2.1 (1.1.28)
16072 - added the '-V' command line option to verbosely report errors even though
16073 the -q or 'quiet' options are specified. This is useful with '-c'.
16074 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010016075
willy tarreau982249e2005-12-18 00:57:06 +0100160762004/06/05 :
16077 - added the "logasap" option which produces a log without waiting for the data
16078 to be transferred from the server to the client.
16079 - added the "httpclose" option which removes any "connection:" header and adds
16080 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010016081 - added the 'checkcache' option which blocks cacheable responses containing
16082 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010016083 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
16084 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010016085
160862004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010016087 - send an EMERG log when no server is available for a given proxy
16088 - added the '-c' command line option to syntactically check the
16089 configuration file without starting the service.
16090
willy tarreau8a86dbf2005-12-18 00:45:59 +0100160912003/11/09 : 1.2.0
16092 - the same as 1.1.27 + IPv6 support on the client side
16093
willy tarreaufe2c5c12005-12-17 14:14:34 +0100160942003/10/27 : 1.1.27
16095 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
16096 bug : the code still assumed that HTTP requests were the same size as the
16097 original ones (22 bytes), and failed if they were not.
16098 - added support for pidfiles.
16099
willy tarreauc58fc692005-12-17 14:13:08 +0100161002003/10/22 : 1.1.26
16101 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
16102 broke almost all compatibility with POST requests, because the proxy
16103 stopped to read anything from the client as soon as it got all of its
16104 headers.
16105
willy tarreauc1cae632005-12-17 14:12:23 +0100161062003/10/15 : 1.1.25
16107 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
16108 generic TCP proxies, or lighter logs for HTTP proxies.
16109 - fixed a time-out condition wrongly reported as client time-out in data
16110 phase if the client timeout was lower than the connect timeout times the
16111 number of retries.
16112
willy tarreau197e8ec2005-12-17 14:10:59 +0100161132003/09/21 : 1.1.24
16114 - if a client sent a full request then shut its write connection down, then
16115 the request was aborted. This case was detected only when using haproxy
16116 both as health-check client and as a server.
16117 - if 'option httpchk' is used in a 'health' mode server, then responses will
16118 change from 'OK' to 'HTTP/1.0 200 OK'.
16119 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
16120 server response followed by a close could be ignored, and the server seen
16121 as failed.
16122
willy tarreaueedaa9f2005-12-17 14:08:03 +0100161232003/09/19 : 1.1.23
16124 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
16125 'default' sections to keep previous parameters, and not initialize logs
16126 correctly.
16127 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
16128 relying on 'dispatch' mode to segfault at the first connection.
16129 - 'option httpchk' now supports method, HTTP version and a few headers.
16130 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
16131 'defaults' section
16132
161332003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010016134 - 'listen' now supports optionnal address:port-range lists
16135 - 'bind' introduced to add new listen addresses
16136 - fixed a bug which caused a session to be kept established on a server till
16137 it timed out if the client closed during the DATA phase.
16138 - the port part of each server address can now be empty to make the proxy
16139 connect to the server on the same port it was connected to, be an absolute
16140 unsigned number to reflect a single port (as in older versions), or an
16141 explicitly signed number (+N/-N) to indicate that this offset must be
16142 applied to the port the proxy was connected to, when connecting to the
16143 server.
16144 - the 'port' server option allows the user to specify a different
16145 health-check port than the service one. It is mandatory when only relative
16146 ports have been specified and check is required. By default, the checks are
16147 sent to the service port.
16148 - new 'defaults' section which is rather similar to 'listen' except that all
16149 values are only used as default values for future 'listen' sections, until
16150 a new 'defaults' resets them. At the moment, server options, regexes,
16151 cookie names and captures cannot be set in the 'defaults' section.
16152
willy tarreau2f6ba652005-12-17 13:57:42 +0100161532003/05/06 : 1.1.21
16154 - changed the debug output format so that it now includes the session unique
16155 ID followed by the instance name at the beginning of each line.
16156 - in debug mode, accept now shows the client's IP and port.
16157 - added one 3 small debugging scripts to search and pretty print debug output
16158 - changed the default health check request to "OPTIONS /" instead of
16159 "OPTIONS *" since not all servers implement the later one.
16160 - "option httpchk" now accepts an optional parameter allowing the user to
16161 specify and URI other than '/' during health-checks.
16162
willy tarreaub1ff9db2005-12-17 13:51:03 +0100161632003/04/21 : 1.1.20
16164 - fixed two problems with time-outs, one where a server would be logged as
16165 timed out during transfer that take longer to complete than the fixed
16166 time-out, and one where clients were logged as timed-out during the data
16167 phase because they didn't have anything to send. This sometimes caused
16168 slow client connections to close too early while in fact there was no
16169 problem. The proper fix would be to have a per-fd time-out with
16170 conditions depending on the state of the HTTP FSM.
16171
willy tarreau906b2682005-12-17 13:49:52 +0100161722003/04/16 : 1.1.19
16173 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
16174 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
16175 cookie persistence because it uses "cookie:". Two memcmp() have been
16176 replaced with strncasecmp().
16177
willy tarreau036e1ce2005-12-17 13:46:33 +0100161782003/04/02 : 1.1.18
16179 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
16180 REGEX=pcre on the make command line.
16181 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
16182 - when explicit source address binding is required, it is now also used for
16183 health-checks.
16184 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
16185 itself.
16186 - factored several strings to reduce binary size by about 2 kB.
16187 - replaced setreuid() and setregid() with more standard setuid() and setgid().
16188 - added 4 status flags to the log line indicating who ended the connection
16189 first, the sessions state, the validity of the cookie, and action taken on
16190 the set-cookie header.
16191
161922002/10/18 : 1.1.17
16193 - add the notion of "backup" servers, which are used only when all other
16194 servers are down.
16195 - make Set-Cookie return "" instead of "(null)" when the server has no
16196 cookie assigned (useful for backup servers).
16197 - "log" now supports an optionnal level name (info, notice, err ...) above
16198 which nothing is sent.
16199 - replaced some strncmp() with memcmp() for better efficiency.
16200 - added "capture cookie" option which logs client and/or server cookies
16201 - cleaned up/down messages and dump servers states upon SIGHUP
16202 - added a redirection feature for errors : "errorloc <errnum> <url>"
16203 - now we won't insist on connecting to a dead server, even with a cookie,
16204 unless option "persist" is specified.
16205 - added HTTP/408 response for client request time-out and HTTP/50[234] for
16206 server reply time-out or errors.
16207
162082002/09/01 : 1.1.16
16209 - implement HTTP health checks when option "httpchk" is specified.
16210
162112002/08/07 : 1.1.15
16212 - replaced setpgid()/setpgrp() with setsid() for better portability, because
16213 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
16214
162152002/07/20 : 1.1.14
16216 - added "postonly" cookie mode
16217
162182002/07/15 : 1.1.13
16219 - tv_diff used inverted parameters which led to negative times !
16220
162212002/07/13 : 1.1.12
16222 - fixed stats monitoring, and optimized some tv_* for most common cases.
16223 - replaced temporary 'newhdr' with 'trash' to reduce stack size
16224 - made HTTP errors more HTML-fiendly.
16225 - renamed strlcpy() to strlcpy2() because of a slightly difference between
16226 their behaviour (return value), to avoid confusion.
16227 - restricted HTTP messages to HTTP proxies only
16228 - added a 502 message when the connection has been refused by the server,
16229 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
16230 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
16231 inserting a cookie, because some caches (apache) don't understand it.
16232 - fixed processing of server headers when client is in SHUTR state
16233
162342002/07/04 :
16235 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
16236 setpgid()
16237
162382002/06/04 : 1.1.11
16239 - fixed multi-cookie handling in client request to allow clean deletion
16240 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010016241 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010016242 - added a "nocache" option to "cookie" to specify that we explicitly want
16243 to add a "cache-control" header when we add a cookie.
16244 It is also possible to add an "Expires: <old-date>" to keep compatibility
16245 with old/broken caches.
16246
162472002/05/10 : 1.1.10
16248 - if a cookie is used in insert+indirect mode, it's desirable that the
16249 the servers don't see it. It was not possible to remove it correctly
16250 with regexps, so now it's removed automatically.
16251
162522002/04/19 : 1.1.9
16253 - don't use snprintf()'s return value as an end of message since it may
16254 be larger. This caused bus errors and segfaults in internal libc's
16255 getenv() during localtime() in send_log().
16256 - removed dead insecure send_syslog() function and all references to it.
16257 - fixed warnings on Solaris due to buggy implementation of isXXXX().
16258
162592002/04/18 : 1.1.8
16260 - option "dontlognull"
16261 - fixed "double space" bug in config parser
16262 - fixed an uninitialized server field in case of dispatch
16263 with no existing server which could cause a segfault during
16264 logging.
16265 - the pid logged was always the father's, which was wrong for daemons.
16266 - fixed wrong level "LOG_INFO" for message "proxy started".
16267
162682002/04/13 :
16269 - http logging is now complete :
16270 - ip:port, date, proxy, server
16271 - req_time, conn_time, hdr_time, tot_time
16272 - status, size, request
16273 - source address
16274
162752002/04/12 : 1.1.7
16276 - added option forwardfor
16277 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
16278 - added "log global" in "listen" section.
16279
162802002/04/09 :
16281 - added a new "global" section :
16282 - logs
16283 - debug, quiet, daemon modes
16284 - uid, gid, chroot, nbproc, maxconn
16285
162862002/04/08 : 1.1.6
16287 - regex are now chained and not limited anymore.
16288 - unavailable server now returns HTTP/502.
16289 - increased per-line args limit to 40
16290 - added reqallow/reqdeny to block some request on matches
16291 - added HTTP 400/403 responses
16292
162932002/04/03 : 1.1.5
16294 - connection logging displayed incorrect source address.
16295 - added proxy start/stop and server up/down log events.
16296 - replaced log message short buffers with larger trash.
16297 - enlarged buffer to 8 kB and replace buffer to 4 kB.
16298
162992002/03/25 : 1.1.4
16300 - made rise/fall/interval time configurable
16301
163022002/03/22 : 1.1.3
16303 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
16304 which could lead to loops.
16305
163062002/03/21 : 1.1.2
16307 - fixed a bug in buffer management where we could have a loop
16308 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
16309 => implemented an adjustable buffer limit.
16310 - fixed a bug : expiration of tasks in wait queue timeout is used again,
16311 and running tasks are skipped.
16312 - added some debug lines for accept events.
16313 - send warnings for servers up/down.
16314
163152002/03/12 : 1.1.1
16316 - fixed a bug in total failure handling
16317 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
16318
163192002/03/10 : 1.1.0
16320 - fixed a few timeout bugs
16321 - rearranged the task scheduler subsystem to improve performance,
16322 add new tasks, and make it easier to later port to librt ;
16323 - allow multiple accept() for one select() wake up ;
16324 - implemented internal load balancing with basic health-check ;
16325 - cookie insertion and header add/replace/delete, with better strings
16326 support.
16327
163282002/03/08
16329 - reworked buffer handling to fix a few rewrite bugs, and
16330 improve overall performance.
16331 - implement the "purge" option to delete server cookies in direct mode.
16332
163332002/03/07
16334 - fixed some error cases where the maxfd was not decreased.
16335
163362002/02/26
16337 - now supports transparent proxying, at least on linux 2.4.
16338
163392002/02/12
16340 - soft stop works again (fixed select timeout computation).
16341 - it seems that TCP proxies sometimes cannot timeout.
16342 - added a "quiet" mode.
16343 - enforce file descriptor limitation on socket() and accept().
16344
163452001/12/30 : release of version 1.0.2 : fixed a bug in header processing
163462001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
163472001/12/16 : release of version 1.0.0.
163482001/12/16 : added syslog capability for each accepted connection.
163492001/11/19 : corrected premature end of files and occasional SIGPIPE.
163502001/10/31 : added health-check type servers (mode health) which replies OK then closes.
163512001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
16352 with or without cookies (use keyword http for this).
163532001/09/01 : added client/server header replacing with regexps.
16354 eg:
16355 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
16356 srvexp ^Server:\ .* Server:\ Apache
163572000/11/29 : first fully working release with complete FSMs and timeouts.
163582000/11/28 : major rewrite
163592000/11/26 : first write