blob: 39c8182b498651bbe6c5986c49729ddeb0db958b [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Willy Tarreau3e69fcc2022-04-23 04:38:36 +020042022/04/23 : 2.6-dev7
5 - BUILD: calltrace: fix wrong include when building with TRACE=1
6 - MINOR: ssl: Use DH parameters defined in RFC7919 instead of hard coded ones
7 - MEDIUM: ssl: Disable DHE ciphers by default
8 - BUILD: ssl: Fix compilation with OpenSSL 1.0.2
9 - MINOR: mux-quic: split xfer and STREAM frames build
10 - REORG: quic: use a dedicated module for qc_stream_desc
11 - MINOR: quic-stream: use distinct tree nodes for quic stream and qcs
12 - MINOR: quic-stream: add qc field
13 - MEDIUM: quic: implement multi-buffered Tx streams
14 - MINOR: quic-stream: refactor ack management
15 - MINOR: quic: limit total stream buffers per connection
16 - MINOR: mux-quic: implement immediate send retry
17 - MINOR: cfg-quic: define tune.quic.conn-buf-limit
18 - MINOR: ssl: Add 'show ssl providers' cli command and providers list in -vv option
19 - REGTESTS: ssl: Update error messages that changed with OpenSSLv3.1.0-dev
20 - BUG/MEDIUM: quic: Possible crash with released mux
21 - BUG/MINOR: mux-quic: unsubscribe on release
22 - BUG/MINOR: mux-quic: handle null timeout
23 - BUG/MEDIUM: logs: fix http-client's log srv initialization
24 - BUG/MINOR: mux-quic: remove dead code in qcs_xfer_data()
25 - DEV: stream: Fix conn-streams dump in full stream message
26 - CLEANUP: conn-stream: Rename cs_conn_close() and cs_conn_drain_and_close()
27 - CLEANUP: conn-stream: Rename cs_applet_release()
28 - MINOR: conn-stream: Rely on endpoint shutdown flags to shutdown an applet
29 - BUG/MINOR: cache: Disable cache if applet creation fails
30 - BUG/MINOR: backend: Don't allow to change backend applet
31 - BUG/MEDIUM: conn-stream: Set back CS to RDY state when the appctx is created
32 - MINOR: stream: Don't needlessly detach server endpoint on early client abort
33 - MINOR: conn-stream: Make cs_detach_* private and use cs_destroy() from outside
34 - MINOR: init: add the pre-check callback
35 - MEDIUM: httpclient: change the init sequence
36 - MEDIUM: httpclient/ssl: verify required
37 - MINOR: httpclient/mworker: disable in the master process
38 - MEDIUM: httpclient/ssl: verify is configurable and disabled by default
39 - BUG/MAJOR: connection: Never remove connection from idle lists outside the lock
40 - BUG/MEDIUM: mux-quic: fix stalled POST requets
41 - BUG/MINOR: mux-quic: fix POST with abortonclose
42 - MINOR: task: add a new task_instant_wakeup() function
43 - MEDIUM: queue: use tasklet_instant_wakeup() to wake tasks
44 - DOC: remove my name from the config doc
45
Willy Tarreaua8b10652022-04-16 12:15:47 +0200462022/04/16 : 2.6-dev6
47 - CLEANUP: connection: reduce the with of the mux dump output
48 - CI: Update to actions/checkout@v3
49 - CI: Update to actions/cache@v3
50 - DOC: adjust QUIC instruction in INSTALL
51 - BUG/MINOR: stats: define the description' background color in dark color scheme
52 - BUILD: ssl: add USE_ENGINE and disable the openssl engine by default
53 - BUILD: makefile: pass USE_ENGINE to cflags
54 - BUILD: xprt-quic: replace ERR_func_error_string() with ERR_peek_error_func()
55 - DOC: install: document the fact that SSL engines are not enabled by default
56 - CI: github actions: disable -Wno-deprecated
57 - BUILD: makefile: silence unbearable OpenSSL deprecation warnings
58 - MINOR: sock: check configured limits at the sock layer, not the listener's
59 - MINOR: connection: add a new flag CO_FL_FDLESS on fd-less connections
60 - MINOR: connection: add conn_fd() to retrieve the FD only when it exists
61 - MINOR: stream: only dump connections' FDs when they are valid
62 - MINOR: connection: use conn_fd() when displaying connection errors
63 - MINOR: connection: skip FD-based syscalls for FD-less connections
64 - MEDIUM: connection: panic when calling FD-specific functions on FD-less conns
65 - MINOR: mux-quic: properly set the flags and name fields
66 - MINOR: connection: rearrange conn_get_src/dst to be a bit more extensible
67 - MINOR: protocol: add get_src() and get_dst() at the protocol level
68 - MINOR: quic-sock: provide a pair of get_src/get_dst functions
69 - MEDIUM: ssl: improve retrieval of ssl_sock_ctx and SSL detection
70 - MEDIUM: ssl: stop using conn->xprt_ctx to access the ssl_sock_ctx
71 - MEDIUM: xprt-quic: implement get_ssl_sock_ctx()
72 - MEDIUM: quic: move conn->qc into conn->handle
73 - BUILD: ssl: fix build warning with previous changes to ssl_sock_ctx
74 - BUILD: ssl: add an unchecked version of __conn_get_ssl_sock_ctx()
75 - MINOR: ssl: refine the error testing for fc_err and fc_err_str
76 - BUG/MINOR: sock: do not double-close the accepted socket on the error path
77 - CI: cirrus: switch to FreeBSD-13.0
78 - MINOR: log: add '~' to frontend when the transport layer provides SSL
79 - BUILD/DEBUG: lru: fix printf format in debug code
80 - BUILD: peers: adjust some printf format to silence cppcheck
81 - BUILD/DEBUG: hpack-tbl: fix format string in standalone debug code
82 - BUILD/DEBUG: hpack: use unsigned int in printf format in debug code
83 - BUILD: halog: fix some incorrect signs in printf formats for integers
84 - BUG/MINOR: h3: fix build with DEBUG_H3
85 - BUG/MINOR: mux-h2: do not send GOAWAY if SETTINGS were not sent
86 - BUG/MINOR: cache: do not display expired entries in "show cache"
87 - BUG/MINOR: mux-h1: Don't release unallocated CS on error path
88 - MINOR: applet: Make .init callback more generic
89 - MINOR: conn-stream: Add flags to set the type of the endpoint
90 - MEDIUM: applet: Set the appctx owner during allocation
91 - MAJOR: conn-stream: Invert conn-stream endpoint and its context
92 - REORG: Initialize the conn-stream by hand in cs_init()
93 - MEDIUM: conn-stream: Add an endpoint structure in the conn-stream
94 - MINOR: conn-stream: Move some CS flags to the endpoint
95 - MEDIUM: conn-stream: Be able to pass endpoint to create a conn-stream
96 - MEDIUM: conn-stream: Pre-allocate endpoint to create CS from muxes and applets
97 - REORG: applet: Uninline appctx_new function
98 - MAJOR: conn-stream: Share endpoint struct between the CS and the mux/applet
99 - MEDIUM: conn-stream: Move remaning flags from CS to endpoint
100 - MINOR: mux-pt: Rely on the endpoint instead of the conn-stream when possible
101 - MINOR: conn-stream: Add ISBACK conn-stream flag
102 - MINOR: conn-stream: Add header file with util functions related to conn-streams
103 - MEDIUM: tree-wide: Use CS util functions instead of SI ones
104 - MINOR: stream-int/txn: Move buffer for L7 retries in the HTTP transaction
105 - CLEANUP: http-ana: Remove http_alloc_txn() function
106 - MINOR: stream-int/stream: Move conn_retries counter in the stream
107 - MINOR: stream: Simplify retries counter calculation
108 - MEDIUM: stream-int/conn-stream: Move src/dst addresses in the conn-stream
109 - MINOR: stream-int/conn-stream: Move half-close timeout in the conn-stream
110 - MEDIUM: stream-int/stream: Use connect expiration instead of SI expiration
111 - MINOR: stream-int/conn-stream: Report error to the CS instead of the SI
112 - MEDIUM: conn-stream: Use endpoint error instead of conn-stream error
113 - MINOR: channel: Use conn-streams as channel producer and consumer
114 - MINOR: stream-int: Remove SI_FL_KILL_CON to rely on conn-stream endpoint only
115 - MINOR: mux-h2/mux-fcgi: Fully rely on CS_EP_KILL_CONN
116 - MINOR: stream-int: Remove SI_FL_NOLINGER/NOHALF to rely on CS flags instead
117 - MINOR: stream-int: Remove SI_FL_DONT_WAKE to rely on CS flags instead
118 - MINOR: stream-int: Remove SI_FL_INDEP_STR to rely on CS flags instead
119 - MINOR: stream-int: Remove SI_FL_SRC_ADDR to rely on stream flags instead
120 - CLEANUP: stream-int: Remove unused SI_FL_CLEAN_ABRT flag
121 - MINOR: stream: Only save previous connection state for the server side
122 - MEDIUM: stream-int: Move SI err_type in the stream
123 - MEDIUM: stream-int/conn-stream: Move stream-interface state in the conn-stream
124 - MINOR: stream-int/stream: Move si_retnclose() in the stream scope
125 - MINOR: stream-int/backend: Move si_connect() in the backend scope
126 - MINOR: stream-int/conn-stream: Move si_conn_ready() in the conn-stream scope
127 - MINOR: conn-stream/connection: Move SHR/SHW modes in the connection scope
128 - MEDIUM: conn-stream: Be prepared to fail to attach a cs to a mux
129 - MEDIUM: stream-int/conn-stream: Handle I/O subscriptions in the conn-stream
130 - MINOR: conn-stream: Rename CS functions dedicated to connections
131 - MINOR: stream-int/conn-stream: Move si_shut* and si_chk* in conn-stream scope
132 - MEDIUM: stream-int/conn-stream: Move si_ops in the conn-stream scope
133 - MINOR: applet: Use the CS to register and release applets instead of SI
134 - MINOR: connection: unconst mux's get_fist_cs() callback function
135 - MINOR: stream-int/connection: Move conn_si_send_proxy() in the connection scope
136 - REORG: stream-int: Export si_cs_recv(), si_cs_send() and si_cs_process()
137 - REORG: stream-int: Move si_is_conn_error() in the header file
138 - REORG: conn-stream: Move cs_shut* and cs_chk* in cs_utils
139 - REORG: conn-stream: Move cs_app_ops in conn_stream.c
140 - MINOR: stream-int-conn-stream: Move si_update_* in conn-stream scope
141 - MINOR: stream-int/stream: Move si_update_both in stream scope
142 - MEDIUM: conn-stream/applet: Add a data callback for applets
143 - MINOR: stream-int/conn-stream: Move stream_int_read0() in the conn-stream scope
144 - MINOR: stream-int/conn-stream: Move stream_int_notify() in the conn-stream scope
145 - MINOR: stream-int/conn-stream: Move si_cs_io_cb() in the conn-stream scope
146 - MINOR: stream-int/conn-stream: Move si_sync_recv/send() in conn-stream scope
147 - MINOR: conn-stream: Move si_conn_cb in the conn-stream scope
148 - MINOR: stream-int/conn-stream Move si_is_conn_error() in the conn-stream scope
149 - MINOR: stream-int/conn-stream: Move si_alloc_ibuf() in the conn-stream scope
150 - CLEANUP: stream-int: Remove unused SI functions
151 - MEDIUM: stream-int/conn-stream: Move blocking flags from SI to CS
152 - MEDIUM: stream-int/conn-stream: Move I/O functions to conn-stream
153 - REORG: stream-int/conn-stream: Move remaining functions to conn-stream
154 - MINOR: stream: Use conn-stream to report server error
155 - MINOR: http-ana: Use CS to perform L7 retries
156 - MEDIUM: stream: Don't use the stream-int anymore in process_stream()
157 - MINOR: conn-stream: Remove the stream-interface from the conn-stream
158 - DEV: flags: No longer dump SI flags
159 - CLEANUP: tree-wide: Remove any ref to stream-interfaces
160 - CLEANUP: conn-stream: Don't export internal functions
161 - DOC: conn-stream: Add comments on functions of the new CS api
162 - MEDIUM: check: Use a new conn-stream for each health-check run
163 - CLEANUP: muxes: Remove MX_FL_CLEAN_ABRT flag
164 - MINOR: conn-stream: Use a dedicated function to conditionally remove a CS
165 - CLEANUP: conn-stream: rename cs_register_applet() to cs_applet_create()
166 - MINOR: muxes: Improve show_fd callbacks to dump endpoint flags
167 - MINOR: mux-h1: Rely on the endpoint instead of the conn-stream when possible
168 - BUG/MINOR: quic: Avoid starting the mux if no ALPN sent by the client
169 - BUILD: debug: mark the __start_mem_stats/__stop_mem_stats symbols as weak
170 - BUILD: initcall: mark the __start_i_* symbols as weak, not global
171 - BUG/MINOR: mux-h2: do not use timeout http-keep-alive on backend side
172 - BUG/MINOR: mux-h2: use timeout http-request as a fallback for http-keep-alive
173 - MINOR: muxes: Don't expect to have a mux without connection in destroy callback
174 - MINOR: muxes: Don't handle proto upgrade for muxes not supporting it
175 - MINOR: muxes: Don't expect to call release function with no mux defined
176 - MINOR: conn-stream: Use unsafe functions to get conn/appctx in cs_detach_endp
177 - BUG/MEDIUM: mux-h1: Don't request more room on partial trailers
178 - BUILD: http-client: Avoid dead code when compiled without SSL support
179 - BUG/MINOR: mux-quic: prevent a crash in session_free on mux.destroy
180 - BUG/MINOR: quic-sock: do not double free session on conn init failure
181 - BUG/MINOR: quic: fix return value for error in start
182 - MINOR: quic: emit CONNECTION_CLOSE on app init error
183 - BUILD: sched: workaround crazy and dangerous warning in Clang 14
184 - BUILD: compiler: use a more portable set of asm(".weak") statements
185 - BUG/MEDIUM: stream: do not abort connection setup too early
186 - CLEANUP: extcheck: do not needlessly preset the server's address/port
187 - MINOR: extcheck: fill in the server's UNIX socket address when known
188 - BUG/MEDIUM: connection: Don't crush context pointer location if it is a CS
189 - BUG/MEDIUM: quic: properly clean frames on stream free
190 - BUG/MEDIUM: fcgi-app: Use http_msg flags to know if C-L header can be added
191 - BUG/MEDIUM: compression: Don't forget to update htx_sl and http_msg flags
192 - MINOR: tcp_sample: clarifying samples support per os, for further expansion.
193 - MINOR: tcp_sample: extend support for get_tcp_info to macOs.
194 - SCRIPTS: announce-release: update the doc's URL
195 - DOC: lua: update a few doc URLs
196 - SCRIPTS: announce-release: add shortened links to pending issues
197
Willy Tarreaud3b4cd12022-04-09 11:31:40 +02001982022/04/09 : 2.6-dev5
199 - DOC: reflect H2 timeout changes
200 - BUG/MEDIUM: mux-fcgi: Properly handle return value of headers/trailers parsing
201 - BUG/MEDIUM: mux-h1: Properly detect full buffer cases during message parsing
202 - BUG/MINOR: log: Initialize the list element when allocating a new log server
203 - BUG/MINOR: samples: add missing context names for sample fetch functions
204 - MINOR: management: add some basic keyword dump infrastructure
205 - MINOR: config: add a function to dump all known config keywords
206 - MINOR: filters: extend flt_dump_kws() to dump to stdout
207 - MINOR: services: extend list_services() to dump to stdout
208 - MINOR: cli: add a new keyword dump function
209 - MINOR: acl: add a function to dump the list of known ACL keywords
210 - MINOR: samples: add a function to list register sample fetch keywords
211 - MINOR: sample: list registered sample converter functions
212 - MINOR: tools: add strordered() to check whether strings are ordered
213 - MINOR: action: add a function to dump the list of actions for a ruleset
214 - MINOR: config: alphanumerically sort config keywords output
215 - MINOR: sample: alphanumerically sort sample & conv keyword dumps
216 - MINOR: acl: alphanumerically sort the ACL dump
217 - MINOR: cli: alphanumerically sort the dump of supported commands
218 - MINOR: filters: alphabetically sort the list of filter names
219 - MINOR: services: alphabetically sort service names
220 - MEDIUM: httpclient/lua: be stricter with httpclient parameters
221 - MINOR: ssl: split the cert commit io handler
222 - MINOR: ssl: move the cert_exts and the CERT_TYPE enum
223 - MINOR: ssl: simplify the certificate extensions array
224 - MINOR: ssl: export ckch_inst_rebuild()
225 - MINOR: ssl: add "crt" in the cert_exts array
226 - MINOR: ssl/lua: CertCache.set() allows to update an SSL certificate file
227 - BUILD: ssl/lua: CacheCert needs OpenSSL
228 - DOC: lua: CertCache class documentation
229 - BUG/MEDIUM: quic: do not use qcs from quic_stream on ACK parsing
230 - MINOR: mux-quic: return qcs instance from qcc_get_qcs
231 - MINOR: mux-quic: reorganize qcs free
232 - MINOR: mux-quic: define release app-ops
233 - BUG/MINOR: h3: release resources on close
234 - BUG/MINOR: mux-quic: ensure to free all qcs on MUX release
235 - CLEANUP: quic: complete comment on qcs_try_to_consume
236 - MINOR: quic: implement stream descriptor for transport layer
237 - MEDIUM: quic: move transport fields from qcs to qc_conn_stream
238 - MEDIUM: mux-quic: remove qcs tree node
239 - BUG/MINOR: cli/stream: fix "shutdown session" to iterate over all threads
240 - DOC: management: add missing dot in 9.4.1
241 - BUG/MAJOR: mux_pt: always report the connection error to the conn_stream
242 - DOC: remove double blanks in configuration.txt
243 - CI: github actions: update OpenSSL to 3.0.2
244 - BUG/MEDIUM: quic: Possible crash in ha_quic_set_encryption_secrets()
245 - CLEANUP: quic: Remove all atomic operations on quic_conn struct
246 - CLEANUP: quic: Remove all atomic operations on packet number spaces
247 - MEDIUM: quic: Send ACK frames asap
248 - BUG/MINOR: quic: Missing probing packets when coalescing
249 - BUG/MINOR: quic: Discard Initial packet number space only one time
250 - MINOR: quic: Do not display any timer value from process_timer()
251 - BUG/MINOR: quic: Do not probe from an already probing packet number space
252 - BUG/MINOR: quic: Non duplicated frames upon fast retransmission
253 - BUG/MINOR: quic: Too much prepared retransmissions due to anti-amplification
254 - MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
255 - MINOR: quic: Add traces about list of frames
256 - BUG/MINOR: h3: Missing wait event struct field initialization
257 - BUG/MINOR: quic: QUIC TLS secrets memory leak
258 - BUG/MINOR: quic: Missing ACK range deallocations
259 - BUG/MINOR: quic: Missing TX packet deallocations
260 - CLEANUP: hpack: be careful about integer promotion from uint8_t
261 - OPTIM: hpack: read 32 bits at once when possible.
262 - MEDIUM: ssl: allow loading of a directory with the ca-file directive
263 - BUG/MINOR: ssl: continue upon error when opening a directory w/ ca-file
264 - MINOR: ssl: ca-file @system-ca loads the system trusted CA
265 - DOC: configuration: add the ca-file changes
266 - MINOR: sample: converter: Add add_item convertor
267 - BUG/MINOR: ssl: handle X509_get_default_cert_dir() returning NULL
268 - BUG/MINOR: ssl/cli: Remove empty lines from CLI output
269 - MINOR: httpclient: enable request buffering
270 - MEDIUM: httpclient: enable l7-retry
271 - BUG/MINOR: httpclient: end callback in applet release
272 - MINOR: quic: Add draining connection state.
273 - MINOR: quic: Add closing connection state
274 - BUG/MEDIUM: quic: ensure quic-conn survives to the MUX
275 - CLEANUP: quic: use static qualifer on quic_close
276 - CLEANUP: mux-quic: remove unused QC_CF_CC_RECV
277 - BUG/MINOR: fix memleak on quic-conn streams cleaning
278 - MINOR: mux-quic: factorize conn-stream attach
279 - MINOR: mux-quic: adjust timeout to accelerate closing
280 - MINOR: mux-quic: define is_active app-ops
281 - MINOR: mux-quic: centralize send operations in qc_send
282 - MEDIUM: mux-quic: report CO_FL_ERROR on send
283 - MEDIUM: mux-quic: report errors on conn-streams
284 - MEDIUM: quic: report closing state for the MUX
285 - BUG/MINOR: fcgi-app: Don't add C-L header on response to HEAD requests
286 - BUG/MEDIUM: stats: Be sure to never set EOM flag on an empty HTX message
287 - BUG/MEDIUM: hlua: Don't set EOM flag on an empty HTX message in HTTP applet
288 - BUG/MEDIUM: promex: Be sure to never set EOM flag on an empty HTX message
289 - BUG/MEDIUM: mux-h1: Set outgoing message to DONE when payload length is reached
290 - BUG/MINOR: http_client: Don't add input data on an empty request buffer
291 - BUG/MEDIUM: http-conv: Fix url_enc() to not crush const samples
292 - BUG/MEDIUM: http-act: Don't replace URI if path is not found or invalid
293 - CLEANUP: mux-quic: remove uneeded TODO in qc_detach
294 - BUG/MEDIUM: mux-quic: properly release conn-stream on detach
295 - BUG/MINOR: quic: set the source not the destination address on accept()
296 - BUG/MEDIUM: quic: Possible crash from quic_free_arngs()
297 - MINOR: quic_tls: Add reusable cipher contexts to QUIC TLS contexts
298 - MINOR: quic_tls: Stop hardcoding cipher IV lengths
299 - CLEANUP: quic: Do not set any cipher/group from ssl_quic_initial_ctx()
300 - MINOR: quic: Add short packet key phase bit values to traces
301 - MINOR: quic_tls: Make key update use of reusable cipher contexts
302 - BUG/MINOR: opentracing: setting the return value in function flt_ot_var_set()
303 - BUG/BUILD: opentracing: fixed OT_DEFINE variable setting
304 - EXAMPLES: opentracing: refined shell scripts for testing filter performance
305 - DOC: opentracing: corrected comments in function descriptions
306 - CLEANUP: opentracing: removed unused function flt_ot_var_unset()
307 - CLEANUP: opentracing: removed unused function flt_ot_var_get()
308 - Revert "MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'"
309 - MINOR: opentracing: only takes the variables lock on shared entries
310 - CLEANUP: opentracing: added flt_ot_smp_init() function
311 - CLEANUP: opentracing: added variable to store variable length
312 - MINOR: opentracing: improved normalization of context variable names
313 - DEBUG: opentracing: show return values of all functions in the debug output
314 - CLEANUP: opentracing: added FLT_OT_PARSE_INVALID_enum enum
315 - DEBUG: opentracing: display the contents of the err variable after setting
316 - MAJOR: opentracing: reenable usage of vars to transmit opentracing context
317 - Revert "BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time"
318 - MEDIUM: global: Add a "close-spread-time" option to spread soft-stop on time window
319
Willy Tarreau0541c2b2022-03-26 08:31:33 +01003202022/03/26 : 2.6-dev4
321 - BUG/MEDIUM: httpclient: don't consume data before it was analyzed
322 - CLEANUP: htx: remove unused co_htx_remove_blk()
323 - BUG/MINOR: httpclient: consume partly the blocks when necessary
324 - BUG/MINOR: httpclient: remove the UNUSED block when parsing headers
325 - BUG/MEDIUM: httpclient: must manipulate head, not first
326 - REGTESTS: fix the race conditions in be2hex.vtc
327 - BUG/MEDIUM: quic: Blocked STREAM when retransmitted
328 - BUG/MAJOR: quic: Possible crash with full congestion control window
329 - BUG/MINOR: httpclient/lua: stuck when closing without data
330 - BUG/MEDIUM: applet: Don't call .release callback function twice
331 - BUG/MEDIUM: cli/debug: Properly get the stream-int in all debug I/O handlers
332 - BUG/MEDIUM: sink: Properly get the stream-int in appctx callback functions
333 - DEV: udp: switch parser to getopt() instead of positional arguments
334 - DEV: udp: add support for random packet corruption
335 - MINOR: server: export server_parse_sni_expr() function
336 - BUG/MINOR: httpclient: send the SNI using the host header
337 - BUILD: httpclient: fix build without SSL
338 - BUG/MINOR: server/ssl: free the SNI sample expression
339 - BUG/MINOR: logs: fix logsrv leaks on clean exit
340 - MINOR: actions: add new function free_act_rule() to free a single rule
341 - BUG/MINOR: tcp-rules: completely free incorrect TCP rules on error
342 - BUG/MINOR: http-rules: completely free incorrect TCP rules on error
343 - BUG/MINOR: httpclient: only check co_data() instead of HTTP_MSG_DATA
344 - BUG/MINOR: httpclient: process the response when received before the end of the request
345 - BUG/MINOR: httpclient: CF_SHUTW_NOW should be tested with channel_is_empty()
346 - CI: github actions: switch to LibreSSL-3.5.1
347 - BUG/MEDIUM: mux-h1: only turn CO_FL_ERROR to CS_FL_ERROR with empty ibuf
348 - BUG/MEDIUM: stream-int: do not rely on the connection error once established
349 - BUG/MEDIUM: trace: avoid race condition when retrieving session from conn->owner
350 - MEDIUM: mux-h2: slightly relax timeout management rules
351 - BUG/MEDIUM: mux-h2: make use of http-request and keep-alive timeouts
352 - BUG/MINOR: rules: Initialize the list element when allocating a new rule
353 - BUG/MINOR: http-rules: Don't free new rule on allocation failure
354 - DEV: coccinelle: Fix incorrect replacement in ist.cocci
355 - CLEANUP: Reapply ist.cocci with `--include-headers-for-types --recursive-includes`
356 - DEV: coccinelle: Add a new pattern to ist.cocci
357 - CLEANUP: Reapply ist.cocci
358 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+
359 - MINOR: quic: Code factorization (TX buffer reuse)
360 - CLEANUP: quic: "largest_acked_pn" pktns struc member moving
361 - MEDIUM: quic: Limit the number of ACK ranges
362 - MEDIUM: quic: Rework of the TX packets memory handling
363 - BUG/MINOR: quic: Possible crash in parse_retry_token()
364 - BUG/MINOR: quic: Possible leak in quic_build_post_handshake_frames()
365 - BUG/MINOR: quic: Unsent frame because of qc_build_frms()
366 - BUG/MINOR: mux-quic: Access to empty frame list from qc_send_frames()
367 - BUG/MINOR: mux-quic: Missing I/O handler events initialization
368 - BUG/MINOR: quic: Missing TX packet initializations
369 - BUG/MINOR: quic: 1RTT packets ignored after mux was released
370 - BUG/MINOR: quic: Incorrect peer address validation
371 - BUG/MINOR: quic: Non initialized variable in quic_build_post_handshake_frames()
372 - BUG/MINOR: quic: Wrong TX packet related counters handling
373 - MEDIUM: mqtt: support mqtt_is_valid and mqtt_field_value converters for MQTTv3.1
374 - DOC: config: Explictly add supported MQTT versions
375 - MINOR: quic: Add traces about stream TX buffer consumption
376 - MINOR: quic: Add traces in qc_set_timer() (scheduling)
377 - CLEANUP: mux-quic: change comment style to not mess with git conflict
378 - CLEANUP: mux-quic: adjust comment for coding-style
379 - MINOR: mux-quic: complete trace when stream is not found
380 - MINOR: mux-quic: add comments for send functions
381 - MINOR: mux-quic: use shorter name for flow-control fields
382 - MEDIUM: mux-quic: respect peer bidirectional stream data limit
383 - MEDIUM: mux-quic: respect peer connection data limit
384 - MINOR: mux-quic: support MAX_STREAM_DATA frame parsing
385 - MINOR: mux-quic: support MAX_DATA frame parsing
386 - BUILD: stream-int: avoid a build warning when DEBUG is empty
387 - BUG/MINOR: quic: Wrong buffer length passed to generate_retry_token()
388 - BUG/MINOR: tools: fix url2sa return value with IPv4
389 - MINOR: mux-quic: convert fin on push-frame as boolean
390 - BUILD: quic: add missing includes
391 - REORG: quic: use a dedicated quic_loss.c
392 - MINOR: mux-quic: declare the qmux trace module
393 - MINOR: mux-quic: replace printfs by traces
394 - MINOR: mux-quic: add trace event for frame sending
395 - MINOR: mux-quic: add trace event for qcs_push_frame
396 - MINOR: mux-quic: activate qmux traces on stdout via macro
397 - BUILD: qpack: fix unused value when not using DEBUG_HPACK
398 - CLEANUP: qpack: suppress by default stdout traces
399 - CLEANUP: h3: suppress by default stdout traces
400 - BUG/MINOR: tools: url2sa reads too far when no port nor path
401
Willy Tarreaubc8b7a12022-03-11 18:09:24 +01004022022/03/11 : 2.6-dev3
403 - DEBUG: rename WARN_ON_ONCE() to CHECK_IF()
404 - DEBUG: improve BUG_ON output message accuracy
405 - DEBUG: implement 4 levels of choices between warn and crash.
406 - DEBUG: add two new macros to enable debugging in hot paths
407 - DEBUG: buf: replace some sensitive BUG_ON() with BUG_ON_HOT()
408 - DEBUG: buf: add BUG_ON_HOT() to most buffer management functions
409 - MINOR: channel: don't use co_set_data() to decrement output
410 - DEBUG: channel: add consistency checks using BUG_ON_HOT() in some key functions
411 - MINOR: conn-stream: Improve API to have safe/unsafe accessors
412 - MEDIUM: tree-wide: Use unsafe conn-stream API when it is relevant
413 - CLEANUP: stream-int: Make si_cs_send() function static
414 - REORG: stream-int: Uninline si_sync_recv() and make si_cs_recv() private
415 - BUG/MEDIUM: mux-fcgi: Don't rely on SI src/dst addresses for FCGI health-checks
416 - BUG/MEDIUM: htx: Fix a possible null derefs in htx_xfer_blks()
417 - REGTESTS: fix the race conditions in normalize_uri.vtc
418 - DEBUG: stream-int: Fix BUG_ON used to test appctx in si_applet_ops callbacks
419 - BUILD: debug: fix build warning on older compilers around DEBUG_STRICT_ACTION
420 - CLEANUP: connection: Indicate unreachability to the compiler in conn_recv_proxy
421 - MINOR: connection: Transform safety check in PROXYv2 parsing into BUG_ON()
422 - DOC: install: it's DEBUG_CFLAGS, not DEBUG, which is set to -g
423 - DOC: install: describe the DEP variable
424 - DOC: install: describe how to choose options used in the DEBUG variable
425 - MINOR: queue: Replace if() + abort() with BUG_ON()
426 - CLEANUP: adjust indentation in bidir STREAM handling function
427 - MINOR: quic: simplify copy of STREAM frames to RX buffer
428 - MINOR: quic: handle partially received buffered stream frame
429 - MINOR: mux-quic: define flag for last received frame
430 - BUG/MINOR: quic: support FIN on Rx-buffered STREAM frames
431 - MEDIUM: quic: rearchitecture Rx path for bidirectional STREAM frames
432 - REGTESTS: fix the race conditions in secure_memcmp.vtc
433 - CLEANUP: stream: Remove useless tests on conn-stream in stream_dump()
434 - BUILD: ssl: another build warning on LIBRESSL_VERSION_NUMBER
435 - MINOR: quic: Ensure PTO timer is not set in the past
436 - MINOR: quic: Post handshake I/O callback switching
437 - MINOR: quic: Drop the packets of discarded packet number spaces
438 - CLEANUP: quic: Useless tests in qc_try_rm_hp()
439 - CLEANUP: quic: Indentation fix in qc_prep_pkts()
440 - MINOR: quic: Assemble QUIC TLS flags at the same level
441 - BUILD: conn_stream: avoid null-deref warnings on gcc 6
442 - BUILD: connection: do not declare register_mux_proto() inline
443 - BUILD: http_rules: do not declare http_*_keywords_registre() inline
444 - BUILD: trace: do not declare trace_registre_source() inline
445 - BUILD: tcpcheck: do not declare tcp_check_keywords_register() inline
446 - DEBUG: reduce the footprint of BUG_ON() calls
447 - BUG/MEDIUM: httpclient/lua: infinite appctx loop with POST
448 - BUG/MINOR: pool: always align pool_heads to 64 bytes
449 - DEV: udp: add a tiny UDP proxy for testing
450 - DEV: udp: implement pseudo-random reordering/loss
451 - DEV: udp: add an optional argument to set the prng seed
452 - BUG/MINOR: quic: fix segfault on CC if mux uninitialized
453 - BUG/MEDIUM: pools: fix ha_free() on area in the process of being freed
454 - CLEANUP: tree-wide: remove a few rare non-ASCII chars
455 - CI: coverity: simplify debugging options
456 - CLEANUP: quic: complete ABORT_NOW with a TODO comment
457 - MINOR: quic: qc_prep_app_pkts() implementation
458 - MINOR: quic: Send short packet from a frame list
459 - MINOR: quic: Make qc_build_frms() build ack-eliciting frames from a list
460 - MINOR: quic: Export qc_send_app_pkts()
461 - MINOR: mux-quic: refactor transport parameters init
462 - MINOR: mux-quic: complete functions to detect stream type
463 - MINOR: mux-quic: define new unions for flow-control fields
464 - MEDIUM: mux-quic: use direct send transport API for STREAMs
465 - MINOR: mux-quic: retry send opportunistically for remaining frames
466 - MEDIUM: mux-quic: implement MAX_STREAMS emission for bidir streams
467 - BUILD: fix kFreeBSD build.
468 - MINOR: quic: Retry on qc_build_pkt() failures
469 - BUG/MINOR: quic: Missing recovery start timer reset
470 - CLEANUP: quic: Remove QUIC path manipulations out of the congestion controller
471 - MINOR: quic: Add a "slow start" callback to congestion controller
472 - MINOR: quic: Persistent congestion detection outside of controllers
473 - CLEANUP: quic: Remove useless definitions from quic_cc_event struct
474 - BUG/MINOR: quic: Confusion betwen "in_flight" and "prep_in_flight" in quic_path_prep_data()
475 - MINOR: quic: More precise window update calculation
476 - CLEANUP: quic: Remove window redundant variable from NewReno algorithm state struct
477 - MINOR: quic: Add quic_max_int_by_size() function
478 - BUG/MAJOR: quic: Wrong quic_max_available_room() returned value
479 - MINOR: pools: add a new global option "no-memory-trimming"
480 - BUG/MINOR: add missing modes in proxy_mode_str()
481 - BUG/MINOR: cli: shows correct mode in "show sess"
482 - BUG/MEDIUM: quic: do not drop packet on duplicate stream/decoding error
483 - MINOR: stats: Add dark mode support for socket rows
484 - BUILD: fix recent build breakage of freebsd caused by kFreeBSD build fix
485 - BUG/MINOR: httpclient: Set conn-stream/channel EOI flags at the end of request
486 - BUG/MINOR: hlua: Set conn-stream/channel EOI flags at the end of request
487 - BUG/MINOR: stats: Set conn-stream/channel EOI flags at the end of request
488 - BUG/MINOR: cache: Set conn-stream/channel EOI flags at the end of request
489 - BUG/MINOR: promex: Set conn-stream/channel EOI flags at the end of request
490 - BUG/MEDIUM: stream: Use the front analyzers for new listener-less streams
491 - DEBUG: cache: Update underlying buffer when loading HTX message in cache applet
492 - BUG/MEDIUM: mcli: Properly handle errors and timeouts during reponse processing
493 - DEBUG: stream: Add the missing descriptions for stream trace events
494 - DEBUG: stream: Fix stream trace message to print response buffer state
495 - MINOR: proxy: Store monitor_uri as a `struct ist`
496 - MINOR: proxy: Store fwdfor_hdr_name as a `struct ist`
497 - MINOR: proxy: Store orgto_hdr_name as a `struct ist`
498 - MEDIUM: proxy: Store server_id_hdr_name as a `struct ist`
499 - CLEANUP: fcgi: Replace memcpy() on ist by istcat()
500 - CLEANUP: fcgi: Use `istadv()` in `fcgi_strm_send_params`
501 - BUG/MAJOR: mux-pt: Always destroy the backend connection on detach
502 - DOC: sample fetch methods: move distcc_* to the right locations
503 - MINOR: rules: record the last http/tcp rule that gave a final verdict
504 - MINOR: stream: add "last_rule_file" and "last_rule_line" samples
505 - BUG/MINOR: session: fix theoretical risk of memleak in session_accept_fd()
506 - MINOR: quic: Add max_idle_timeout advertisement handling
507 - MEDIUM: quic: Remove the QUIC connection reference counter
508 - BUG/MINOR: quic: ACK_REQUIRED and ACK_RECEIVED flag collision
509 - BUG/MINOR: quic: Missing check when setting the anti-amplification limit as reached
510 - MINOR: quic: Add a function to compute the current PTO
511 - MEDIUM: quic: Implement the idle timeout feature
512 - BUG/MEDIUM: quic: qc_prep_app_pkts() retries on qc_build_pkt() failures
513 - CLEANUP: quic: Comments fix for qc_prep_(app)pkts() functions
514 - MINOR: mux-quic: prevent push frame for unidir streams
515 - MINOR: mux-quic: improve opportunistic retry sending for STREAM frames
516 - MINOR: quic: implement sending confirmation
517 - MEDIUM: mux-quic: improve bidir STREAM frames sending
518 - MEDIUM: check: do not auto configure SSL/PROXY for dynamic servers
519 - REGTESTS: server: test SSL/PROXY with checks for dynamic servers
520 - MEDIUM: server: remove experimental-mode for dynamic servers
521 - BUG/MINOR: buffer: fix debugging condition in b_peek_varint()
522
Willy Tarreau3b1d1902022-02-25 17:12:11 +01005232022/02/25 : 2.6-dev2
524 - DOC: management: rework the Master CLI section
525 - DOC: management: add expert and experimental mode in 9.4.1
526 - CLEANUP: cleanup a commentary in pcli_parse_request()
527 - BUG/MINOR: mworker/cli: don't display help on master applet
528 - MINOR: mworker/cli: mcli-debug-mode enables every command
529 - MINOR: mworker/cli: add flags in the prompt
530 - BUG/MINOR: httpclient: Revisit HC request and response buffers allocation
531 - BUG/MEDIUM: httpclient: Xfer the request when the stream is created
532 - MINOR: httpclient: Don't limit data transfer to 1024 bytes
533 - BUILD: ssl: adjust guard for X509_get_X509_PUBKEY(x)
534 - REGTESTS: ssl: skip show_ssl_ocspresponse.vtc when BoringSSL is used
535 - MINOR: quic: Do not modify a marked as consumed datagram
536 - MINOR: quic: Wrong datagram buffer passed to quic_lstnr_dgram_dispatch()
537 - MINOR: quic: Remove a useless test in quic_get_dgram_dcid()
538 - BUG/MINOR: ssl: Remove empty lines from "show ssl ocsp-response <id>" output
539 - CLEANUP: ssl: Remove unused ssl_sock_create_cert function
540 - MINOR: ssl: Use high level OpenSSL APIs in sha2 converter
541 - MINOR: ssl: Remove EC_KEY related calls when preparing SSL context
542 - REGTESTS: ssl: Add test for "curves" and "ecdhe" SSL options
543 - MINOR: ssl: Remove EC_KEY related calls when creating a certificate
544 - REGTESTS: ssl: Add test for "generate-certificates" SSL option
545 - MINOR: ssl: Remove call to SSL_CTX_set_tlsext_ticket_key_cb with OpenSSLv3
546 - MINOR: ssl: Remove call to HMAC_Init_ex with OpenSSLv3
547 - MINOR: h3: hardcode the stream id of control stream
548 - MINOR: mux-quic: remove quic_transport_params_update
549 - MINOR: quic: rename local tid variable
550 - MINOR: quic: remove unused xprt rcv_buf operation
551 - MINOR: quic: take out xprt snd_buf operation
552 - CI: enable QUIC for Coverity scan
553 - BUG/MINOR: mworker: does not erase the pidfile upon reload
554 - MINOR: ssl: Remove call to ERR_func_error_string with OpenSSLv3
555 - MINOR: ssl: Remove call to ERR_load_SSL_strings with OpenSSLv3
556 - REGTESTS: ssl: Add tests for DH related options
557 - MINOR: ssl: Create HASSL_DH wrapper structure
558 - MINOR: ssl: Add ssl_sock_get_dh_from_bio helper function
559 - MINOR: ssl: Factorize ssl_get_tmp_dh and append a cbk to its name
560 - MINOR: ssl: Add ssl_sock_set_tmp_dh helper function
561 - MINOR: ssl: Add ssl_sock_set_tmp_dh_from_pkey helper function
562 - MINOR: ssl: Add ssl_new_dh_fromdata helper function
563 - MINOR: ssl: Build local DH of right size when needed
564 - MINOR: ssl: Set default dh size to 2048
565 - MEDIUM: ssl: Replace all DH objects by EVP_PKEY on OpenSSLv3 (via HASSL_DH type)
566 - MINOR: ssl: Remove calls to SSL_CTX_set_tmp_dh_callback on OpenSSLv3
567 - MINOR: quic: Remove an RX buffer useless lock
568 - MINOR: quic: Variable used before being checked in ha_quic_add_handshake_data()
569 - MINOR: quic: EINTR error ignored
570 - MINOR: quic: Potential overflow expression in qc_parse_frm()
571 - MINOR: quic: Possible overflow in qpack_get_varint()
572 - CLEANUP: h3: Unreachable target in h3_uqs_init()
573 - MINOR: quic: Possible memleak in qc_new_conn()
574 - MINOR: quic: Useless statement in quic_crypto_data_cpy()
575 - BUG/MEDIUM: pools: ensure items are always large enough for the pool_cache_item
576 - BUG/MINOR: pools: always flush pools about to be destroyed
577 - CLEANUP: pools: don't needlessly set a call mark during refilling of caches
578 - DEBUG: pools: add extra sanity checks when picking objects from a local cache
579 - DEBUG: pools: let's add reverse mapping from cache heads to thread and pool
580 - DEBUG: pools: replace the link pointer with the caller's address on pool_free()
581 - BUG/MAJOR: sched: prevent rare concurrent wakeup of multi-threaded tasks
582 - MINOR: quic: use a global dghlrs for each thread
583 - BUG/MEDIUM: quic: fix crash on CC if mux not present
584 - MINOR: qpack: fix typo in trace
585 - BUG/MINOR: quic: fix FIN stream signaling
586 - BUG/MINOR: h3: fix the header length for QPACK decoding
587 - MINOR: h3: remove transfer-encoding header
588 - MINOR: h3: add documentation on h3_decode_qcs
589 - MINOR: h3: set properly HTX EOM/BODYLESS on HEADERS parsing
590 - MINOR: mux-quic: implement rcv_buf
591 - MINOR: mux-quic: set EOS on rcv_buf
592 - MINOR: h3: set CS_FL_NOT_FIRST
593 - MINOR: h3: report frames bigger than rx buffer
594 - MINOR: h3: extract HEADERS parsing in a dedicated function
595 - MINOR: h3: implement DATA parsing
596 - MINOR: quic: Wrong smoothed rtt initialization
597 - MINOR: quic: Wrong loss delay computation
598 - MINOR: quic: Code never reached in qc_ssl_sess_init()
599 - MINOR: quic: ha_quic_set_encryption_secrets without server specific code
600 - MINOR: quic: Avoid warning about NULL pointer dereferences
601 - MINOR: quic: Useless test in quic_lstnr_dghdlr()
602 - MINOR: quic: Non checked returned value for cs_new() in hq_interop_decode_qcs()
603 - MINOR: h3: Dead code in h3_uqs_init()
604 - MINOR: quic: Non checked returned value for cs_new() in h3_decode_qcs()
605 - MINOR: quic: Possible frame parsers array overrun
606 - MINOR: quic: Do not retransmit too much packets.
607 - MINOR: quic: Move quic_rxbuf_pool pool out of xprt part
608 - MINOR: h3: report error on HEADERS/DATA parsing
609 - BUG/MINOR: jwt: Double free in deinit function
610 - BUG/MINOR: jwt: Missing pkey free during cleanup
611 - BUG/MINOR: jwt: Memory leak if same key is used in multiple jwt_verify calls
612 - BUG/MINOR: httpclient/cli: display junk characters in vsn
613 - MINOR: h3: remove unused return value on decode_qcs
614 - BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies
615 - BUG/MAJOR: spoe: properly detach all agents when releasing the applet
616 - REGTESTS: server: close an occasional race on dynamic_server_ssl.vtc
617 - REGTESTS: peers: leave a bit more time to peers to synchronize
618 - BUG/MEDIUM: h2/hpack: fix emission of HPACK DTSU after settings change
619 - BUG/MINOR: mux-h2: update the session's idle delay before creating the stream
620 - BUG/MINOR: httpclient: reinit flags in httpclient_start()
621 - BUG/MINOR: mailers: negotiate SMTP, not ESMTP
622 - MINOR: httpclient: sets an alternative destination
623 - MINOR: httpclient/lua: add 'dst' optionnal field
624 - BUG/MINOR: ssl: Add missing return value check in ssl_ocsp_response_print
625 - BUG/MINOR: ssl: Fix leak in "show ssl ocsp-response" CLI command
626 - BUG/MINOR: ssl: Missing return value check in ssl_ocsp_response_print
627 - CLEANUP: httpclient/cli: fix indentation alignment of the help message
628 - BUG/MINOR: tools: url2sa reads ipv4 too far
629 - BUG/MEDIUM: httpclient: limit transfers to the maximum available room
630 - DEBUG: buffer: check in __b_put_blk() whether the buffer room is respected
631 - MINOR: mux-quic: fix a possible null dereference in qc_timeout_task
632 - BUG/MEDIUM: htx: Be sure to have a buffer to perform a raw copy of a message
633 - BUG/MEDIUM: mux-h1: Don't wake h1s if mux is blocked on lack of output buffer
634 - BUG/MAJOR: mux-h2: Be sure to always report HTX parsing error to the app layer
635 - DEBUG: stream-int: Check CS_FL_WANT_ROOM is not set with an empty input buffer
636 - MINOR: quic: do not modify offset node if quic_rx_strm_frm in tree
637 - MINOR: h3: fix compiler warning variable set but not used
638 - MINOR: mux-quic: fix uninitialized return on qc_send
639 - MINOR: quic: fix handling of out-of-order received STREAM frames
640 - MINOR: pools: mark most static pool configuration variables as read-mostly
641 - CLEANUP: pools: remove the now unused pool_is_crowded()
642 - REGTESTS: fix the race conditions in 40be_2srv_odd_health_checks
643 - BUG/MEDIUM: stream: Abort processing if response buffer allocation fails
644 - MINOR: httpclient/lua: ability to set a server timeout
645 - BUG/MINOR: httpclient/lua: missing pop for new timeout parameter
646 - DOC: httpclient/lua: fix the type of the dst parameter
647 - CLEANUP: httpclient: initialize the client in stage INIT not REGISTER
648 - CLEANUP: muxes: do not use a dynamic trash in list_mux_protos()
649 - CLEANUP: vars: move the per-process variables initialization to vars.c
650 - CLEANUP: init: remove the ifdef on HAPROXY_MEMMAX
651 - MINOR: pools: disable redundant poisonning on pool_free()
652 - MINOR: pools: introduce a new pool_debugging global variable
653 - MINOR: pools: switch the fail-alloc test to runtime only
654 - MINOR: pools: switch DEBUG_DONT_SHARE_POOLS to runtime
655 - MINOR: pools: add a new debugging flag POOL_DBG_COLD_FIRST
656 - MINOR: pools: add a new debugging flag POOL_DBG_INTEGRITY
657 - MINOR: pools: make the global pools a runtime option.
658 - MEDIUM: pools: replace CONFIG_HAP_POOLS with a runtime "NO_CACHE" flag.
659 - MINOR: pools: store the allocated size for each pool
660 - MINOR: pools: get rid of POOL_EXTRA
661 - MINOR: pools: replace DEBUG_POOL_TRACING with runtime POOL_DBG_CALLER
662 - MINOR: pools: replace DEBUG_MEMORY_POOLS with runtime POOL_DBG_TAG
663 - MINOR: pools: add a debugging flag for memory poisonning option
664 - MEDIUM: initcall: move STG_REGISTER earlier
665 - MEDIUM: init: split the early initialization in its own function
666 - MINOR: init: extract args parsing to their own function
667 - MEDIUM: init: handle arguments earlier
668 - MINOR: pools: delegate parsing of command line option -dM to a new function
669 - MINOR: pools: support setting debugging options using -dM
670 - BUILD: makefile: enable both DEBUG_STRICT and DEBUG_MEMORY_POOLS by default
671 - CI: github: enable pool debugging by default
672 - DOC: Fix usage/examples of deprecated ACLs
673 - DOC: internal: update the pools API to mention boot-time settings
674 - DOC: design: add design thoughts for later simplification of the pools
675 - DOC: design: commit the temporary design notes on thread groups
676 - MINOR: stream-int: Handle appctx case first when releasing the endpoint
677 - MINOR: connection: Be prepared to handle conn-stream with no connection
678 - MINOR: stream: Handle appctx case first when creating a new stream
679 - MINOR: connection: Add a function to detach a conn-stream from the connection
680 - MINOR: stream-int: Add function to reset a SI endpoint
681 - MINOR: stream-int: Add function to attach a connection to a SI
682 - MINOR: stream-int: Be able to allocate a CS without connection
683 - MEDIUM: stream: No longer release backend conn-stream on connection retry
684 - MEDIUM: stream: Allocate backend CS when the stream is created
685 - REORG: conn_stream: move conn-stream stuff in dedicated files
686 - MEDIUM: conn-stream: No longer access connection field directly
687 - MEDIUM: conn-stream: Be prepared to use an appctx as conn-stream endpoint
688 - MAJOR: conn_stream/stream-int: move the appctx to the conn-stream
689 - MEDIUM: applet: Set the conn-stream as appctx owner instead of the stream-int
690 - MEDIUM: conn_stream: Add a pointer to the app object into the conn-stream
691 - MINOR: stream: Add pointer to front/back conn-streams into stream struct
692 - MINOR: stream: Slightly rework stream_new to separate CS/SI initialization
693 - MINOR: stream-int: Always access the stream-int via the conn-stream
694 - MINOR: backend: Always access the stream-int via the conn-stream
695 - MINOR: stream: Always access the stream-int via the conn-stream
696 - MINOR: http-ana: Always access the stream-int via the conn-stream
697 - MINOR: cli: Always access the stream-int via the conn-stream
698 - MINOR: log: Always access the stream-int via the conn-stream
699 - MINOR: frontend: Always access the stream-int via the conn-stream
700 - MINOR: proxy: Always access the stream-int via the conn-stream
701 - MINOR: peers: Always access the stream-int via the conn-stream
702 - MINOR: debug: Always access the stream-int via the conn-stream
703 - MINOR: hlua: Always access the stream-int via the conn-stream
704 - MINOR: cache: Always access the stream-int via the conn-stream
705 - MINOR: dns: Always access the stream-int via the conn-stream
706 - MINOR: http-act: Always access the stream-int via the conn-stream
707 - MINOR: httpclient: Always access the stream-int via the conn-stream
708 - MINOR: tcp-act: Always access the stream-int via the conn-stream
709 - MINOR: sink: Always access the stream-int via the conn-stream
710 - MINOR: conn-stream: Rename cs_detach() to cs_detach_endp()
711 - CLEANUP: conn-stream: Don't export conn-stream pool
712 - MAJOR: stream/conn_stream: Move the stream-interface into the conn-stream
713 - CLEANUP: stream-int: rename si_reset() to si_init()
714 - MINOR: conn-stream: Release a CS when both app and endp are detached
715 - MINOR: stream: Don't destroy conn-streams but detach app and endp
716 - MAJOR: check: Use a persistent conn-stream for health-checks
717 - CLEANUP: conn-stream: Remove cs_destroy()
718 - CLEANUP: backend: Don't export connect_server anymore
719 - BUG/MINOR: h3/hq_interop: Fix CS and stream creation
720 - BUILD: tree-wide: Avoid warnings about undefined entities retrieved from a CS
721 - BUG/MINOR: proxy: preset the error message pointer to NULL in parse_new_proxy()
722 - BUG/MEDIUM: quic: fix received ACK stream calculation
723 - BUILD: stream: fix build warning with older compilers
724 - BUG/MINOR: debug: fix get_tainted() to properly read an atomic value
725 - DEBUG: move the tainted stuff to bug.h for easier inclusion
726 - DEBUG: cleanup back trace generation
727 - DEBUG: cleanup BUG_ON() configuration
728 - DEBUG: mark ABORT_NOW() as unreachable
729 - DBEUG: add a new WARN_ON() macro
730 - DEBUG: make the _BUG_ON() macro return the condition
731 - DEBUG: add a new WARN_ON_ONCE() macro
732 - DEBUG: report BUG_ON() and WARN_ON() in the tainted flags
733 - MINOR: quic: adjust buffer handling for STREAM transmission
734 - MINOR: quic: liberate the TX stream buffer after ACK processing
735 - MINOR: quic: add a TODO for a memleak frame on ACK consume
736
Willy Tarreau2454d6e2022-02-01 18:06:59 +01007372022/02/01 : 2.6-dev1
738 - BUG/MINOR: cache: Fix loop on cache entries in "show cache"
739 - BUG/MINOR: httpclient: allow to replace the host header
740 - BUG/MINOR: lua: don't expose internal proxies
741 - MEDIUM: mworker: seamless reload use the internal sockpairs
742 - BUG/MINOR: lua: remove loop initial declarations
743 - BUG/MINOR: mworker: does not add the -sf in wait mode
744 - BUG/MEDIUM: mworker: FD leak of the eventpoll in wait mode
745 - MINOR: quic: do not reject PADDING followed by other frames
746 - REORG: quic: add comment on rare thread concurrence during CID alloc
747 - CLEANUP: quic: add comments on CID code
748 - MEDIUM: quic: handle CIDs to rattach received packets to connection
749 - MINOR: qpack: support litteral field line with non-huff name
750 - MINOR: quic: activate QUIC traces at compilation
751 - MINOR: quic: use more verbose QUIC traces set at compile-time
752 - MEDIUM: pool: refactor malloc_trim/glibc and jemalloc api addition detections.
753 - MEDIUM: pool: support purging jemalloc arenas in trim_all_pools()
754 - BUG/MINOR: mworker: deinit of thread poller was called when not initialized
755 - BUILD: pools: only detect link-time jemalloc on ELF platforms
756 - CI: github actions: add the output of $CC -dM -E-
757 - BUG/MEDIUM: cli: Properly set stream analyzers to process one command at a time
758 - BUILD: evports: remove a leftover from the dead_fd cleanup
759 - MINOR: quic: Set "no_application_protocol" alert
760 - MINOR: quic: More accurate immediately close.
761 - MINOR: quic: Immediately close if no transport parameters extension found
762 - MINOR: quic: Rename qc_prep_hdshk_pkts() to qc_prep_pkts()
763 - MINOR: quic: Possible crash when inspecting the xprt context
764 - MINOR: quic: Dynamically allocate the secrete keys
765 - MINOR: quic: Add a function to derive the key update secrets
766 - MINOR: quic: Add structures to maintain key phase information
767 - MINOR: quic: Optional header protection key for quic_tls_derive_keys()
768 - MINOR: quic: Add quic_tls_key_update() function for Key Update
769 - MINOR: quic: Enable the Key Update process
770 - MINOR: quic: Delete the ODCIDs asap
771 - BUG/MINOR: vars: Fix the set-var and unset-var converters
772 - MEDIUM: pool: Following up on previous pool trimming update.
773 - BUG/MEDIUM: mux-h1: Fix splicing by properly detecting end of message
774 - BUG/MINOR: mux-h1: Fix splicing for messages with unknown length
775 - MINOR: mux-h1: Improve H1 traces by adding info about http parsers
776 - MINOR: mux-h1: register a stats module
777 - MINOR: mux-h1: add counters instance to h1c
778 - MINOR: mux-h1: count open connections/streams on stats
779 - MINOR: mux-h1: add stat for total count of connections/streams
780 - MINOR: mux-h1: add stat for total amount of bytes received and sent
781 - REGTESTS: h1: Add a script to validate H1 splicing support
782 - BUG/MINOR: server: Don't rely on last default-server to init server SSL context
783 - BUG/MEDIUM: resolvers: Detach query item on response error
784 - MEDIUM: resolvers: No longer store query items in a list into the response
785 - BUG/MAJOR: segfault using multiple log forward sections.
786 - BUG/MEDIUM: h1: Properly reset h1m flags when headers parsing is restarted
787 - BUG/MINOR: resolvers: Don't overwrite the error for invalid query domain name
788 - BUILD: bug: Fix error when compiling with -DDEBUG_STRICT_NOCRASH
789 - BUG/MEDIUM: sample: Fix memory leak in sample_conv_jwt_member_query
790 - DOC: spoe: Clarify use of the event directive in spoe-message section
791 - DOC: config: Specify %Ta is only available in HTTP mode
792 - BUILD: tree-wide: avoid warnings caused by redundant checks of obj_types
793 - IMPORT: slz: use the correct CRC32 instruction when running in 32-bit mode
794 - MINOR: quic: fix segfault on CONNECTION_CLOSE parsing
795 - MINOR: h3: add BUG_ON on control receive function
796 - MEDIUM: xprt-quic: finalize app layer initialization after ALPN nego
797 - MINOR: h3: remove duplicated FIN flag position
798 - MAJOR: mux-quic: implement a simplified mux version
799 - MEDIUM: mux-quic: implement release mux operation
800 - MEDIUM: quic: detect the stream FIN
801 - MINOR: mux-quic: implement subscribe on stream
802 - MEDIUM: mux-quic: subscribe on xprt if remaining data after send
803 - MEDIUM: mux-quic: wake up xprt on data transferred
804 - MEDIUM: mux-quic: handle when sending buffer is full
805 - MINOR: quic: RX buffer full due to wrong CRYPTO data handling
806 - MINOR: quic: Race issue when consuming RX packets buffer
807 - MINOR: quic: QUIC encryption level RX packets race issue
808 - MINOR: quic: Delete remaining RX handshake packets
809 - MINOR: quic: Remove QUIC TX packet length evaluation function
810 - MINOR: hq-interop: fix tx buffering
811 - MINOR: mux-quic: remove uneeded code to check fin on TX
812 - MINOR: quic: add HTX EOM on request end
813 - BUILD: mux-quic: fix compilation with DEBUG_MEM_STATS
814 - MINOR: http-rules: Add capture action to http-after-response ruleset
815 - BUG/MINOR: cli/server: Don't crash when a server is added with a custom id
816 - MINOR: mux-quic: do not release qcs if there is remaining data to send
817 - MINOR: quic: notify the mux on CONNECTION_CLOSE
818 - BUG/MINOR: mux-quic: properly initialize flow control
819 - MINOR: quic: Compilation fix for quic_rx_packet_refinc()
820 - MINOR: h3: fix possible invalid dereference on htx parsing
821 - DOC: config: retry-on list is space-delimited
822 - DOC: config: fix error-log-format example
823 - BUG/MEDIUM: mworker/cli: crash when trying to access an old PID in prompt mode
824 - MINOR: hq-interop: refix tx buffering
825 - REGTESTS: ssl: use X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY for cert check
826 - MINOR: cli: "show version" displays the current process version
827 - CLEANUP: cfgparse: modify preprocessor guards around numa detection code
828 - MEDIUM: cfgparse: numa detect topology on FreeBSD.
829 - BUILD: ssl: unbreak the build with newer libressl
830 - MINOR: vars: Move UPDATEONLY flag test to vars_set_ifexist
831 - MINOR: vars: Set variable type to ANY upon creation
832 - MINOR: vars: Delay variable content freeing in var_set function
833 - MINOR: vars: Parse optional conditions passed to the set-var converter
834 - MINOR: vars: Parse optional conditions passed to the set-var actions
835 - MEDIUM: vars: Enable optional conditions to set-var converter and actions
836 - DOC: vars: Add documentation about the set-var conditions
837 - REGTESTS: vars: Add new test for conditional set-var
838 - MINOR: quic: Attach timer task to thread for the connection.
839 - CLEANUP: quic_frame: Remove a useless suffix to STOP_SENDING
840 - MINOR: quic: Add traces for STOP_SENDING frame and modify others
841 - CLEANUP: quic: Remove cdata_len from quic_tx_packet struct
842 - MINOR: quic: Enable TLS 0-RTT if needed
843 - MINOR: quic: No TX secret at EARLY_DATA encryption level
844 - MINOR: quic: Add quic_set_app_ops() function
845 - MINOR: ssl_sock: Set the QUIC application from ssl_sock_advertise_alpn_protos.
846 - MINOR: quic: Make xprt support 0-RTT.
847 - MINOR: qpack: Missing check for truncated QPACK fields
848 - CLEANUP: quic: Comment fix for qc_strm_cpy()
849 - MINOR: hq_interop: Stop BUG_ON() truncated streams
850 - MINOR: quic: Do not mix packet number space and connection flags
851 - CLEANUP: quic: Shorten a litte bit the traces in lstnr_rcv_pkt()
852 - MINOR: mux-quic: fix trace on stream creation
853 - CLEANUP: quic: fix spelling mistake in a trace
854 - CLEANUP: quic: rename quic_conn conn to qc in quic_conn_free
855 - MINOR: quic: add missing lock on cid tree
856 - MINOR: quic: rename constant for haproxy CIDs length
857 - MINOR: quic: refactor concat DCID with address for Initial packets
858 - MINOR: quic: compare coalesced packets by DCID
859 - MINOR: quic: refactor DCID lookup
860 - MINOR: quic: simplify the removal from ODCID tree
861 - REGTESTS: vars: Remove useless ssl tunes from conditional set-var test
862 - MINOR: ssl: Remove empty lines from "show ssl ocsp-response" output
863 - MINOR: quic: Increase the RX buffer for each connection
864 - MINOR: quic: Add a function to list remaining RX packets by encryption level
865 - MINOR: quic: Stop emptying the RX buffer asap.
866 - MINOR: quic: Do not expect to receive only one O-RTT packet
867 - MINOR: quic: Do not forget STREAM frames received in disorder
868 - MINOR: quic: Wrong packet refcount handling in qc_pkt_insert()
869 - DOC: fix misspelled keyword "resolve_retries" in resolvers
870 - CLEANUP: quic: rename quic_conn instances to qc
871 - REORG: quic: move mux function outside of xprt
872 - MINOR: quic: add reference to quic_conn in ssl context
873 - MINOR: quic: add const qualifier for traces function
874 - MINOR: trace: add quic_conn argument definition
875 - MINOR: quic: use quic_conn as argument to traces
876 - MINOR: quic: add quic_conn instance in traces for qc_new_conn
877 - MINOR: quic: Add stream IDs to qcs_push_frame() traces
878 - MINOR: quic: unchecked qc_retrieve_conn_from_cid() returned value
879 - MINOR: quic: Wrong dropped packet skipping
880 - MINOR: quic: Handle the cases of overlapping STREAM frames
881 - MINOR: quic: xprt traces fixes
882 - MINOR: quic: Drop asap Retry or Version Negotiation packets
883 - MINOR: pools: work around possibly slow malloc_trim() during gc
884 - DEBUG: ssl: make sure we never change a servername on established connections
885 - MINOR: quic: Add traces for RX frames (flow control related)
886 - MINOR: quic: Add CONNECTION_CLOSE phrase to trace
887 - REORG: quic: remove qc_ prefix on functions which not used it directly
888 - BUG/MINOR: quic: upgrade rdlock to wrlock for ODCID removal
889 - MINOR: quic: remove unnecessary call to free_quic_conn_cids()
890 - MINOR: quic: store ssl_sock_ctx reference into quic_conn
891 - MINOR: quic: remove unnecessary if in qc_pkt_may_rm_hp()
892 - MINOR: quic: replace usage of ssl_sock_ctx by quic_conn
893 - MINOR: quic: delete timer task on quic_close()
894 - MEDIUM: quic: implement refcount for quic_conn
895 - BUG/MINOR: quic: fix potential null dereference
896 - BUG/MINOR: quic: fix potential use of uninit pointer
897 - BUG/MEDIUM: backend: fix possible sockaddr leak on redispatch
898 - BUG/MEDIUM: peers: properly skip conn_cur from incoming messages
899 - CI: Github Actions: do not show VTest failures if build failed
900 - BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time
901 - MINOR: compat: detect support for dl_iterate_phdr()
902 - MINOR: debug: add ability to dump loaded shared libraries
903 - MINOR: debug: add support for -dL to dump library names at boot
904 - BUG/MEDIUM: ssl: initialize correctly ssl w/ default-server
905 - REGTESTS: ssl: fix ssl_default_server.vtc
906 - BUG/MINOR: ssl: free the fields in srv->ssl_ctx
907 - BUG/MEDIUM: ssl: free the ckch instance linked to a server
908 - REGTESTS: ssl: update of a crt with server deletion
909 - BUILD/MINOR: cpuset FreeBSD 14 build fix.
910 - MINOR: pools: always evict oldest objects first in pool_evict_from_local_cache()
911 - DOC: pool: document the purpose of various structures in the code
912 - CLEANUP: pools: do not use the extra pointer to link shared elements
913 - CLEANUP: pools: get rid of the POOL_LINK macro
914 - MINOR: pool: allocate from the shared cache through the local caches
915 - CLEANUP: pools: group list updates in pool_get_from_cache()
916 - MINOR: pool: rely on pool_free_nocache() in pool_put_to_shared_cache()
917 - MINOR: pool: make pool_is_crowded() always true when no shared pools are used
918 - MINOR: pool: check for pool's fullness outside of pool_put_to_shared_cache()
919 - MINOR: pool: introduce pool_item to represent shared pool items
920 - MINOR: pool: add a function to estimate how many may be released at once
921 - MEDIUM: pool: compute the number of evictable entries once per pool
922 - MINOR: pools: prepare pool_item to support chained clusters
923 - MINOR: pools: pass the objects count to pool_put_to_shared_cache()
924 - MEDIUM: pools: centralize cache eviction in a common function
925 - MEDIUM: pools: start to batch eviction from local caches
926 - MEDIUM: pools: release cached objects in batches
927 - OPTIM: pools: reduce local pool cache size to 512kB
928 - CLEANUP: assorted typo fixes in the code and comments This is 29th iteration of typo fixes
929 - CI: github actions: update OpenSSL to 3.0.1
930 - BUILD/MINOR: tools: solaris build fix on dladdr.
931 - BUG/MINOR: cli: fix _getsocks with musl libc
932 - BUG/MEDIUM: http-ana: Preserve response's FLT_END analyser on L7 retry
933 - MINOR: quic: Wrong traces after rework
934 - MINOR: quic: Add trace about in flight bytes by packet number space
935 - MINOR: quic: Wrong first packet number space computation
936 - MINOR: quic: Wrong packet number space computation for PTO
937 - MINOR: quic: Wrong loss time computation in qc_packet_loss_lookup()
938 - MINOR: quic: Wrong ack_delay compution before calling quic_loss_srtt_update()
939 - MINOR: quic: Remove nb_pto_dgrams quic_conn struct member
940 - MINOR: quic: Wrong packet number space trace in qc_prep_pkts()
941 - MINOR: quic: Useless test in qc_prep_pkts()
942 - MINOR: quic: qc_prep_pkts() code moving
943 - MINOR: quic: Speeding up Handshake Completion
944 - MINOR: quic: Probe Initial packet number space more often
945 - MINOR: quic: Probe several packet number space upon timer expiration
946 - MINOR: quic: Comment fix.
947 - MINOR: quic: Improve qc_prep_pkts() flexibility
948 - MINOR: quic: Do not drop secret key but drop the CRYPTO data
949 - MINOR: quic: Prepare Handshake packets asap after completed handshake
950 - MINOR: quic: Flag asap the connection having reached the anti-amplification limit
951 - MINOR: quic: PTO timer too often reset
952 - MINOR: quic: Re-arm the PTO timer upon datagram receipt
953 - MINOR: proxy: add option idle-close-on-response
954 - MINOR: cpuset: switch to sched_setaffinity for FreeBSD 14 and above.
955 - CI: refactor spelling check
956 - CLEANUP: assorted typo fixes in the code and comments
957 - BUILD: makefile: add -Wno-atomic-alignment to work around clang abusive warning
958 - MINOR: quic: Only one CRYPTO frame by encryption level
959 - MINOR: quic: Missing retransmission from qc_prep_fast_retrans()
960 - MINOR: quic: Non-optimal use of a TX buffer
961 - BUG/MEDIUM: mworker: don't use _getsocks in wait mode
962 - BUG/MINOR: ssl: Store client SNI in SSL context in case of ClientHello error
963 - BUG/MAJOR: mux-h1: Don't decrement .curr_len for unsent data
964 - DOC: internals: document the pools architecture and API
965 - CI: github actions: clean default step conditions
966 - BUILD: cpuset: fix build issue on macos introduced by previous change
967 - MINOR: quic: Remaining TRACEs with connection as firt arg
968 - MINOR: quic: Reset ->conn quic_conn struct member when calling qc_release()
969 - MINOR: quic: Flag the connection as being attached to a listener
970 - MINOR: quic: Wrong CRYPTO frame concatenation
971 - MINOR: quid: Add traces quic_close() and quic_conn_io_cb()
972 - REGTESTS: ssl: Fix ssl_errors regtest with OpenSSL 1.0.2
973 - MINOR: quic: Do not dereference ->conn quic_conn struct member
974 - MINOR: quic: fix return of quic_dgram_read
975 - MINOR: quic: add config parse source file
976 - MINOR: quic: implement Retry TLS AEAD tag generation
977 - MEDIUM: quic: implement Initial token parsing
978 - MINOR: quic: define retry_source_connection_id TP
979 - MEDIUM: quic: implement Retry emission
980 - MINOR: quic: free xprt tasklet on its thread
981 - BUG/MEDIUM: connection: properly leave stopping list on error
982 - MINOR: pools: enable pools with DEBUG_FAIL_ALLOC as well
983 - MINOR: quic: As server, skip 0-RTT packet number space
984 - MINOR: quic: Do not wakeup the I/O handler before the mux is started
985 - BUG/MEDIUM: htx: Adjust length to add DATA block in an empty HTX buffer
986 - CI: github actions: use cache for OpenTracing
987 - BUG/MINOR: httpclient: don't send an empty body
988 - BUG/MINOR: httpclient: set default Accept and User-Agent headers
989 - BUG/MINOR: httpclient/lua: don't pop the lua stack when getting headers
990 - BUILD/MINOR: fix solaris build with clang.
991 - BUG/MEDIUM: server: avoid changing healthcheck ctx with set server ssl
992 - CI: refactor OpenTracing build script
993 - DOC: management: mark "set server ssl" as deprecated
994 - MEDIUM: cli: yield between each pipelined command
995 - MINOR: channel: add new function co_getdelim() to support multiple delimiters
996 - BUG/MINOR: cli: avoid O(bufsize) parsing cost on pipelined commands
997 - MEDIUM: h2/hpack: emit a Dynamic Table Size Update after settings change
998 - MINOR: quic: Retransmit the TX frames in the same order
999 - MINOR: quic: Remove the packet number space TX MT_LIST
1000 - MINOR: quic: Splice the frames which could not be added to packets
1001 - MINOR: quic: Add the number of TX bytes to traces
1002 - CLEANUP: quic: Replace <nb_pto_dgrams> by <probe>
1003 - MINOR: quic: Send two ack-eliciting packets when probing packet number spaces
1004 - MINOR: quic: Probe regardless of the congestion control
1005 - MINOR: quic: Speeding up handshake completion
1006 - MINOR: quic: Release RX Initial packets asap
1007 - MINOR: quic: Release asap TX frames to be transmitted
1008 - MINOR: quic: Probe even if coalescing
1009 - BUG/MEDIUM: cli: Never wait for more data on client shutdown
1010 - BUG/MEDIUM: mcli: do not try to parse empty buffers
1011 - BUG/MEDIUM: mcli: always realign wrapping buffers before parsing them
1012 - BUG/MINOR: stream: make the call_rate only count the no-progress calls
1013 - MINOR: quic: do not use quic_conn after dropping it
1014 - MINOR: quic: adjust quic_conn refcount decrement
1015 - MINOR: quic: fix race-condition on xprt tasklet free
1016 - MINOR: quic: free SSL context on quic_conn free
1017 - MINOR: quic: Add QUIC_FT_RETIRE_CONNECTION_ID parsing case
1018 - MINOR: quic: Wrong packet number space selection
1019 - DEBUG: pools: add new build option DEBUG_POOL_INTEGRITY
1020 - MINOR: quic: add missing include in quic_sock
1021 - MINOR: quic: fix indentation in qc_send_ppkts
1022 - MINOR: quic: remove dereferencement of connection when possible
1023 - MINOR: quic: set listener accept cb on parsing
1024 - MEDIUM: quic/ssl: add new ex data for quic_conn
1025 - MINOR: quic: initialize ssl_sock_ctx alongside the quic_conn
1026 - MINOR: ssl: fix build in release mode
1027 - MINOR: pools: partially uninline pool_free()
1028 - MINOR: pools: partially uninline pool_alloc()
1029 - MINOR: pools: prepare POOL_EXTRA to be split into multiple extra fields
1030 - MINOR: pools: extend pool_cache API to pass a pointer to a caller
1031 - DEBUG: pools: add new build option DEBUG_POOL_TRACING
1032 - DEBUG: cli: add a new "debug dev fd" expert command
1033 - MINOR: fd: register the write side of the poller pipe as well
1034 - CI: github actions: use cache for SSL libs
1035 - BUILD: debug/cli: condition test of O_ASYNC to its existence
1036 - BUILD: pools: fix build error on DEBUG_POOL_TRACING
1037 - MINOR: quic: refactor header protection removal
1038 - MINOR: quic: handle app data according to mux/connection layer status
1039 - MINOR: quic: refactor app-ops initialization
1040 - MINOR: receiver: define a flag for local accept
1041 - MEDIUM: quic: flag listener for local accept
1042 - MINOR: quic: do not manage connection in xprt snd_buf
1043 - MINOR: quic: remove wait handshake/L6 flags on init connection
1044 - MINOR: listener: add flags field
1045 - MINOR: quic: define QUIC flag on listener
1046 - MINOR: quic: create accept queue for QUIC connections
1047 - MINOR: listener: define per-thr struct
1048 - MAJOR: quic: implement accept queue
1049 - CLEANUP: mworker: simplify mworker_free_child()
1050 - BUILD/DEBUG: lru: update the standalone code to support the revision
1051 - DEBUG: lru: use a xorshift generator in the testing code
1052 - BUG/MAJOR: compiler: relax alignment constraints on certain structures
1053 - BUG/MEDIUM: fd: always align fdtab[] to 64 bytes
1054 - MINOR: quic: No DCID length for datagram context
1055 - MINOR: quic: Comment fix about the token found in Initial packets
1056 - MINOR: quic: Get rid of a struct buffer in quic_lstnr_dgram_read()
1057 - MINOR: quic: Remove the QUIC haproxy server packet parser
1058 - MINOR: quic: Add new defintion about DCIDs offsets
1059 - MINOR: quic: Add a list to QUIC sock I/O handler RX buffer
1060 - MINOR: quic: Allocate QUIC datagrams from sock I/O handler
1061 - MINOR: proto_quic: Allocate datagram handlers
1062 - MINOR: quic: Pass CID as a buffer to quic_get_cid_tid()
1063 - MINOR: quic: Convert quic_dgram_read() into a task
1064 - CLEANUP: quic: Remove useless definition
1065 - MINOR: proto_quic: Wrong allocations for TX rings and RX bufs
1066 - MINOR: quic: Do not consume the RX buffer on QUIC sock i/o handler side
1067 - MINOR: quic: Do not reset a full RX buffer
1068 - MINOR: quic: Attach all the CIDs to the same connection
1069 - MINOR: quic: Make usage of by datagram handler trees
1070 - MEDIUM: da: new optional data file download scheduler service.
1071 - MEDIUM: da: update doc and build for new scheduler mode service.
1072 - MEDIUM: da: update module to handle schedule mode.
1073 - MINOR: quic: Drop Initial packets with wrong ODCID
1074 - MINOR: quic: Wrong RX buffer tail handling when no more contiguous data
1075 - MINOR: quic: Iterate over all received datagrams
1076 - MINOR: quic: refactor quic CID association with threads
1077 - BUG/MEDIUM: resolvers: Really ignore trailing dot in domain names
1078 - DEV: flags: Add missing flags
1079 - BUG/MINOR: sink: Use the right field in appctx context in release callback
1080 - MINOR: sock: move the unused socket cleaning code into its own function
1081 - BUG/MEDIUM: mworker: close unused transferred FDs on load failure
1082 - BUILD: atomic: make the old HA_ATOMIC_LOAD() support const pointers
1083 - BUILD: cpuset: do not use const on the source of CPU_AND/CPU_ASSIGN
1084 - BUILD: checks: fix inlining issue on set_srv_agent_[addr,port}
1085 - BUILD: vars: avoid overlapping field initialization
1086 - BUILD: server-state: avoid using not-so-portable isblank()
1087 - BUILD: mux_fcgi: avoid aliasing of a const struct in traces
1088 - BUILD: tree-wide: mark a few numeric constants as explicitly long long
1089 - BUILD: tools: fix warning about incorrect cast with dladdr1()
1090 - BUILD: task: use list_to_mt_list() instead of casting list to mt_list
1091 - BUILD: mworker: include tools.h for platforms without unsetenv()
1092 - BUG/MINOR: mworker: fix a FD leak of a sockpair upon a failed reload
1093 - MINOR: mworker: set the master side of ipc_fd in the worker to -1
1094 - MINOR: mworker: allocate and initialize a mworker_proc
1095 - CI: Consistently use actions/checkout@v2
1096 - REGTESTS: Remove REQUIRE_VERSION=1.8 from all tests
1097 - MINOR: mworker: sets used or closed worker FDs to -1
1098 - MINOR: quic: Try to accept 0-RTT connections
1099 - MINOR: quic: Do not try to treat 0-RTT packets without started mux
1100 - MINOR: quic: Do not try to accept a connection more than one time
1101 - MINOR: quic: Initialize the connection timer asap
1102 - MINOR: quic: Do not use connection struct xprt_ctx too soon
1103 - Revert "MINOR: mworker: sets used or closed worker FDs to -1"
1104 - BUILD: makefile: avoid testing all -Wno-* options when not needed
1105 - BUILD: makefile: validate support for extra warnings by batches
1106 - BUILD: makefile: only compute alternative options if required
1107 - DEBUG: fd: make sure we never try to insert/delete an impossible FD number
1108 - MINOR: mux-quic: add comment
1109 - MINOR: mux-quic: properly initialize qcc flags
1110 - MINOR: mux-quic: do not consider CONNECTION_CLOSE for the moment
1111 - MINOR: mux-quic: create a timeout task
1112 - MEDIUM: mux-quic: delay the closing with the timeout
1113 - MINOR: mux-quic: release idle conns on process stopping
1114 - MINOR: listener: replace the listener's spinlock with an rwlock
1115 - BUG/MEDIUM: listener: read-lock the listener during accept()
1116 - MINOR: mworker/cli: set expert/experimental mode from the CLI
1117
Willy Tarreau73dec762021-11-23 15:50:11 +010011182021/11/23 : 2.6-dev0
1119 - MINOR: version: it's development again
1120
Willy Tarreauf2e08332021-11-23 15:40:21 +010011212021/11/23 : 2.5.0
1122 - BUILD: SSL: add quictls build to scripts/build-ssl.sh
1123 - BUILD: SSL: add QUICTLS to build matrix
1124 - CLEANUP: sock: Wrap `accept4_broken = 1` into additional parenthesis
1125 - BUILD: cli: clear a maybe-unused warning on some older compilers
1126 - BUG/MEDIUM: cli: make sure we can report a warning from a bind keyword
1127 - BUG/MINOR: ssl: make SSL counters atomic
1128 - CLEANUP: assorted typo fixes in the code and comments
1129 - BUG/MINOR: ssl: free correctly the sni in the backend SSL cache
1130 - MINOR: version: mention that it's stable now
1131
Willy Tarreaua99cdfb2021-11-19 19:30:04 +010011322021/11/19 : 2.5-dev15
1133 - BUG/MINOR: stick-table/cli: Check for invalid ipv6 key
1134 - CLEANUP: peers: Remove useless test on peer variable in peer_trace()
1135 - DOC: log: Add comments to specify when session's listener is defined or not
1136 - BUG/MEDIUM: mux-h1: Handle delayed silent shut in h1_process() to release H1C
1137 - REGTESTS: ssl_crt-list_filters: feature cmd incorrectly set
1138 - DOC: internals: document the list API
1139 - BUG/MINOR: h3: ignore unknown frame types
1140 - MINOR: quic: redirect app_ops snd_buf through mux
1141 - MEDIUM: quic: inspect ALPN to install app_ops
1142 - MINOR: quic: support hq-interop
1143 - MEDIUM: quic: send version negotiation packet on unknown version
1144 - BUG/MEDIUM: mworker: cleanup the listeners when reexecuting
1145 - DOC: internals: document the scheduler API
1146 - BUG/MINOR: quic: fix version negotiation packet generation
1147 - CLEANUP: ssl: fix wrong #else commentary
1148 - MINOR: config: support default values for environment variables
1149 - SCRIPTS: run-regtests: reduce the number of processes needed to check options
1150 - SCRIPT: run-regtests: avoid several calls to grep to test for features
1151 - SCRIPT: run-regtests: avoid calling awk to compute the version
1152 - REGTEST: set retries count to zero for all tests that expect at 503
1153 - REGTESTS: make tcp-check_min-recv fail fast
1154 - REGTESTS: extend the default I/O timeouts and make them overridable
1155 - BUG/MEDIUM: ssl: backend TLS resumption with sni and TLSv1.3
1156 - BUG/MEDIUM: ssl: abort with the correct SSL error when SNI not found
1157 - REGTESTS: ssl: test the TLS resumption
1158 - BUILD: makefile: stop opening sub-shells for each and every command
1159 - BUILD: makefile: reorder objects by build time
1160 - BUG/MEDIUM: mux-h2: always process a pending shut read
1161 - MINOR: quic_sock: missing CO_FL_ADDR_TO_SET flag
1162 - MINOR: quic: Possible wrong connection identification
1163 - MINOR: quic: Correctly pad UDP datagrams
1164 - MINOR: quic: Support transport parameters draft TLS extension
1165 - MINOR: quic: Anti-amplification implementation
1166 - MINOR: quic: Wrong Initial packet connection initialization
1167 - MINOR: quic: Wrong ACK range building
1168 - MINOR: quic: Update some QUIC protocol errors
1169 - MINOR: quic: Send CONNECTION_CLOSE frame upon TLS alert
1170 - MINOR: quic: Wrong largest acked packet number parsing
1171 - MINOR: quic: Add minimalistic support for stream flow control frames
1172 - MINOR: quic: Wrong value for version negotiation packet 'Unused' field
1173 - MINOR: quic: Support draft-29 QUIC version
1174 - BUG/MINOR: quic: fix segfault on trace for version negotiation
1175 - BUG/MINOR: hq-interop: fix potential NULL dereference
1176 - BUILD: quic: fix potential NULL dereference on xprt_quic
1177 - DOC: lua: documentation about the httpclient API
1178 - BUG/MEDIUM: cache/cli: make "show cache" thread-safe
1179 - BUG/MEDIUM: shctx: leave the block allocator when enough blocks are found
1180 - BUG/MINOR: shctx: do not look for available blocks when the first one is enough
1181 - MINOR: shctx: add a few BUG_ON() for consistency checks
1182
Willy Tarreaud83f6e62021-11-14 16:04:57 +010011832021/11/14 : 2.5-dev14
1184 - DEV: coccinelle: Remove unused `expression e`
1185 - DEV: coccinelle: Add rule to use `istend()` where possible
1186 - CLEANUP: Apply ist.cocci
1187 - CLEANUP: Re-apply xalloc_size.cocci
1188 - CLEANUP: halog: make the default usage message fit in small screens
1189 - MINOR: h3/qpack: fix gcc11 warnings
1190 - MINOR: mux-quic: fix gcc11 warning
1191 - MINOR: h3: fix potential NULL dereference
1192 - MINOR: quic: Fix potential null pointer dereference
1193 - CLEANUP: halog: remove unused strl2ui()
1194 - OPTIM: halog: improve field parser speed for modern compilers
1195 - OPTIM: halog: skip fields 64 bits at a time when supported
1196 - DEV: coccinelle: Add rule to use `isttrim()` where possible
1197 - CLEANUP: Apply ist.cocci
1198 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_memcat()`
1199 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`
1200 - CLEANUP: Apply ist.cocci
1201 - CLEANUP: chunk: Remove duplicated chunk_Xcat implementation
1202 - CLEANUP: chunk: remove misleading chunk_strncat() function
1203 - BUG/MINOR: cache: properly ignore unparsable max-age in quotes
1204 - Revert "DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`"
1205 - DOC: stats: fix location of the text representation
1206 - DOC: internals: document the IST API
1207 - BUG/MINOR: httpclient/lua: rcv freeze when no request payload
1208 - BUG/MEDIUM: httpclient: channel_add_input() must use htx->data
1209 - MINOR: promex: backend aggregated server check status
1210 - DOC: config: Fix typo in ssl_fc_unique_id description
1211 - BUG/MINOR: http-ana: Apply stop to the current section for http-response rules
1212 - Revert "BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back"
1213 - DOC: config: Be more explicit in "allow" actions description
1214 - DOC: lua: Be explicit with the Reply object limits
1215 - MINOR: mux-h1: Slightly Improve H1 traces
1216 - BUG/MEDIUM: conn-stream: Don't reset CS flags on close
1217 - CLEANUP: mworker: remove any relative PID reference
1218 - MEDIUM: mworker: reexec in waitpid mode after successful loading
1219 - MINOR: mworker: clarify starting/failure messages
1220 - MINOR: mworker: only increment the number of reload in wait mode
1221 - MINOR: mworker: implement a reload failure counter
1222 - MINOR: mworker: ReloadFailed shown depending on failedreload
1223 - MINOR: mworker: change the way we set PROC_O_LEAVING
1224 - BUG/MINOR: mworker: doesn't launch the program postparser
1225 - DOC: management: edit the "show proc" example to show the current output
1226 - BUG/MEDIUM: httpclient/cli: free of unallocated hc->req.uri
1227 - REGTESTS: httpclient/lua: add greater body values
1228 - BUG/MINOR: mux-h2: Fix H2_CF_DEM_SHORT_READ value
1229 - BUG/MINOR: pools: don't mark ourselves as harmless in DEBUG_UAF mode
1230 - BUG/MEDIUM: connection: make cs_shutr/cs_shutw//cs_close() idempotent
1231 - BUILD: makefile: simplify detection of libatomic
1232
Willy Tarreau08d32202021-11-06 09:25:57 +010012332021/11/06 : 2.5-dev13
1234 - SCRIPTS: git-show-backports: re-enable file-based filtering
1235 - MINOR: jwt: Make invalid static JWT algorithms an error in `jwt_verify` converter
1236 - MINOR: mux-h2: add trace on extended connect usage
1237 - BUG/MEDIUM: mux-h2: reject upgrade if no RFC8441 support
1238 - MINOR: stream/mux: implement websocket stream flag
1239 - MINOR: connection: implement function to update ALPN
1240 - MINOR: connection: add alternative mux_ops param for conn_install_mux_be
1241 - MEDIUM: server/backend: implement websocket protocol selection
1242 - MINOR: server: add ws keyword
1243 - BUG/MINOR: resolvers: fix sent messages were counted twice
1244 - BUG/MINOR: resolvers: throw log message if trash not large enough for query
1245 - MINOR: resolvers/dns: split dns and resolver counters in dns_counter struct
1246 - MEDIUM: resolvers: rename dns extra counters to resolvers extra counters
1247 - BUG/MINOR: jwt: Fix jwt_parse_alg incorrectly returning JWS_ALG_NONE
1248 - DOC: add QUIC instruction in INSTALL
1249 - CLEANUP: halog: Remove dead stores
1250 - DEV: coccinelle: Add ha_free.cocci
1251 - CLEANUP: Apply ha_free.cocci
1252 - DEV: coccinelle: Add rule to use `istnext()` where possible
1253 - CLEANUP: Apply ist.cocci
1254 - REGTESTS: Use `feature cmd` for 2.5+ tests (2)
1255 - DOC: internals: move some API definitions to an "api" subdirectory
1256 - MINOR: quic: Allocate listener RX buffers
1257 - CLEANUP: quic: Remove useless code
1258 - MINOR: quic: Enhance the listener RX buffering part
1259 - MINOR: quic: Remove a useless lock for CRYPTO frames
1260 - MINOR: quic: Use QUIC_LOCK QUIC specific lock label.
1261 - MINOR: backend: Get client dst address to set the server's one only if needful
1262 - MINOR: compression: Warn for 'compression offload' in defaults sections
1263 - MEDIUM: connection: rename fc_conn_err and bc_conn_err to fc_err and bc_err
1264 - DOC: configuration: move the default log formats to their own section
1265 - MINOR: ssl: make the ssl_fc_sni() sample-fetch function always available
1266 - MEDIUM: log: add the client's SNI to the default HTTPS log format
1267 - DOC: config: add an example of reasonably complete error-log-format
1268 - DOC: config: move error-log-format before custom log format
1269
Willy Tarreau35dc13f2021-11-02 18:05:41 +010012702021/11/02 : 2.5-dev12
1271 - MINOR: httpclient: support payload within a buffer
1272 - MINOR: httpclient/lua: support more HTTP methods
1273 - MINOR: httpclient/lua: return an error when it can't generate the request
1274 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
1275 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
1276 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
1277 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
1278 - CLEANUP: lua: Use a const address to retrieve info about a connection
1279 - MINOR: connection: Add function to get src/dst without updating the connection
1280 - MINOR: session: Add src and dst addresses to the session
1281 - MINOR: stream-int: Add src and dst addresses to the stream-interface
1282 - MINOR: frontend: Rely on client src and dst addresses at stream level
1283 - MINOR: log: Rely on client addresses at the appropriate level to log messages
1284 - MINOR: session: Rely on client source address at session level to log error
1285 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
1286 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
1287 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
1288 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
1289 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
1290 - MEDIUM: backend: Rely on addresses at stream level to init server connection
1291 - MEDIUM: connection: Assign session addresses when PROXY line is received
1292 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
1293 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
1294 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
1295 - DOC: config: Fix alphabetical order of fc_* samples
1296 - MINOR: tcp-sample: Add samples to get original info about client connection
1297 - REGTESTS: Add script to test client src/dst manipulation at different levels
1298 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
1299 - BUILD: log: Fix compilation without SSL support
1300 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
1301 - MINOR: protocols: add a new protocol type selector
1302 - MINOR: protocols: make use of the protocol type to select the protocol
1303 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
1304 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
1305 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
1306 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
1307 - DEV: coccinelle: Add realloc_leak.cocci
1308 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
1309 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
1310 - BUILD: atomic: fix build on mac/arm64
1311 - MINOR: atomic: remove the memcpy() call and dependency on string.h
1312 - MINOR: httpclient: request streaming with a callback
1313 - MINOR: httpclient/lua: handle the streaming into the lua applet
1314 - REGTESTS: lua: test httpclient with body streaming
1315 - DOC: halog: Move the `-qry` parameter into the correct section in help text
1316 - MINOR: halog: Rename -qry to -query
1317 - CLEANUP: halog: Use consistent indentation in help()
1318 - BUG/MINOR: halog: Add missing newlines in die() messages
1319 - MINOR: halog: Add support for extracting captures using -hdr
1320 - DOC: Typo fixed "it" should be "is"
1321 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
1322 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
1323 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
1324 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
1325 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
1326 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
1327 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
1328 - BUILD/MINOR: cpuset freebsd build fix
1329 - BUG/MINOR: httpclient: use a placeholder value for Host header
1330 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
1331 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
1332 - MINOR: stream: Improve dump of bogus streams
1333 - DOC/peers: some grammar fixes for peers 2.1 spec
1334 - MEDIUM: vars: make the var() sample fetch function really return type ANY
1335 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
1336
Willy Tarreaub4d0cd02021-10-22 19:40:44 +020013372021/10/22 : 2.5-dev11
1338 - DEV: coccinelle: Add strcmp.cocci
1339 - CLEANUP: Apply strcmp.cocci
1340 - CI: Add `permissions` to GitHub Actions
1341 - CI: Clean up formatting in GitHub Action definitions
1342 - MINOR: add ::1 to predefined LOCALHOST acl
1343 - CLEANUP: assorted typo fixes in the code and comments
1344 - CLEANUP: Consistently `unsigned int` for bitfields
1345 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
1346 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
1347 - MINOR: jwt: Empty the certificate tree during deinit
1348 - MINOR: jwt: jwt_verify returns negative values in case of error
1349 - MINOR: jwt: Do not rely on enum order anymore
1350 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
1351 - MINOR: httpclient/cli: access should be only done from expert mode
1352 - DOC: management: doc about the CLI httpclient
1353 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
1354 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
1355 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
1356 - CLEANUP: dns: always detach the appctx from the dns session on release
1357 - DEBUG: dns: add a few more BUG_ON at sensitive places
1358 - BUG/MAJOR: resolvers: add other missing references during resolution removal
1359 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
1360 - BUILD: resolvers: avoid a possible warning on null-deref
1361 - BUG/MEDIUM: resolvers: always check a valid item in query_list
1362 - CLEANUP: always initialize the answer_list
1363 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
1364 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
1365 - MEDIUM: resolvers: use a kill list to preserve the list consistency
1366 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
1367 - BUG/MEDIUM: checks: fix the starting thread for external checks
1368 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
1369 - MEDIUM: resolvers: hash the records before inserting them into the tree
1370 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
1371 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
1372 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
1373 - OPTIM: dns: use an atomic check for the list membership
1374 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
1375 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
1376 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
1377 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
1378 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
1379 - MINOR: quic: Increase the size of handshake RX UDP datagrams
1380 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
1381 - MINOR: memprof: report the delta between alloc and free on realloc()
1382 - MINOR: memprof: add one pointer size to the size of allocations
1383 - BUILD: fix compilation on NetBSD
1384 - MINOR: backend: add traces for idle connections reuse
1385 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
1386 - MINOR: backend: improve perf with tcp proxies skipping idle conns
1387 - MINOR: connection: remove unneeded memset 0 for idle conns
1388
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +020013892021/10/16 : 2.5-dev10
1390 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
1391 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
1392 - MINOR: rules: add a file name and line number to act_rules
1393 - MINOR: stream: report the current rule in "show sess all" when known
1394 - MINOR: stream: report the current filter in "show sess all" when known
1395 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
1396 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
1397 - CI: github: switch to OpenSSL 3.0.0
1398 - REGTESTS: ssl: Fix references to removed option in test description
1399 - MINOR: ssl: Add ssllib_name_startswith precondition
1400 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
1401 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
1402 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
1403 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
1404 - MEDIUM: h3: properly manage tx buffers for large data
1405 - MINOR: mux-quic: standardize h3 settings sending
1406 - CLEANUP: h3: remove dead code
1407 - MINOR: mux-quic: implement standard method to detect if qcc is dead
1408 - MEDIUM: mux-quic: defer stream shut if remaining tx data
1409 - MINOR: mux: remove last occurences of qcc ring buffer
1410 - MINOR: quic: handle CONNECTION_CLOSE frame
1411 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
1412 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
1413 - MINOR: http: Add http_auth_bearer sample fetch
1414 - MINOR: jwt: Parse JWT alg field
1415 - MINOR: jwt: JWT tokenizing helper function
1416 - MINOR: jwt: Insert public certificates into dedicated JWT tree
1417 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
1418 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
1419 - REGTESTS: jwt: Add tests for the jwt_verify converter
1420 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
1421 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
1422 - MINOR: proto_tcp: also report the attempted MSS values in error message
1423 - MINOR: inet: report the faulty interface name in "bind" errors
1424 - MINOR: protocol: report the file and line number for binding/listening errors
1425 - MINOR: protocol: uniformize protocol errors
1426 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
1427 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
1428 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
1429 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
1430 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
1431 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
1432 - MEDIUM: listener: add the "shards" bind keyword
1433 - BUG/MEDIUM: resolvers: use correct storage for the target address
1434 - MINOR: resolvers: merge address and target into a union "data"
1435 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
1436 - BUG/MEDIUM: jwt: fix base64 decoding error detection
1437 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
1438 - DOC: jwt: fix a typo in the jwt_verify() keyword description
1439 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
1440 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
1441 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
1442 - DOC: config: Move 'tcp-response content' at the right place
1443 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
1444 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
1445 - MINOR: sample/arg: Be able to resolve args found in defaults sections
1446 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
1447 - MINOR: proxy: Be able to reference the defaults section used by a proxy
1448 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
1449 - MINOR: config: Finish configuration for referenced default proxies
1450 - MINOR: config: No longer remove previous anonymous defaults section
1451 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
1452 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
1453 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
1454 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
1455 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
1456 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
1457 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
1458 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
1459 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
1460 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
1461 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
1462 - BUG/MINOR: listener: fix incorrect return on out-of-memory
1463 - BUG/MINOR: listener: add an error check for unallocatable trash
1464 - CLEANUP: listeners: remove unreachable code in clone_listener()
1465
Willy Tarreau4c67bd62021-10-08 18:22:24 +020014662021/10/08 : 2.5-dev9
1467 - head-truc
1468 - REGTESTS: lua: test the httpclient:get() feature
1469 - Revert "head-truc"
1470 - BUG/MEDIUM: httpclient: replace ist0 by istptr
1471 - MINOR: config: use a standard parser for the "nbthread" keyword
1472 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
1473 - MEDIUM: init: de-uglify the per-thread affinity setting
1474 - MINOR: init: extract the setup and end of threads to their own functions
1475 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
1476 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
1477 - MINOR: mux-h1: Be able to set custom status code on parsing error
1478 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
1479 - MEDIUM: h1: Force close mode for invalid uses of T-E header
1480 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
1481 - MINOR: http: Add 422-Unprocessable-Content error message
1482 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
1483 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
1484 - REGTESTS: Add script to validate T-E header parsing
1485 - REORG: pools: move default settings to defaults.h
1486 - DOC: peers: fix doc "enable" statement on "peers" sections
1487 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
1488 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
1489 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
1490 - MINOR: ssl: Store the last SSL error code in case of read or write failure
1491 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
1492 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
1493 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
1494 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
1495 - MINOR: arg: Be able to forbid unresolved args when building an argument list
1496 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
1497 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
1498 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
1499 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
1500 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
1501 - CLEANUP: tasks: remove the long-unused work_lists
1502 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
1503 - MINOR: time: uninline report_idle() and move it to task.c
1504 - REORG: sched: move idle time calculation from time.h to task.h
1505 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
1506 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
1507 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
1508 - MINOR: httpclient: destroy() must free the headers and the ists
1509 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
1510 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
1511 - MINOR: httpclient: test if started during stop_and_destroy()
1512 - MINOR: httpclient/lua: implement garbage collection
1513 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
1514 - MINOR: httpclient: destroy checks if a client was started but not stopped
1515 - BUG/MINOR: httpclient/lua: does not process headers when failed
1516 - MINOR: httpclient/lua: supports headers via named arguments
1517 - CLEANUP: server: always include the storage for SSL settings
1518 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
1519 - CLEANUP: sample: uninline sample_conv_var2smp_str()
1520 - MINOR: sample: provide a generic var-to-sample conversion function
1521 - BUG/MEDIUM: sample: properly verify that variables cast to sample
1522 - BUILD: action: add the relevant structures for function arguments
1523 - BUILD: extcheck: needs to include stream-t.h
1524 - BUILD: hlua: needs to include stream-t.h
1525 - BUILD: stats: define several missing structures in stats.h
1526 - BUILD: resolvers: define missing types in resolvers.h
1527 - BUILD: httpclient: include missing ssl_sock-t
1528 - BUILD: sample: include openssl-compat
1529 - BUILD: http_ana: need to include proxy-t to get redirect_rule
1530 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
1531 - BUILD: vars: need to include xxhash
1532 - BUILD: peers: need to include eb{32/mb/pt}tree.h
1533 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
1534 - BUILD: compiler: add the container_of() and container_of_safe() macros
1535 - BUILD: idleconns: include missing ebmbtree.h at several places
1536 - BUILD: connection: connection.h needs list.h and server.h
1537 - BUILD: tree-wide: add missing http_ana.h from many places
1538 - BUILD: cfgparse-ssl: add missing errors.h
1539 - BUILD: tcp_sample: include missing errors.h and session-t.h
1540 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
1541 - BUILD: tree-wide: add several missing activity.h
1542 - BUILD: compat: fix -Wundef on SO_REUSEADDR
1543 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
1544 - REORG: pools: uninline the UAF allocator and force-inline the rest
1545 - REORG: thread: uninline the lock-debugging code
1546 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
1547 - CLEANUP: remove some unneeded includes from applet-t.h
1548 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
1549 - CLEANUP: listeners: do not include openssl-compat
1550 - CLEANUP: servers: do not include openssl-compat
1551 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
1552 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
1553 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
1554 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
1555 - REORG: sample: move the crypto samples to ssl_sample.c
1556 - REORG: sched: moved samp_time and idle_time to task.c as well
1557 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
1558 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
1559 - REORG: activity: uninline activity_count_runtime()
1560 - REORG: acitvity: uninline sched_activity_entry()
1561 - CLEANUP: stream: remove many unneeded includes from stream-t.h
1562 - CLEANUP: stick-table: no need to include socket nor in.h
1563 - MINOR: connection: use uint64_t for the hashes
1564 - REORG: connection: move the hash-related stuff to connection.c
1565 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
1566 - REORG: server: uninline the idle conns management functions
1567 - REORG: ebtree: split structures into their own file ebtree-t.h
1568 - CLEANUP: tree-wide: only include ebtree-t from type files
1569 - REORG: connection: move the largest inlines from connection.h to connection.c
1570 - CLEANUP: connection: do not include http_ana!
1571 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
1572 - REORG: connection: uninline the rest of the alloc/free stuff
1573 - REORG: task: uninline the loop time measurement code
1574 - CLEANUP: time: move a few configurable defines to defaults.h
1575 - CLEANUP: fd: do not include time.h
1576 - REORG: fd: uninline compute_poll_timeout()
1577 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
1578 - REORG: thread: move the thread init/affinity/stop to thread.c
1579 - REORG: thread: move ha_get_pthread_id() to thread.c
1580 - MINOR: thread: use a dedicated static pthread_t array in thread.c
1581 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
1582 - DOC: configuration: add clarification on escaping in keyword arguments
1583 - BUG/MINOR: task: fix missing include with DEBUG_TASK
1584 - MINOR: pools: report the amount used by thread caches in "show pools"
1585 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
1586 - MINOR: quic: Add a function to dump SSL stack errors
1587 - MINOR: quic: BUG_ON() SSL errors.
1588 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
1589 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
1590 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
1591 - MINOR: mux-quic: release connection if no more bidir streams
1592 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
1593 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
1594 - MINOR: qpack: do not encode invalid http status code
1595 - MINOR: qpack: support non-indexed http status code encoding
1596 - MINOR: qpack: fix memory leak on huffman decoding
1597 - CLEANUP: mux-quic: remove unused code
1598 - BUG/MINOR: quic: fix includes for compilation
1599 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
1600 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
1601 - REORG: time: move time-keeping code and variables to clock.c
1602 - REORG: clock: move the updates of cpu/mono time to clock.c
1603 - MINOR: activity: get the run_time from the clock updates
1604 - CLEANUP: clock: stop exporting before_poll and after_poll
1605 - REORG: clock: move the clock_id initialization to clock.c
1606 - REORG: clock/wdt: move wdt timer initialization to clock.c
1607 - MINOR: clock: move the clock_ids to clock.c
1608 - MINOR: wdt: move wd_timer to wdt.c
1609 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
1610 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
1611 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
1612 - REORG: thread/sched: move the thread_info flags to the thread_ctx
1613 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
1614 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
1615 - MINOR: threads: introduce a minimalistic notion of thread-group
1616 - MINOR: global: add a new "thread-groups" directive
1617 - MINOR: global: add a new "thread-group" directive
1618 - MINOR: threads: make tg point to the current thread's group
1619 - MEDIUM: threads: automatically assign threads to groups
1620 - MINOR: threads: set the group ID and its bit in the thread group
1621 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
1622 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
1623 - MINOR: threads: add the current group ID in thread-local "tgid" variable
1624 - MINOR: debug: report the group and thread ID in the thread dumps
1625 - MEDIUM: listeners: support the definition of thread groups on bind lines
1626 - MINOR: threads: add a new function to resolve config groups and masks
1627 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
1628 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
1629
Willy Tarreau538f3e02021-09-24 15:52:17 +020016302021/09/24 : 2.5-dev8
1631 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
1632 - BUILD: halog: fix a -Wundef warning on non-glibc systems
1633 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
1634 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
1635 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
1636 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
1637 - MINOR: pools: automatically disable malloc_trim() with external allocators
1638 - MINOR: pools: report it when malloc_trim() is enabled
1639 - DOC: Add .mailmap
1640 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
1641 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
1642 - CLEANUP: acl: Remove unused variable when releasing an acl expression
1643 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
1644 - DOC: update Tim's address in .mailmap
1645 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
1646 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
1647 - DOC: management: certificate files must be sanitized before injection
1648 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
1649 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
1650 - BUG/MINOR: cli/payload: do not search for args inside payload
1651 - BUILD: sockpair: do not set unused flag
1652 - BUILD: proto_uxst: do not set unused flag
1653 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
1654 - MINOR: applet: remove the thread mask from appctx_new()
1655 - REORG: threads: move ha_get_pthread_id() to tinfo.h
1656 - CLEANUP: Apply ist.cocci
1657 - DEV: coccinelle: Add ist.cocci
1658 - CLEANUP: Apply bug_on.cocci
1659 - DEV: coccinelle: Add xalloc_size.cocci
1660 - DEV: coccinelle: Add bug_on.cocci
1661 - CLEANUP: Apply xalloc_size.cocci
1662 - DEV: coccinelle: Add xalloc_cast.cocci
1663 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
1664 - MINOR: httpclient: add the EOH when no headers where provided
1665 - CLEANUP: Include check.h in flt_spoe.c
1666 - CLEANUP: Remove unreachable `break` from parse_time_err()
1667 - BUG/MINOR: server: allow 'enable health' only if check configured
1668 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
1669 - MINOR: server: enable more keywords for ssl checks for dynamic servers
1670 - MINOR: server: enable more check related keywords for dynamic servers
1671 - REORG: server: move slowstart init outside of checks
1672 - MINOR: server: enable slowstart for dynamic server
1673 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
1674 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
1675 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
1676 - MINOR: quic: Move transport parmaters to anynomous struct.
1677 - MINOR: mux_quic: Add QUIC mux layer.
1678 - MINOR: connection: Add callbacks definitions for QUIC.
1679 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
1680 - MINOR: quic: Add a new definition to store STREAM frames.
1681 - MINOR: h3: Add HTTP/3 definitions.
1682 - MINOR: qpack: Add QPACK compression.
1683 - MINOR: quic_sock: Finalize the QUIC connections.
1684 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
1685 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
1686 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
1687 - BUG/MINOR: quic: Wrong ->accept() error handling
1688 - MINOR: quic: Add a wrapper function to update transport parameters.
1689 - MINOR: quic: Update the streams transport parameters.
1690 - MINOR: quic: Avoid header collisions
1691 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
1692 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
1693 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
1694 - MINOR: quic: Initialize the session before starting the xprt.
1695 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
1696 - MINOR: quic: QUIC conn initialization from I/O handler
1697 - MINOR: quic: Remove header protection for conn with context
1698 - MINOR: quic: Derive the initial secrets asap
1699 - MINOR: quic: Remove header protection also for Initial packets
1700 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
1701 - MINOR: quic: quic_update_ack_ranges_list() code factorization
1702 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
1703 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
1704 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
1705 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
1706 - BUG/MINOR: quic: Wrong RX packet reference counter usage
1707 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
1708 - MINOR: quic: Add a lock for RX packets
1709 - MINOR: quic: Move the connection state
1710 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
1711 - MINOR: quic: Replace the RX list of packet by a thread safety one.
1712 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
1713 - MINOR: quic: Add useful traces for I/O dgram handler
1714 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
1715 - MINOR: quic: Connection allocations rework
1716 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
1717 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
1718 - MINOR: quic: Add a ring buffer implementation for QUIC
1719 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
1720 - MINOR: quic: Add the QUIC v1 initial salt.
1721 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
1722 - MINOR: net_helper: add functions for pointers
1723 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
1724 - MINOR: proto_quic: Allocate TX ring buffers for listeners
1725 - MINOR: quic: Initialize pointers to TX ring buffer list
1726 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
1727 - MINOR: quic_tls: Make use of the QUIC V1 salt.
1728 - MINOR: quic: Remove old TX buffer implementation
1729 - MINOR: Add function for TX packets reference counting
1730 - MINOR: quic: Add TX packets at the very last time to their tree.
1731 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
1732 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
1733 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
1734 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
1735 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
1736 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
1737 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
1738 - MINOR: quic: Add a useful function to compute any frame length.
1739 - MINOR: quic: Add the QUIC connection state to traces
1740 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
1741 - MINOR: quic: Add the packet type to quic_tx_packet struct
1742 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
1743 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
1744 - MINOR: quic: Modify qc_build_cfrms() to support any frame
1745 - MINOR: quic: quic_conn_io_cb() task rework
1746 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
1747 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
1748 - MINOR: quic: Remove Application level related functions
1749 - MINOR: quic: Rename functions which do not build only Handshake packets
1750 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
1751 - MINOR: quic: Add a pool for TX ring buffer internal buffer
1752 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
1753 - MINOR: quic: Missing acks encoded size updates.
1754 - MINOR: quic: Evaluate the packet lengths in advance
1755 - MINOR: quic: Update the TLS extension for QUIC transport parameters
1756 - MINOR: quic: Fix handshake state debug strings
1757 - MINOR: quic: Atomically get/set the connection state
1758 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
1759 - MINOR: quic: Coalesce Application level packets with Handshake packets.
1760 - MINOR: quic: Wrong flags handling for acks
1761 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
1762 - MINOR: quic: Post handshake packet building improvements
1763 - MINOR: quic: Prepare Application level packet asap.
1764 - MINOR: h3: Send h3 settings asap
1765 - MINOR: quic: Wrong STREAM frame length computing
1766 - MINOR: quic: Wrong short packet minimum length
1767 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
1768 - MINOR: h3: change default settings
1769 - MINOR: quic-enc: fix varint encoding
1770 - MINOR: qpack: fix wrong comment
1771 - MINOR: qpack: generate headers list on decoder
1772 - MINOR: h3: parse headers to htx
1773 - MINOR: h3: allocate stream on headers
1774 - MEDIUM: mux-quic: implement ring buffer on stream tx
1775 - MINOR: mux-quic: send SETTINGS on uni stream
1776 - MINOR: h3: define snd_buf callback and divert mux ops
1777 - MINOR: mux-quic: define FIN stream flag
1778 - MINOR: qpack: create qpack-enc module
1779 - MINOR: qpack: encode headers functions
1780 - MINOR: h3: encode htx headers to QPACK
1781 - MINOR: h3: send htx data
1782 - MINOR: h3/mux: detect fin on last h3 frame of the stream
1783 - MINOR: quic: Shorten some handshakes
1784 - MINOR: quic: Make QUIC-TLS support at least two initial salts
1785 - MINOR: quic: Attach the QUIC connection to a thread.
1786 - MINOR: quic: Missing active_connection_id_limit default value
1787 - MINOR: quic_sock: Do not flag QUIC connections as being set
1788 - MINOR: buf: Add b_force_xfer() function
1789 - MINOR: quic: Make use of buffer structs to handle STREAM frames
1790 - MINOR: mux_quic: move qc_process() code to qc_send()
1791 - MINOR: quic: Add a typedef for unsigned long long
1792 - MINOR: quic: Confusion between TX/RX for the frame builders
1793 - MINOR: quic: Wrong packet flags settings during frame building
1794 - MINOR: quic: Constantness fixes for frame builders/parsers.
1795 - MINOR: quic_tls: Client/serveur state reordering
1796 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
1797 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
1798 - MINOR: quic: Initial packet number spaced not discarded
1799 - MINOR: quic: Add useful trace about pktns discarding
1800 - MINOR: mux_quic: Export the mux related flags
1801 - MINOR: quic: Implement quic_conn_subscribe()
1802 - MINOR: quic: Wake up the mux upon ACK receipt
1803 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
1804 - MINOR: quic: Implement qc_process_mux()
1805 - MINOR: quic: Wake up the xprt from mux
1806 - CLEANUP: quic: Remove useless inline functions
1807 - MINOR: quic: RX packets memory leak
1808 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
1809 - MINOR: quic: Crash upon too big packets receipt
1810 - MINOR: quic: define close handler
1811 - MEDIUM: quic: implement mux release/conn free
1812 - MINOR: quic: fix qcc subs initialization
1813 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
1814 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
1815 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
1816 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
1817 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
1818 - MINOR: htx: Add an HTX flag to know when a message is fragmented
1819 - MINOR: htx: Add a function to know if the free space wraps
1820 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
1821 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
1822 - BUG/MINOR: http-ana: increment internal_errors counter on response error
1823 - MINOR: stats: Enable dark mode on stat web page
1824 - CLEANUP: stats: Fix some alignment mistakes
1825 - MINOR: httpclient: httpclient_data() returns the available data
1826 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
1827 - MINOR: httpclient/lua: httpclient:get() API in lua
1828 - MINOR: httpclient/lua: implement the headers in the response object
1829 - BUG/MINOR: httpclient/lua: return an error on argument check
1830 - CLEANUP: slz: Mark `reset_refs` as static
1831
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +020018322021/09/12 : 2.5-dev7
1833 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
1834 - CLEANUP: htx: remove comments about "must be < 256 MB"
1835 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
1836 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
1837 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
1838 - MINOR: vars: rename vars_init() to vars_init_head()
1839 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
1840 - REORG: vars: remerge sample_store{,_stream}() into var_set()
1841 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
1842 - MINOR: vars: add a VF_CREATEONLY flag for creation
1843 - MINOR: vars: support storing empty sample data with a variable
1844 - MINOR: vars: store flags into variables and add VF_PERMANENT
1845 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
1846 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
1847 - MINOR: vars: preset a random seed to hash variables names
1848 - MEDIUM: vars: replace the global name index with a hash
1849 - CLEANUP: vars: remove the now unused var_names array
1850 - MINOR: vars: centralize the lock/unlock into static inlines
1851 - OPTIM: vars: only takes the variables lock on shared entries
1852 - OPTIM: vars: remove internal bookkeeping for vars_global_size
1853 - OPTIM: vars: do not keep variables usage stats if no limit is set
1854 - BUILD: fix dragonfly build again on __read_mostly
1855 - CI: Github Actions: temporarily disable Opentracing
1856 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
1857 - MINOR: htx: Skip headers with no value when adding a header list to a message
1858 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
1859 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
1860 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
1861 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
1862 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
1863 - CLEANUP: ebmbtree: Replace always-taken elseif by else
1864 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
1865 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
1866 - BUG/MINOR: opentracing: enable the use of http headers without a set value
1867 - CLEANUP: opentracing: use the haproxy function to generate uuid
1868 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
1869 - CI: Github Actions: re-enable Opentracing
1870 - CLEANUP: opentracing: simplify the condition on the empty header
1871 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
1872
Willy Tarreauf653e832021-09-03 15:19:56 +020018732021/09/03 : 2.5-dev6
1874 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
1875 - BUG/MINOR: tools: Fix loop condition in dump_text()
1876 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
1877 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
1878 - BUILD: tools: properly guard __GLIBC__ with defined()
1879 - BUILD: globally enable -Wundef
1880 - MINOR: log: Remove log-error-via-logformat option
1881 - MINOR: log: Add new "error-log-format" option
1882 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
1883 - CLEANUP: Add missing include guard to signal.h
1884 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
1885 - MINOR: connection: Add a connection error code sample fetch for backend side
1886 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
1887 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
1888 - CI: Github Actions: temporarily disable BoringSSL builds
1889 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
1890 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
1891 - MINOR: sample: add missing ARGC_ entries
1892 - BUG/MINOR: vars: properly set the argument parsing context in the expression
1893 - DOC: configuration: remove wrong tcp-request examples in tcp-response
1894 - MEDIUM: vars: add a new "set-var-fmt" action
1895 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
1896 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
1897 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
1898 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
1899 - MINOR: log: make log-format expressions completely usable outside of req/resp
1900 - MINOR: vars: add a "set-var-fmt" directive to the global section
1901 - MEDIUM: vars: also support format strings in CLI's "set var" command
1902 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
1903 - MINOR: vars: make vars_get_by_* support an optional default value
1904 - MINOR: vars: make the vars() sample fetch function support a default value
1905 - BUILD: ot: add argument for default value to vars_get_by_name()
1906
Willy Tarreau446344c2021-08-28 13:46:11 +020019072021/08/28 : 2.5-dev5
1908 - MINOR: httpclient: initialize the proxy
1909 - MINOR: httpclient: implement a simple HTTP Client API
1910 - MINOR: httpclient/cli: implement a simple client over the CLI
1911 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
1912 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
1913 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
1914 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
1915 - MINOR: server: check if srv is NULL in free_server()
1916 - MINOR: proxy: check if p is NULL in free_proxy()
1917 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
1918 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
1919 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
1920 - REGTESTS: abortonclose: after retries, 503 is expected, not close
1921 - REGTESTS: server: fix agent-check syntax and expectation
1922 - BUG/MINOR: httpclient: fix uninitialized sl variable
1923 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
1924 - BUG/MINOR: httpclient: check if hdr_num is not 0
1925 - MINOR: httpclient: cleanup the include files
1926 - MINOR: hlua: take the global Lua lock inside a global function
1927 - MINOR: tools: add FreeBSD support to get_exec_path()
1928 - BUG/MINOR: systemd: ExecStartPre must use -Ws
1929 - MINOR: systemd: remove the ExecStartPre line in the unit file
1930 - MINOR: ssl: add an openssl version string parser
1931 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
1932 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
1933 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
1934 - BUG/MINOR: httpclient: remove deinit of the httpclient
1935 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
1936 - MINOR: httpclient: set verify none on the https server
1937 - MINOR: httpclient: add the server to the proxy
1938 - BUG/MINOR: httpclient: fix Host header
1939 - BUILD: httpclient: fix build without OpenSSL
1940 - CI: github-actions: remove obsolete options
1941 - CLEANUP: assorted typo fixes in the code and comments
1942 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
1943 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
1944 - MINOR: server: return the next srv instance on free_server
1945 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
1946 - MEDIUM: server: extend refcount for all servers
1947 - MINOR: server: define non purgeable server flag
1948 - MINOR: server: mark referenced servers as non purgeable
1949 - MINOR: server: mark servers referenced by LUA script as non purgeable
1950 - MEDIUM: server: allow to remove servers at runtime except non purgeable
1951 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
1952 - REGTEST: add missing lua requirements on server removal test
1953 - REGTEST: fix haproxy required version for server removal test
1954 - BUG/MINOR: proxy: don't dump servers of internal proxies
1955 - REGTESTS: Use `feature cmd` for 2.5+ tests
1956 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
1957 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
1958 - MINOR: compiler: implement an ONLY_ONCE() macro
1959 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
1960 - MEDIUM: ssl: Capture more info from Client Hello
1961 - MINOR: sample: Expose SSL captures using new fetchers
1962 - MINOR: sample: Add be2dec converter
1963 - MINOR: sample: Add be2hex converter
1964 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
1965 - BUG/MINOR: time: fix idle time computation for long sleeps
1966 - MINOR: time: add report_idle() to report process-wide idle time
1967 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
1968 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
1969 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
1970 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
1971 - IMPORT: slz: silence a build warning with -Wundef
1972 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
1973
Willy Tarreau08d0f232021-08-17 14:08:55 +020019742021/08/17 : 2.5-dev4
1975 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
1976 - MINOR: doc: rename conn_status in `option httsplog`
1977 - MINOR: proxy: disabled takes a stopping and a disabled state
1978 - MINOR: stats: shows proxy in a stopped state
1979 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
1980 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
1981 - MINOR: threads: make thread_release() not wait for other ones to complete
1982 - MEDIUM: threads: add a stronger thread_isolate_full() call
1983 - MEDIUM: servers: make the server deletion code run under full thread isolation
1984 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
1985 - MINOR: activity/fd: remove the dead_fd counter
1986 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
1987 - CLEANUP: fd: remove the now unused fd_set_running()
1988 - CLEANUP: fd: remove the now unneeded fd_mig_lock
1989 - BUG/MINOR: server: update last_change on maint->ready transitions too
1990 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
1991 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
1992 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
1993 - MINOR: server: unmark deprecated on enable health/agent cli
1994 - MEDIUM: task: implement tasklet kill
1995 - MINOR: server: initialize fields for dynamic server check
1996 - MINOR: check: allocate default check ruleset for every backends
1997 - MINOR: check: export check init functions
1998 - MINOR: check: do not increment global maxsock at runtime
1999 - MINOR: server: implement a refcount for dynamic servers
2000 - MEDIUM: check: implement check deletion for dynamic servers
2001 - MINOR: check: enable safe keywords for dynamic servers
2002 - MEDIUM: server: implement check for dynamic servers
2003 - MEDIUM: server: implement agent check for dynamic servers
2004 - REGTESTS: server: add dynamic check server test
2005 - MINOR: doc: specify ulimit-n usage for dynamic servers
2006 - REGTESTS: server: fix dynamic server with checks test
2007 - CI: travis-ci: temporarily disable arm64 builds
2008 - BUG/MINOR: check: test if server is not null in purge
2009 - MINOR: global: define MODE_STOPPING
2010 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
2011 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
2012 - BUG/MINOR: check: do not reset check flags on purge
2013 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
2014 - BUG/MEDIUM: check: fix leak on agent-check purge
2015 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
2016 - BUG/MINOR: buffer: fix buffer_dump() formatting
2017 - MINOR: channel: remove an htx block from a channel
2018 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
2019 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
2020 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
2021 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
2022 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
2023 - MINOR: filters/lua: Release filters before the lua context
2024 - MINOR: lua: Add a function to get a reference on a table in the stack
2025 - MEDIUM: lua: Process buffer data using an offset and a length
2026 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
2027 - DOC: Improve the lua documentation
2028 - MEDIUM: filters/lua: Add support for dummy filters written in lua
2029 - MINOR: lua: Add a function to get a filter attached to a channel class
2030 - MINOR: lua: Add flags on the lua TXN to know the execution context
2031 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
2032 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
2033 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
2034 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
2035 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
2036 - DOC: config: Fix 'http-response send-spoe-group' documentation
2037 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
2038 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
2039 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
2040 - MINOR: cli: delare the CLI frontend as an internal proxy
2041 - MINOR: proxy: disable warnings for internal proxies
2042 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
2043 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
2044 - DOC: lua-api: Add documentation about lua filters
2045 - CI: Remove obsolete USE_SLZ=1 CI job
2046 - CLEANUP: assorted typo fixes in the code and comments
2047 - CI: github actions: relax OpenSSL-3.0.0 version comparision
2048 - BUILD: tools: get the absolute path of the current binary on NetBSD.
2049 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
2050 - DOC/MINOR: fix typo in management document
2051 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
2052 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
2053 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
2054 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
2055 - BUG/MEDIUM: h2: give :authority precedence over Host
2056 - REGTESTS: add a test to prevent h2 desync attacks
2057
Willy Tarreau8441deb2021-08-01 18:19:51 +020020582021/08/01 : 2.5-dev3
2059 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
2060 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
2061 - MEDIUM: proxy: remove long-broken 'option http_proxy'
2062 - CLEANUP: http_ana: Remove now unused label from http_process_request()
2063 - MINOR: deinit: always deinit the init_mutex on failed initialization
2064 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
2065 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
2066 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
2067 - BUILD/MINOR: memprof fix macOs build.
2068 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
2069 - BUG/MINOR: stats: Add missing agent stats on servers
2070 - BUG/MINOR: check: fix the condition to validate a port-less server
2071 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
2072 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
2073 - MINOR: ssl: use __objt_* variant when retrieving counters
2074 - BUG/MINOR: systemd: must check the configuration using -Ws
2075 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
2076 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
2077 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
2078 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
2079 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
2080 - MINOR: mworker: the mworker CLI proxy is internal
2081 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
2082 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
2083 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
2084 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
2085 - MINOR: connection: Add a connection error code sample fetch
2086 - MINOR: ssl: Enable error fetches in case of handshake error
2087 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
2088 - MINOR: ssl: Define a default https log format
2089 - MEDIUM: connection: Add option to disable legacy error log
2090 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
2091 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
2092 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
2093 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
2094 - BUG/MINOR: select: fix excess number of dead/skip reported
2095 - BUG/MINOR: poll: fix abnormally high skip_fd counter
2096 - BUG/MINOR: pollers: always program an update for migrated FDs
2097 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
2098 - DOC: internals: document the FD takeover process
2099 - MINOR: fd: update flags only once in fd_update_events()
2100 - MINOR: poll/epoll: move detection of RDHUP support earlier
2101 - REORG: fd: uninline fd_update_events()
2102 - MEDIUM: fd: rely more on fd_update_events() to detect changes
2103 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
2104 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
2105 - MEDIUM: atomic: relax the load/store barriers on x86_64
2106 - BUILD: opentracing: fixed build when using pkg-config utility
2107
Willy Tarreaubccc91d2021-07-17 12:35:11 +020021082021/07/17 : 2.5-dev2
2109 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
2110 - DOC: config: use CREATE USER for mysql-check
2111 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
2112 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
2113 - MINOR: stick-table: make skttable_data_cast to use only std types
2114 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
2115 - MEDIUM: peers: handle arrays of std types in peers protocol
2116 - DOC: stick-table: add missing documentation about gpt0 stored type
2117 - MEDIUM: stick-table: add the new array of gpt data_type
2118 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
2119 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
2120 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
2121 - BUG/MEDIUM: sock: make sure to never miss early connection failures
2122 - BUG/MINOR: cli: fix server name output in "show fd"
2123 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
2124 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
2125 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
2126 - MINOR: http: implement http_get_scheme
2127 - MEDIUM: http: implement scheme-based normalization
2128 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
2129 - MEDIUM: h2: apply scheme-based normalization on h2 requests
2130 - REGTESTS: add http scheme-based normalization test
2131 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
2132 - MINOR: http: implement http uri parser
2133 - MINOR: http: use http uri parser for scheme
2134 - MINOR: http: use http uri parser for authority
2135 - REORG: http_ana: split conditions for monitor-uri in wait for request
2136 - MINOR: http: use http uri parser for path
2137 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
2138 - MINOR: mux_h2: define config to disable h2 websocket support
2139 - CLEANUP: applet: remove unused thread_mask
2140 - BUG/MINOR: ssl: Default-server configuration ignored by server
2141 - BUILD: add detection of missing important CFLAGS
2142 - BUILD: lua: silence a build warning with TCC
2143 - MINOR: srv: extract tracking server config function
2144 - MINOR: srv: do not allow to track a dynamic server
2145 - MEDIUM: server: support track keyword for dynamic servers
2146 - REGTESTS: test track support for dynamic servers
2147 - MINOR: init: verify that there is a single word on "-cc"
2148 - MINOR: init: make -cc support environment variables expansion
2149 - MINOR: arg: add a free_args() function to free an args array
2150 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
2151 - CLEANUP: hlua: use free_args() to release args arrays
2152 - REORG: config: move the condition preprocessing code to its own file
2153 - MINOR: cfgcond: start to split the condition parser to introduce terms
2154 - MEDIUM: cfgcond: report invalid trailing chars after expressions
2155 - MINOR: cfgcond: remerge all arguments into a single line
2156 - MINOR: cfgcond: support negating conditional expressions
2157 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
2158 - MINOR: cfgcond: insert an expression between the condition and the term
2159 - MINOR: cfgcond: support terms made of parenthesis around expressions
2160 - REGTEST: make check_condition.vtc fail as soon as possible
2161 - REGTESTS: add more complex check conditions to check_conditions.vtc
2162 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
2163
Willy Tarreau96a2f502021-06-30 16:16:14 +020021642021/06/30 : 2.5-dev1
2165 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
2166 - MINOR: ssl: Allow duplicated entries in the cafile_tree
2167 - MEDIUM: ssl: Chain ckch instances in ca-file entries
2168 - MINOR: ssl: Add reference to default ckch instance in bind_conf
2169 - MINOR: ssl: Add helper functions to create/delete cafile entries
2170 - MEDIUM: ssl: Add a way to load a ca-file content from memory
2171 - MINOR: ssl: Add helper function to add cafile entries
2172 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
2173 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
2174 - REGTESTS: ssl: Add new ca-file update tests
2175 - MINOR: ssl: Add "abort ssl ca-file" CLI command
2176 - MINOR: ssl: Add a cafile_entry type field
2177 - MINOR: ssl: Refactorize the "show certificate details" code
2178 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
2179 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
2180 - MINOR: ssl: Add "del ssl ca-file" CLI command
2181 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
2182 - DOC: ssl: Add documentation about CA file hot update commands
2183 - DOC: internals: update the SSL architecture schema
2184 - MINOR: ssl: Chain instances in ca-file entries
2185 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
2186 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
2187 - MINOR: ssl: Add "abort ssl crl-file" CLI command
2188 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
2189 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
2190 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
2191 - DOC: ssl: Add documentation about CRL file hot update commands
2192 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
2193 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
2194 - CI: introduce scripts/build-vtest.sh for installing VTest
2195 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
2196 - CI: github actions: add OpenTracing builds
2197 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
2198 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
2199 - BUILD/MINOR: opentracing: fixed build when using clang
2200 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
2201 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
2202 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
2203 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
2204 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
2205 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
2206 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
2207 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
2208 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
2209 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
2210 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
2211 - MINOR: buf: Add function to realign a buffer with a specific head position
2212 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
2213 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
2214 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
2215 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
2216 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
2217 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
2218 - MINOR: cfgparse: Fail when encountering extra arguments in macro
2219 - DOC: intro: Fix typo in starter guide
2220 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
2221 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
2222 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
2223 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
2224 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
2225 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
2226 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
2227 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
2228 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
2229 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
2230 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
2231 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
2232 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
2233 - CLEANUP: http-ana: Remove useless if statement about L7 retries
2234 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
2235 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
2236 - BUG/MINOR: vars: Be sure to have a session to get checks variables
2237 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
2238 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
2239 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
2240 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
2241 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
2242 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
2243 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
2244 - CI: github actions: add OpenSSL-3.0.0 builds
2245 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
2246 - MINOR: errors: allow empty va_args for diag variadic macro
2247 - REORG: errors: split errors reporting function from log.c
2248 - CLEANUP: server: fix cosmetic of error message on sni parsing
2249 - MEDIUM: errors: implement user messages buffer
2250 - MINOR: log: do not discard stderr when starting is over
2251 - MEDIUM: errors: implement parsing context type
2252 - MINOR: errors: use user messages context in print_message
2253 - MINOR: log: display exec path on first warning
2254 - MINOR: errors: specify prefix "config" for parsing output
2255 - MINOR: log: define server user message format
2256 - REORG: server: use parsing ctx for server parsing
2257 - REORG: config: use parsing ctx for server config check
2258 - MINOR: server: use parsing ctx for server init addr
2259 - MINOR: server: use ha_alert in server parsing functions
2260 - DOC: use the req.ssl_sni in examples
2261 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
2262 - CLEANUP: tools: Make errptr const in `parse_line()`
2263 - MINOR: haproxy: Add `-cc` argument
2264 - BUG: errors: remove printf positional args for user messages context
2265 - CI: Make matrix.py executable and add shebang
2266 - BUILD: make tune.ssl.keylog available again
2267 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
2268 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
2269 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
2270 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
2271 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
2272 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
2273 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
2274 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
2275 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
2276 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
2277 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
2278 - REGTESTS: ssl: Add "show ssl ocsp-response" test
2279 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
2280 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
2281 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
2282 - MINOR: pools: do not maintain the lock during pool_flush()
2283 - MINOR: pools: call malloc_trim() under thread isolation
2284 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
2285 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
2286 - CLEANUP: pools: remove now unused seq and pool_free_list
2287 - MEDIUM: pools: remove the locked pools implementation
2288 - BUILD: ssl: Fix compilation with BoringSSL
2289 - BUG/MEDIUM: errors: include missing obj_type file
2290 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
2291 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
2292 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
2293 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
2294 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
2295 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
2296 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
2297 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
2298 - BUG/MINOR: server-state: load SRV resolution only if params match the config
2299 - MINOR: config: remove support for deprecated option "tune.chksize"
2300 - MINOR: config: completely remove support for "no option http-use-htx"
2301 - MINOR: log: remove the long-deprecated early log-format tags
2302 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
2303 - MINOR: config: reject long-deprecated "option forceclose"
2304 - MINOR: config: remove deprecated option "http-tunnel"
2305 - MEDIUM: proxy: remove the deprecated "grace" keyword
2306 - MAJOR: config: remove parsing of the global "nbproc" directive
2307 - BUILD: init: remove initialization of multi-process thread mappings
2308 - BUILD: log: remove unused fmt_directive()
2309 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
2310 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
2311 - CI: github actions: enable alpine/musl builds
2312 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
2313 - DOC: lua: Add a warning about buffers modification in HTTP
2314 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
2315 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
2316 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
2317 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
2318 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
2319 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
2320 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
2321 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
2322 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
2323 - BUG/MINOR: mworker: fix typo in chroot error message
2324 - CLEANUP: global: remove unused definition of stopping_task[]
2325 - MEDIUM: init: remove the loop over processes during init
2326 - MINOR: mworker: remove the initialization loop over processes
2327 - CLEANUP: global: remove the nbproc field from the global structure
2328 - CLEANUP: global: remove pid_bit and all_proc_mask
2329 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
2330 - MEDIUM: config: simplify cpu-map handling
2331 - MEDIUM: cpu-set: make the proc a single bit field and not an array
2332 - CLEANUP: global: remove unused definition of MAX_PROCS
2333 - MEDIUM: global: remove the relative_pid from global and mworker
2334 - DOC: update references to process numbers in cpu-map and bind-process
2335 - MEDIUM: config: warn about "bind-process" deprecation
2336 - CLEANUP: shctx: remove the different inter-process locking techniques
2337 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
2338 - MINOR: backend: only skip LB when there are actual connections
2339 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
2340 - MINOR: connection: add helper conn_append_debug_info()
2341 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
2342 - CLEANUP: mux-h2/traces: better align user messages
2343 - BUG/MINOR: stats: make "show stat typed desc" work again
2344 - MINOR: mux-h2: obey http-ignore-probes during the preface
2345 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
2346 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
2347 - CLEANUP: assorted typo fixes in the code and comments
2348 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
2349 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
2350 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
2351 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
2352 - REGTESTS: Remove support for REQUIRE_BINARIES
2353 - CI: ssl: enable parallel builds for OpenSSL on Linux
2354 - CI: ssl: do not needlessly build the OpenSSL docs
2355 - CI: ssl: keep the old method for ancient OpenSSL versions
2356 - CLEANUP: server: a separate function for initializing the per_thr field
2357 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
2358 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
2359 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
2360 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
2361 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
2362 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
2363 - BUG/MINOR: backend: do not set sni on connection reuse
2364 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
2365 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
2366 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
2367 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
2368 - MINOR: ssl: always initialize random generator
2369 - MINOR: ssl: check allocation in ssl_sock_init_srv
2370 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
2371 - MINOR: ssl: check allocation in parse npn/sni
2372 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
2373 - MINOR: ssl: render file-access optional on server crt loading
2374 - MINOR: ssl: split parse functions for alpn/check-alpn
2375 - MINOR: ssl: support ca-file arg for dynamic servers
2376 - MINOR: ssl: support crt arg for dynamic servers
2377 - MINOR: ssl: support crl arg for dynamic servers
2378 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
2379 - MINOR: ssl: support ssl keyword for dynamic servers
2380 - REGTESTS: server: test ssl support for dynamic servers
2381 - MINOR: queue: update the stream's pend_pos before queuing it
2382 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
2383 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
2384 - REGTESTS: fix maxconn update with agent-check
2385 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
2386 - MINOR: queue: update proxy->served once out of the loop
2387 - MEDIUM: queue: refine the locking in process_srv_queue()
2388 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
2389 - MINOR: queue: create a new structure type "queue"
2390 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
2391 - MINOR: server: replace the pendconns-related stuff with a struct queue
2392 - MEDIUM: queue: use a dedicated lock for the queues
2393 - MEDIUM: queue: simplify again the process_srv_queue() API
2394 - MINOR: queue: factor out the proxy/server queuing code
2395 - MINOR: queue: use atomic-ops to update the queue's index
2396 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
2397 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
2398 - MEDIUM: queue: unlock as soon as possible
2399 - MINOR: queue: make pendconn_first() take the lock by itself
2400 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
2401 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
2402 - DOC: config: Add missing actions in "tcp-request session" documentation
2403 - CLEANUP: dns: Remove a forgotten debug message
2404 - DOC: Replace issue templates by issue forms
2405 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
2406 - Revert "MEDIUM: queue: unlock as soon as possible"
2407 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
2408 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
2409 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
2410 - Revert "MINOR: queue: factor out the proxy/server queuing code"
2411 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
2412 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
2413 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
2414 - Revert "MINOR: queue: update proxy->served once out of the loop"
2415 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
2416 - MEDIUM: queue: update px->served and lb's take_conn once per loop
2417 - MEDIUM: queue: use a dedicated lock for the queues (v2)
2418 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
2419 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
2420 - MINOR: queue: factor out the proxy/server queuing code (v2)
2421 - MINOR: queue: use atomic-ops to update the queue's index (v2)
2422 - MEDIUM: queue: take the proxy lock only during the px queue accesses
2423 - MEDIUM: queue: use a trylock on the server's queue
2424 - MINOR: queue: add queue_init() to initialize a queue
2425 - MINOR: queue: add a pointer to the server and the proxy in the queue
2426 - MINOR: queue: store a pointer to the queue into the pendconn
2427 - MINOR: queue: remove the px/srv fields from pendconn
2428 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
2429 - BUG: backend: stop looking for queued connections once there's no more
2430 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
2431 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
2432 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
2433 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
2434 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
2435 - BUILD: Makefile: fix linkage for Haiku.
2436 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
2437 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
2438 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
2439 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
2440 - CLEANUP: tcp-act: Sort action lists
2441 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
2442 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
2443 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
2444 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
2445 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
2446 - CLEANUP: peers: re-write intdecode function comment.
2447
Willy Tarreau1f973062021-05-14 09:36:37 +020024482021/05/14 : 2.5-dev0
2449 - MINOR: version: it's development again
2450
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020024512021/05/14 : 2.4.0
2452 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
2453 - CLEANUP: cli/activity: Remove double spacing in set profiling command
2454 - CI: Build VTest with clang
2455 - CI: extend spellchecker whitelist, add "ists" as well
2456 - CLEANUP: assorted typo fixes in the code and comments
2457 - BUG/MINOR: memprof: properly account for differences for realloc()
2458 - MINOR: memprof: also report the method used by each call
2459 - MINOR: memprof: also report the totals and delta alloc-free
2460 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
2461 - BUG/MINOR: http_act: Fix normalizer names in error messages
2462 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
2463 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
2464 - IMPORT: slz: use the generic function for the last bytes of the crc32
2465 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
2466 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
2467 - BUILD: makefile: add a few popular ARMv8 CPU targets
2468 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
2469 - REGTESTS: stick-table: add src_conn_rate test
2470 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
2471 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
2472 - EXAMPLES: add a "basic-config-edge" example config
2473 - EXAMPLES: add a trivial config for quick testing
2474 - DOC: management: Correct example reload command in the document
2475 - Revert "CI: Build VTest with clang"
2476 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
2477 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
2478 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
2479 - DOC: config: Fix configuration example for mqtt
2480 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
2481 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
2482 - DOC: update min requirements in INSTALL
2483 - IMPORT: slz: use inttypes.h instead of stdint.h
2484 - BUILD: sample: use strtoll() instead of atoll()
2485 - MINOR: version: mention that it's LTS now.
2486
Willy Tarreau46b93af2021-05-10 07:50:26 +020024872021/05/10 : 2.4-dev19
2488 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
2489 - BUG/MEDIUM: cli: prevent memory leak on write errors
2490 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
2491 - MINOR: debug: add a new "debug dev sym" command in expert mode
2492 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
2493 - CI: Github Actions: switch to LibreSSL-3.3.3
2494 - MINOR: srv: close all idle connections on shutdown
2495 - MINOR: connection: move session_list member in a union
2496 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
2497 - MEDIUM: connection: close front idling connection on soft-stop
2498 - MINOR: tools: add functions to retrieve the address of a symbol
2499 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
2500 - MINOR: activity: add a "memory" entry to "profiling"
2501 - MINOR: activity: declare the storage for memory usage statistics
2502 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
2503 - MINOR: activity: clean up the show profiling io_handler a little bit
2504 - MINOR: activity: make "show profiling" support a few arguments
2505 - MINOR: activity: make "show profiling" also dump the memoery usage
2506 - MINOR: activity: add the profiling.memory global setting
2507 - BUILD: makefile: add new option USE_MEMORY_PROFILING
2508 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
2509 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
2510 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
2511 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
2512 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
2513 - REGTESTS: Add script to test abortonclose option
2514 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
2515 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
2516 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
2517 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
2518 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
2519 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
2520 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
2521 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
2522 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
2523 - BUG/MINOR: config: .if/.elif should also accept negative integers
2524 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
2525 - MINOR: config: keep up-to-date current file/line/section in the global struct
2526 - MINOR: config: support some pseudo-variables for file/line/section
2527 - BUILD: activity: do not include malloc.h
2528 - MINOR: arg: improve the error message on missing closing parenthesis
2529 - MINOR: global: export the build features string list
2530 - MINOR: global: add version comparison functions
2531 - MINOR: config: improve .if condition error reporting
2532 - MINOR: config: make cfg_eval_condition() support predicates with arguments
2533 - MINOR: config: add predicate "defined()" to conditional expression blocks
2534 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
2535 - MINOR: config: add predicate "feature" to detect certain built-in features
2536 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
2537 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
2538 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
2539 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
2540 - MINOR: config: add a new message directive: .diag
2541 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
2542 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
2543 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
2544 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
2545 - MINOR: global: define tainted flag
2546 - MINOR: cfgparse: add a new field flags in cfg_keyword
2547 - MINOR: cfgparse: implement experimental config keywords
2548 - MINOR: action: replace match_pfx by a keyword flags field
2549 - MINOR: action: implement experimental actions
2550 - MINOR: cli: set tainted when using CLI expert/experimental mode
2551 - MINOR: stats: report tainted on show info
2552 - MINOR: http_act: mark normalize-uri as experimental
2553 - BUILD: fix usage of ha_alert without format string
2554 - MINOR: proxy: define PR_CAP_LB
2555 - BUG/MINOR: server: do not report diag for peer servers with null weight
2556 - DOC: ssl: Extra files loading now works for backends too
2557 - ADDONS: make addons/ discoverable by git via .gitignore
2558 - DOC: ssl: Add information about crl-file option
2559 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
2560 - DOC: management: mention that some fields may be emitted as floats
2561 - MINOR: tools: implement trimming of floating point numbers
2562 - MINOR: tools: add a float-to-ascii conversion function
2563 - MINOR: freq_ctr: add new functions to report float measurements
2564 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
2565 - MINOR: stats: add the HTML conversion for float types
2566 - MINOR: stats: pass the appctx flags to stats_fill_info()
2567 - MINOR: stats: support an optional "float" option to "show info"
2568 - MINOR: stats: use tv_remain() to precisely compute the uptime
2569 - MINOR: stats: report uptime and start time as floats with subsecond resolution
2570 - MINOR: stats: make "show info" able to report rates as floats when asked
2571 - MINOR: config: mark tune.fd.edge-triggered as experimental
2572 - REORG: vars: move the "proc" scope variables out of the global struct
2573 - REORG: threads: move all_thread_mask() to thread.h
2574 - BUILD: wdt: include signal-t.h
2575 - BUILD: auth: include missing list.h
2576 - REORG: mworker: move proc_self from global to mworker
2577 - BUILD: ssl: ssl_utils requires chunk.h
2578 - BUILD: config: cfgparse-ssl.c needs tools.h
2579 - BUILD: wurfl: wurfl.c needs tools.h
2580 - BUILD: spoe: flt_spoe.c needs tools.h
2581 - BUILD: promex: service-prometheus.c needs tools.h
2582 - BUILD: resolvers: include tools.h
2583 - BUILD: config: include tools.h in cfgparse-listen.c
2584 - BUILD: htx: include tools.h in http_htx.c
2585 - BUILD: proxy: include tools.h in proxy.c
2586 - BUILD: session: include tools.h in session.c
2587 - BUILD: cache: include tools.h in cache.c
2588 - BUILD: sink: include tools.h in sink.c
2589 - BUILD: connection: include tools.h in connection.c
2590 - BUILD: server-state: include tools.h from server_state.c
2591 - BUILD: dns: include tools.h in dns.c
2592 - BUILD: payload: include tools.h in payload.c
2593 - BUILD: vars: include tools.h in vars.c
2594 - BUILD: compression: include tools.h in compression.c
2595 - BUILD: mworker: include tools.h from mworker.c
2596 - BUILD: queue: include tools.h from queue.c
2597 - BUILD: udp: include tools.h from proto_udp.c
2598 - BUILD: stick-table: include freq_ctr.h from stick_table.h
2599 - BUILD: server: include tools.h from server.c
2600 - BUILD: server: include missing proxy.h in server.c
2601 - BUILD: sink: include proxy.h in sink.c
2602 - BUILD: mworker: include proxy.h in mworker.c
2603 - BUILD: filters: include proxy.h in filters.c
2604 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
2605 - BUILD: connection: move list_mux_proto() to connection.c
2606 - REORG: stick-table: uninline stktable_alloc_data_type()
2607 - REORG: stick-table: move composite address functions to stick_table.h
2608 - REORG: config: uninline warnifnotcap() and failifnotcap()
2609 - BUILD: task: remove unused includes from task.c
2610 - MINOR: task: stop including stream.h from task.c
2611 - BUILD: connection: stop including listener-t.h
2612 - BUILD: hlua: include proxy.h from hlua.c
2613 - BUILD: mux-h1: include proxy.h from mux-h1.c
2614 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
2615 - BUILD: listener: include proxy.h from listener.c
2616 - BUILD: http-rules: include proxy.h from http_rules.c
2617 - BUILD: thread: include log.h from thread.c
2618 - BUILD: comp: include proxy.h from flt_http_comp.c
2619 - BUILD: fd: include log.h from fd.c
2620 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
2621 - BUILD: makefile: reorder object files by build time
2622 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
2623 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
2624 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
2625 - DOC: remove last occurrences of "HA-Proxy" syntax
2626 - DOC: peers: fix the protocol tag name in the doc
2627 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
2628 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
2629 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
2630 - MINOR: tools/rnd: compute the result outside of the CAS loop
2631 - BUILD: http_fetch: address a few aliasing warnings with older compilers
2632 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
2633 - BUILD: errors: include stdarg in errors.h
2634 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
2635 - MINOR: cli: make "help" support a command in argument
2636 - MINOR: cli: sort the output of the "help" keywords
2637 - CLEANUP: cli/mworker: properly align the help messages
2638 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
2639 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
2640 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
2641 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
2642 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
2643
Willy Tarreau080347f2021-05-01 08:25:15 +020026442021/05/01 : 2.4-dev18
2645 - DOC: Fix indentation for `path-strip-dot` normalizer
2646 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
2647 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
2648 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
2649 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
2650 - REORG: htx: Inline htx functions to add HTX blocks in a message
2651 - CLEANUP: assorted typo fixes in the code and comments
2652 - DOC: general: fix white spaces for HTML converter
2653 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
2654 - BUG/MINOR: cpuset: move include guard at the very beginning
2655 - BUG/MAJOR: fix build on musl with cpu_set_t support
2656 - BUG/MEDIUM: cpuset: fix build on MacOS
2657 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
2658 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
2659 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
2660 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
2661 - MEDIUM: http-ana: handle read error on server side if waiting for response
2662 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
2663 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
2664 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
2665 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
2666 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
2667 - DOC: general: fix example in set-timeout
2668 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
2669 - MINOR: config: add a new "default-path" global directive
2670 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
2671 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
2672 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
2673 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
2674 - BUG/MEDIUM: peers: reset commitupdate value in new conns
2675 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
2676 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
2677 - MINOR: peers: add informative flags about resync process for debugging
2678 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
2679 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
2680 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
2681 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
2682 - REGTESTS: server: fix cli_add_server due to previous trace update
2683 - REGTESTS: add minimal CLI "add map" tests
2684 - DOC: management: move "set var" to the proper place
2685 - CLEANUP: map: slightly reorder the add map function
2686 - MINOR: map: get rid of map_add_key_value()
2687 - MINOR: map: show the current and next pattern version in "show map"
2688 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
2689 - MINOR: pattern: support purging arbitrary ranges of generations
2690 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
2691 - MINOR: map/acl: add the "prepare map/acl" CLI command
2692 - MINOR: map/acl: add the "commit map/acl" CLI command
2693 - MINOR: map/acl: make "add map/acl" support an optional version number
2694 - CLEANUP: map/cli: properly align the map/acl help
2695 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
2696
Willy Tarreaubfd19d62021-04-23 19:11:10 +020026972021/04/23 : 2.4-dev17
2698 - MINOIR: mux-pt/trace: Register a new trace source with its events
2699 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
2700 - CI: travis: Drastically clean up .travis.yml
2701 - CLEANUP: pattern: make all pattern tables read-only
2702 - MINOR: trace: replace the trace() inline function with an equivalent macro
2703 - MINOR: initcall: uniformize the section names between MacOS and other unixes
2704 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
2705 - MINOR: compiler: add macros to declare section names
2706 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
2707 - MINOR: global: declare a read_mostly section
2708 - MINOR: fd: move a few read-mostly variables to their own section
2709 - MINOR: epoll: move epoll_fd to read_mostly
2710 - MINOR: kqueue: move kqueue_fd to read_mostly
2711 - MINOR: pool: move pool declarations to read_mostly
2712 - MINOR: threads: mark all_threads_mask as read_mostly
2713 - MINOR: server: move idle_conn_task to read_mostly
2714 - MINOR: protocol: move __protocol_by_family to read_mostly
2715 - MINOR: pattern: make the pat_lru_seed read_mostly
2716 - MINOR: trace: make trace sources read_mostly
2717 - MINOR: freq_ctr: add a generic function to report the total value
2718 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
2719 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
2720 - MINOR: freq_ctr: add the missing next_event_delay_period()
2721 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
2722 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
2723 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
2724 - MINOR: freq_ctr: simplify and improve the update function
2725 - CLEANUP: time: remove the now unused ms_left_scaled
2726 - MINOR: time: move the time initialization out of tv_update_date()
2727 - MINOR: time: remove useless variable copies in tv_update_date()
2728 - MINOR: time: change the global timeval and the the global tick at once
2729 - MEDIUM: time: make the clock offset global and no per-thread
2730 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
2731 - MINOR: trace: Add the checks as a possible trace source
2732 - MINOIR: checks/trace: Register a new trace source with its events
2733 - MINOR: hlua: Add function to release a lua function
2734 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
2735 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
2736 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
2737 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
2738 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
2739 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
2740 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
2741 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
2742 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
2743 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
2744 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
2745 - DOC: internals: update the SSL architecture schema
2746 - BUG/MEDIUM: sample: Fix adjusting size in field converter
2747 - MINOR: sample: add ub64dec and ub64enc converters
2748 - CLEANUP: sample: align samples list in sample.c
2749 - MINOR: ist: Add `istclear(struct ist*)`
2750 - CI: cirrus: install "pcre" package
2751 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
2752 - MINOR: opentracing: transfer of context names without prefix
2753 - MINOR: sample: converter: Add mjson library.
2754 - MINOR: sample: converter: Add json_query converter
2755 - CI: travis-ci: enable weekly graviton2 builds
2756 - DOC: ssl: Certificate hot update only works on fronted certificates
2757 - DOC: ssl: Certificate hot update works on server certificates
2758 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
2759 - MINOR: threads: Only consider running threads to end a thread harmeless period
2760 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
2761 - MINOR: logs: Add support of checks as session origin to format lf strings
2762 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
2763 - MINOR: connection: Make bc_http_major compatible with tcp-checks
2764 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
2765 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
2766 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
2767 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
2768 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
2769 - BUG/MINOR: logs: Report the true number of retries if there was no connection
2770 - BUILD: makefile: Redirect stderr to /dev/null when probing options
2771 - MINOR: uri_normalizer: Add uri_normalizer module
2772 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
2773 - MINOR: uri_normalizer: Add `http-request normalize-uri`
2774 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
2775 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
2776 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
2777 - MINOR: uri_normalizer: Add a `sort-query` normalizer
2778 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
2779 - MEDIUM: http_act: Rename uri-normalizers
2780 - DOC: Add introduction to http-request normalize-uri
2781 - DOC: Note that URI normalization is experimental
2782 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
2783 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
2784 - MINOR: pools: drop the unused static history of artificially failed allocs
2785 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
2786 - MEDIUM: pools: move the cache into the pool header
2787 - MINOR: pool: remove the size field from pool_cache_head
2788 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
2789 - MINOR: pools: enable the fault injector in all allocation modes
2790 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
2791 - MEDIUM: pools: unify pool_refill_alloc() across all models
2792 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
2793 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
2794 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
2795 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
2796 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
2797 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
2798 - MINOR: tools: add statistical_prng_range() to get a random number over a range
2799 - MINOR: pools: use cheaper randoms for fault injections
2800 - MINOR: pools: move the fault injector to __pool_alloc()
2801 - MINOR: pools: split the OS-based allocator in two
2802 - MINOR: pools: always use atomic ops to maintain counters
2803 - MINOR: pools: move pool_free_area() out of the lock in the locked version
2804 - MINOR: pools: factor the release code into pool_put_to_os()
2805 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
2806 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
2807 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
2808 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
2809 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
2810 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
2811 - CLEANUP: pools: uninline pool_put_to_cache()
2812 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
2813 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
2814 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
2815 - CONTRIB: mod_defender: import the minimal number of includes
2816 - CONTRIB: mod_defender: make the code build with the embedded includes
2817 - CONTRIB: modsecurity: import the minimal number of includes
2818 - CONTRIB: modsecurity: make the code build with the embedded includes
2819 - CLEANUP: sample: Improve local variables in sample_conv_json_query
2820 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
2821 - CLEANUP: sample: Use explicit return for successful `json_query`s
2822 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
2823 - CONTRIB: move spoa_example out of the tree
2824 - BUG/MINOR: server: free srv.lb_nodes in free_server
2825 - BUG/MINOR: logs: free logsrv.conf.file on exit
2826 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
2827 - MINOR: server: add log on dynamic server creation
2828 - MINOR: server: implement delete server cli command
2829 - CONTRIB: move spoa_server out of the tree
2830 - CONTRIB: move modsecurity out of the tree
2831 - BUG/MINOR: server: fix potential null gcc error in delete server
2832 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
2833 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
2834 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
2835 - CLEANUP: uri_normalizer: Remove trailing whitespace
2836 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
2837 - CONTRIB: move mod_defender out of the tree
2838 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
2839 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
2840 - MINOR: config: add a diag for invalid cpu-map statement
2841 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
2842 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
2843 - BUILD: makefile: fix the "make clean" target on strict bourne shells
2844 - IMPORT: slz: import slz into the tree
2845 - BUILD: compression: switch SLZ from out-of-tree to in-tree
2846 - CI: github: do not build libslz any more
2847 - CLEANUP: compression: remove calls to SLZ init functions
2848 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
2849 - MINOR: cpuset: define a platform-independent cpuset type
2850 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
2851 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
2852 - MINOR: thread: implement the detection of forced cpu affinity
2853 - MINOR: cfgparse: support the comma separator on parse_cpu_set
2854 - MEDIUM: cfgparse: detect numa and set affinity if needed
2855 - MINOR: global: add option to disable numa detection
2856 - BUG/MINOR: haproxy: fix compilation on macOS
2857 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
2858 - MINOR: time: avoid unneeded updates to now_offset
2859 - MINOR: time: avoid overwriting the same values of global_now
2860 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
2861 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
2862 - BUG/MINOR: peers: remove useless table check if initial resync is finished
2863 - BUG/MEDIUM: peers: re-work connection to new process during reload.
2864 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
2865 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
2866
Willy Tarreau86512dd2021-04-09 17:10:39 +020028672021/04/09 : 2.4-dev16
2868 - CLEANUP: dev/flags: remove useless test in the stdin number parser
2869 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
2870 - MINOR: acl: Add HTTP_2.0 predefined macro
2871 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
2872 - BUG/MINOR: tools: fix parsing "us" unit for timers
2873 - MINOR: server/bind: add support of new prefixes for addresses.
2874 - MINOR: log: register config file and line number on log servers.
2875 - MEDIUM: log: support tcp or stream addresses on log lines.
2876 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
2877 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
2878 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
2879 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
2880 - MINOR: fd: move .linger_risk into fdtab[].state
2881 - MINOR: fd: move .cloned into fdtab[].state
2882 - MINOR: fd: move .initialized into fdtab[].state
2883 - MINOR: fd: move .et_possible into fdtab[].state
2884 - MINOR: fd: move .exported into fdtab[].state
2885 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
2886 - MINOR: cli/show-fd: slightly reorganize the FD status flags
2887 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
2888 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
2889 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
2890 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
2891 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
2892 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
2893 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
2894 - MINOR: atomic: implement native BTS/BTR for x86
2895 - MINOR: ist: Add `istappend(struct ist, char)`
2896 - MINOR: ist: Add `istshift(struct ist*)`
2897 - MINOR: ist: Add `istsplit(struct ist*, char)`
2898 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
2899 - MINOR: opentracing: register config file and line number on log servers
2900 - MEDIUM: resolvers: add support of tcp address on nameserver line.
2901 - MINOR: ist: Rename istappend() to __istappend()
2902 - CLEANUP: htx: Make http_get_stline take a `const struct`
2903 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
2904 - CLEANUP: Remove useless malloc() casts
2905
Willy Tarreau59fa1d12021-04-02 19:16:32 +020029062021/04/02 : 2.4-dev15
2907 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
2908 - BUG/MINOR: stats: Apply proper styles in HTML status page.
2909 - BUG/MEDIUM: time: make sure to always initialize the global tick
2910 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
2911 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
2912 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
2913 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
2914 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
2915 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
2916 - MINOR: frontend: Create HTTP txn for HTX streams
2917 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
2918 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
2919 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
2920 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
2921 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
2922 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
2923 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
2924 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
2925 - MINOR: muxes: Show muxes flags when the mux list is displayed
2926 - DOC: config: Improve documentation about proto/check-proto keywords
2927 - MINOR: stream: Use stream type instead of proxy mode when appropriate
2928 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
2929 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
2930 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
2931 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
2932 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
2933 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
2934 - DOC: config: Add documentation about TCP to HTTP upgrades
2935 - REGTESTS: Add script to tests TCP to HTTP upgrades
2936 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
2937 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
2938 - MINOR: action: Use a generic function to check validity of an action rule list
2939 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
2940 - MEDIUM: http-rules: Add wait-for-body action on request and response side
2941 - REGTESTS: Add script to tests the wait-for-body HTTP action
2942 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
2943 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
2944 - MINOR: global: define diagnostic mode of execution
2945 - MINOR: cfgparse: diag for multiple nbthread statements
2946 - MINOR: server: diag for 0 weight server
2947 - MINOR: diag: create cfgdiag module
2948 - MINOR: diag: diag if servers use the same cookie value
2949 - MINOR: config: diag if global section after non-global
2950 - TESTS: slightly reorganize the code in the tests/ directory
2951 - TESTS: move tests/*.cfg to tests/config
2952 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
2953 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
2954 - CONTRIB: halog: fix issue with array of type char
2955 - CONTRIB: tcploop: add a shutr command
2956 - CONTRIB: debug: add the show-fd-to-flags script
2957 - CONTRIB: debug: split poll from flags
2958 - CONTRIB: move some dev-specific tools to dev/
2959 - BUILD: makefile: always build the flags utility
2960 - DEV: flags: replace the unneeded makefile with a README
2961 - BUILD: makefile: integrate the hpack tools
2962 - CONTRIB: merge ip6range with iprange
2963 - CONTRIB: move some admin-related sub-projects to admin/
2964 - CONTRIB: move halog to admin/
2965 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
2966 - BUILD: makefile: build halog with the correct flags
2967 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
2968 - CONTRIB: move prometheus-exporter to addons/promex
2969 - DOC: add a few words about USE_* and the addons directory
2970 - CONTRIB: move 51Degrees to addons/51degrees
2971 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
2972 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
2973 - CONTRIB: move contrib/opentracing to addons/ot
2974 - BUG/MINOR: opentracing: initialization after establishing daemon mode
2975 - DOC: clarify that compression works for HTTP/2
2976
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010029772021/03/27 : 2.4-dev14
2978 - MEDIUM: quic: Fix build.
2979 - MEDIUM: quic: Fix build.
2980 - CI: codespell: whitelist "Dragan Dosen"
2981 - CLEANUP: assorted typo fixes in the code and comments
2982 - CI: github actions: update LibreSSL to 3.2.5
2983 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
2984 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
2985 - REGTESTS: remove unneeded experimental-mode in cli add server test
2986 - REGTESTS: wait for proper return of enable server in cli add server test
2987 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
2988 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
2989 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
2990 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
2991 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
2992 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
2993 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
2994 - CLEANUP: compression: do not test for buffer before calling b_alloc()
2995 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
2996 - MINOR: channel: simplify the channel's buffer allocation
2997 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
2998 - CLEANUP: dynbuf: remove b_alloc_margin()
2999 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
3000 - CLEANUP: pools: remove the unused pool_get_first() function
3001 - MINOR: pools: make the pool allocator support a few flags
3002 - MINOR: pools: add pool_zalloc() to return a zeroed area
3003 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
3004 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
3005 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
3006 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
3007 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
3008 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
3009 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
3010 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
3011 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
3012 - MINOR: time: also provide a global, monotonic global_now_ms timer
3013 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
3014 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
3015 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
3016 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
3017 - CLEANUP: ssl: remove unused definitions
3018 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
3019 - MINOR: lua: Slightly improve function dumping the lua traceback
3020 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
3021 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
3022 - MINOR: fd: make fd_clr_running() return the remaining running mask
3023 - MINOR: fd: remove the unneeded running bit from fd_insert()
3024 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
3025 - CLEANUP: fd: remove unused fd_set_running_excl()
3026 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
3027 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
3028 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
3029 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
3030 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
3031 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
3032 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
3033 - BUG/MINOR: ssl: Fix update of default certificate
3034 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
3035 - BUILD: ssl: introduce fine guard for ssl random extraction functions
3036 - REORG: global: move initcall register code in a dedicated file
3037 - REORG: global: move free acl/action in their related source files
3038 - REORG: split proxy allocation functions
3039 - MINOR: proxy: implement a free_proxy function
3040 - MINOR: proxy: define cap PR_CAP_LUA
3041 - MINOR: lua: properly allocate the lua Socket proxy
3042 - MINOR: lua: properly allocate the lua Socket servers
3043 - MINOR: vars: make get_vars() allow the session to be null
3044 - MINOR: vars: make the var() sample fetch keyword depend on nothing
3045 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
3046 - MINOR: sample: make smp_resolve_args() return an allocate error message
3047 - MINOR: sample: add a new SMP_SRC_CONST sample capability
3048 - MINOR: sample: mark the truly constant sample fetch keywords as such
3049 - MINOR: sample: add a new CFG_PARSER context for samples
3050 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
3051 - MEDIUM: vars: add support for a "set-var" global directive
3052 - REGTESTS: add a basic reg-test for some "set-var" commands
3053 - MINOR: sample: add a new CLI_PARSER context for samples
3054 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
3055 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
3056 - MEDIUM: cli: add a new experimental "set var" command
3057 - MINOR: compat: add short aliases for a few very commonly used types
3058 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
3059 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
3060
Willy Tarreau09cc6692021-03-19 17:16:18 +010030612021/03/19 : 2.4-dev13
3062 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
3063 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
3064 - MINOR: tools: improve word fingerprinting by counting presence
3065 - MINOR: tools: do not sum squares of differences for word fingerprints
3066 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
3067 - MINOR: cli: sort the suggestions by order of relevance
3068 - MINOR: cli: limit spelling suggestions to 5
3069 - MINOR: cfgparse/proxy: also support spelling fixes on options
3070 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
3071 - MINOR: time: export the global_now variable
3072 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
3073 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
3074 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
3075 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
3076 - MINOR: cli: implement experimental-mode
3077 - REORG: server: add a free server function
3078 - MINOR: cfgparse: always alloc idle conns task
3079 - REORG: server: move keywords in srv_kws
3080 - MINOR: server: remove fastinter from mistyped kw list
3081 - REORG: server: split parse_server
3082 - REORG: server: move alert traces in parse_server
3083 - REORG: server: rename internal functions from parse_server
3084 - REORG: server: attach servers in parse_server
3085 - REORG: server: use flags for parse_server
3086 - MINOR: server: prepare parsing for dynamic servers
3087 - MINOR: stats: export function to allocate extra proxy counters
3088 - MEDIUM: server: implement 'add server' cli command
3089 - REGTESTS: implement test for 'add server' cli
3090 - MINOR: server: enable standard options for dynamic servers
3091 - MINOR: server: support keyword proto in 'add server' cli
3092 - BUG/MINOR: protocol: add missing support of dgram unix socket.
3093 - CLEANUP: Fix a typo in fix_is_valid description
3094 - MINOR: raw_sock: Add a close method.
3095 - MEDIUM: connections: Introduce a new XPRT method, start().
3096 - MEDIUM: connections: Implement a start() method for xprt_handshake.
3097 - MEDIUM: connections: Implement a start() method in ssl_sock.
3098 - MINOR: muxes: garbage collect the reset() method.
3099 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
3100 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
3101 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
3102
Willy Tarreauacdd47d2021-03-13 11:48:28 +010031032021/03/13 : 2.4-dev12
3104 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
3105 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
3106 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
3107 - MINOR: connection: Use a `struct ist` to store proxy_authority
3108 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
3109 - BUILD: task: fix build at -O0 with threads disabled
3110 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
3111 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
3112 - BUILD: connection: do not use VAR_ARRAY in struct tlv
3113 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
3114 - MINOR: build: force CC to set a return code when probing options
3115 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
3116 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
3117 - CLEANUP: config: also address the cfg_keyword API change in the compression code
3118 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
3119 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
3120 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
3121 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
3122 - BUG/MINOR: connection: Missing QUIC initialization
3123 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
3124 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
3125 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
3126 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
3127 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
3128 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
3129 - BUG/MINOR: server-state: properly handle the case where the base is not set
3130 - BUG/MINOR: server-state: use the argument, not the global state
3131 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
3132 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
3133 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
3134 - CLEANUP: actions: the keyword must always be const from the rule
3135 - MINOR: tools: add simple word fingerprinting to find similar-looking words
3136 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
3137 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
3138 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
3139 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
3140 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
3141 - MINOR: actions: add a function to suggest an action ressembling a given word
3142 - MINOR: http-rules: suggest approaching action names on mismatch
3143 - MINOR: tcp-rules: suggest approaching action names on mismatch
3144 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
3145 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
3146 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
3147 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
3148 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
3149 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
3150 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
3151 - MINOR: resolvers: new function find_srvrq_answer_record()
3152 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
3153 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
3154 - MINOR: resolvers: Use a function to remove answers attached to a resolution
3155 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
3156 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
3157 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
3158 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
3159 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
3160 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
3161 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
3162 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
3163 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
3164 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
3165 - CLEANUP: cli: fix misleading comment and better indent the access level flags
3166 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
3167 - MINOR: cli: test the appctx level for master access instead of comparing pointers
3168 - MINOR: cli: print the error message in the parser function itself
3169 - MINOR: cli: filter the list of commands to the matching part
3170 - MEDIUM: cli: apply spelling fixes for known commands before listing them
3171 - MINOR: tools: add the ability to update a word fingerprint
3172 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
3173 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
3174 - CLEANUP: cli: rename the last few "stats_" to "cli_"
3175 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
3176 - CLEANUP: assorted typo fixes in the code and comments
3177
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010031782021/03/05 : 2.4-dev11
3179 - CI: codespell: skip Makefile for spell check
3180 - CLEANUP: assorted typo fixes in the code and comments
3181 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
3182 - BUG/MINOR: connection: Use the client's dst family for adressless servers
3183 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
3184 - CLEANUP: Use ist2(const void*, size_t) whenever possible
3185 - CLEANUP: Use IST_NULL whenever possible
3186 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
3187 - BUILD: quic: Implicit conversion between SSL related enums.
3188 - DOC: spoe: Add a note about fragmentation support in HAProxy
3189 - MINOR: contrib: add support for heartbeat control messages.
3190 - MINOR: contrib: Enhance peers dissector heuristic.
3191 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
3192 - CLEANUP: Reapply the ist2() replacement patch
3193 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
3194 - CLEANUP: Use isttest(const struct ist) whenever possible
3195 - Revert "CI: Pin VTest to a known good commit"
3196 - CLEANUP: backend: fix a wrong comment
3197 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
3198 - MINOR: backend: handle reuse for conns with no server as target
3199 - REGTESTS: test http-reuse if no server target
3200 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
3201 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
3202 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
3203 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
3204 - DOC: fix originalto except clause on destination address
3205 - CLEANUP: Use the ist() macro whenever possible
3206 - CLEANUP: Replace for loop with only a condition by while
3207 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
3208 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
3209 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
3210 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
3211 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
3212 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
3213 - MINOR: pools: double the local pool cache size to 1 MB
3214 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
3215 - CLEANUP: stream: explain why we queue the stream at the head of the server list
3216 - MEDIUM: backend: use a trylock when trying to grab an idle connection
3217 - REORG: tools: promote the debug PRNG to more general use as a statistical one
3218 - OPTIM: lb-random: use a cheaper PRNG to pick a server
3219 - MINOR: task: stop abusing the nice field to detect a tasklet
3220 - MINOR: task: move the nice field to the struct task only
3221 - MEDIUM: task: extend the state field to 32 bits
3222 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
3223 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
3224 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
3225 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
3226 - MINOR: server: don't read curr_used_conns multiple times
3227 - CLEANUP: global: reorder some fields to respect cache lines
3228 - CLEANUP: sockpair: silence a coverity check about fcntl()
3229 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
3230 - MINOR: server: add a global list of all known servers
3231 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
3232 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
3233 - MINOR: server: move actconns to the per-thread structure
3234 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
3235 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
3236 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
3237 - BUILD: Fix build when using clang without optimizing.
3238 - CLEANUP: assorted typo fixes in the code and comments
3239
Willy Tarreau8ab65c22021-02-26 22:49:10 +010032402021/02/26 : 2.4-dev10
3241 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
3242 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
3243 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
3244 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
3245 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
3246 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
3247 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
3248 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
3249 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
3250 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
3251 - MINOR: stream: add an "epoch" to figure which streams appeared when
3252 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
3253 - MINOR: streams: use one list per stream instead of a global one
3254 - MEDIUM: streams: do not use the streams lock anymore
3255 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
3256 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
3257 - MINOR: tasks: do not maintain the rqueue_size counter anymore
3258 - CLEANUP: tasks: use a less confusing name for task_list_size
3259 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
3260 - MINOR: task: limit the remote thread wakeup to the global runqueue only
3261 - MINOR: task: move the allocated tasks counter to the per-thread struct
3262 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
3263 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
3264 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
3265 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
3266 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
3267 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
3268 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
3269 - DOC: Update the module list in MAINTAINERS file
3270 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
3271 - DOC: Update the HTX API documentation
3272 - DOC: Update the filters guide
3273 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
3274 - MINOR: task: split the counts of local and global tasks picked
3275 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
3276 - MINOR: task: don't decrement then increment the local run queue
3277 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
3278 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
3279 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
3280 - MINOR: task: make tasklet wakeup latency measurements more accurate
3281 - MINOR: server: Be more strict on the server-state line parsing
3282 - MINOR: server: Only fill one array when parsing a server-state line
3283 - MEDIUM: server: Refactor apply_server_state() to make it more readable
3284 - CLEANUP: server: Rename state_line node to node instead of name_name
3285 - CLEANUP: server: Rename state_line structure into server_state_line
3286 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
3287 - MINOR: server: Be more strict when reading the version of a server-state file
3288 - MEDIUM: server: Store parsed params of a server-state line in the tree
3289 - MINOR: server: Remove cached line from global server-state tree when found
3290 - MINOR: server: Move loading state of servers in a dedicated function
3291 - MEDIUM: server: Use a tree to store local server-state lines
3292 - MINOR: server: Parse and store server-state lines in a dedicated function
3293 - MEDIUM: server: Don't load server-state file if a line is corrupted
3294 - REORG: server: Export and rename some functions updating server info
3295 - REORG: server-state: Move functions to deal with server-state in its own file
3296 - MINOR: server-state: Don't load server-state file for serverless proxies
3297 - CLEANUP: muxes: Remove useless if condition in show_fd function
3298 - BUG/MINOR: stats: fix compare of no-maint url suffix
3299 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
3300 - MINOR: ssl: mark the SSL handshake tasklet as heavy
3301 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
3302 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
3303 - MINOR: task: add one extra tasklet class: TL_HEAVY
3304 - MINOR: task: place the heavy elements in TL_HEAVY
3305 - MINOR: task: only limit TL_HEAVY tasks but not others
3306 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
3307 - MINOR: tools: Add net_addr structure describing a network addess
3308 - MINOR: tools: Add function to compare an address to a network address
3309 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
3310 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
3311 - REGTESTS: Add script to test except param for fowardedfor/originalto options
3312 - DOC: scheduler: add a diagram showing the different queues and their usages
3313 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
3314 - CLEANUP: config: replace a few free() with ha_free()
3315 - CLEANUP: vars: always zero the pointers after a free()
3316 - CLEANUP: ssl: remove a useless "if" before freeing an error message
3317 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
3318 - CLEANUP: ssl: use realloc() instead of free()+malloc()
3319
Willy Tarreau31dd3932021-02-20 13:30:31 +010033202021/02/20 : 2.4-dev9
3321 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
3322 - CLEANUP: check: fix get_check_status_info declaration
3323 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
3324 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
3325 - MINOR: stats: add helper to get status string
3326 - MEDIUM: contrib/prometheus-exporter: add listen stats
3327 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
3328 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
3329 - BUG/MINOR: dns: missing test writing in output channel in session handler
3330 - BUG/MINOR: dns: fix ring attach control on dns_session_new
3331 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
3332 - BUG/MAJOR: connection: prevent double free if conn selected for removal
3333 - BUG/MINOR: session: atomically increment the tracked sessions counter
3334 - REGTESTS: fix http_reuse_conn_hash proxy test
3335 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
3336 - MINOR: connection: remove pointers for prehash in conn_hash_params
3337 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
3338 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
3339 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
3340 - OPTIM: server: switch the actconn list to an mt-list
3341 - Revert "MINOR: threads: change lock_t to an unsigned int"
3342 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
3343 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
3344 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
3345 - OPTIM: lb-leastconn: do not unlink the server if it did not change
3346 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
3347 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
3348 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
3349 - MINOR: cli: add missing agent commands for set server
3350 - BUILD/MEDIUM: da Adding pcre2 support.
3351 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
3352 - REGTESTS: reorder reuse conn proxy protocol test
3353 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
3354 - MINOR: tasks: refine the default run queue depth
3355 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
3356 - MINOR: mux_h2: do not try to remove front conn from idle trees
3357 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
3358 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
3359 - MINOR: connection: allocate dynamically hash node for backend conns
3360 - DOC: DeviceAtlas documentation typo fix.
3361 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
3362 - BUG/MINOR: http-rules: Always replace the response status on a return action
3363 - BUG/MINOR: server: Init params before parsing a new server-state line
3364 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
3365 - MEDIUM: server: Don't introduce a new server-state file version
3366 - DOC: contrib/prometheus-exporter: remove htx reference
3367 - REGTESTS: contrib/prometheus-exporter: test NaN values
3368 - REGTESTS: contrib/prometheus-exporter: test well known labels
3369 - CI: github actions: switch to stable LibreSSL release
3370 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
3371 - MINOR: dynbuf: make the buffer wait queue per thread
3372 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
3373 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
3374 - MINOR: sched: have one runqueue ticks counter per thread
3375
Willy Tarreaudc626ec2021-02-13 10:17:27 +010033762021/02/13 : 2.4-dev8
3377 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
3378 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
3379 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
3380 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
3381 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
3382 - CLEANUP: assorted typo fixes in the code and comments
3383 - CLEANUP: check: fix some typo in comments
3384 - CLEANUP: tools: typo in `strl2irc` mention
3385 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
3386 - MEDIUM: ssl: add a rwlock for SSL server session cache
3387 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
3388 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
3389 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
3390 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
3391 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
3392 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
3393 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
3394 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
3395 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
3396 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
3397 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
3398 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
3399 - BUG/MINOR: server: re-align state file fields number
3400 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
3401 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
3402 - CLEANUP: remove unused variable assigned found by Coverity
3403 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
3404 - BUG/MINOR: backend: hold correctly lock when killing idle conn
3405 - MEDIUM: connection: protect idle conn lists with locks
3406 - MEDIUM: connection: replace idle conn lists by eb trees
3407 - MINOR: backend: search conn in idle/safe trees after available
3408 - MINOR: backend: search conn in idle tree after safe on always reuse
3409 - MINOR: connection: prepare hash calcul for server conns
3410 - MINOR: connection: use the srv pointer for the srv conn hash
3411 - MINOR: backend: compare conn hash for session conn reuse
3412 - MINOR: connection: use sni as parameter for srv conn hash
3413 - MINOR: reg-tests: test http-reuse with sni
3414 - MINOR: backend: rewrite alloc of stream target address
3415 - MINOR: connection: use dst addr as parameter for srv conn hash
3416 - MINOR: reg-test: test http-reuse with specific dst addr
3417 - MINOR: backend: rewrite alloc of connection src address
3418 - MINOR: connection: use src addr as parameter for srv conn hash
3419 - MINOR: connection: use proxy protocol as parameter for srv conn hash
3420 - MINOR: reg-tests: test http-reuse with proxy protocol
3421 - MINOR: doc: update http reuse for new eligilible connections
3422 - BUG/MINOR: backend: fix compilation without ssl
3423 - REGTESTS: adjust http_reuse_conn_hash requirements
3424 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
3425 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
3426 - CI: cirrus: update FreeBSD image to 12.2
3427 - MEDIUM: cli: add check-addr command
3428 - MEDIUM: cli: add agent-port command
3429 - MEDIUM: server: add server-states version 2
3430 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
3431 - MINOR: server: enhance error precision when applying server state
3432 - BUG/MINOR: server: Fix server-state-file-name directive
3433 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
3434 - BUG/MEDIUM: config: don't pick unset values from last defaults section
3435 - BUG/MINOR: stats: revert the change on ST_CONVDONE
3436 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
3437 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
3438 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
3439 - BUILD: proxy: add missing compression-t.h to proxy-t.h
3440 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
3441 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
3442 - MEDIUM: proxy: only take defaults when a default proxy is passed.
3443 - MINOR: proxy: move the defproxy freeing code to proxy.c
3444 - MINOR: proxy: always properly reset the just freed default instance pointers
3445 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
3446 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
3447 - BUG/MINOR: server: parse_server() must take a const for the defproxy
3448 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
3449 - MINOR: proxy: add a new capability PR_CAP_DEF
3450 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
3451 - MINOR: cfgparse: use a pointer to the current default proxy
3452 - MINOR: proxy: also store the name for a defaults section
3453 - MINOR: proxy: support storing defaults sections into their own tree
3454 - MEDIUM: proxy: store the default proxies in a tree by name
3455 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
3456 - MINOR: http: add baseq sample fetch
3457 - CLEANUP: tcpcheck: Remove a useless test on port variable
3458 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
3459 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
3460 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
3461 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
3462 - DOC: tune: explain the origin of block size for ssl.cachesize
3463 - MINOR: tcp: add support for defer-accept on FreeBSD.
3464 - MINOR: ring: adds new ring_init function.
3465 - CLEANUP: channel: fix comment in ci_putblk.
3466 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
3467 - BUG/MINOR: resolvers: fix attribute packed struct for dns
3468 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
3469 - MINOR: resolvers: renames type dns_resolvers to resolvers.
3470 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
3471 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
3472 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
3473 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
3474 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
3475 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
3476 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
3477 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
3478 - MEDIUM: resolvers: split resolving and dns message exchange layers.
3479 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
3480 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
3481 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
3482
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010034832021/02/05 : 2.4-dev7
3484 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
3485 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
3486 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
3487 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
3488 - CLEANUP: stats: improve field selection for frontend http fields
3489 - CLEANUP: assorted typo fixes in the code and comments
3490 - DOC: Improve documentation of the various hdr() fetches
3491 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
3492 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
3493 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
3494 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
3495 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
3496 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
3497 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
3498 - MINOR: reg-tests: add http-reuse test
3499 - CLEANUP: srv: fix comment for pool-max-conn
3500 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
3501 - REORG: backend: simplify conn_backend_get
3502 - MINOR: ssl: Server ssl context prepare function refactoring
3503 - MINOR: ssl: Certificate chain loading refactorization
3504 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
3505 - MEDIUM: ssl: Enable backend certificate hot update
3506 - MINOR: ssl: Remove client_crt member of the server's ssl context
3507 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
3508 - CLEANUP: ssl: remove SSL_CTX function parameter
3509 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
3510 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
3511 - CI: Fix DEBUG_STRICT definition for Coverity
3512 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
3513 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
3514 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
3515 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
3516 - BUG/MEDIUM: session: only retrieve ready idle conn from session
3517 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
3518 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
3519 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
3520 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
3521 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
3522 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
3523 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
3524 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
3525 - MINOR: stream: Add a function to validate TCP to H1 upgrades
3526 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
3527 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
3528 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
3529 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
3530 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
3531 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
3532 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
3533 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
3534 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
3535 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
3536 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
3537 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
3538 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
3539 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
3540 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
3541 - MINOR: htx: Add a function to know if a block is the only one in a message
3542 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
3543 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
3544 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
3545 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
3546 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
3547 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
3548 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
3549 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
3550 - MINOR: h1: reject websocket handshake if missing key
3551 - MEDIUM: h1: generate WebSocket key on response if needed
3552 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
3553 - MEDIUM: h2: parse Extended CONNECT reponse to htx
3554 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
3555 - MEDIUM: h1: add a WebSocket key on handshake if needed
3556 - MEDIUM: mux_h2: generate Extended CONNECT response
3557 - MEDIUM: h2: parse Extended CONNECT request to htx
3558 - MEDIUM: h2: send connect protocol h2 settings
3559 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
3560 - MINOR: vtc: add websocket test
3561 - REGTESTS: Fix required versions for several scripts
3562 - REGTEST: Don't use the websocket to validate http-check
3563 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
3564 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
3565 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
3566 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
3567 - REGTESTS: set_ssl_server_cert.vtc: set as broken
3568 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
3569 - BUG/MINOR: backend: check available list allocation for reuse
3570 - CI: Fix the coverity builds
3571 - DOC: management: fix "show resolvers" alphabetical ordering
3572 - MINOR: tools: add print_time_short() to print a condensed duration value
3573 - MINOR: activity: make profiling more manageable
3574 - MINOR: activity: declare a new structure to collect per-function activity
3575 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
3576 - MINOR: activity: also report collected tasks stats in "show profiling"
3577 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
3578 - MINOR: activity: add a new "show tasks" command to list currently active tasks
3579 - MINOR: listener: export accept_queue_process
3580 - MINOR: session: export session_expire_embryonic()
3581 - MINOR: muxes: export the timeout and shutr task handlers
3582 - MINOR: checks: export a few functions that appear often in trace dumps
3583 - MINOR: peers: export process_peer_sync() to improve traces
3584 - MINOR: stick-tables: export process_table_expire()
3585 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
3586 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
3587 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
3588 - MINOR: http-conv: Don't check if argument list is set in sample converters
3589 - MINOR: sample: Don't check if argument list is set in sample fetches
3590 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
3591 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
3592 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
3593 - MINOR: contrib/prometheus-exporter: declare states for objects
3594 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
3595 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
3596 - MINOR: listener: export manage_global_listener_queue()
3597 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
3598 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
3599 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
3600 - MINOR: checks: Add function to get the result code corresponding to a status
3601 - MAJOR: contrib/prometheus-exporter: move health check status to labels
3602 - MINOR: contrib/prometheus-exporter: improve service status description field
3603 - MINOR: stats: improve pending connections description
3604 - MINOR: stats: improve max stats descriptions
3605 - MINOR: contrib/prometheus-exporter: use stats desc when possible
3606 - MINOR: contrib/prometheus-exporter: add uweight field
3607 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
3608 - CLEANUP: contrib/prometheus-exporter: remove unused includes
3609 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
3610 - CLEANUP: contrib/prometheus-exporter: remove description in README
3611 - DOC: contrib/prometheus-exporter: Add missing metrics in README
3612 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
3613 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
3614 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
3615 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
3616 - BUG/MINOR: mux_h2: fix incorrect stat titles
3617 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
3618 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
3619 - MINOR: server: Don't set the check port during the update from a state file
3620 - MINOR: dns: Don't set the check port during a server dns resolution
3621 - MEDIUM: check: remove checkport checkaddr flag
3622 - MEDIUM: server: adding support for check_port in server state
3623 - BUG/MINOR: check: consitent way to set agentaddr
3624 - MEDIUM: check: align agentaddr and agentport behaviour
3625 - DOC: server: Add missing params in comment of the server state line parsing
3626 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
3627 - REGTESTS: mark http-check-send.vtc as 2.4-only
3628 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
3629 - BUG/MINOR: ssl: do not try to use early data if not configured
3630 - REGTESTS: unbreak http-check-send.vtc
3631 - MINOR: cli/show_fd: report local and report ports when known
3632 - BUILD: Makefile: move REGTESTST_TYPE default setting
3633 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
3634 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
3635 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
3636 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
3637
Willy Tarreau24c41d52021-01-22 16:19:46 +010036382021/01/22 : 2.4-dev6
3639 - MINOR: converter: adding support for url_enc
3640 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
3641 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
3642 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
3643 - BUILD: Makefile: exclude broken tests by default
3644 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
3645 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
3646 - MINOR: contrib/prometheus-exporter: export build_info
3647 - DOC: fix some spelling issues over multiple files
3648 - CLEANUP: Fix spelling errors in comments
3649 - SCRIPTS: announce-release: fix typo in help message
3650 - CI: github: add a few more words to the codespell ignore list
3651 - DOC: Add maintainers for the Prometheus exporter
3652 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
3653 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
3654 - CLEANUP: sample: remove uneeded check in json validation
3655 - MINOR: reg-tests: add a way to add service dependency
3656 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
3657 - BUG/MINOR: reg-tests: fix service dependency script
3658 - MINOR: reg-tests: add base prometheus test
3659 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
3660 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
3661 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
3662 - BUG/MINOR: init: enforce strict-limits when using master-worker
3663 - MINOR: contrib/prometheus-exporter: avoid connection close header
3664 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
3665 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
3666 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
3667 - MINOR: server: Forbid server definitions in frontend sections
3668 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
3669 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
3670 - MINOR: pattern: add the missing generation ID manipulation functions
3671 - MINOR: peers: Add traces for peer control messages.
3672 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
3673 - BUILD: peers: fix build warning about unused variable
3674 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
3675 - MINOR: cache: Do not store responses with an unknown encoding
3676 - BUG/MINOR: peers: Possible appctx pointer dereference.
3677 - MINOR: build: discard echoing in help target
3678 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
3679 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
3680 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
3681 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
3682 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
3683 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
3684 - CLEANUP: tools: make resolve_sym_name() take a const pointer
3685 - CLEANUP: cli: make "show fd" use a const connection to access other fields
3686 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
3687 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
3688 - MINOR: ssl: provide a "show fd" helper to report important SSL information
3689 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
3690 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
3691 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
3692 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
3693 - CI: Pin VTest to a known good commit
3694 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
3695 - MINOR: cli/show_fd: report some easily detectable suspicious states
3696 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
3697 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
3698 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
3699 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
3700 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
3701 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
3702 - MINOR: http: Add HTTP 501-not-implemented error message
3703 - MINOR: muxes: Add exit status for errors about not implemented features
3704 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
3705 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
3706 - DOC: Remove space after comma in converter signature
3707 - DOC: Rename '<var name>' to '<var>' in converter signature
3708 - MINOR: stats: duplicate 3 fields in bytes in info
3709 - MINOR: stats: add new start time field
3710 - MINOR: contrib/prometheus-exporter: merge info description from stats
3711 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
3712 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
3713 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
3714 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
3715 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
3716 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
3717 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
3718 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
3719 - MINOR: debug: always export the my_backtrace function
3720 - MINOR: debug: extract the backtrace dumping code to its own function
3721 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
3722 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
3723 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
3724 - BUILD: debug: fix build warning by consuming the write() result
3725 - MINOR: lua: remove unused variable
3726 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
3727
Willy Tarreau421ed392021-01-06 17:41:32 +010037282021/01/06 : 2.4-dev5
3729 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
3730 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
3731 - MINOR: time: increase the minimum wakeup interval to 60s
3732 - MINOR: check: do not ignore a connection header for http-check send
3733 - REGTESTS: complete http-check test
3734 - CI: travis-ci: drop coverity scan builds
3735 - MINOR: atomic: don't use ; to separate instruction on aarch64.
3736 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
3737 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
3738 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
3739 - CLEANUP: xxhash: remove the unused src/xxhash.c
3740 - MINOR: sample: add the xxh3 converter
3741 - REGTESTS: add tests for the xxh3 converter
3742 - MINOR: protocol: Create proto_quic QUIC protocol layer.
3743 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
3744 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
3745 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
3746 - MINOR: connection: Add a new xprt to connection.
3747 - MINOR: ssl: Export definitions required by QUIC.
3748 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
3749 - MINOR: tools: Add support for QUIC addresses parsing.
3750 - MINOR: quic: Add definitions for QUIC protocol.
3751 - MINOR: quic: Import C source code files for QUIC protocol.
3752 - MINOR: listener: Add QUIC info to listeners and receivers.
3753 - MINOR: server: Add QUIC definitions to servers.
3754 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
3755 - MINOR: ssl: QUIC transport parameters parsing.
3756 - MINOR: quic: QUIC socket management finalization.
3757 - MINOR: cfgparse: QUIC default server transport parameters init.
3758 - MINOR: quic: Enable the compilation of QUIC modules.
3759 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
3760 - MINOR: quic: Attempt to make trace more readable
3761 - MINOR: quic: Make usage of the congestion control window.
3762 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
3763 - MINOR: quic: Code reordering to help in reviewing/modifying.
3764 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
3765 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
3766 - MINOR: quic: Update the initial salt to that of draft-29.
3767 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
3768 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
3769 - MINOR: quic: Add traces for quic_packet_encrypt().
3770 - MINOR: cache: Refactoring of secondary_key building functions
3771 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
3772 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
3773 - MINOR: cache: Add specific secondary key comparison mechanism
3774 - MINOR: http: Add helper functions to trim spaces and tabs
3775 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
3776 - REGTESTS: cache: Simplify vary.vtc file
3777 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
3778 - MINOR: cache: Remove redundant test in http_action_req_cache_use
3779 - MINOR: cache: Replace the "process-vary" option's expected values
3780 - CI: GitHub Actions: enable daily Coverity scan
3781 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
3782 - MEDIUM: stick-tables: Add srvkey option to stick-table
3783 - REGTESTS: add test for stickiness using "srvkey addr"
3784 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
3785 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
3786 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
3787 - MINOR: lua: Use consistent error message 'memory allocation failed'
3788 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
3789 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
3790 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
3791 - MINOR: qpack: Add static header table definitions for QPACK.
3792 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
3793 - CLEANUP: quic: Remove useless QUIC event trace definitions.
3794 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
3795 - MINOR: quic: Pass quic_conn struct to frame parsers.
3796 - BUG/MINOR: quic: Wrong STREAM frames parsing.
3797 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
3798 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
3799 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
3800 - MINOR: ssl: make tlskeys_list_get_next() take a list element
3801 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
3802 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
3803 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
3804 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
3805 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
3806 - CLEANUP: spoe: fix typo on `var_check_arg` comment
3807 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
3808 - CI: github actions: build several popular "contrib" tools
3809 - DOC: Improve the message printed when running `make` w/o `TARGET`
3810 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
3811 - REGTESTS: add unresolvable servers to srvkey-addr
3812 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
3813 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
3814 - SCRIPTS: improve announce-release to support different tag and versions
3815 - SCRIPTS: make announce release support preparing announces before tag exists
3816 - CLEANUP: assorted typo fixes in the code and comments
3817 - BUG/MINOR: srv: do not init address if backend is disabled
3818 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
3819 - CLEANUP: assorted typo fixes in the code and comments
3820 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
3821
Willy Tarreau4d711762020-12-21 11:54:56 +010038222020/12/21 : 2.4-dev4
3823 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
3824 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
3825 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
3826 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
3827 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
3828 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
3829 - MEDIUM: cache: Avoid going over duplicates lists too often
3830 - MINOR: cache: Add a max-secondary-entries cache option
3831 - CI: cirrus: drop CentOS 6 builds
3832 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
3833 - MINOR: vars: replace static functions with global ones
3834 - MINOR: opentracing: add ARGC_OT enum
3835 - CONTRIB: opentracing: add the OpenTracing filter
3836 - DOC: opentracing: add the OpenTracing filter section
3837 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
3838 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
3839 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
3840 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
3841 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
3842 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
3843 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
3844 - CLEANUP: debug: mark the RNG's seed as unsigned
3845 - CONTRIB: halog: fix build issue caused by %L printf format
3846 - CONTRIB: halog: mark the has_zero* functions unused
3847 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
3848 - CONTRIB: debug: address "poll" utility build on non-linux platforms
3849 - BUILD: plock: remove dead code that causes a warning in gcc 11
3850 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
3851 - BUG/MINOR: dns: SRV records ignores duplicated AR records
3852 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
3853 - CLEANUP: assorted typo fixes in the code and comments
3854 - DOC: assorted typo fixes in the documentation
3855 - CI: codespell: whitelist "te" and "nd" words
3856
Willy Tarreaua786c412020-12-11 17:22:51 +010038572020/12/11 : 2.4-dev3
3858 - MINOR: log: Logging HTTP path only with %HPO
3859 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
3860 - MINOR: traces: add a new level "error" below the "user" level
3861 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
3862 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
3863 - BUG/MINOR: lua: missing "\n" in error message
3864 - BUG/MINOR: lua: lua-load doesn't check its parameters
3865 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
3866 - BUG/MINOR: lua: Some lua init operation are processed unsafe
3867 - MINOR: actions: Export actions lookup functions
3868 - MINOR: actions: add a function returning a service pointer from its name
3869 - MINOR: cli: add a function to look up a CLI service description
3870 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
3871 - MINOR: cache: Improve accept_encoding_normalizer
3872 - MINOR: cache: Add entry to the tree as soon as possible
3873 - BUG/MINOR: trace: Wrong displayed trace level
3874 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
3875 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
3876 - MEDIUM: lua-thread: use atomics for memory accounting
3877 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
3878 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
3879 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
3880 - MINOR: lua-thread: Use NULL context for main lua state
3881 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
3882 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
3883 - MINOR: lua-thread: Split hlua_init() function in two parts
3884 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
3885 - MINOR: lua-thread: Split hlua_load function in two parts
3886 - MINOR: lua-thread: Split hlua_post_init() function in two parts
3887 - MINOR: lua-thread: Add the "thread" core variable
3888 - MEDIUM: lua-thread: No longer use locked context in initialization parts
3889 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
3890 - MINOR: lua-thread: Replace global gL var with an array of states
3891 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
3892 - MINOR: lua-thread: Replace state_from by state_id
3893 - MINOR: lua-thread: Store each function reference and init reference in array
3894 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
3895 - MINOR: lua-thread: Add verbosity in errors
3896 - REGTESTS: add a test for the threaded Lua code
3897 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
3898 - DOC/MINOR: Fix formatting in Management Guide
3899 - MINOR: cache: Do not store stale entry
3900 - MINOR: cache: Add extra "cache-control" value checks
3901 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
3902 - MINOR: cache: Consider invalid Age values as stale
3903 - BUG/MEDIUM: lua-thread: some parts must be initialized once
3904 - BUG/MINOR: lua-thread: close all states on deinit
3905 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
3906 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
3907 - MINOR: session: Add the idle duration field into the session
3908 - MINOR: mux-h1: Update session idle duration when data are received
3909 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
3910 - MINOR: logs: Use session idle duration when no stream is provided
3911 - MINOR: stream: Always get idle duration from the session
3912 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
3913 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
3914 - MINOR: muxes: Remove get_cs_info callback function now useless
3915 - MINOR: stream: Pass an optional input buffer when a stream is created
3916 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
3917 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
3918 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
3919 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
3920 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
3921 - MINOR: mux-h1: Add a rxbuf into the H1 stream
3922 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
3923 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
3924 - MINOR: mux-h1: rework the h1_timeout_task() function
3925 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
3926 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
3927 - MINOR: mux-h1: Rework how shutdowns are handled
3928 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
3929 - MINOR: mux-h1: Process next request for IDLE connection only
3930 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
3931 - MINOR: stick-tables: Add functions to update some values of a tracked counter
3932 - MINOR: session: Add functions to increase http values of tracked counters
3933 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
3934 - MINOR: logs: Get the multiplexer exist status when no stream is provided
3935 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
3936 - MAJOR: mux-h1: Create the client stream as later as possible
3937 - DOC: config: Add notes about errors emitted by H1 mux
3938 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
3939 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
3940 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
3941 - MEDIUM: http-ana: Don't process partial or empty request anymore
3942 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
3943 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
3944 - REGTESTS: Fix proxy_protocol_tlv_validation
3945 - MINOR: http-ana: Properly set message flags from the start-line flags
3946 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
3947 - MINOR: protocol: add a ->set_port() helper to address families
3948 - MINOR: listener: automatically set the port when creating listeners
3949 - MINOR: listener: now use a generic add_listener() function
3950 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
3951 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
3952 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
3953 - MINOR: protocol: remove the redundant ->sock_domain field
3954 - MINOR: protocol: export protocol definitions
3955 - CLEANUP: protocol: group protocol struct members by usage
3956 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
3957 - MINOR: connection: use the control layer's init/close
3958 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
3959 - BUG/MAJOR: spoa/python: Fixing return None
3960 - DOC: spoa/python: Fixing typo in IP related error messages
3961 - DOC: spoa/python: Rephrasing memory related error messages
3962 - DOC: spoa/python: Fixing typos in comments
3963 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
3964 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
3965 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
3966 - BUG/MEDIUM: spoa/python: Fixing references to None
3967 - DOC: email change of the DeviceAtlas maintainer
3968 - MINOR: cache: Dump secondary entries in "show cache"
3969 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
3970 - MINOR: stream-int: don't touch polling anymore on shutdown
3971 - MINOR: connection: implement cs_drain_and_close()
3972 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
3973 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
3974 - MINOR: checks: don't call conn_cond_update_polling() anymore
3975 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
3976 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
3977 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
3978 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
3979 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
3980 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
3981 - BUG/MINOR: tools: Reject size format not starting by a digit
3982 - MINOR: action: define enum for timeout type of the set-timeout rule
3983 - MINOR: stream: prepare the hot refresh of timeouts
3984 - MEDIUM: stream: support a dynamic server timeout
3985 - MEDIUM: stream: support a dynamic tunnel timeout
3986 - MEDIUM: http_act: define set-timeout server/tunnel action
3987 - MINOR: frontend: add client timeout sample fetch
3988 - MINOR: backend: add timeout sample fetches
3989 - MINOR: stream: add sample fetches
3990 - MINOR: stream: add timeout sample fetches
3991 - REGTESTS: add regtest for http-request set-timeout
3992 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
3993 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
3994 - MINOR: connection: remove sock-specific code from conn_sock_send()
3995 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
3996 - MINOR: protocol: add a ->drain() function at the connection control layer
3997 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
3998 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
3999 - MEDIUM: connection: make use of the control layer check_events/ignore_events
4000
Willy Tarreauc94431b2020-12-01 08:15:26 +010040012020/12/01 : 2.4-dev2
4002 - BUILD: Make DEBUG part of .build_opts
4003 - BUILD: Show the value of DEBUG= in haproxy -vv
4004 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
4005 - MINOR: stream: Add level 7 retries on http error 401, 403
4006 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
4007 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
4008 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
4009 - BUG/MEDIUM: http_act: Restore init of log-format list
4010 - DOC: better describes how to configure a fallback crt
4011 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
4012 - MINOR: cache: Prepare helper functions for Vary support
4013 - MEDIUM: cache: Add the Vary header support
4014 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
4015 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
4016 - BUG/MAJOR: peers: fix partial message decoding
4017 - DOC: cache: Add new caching limitation information
4018 - DOC: cache: Add information about Vary support
4019 - DOC: better document the config file format and escaping/quoting rules
4020 - DOC: Clarify %HP description in log-format
4021 - CI: github actions: update LibreSSL to 3.3.0
4022 - CI: github actions: enable 51degrees feature
4023 - MINOR: fd/threads: silence a build warning with threads disabled
4024 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
4025 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
4026 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
4027 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
4028 - MINOR: config: Deprecate and ignore tune.chksize global option
4029 - MINOR: config: Add a warning if tune.chksize is used
4030 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
4031 - MINOR: check: Always increment check health counter on CONPASS
4032 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
4033 - DOC: config: Make disable-on-404 option clearer on transition conditions
4034 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
4035 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
4036 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
4037 - MINOR: debug: add "debug dev sched" to stress the scheduler.
4038 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
4039 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
4040 - MINOR: task: remove tasklet_insert_into_tasklet_list()
4041 - MINOR: task: perform atomic counter increments only once per wakeup
4042 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
4043 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
4044 - BUG/MEDIUM: local log format regression.
4045
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010040462020/11/21 : 2.4-dev1
4047 - MINOR: ist: Add istend() function to return a pointer to the end of the string
4048 - MINOR: sample: Add converters to parse FIX messages
4049 - REGTEST: converter: Add a regtest for fix converters
4050 - MINOR: sample: Add converts to parses MQTT messages
4051 - REGTEST: converter: Add a regtest for MQTT converters
4052 - MINOR: compat: automatically include malloc.h on glibc
4053 - MEDIUM: pools: call malloc_trim() from pool_gc()
4054 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
4055 - MINOR: pattern: move the update revision to the pat_ref, not the expression
4056 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
4057 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
4058 - MINOR: pattern: make the delete and prune functions more generic
4059 - MEDIUM: pattern: link all final elements from the reference
4060 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
4061 - MINOR: pattern: remerge the list and tree deletion functions
4062 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
4063 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
4064 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
4065 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
4066 - MINOR: pattern: store a generation number in the reference patterns
4067 - MEDIUM: pattern: only match patterns that match the current generation
4068 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
4069 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
4070 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
4071 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
4072 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
4073 - MINOR: pattern: prepare removal of a pattern from the list head
4074 - MEDIUM: pattern: turn the pattern chaining to single-linked list
4075 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
4076 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
4077 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
4078 - MINOR: ssl: instantiate stats module
4079 - MINOR: ssl: count client hello for stats
4080 - MINOR: ssl: add counters for ssl sessions
4081 - DOC: config: Fix a typo on ssl_c_chain_der
4082 - MINOR: server: remove idle lock in srv_cleanup_connections
4083 - BUILD: ssl: silence build warning on uninitialised counters
4084 - BUILD: http-htx: fix build warning regarding long type in printf
4085 - REGTEST: ssl: test wildcard and multi-type + exclusions
4086 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
4087 - CI: Expand use of GitHub Actions for CI
4088 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
4089 - BUG/MINOR: pattern: a sample marked as const could be written
4090 - BUG/MINOR: lua: set buffer size during map lookups
4091 - MEDIUM: cache: Change caching conditions
4092 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
4093 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
4094 - MINOR: peers: Add traces to peer_treat_updatemsg().
4095 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
4096 - BUG/MINOR: peers: Missing TX cache entries reset.
4097 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
4098 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
4099 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
4100 - BUG/MEDIUM: check: reuse srv proto only if using same mode
4101 - MINOR: check: report error on incompatible proto
4102 - MINOR: check: report error on incompatible connect proto
4103 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
4104 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
4105 - MINOR: spoe: Don't close connection in sync mode on processing timeout
4106 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
4107 - MINOR: init: Fix the prototype for per-thread free callbacks
4108 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
4109 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
4110 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
4111 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
4112 - REGTESTS: Add sample_fetches/cook.vtc
4113 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
4114 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
4115 - CLEANUP: flt-trace: Remove unused random-parsing option
4116 - MINOR: flt-trace: Add an option to inhibits trace messages
4117 - MINOR: flt-trace: Use a bitfield for the trace options
4118 - REGTESTS: Add a script to test the random forwarding with several filters
4119 - REGTESTS: mark the abns test as broken again
4120 - REGTESTS: converter: add url_dec test
4121 - CI: Stop hijacking the hosts file
4122 - CI: Make the h2spec workflow more consistent with the VTest workflow
4123 - CI: travis-ci: remove amd64, osx builds
4124 - CI: travis-ci: arm64 are not allowed to fail anymore
4125 - DOC: add missing 3.10 in the summary
4126 - MINOR: ssl: remove client hello counters
4127 - MEDIUM: stats: add counters for failed handshake
4128 - MINOR: ssl: create common ssl_ctx init
4129 - MEDIUM: cli/ssl: configure ssl on server at runtime
4130 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
4131 - DOC: coding-style: update a few rules about pointers
4132 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
4133 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
4134 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
4135 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
4136 - BUG/MEDIUM: ssl: error when no certificate are found
4137 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
4138 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
4139 - CI: Github Actions: enable prometheus exporter
4140 - CI: Github Actions: remove LibreSSL-3.0.2 builds
4141 - CI: Github Actions: enable BoringSSL builds
4142 - CI: travis-ci: remove builds migrated to GH actions
4143 - BUILD: makefile: enable crypt(3) for OpenBSD
4144 - CI: Github Action: run "apt-get update" before packages restore
4145 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
4146 - CI: Pass the github.event_name to matrix.py
4147 - CI: Clean up Windows CI
4148 - DOC: clarify how to create a fallback crt
4149 - CLEANUP: connection: do not use conn->owner when the session is known
4150 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
4151 - REGTESTS: mark proxy_protocol_random_fail as broken
4152 - BUG/MINOR: http_htx: Fix searching headers by substring
4153 - MINOR: http_act: Add -m flag for del-header name matching method
4154
Willy Tarreau1db55792020-11-05 17:20:35 +010041552020/11/05 : 2.4-dev0
4156 - MINOR: version: it's development again.
4157 - DOC: mention in INSTALL that it's development again
4158
Willy Tarreau1c0a7222020-11-05 17:04:53 +010041592020/11/05 : 2.3.0
4160 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
4161 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
4162 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
4163 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
4164 - BUG/MINOR: checks: Report a socket error before any connection attempt
4165 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
4166 - MINOR: server: Copy configuration file and line for server templates
4167 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
4168 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
4169 - MINOR: debug: don't count free(NULL) in memstats
4170 - BUG/MINOR: filters: Skip disabled proxies during startup only
4171 - MINOR: mux_h2: capitalize frame type in stats
4172 - MINOR: mux_h2: add stat for total count of connections/streams
4173 - MINOR: stats: do not display empty stat module title on html
4174 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
4175 - BUG/MEDIUM: listener: only enable a listening listener if needed
4176 - BUG/MEDIUM: listener: never suspend inherited sockets
4177 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
4178 - MINOR: fd: add fd_want_recv_safe()
4179 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
4180 - REGTESTS: mark abns_socket as working now
4181 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
4182 - MINOR: sock: add a check against cross worker<->master socket activities
4183 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
4184 - BUG/MEDIUM: server: make it possible to kill last idle connections
4185 - MINOR: mworker/cli: the master CLI use its own applet
4186 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
4187 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
4188 - DOC: Add dns as an available domain to show stat
4189 - BUILD: makefile: usual reorder of objects for faster builds
4190 - DOC: update INSTALL to mention that TCC is supported
4191 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
4192 - MINOR: version: mention that it's stable now
4193
Willy Tarreaubd703e52020-10-31 13:17:06 +010041942020/10/31 : 2.3-dev9
4195 - CLEANUP: http_ana: remove unused assignation of `att_beg`
4196 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
4197 - BUG/MINOR: log: fix memory leak on logsrv parse error
4198 - BUG/MINOR: log: fix risk of null deref on error path
4199 - BUILD: ssl: more elegant OpenSSL early data support check
4200 - CI: github actions: update h2spec to 2.6.0
4201 - BUG/MINOR: cache: Check the return value of http_replace_res_status
4202 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
4203 - MINOR: cache: Process the If-Modified-Since header in conditional requests
4204 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
4205 - MINOR: mux-h2: register a stats module
4206 - MINOR: mux-h2: add counters instance to h2c
4207 - MINOR: mux-h2: add stats for received frame types
4208 - MINOR: mux-h2: report detected error on stats
4209 - MINOR: mux-h2: count open connections/streams on stats
4210 - BUG/MINOR: server: fix srv downtime calcul on starting
4211 - BUG/MINOR: server: fix down_time report for stats
4212 - BUG/MINOR: lua: initialize sample before using it
4213 - MINOR: cache: Add Expires header value parsing
4214 - MINOR: ist: Add a case insensitive istmatch function
4215 - BUG/MINOR: cache: Manage multiple values in cache-control header value
4216 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
4217 - MINOR: pattern: make pat_ref_append() return the newly added element
4218 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
4219 - MINOR: pattern: export pat_ref_push()
4220 - CLEANUP: pattern: use calloc() rather than malloc for structures
4221 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
4222
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020042232020/10/24 : 2.3-dev8
4224 - MINOR: backend: replace the lbprm lock with an rwlock
4225 - MINOR: lb/map: use seek lock and read locks where appropriate
4226 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
4227 - MINOR: lb/first: use a read lock in fas_get_next_server()
4228 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
4229 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
4230 - BUILD: ssl: make BoringSSL use its own version numbers
4231 - CLEANUP: threads: don't register an initcall when not debugging
4232 - MINOR: threads: change lock_t to an unsigned int
4233 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
4234 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
4235 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
4236 - MEDIUM: config: report that "nbproc" is deprecated
4237 - BUG/MINOR: listener: close before free in `listener_accept`
4238 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
4239 - BUG/MINOR: queue: properly report redistributed connections
4240 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
4241 - BUILD: makefile: add entries to build common debugging tools
4242 - BUG/MEDIUM: server: support changing the slowstart value from state-file
4243 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
4244 - MINOR: http: Add etag comparison function
4245 - MEDIUM: cache: Store the ETag information in the cache_entry
4246 - MEDIUM: cache: Add support for 'If-None-Match' request header
4247 - REGTEST: cache: Add if-none-match test case
4248 - CLEANUP: compression: Make use of http_get_etag_type()
4249 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
4250 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
4251 - MINOR: threads/debug: only report used lock stats
4252 - MINOR: threads/debug: only report lock stats for used operations
4253 - MINOR: proxy; replace the spinlock with an rwlock
4254 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
4255 - MINOR: proxy/cli: only take a read lock in "show errors"
4256 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
4257 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
4258 - MINOR: queue: reduce the locked area in pendconn_add()
4259 - OPTIM: queue: make the nbpend counters atomic
4260 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
4261 - MINOR: leastconn: take the queue length into account when queuing servers
4262 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
4263 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
4264 - MINOR: stats: support the "up" output modifier for "show stat"
4265 - MINOR: stats: also support a "no-maint" show stat modifier
4266 - MINOR: stats: indicate the number of servers in a backend's status
4267 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
4268 - REGTEST: ssl: test "set ssl cert" with separate key / crt
4269 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
4270 - MINOR: stats: report server's user-configured weight next to effective weight
4271 - CI: travis-ci: switch to Ubuntu 20.04
4272 - CONTRIB: release-estimator: Add release estimating tool
4273 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
4274 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
4275
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020042762020/10/17 : 2.3-dev7
4277 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
4278 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
4279 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
4280 - MINOR: fd: report an error message when failing initial allocations
4281 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
4282 - MINOR: sock: add sock_accept_conn() to test a listening socket
4283 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
4284 - MINOR: sockpair: implement the .rx_listening function
4285 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
4286 - CLEANUP: unix: make use of sock_accept_conn() where relevant
4287 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
4288 - CONTRIB: tcploop: implement a disconnect operation 'D'
4289 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
4290 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
4291 - BUG/MINOR: connection: fix loop iter on connection takeover
4292 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
4293 - MINOR: connection: improve list api usage
4294 - MINOR: mux/connection: add a new mux flag for HOL risk
4295 - MINOR: connection: don't check priv flag on free
4296 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
4297 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
4298 - MEDIUM: h2: remove conn from session on detach
4299 - MEDIUM: fcgi: remove conn from session on detach
4300 - DOC: Describe reuse safe for HOL handling
4301 - MEDIUM: proxy: remove obsolete "mode health"
4302 - MEDIUM: proxy: remove obsolete "monitor-net"
4303 - CLEANUP: protocol: remove the ->drain() function
4304 - CLEANUP: fd: finally get rid of fd_done_recv()
4305 - MINOR: connection: make sockaddr_alloc() take the address to be copied
4306 - MEDIUM: listener: allocate the connection before queuing a new connection
4307 - MINOR: session: simplify error path in session_accept_fd()
4308 - MINOR: connection: add new error codes for accept_conn()
4309 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
4310 - MINOR: protocol: add a new function accept_conn()
4311 - MINOR: sock: implement sock_accept_conn() to accept a connection
4312 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
4313 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
4314 - MEDIUM: listener: remove the second pass of fd manipulation at the end
4315 - MINOR: protocol: add a default I/O callback and put it into the receiver
4316 - MINOR: log: set the UDP receiver's I/O handler in the receiver
4317 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
4318 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
4319 - DOC: improve the documentation for "option nolinger"
4320 - BUG/MEDIUM: proxy: properly stop backends
4321 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
4322 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
4323 - MINOR: threads: add the transitions to/from the seek state
4324 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
4325 - BUILD: listener: avoir a build warning when threads are disabled
4326 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
4327 - MINOR: ssl: add volatile flags to ssl samples
4328 - MEDIUM: backend: reuse connection if using a static sni
4329 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
4330 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
4331 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
4332 - DOC: fix typo in MAX_SESS_STKCTR
4333
Willy Tarreaub7ffe192020-10-10 10:45:13 +020043342020/10/10 : 2.3-dev6
4335 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
4336 - BUILD: makefile: Update feature flags for OpenBSD
4337 - DOC: agent-check: fix typo in "fail" word expected reply
4338 - DOC: crt: advise to move away from cert bundle
4339 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
4340 - REGTEST: fix host part in balance-uri-path-only.vtc
4341 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
4342 - REGTEST: the iif converter test requires 2.3
4343 - REGTEST: make agent-check.vtc require 1.8
4344 - REGTEST: make abns_socket.vtc require 1.8
4345 - REGTEST: make map_regm_with_backref require 1.7
4346 - BUILD: makefile: Update feature flags for FreeBSD
4347 - OPTIM: backend/random: never queue on the server, always on the backend
4348 - OPTIM: backend: skip LB when we know the backend is full
4349 - BUILD: makefile: Fix building with closefrom() support enabled
4350 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
4351 - MINOR: tools: support for word expansion of environment in parse_line
4352 - BUILD: tools: fix minor build issue on isspace()
4353 - BUILD: makefile: Enable closefrom() support on Solaris
4354 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
4355 - MINOR: ssl: Add error if a crt-list might be truncated
4356 - MINOR: ssl: remove uneeded check in crtlist_parse_file
4357 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
4358 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
4359 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
4360 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
4361 - DOC: ssl: new "cert bundle" behavior
4362 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
4363 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
4364 - MINOR: counters: fix a typo in comment
4365 - BUG/MINOR: stats: fix validity of the json schema
4366 - REORG: stats: export some functions
4367 - MINOR: stats: add stats size as a parameter for csv/json dump
4368 - MINOR: stats: hide px/sv/li fields in applet struct
4369 - REORG: stats: extract proxy json dump
4370 - REORG: stats: extract proxies dump loop in a function
4371 - MINOR: hlua: Display debug messages on stderr only in debug mode
4372 - MINOR: stats: define the concept of domain for statistics
4373 - MINOR: stats: define additional flag px cap on domain
4374 - MEDIUM: stats: add delimiter for static proxy stats on csv
4375 - MEDIUM: stats: define an API to register stat modules
4376 - MEDIUM: stats: add abstract type to store counters
4377 - MEDIUM: stats: integrate static proxies stats in new stats
4378 - MINOR: stats: support clear counters for dynamic stats
4379 - MINOR: stats: display extra proxy stats on the html page
4380 - MINOR: stats: add config "stats show modules"
4381 - MINOR: dns/stats: integrate dns counters in stats
4382 - MINOR: stats: remove for loop declaration
4383 - DOC: ssl: fix typo about ocsp files
4384 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
4385 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
4386 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
4387 - CLEANUP: cache: Fix leak of cconf->c.name during config check
4388 - CLEANUP: ssl: Release cached SSL sessions on deinit
4389 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
4390 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
4391 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
4392 - CLEANUP: sock-unix: Remove an unreachable goto clause
4393 - BUG/MINOR: proxy: inc req counter on new syslog messages.
4394 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
4395 - MINOR: stats: inc req counter on listeners.
4396 - MINOR: channel: new getword and getchar functions on channel.
4397 - MEDIUM: log: syslog TCP support on log forward section.
4398 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
4399 - DOC: re-work log forward bind statement documentation.
4400 - DOC: fix a confusing typo on a regsub example
4401 - BUILD: Add a DragonFlyBSD target
4402 - BUG/MINOR: makefile: fix a tiny typo in the target list
4403 - BUILD: makefile: Update feature flags for NetBSD
4404 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
4405 - DOC: Add missing stats fields in the management doc
4406 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
4407 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
4408 - DOC: Fix typos in configuration.txt
4409 - BUG/MINOR: http: Fix content-length of the default 500 error
4410 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
4411 - REGTESTS: mark abns_socket as broken
4412 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
4413 - MEDIUM: listeners: don't bounce listeners management between queues
4414 - MEDIUM: init: stop disabled proxies after initializing fdtab
4415 - MEDIUM: listeners: make unbind_listener() converge if needed
4416 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
4417 - MEDIUM: listeners: remove the now unused ZOMBIE state
4418 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
4419 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
4420 - MINOR: listeners: introduce listener_set_state()
4421 - MINOR: proxy: maintain per-state counters of listeners
4422 - MEDIUM: proxy: remove the unused PR_STFULL state
4423 - MEDIUM: proxy: remove the PR_STERROR state
4424 - MEDIUM: proxy: remove state PR_STPAUSED
4425 - MINOR: startup: don't rely on PR_STNEW to check for listeners
4426 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
4427 - MEDIUM: proxy: replace proxy->state with proxy->disabled
4428 - MEDIUM: proxy: remove start_proxies()
4429 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
4430 - MINOR: listeners: check the current listener state in pause_listener()
4431 - MINOR: listeners: check the current listener earlier state in resume_listener()
4432 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
4433 - MINOR: protocol: introduce protocol_{pause,resume}_all()
4434 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
4435 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
4436 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
4437 - BUG/MEDIUM: listeners: correctly report pause() errors
4438 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
4439 - CLEANUP: protocol: remove the ->disable_all method
4440 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
4441 - MINOR: listeners: export enable_listener()
4442 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
4443 - CLEANUP: protocol: remove the ->enable_all method
4444 - CLEANUP: listeners: remove the now unused enable_all_listeners()
4445 - MINOR: protocol: rename the ->listeners field to ->receivers
4446 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
4447 - MINOR: protocol: implement an ->rx_resume() method
4448 - MINOR: listener: use the protocol's ->rx_resume() method when available
4449 - MINOR: sock: provide a set of generic enable/disable functions
4450 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
4451 - MINOR: protocol: add a new pair of enable/disable methods for listeners
4452 - MEDIUM: listeners: now use the listener's ->enable/disable
4453 - MINOR: listeners: split delete_listener() in two versions
4454 - MINOR: listeners: count unstoppable jobs on creation, not deletion
4455 - MINOR: listeners: add a new stop_listener() function
4456 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
4457 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
4458 - MEDIUM: proxy: centralize proxy status update and reporting
4459 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
4460 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
4461 - MEDIUM: udp: implement udp_suspend() and udp_resume()
4462 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
4463 - MEDIUM: listeners: always close master vs worker listeners
4464 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
4465 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
4466 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
4467 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
4468 - MEDIUM: receivers: add an rx_unbind() method in the protocols
4469 - MINOR: listeners: split do_unbind_listener() in two
4470 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
4471 - MEDIUM: config: mark "grace" as deprecated
4472 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
4473 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
4474 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
4475 - BUILD: makefile: Enable getaddrinfo() on OS/X
4476
Christopher Faulet05f01882020-09-25 18:40:47 +020044772020/09/25 : 2.3-dev5
4478 - DOC: Fix typo in iif() example
4479 - CLEANUP: Update .gitignore
4480 - BUILD: introduce possibility to define ABORT_NOW() conditionally
4481 - CI: travis-ci: help Coverity to recognize abort()
4482 - BUG/MINOR: Fix type passed of sizeof() for calloc()
4483 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
4484 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
4485 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
4486 - BUG/MINOR: ssl: verifyhost is case sensitive
4487 - BUILD: makefile: change default value of CC from gcc to cc
4488 - CI: travis-ci: split asan step out of running tests
4489 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
4490 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
4491 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
4492 - BUG/MINOR: log-forward: fail on unknown keywords
4493 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
4494 - BUG/MEDIUM: log-forward: always quit on parsing errors
4495 - MEDIUM: ssl: remove bundle support in crt-list and directories
4496 - MEDIUM: ssl/cli: remove support for multi certificates bundle
4497 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
4498 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
4499 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
4500 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
4501 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
4502 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
4503 - CLEANUP: ssl: remove utility functions for bundle
4504 - DOC: explain bundle emulation in configuration.txt
4505 - BUILD: fix build with openssl < 1.0.2 since bundle removal
4506 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
4507 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
4508 - MINOR: listener: create a new struct "settings" in bind_conf
4509 - MINOR: listener: move bind_proc and bind_thread to struct settings
4510 - MINOR: listener: move the interface to the struct settings
4511 - MINOR: listener: move the network namespace to the struct settings
4512 - REORG: listener: create a new struct receiver
4513 - REORG: listener: move the listening address to a struct receiver
4514 - REORG: listener: move the receiving FD to struct receiver
4515 - REORG: listener: move the listener's proto to the receiver
4516 - MINOR: listener: make sock_find_compatible_fd() check the socket type
4517 - REORG: listener: move the receiver part to a new file
4518 - MINOR: receiver: link the receiver to its settings
4519 - MINOR: receiver: link the receiver to its owner
4520 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
4521 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
4522 - MINOR: listener: move the INHERITED flag down to the receiver
4523 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
4524 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
4525 - MINOR: protocol: rename the ->bind field to ->listen
4526 - MINOR: protocol: add a new ->bind() entry to bind the receiver
4527 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
4528 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
4529 - MEDIUM: udp: make use of sock_inet_bind_receiver()
4530 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
4531 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
4532 - MEDIUM: sockpair: implement sockpair_bind_receiver()
4533 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
4534 - MEDIUM: protocol: explicitly start the receiver before the listener
4535 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
4536 - MINOR: protocol: add a new proto_fam structure for protocol families
4537 - MINOR: protocol: retrieve the family-specific fields from the family
4538 - CLEANUP: protocol: remove family-specific fields from struct protocol
4539 - MINOR: protocol: add a real family for existing FDs
4540 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
4541 - MINOR: tools: make str2sa_range() take more options than just resolve
4542 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
4543 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
4544 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
4545 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
4546 - MINOR: listener: remove the inherited arg to create_listener()
4547 - MINOR: tools: make str2sa_range() optionally return the fd
4548 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
4549 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
4550 - MINOR: config: do not test an inherited socket again
4551 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
4552 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
4553 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
4554 - MINOR: tools: remove the central test for "udp" in str2sa_range()
4555 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
4556 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
4557 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
4558 - MINOR: listener: pass the chosen protocol to create_listeners()
4559 - MINOR: tools: make str2sa_range() directly return the protocol
4560 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
4561 - MINOR: protocol: add the control layer type in the protocol struct
4562 - MEDIUM: protocol: store the socket and control type in the protocol array
4563 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
4564 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
4565 - MINOR: tools: drop listener detection hack from str2sa_range()
4566 - BUILD: sock_unix: add missing errno.h
4567 - MINOR: sock_inet: report the errno string in binding errors
4568 - MINOR: sock_unix: report the errno string in binding errors
4569 - BUILD: sock_inet: include errno.h
4570 - MINOR: h2/trace: also display the remaining frame length in traces
4571 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
4572 - BUG/MEDIUM: h2: report frame bits only for handled types
4573 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
4574 - BUG/MINOR: Fix memory leaks cfg_parse_peers
4575 - BUG/MINOR: config: Fix memory leak on config parse listen
4576 - MINOR: backend: make the "whole" option of balance uri take only one bit
4577 - MINOR: backend: add a new "path-only" option to "balance uri"
4578 - REGTESTS: add a few load balancing tests
4579 - BUG/MEDIUM: listeners: do not pause foreign listeners
4580 - BUG/MINOR: listeners: properly close listener FDs
4581 - BUILD: trace: include tools.h
4582
Willy Tarreau253c4dc2020-09-11 17:05:59 +020045832020/09/11 : 2.3-dev4
4584 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
4585 - BUG/MEDIUM: ssl: crt-list negative filters don't work
4586 - DOC: overhauling github issue templates
4587 - MEDIUM: cfgparse: Emit hard error on truncated lines
4588 - DOC: cache: Use '<name>' instead of '<id>' in error message
4589 - MINOR: cache: Reject duplicate cache names
4590 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
4591 - MINOR: stats: prevent favicon.ico requests for stats page
4592 - BUILD: tools: include auxv a bit later
4593 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
4594 - MEDIUM: ssl: Support certificate chaining for certificate generation
4595 - MINOR: ssl: Support SAN extension for certificate generation
4596 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
4597 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
4598 - MINOR: reload: determine the foreing binding status from the socket
4599 - MEDIUM: reload: stop passing listener options along with FDs
4600 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
4601 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
4602 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
4603 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
4604 - MEDIUM: reload: pass all exportable FDs, not just listeners
4605 - DOC: add description of pidfile in master-worker mode
4606 - BUG/MINOR: reload: do not fail when no socket is sent
4607 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
4608 - CLEANUP: tcp: stop exporting smp_fetch_src()
4609 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
4610 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
4611 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
4612 - REORG: sock: start to move some generic socket code to sock.c
4613 - MINOR: sock: introduce sock_inet and sock_unix
4614 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
4615 - MINOR: sock_inet: implement sock_inet_get_dst()
4616 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
4617 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
4618 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
4619 - REORG: listener: move xfer_sock_list to sock.{c,h}.
4620 - MINOR: sock: add interface and namespace length to xfer_sock_list
4621 - MINOR: sock: implement sock_find_compatible_fd()
4622 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
4623 - REORG: sock: move get_old_sockets() from haproxy.c
4624 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
4625 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
4626 - BUILD: sock_unix: fix build issue with isdigit()
4627 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
4628 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
4629 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
4630 - MINOR: http-htx: Handle an optional reason when replacing the response status
4631 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
4632 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
4633 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
4634 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
4635 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
4636 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
4637 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
4638 - REGTEST: increase some short timeouts to make tests more reliable
4639 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
4640 - BUILD: thread: limit the libgcc_s workaround to glibc only
4641 - MINOR: protocol: do not call proto->bind_all() anymore
4642 - MINOR: protocol: do not call proto->unbind_all() anymore
4643 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
4644 - MAJOR: init: start all listeners via protocols and not via proxies anymore
4645 - BUG/MINOR: startup: haproxy -s cause 100% cpu
4646 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
4647 - BUG/MEDIUM: doc: Fix replace-path action description
4648 - MINOR: http-rules: Add set-pathq and replace-pathq actions
4649 - MINOR: http-fetch: Add pathq sample fetch
4650 - REGTEST: Add a test for request path manipulations, with and without the QS
4651 - MINOR: Commit .gitattributes
4652 - CLEANUP: Update .gitignore
4653 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
4654 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
4655 - MINOR: server: Improve log message sent when server address is updated
4656 - DOC: ssl-load-extra-files only applies to certificates on bind lines
4657 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
4658 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
4659 - BUILD: threads: better workaround for late loading of libgcc_s
4660 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
4661 - BUILD: compiler: workaround a glibc madness around __attribute__()
4662 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
4663 - BUILD: trace: always have an argument before variadic args in macros
4664 - BUILD: traces: don't pass an empty argument for missing ones
4665 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
4666 - CLEANUP: Free old_argv on deinit
4667 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
4668 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
4669 - CLEANUP: haproxy: Free post_check_list in deinit()
4670 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
4671 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
4672 - MINOR: sample: Add iif(<true>,<false>) converter
4673
Willy Tarreauf104b532020-08-14 18:54:05 +020046742020/08/14 : 2.3-dev3
4675 - SCRIPTS: git-show-backports: make -m most only show the left branch
4676 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
4677 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
4678 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
4679 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
4680 - CLEANUP: dns: typo in reported error message
4681 - BUG/MAJOR: dns: disabled servers through SRV records never recover
4682 - BUG/MINOR: spoa-server: fix size_t format printing
4683 - DOC: spoa-server: fix false friends `actually`
4684 - BUG/MINOR: ssl: fix memory leak at OCSP loading
4685 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
4686 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
4687 - MINOR: arg: Add an argument type to keep a reference on opaque data
4688 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
4689 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
4690 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
4691 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
4692 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
4693 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
4694 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
4695 - MEDIUM: lua: Don't filter exported fetches and converters
4696 - MINOR: lua: Add support for userlist as fetches and converters arguments
4697 - MINOR: lua: Add support for regex as fetches and converters arguments
4698 - MINOR: arg: Use chunk_destroy() to release string arguments
4699 - BUG/MINOR: snapshots: leak of snapshots on deinit()
4700 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
4701 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
4702 - CLEANUP: fix all duplicated semicolons
4703 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
4704 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
4705 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
4706 - BUILD: makefile: don't disable -Wstringop-overflow anymore
4707 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
4708 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
4709 - BUG/MEDIUM: ssl: never generates the chain from the verify store
4710 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
4711 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
4712 - CLEANUP: ssl: remove poorly readable nested ternary
4713
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020047142020/07/31 : 2.3-dev2
4715 - DOC: ssl: req_ssl_sni needs implicit TLS
4716 - BUG/MEDIUM: arg: empty args list must be dropped
4717 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
4718 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
4719 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
4720 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
4721 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
4722 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
4723 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
4724 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
4725 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
4726 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
4727 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
4728 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
4729 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
4730 - BUILD: tools: fix build with static only toolchains
4731 - DOC: Use gender neutral language
4732 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
4733 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
4734 - BUG/MAJOR: dns: don't treat Authority records as an error
4735 - CI : travis-ci : prepare for using stock OpenSSL
4736 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
4737 - MEDIUM: lua: Add support for the Lua 5.4
4738 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
4739 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
4740 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
4741 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
4742 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
4743 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
4744 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
4745 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
4746 - MINOR: connection: Preinstall the mux for non-ssl connect
4747 - MINOR: stream-int: Be sure to have a mux to do sends and receives
4748 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
4749 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
4750 - CI: travis-ci: use better name for Coverity scan job
4751 - CI: travis-ci: use proper linking flags for SLZ build
4752 - BUG/MEDIUM: backend: always attach the transport before installing the mux
4753 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
4754 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
4755 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
4756 - MINOR: mux-h1: do not try to receive on backend before sending a request
4757 - CLEANUP: assorted typo fixes in the code and comments
4758 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
4759
Willy Tarreaue732cbd2020-07-17 15:13:19 +020047602020/07/17 : 2.3-dev1
4761 - MINOR: config: make strict limits enabled by default
4762 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
4763 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
4764 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
4765 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
4766 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
4767 - BUG/MINOR: haproxy: Free srule->file during deinit
4768 - BUG/MINOR: haproxy: Free srule->expr during deinit
4769 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
4770 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
4771 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
4772 - CLEANUP: haproxy: Free post_deinit_list in deinit()
4773 - CLEANUP: haproxy: Free server_deinit_list in deinit()
4774 - CLEANUP: haproxy: Free post_server_check_list in deinit()
4775 - CLEANUP: Add static void vars_deinit()
4776 - CLEANUP: Add static void hlua_deinit()
4777 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
4778 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
4779 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
4780 - MINOR: tcp: Support TCP keepalive parameters customization
4781 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
4782 - MINOR: lists: rename some MT_LIST operations to clarify them
4783 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
4784 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
4785 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
4786 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
4787 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
4788 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
4789 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
4790 - MINOR: connection: Set the SNI on server connections before installing the mux
4791 - MINOR: connection: Set new connection as private on reuse never
4792 - MINOR: connection: Add a wrapper to mark a connection as private
4793 - MEDIUM: connection: Add private connections synchronously in session server list
4794 - MINOR: connection: Use a dedicated function to look for a session's connection
4795 - MINOR: connection: Set the conncetion target during its initialisation
4796 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
4797 - MINOR: server: Factorize code to deal with reuse of server idle connections
4798 - MINOR: server: Factorize code to deal with connections removed from an idle list
4799 - CLEANUP: connection: remove unused field idle_time from the connection struct
4800 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
4801 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
4802 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
4803 - MINOR: backend: Add sample fetches to get the server's weight
4804 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
4805 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
4806 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
4807 - BUG/MINOR: backend: fix potential null deref on srv_conn
4808 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
4809 - MEDIUM: udp: adds minimal proto udp support for message listeners.
4810 - MEDIUM: log/sink: re-work and merge of build message API.
4811 - MINOR: log: adds syslog udp message handler and parsing.
4812 - MEDIUM: log: adds log forwarding section.
4813 - MINOR: log: adds counters on received syslog messages.
4814 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
4815 - BUG/MEDIUM: server: resolve state file handle leak on reload
4816 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
4817 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
4818 - BUILD: config: address build warning on raspbian+rpi4
4819 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
4820 - BUILD: config: fix again bugs gcc warnings on calloc
4821
Willy Tarreau33205c22020-07-07 16:35:28 +020048222020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02004823 - [RELEASE] Released version 2.3-dev0
4824 - MINOR: version: back to development, update status message
4825
48262020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02004827 - exact copy of 2.2.0
4828
Willy Tarreau3a00c912020-07-07 16:33:14 +020048292020/07/07 : 2.2.0
4830 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
4831 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
4832 - BUILD: tools: make resolve_sym_name() return a const
4833 - CLEANUP: auth: fix useless self-include of auth-t.h
4834 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
4835 - CLEANUP: assorted typo fixes in the code and comments
4836 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
4837 - DOC: fix tune.ssl.keylog sample fetches array
4838 - BUG/MINOR: ssl: check conn in keylog sample fetch
4839 - DOC: configuration: various typo fixes
4840 - MINOR: log: Remove unused case statement during the log-format string parsing
4841 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
4842 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
4843 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
4844 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
4845 - MINOR: mux-h1: Improve traces about the splicing
4846 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
4847 - BUG/MEDIUM: connection: Don't consider new private connections as available
4848 - BUG/MINOR: connection: See new connection as available only on reuse always
4849 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
4850 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
4851 - DOC: update INSTALL with new compiler versions
4852 - DOC: minor update to coding style file
4853 - MINOR: version: mention that it's an LTS release now
4854
Willy Tarreau62f11a52020-07-04 07:10:24 +020048552020/07/04 : 2.2-dev12
4856 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
4857 - MINOR: cli: make "show sess" stop at the last known session
4858 - CLEANUP: buffers: remove unused buffer_wq_lock lock
4859 - BUG/MEDIUM: buffers: always allocate from the local cache first
4860 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
4861 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
4862 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
4863 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
4864 - REORG: buffer: rename buffer.c to dynbuf.c
4865 - REORG: includes: create tinfo.h for the thread_info struct
4866 - CLEANUP: pool: only include the type files from types
4867 - MINOR: pools: move the LRU cache heads to thread_info
4868 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
4869 - MINOR: stats: add 3 new output values for the per-server idle conn state
4870 - MINOR: activity: add per-thread statistics on FD takeover
4871 - BUG/MINOR: server: start cleaning idle connections from various points
4872 - MEDIUM: server: improve estimate of the need for idle connections
4873 - MINOR: stats: add the estimated need of concurrent connections per server
4874 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
4875 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
4876 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
4877 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
4878 - BUG/MINOR: server: always count one idle slot for current thread
4879 - MEDIUM: server: use the two thresholds for the connection release algorithm
4880 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
4881 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
4882 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
4883 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
4884 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
4885 - MINOR: pools: increase MAX_BASE_POOLS to 64
4886 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
4887 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
4888 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
4889 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
4890 - BUG/MINOR: proxy: always initialize the trash in show servers state
4891 - MINOR: cli/proxy: add a new "show servers conn" command
4892 - MINOR: server: skip servers with no idle conns earlier
4893 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
4894 - MEDIUM: server: add a new pool-low-conn server setting
4895 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
4896 - MINOR: backend: don't always takeover from the same threads
4897 - MINOR: sched: make sched->task_list_size atomic
4898 - MEDIUM: sched: create a new TASK_KILLED task flag
4899 - MEDIUM: sched: implement task_kill() to kill a task
4900 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
4901 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
4902 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
4903 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
4904 - CLEANUP: connections: rename the toremove_lock to takeover_lock
4905 - MEDIUM: connections: Don't use a lock when moving connections to remove.
4906 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
4907 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
4908 - MINOR: config: add a new tune.idle-pool.shared global setting.
4909 - MINOR: 51d: silence a warning about null pointer dereference
4910 - MINOR: debug: add a new "debug dev memstats" command
4911 - MINOR: log-format: allow to preserve spacing in log format strings
4912 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
4913 - BUG/MAJOR: sched: make sure task_kill() always queues the task
4914 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
4915 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
4916 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
4917 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
4918 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
4919 - BUG/MINOR: log: missing timezone on iso dates.
4920 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
4921 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
4922 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
4923 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
4924 - BUG/MINOR: http_act: don't check capture id in backend (2)
4925 - BUILD: makefile: disable threads by default on OpenBSD
4926 - BUILD: peers: fix build warning with gcc 4.2.1
4927 - CI: cirrus-ci: exclude slow reg-tests
4928
Willy Tarreau4462af82020-06-26 22:01:04 +020049292020/06/26 : 2.2-dev11
4930 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
4931 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
4932 - BUG/MINOR: spoe: correction of setting bits for analyzer
4933 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
4934 - MINOR: cfgparse: Warn on truncated lines / files
4935 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
4936 - MINOR: debug: add a new DEBUG_FD build option
4937 - BUG/MINOR: tasks: make sure never to exceed max_processed
4938 - MINOR: task: add a new pointer to current tasklet queue
4939 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
4940 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
4941 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
4942 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
4943 - MINOR: ssl: free bind_conf_node in crtlist_free()
4944 - MINOR: ssl: free the crtlist and the ckch during the deinit()
4945 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
4946 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
4947 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
4948 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
4949 - MINOR: tasks: make current_queue an index instead of a pointer
4950 - MINOR: tasks: add a mask of the queues with active tasklets
4951 - MINOR: tasks: pass the queue index to run_task_from_list()
4952 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
4953 - MEDIUM: tasks: add a tune.sched.low-latency option
4954 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
4955 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
4956 - MINOR: tools: make parse_line() always terminate the args list
4957 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
4958 - MINOR: cfgparse: sanitize the output a little bit
4959 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
4960 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
4961 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
4962 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
4963 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
4964 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
4965 - MINOR: spoe: Don't systematically create new applets if processing rate is low
4966 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
4967 - BUILD: fix ssl_sample.c when building against BoringSSL
4968 - CI: travis-ci: switch BoringSSL builds to ninja
4969 - CI: extend spellchecker whitelist
4970 - DOC: assorted typo fixes in the documentation
4971 - CLEANUP: assorted typo fixes in the code and comments
4972 - MINOR: http: Add support for http 413 status
4973 - REGTEST: ssl: tests the ssl_f_* sample fetches
4974 - REGTEST: ssl: add some ssl_c_* sample fetches test
4975 - DOC: ssl: update the documentation of "commit ssl cert"
4976 - BUG/MINOR: cfgparse: correctly deal with empty lines
4977 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
4978
Willy Tarreaudc0936c2020-06-19 21:43:26 +020049792020/06/19 : 2.2-dev10
4980 - BUILD: include: add sys/types before netinet/tcp.h
4981 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
4982 - BUILD: Remove nowarn for warnings that do not trigger
4983 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
4984 - BUILD: Re-enable -Wimplicit-fallthrough
4985 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
4986 - BUILD: thread: add parenthesis around values of locking macros
4987 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
4988 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
4989 - CI: travis-ci: use "-O1" for clang builds
4990 - MINOR: haproxy: Add void deinit_and_exit(int)
4991 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
4992 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
4993 - BUILD: compression: make gcc 10 happy with free_zlib()
4994 - BUILD: atomic: add string.h for memcpy() on ARM64
4995 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
4996 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
4997 - BUILD: haproxy: mark deinit_and_exit() as noreturn
4998 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
4999 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
5000 - MINOR: tools: add a new configurable line parse, parse_line()
5001 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
5002 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
5003 - MINOR: http: do not close connections anymore after internal responses
5004 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
5005 - BUG/MINOR: spoe: add missing key length check before checking key names
5006 - MINOR: version: put the compiler version output into version.c not haproxy.c
5007 - MINOR: compiler: always define __has_feature()
5008 - MINOR: version: report the presence of the compiler's address sanitizer
5009 - BUILD: Fix build by including haproxy/global.h
5010 - BUG/MAJOR: connection: always disable ready events once reported
5011 - CLEANUP: activity: remove unused counter fd_lock
5012 - DOC: fd: make it clear that some fields ordering must absolutely be respected
5013 - MINOR: activity: report the number of times poll() reports I/O
5014 - MINOR: activity: rename confusing poll_* fields in the output
5015 - MINOR: fd: Fix a typo in a coment.
5016 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
5017 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
5018 - MINOR: activity: group the per-loop counters at the top
5019 - MINOR: activity: rename the "stream" field to "stream_calls"
5020 - MEDIUM: fd: refine the fd_takeover() migration lock
5021 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
5022 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
5023 - MINOR: peers: do not use localpeer as an array anymore
5024 - MEDIUM: peers: add the "localpeer" global option
5025 - MEDIUM: fd: add experimental support for edge-triggered polling
5026 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
5027 - MINOR: haproxy: process signals before runnable tasks
5028 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
5029 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
5030 - BUG/MINOR: cli: allow space escaping on the CLI
5031 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
5032 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
5033 - REGTEST: http-rules: test spaces in ACLs
5034 - REGTEST: http-rules: test spaces in ACLs with master CLI
5035 - BUG/MAJOR: init: properly compute the default global.maxpipes value
5036 - MEDIUM: map: make the "clear map" operation yield
5037 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
5038 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
5039 - BUG/MINOR: systemd: Wait for network to be online
5040 - DOC: configuration: Unindent non-code sentences in the protobuf example
5041 - DOC: configuration: http-check send was missing from matrix
5042
Willy Tarreau1385c882020-06-11 10:22:10 +020050432020/06/11 : 2.2-dev9
5044 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
5045 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
5046 - MINOR: checks: Remove dead code from process_chk_conn()
5047 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
5048 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
5049 - MINOR: lua: Use vars_unset_by_name_ifexist()
5050 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
5051 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
5052 - MINOR: lua: Make `set_var()` and `unset_var()` return success
5053 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
5054 - MEDIUM: ring: new section ring to declare custom ring buffers.
5055 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
5056 - REGTESTS: Require the version 2.2 to execute lua/set_var
5057 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
5058 - MINOR: checks: Remove useless tests on the connection and conn-stream
5059 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
5060 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
5061 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
5062 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
5063 - MINOR: pools: compute an estimate of each pool's average needed objects
5064 - MEDIUM: pools: directly free objects when pools are too much crowded
5065 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
5066 - MINOR: http-ana: Make the function http_reply_to_htx() public
5067 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
5068 - MINOR: http-rules: Use an action function to eval http-request auth rules
5069 - CLEANUP: http: Remove unused HTTP message templates
5070 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
5071 - MINOR: checks: I/O callback function only rely on the data layer wake callback
5072 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
5073 - BUG/MEDIUM: logs: fix trailing zeros on log message.
5074 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
5075 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
5076 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
5077 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
5078 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
5079 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
5080 - MINOR: ring: re-work ring attach generic API.
5081 - BUG/MINOR: error on unknown statement in ring section.
5082 - MEDIUM: ring: add server statement to forward messages from a ring
5083 - MEDIUM: ring: add new srv statement to support octet counting forward
5084 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
5085 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
5086 - BUILD: sink: address build warning on 32-bit architectures
5087 - BUG/MINOR: peers: fix internal/network key type mapping.
5088 - CLEANUP: regex: remove outdated support for regex actions
5089 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
5090 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
5091 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
5092 - DOC: add a line about comments in crt-list
5093 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
5094 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
5095 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
5096 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
5097 - BUG/MINOR: init: -x can have a parameter starting with a dash
5098 - BUG/MINOR: init: -S can have a parameter starting with a dash
5099 - BUG/MEDIUM: mworker: fix the reload with an -- option
5100 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
5101 - BUG/MINOR: mworker: fix a memleak when execvp() failed
5102 - MINOR: sample: Add secure_memcmp converter
5103 - REORG: ebtree: move the C files from ebtree/ to src/
5104 - REORG: ebtree: move the include files from ebtree to include/import/
5105 - REORG: ebtree: clean up remains of the ebtree/ directory
5106 - REORG: include: create new file haproxy/api-t.h
5107 - REORG: include: create new file haproxy/api.h
5108 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
5109 - CLEANUP: include: remove common/config.h
5110 - CLEANUP: include: remove unused template.h
5111 - REORG: include: move MIN/MAX from tools.h to compat.h
5112 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
5113 - CLEANUP: include: remove unused common/tools.h
5114 - REORG: include: move the base files from common/ to haproxy/
5115 - REORG: include: move version.h to haproxy/
5116 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
5117 - REORG: include: move openssl-compat.h from common/ to haproxy/
5118 - REORG: include: move ist.h from common/ to import/
5119 - REORG: include: move the BUG_ON() code to haproxy/bug.h
5120 - REORG: include: move debug.h from common/ to haproxy/
5121 - CLEANUP: debug: drop unused function p_malloc()
5122 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
5123 - REORG: include: move istbuf.h to haproxy/
5124 - REORG: include: split mini-clist into haproxy/list and list-t.h
5125 - REORG: threads: extract atomic ops from hathreads.h
5126 - CLEANUP: threads: remove a few needless includes of hathreads.h
5127 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
5128 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
5129 - REORG: include: move time.h from common/ to haproxy/
5130 - REORG: include: move integer manipulation functions from standard.h to intops.h
5131 - CLEANUP: include: remove excessive includes of common/standard.h
5132 - REORG: include: move freq_ctr to haproxy/
5133 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
5134 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
5135 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
5136 - MINOR: memory: don't let __pool_get_first() pick from the cache
5137 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
5138 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
5139 - MEDIUM: memory: make local pools independent on lockless pools
5140 - REORG: include: move common/memory.h to haproxy/pool.h
5141 - REORG: include: move common/chunk.h to haproxy/chunk.h
5142 - REORG: include: move activity to haproxy/
5143 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
5144 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
5145 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
5146 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
5147 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
5148 - REORG: include: move common/ticks.h to haproxy/ticks.h
5149 - REORG: include: split common/http.h into haproxy/http{,-t}.h
5150 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
5151 - REORG: include: move common/h1.h to haproxy/h1.h
5152 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
5153 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
5154 - REORG: include: move common/h2.h to haproxy/h2.h
5155 - REORG: include: move common/fcgi.h to haproxy/
5156 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
5157 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
5158 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
5159 - REORG: include: move shctx to haproxy/shctx{,-t}.h
5160 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
5161 - REORG: include: move fd.h to haproxy/fd{,-t}.h
5162 - REORG: include: move ring to haproxy/ring{,-t}.h
5163 - REORG: include: move sink.h to haproxy/sink{,-t}.h
5164 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
5165 - CLEANUP: include: remove empty raw_sock.h
5166 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
5167 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
5168 - REORG: include: move compression.h to haproxy/compression{,-t}.h
5169 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
5170 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
5171 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
5172 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
5173 - REORG: include: move action.h to haproxy/action{,-t}.h
5174 - REORG: include: move arg.h to haproxy/arg{,-t}.h
5175 - REORG: include: move auth.h to haproxy/auth{,-t}.h
5176 - REORG: include: move dns.h to haproxy/dns{,-t}.h
5177 - REORG: include: move flt_http_comp.h to haproxy/
5178 - REORG: include: move counters.h to haproxy/counters-t.h
5179 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
5180 - REORG: include: move capture.h to haproxy/capture{,-t}.h
5181 - REORG: include: move frontend.h to haproxy/frontend.h
5182 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
5183 - REORG: include: move http_rules.h to haproxy/http_rules.h
5184 - CLEANUP: include: remove unused mux_pt.h
5185 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
5186 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
5187 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
5188 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
5189 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
5190 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
5191 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
5192 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
5193 - REORG: include: move listener.h to haproxy/listener{,-t}.h
5194 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
5195 - REORG: include: move map to haproxy/map{,-t}.h
5196 - REORG: include: move payload.h to haproxy/payload.h
5197 - REORG: include: move sample.h to haproxy/sample{,-t}.h
5198 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
5199 - REORG: include: move vars.h to haproxy/vars{,-t}.h
5200 - REORG: include: split global.h into haproxy/global{,-t}.h
5201 - REORG: include: move task.h to haproxy/task{,-t}.h
5202 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
5203 - REORG: include: move signal.h to haproxy/signal{,-t}.h
5204 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
5205 - REORG: include: move connection.h to haproxy/connection{,-t}.h
5206 - REORG: include: move checks.h to haproxy/check{,-t}.h
5207 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
5208 - REORG: include: move peers.h to haproxy/peers{,-t}.h
5209 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
5210 - REORG: include: move session.h to haproxy/session{,-t}.h
5211 - REORG: include: move trace.h to haproxy/trace{,-t}.h
5212 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
5213 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
5214 - REORG: move applet.h to haproxy/applet{,-t}.h
5215 - REORG: include: move stats.h to haproxy/stats{,-t}.h
5216 - REORG: include: move cli.h to haproxy/cli{,-t}.h
5217 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
5218 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
5219 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
5220 - REORG: include: move channel.h to haproxy/channel{,-t}.h
5221 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
5222 - REORG: include: move filters.h to haproxy/filters{,-t}.h
5223 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
5224 - REORG: include: move log.h to haproxy/log{,-t}.h
5225 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
5226 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
5227 - REORG: include: move backend.h to haproxy/backend{,-t}.h
5228 - REORG: include: move queue.h to haproxy/queue{,-t}.h
5229 - REORG: include: move server.h to haproxy/server{,-t}.h
5230 - REORG: include: move stream.h to haproxy/stream{,-t}.h
5231 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
5232 - CLEANUP: hpack: export debug functions and move inlines to .h
5233 - REORG: check: move the e-mail alerting code to mailers.c
5234 - REORG: check: move tcpchecks away from check.c
5235 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
5236 - REORG: check: extract the external checks from check.{c,h}
5237 - CLEANUP: include: don't include stddef.h directly
5238 - CLEANUP: include: don't include proxy-t.h in global-t.h
5239 - CLEANUP: include: move sample_data out of sample-t.h
5240 - REORG: include: move the error reporting functions to from log.h to errors.h
5241 - BUILD: reorder objects in the Makefile for faster builds
5242 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
5243 - CLEANUP: include: make atomic.h part of the base API
5244 - REORG: include: move MAX_THREADS to defaults.h
5245 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
5246 - CLEANUP: include: tree-wide alphabetical sort of include files
5247 - REORG: include: make list-t.h part of the base API
5248 - REORG: dgram: rename proto_udp to dgram
5249
Willy Tarreau73b943b2020-05-22 16:19:04 +020052502020/05/22 : 2.2-dev8
5251 - MINOR: checks: Improve report of unexpected errors for expect rules
5252 - MEDIUM: checks: Add matching on log-format string for expect rules
5253 - DOC: Fix req.body and co documentation to be accurate
5254 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
5255 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
5256 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
5257 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
5258 - MINOR: checks/sample: Remove unnecessary tests on the sample session
5259 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
5260 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
5261 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
5262 - MINOR: checks: Support log-format string to set the body for HTTP send rules
5263 - DOC: Be more explicit about configurable check ok/error/timeout status
5264 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
5265 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
5266 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
5267 - REGTESTS: make the http-check-send test require version 2.2
5268 - BUG/MINOR: http-ana: fix NTLM response parsing again
5269 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
5270 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
5271 - MINOR: cfgparse: Improve error message for invalid \x sequences
5272 - CI: travis-ci: enable arm64 builds again
5273 - MEDIUM: ssl: increase default-dh-param to 2048
5274 - CI: travis-ci: skip pcre2 on arm64 build
5275 - CI: travis-ci: extend the build time for SSL to 60 minutes
5276 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
5277 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
5278 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
5279 - CLEANUP: remove THREAD_LOCAL from config.h
5280 - CI: travis-ci: upgrade LibreSSL versions
5281 - DOC: assorted typo fixes in the documentation
5282 - CI: extend spellchecker whitelist
5283 - CLEANUP: assorted typo fixes in the code and comments
5284 - MAJOR: contrib: porting spoa_server to support python3
5285 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
5286 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
5287 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
5288 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
5289 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
5290 - MINOR: sample: Add digest and hmac converters
5291 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
5292 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
5293 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
5294 - BUG/MINOR: pollers: remove uneeded free in global init
5295 - CLEANUP: select: enhance readability in init
5296 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
5297 - MINOR: soft-stop: let the first stopper only signal other threads
5298 - BUILD: select: only declare existing local labels to appease clang
5299 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
5300 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
5301 - DOC: retry-on can only be used with mode http
5302 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
5303 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
5304 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
5305 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
5306 - REORG: ssl: move macros and structure definitions to ssl_sock.h
5307 - CLEANUP: ssl: remove the shsess_* macros
5308 - REORG: move the crt-list structures in their own .h
5309 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
5310 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
5311 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
5312 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
5313 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
5314 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
5315 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
5316 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
5317 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
5318 - MINOR: ssl: remove static keyword in some SSL utility functions
5319 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
5320 - REORG: ssl: move sample fetches to src/ssl_sample.c
5321 - REORG: ssl: move utility functions to src/ssl_utils.c
5322 - DOC: ssl: update MAINTAINERS file
5323 - CI: travis-ci: switch arm64 builds to use openssl from distro
5324 - MINOR: stats: Prepare for more accurate moving averages
5325 - MINOR: stats: Expose native cum_req metric for a server
5326 - MEDIUM: stats: Enable more accurate moving average calculation for stats
5327 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
5328 - BUILD: ssl: include errno.h in ssl_crtlist.c
5329 - CLEANUP: acl: remove unused assignment
5330 - DOC/MINOR: halog: Add long help info for ic flag
5331 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
5332 - DOC: SPOE is no longer experimental
5333 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
5334 - MINOR: config: Don't dump keywords if argument is NULL
5335 - MEDIUM: checks: Make post-41 the default mode for mysql checks
5336 - BUG/MINOR: logs: prevent double line returns in some events.
5337 - MEDIUM: sink: build header in sink_write for log formats
5338 - MEDIUM: logs: buffer targets now rely on new sink_write
5339 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
5340 - MEDIUM: hpack: use a pool for the hpack table
5341 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
5342 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
5343 - MINOR: applet: adopt the wait list entry from the CLI
5344 - MINOR: ring: make the applet code not depend on the CLI
5345 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
5346 - CI: travis-ci: fix libslz download URL
5347 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
5348 - CLEANUP: http_ana: Remove unused TXN flags
5349 - BUG/MINOR: http-rules: Mark http return rules as final
5350 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
5351 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
5352 - MINOR: http-rules: Use http_reply structure for http return rules
5353 - MINOR: http-htx: Use a dedicated function to release http_reply objects
5354 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
5355 - MINOR: http-htx: Use a dedicated function to check http reply validity
5356 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
5357 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
5358 - MINOR: http-htx: Store default error messages in a global http reply array
5359 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
5360 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
5361 - MINOR: proxy: Add references on http replies for proxy error messages
5362 - MINOR: http-htx: Use http reply from the http-errors section
5363 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
5364 - MEDIUM: http-ana: Use http replies for HTTP error messages
5365 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
5366 - MINOR: htx: Add a function to copy a buffer in an HTX message
5367 - CLEANUP: channel: Remove channel_htx_copy_msg() function
5368 - MINOR: http-ana: Add a function to write an http reply in an HTX message
5369 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
5370 - DOC: Fix "errorfile" description in the configuration manual
5371 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
5372 - BUILD: hpack: make sure the hpack table can still be built standalone
5373 - CONTRIB: hpack: make use of the simplified standalone HPACK API
5374 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
5375
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020053762020/05/05 : 2.2-dev7
5377 - MINOR: version: Show uname output in display_version()
5378 - CI: run weekly OpenSSL "no-deprecated" builds
5379 - CLEANUP: log: fix comment of parse_logformat_string()
5380 - DOC: Improve documentation on http-request set-src
5381 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
5382 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
5383 - MINOR: ssl: add ssl-skip-self-issued-ca global option
5384 - BUG/MINOR: ssl: default settings for ssl server options are not used
5385 - MINOR: config: add a global directive to set default SSL curves
5386 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
5387 - DOC: internals: update the SSL architecture schema
5388 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
5389 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
5390 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
5391 - DOC: option logasap does not depend on mode
5392 - MEDIUM: memory: make pool_gc() run under thread isolation
5393 - MINOR: contrib: make the peers wireshark dissector a plugin
5394 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
5395 - BUG/MINOR: check: Update server address and port to execute an external check
5396 - MINOR: mini-clist: Add functions to iterate backward on a list
5397 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
5398 - MINOR: server: respect warning and alert semantic
5399 - BUG/MINOR: checks: Respect the no-check-ssl option
5400 - BUG/MEDIUM: server/checks: Init server check during config validity check
5401 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
5402 - BUG/MINOR: checks: chained expect will not properly wait for enough data
5403 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
5404 - MINOR: checks: Use an enum to describe the tcp-check rule type
5405 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
5406 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
5407 - MINOR: checks: simplify tcp expect config parser
5408 - MINOR: checks: add min-recv tcp-check expect option
5409 - MINOR: checks: add linger option to tcp connect
5410 - MINOR: checks: define a tcp expect type
5411 - MEDIUM: checks: rewrite tcp-check expect block
5412 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
5413 - MINOR: checks: add rbinary expect match type
5414 - MINOR: checks: Simplify functions to get step id and comment
5415 - MEDIUM: checks: capture groups in expect regexes
5416 - MINOR: checks: Don't use a static tcp rule list head
5417 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
5418 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
5419 - MINOR: checks: Set the tcp-check rule index during parsing
5420 - MINOR: checks: define tcp-check send type
5421 - MINOR: checks: define a tcp-check connect type
5422 - MEDIUM: checks: Add implicit tcp-check connect rule
5423 - MAJOR: checks: Refactor and simplify the tcp-check loop
5424 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
5425 - MINOR: checks/vars: Add a check scope for variables
5426 - MEDIUM: checks: Parse custom action rules in tcp-checks
5427 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
5428 - MINOR: checks: Add the sni option for tcp-check connect rules
5429 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
5430 - MINOR: checks: Add the alpn option for tcp-check connect rules
5431 - MINOR: ssl: Export a generic function to parse an alpn string
5432 - MINOR: checks: Add the default option for tcp-check connect rules
5433 - MINOR: checks: Add the addr option for tcp-check connect rule
5434 - MEDIUM: checks: Support expression to set the port
5435 - MEDIUM: checks: Support log-format strings for tcp-check send rules
5436 - MINOR: log: Don't depends on a stream to process samples in log-format string
5437 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
5438 - MEDIUM: checks: Add a shared list of tcp-check rules
5439 - MINOR: sample: add htonl converter
5440 - MINOR: sample: add cut_crlf converter
5441 - MINOR: sample: add ltrim converter
5442 - MINOR: sample: add rtrim converter
5443 - MINOR: checks: Use a name for the healthcheck status enum
5444 - MINOR: checks: Add option to tcp-check expect rules to customize error status
5445 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
5446 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
5447 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
5448 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
5449 - MINOR: checks: Relax the default option for tcp-check connect rules
5450 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
5451 - MINOR: checks: Export the tcpcheck_eval_ret enum
5452 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
5453 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
5454 - MEDIUM: checks: Implement redis check using tcp-check rules
5455 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
5456 - MEDIUM: checks: Implement smtp check using tcp-check rules
5457 - MEDIUM: checks: Implement postgres check using tcp-check rules
5458 - MEDIUM: checks: Implement MySQL check using tcp-check rules
5459 - MEDIUM: checks: Implement LDAP check using tcp-check rules
5460 - MEDIUM: checks: Implement SPOP check using tcp-check rules
5461 - MINOR: server/checks: Move parsing of agent keywords in checks.c
5462 - MINOR: server/checks: Move parsing of server check keywords in checks.c
5463 - MEDIUM: checks: Implement agent check using tcp-check rules
5464 - REGTEST: Adapt regtests about checks to recent changes
5465 - MINOR: Produce tcp-check info message for pure tcp-check rules only
5466 - MINOR: checks: Add an option to set success status of tcp-check expect rules
5467 - MINOR: checks: Improve log message of tcp-checks on success
5468 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
5469 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
5470 - MINOR: proxy/checks: Register a keyword to parse http-check rules
5471 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
5472 - MINOR: proxy/checks: Register a keyword to parse external-check rules
5473 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
5474 - MINOR: checks: Use an indirect string to represent the expect matching string
5475 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
5476 - MINOR: standard: Add my_memspn and my_memcspn
5477 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
5478 - MAJOR: checks: Implement HTTP check using tcp-check rules
5479 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
5480 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
5481 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
5482 - MINOR: checks/obj_type: Add a new object type for checks
5483 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
5484 - MINOR: checks: Use the check as origin when a session is created
5485 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
5486 - MINOR: connection: Add a function to install a mux for a health-check
5487 - MAJOR: checks: Use the best mux depending on the protocol for health checks
5488 - MEDIUM: checks: Implement default TCP check using tcp-check rules
5489 - MINOR: checks: Remove unused code about pure TCP checks
5490 - CLEANUP: checks: Reorg checks.c file to be more readable
5491 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
5492 - MINOR: ist: Add a function to retrieve the ist pointer
5493 - MINOR: checks: Use ist API as far as possible
5494 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
5495 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
5496 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
5497 - REGTEST: Add scripts to test based tcp-check health-checks
5498 - Revert "MEDIUM: checks: capture groups in expect regexes"
5499 - DOC: Add documentation about comments for tcp-check and http-check directives
5500 - DOC: Fix the tcp-check and http-check directives layout
5501 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
5502 - MINOR: checks: Support mux protocol definition for tcp and http health checks
5503 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
5504 - MINOR: checks: Support list of status codes on http-check expect rules
5505 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
5506 - REGTEST: Add a script to validate agent checks
5507 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
5508 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
5509 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
5510 - BUG/MINOR: checks/server: use_ssl member must be signed
5511 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
5512 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
5513 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
5514 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
5515 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
5516 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
5517 - BUG/MINOR: checks: Remove wrong variable redeclaration
5518 - BUG/MINOR: checks: Properly handle truncated mysql server messages
5519 - CLEANUP: checks: Remove unused code when ldap server message is parsed
5520 - MINOR: checks: Make the use of the check's server more explicit on connect
5521 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
5522 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
5523 - BUG/MINOR: checks: Don't lose warning on proxy capability
5524 - MINOR: log: Add "Tu" timer
5525 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
5526 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
5527 - REGTEST: ssl: test the client certificate authentication
5528 - DOC: give a more accurate description of what check does
5529 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
5530 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
5531 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
5532 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
5533 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
5534 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
5535 - MINOR: http-htx: Export functions to update message authority and host
5536 - MINOR: checks: Don't support multiple host header for http-check send rule
5537 - MINOR: checks: Skip some headers for http-check send rules
5538 - MINOR: checks: Keep the Host header and the request uri synchronized
5539 - CLEANUP: checks: Fix checks includes
5540 - DOC: Fix send rules in the http-check connect example
5541 - DOC: Add more info about request formatting in http-check send description
5542 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
5543 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
5544 - REGTEST: ssl: improve the "set ssl cert" test
5545 - CLEANUP: ssl: silence a build warning when threads are disabled
5546 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
5547 - MINOR: threads: export the POSIX thread ID in panic dumps
5548 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
5549 - BUG/MEDIUM: shctx: really check the lock's value while waiting
5550 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
5551 - MINOR: stream: report the list of active filters on stream crashes
5552 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
5553 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
5554 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
5555 - BUG/MEDIUM: connections: force connections cleanup on server changes
5556 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
5557 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
5558 - CLEANUP: connections: align function declaration
5559 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
5560 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
5561 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
5562 - MINOR: checks: Add support of payload-based sample fetches
5563 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
5564 - MINOR: checks: Add support of server side ssl sample fetches
5565 - MINOR: checks: Add support of HTTP response sample fetches
5566 - MINOR: http-htx: Support different methods to look for header names
5567 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
5568 - BUG/MINOR: checks: Support multiple HTTP expect rules
5569 - REGTEST: checks: Fix sync condition for agent-check
5570 - MEDIUM: checks: Support matching on headers for http-check expect rules
5571 - MINOR: lua: allow changing port with set_addr
5572 - BUG/MINOR: da: Fix HTX message prefetch
5573 - BUG/MINOR: wurfl: Fix HTX message prefetch
5574 - BUG/MINOR: 51d: Fix HTX message prefetch
5575 - MINOR: ist: add istadv() function
5576 - MINOR: ist: add istissame() function
5577 - MINOR: istbuf: add ist2buf() function
5578 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
5579 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
5580 - DOC: update intro.txt for 2.2
5581 - DOC: intro: add a contacts section
5582
Willy Tarreaud0089302020-04-17 14:19:38 +020055832020/04/17 : 2.2-dev6
5584 - BUG/MINOR: ssl: memory leak when find_chain is NULL
5585 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
5586 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
5587 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
5588 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
5589 - BUG/MINOR: peers: Use after free of "peers" section.
5590 - CI: github actions: add weekly h2spec test
5591 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
5592 - MINOR: build: Fix build in mux_h1
5593 - CLEANUP: remove obsolete comments
5594 - BUG/MEDIUM: dns: improper parsing of aditional records
5595 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
5596 - MINOR: listener: add so_name sample fetch
5597 - MEDIUM: stream: support use-server rules with dynamic names
5598 - MINOR: servers: Add a counter for the number of currently used connections.
5599 - MEDIUM: connections: Revamp the way idle connections are killed
5600 - MINOR: cli: add a general purpose pointer in the CLI struct
5601 - MINOR: ssl: add a list of bind_conf in struct crtlist
5602 - REORG: ssl: move SETCERT enum to ssl_sock.h
5603 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
5604 - REORG: ssl: move some functions above crtlist_load_cert_dir()
5605 - MINOR: ssl: use crtlist_free() upon error in directory loading
5606 - MINOR: ssl: add a list of crtlist_entry in ckch_store
5607 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
5608 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
5609 - MEDIUM: ssl/cli: 'add ssl crt-list' command
5610 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
5611 - BUG/MINOR: ssl: entry->ckch_inst not initialized
5612 - REGTEST: ssl/cli: change test type to devel
5613 - REGTEST: make the PROXY TLV validation depend on version 2.2
5614 - CLEANUP: assorted typo fixes in the code and comments
5615 - BUG/MINOR: stats: Fix color of draining servers on stats page
5616 - DOC: internals: Fix spelling errors in filters.txt
5617 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
5618 - REGTEST: make the unique-id test depend on version 2.0
5619 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
5620 - MINOR: ssl: split the line parsing of the crt-list
5621 - MINOR: ssl/cli: support filters and options in add ssl crt-list
5622 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
5623 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
5624 - REGTEST: ssl: pollute the crt-list file
5625 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
5626 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
5627 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
5628 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
5629 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
5630 - CLEANUP: assorted typo fixes in the code and comments
5631 - DOC: management: add the new crt-list CLI commands
5632 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
5633 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
5634 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
5635 - CI: use better SSL library definition
5636 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
5637 - CI: travis-ci: upgrade openssl to 1.1.1f
5638 - MINOR: ssl: improve the errors when a crt can't be open
5639 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
5640 - CI: adopt openssl download script to download all versions
5641 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
5642 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
5643 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
5644 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
5645 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
5646 - CLEANUP: ssl: use the refcount for the SSL_CTX'
5647 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
5648 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
5649 - CLEANUP: ssl: remove a commentary in struct ckch_inst
5650 - MINOR: ssl: initialize all list in ckch_inst_new()
5651 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
5652 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
5653 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
5654 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
5655 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
5656 - REORG: ssl: move some free/new functions
5657 - MINOR: ssl: crtlist_entry_{new, free}
5658 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
5659 - MINOR: ssl: don't alloc ssl_conf if no option found
5660 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
5661 - BUG/MINOR: peers: Incomplete peers sections should be validated.
5662 - MINOR: init: report in "haproxy -c" whether there were warnings or not
5663 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
5664 - MINOR: init: report the compiler version in haproxy -vv
5665 - CLEANUP: assorted typo fixes in the code and comments
5666 - MINOR: init: report the haproxy version and executable path once on errors
5667 - DOC: Make how "option redispatch" works more explicit
5668 - BUILD: Makefile: add linux-musl to TARGET
5669 - CLEANUP: assorted typo fixes in the code and comments
5670 - CLEANUP: http: Fixed small typo in parse_http_return
5671 - DOC: hashing: update link to hashing functions
5672
Willy Tarreau3328f182020-03-23 09:43:45 +010056732020/03/23 : 2.2-dev5
5674 - CLEANUP: ssl: is_default is a bit in ckch_inst
5675 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
5676 - DOC: ssl: clarify security implications of TLS tickets
5677 - CLEANUP: remove support for Linux i686 vsyscalls
5678 - CLEANUP: drop support for USE_MY_ACCEPT4
5679 - CLEANUP: remove support for USE_MY_EPOLL
5680 - CLEANUP: remove support for USE_MY_SPLICE
5681 - CLEANUP: remove the now unused common/syscall.h
5682 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
5683 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
5684 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
5685 - CLEANUP: ssl: separate the directory loading in a new function
5686 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
5687 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
5688 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
5689 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
5690 - BUG/MAJOR: list: fix invalid element address calculation
5691 - BUILD: stream-int: fix a few includes dependencies
5692 - MINOR: mt_lists: Appease gcc.
5693 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
5694 - MINOR: servers: Kill priv_conns.
5695 - MINOR: lists: fix indentation.
5696 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
5697 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
5698 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
5699 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
5700 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
5701 - BUG/MINOR: haproxy/threads: try to make all threads leave together
5702 - Revert "BUILD: travis-ci: enable s390x builds"
5703 - BUILD: travis-ci: enable regular s390x builds
5704 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
5705 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
5706 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
5707 - CLEANUP: connection: Add blank line after declarations in PP handling
5708 - CLEANUP: assorted typo fixes in the code and comments
5709 - CI: add spellcheck github action
5710 - DOC: correct typo in alert message about rspirep
5711 - CI: travis: switch linux builds to clang-9
5712 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
5713 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
5714 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
5715 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
5716 - CLEANUP: connection: Stop directly setting an ist's .ptr
5717 - CI: travis: revert to clang-7 for BoringSSL tests
5718 - BUILD: on ARM, must be linked to libatomic.
5719 - BUILD: makefile: fix regex syntax in ARM platform detection
5720 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
5721 - REORG: ssl: move ssl_sock_load_cert()
5722 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
5723 - MEDIUM: ssl: allow crt-list caching
5724 - MINOR: ssl: directories are loaded like crt-list
5725 - BUG/MINOR: ssl: can't open directories anymore
5726 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
5727 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
5728 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
5729 - MINOR: ssl/cli: show/dump ssl crt-list
5730 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
5731 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
5732 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
5733 - MINOR: tasks: Provide the tasklet to the callback.
5734 - BUG/MINOR: ssl: memleak of struct crtlist_entry
5735 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
5736 - BUILD: makefile: fix expression again to detect ARM platform
5737 - CI: travis: re-enable ASAN on clang
5738 - CI: travis: proper group output redirection together with travis_wait
5739 - DOC: assorted typo fixes in the documentation
5740 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
5741 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
5742 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
5743 - MINOR: ssl/cli: 'new ssl cert' command
5744 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
5745 - MEDIUM: sessions: Don't be responsible for connections anymore.
5746 - MEDIUM: servers: Split the connections into idle, safe, and available.
5747 - MINOR: fd: Implement fd_takeover().
5748 - MINOR: connections: Add a new mux method, "takeover".
5749 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
5750 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
5751 - MEDIUM: connections: Attempt to get idle connections from other threads.
5752 - MEDIUM: mux_h1: Implement the takeover() method.
5753 - MEDIUM: mux_h2: Implement the takeover() method.
5754 - MEDIUM: mux_fcgi: Implement the takeover() method.
5755 - MEDIUM: connections: Kill connections even if we are reusing one.
5756 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
5757 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
5758 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
5759 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
5760 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
5761 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
5762 - CI: run travis-ci builds on push only, skip pull requests
5763 - CI: temporarily disable unstable travis arm64 builds
5764 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
5765 - BUG/MINOR: connections: Make sure we free the connection on failure.
5766 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
5767 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
5768 - BUG/MINOR: connections: Set idle_time before adding to idle list.
5769 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
5770 - REGTEST: increase timeouts on the seamless-reload test
5771 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
5772 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
5773
Willy Tarreau5a753bd2020-03-09 14:57:20 +010057742020/03/09 : 2.2-dev4
5775 - MEDIUM: buffer: remove the buffer_wq lock
5776 - MINOR: ssl: move find certificate chain code to its own function
5777 - MINOR: ssl: resolve issuers chain later
5778 - MINOR: ssl: resolve ocsp_issuer later
5779 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
5780 - BUG/MINOR: h2: reject again empty :path pseudo-headers
5781 - MINOR: wdt: always clear sigev_value to make valgrind happy
5782 - MINOR: epoll: always initialize all of epoll_event to please valgrind
5783 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
5784 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
5785 - BUILD: cirrus-ci: suppress OS version check when installing packages
5786 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
5787 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
5788 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
5789 - MINOR: fd: merge the read and write error bits into RW error
5790 - BUG/MINOR: dns: ignore trailing dot
5791 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
5792 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
5793 - MINOR: mux-h1: Remove useless case-insensitive comparisons
5794 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
5795 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
5796 - MEDIUM: connection: don't stop receiving events in the FD handler
5797 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
5798 - BUG/MINOR: arg: don't reject missing optional args
5799 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
5800 - MINOR: debug: report the task handler's pointer relative to main
5801 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
5802 - MINOR: haproxy: export main to ease access from debugger
5803 - MINOR: haproxy: export run_poll_loop
5804 - MINOR: task: export run_tasks_from_list
5805 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
5806 - MINOR: tools: add new function dump_addr_and_bytes()
5807 - MINOR: tools: add resolve_sym_name() to resolve function pointers
5808 - MINOR: debug: use resolve_sym_name() to dump task handlers
5809 - MINOR: cli: make "show fd" rely on resolve_sym_name()
5810 - MEDIUM: debug: add support for dumping backtraces of stuck threads
5811 - MINOR: debug: call backtrace() once upon startup
5812 - MINOR: ssl: add "ca-verify-file" directive
5813 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
5814 - BUILD: Makefile: include librt before libpthread
5815 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
5816 - MINOR: wdt: do not depend on USE_THREAD
5817 - MINOR: debug: report the number of entries in the backtrace
5818 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
5819 - MINOR: debug: use our own backtrace function on clang+x86_64
5820 - MINOR: debug: dump the whole trace if we can't spot the starting point
5821 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
5822 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
5823 - CLEANUP: contrib/spoa_example: Fix several typos
5824 - BUILD: makefile: do not modify the build options during make reg-tests
5825 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
5826 - MEDIUM: stream-int: make sure to try to immediately validate the connection
5827 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
5828 - MEDIUM: connection: only call ->wake() for connect() without I/O
5829 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
5830 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
5831 - REGTEST: Add unique-id reg-test
5832 - MINOR: stream: Add stream_generate_unique_id function
5833 - MINOR: stream: Use stream_generate_unique_id
5834 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
5835 - MINOR: ssl/cli: support crt-list filters
5836 - MINOR: ssl: reach a ckch_store from a sni_ctx
5837 - DOC: fix incorrect indentation of http_auth_*
5838 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
5839 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
5840 - MINOR: ist: Add `IST_NULL` macro
5841 - MINOR: ist: Add `int isttest(const struct ist)`
5842 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
5843 - CLEANUP: Use `isttest()` and `istfree()`
5844 - MINOR: ist: Add `struct ist istdup(const struct ist)`
5845 - MINOR: proxy: Make `header_unique_id` a `struct ist`
5846 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
5847 - OPTIM: startup: fast unique_id allocation for acl.
5848 - DOC: configuration.txt: fix various typos
5849 - DOC: assorted typo fixes in the documentation and Makefile
5850 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
5851 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
5852 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
5853 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
5854 - MINOR: htx: Add a function to return a block at a specific offset
5855 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
5856 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
5857 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
5858 - BUG/MINOR: filters: Forward everything if no data filters are called
5859 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
5860 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
5861 - BUG/MINOR: http-ana: Reset request analysers on a response side error
5862 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
5863 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
5864 - MINOR: lua: Add function to know if a channel is a response one
5865 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
5866 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
5867 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
5868 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
5869 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
5870 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
5871 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
5872 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
5873 - BUG/MINOR: http-rules: Fix a typo in the reject action function
5874 - MINOR: cache/filters: Initialize the cache filter when stream is created
5875 - MINOR: compression/filters: Initialize the comp filter when stream is created
5876 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
5877 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
5878 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
5879 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
5880 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
5881 - BUILD: ssl: include mini-clist.h
5882 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
5883 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
5884 - BUILD: listener: types/listener.h must not include standard.h
5885 - BUG/MEDIUM: random: initialize the random pool a bit better
5886 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
5887 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
5888 - BUILD: cirrus-ci: get rid of unstable freebsd images
5889 - MINOR: tools: add 64-bit rotate operators
5890 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
5891 - MINOR: backend: use a single call to ha_random32() for the random LB algo
5892 - BUG/MINOR: checks/threads: use ha_random() and not rand()
5893 - MINOR: sample: make all bits random on the rand() sample fetch
5894 - MINOR: tools: add a generic function to generate UUIDs
5895 - DOC: fix typo about no-tls-tickets
5896 - DOC: improve description of no-tls-tickets
5897 - DOC: assorted typo fixes in the documentation
5898 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
5899
Willy Tarreau32bf97f2020-02-25 18:14:02 +010059002020/02/25 : 2.2-dev3
5901 - SCRIPTS: announce-release: place the send command in the mail's header
5902 - SCRIPTS: announce-release: allow the user to force to overwrite old files
5903 - SCRIPTS: backport: fix the master branch detection
5904 - BUG/MINOR: http-act: Set stream error flag before returning an error
5905 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
5906 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
5907 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
5908 - DOC: schematic of the SSL certificates architecture
5909 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
5910 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
5911 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
5912 - BUILD: cirrus-ci: workaround "pkg install" bug
5913 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
5914 - BUG/MINOR: connection: correctly retry I/O on signals
5915 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
5916 - BUILD: http_act: cast file sizes when reporting file size error
5917 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
5918 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
5919 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
5920 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
5921 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
5922 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
5923 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
5924 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
5925 - SCRIPTS: make announce-release executable again
5926 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
5927 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
5928 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
5929 - CLEANUP: ssl: remove unused functions in openssl-compat.h
5930 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
5931 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
5932 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
5933 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
5934 - MEDIUM: arg: make make_arg_list() stop after its own arguments
5935 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
5936 - MEDIUM: arg: make make_arg_list() support quotes in arguments
5937 - MINOR: sample: make sample_parse_expr() able to return an end pointer
5938 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
5939 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
5940 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
5941 - BUILD: enable ERR=1 in github cygwin builds
5942 - BUG/MINOR: arg: fix again incorrect argument length check
5943 - MINOR: sample: regsub now supports backreferences
5944 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
5945 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
5946 - MINOR: filters: Forward data only if the last filter forwards something
5947 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
5948 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
5949 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
5950 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
5951 - MINOR: ssl: add "issuers-chain-path" directive.
5952 - REGTESTS: use "command -v" instead of "which"
5953 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
5954 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
5955 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
5956 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
5957 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
5958 - MINOR: checks: do not call conn_xprt_stop_send() anymore
5959 - CLEANUP: epoll: place the struct epoll_event in the stack
5960 - MEDIUM: connection: remove the intermediary polling state from the connection
5961 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
5962 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
5963 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
5964 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
5965 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
5966 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
5967 - MINOR: ist: add an iststop() function
5968 - BUG/MINOR: http: http-request replace-path duplicates the query string
5969 - CLEANUP: sample: use iststop instead of a for loop
5970 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
5971 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
5972 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
5973 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
5974 - BUILD: fix recent build failure on unaligned archs
5975 - MINOR: ssl: load the key from a dedicated file
5976 - BUG/MINOR: ssl: load .key in a directory only after PEM
5977 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
5978 - CLEANUP: conn: Do not pass a pointer to likely
5979 - CLEANUP: net_helper: Do not negate the result of unlikely
5980 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
5981 - CLEANUP: cfgparse: Fix type of second calloc() parameter
5982 - BUILD: ssl: only pass unsigned chars to isspace()
5983 - BUILD: general: always pass unsigned chars to is* functions
5984 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
5985 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
5986 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
5987 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
5988 - CLEANUP: stick-tables: use read_u32() to display a node's key
5989 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
5990 - MINOR: pattern: fix all remaining strict aliasing issues
5991 - CLEANUP: lua: fix aliasing issues in the address matching code
5992 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
5993 - BUILD: makefile: re-enable strict aliasing
5994 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
5995 - MINOR: compiler: add new alignment macros
5996 - BUILD: ebtree: improve architecture-specific alignment
5997 - MINOR: config: mark global.debug as deprecated
5998 - BUILD: travis-ci: enable s390x builds
5999 - MINOR: ssl/cli: 'show ssl cert' displays the chain
6000 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
6001 - MINOR: ssl/cli: reorder 'show ssl cert' output
6002 - CLEANUP: ssl: move issuer_chain tree and definition
6003 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
6004
Willy Tarreau4c47d912020-02-07 04:12:19 +010060052020/02/07 : 2.2-dev2
6006 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
6007 - MEDIUM: cli: Allow multiple filter entries for "show table"
6008 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
6009 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
6010 - BUILD: stick-table: fix build errors introduced by last stick-table change
6011 - BUG/MINOR: cli: Missing arg offset for filter data values.
6012 - MEDIUM: streams: Always create a conn_stream in connect_server().
6013 - MEDIUM: connections: Get ride of the xprt_done callback.
6014 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
6015 - BUILD: CI: move cygwin builds to Github Actions
6016 - MINOR: cli: Report location of errors or any extra data for "show table"
6017 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
6018 - CLEANUP: backend: remove useless test for inexistent connection
6019 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
6020 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
6021 - BUG/MINOR: ssl: increment issuer refcount if in chain
6022 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
6023 - BUG/MINOR: ssl: typo in previous patch
6024 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
6025 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
6026 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
6027 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
6028 - MINOR: stream-int: always report received shutdowns
6029 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
6030 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
6031 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
6032 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
6033 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
6034 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
6035 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
6036 - BUG/MINOR: stktable: report the current proxy name in error messages
6037 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
6038 - MINOR: lua: Add hlua_prepend_path function
6039 - MINOR: lua: Add lua-prepend-path configuration option
6040 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
6041 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
6042 - BUG/MINOR: http-ana: Increment the backend counters on the backend
6043 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
6044 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
6045 - REGTESTS: make the set_ssl_cert test require version 2.2
6046 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
6047 - MINOR: ssl: Remove dead code.
6048 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
6049 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
6050 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
6051 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
6052 - BUILD: CI: disable slow regtests on Travis
6053 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
6054 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
6055 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
6056 - BUG/MINOR: dns: allow 63 char in hostname
6057 - MINOR: proxy: clarify number of connections log when stopping
6058 - DOC: word converter ignores delimiters at the start or end of input string
6059 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
6060 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
6061 - MEDIUM: pipe/thread: reduce the locking overhead
6062 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
6063 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
6064 - MINOR: tasks: move the list walking code to its own function
6065 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
6066 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
6067 - OPTIM: task: refine task classes default CPU bandwidth ratios
6068 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
6069 - MINOR: task: permanently flag tasklets waking themselves up
6070 - MINOR: task: make sched->current also reflect tasklets
6071 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
6072 - OPTIM: task: readjust CPU bandwidth distribution since last update
6073 - MINOR: task: don't set TASK_RUNNING on tasklets
6074 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
6075 - MINOR: memory: Only init the pool spinlock once.
6076 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
6077 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
6078 - MINOR: ssl: ssl-load-extra-files configure loading of files
6079 - SCRIPTS: add a new "backport" script to simplify long series of backports
6080 - BUG/MINOR: ssl: we may only ignore the first 64 errors
6081 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
6082 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
6083 - CLEANUP: hpack: remove a redundant test in the decoder
6084 - CLEANUP: peers: Remove unused static function `free_dcache`
6085 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
6086 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
6087 - CONTRIB: debug: add the possibility to decode the value as certain types only
6088 - CONTRIB: debug: support reporting multiple values at once
6089 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
6090 - MINOR: global: Set default tune.maxrewrite value during global structure init
6091 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
6092 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
6093 - MINOR: htx: Add a function to append an HTX message to another one
6094 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
6095 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
6096 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
6097 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
6098 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
6099 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
6100 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
6101 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
6102 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
6103 - MINOR: http-ana: Add a function for forward internal responses
6104 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
6105 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
6106 - MEDIUM: http-rules: Add the return action to HTTP rules
6107 - MEDIUM: http-rules: Support extra headers for HTTP return actions
6108 - CLEANUP: lua: Remove consistency check for sample fetches and actions
6109 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
6110 - MINOR: lua: Get the action return code on the stack when an action finishes
6111 - MINOR: lua: Create the global 'act' object to register all action return codes
6112 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
6113 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
6114 - REGTESTS: Add reg tests for the HTTP return action
6115 - REGTESTS: Add a reg test for http-after-response rulesets
6116 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
6117 - MINOR: acl: Warn when an ACL is named 'or'
6118 - CONTRIB: debug: also support reading values from stdin
6119 - SCRIPTS: backport: use short revs and resolve the initial commit
6120 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
6121
Willy Tarreau71f95fa2020-01-22 10:34:58 +010061222020/01/22 : 2.2-dev1
6123 - DOC: this is development again
6124 - MINOR: version: this is development again, update the status
6125 - SCRIPTS: update create-release to fix the changelog on new branches
6126 - CLEANUP: ssl: Clean up error handling
6127 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
6128 - BUG/MINOR: h1: Don't test the host header during response parsing
6129 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
6130 - DOC: Clarify behavior of server maxconn in HTTP mode
6131 - MINOR: ssl: deduplicate ca-file
6132 - MINOR: ssl: compute ca-list from deduplicate ca-file
6133 - MINOR: ssl: deduplicate crl-file
6134 - CLEANUP: dns: resolution can never be null
6135 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
6136 - DOC: ssl/cli: set/commit/abort ssl cert
6137 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
6138 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
6139 - BUG/MINOR: stats: Fix HTML output for the frontends heading
6140 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
6141 - DOC: clarify matching strings on binary fetches
6142 - DOC: Fix ordered list in summary
6143 - DOC: move the "group" keyword at the right place
6144 - MEDIUM: init: prevent process and thread creation at runtime
6145 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
6146 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
6147 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
6148 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
6149 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
6150 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
6151 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
6152 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
6153 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
6154 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
6155 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
6156 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
6157 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
6158 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
6159 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
6160 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
6161 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
6162 - BUG/MINOR: listener: also clear the error flag on a paused listener
6163 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
6164 - MINOR: listener: make the wait paths cleaner and more reliable
6165 - MINOR: listener: split dequeue_all_listener() in two
6166 - REORG: listener: move the global listener queue code to listener.c
6167 - DOC: document the listener state transitions
6168 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
6169 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
6170 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
6171 - DOC: listeners: add a few missing transitions
6172 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
6173 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
6174 - DOC: proxies: HAProxy only supports 3 connection modes
6175 - DOC: remove references to the outdated architecture.txt
6176 - BUG/MINOR: log: fix minor resource leaks on logformat error path
6177 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
6178 - BUG/MINOR: listener: do not immediately resume on transient error
6179 - BUG/MINOR: server: make "agent-addr" work on default-server line
6180 - BUG/MINOR: listener: fix off-by-one in state name check
6181 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
6182 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
6183 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
6184 - REGTEST: Add an HTX reg-test to check an edge case
6185 - DOC: clarify the fact that replace-uri works on a full URI
6186 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
6187 - BUG/MINOR: sample: always check converters' arguments
6188 - MINOR: sample: Validate the number of bits for the sha2 converter
6189 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
6190 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
6191 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
6192 - MINOR: debug: support logging to various sinks
6193 - MINOR: http: add a new "replace-path" action
6194 - REGTEST: ssl: test the "set ssl cert" CLI command
6195 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
6196 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
6197 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
6198 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
6199 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
6200 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
6201 - REGTEST: make the "set ssl cert" require version 2.1
6202 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
6203 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
6204 - BUG/MINOR: state-file: do not store duplicates in the global tree
6205 - BUG/MINOR: state-file: do not leak memory on parse errors
6206 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
6207 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
6208 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
6209 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
6210 - BUILD: travis-ci: reenable address sanitizer for clang builds
6211 - BUG/MINOR: checks: refine which errno values are really errors.
6212 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
6213 - CLEANUP: connection: conn->xprt is never NULL
6214 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
6215 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
6216 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
6217 - MINOR: connection: check for connection validation earlier
6218 - MINOR: connection: remove the double test on xprt_done_cb()
6219 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
6220 - MINOR: poller: do not call the IO handler if the FD is not active
6221 - OPTIM: epoll: always poll for recv if neither active nor ready
6222 - OPTIM: polling: do not create update entries for FD removal
6223 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
6224 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
6225 - BUILD: CI: modernize cirrus-ci
6226 - MINOR: config: disable busy polling on old processes
6227 - MINOR: ssl: Remove unused variable "need_out".
6228 - BUG/MINOR: h1: Report the right error position when a header value is invalid
6229 - BUG/MINOR: proxy: Fix input data copy when an error is captured
6230 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
6231 - BUG/MINOR: channel: inject output data at the end of output
6232 - BUG/MEDIUM: session: do not report a failure when rejecting a session
6233 - MEDIUM: dns: implement synchronous send
6234 - MINOR: raw_sock: make sure to disable polling once everything is sent
6235 - MINOR: http: Add 410 to http-request deny
6236 - MINOR: http: Add 404 to http-request deny
6237 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
6238 - BUILD: cirrus-ci: choose proper openssl package name
6239 - BUG/MAJOR: listener: do not schedule a task-less proxy
6240 - CLEANUP: server: remove unused err section in server_finalize_init
6241 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
6242 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
6243 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
6244 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
6245 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
6246 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
6247 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
6248 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
6249 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
6250 - REGTEST: mcli/mcli_start_progs: start 2 programs
6251 - BUG/MEDIUM: mworker: remain in mworker mode during reload
6252 - DOC: clarify crt-base usage
6253 - CLEANUP: compression: remove unused deinit_comp_ctx section
6254 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
6255 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
6256 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
6257 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
6258 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
6259 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
6260 - CLEANUP: cli: deduplicate the code in _getsocks
6261 - BUG/MINOR: stream: don't mistake match rules for store-request rules
6262 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
6263 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
6264 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
6265 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
6266 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
6267 - BUILD: pattern: include errno.h
6268 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
6269 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
6270 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
6271 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
6272 - REORG: stream/backend: move backend-specific stuff to backend.c
6273 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
6274 - MEDIUM: connection: merge the send_wait and recv_wait entries
6275 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
6276 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
6277 - MEDIUM: mux-h1: merge recv_wait and send_wait
6278 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
6279 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
6280 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
6281 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
6282 - DOC: Fix copy and paste mistake in http-response replace-value doc
6283 - BUG/MINOR: cache: Fix leak of cache name in error path
6284 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
6285 - BUG/MINOR: 51d: Fix bug when HTX is enabled
6286 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
6287 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
6288 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
6289 - DOC: Add a section to document the internal sample fetches
6290 - MINOR: mux-h1: Inherit send flags from the upper layer
6291 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
6292 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
6293 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
6294 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
6295 - MEDIUM: http-rules: Register an action keyword for all http rules
6296 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
6297 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
6298 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
6299 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
6300 - MINOR: counters: Add a counter to report internal processing errors
6301 - MEDIUM: http-ana: Properly handle internal processing errors
6302 - MINOR: http-rules: Add a rule result to report internal error
6303 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
6304 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
6305 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
6306 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
6307 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
6308 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
6309 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
6310 - MINOR: counters: Review conditions to increment counters from analysers
6311 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
6312 - MINOR: http-rules: Handle all message rewrites the same way
6313 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
6314 - MEDIUM: http-rules: Enable the strict rewriting mode by default
6315 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
6316 - MINOR: actions: Add a function pointer to release args used by actions
6317 - MINOR: actions: Regroup some info about HTTP rules in the same struct
6318 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
6319 - MINOR: actions: Rename the act_flag enum into act_opt
6320 - MINOR: actions: Add flags to configure the action behaviour
6321 - MINOR: actions: Use an integer to set the action type
6322 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
6323 - MINOR: http-rules: Make replace-header and replace-value custom actions
6324 - MINOR: http-rules: Make set-header and add-header custom actions
6325 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
6326 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
6327 - MEDIUM: http-rules: Make early-hint custom actions
6328 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
6329 - MINOR: tcp-rules: Make tcp-request capture a custom action
6330 - MINOR: http-rules: Add release functions for existing HTTP actions
6331 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
6332 - MINOR: tcp-rules: Add release functions for existing TCP actions
6333 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
6334 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
6335 - MINOR: http-htx: Add functions to create HTX redirect message
6336 - MINOR: config: Use dedicated function to parse proxy's errorfiles
6337 - MINOR: config: Use dedicated function to parse proxy's errorloc
6338 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
6339 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
6340 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
6341 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
6342 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
6343 - MINOR: http-rules: Support an optional status on deny rules for http reponses
6344 - MINOR: http-rules: Use same function to parse request and response deny actions
6345 - MINOR: http-ana: Add an error message in the txn and send it when defined
6346 - MEDIUM: http-rules: Support an optional error message in http deny rules
6347 - REGTEST: Add a strict rewriting mode reg test
6348 - REGEST: Add reg tests about error files
6349 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
6350 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
6351 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
6352 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
6353 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
6354 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
6355 - BUILD: CI: introduce ARM64 builds
6356 - BUILD: ssl: more elegant anti-replay feature presence check
6357 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
6358 - MEDIUM: dns: use Additional records from SRV responses
6359 - CLEANUP: Consistently `unsigned int` for bitfields
6360 - CLEANUP: pattern: remove the pat_time definition
6361 - BUG/MINOR: http_act: don't check capture id in backend
6362 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
6363
Willy Tarreau2e077f82019-11-25 20:36:16 +010063642019/11/25 : 2.2-dev0
6365 - exact copy of 2.1.0
6366
Willy Tarreaue54b43a2019-11-25 19:47:40 +010063672019/11/25 : 2.1.0
6368 - BUG/MINOR: init: fix set-dumpable when using uid/gid
6369 - MINOR: init: avoid code duplication while setting identify
6370 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
6371 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
6372 - MINOR: peers: Alway show the table info for disconnected peers.
6373 - MINOR: peers: Add TX/RX heartbeat counters.
6374 - MINOR: peers: Add debugging information to "show peers".
6375 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
6376 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
6377 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
6378 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
6379 - BUILD/MINOR: ssl: fix compiler warning about useless statement
6380 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
6381 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
6382 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
6383 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
6384 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
6385 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
6386 - DOC: Update http-buffer-request description to remove the part about chunks
6387 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
6388 - DOC: internal: document the init calls
6389 - MEDIUM: dns: Add resolve-opts "ignore-weight"
6390 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
6391 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
6392 - MINOR: ssl/cli: display warning during 'commit ssl cert'
6393 - MINOR: version: report the version status in "haproxy -v"
6394 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
6395 - DOC: Add documentation about the use-service action
6396 - MINOR: ssl: fix possible null dereference in error handling
6397 - BUG/MINOR: ssl: fix curve setup with LibreSSL
6398 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
6399 - CLEANUP: ssl: check if a transaction exists once before setting it
6400 - BUG/MINOR: cli: fix out of bounds in -S parser
6401 - MINOR: ist: add ist_find_ctl()
6402 - BUG/MAJOR: h2: reject header values containing invalid chars
6403 - BUG/MAJOR: h2: make header field name filtering stronger
6404 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
6405 - MINOR: h2: add a function to report H2 error codes as strings
6406 - MINOR: mux-h2/trace: report the connection and/or stream error code
6407 - SCRIPTS: create-release: show the correct origin name in suggested commands
6408 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
6409 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
6410 - BUILD: reorder the objects in the makefile
6411 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
6412 - MINOR: version: indicate that this version is stable
6413
Willy Tarreau84681322019-11-15 18:49:37 +010064142019/11/15 : 2.1-dev5
6415 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
6416 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
6417 - BUG/MINOR: ssl/cli: fix an error when a file is not found
6418 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
6419 - DOC: fix date and http_date keywords syntax
6420 - MINOR: peers: Add "log" directive to "peers" section.
6421 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
6422 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
6423 - MINOR: flt_trace: Rename macros to print trace messages
6424 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
6425 - MEDIUM: stream/trace: Register a new trace source with its events
6426 - MINOR: doc: http-reuse connection pool fix
6427 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
6428 - MINOR: http-ana: Remove the unused function http_reset_txn()
6429 - BUG/MINOR: action: do-resolve now use cached response
6430 - BUG: dns: timeout resolve not applied for valid resolutions
6431 - DOC: management: fix typo on "cache_lookups" stats output
6432 - BUG/MINOR: stream: init variables when the list is empty
6433 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
6434 - BUG/MINOR: queue/threads: make the queue unlinking atomic
6435 - BUG/MEDIUM: Make sure we leave the session list in session_free().
6436 - CLEANUP: session: slightly simplify idle connection cleanup logic
6437 - MINOR: memory: also poison the area on freeing
6438 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
6439 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
6440 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
6441 - BUILD: contrib/da: remove an "unused" warning
6442 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
6443 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
6444 - MINOR: freq_ctr: Make the sliding window sums thread-safe
6445 - MINOR: stream: Remove the lock on the proxy to update time stats
6446 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
6447 - MINOR: stats: Report max times in addition of the averages for sessions
6448 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
6449 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
6450 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
6451 - DOC: Add missing stats fields in the management manual
6452 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
6453 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
6454 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
6455 - MINOR: sink: Set the default max length for a message to BUFSIZE
6456 - MINOR: ring: make the parse function automatically set the handler/release
6457 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
6458 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
6459
Willy Tarreau1753cb52019-11-03 15:43:10 +010064602019/11/03 : 2.1-dev4
6461 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
6462 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
6463 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
6464 - DOC: remove obsolete section about header manipulation
6465 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
6466 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
6467 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
6468 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
6469 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
6470 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
6471 - BUILD/MINOR: ssl: shut up a build warning about format truncation
6472 - BUILD: do not disable -Wformat-truncation anymore
6473 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
6474 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
6475 - MINOR: mux: Add a new method to get informations about a mux.
6476 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
6477 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
6478 - MINOR: doc: fix busy-polling performance reference
6479 - MINOR: config: allow no set-dumpable config option
6480 - MINOR: init: always fail when setrlimit fails
6481 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
6482 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
6483 - REGTEST: vtest can now enable mcli with its own flag
6484 - BUG/MINOR: config: Update cookie domain warn to RFC6265
6485 - MINOR: sample: add us/ms support to date/http_date
6486 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
6487 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
6488 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
6489 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
6490 - BUG/MINOR: stats: properly check the path and not the whole URI
6491 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
6492 - BUG/MINOR: ssl: ckch->chain must be initialized
6493 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
6494 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
6495 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
6496 - MINOR: backend: Add srv_name sample fetche
6497 - DOC: Add GitHub issue config.yml
6498
Willy Tarreauc70df532019-10-25 15:48:53 +020064992019/10/25 : 2.1-dev3
6500 - MINOR: mux-h2/trace: missing conn pointer in demux full message
6501 - MINOR: mux-h2: add a per-connection list of blocked streams
6502 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
6503 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
6504 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
6505 - BUG/MINOR: peers: crash on reload without local peer.
6506 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
6507 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
6508 - MINOR: htx: Adapt htx_dump() to be used from traces
6509 - MINOR: mux-h1/trace: register a new trace source with its events
6510 - MINOR: proxy: Store http-send-name-header in lower case
6511 - MINOR: http: Remove headers matching the name of http-send-name-header option
6512 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
6513 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
6514 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
6515 - MINOR: fcgi: Add function to get the string representation of a record type
6516 - MINOR: mux-fcgi/trace: Register a new trace source with its events
6517 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
6518 - DOC: clarify some points around http-send-name-header's behavior
6519 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
6520 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
6521 - DOC: fix typo in Prometheus exporter doc
6522 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
6523 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
6524 - MINOR: http: Add a function to get the authority into a URI
6525 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
6526 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
6527 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
6528 - MEDIUM: h2: make the request parser rebuild a complete URI
6529 - MINOR: h2: report in the HTX flags when the request has an authority
6530 - MEDIUM: mux-h2: do not map Host to :authority on output
6531 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
6532 - MINOR: stats: mention in the help message support for "json" and "typed"
6533 - MINOR: stats: get rid of the ST_CONVDONE flag
6534 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
6535 - MINOR: stats: always merge the uri_auth flags into the appctx flags
6536 - MINOR: stats: set the appctx flags when initializing the applet only
6537 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
6538 - MINOR: stats: make stats_dump_fields_json() directly take flags
6539 - MINOR: stats: uniformize the calling convention of the dump functions
6540 - MINOR: stats: support the "desc" output format modifier for info and stat
6541 - MINOR: stats: prepare to add a description with each stat/info field
6542 - MINOR: stats: make "show stat" and "show info"
6543 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
6544 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
6545 - BUILD: stats: fix missing '=' sign in array declaration
6546 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
6547 - MINOR: list: add new macro MT_LIST_BEHEAD
6548 - MEDIUM: task: Split the tasklet list into two lists.
6549 - MINOR: h2: Document traps to be avoided on multithread.
6550 - MINOR: lists: Try to use local variables instead of macro arguments.
6551 - MINOR: lists: Fix alignement of \ when relevant.
6552 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
6553 - MINOR: ssl: crt-list do ckchn_lookup
6554 - REORG: ssl: rename ckch_node to ckch_store
6555 - REORG: ssl: move structures to ssl_sock.h
6556 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
6557 - MINOR: ssl: initialize explicitly the sni_ctx trees
6558 - BUG/MINOR: ssl: abort on sni allocation failure
6559 - BUG/MINOR: ssl: free the sni_keytype nodes
6560 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
6561 - MEDIUM: ssl: introduce the ckch instance structure
6562 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
6563 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
6564 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
6565 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
6566 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
6567 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
6568 - MINOR: ssl: load the sctl in/from the ckch
6569 - MINOR: ssl: load the ocsp in/from the ckch
6570 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
6571 - BUG/MINOR: ssl: fix build without SSL
6572 - BUG/MINOR: ssl: fix build without multi-cert bundles
6573 - BUILD: ssl: wrong #ifdef for SSL engines code
6574 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
6575 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
6576 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
6577 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
6578 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
6579 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
6580 - BUG/MINOR: mux-h1: Capture ignored parsing errors
6581 - MINOR: h1: Reject requests with different occurrences of the header host
6582 - MINOR: h1: Reject requests if the authority does not match the header host
6583 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
6584 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
6585 - BUG/MINOR: WURFL: fix send_log() function arguments
6586 - BUG/MINOR: ssl: fix error messages for OCSP loading
6587 - BUG/MINOR: ssl: can't load ocsp files
6588 - MINOR: version: make the version strings variables, not constants
6589 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
6590 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
6591 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
6592 - BUILD: travis-ci: limit build to branches "master" and "next"
6593 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
6594 - BUILD/SMALL: threads: enable threads on osx
6595 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
6596 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
6597 - BUG/MINOR: cache: also cache absolute URIs
6598 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
6599 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
6600 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
6601 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
6602 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
6603 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
6604 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
6605 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
6606 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
6607 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
6608 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
6609 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
6610 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
6611 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
6612 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
6613 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
6614 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
6615 - CLEANUP: bind: handle warning label on bind keywords parsing.
6616 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
6617 - BUG/MINOR: mworker/cli: reload fail with inherited FD
6618 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
6619 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
6620 - BUG/MINOR: cache: alloc shctx after check config
6621 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
6622 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
6623 - REGTESTS: make seamless-reload depend on 1.9 and above
6624 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
6625 - BUG/MINOR: dns: allow srv record weight set to 0
6626 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
6627 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
6628 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
6629 - BUG/MINOR: mux-h2: do not emit logs on backend connections
6630 - CLEANUP: ssl: remove old TODO commentary
6631 - CLEANUP: ssl: fix SNI/CKCH lock labels
6632 - MINOR: ssl: OCSP functions can load from file or buffer
6633 - MINOR: ssl: load sctl from buf OR from a file
6634 - MINOR: ssl: load issuer from file or from buffer
6635 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
6636 - BUG/MINOR: ssl/cli: fix looking up for a bundle
6637 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
6638 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
6639 - MINOR: ssl: copy a ckch from src to dst
6640 - MINOR: ssl: new functions duplicate and free a ckch_store
6641 - MINOR: ssl/cli: assignate a new ckch_store
6642 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
6643 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
6644 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
6645 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
6646 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
6647 - MINOR: tcp: avoid confusion in time parsing init
6648 - MINOR: debug: add a new "debug dev stream" command
6649 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
6650 - REORG: move CLI access level definitions to cli.h
6651 - MINOR: cli: add an expert mode to hide dangerous commands
6652 - MINOR: debug: make most debug CLI commands accessible in expert mode
6653 - MINOR: stats/debug: maintain a counter of debug commands issued
6654 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
6655
Willy Tarreaucb8f03f2019-10-01 18:13:09 +020066562019/10/01 : 2.1-dev2
6657 - DOC: management: document reuse and connect counters in the CSV format
6658 - DOC: management: document cache_hits and cache_lookups in the CSV format
6659 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
6660 - MINOR: applet: make appctx use their own pool
6661 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
6662 - BUG/MEDIUM: http/htx: unbreak option http_proxy
6663 - BUG/MINOR: backend: do not try to install a mux when the connection failed
6664 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
6665 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
6666 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
6667 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
6668 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
6669 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
6670 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
6671 - MINOR: proto_htx: Add the function htx_return_srv_error()
6672 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
6673 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
6674 - DOC: htx: Update comments in HTX files
6675 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
6676 - MINOR: htx: Deduce the number of used blocks from tail and head values
6677 - MINOR: htx: Use an array of char to store HTX blocks
6678 - MINOR: htx: Slightly update htx_dump() to report better messages
6679 - DOC: htx: Add internal documentation about the HTX
6680 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
6681 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
6682 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
6683 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
6684 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
6685 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
6686 - MINOR: config: Remove tests on the option 'http-use-htx'
6687 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
6688 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
6689 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
6690 - MINOR: cache: Remove tests on the option 'http-use-htx'
6691 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
6692 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
6693 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
6694 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
6695 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
6696 - MINOR: http_act: Remove code relying on the legacy HTTP mode
6697 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
6698 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
6699 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
6700 - MINOR: stats: Remove code relying on the legacy HTTP mode
6701 - MAJOR: filters: Remove code relying on the legacy HTTP mode
6702 - MINOR: stream: Remove code relying on the legacy HTTP mode
6703 - MAJOR: http: Remove the HTTP legacy code
6704 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
6705 - MINOR: proto_http: Remove unused http txn flags
6706 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
6707 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
6708 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
6709 - CLEANUP: proto_http: Remove unecessary includes and comments
6710 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
6711 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
6712 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
6713 - MINOR: proxy: Remove support of the option 'http-tunnel'
6714 - DOC: config: Update as a result of the legacy HTTP removal
6715 - MEDIUM: config: Remove parsing of req* and rsp* directives
6716 - MINOR: proxy: Remove the unused list of block rules
6717 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
6718 - DOC: config: Remove unsupported req* and rsp* keywords
6719 - MINOR: global: Preset tune.max_http_hdr to its default value
6720 - MINOR: http: Don't store raw HTTP errors in chunks anymore
6721 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
6722 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
6723 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
6724 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
6725 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
6726 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
6727 - MINOR: connection: add conn_get_src() and conn_get_dst()
6728 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
6729 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
6730 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
6731 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
6732 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
6733 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
6734 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
6735 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
6736 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
6737 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
6738 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
6739 - MINOR: connection: add new src and dst fields
6740 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
6741 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
6742 - MINOR: lua: switch to conn->dst for a connection's target address
6743 - MINOR: peers: use conn->dst for the peer's target address
6744 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
6745 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
6746 - MINOR: proxy: switch to conn->src in error snapshots
6747 - MINOR: session: use conn->src instead of conn->addr.from
6748 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
6749 - MINOR: unix: use conn->dst for the target address in ->connect()
6750 - MINOR: sockpair: use conn->dst for the target address in ->connect()
6751 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
6752 - MINOR: checks: replace conn->addr.to with conn->dst
6753 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
6754 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
6755 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
6756 - MINOR: connection: create a new pool for struct sockaddr_storage
6757 - MEDIUM: connection: make sure all address producers allocate their address
6758 - MAJOR: connection: remove the addr field
6759 - MINOR: connection: don't use clear_addr() anymore, just release the address
6760 - MINOR: stream: add a new target_addr entry in the stream structure
6761 - MAJOR: stream: store the target address into s->target_addr
6762 - MINOR: peers: now remove the remote connection setup code
6763 - MEDIUM: lua: do not allocate the remote connection anymore
6764 - MEDIUM: backend: always release any existing prior connection in connect_server()
6765 - MEDIUM: backend: remove impossible cases from connect_server()
6766 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
6767 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
6768 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
6769 - BUG/MINOR: http_htx: Support empty errorfiles
6770 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
6771 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
6772 - BUG/MINOR: proxy: always lock stop_proxy()
6773 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
6774 - BUILD: threads: add the definition of PROTO_LOCK
6775 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
6776 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
6777 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
6778 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
6779 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
6780 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
6781 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
6782 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
6783 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
6784 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
6785 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
6786 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
6787 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
6788 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
6789 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
6790 - MEDIUM: ssl: split the loading of the certificates
6791 - MEDIUM: ssl: lookup and store in a ckch_node tree
6792 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
6793 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
6794 - MINOR: ssl: use STACK_OF for chain certs
6795 - MINOR: ssl: add extra chain compatibility
6796 - MINOR: ssl: check private key consistency in loading
6797 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
6798 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
6799 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
6800 - MAJOR: fd: Get rid of the fd cache.
6801 - MEDIUM: pollers: Remember the state for read and write for each threads.
6802 - MEDIUM: mux-h2: don't try to read more than needed
6803 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
6804 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
6805 - BUG/MINOR: debug: fix a small race in the thread dumping code
6806 - MINOR: wdt: also consider that waiting in the thread dumper is normal
6807 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
6808 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
6809 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
6810 - BUG/MINOR: ssl: fix ressource leaks on error
6811 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
6812 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
6813 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
6814 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
6815 - BUG/MINOR: stream-int: also update analysers timeouts on activity
6816 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
6817 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
6818 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
6819 - DOC: Add 'Question.md' issue template, discouraging asking questions
6820 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
6821 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
6822 - BUILD: travis-ci: enable daily Coverity scan
6823 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
6824 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
6825 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
6826 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
6827 - BUG/MINOR: mux-h2: always send stream window update before connection's
6828 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
6829 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
6830 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
6831 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
6832 - MINOR: cache: add method to cache hash
6833 - MINOR: cache: allow caching of OPTIONS request
6834 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
6835 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
6836 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
6837 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
6838 - CLEANUP: buffer: replace b_drop() with b_free()
6839 - CLEANUP: task: move the cpu_time field to the task-only part
6840 - MINOR: cli: add two new states to print messages on the CLI
6841 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
6842 - CLEANUP: cli: replace all occurrences of manual handling of return messages
6843 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
6844 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
6845 - BUG/MINOR: lua: fix setting netfilter mark
6846 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
6847 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
6848 - BUG/MINOR: stats: Wait the body before processing POST requests
6849 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
6850 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
6851 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
6852 - MINOR: debug: indicate the applet name when the task is task_run_applet()
6853 - MINOR: tools: add append_prefixed_str()
6854 - MINOR: lua: export applet and task handlers
6855 - MEDIUM: debug: make the thread dump code show Lua backtraces
6856 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
6857 - MINOR: list: add LIST_SPLICE() to merge one list into another
6858 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
6859 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
6860 - MINOR: sink: create definitions a minimal code for event sinks
6861 - MINOR: sink: add a support for file descriptors
6862 - MINOR: trace: start to create a new trace subsystem
6863 - MINOR: trace: add allocation of buffer-sized trace buffers
6864 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
6865 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
6866 - MINOR: trace/cli: add "show trace" to report trace state and statistics
6867 - MINOR: trace: implement a very basic trace() function
6868 - MINOR: trace: add the file name and line number in the prefix
6869 - MINOR: trace: make trace() now also take a level in argument
6870 - MINOR: trace: implement a call to a decode function
6871 - MINOR: trace: add per-level macros to produce traces
6872 - MINOR: trace: add a definition of typed arguments to trace()
6873 - MINOR: trace: make sure to always stop the locking when stopping or pausing
6874 - MINOR: trace: add the possibility to lock on some arguments
6875 - MINOR: trace: parse the "lock" argument to trace
6876 - MINOR: trace: retrieve useful pointers and enforce lock-on
6877 - DOC: management: document the "trace" and "show trace" commands
6878 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
6879 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
6880 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
6881 - DOC: fixed typo in management.txt
6882 - BUG/MINOR: mworker: disable SIGPROF on re-exec
6883 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
6884 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
6885 - MINOR: backend: Add srv_queue converter
6886 - MINOR: sink: set the fd-type sinks to non-blocking
6887 - MINOR: tools: add a function varint_bytes() to report the size of a varint
6888 - MINOR: buffer: add functions to read/write varints from/to buffers
6889 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
6890 - MINOR: sink: now call the generic fd write function
6891 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
6892 - MINOR: ring: add a ring_write() function
6893 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
6894 - MINOR: sink: add support for ring buffers
6895 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
6896 - MINOR: sink: now report the number of dropped events on output
6897 - MINOR: trace: support a default callback for the source
6898 - MINOR: trace: extend the source location to 13 chars
6899 - MINOR: trace: show thread number and source name in the trace
6900 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
6901 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
6902 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
6903 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
6904 - MINOR: trace: change the "payload" level to "data" and move it
6905 - MINOR: trace: prepend the function name for developer level traces
6906 - MINOR: trace: also report the trace level in the output
6907 - MINOR: trace: change the detail_level to per-source verbosity
6908 - MINOR: mux-h2/trace: register a new trace source with its events
6909 - MINOR: mux-h2/trace: add the default decoding callback
6910 - MEDIUM: mux-h2/trace: add lots of traces all over the code
6911 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
6912 - MINOR: mux-h2/trace: add a new verbosity level "clean"
6913 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
6914 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
6915 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
6916 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
6917 - CLEANUP: mux-h2/trace: lower-case event names
6918 - MINOR: trace: extend default event names to 12 chars
6919 - BUG/MINOR: ring: fix the way watchers are counted
6920 - MINOR: cli: extend the CLI context with a list and two offsets
6921 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
6922 - MEDIUM: ring: implement a wait mode for watchers
6923 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
6924 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
6925 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
6926 - CLEANUP: fd: remove leftovers of the fdcache
6927 - MINOR: fd: add a new "initialized" bit in the fdtab struct
6928 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
6929 - MEDIUM: log: use the new generic fd_write_frag_line() function
6930 - MINOR: log: add a target type instead of hacking the address family
6931 - MEDIUM: log: add support for logging to a ring buffer
6932 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
6933 - MINOR: build: add linux-glibc-legacy build TARGET
6934 - BUG/MEDIUM: peers: local peer socket not bound.
6935 - BUILD: connection: silence gcc warning with extra parentheses
6936 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
6937 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
6938 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
6939 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
6940 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
6941 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
6942 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
6943 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
6944 - MEDIUM: fd: remove the FD_EV_POLLED status bit
6945 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
6946 - MINOR: fd: make updt_fd_polling() a normal function
6947 - CONTRIB: debug: add new program "poll" to test poll() events
6948 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
6949 - BUG/MINOR: checks: start sending the request right after connect()
6950 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
6951 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
6952 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
6953 - BUILD: CI: add basic CentOS 6 cirrus build
6954 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
6955 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
6956 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
6957 - MEDIUM: fd: mark the FD as ready when it's inserted
6958 - MINOR: fd: add two new calls fd_cond_{recv,send}()
6959 - MEDIUM: connection: enable reading only once the connection is confirmed
6960 - MINOR: fd: add two flags ERR and SHUT to describe FD states
6961 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
6962 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
6963 - MINOR: stats: report the number of idle connections for each server
6964 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
6965 - BUILD/MINOR: auth: enabling for osx
6966 - BUG/MINOR: listener: Fix a possible null pointer dereference
6967 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
6968 - MINOR: stats: Add JSON export from the stats page
6969 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
6970 - MINOR: sample: Add UUID-fetch
6971 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
6972 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
6973 - BUG/MINOR: backend: Fix a possible null pointer dereference
6974 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
6975 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
6976 - BUILD: CI: temporarily disable ASAN
6977 - MINOR: htx: Add a flag on HTX message to report processing errors
6978 - MINOR: mux-h1: Report a processing error during output processing
6979 - MINOR: http-ana: Handle HTX errors first during message analysis
6980 - MINOR: http-ana: Remove err_state field from http_msg
6981 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
6982 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
6983 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
6984 - MINOR: istbuf: Add the function b_isteqi()
6985 - MINOR: log: Provide a function to emit a log for an application
6986 - MINOR: http: Add function to parse value of the header Status
6987 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
6988 - MINOR: h1-htx: Use the same function to copy message payload in all cases
6989 - MINOR: muxes/htx: Ignore pseudo header during message formatting
6990 - MINOR: fcgi: Add code related to FCGI protocol
6991 - MEDIUM: fcgi-app: Add FCGI application and filter
6992 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
6993 - MINOR: doc: Add documentation about the FastCGI support
6994 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
6995 - BUILD: CI: install golang-1.13 when building BoringSSL
6996 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
6997 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
6998 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
6999 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
7000 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
7001 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
7002 - MEDIUM: list: Separate "locked" list from regular list.
7003 - MINOR: mt_lists: Add new macroes.
7004 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
7005 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
7006 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
7007 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
7008 - TESTS: Add a stress-test for mt_lists.
7009 - BUILD: travis-ci: add PCRE2, SLZ build
7010 - BUG/MINOR: build: fix event ports (Solaris)
7011 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
7012 - OPTIM: listeners: use tasklets for the multi-queue rings
7013 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
7014 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
7015 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
7016 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
7017 - CLEANUP: task: remove impossible test
7018 - CLEANUP: task: cache the task_per_thread pointer
7019 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
7020 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
7021 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
7022 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
7023 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
7024 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
7025 - MINOR: h2/trace: report the frame type when known
7026 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
7027 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
7028 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
7029 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
7030 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
7031 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
7032 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
7033 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
7034 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
7035 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
7036 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
7037 - BUG/MEDIUM: spoe: Use a different engine-id per process
7038 - MINOR: spoe: Improve generation of the engine-id
7039 - MINOR: spoe: Support the async mode with several threads
7040 - MINOR: http: Add server name header from HTTP multiplexers
7041 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
7042 - MINOR: stats: Add the support of float fields in stats
7043 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
7044 - DOC: Fix documentation about the cli command to get resolver stats
7045 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
7046 - BUG/MINOR: stats: Add a missing break in a switch statement
7047 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
7048 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
7049 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
7050 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
7051 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
7052 - DOC: replace utf-8 quotes by ascii ones
7053 - BUG/MEDIUM: fd: HUP is an error only when write is active
7054 - BUG/MINOR: action: do-resolve does not yield on requests with body
7055 - Revert "MINOR: cache: allow caching of OPTIONS request"
7056
Willy Tarreaudb514072019-07-16 19:15:28 +020070572019/07/16 : 2.1-dev1
7058 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
7059 - DOC: this is a development branch again.
7060 - MEDIUM: Make 'block' directive fatal
7061 - MEDIUM: Make 'redispatch' directive fatal
7062 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
7063 - MEDIUM: Remove 'option independant-streams'
7064 - MINOR: sample: Add sha2([<bits>]) converter
7065 - MEDIUM: server: server-state global file stored in a tree
7066 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
7067 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
7068 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
7069 - MINOR: htx: Add the function htx_change_blk_value_len()
7070 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
7071 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
7072 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
7073 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
7074 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
7075 - BUILD: mworker: silence two printf format warnings around getpid()
7076 - BUILD: makefile: use :space: instead of digits to count commits
7077 - BUILD: makefile: adjust the sed expression of "make help" for solaris
7078 - BUILD: makefile: do not rely on shell substitutions to determine git version
7079 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
7080 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
7081 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
7082 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
7083 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
7084 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
7085 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
7086 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
7087 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
7088 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
7089 - BUG/MINOR: log: Detect missing sampling ranges in config
7090 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
7091 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
7092 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
7093 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
7094 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
7095 - BUG/MINOR: mworker/cli: don't output a \n before the response
7096 - BUG/MEDIUM: checks: unblock signals in external checks
7097 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
7098 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
7099 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
7100 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
7101 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
7102 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
7103 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
7104 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
7105 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
7106 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
7107 - BUG/MEDIUM: servers: Authorize tfo in default-server.
7108 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
7109 - MINOR: server: Add "no-tfo" option.
7110 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
7111 - MINOR: action: Add the return code ACT_RET_DONE for actions
7112 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
7113 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
7114 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
7115 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
7116 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
7117 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
7118 - DOC: contrib: spoa_server Add some hints for building spoa_server
7119 - DOC: Fix typo in intro.txt
7120 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
7121 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
7122 - MINOR: pools: release the pool's lock during the malloc/free calls
7123 - MINOR: pools: always pre-initialize allocated memory outside of the lock
7124 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
7125 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
7126 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
7127 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
7128 - BUG/MEDIUM: da: cast the chunk to string.
7129 - DOC: Fix typos and grammer in configuration.txt
7130 - CLEANUP: proto_tcp: Remove useless header inclusions.
7131 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
7132 - MINOR: task: introduce work lists
7133 - BUG/MAJOR: listener: fix thread safety in resume_listener()
7134 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
7135 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
7136 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
7137 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
7138 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
7139 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
7140 - MEDIUM: mworker-prog: Add user/group options to program section
7141 - REGTESTS: checks: tcp-check connect to multiple ports
7142 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
7143
Willy Tarreau9dc6b972019-06-16 21:49:47 +020071442019/06/16 : 2.1-dev0
7145 - exact copy of 2.0.0
7146
Willy Tarreauba236302019-06-16 20:00:26 +020071472019/06/16 : 2.0.0
7148 - MINOR: fd: Don't use atomic operations when it's not needed.
7149 - DOC: mworker-prog: documentation for the program section
7150 - MINOR: http: add a new "http-request replace-uri" action
7151 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
7152 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
7153 - MINOR: mworker: change formatting in uptime field of "show proc"
7154 - MINOR: mworker: add the HAProxy version in "show proc"
7155 - MINOR: doc: Remove -Ds option in man page
7156 - MINOR: doc: add master-worker in the man page
7157 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
7158 - BUILD: Silence gcc warning about unused return value
7159 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
7160 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
7161 - MINOR: doc: update the manpage and usage message about -S
7162 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
7163 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
7164 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
7165 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
7166 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
7167 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
7168 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
7169 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
7170 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
7171 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
7172 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
7173 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
7174 - MINOR: h2: Set flags about the request's scheme on the start-line
7175 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
7176 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
7177 - MEDIUM: server: server-state only rely on server name
7178 - CLEANUP: connection: rename the wait_event.task field to .tasklet
7179 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
7180 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
7181 - DOC: add some environment variables in section 2.3
7182 - BUILD: makefile: clarify the "help" output and list options
7183 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
7184 - BUG: tasks: fix bug introduced by latest scheduler cleanup
7185 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
7186 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
7187 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
7188 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
7189 - BUILD: makefile: further clarify the "help" output and list targets
7190 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
7191 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
7192 - DOC: update few references to the linux* targets and change them to linux-glibc
7193 - BUILD: makefile: detect and reject recently removed linux targets
7194 - BUILD: makefile: enable linux namespaces by default on linux
7195 - BUILD: makefile: enable TFO on linux platforms
7196 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
7197 - DOC: small updates to the CONTRIBUTING file
7198 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
7199 - CLEANUP: removed obsolete examples an move a few to better places
7200 - DOC: Fix typos in CONTRIBUTING
7201 - DOC: update the outdated ROADMAP file
7202 - DOC: create a BRANCHES file to explain the life cycle
7203 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
7204 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
7205 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
7206 - BUILD: tools: work around an internal compiler bug in gcc-3.4
7207 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
7208 - BUILD: makefile: enable USE_RT on Solaris
7209 - BUILD: makefile: do not use echo -n
7210 - DOC: mention a few common build errors in the INSTALL file
7211
Willy Tarreauca3551f2019-06-11 19:28:00 +020072122019/06/11 : 2.0-dev7
7213 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
7214 - MINOR: tools: add new bitmap manipulation functions
7215 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
7216 - MINOR: chunks: Make sure trash_size is only set once.
7217 - Revert "MINOR: chunks: Make sure trash_size is only set once."
7218 - MINOR: threads: serialize threads initialization
7219 - MINOR peers: data structure simplifications for server names dictionary cache.
7220 - DOC: peers: Update for dictionary cache entries for peers protocol.
7221 - MINOR: dict: Store the length of the dictionary entries.
7222 - MINOR: peers: A bit of optimization when encoding cached server names.
7223 - MINOR: peers: Optimization for dictionary cache lookup.
7224 - MEDIUM: tools: improve time format error detection
7225 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
7226 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
7227 - MINOR: threads: avoid clearing harmless twice in thread_release()
7228 - MEDIUM: threads: add thread_sync_release() to synchronize steps
7229 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
7230 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
7231 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
7232 - MEDIUM: init/threads: don't use spinlocks during the init phase
7233 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
7234 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
7235 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
7236 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
7237 - MINOR: htx: Add the function htx_move_blk_before()
7238 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
7239 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
7240 - MINOR: http: turn default error files to HTTP/1.1
7241 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
7242 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
7243 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
7244 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
7245 - MINOR: contrib/spoa_server: Add random IP score
7246 - DOC/MINOR: contrib/spoa_server: Fix typo in README
7247
Willy Tarreaub57f1092019-06-07 06:12:59 +020072482019/06/07 : 2.0-dev6
7249 - BUG/MEDIUM: connection: fix multiple handshake polling issues
7250 - MINOR: connection: also stop receiving after a SOCKS4 response
7251 - MINOR: mux-h1: don't try to recv() before the connection is ready
7252 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
7253 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
7254 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
7255 - CONTRIB: debug: add 4 missing connection/conn_stream flags
7256 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
7257 - MINOR: server: increase the default pool-purge-delay to 5 seconds
7258 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
7259 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
7260 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
7261 - BUILD: task: fix a build warning when threads are disabled
7262 - CLEANUP: peers: Remove tabs characters.
7263 - CLEANUP: peers: Replace hard-coded values by macros.
7264 - BUG/MINOR: peers: Wrong stick-table update message building.
7265 - MINOR: dict: Add dictionary new data structure.
7266 - MINOR: peers: Add a LRU cache implementation for dictionaries.
7267 - MINOR: stick-table: Add "server_name" new data type.
7268 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
7269 - MINOR: proxy: Add a "server by name" tree to proxy.
7270 - MINOR: server: Add a dictionary for server names.
7271 - MINOR: stream: Stickiness server lookup by name.
7272 - MINOR: peers: Make peers protocol support new "server_name" data type.
7273 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
7274 - REGTEST: Add a basic server by name stickiness reg test.
7275 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
7276 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
7277 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
7278 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
7279 - BUILD: travis-ci improvements
7280 - MINOR: SSL: add client/server random sample fetches
7281 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
7282 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
7283 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
7284 - MEDIUM: mux-h1: refactor output processing
7285 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
7286 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
7287 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
7288 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
7289 - MEDIUM: htx: Add the parsing of trailers of chunked messages
7290 - MINOR: htx: Don't use end-of-data blocks anymore
7291 - BUG/MINOR: mux-h1: Don't send more data than expected
7292 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
7293 - BUG/MINOR: peers: Wrong "server_name" decoding.
7294 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
7295 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
7296 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
7297 - MEDIUM: ssl: Handle subscribe by itself.
7298 - MINOR: ssl: Make ssl_sock_handshake() static.
7299 - MINOR: connections: Add a new xprt method, remove_xprt.
7300 - MINOR: connections: Add a new xprt method, add_xprt().
7301 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
7302 - MEDIUM: connections: Remove CONN_FL_SOCK*
7303 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
7304 - BUG/MINOR: peers: Wrong server name parsing.
7305 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
7306 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
7307 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
7308 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
7309 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
7310 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
7311 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
7312 - MEDIUM: stream: re-arrange the connection setup status reporting
7313 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
7314 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
7315 - MEDIUM: stream: rearrange the events to remove the loop
7316 - MEDIUM: stream: only loop on flags relevant to the analysers
7317 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
7318 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
7319 - BUILD: peers: fix a build warning about an incorrect intiialization
7320 - BUG/MINOR: time: make sure only one thread sets global_now at boot
7321 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
7322
Willy Tarreauabc874e2019-06-02 12:06:08 +020073232019/06/02 : 2.0-dev5
7324 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
7325 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
7326 - BUILD: watchdog: condition it to USE_RT
7327 - MINOR: raw_sock: report global traffic statistics
7328 - MINOR: stats: report the global output bit rate in human readable form
7329 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
7330 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
7331 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
7332 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
7333 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
7334 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
7335 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
7336 - DOC: fix typos
7337 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
7338 - OPTIM: freq-ctr: don't take the date lock for most updates
7339 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
7340 - CLEANUP: debug: remove the TRACE() macro
7341 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
7342 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
7343 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
7344 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
7345 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
7346 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
7347 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
7348 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
7349 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
7350 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
7351 - BUILD: ssl: fix latest LibreSSL reg-test error
7352 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
7353 - MINOR: cli/activity: add 3 general purpose counters in development mode
7354 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
7355 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
7356 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
7357 - MEDIUM: config: now alert when two servers have the same name
7358 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
7359 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
7360 - MINOR: htx: Store the head position instead of the wrap one
7361 - MINOR: htx: Store start-line block's position instead of address of its payload
7362 - MINOR: htx: Add functions to get the first block of an HTX message
7363 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
7364 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
7365 - CLEANUP: htx: Remove unused function htx_get_stline()
7366 - MINOR: http/htx: Use sl_pos directly to replace the start-line
7367 - MEDIUM: http/htx: Perform analysis relatively to the first block
7368 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
7369 - MINOR: htx: Add function htx_get_max_blksz()
7370 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
7371 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
7372 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
7373 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
7374 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
7375 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
7376 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
7377 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
7378 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
7379 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
7380 - MEDIUM: htx: 1xx messages are now part of the final reponses
7381 - MINOR: channel/htx: Add function to forward headers of an HTX message
7382 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
7383 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
7384 - MEDIUM: htx: Store the first block position instead of the start-line one
7385 - MINOR: stats/htx: don't use the first block position but the head one
7386 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
7387 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
7388 - MEDIUM: filters/htx: Filter body relatively to the first block
7389 - MINOR: htx: Optimize htx_drain() when all data are drained
7390 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
7391 - MINOR: htx: remove the unused function htx_find_blk()
7392 - MINOR: htx: Remove support of pseudo headers because it is unused
7393 - BUG/MEDIUM: http: fix "http-request reject" when not final
7394 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
7395 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
7396 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
7397 - MINOR: htx: make htx_add_data() return the transmitted byte count
7398 - MEDIUM: htx: make htx_add_data() never defragment the buffer
7399 - MINOR: activity: write totals on the "show activity" output
7400 - MINOR: activity: report totals and average separately
7401 - MEDIUM: poller: separate the wait time from the wake events
7402 - MINOR: activity: report the number of failed pool/buffer allocations
7403 - MEDIUM: buffers: relax the buffer lock a little bit
7404 - MINOR: task: turn the WQ lock to an RW_LOCK
7405 - MEDIUM: task: don't grab the WR lock just to check the WQ
7406 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
7407 - MEDIUM: sessions: Introduce session flags.
7408 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
7409 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
7410 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
7411 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
7412 - MEDIUM: tasks: Get rid of active_tasks_mask.
7413 - MEDIUM: connection: Upstream SOCKS4 proxy support
7414 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
7415 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
7416
Willy Tarreau56740692019-05-22 20:48:33 +020074172019/05/22 : 2.0-dev4
7418 - BUILD: enable freebsd builds on cirrus-ci
7419 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
7420 - MEDIUM: Make 'option forceclose' actually warn
7421 - MEDIUM: Make 'resolution_pool_size' directive fatal
7422 - DOC: management: place "show activity" at the right place
7423 - MINOR: cli/activity: show the dumping thread ID starting at 1
7424 - MINOR: task: export global_task_mask
7425 - MINOR: cli/debug: add a thread dump function
7426 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
7427 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
7428 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
7429 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
7430 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
7431 - BUG/MINOR: debug: don't check the call date on tasklets
7432 - MINOR: thread: implement ha_thread_relax()
7433 - MINOR: task: put barriers after each write to curr_task
7434 - MINOR: task: always reset curr_task when freeing a task or tasklet
7435 - MINOR: stream: detach the stream from its own task on stream_free()
7436 - MEDIUM: debug/threads: implement an advanced thread dump system
7437 - REGTEST: extend the check duration on tls_health_checks and mark it slow
7438 - DOC: fix "successful" typo
7439 - MINOR: init: setenv HAPROXY_CFGFILES
7440 - MINOR: threads/init: synchronize the threads startup
7441 - MEDIUM: init/mworker: make the pipe register function a regular initcall
7442 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
7443 - CLEANUP: threads: remove the now unused START_LOCK label
7444 - MINOR: init/threads: make the global threads an array of structs
7445 - MINOR: threads: add each thread's clockid into the global thread_info
7446 - CLEANUP: stream: remove an obsolete debugging test
7447 - MINOR: tools: add dump_hex()
7448 - MINOR: debug: implement ha_panic()
7449 - MINOR: debug/cli: add some debugging commands for developers
7450 - MINOR: tools: provide a may_access() function and make dump_hex() use it
7451 - MINOR: debug: make ha_panic() report threads starting at 1
7452 - REORG: compat: move some integer limit definitions from standard.h to compat.h
7453 - REORG: threads: move the struct thread_info from global.h to hathreads.h
7454 - MINOR: compat: make sure to always define clockid_t
7455 - MINOR: threads: always place the clockid in the struct thread_info
7456 - MINOR: threads: add a thread-local thread_info pointer "ti"
7457 - MINOR: time: move the cpu, mono, and idle time to thread_info
7458 - MINOR: time: add a function to retrieve another thread's cputime
7459 - MINOR: debug: report each thread's cpu usage in "show thread"
7460 - BUILD: threads: only assign the clock_id when supported
7461 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
7462 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
7463 - MAJOR: polling: add event ports support (Solaris)
7464 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
7465 - CLEANUP: time: refine the test on _POSIX_TIMERS
7466 - MINOR: compat: define a new empty type empty_t for non-implemented fields
7467 - CLEANUP: time: switch clockid_t to empty_t when not available
7468 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
7469 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
7470 - MINOR: debug: switch to SIGURG for thread dumps
7471 - CLEANUP: threads: really move thread_info to hathreads.c
7472 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
7473 - CLEANUP: debug: always report harmless/want_rdv even without threads
7474 - MINOR: threads: implement ha_tkill() and ha_tkillall()
7475 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
7476 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
7477 - MINOR: debug: dump streams when an applet, iocb or stream is known
7478 - MINOR: threads: add a "stuck" flag to the thread_info struct
7479 - MINOR: threads: add a timer_t per thread in thread_info
7480 - MAJOR: watchdog: implement a thread lockup detection mechanism
7481 - MINOR: stream: remove the cpu time detection from process_stream()
7482 - MINOR: connection: report the mux names in "haproxy -vv"
7483 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
7484 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
7485 - MINOR: WURFL: call header_retireve_callback() in dummy library
7486 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
7487 - MINOR: WURFL: shows log messages during module initialization
7488 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
7489 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
7490 - MEDIUM: WURFL: HTX awareness.
7491 - MINOR: WURFL: module version bump to 2.0
7492 - MINOR: WURFL: do not emit warnings when not configured
7493 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
7494 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
7495 - BUILD: travis: add sanitizers to travis-ci builds
7496 - BUILD: time: remove the test on _POSIX_C_SOURCE
7497 - CLEANUP: build: rename some build macros to use the USE_* ones
7498 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
7499 - BUG/MEDIUM: dns: make the port numbers unsigned
7500 - MEDIUM: config: deprecate the antique req* and rsp* commands
7501
Willy Tarreaua257a9b2019-05-15 16:51:48 +020075022019/05/15 : 2.0-dev3
7503 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
7504 - CLEANUP: peers: remove useless annoying tabulations.
7505 - CLEANUP: peers: replace timeout constants by macros.
7506 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
7507 - DOC: The option httplog is no longer valid in a backend.
7508 - DOC: peers: Peers protocol documentation update.
7509 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
7510 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
7511 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
7512 - BUILD: Makefile: remove outdated support for dlmalloc
7513 - BUILD: Makefile: consider a variable's origin and not its value for the options list
7514 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
7515 - BUILD: Makefile: shorten default settings declaration
7516 - BUILD: Makefile: clean up the target declarations
7517 - BUILD: report the whole feature set with their status in haproxy -vv
7518 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
7519 - REGTEST: script: make the script use the new features list
7520 - REGTEST: script: remove platform-specific assigments of OPTIONS
7521 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
7522 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
7523 - BUILD/MINOR: listener: Silent a few signedness warnings.
7524 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
7525 - BUG/MEDIUM: mworker: don't free the wrong child when not found
7526 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
7527 - BUG/MAJOR: checks: segfault during tcpcheck_main
7528 - BUILD: makefile: work around an old bug in GNU make-3.80
7529 - BUILD: makefile: work around another bug in make 3.80
7530 - BUILD: http: properly mark some struct as extern
7531 - BUILD: chunk: properly declare pool_head_trash as extern
7532 - BUILD: cache: avoid a build warning with some compilers/linkers
7533 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
7534 - MINOR: tools: add an unsetenv() implementation
7535 - BUILD: re-implement an initcall variant without using executable sections
7536 - BUILD: use inttypes.h instead of stdint.h
7537 - BUILD: connection: fix naming of ip_v field
7538 - BUILD: makefile: fix build of IPv6 header on aix51
7539 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
7540 - BUILD: define unsetenv on AIX 5.1
7541 - BUILD: Makefile: disable shared cache on AIX 5.1
7542 - MINOR: ssl: Add aes_gcm_dec converter
7543 - REORG: mworker: move serializing functions to mworker.c
7544 - REORG: mworker: move signals functions to mworker.c
7545 - REORG: mworker: move IPC functions to mworker.c
7546 - REORG: mworker: move signal handlers and related functions
7547 - REORG: mworker: move mworker_cleanlisteners to mworker.c
7548 - MINOR: mworker: calloc mworker_proc structures
7549 - MINOR: mworker: don't use children variable anymore
7550 - MINOR: cli: export cli_parse_default() definition in cli.h
7551 - REORG: mworker/cli: move CLI functions to mworker.c
7552 - MEDIUM: mworker-prog: implement program for master-worker
7553 - MINOR: mworker/cli: show programs in 'show proc'
7554 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
7555 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
7556 - MINOR: cli: export HAPROXY_CLI environment variable
7557 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
7558 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
7559 - REGTEST: http-capture/h00000: Relax a regex matching the log message
7560 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
7561 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
7562 - REGTEST: log/b00000: Be sure the client always hits its timeout
7563 - REGTEST: lua/b00003: Relax the regex matching the log message
7564 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
7565 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
7566 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
7567 - BUG/MEDIUM: htx: fix random premature abort of data transfers
7568 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
7569 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
7570 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
7571 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
7572 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
7573 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
7574 - MINOR: skip get_gmtime where tm is unused
7575 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
7576 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
7577 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
7578 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
7579 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
7580 - BUG/MINOR: listener: renice the accept ring processing task
7581 - MINOR: cli/listener: report the number of accepts on "show activity"
7582 - MINOR: cli/activity: report the accept queue sizes in "show activity"
7583 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
7584 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
7585 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
7586 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
7587 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
7588 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
7589 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
7590 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
7591 - MINOR: mux-h1: Simplify handling of 1xx responses
7592 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
7593 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
7594 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
7595 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
7596 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
7597 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
7598 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
7599 - MINOR: stream: Set a flag when the stream uses the HTX
7600 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
7601 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
7602 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
7603 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
7604 - MEDIUM: muxes: Add an optional input buffer during mux initialization
7605 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
7606 - MEDIUM: muxes: Be prepared to don't own connection during the release
7607 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
7608 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
7609 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
7610 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
7611 - MAJOR: htx: Enable the HTX mode by default for all proxies
7612 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
7613 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
7614 - CLEANUP: task: do not export rq_next anymore
7615 - MEDIUM: tasks: improve fairness between the local and global queues
7616 - MEDIUM: tasks: only base the nice offset on the run queue depth
7617 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
7618 - BUG/MEDIUM: map: Fix memory leak in the map converter
7619 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
7620 - BUILD: task/thread: fix single-threaded build of task.c
7621 - BUILD: cli/threads: fix build in single-threaded mode
7622 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
7623 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
7624 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
7625 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
7626 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
7627 - BUILD: address a few cases of "static <type> inline foo()"
7628 - BUILD: do not specify "const" on functions returning structs or scalars
7629 - BUILD: htx: fix a used uninitialized warning on is_cookie2
7630 - MINOR: peers: Add a new command to the CLI for peers.
7631 - DOC: update for "show peers" CLI command.
7632 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
7633 - MEDIUM: mworker: store the leaving state of a process
7634 - MEDIUM: mworker-prog: implements 'option start-on-reload'
7635 - CLEANUP: mworker: remove the type field in mworker_proc
7636 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
7637 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
7638 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
7639 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
7640 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
7641 - BUG/MINOR: mworker: mworker_kill should apply on every children
7642 - BUG/MINOR: mworker: don't exit with an ambiguous value
7643 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
7644 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
7645 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
7646 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
7647 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
7648 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
7649 - MINOR: mux-h1: Handle read0 during TCP splicing
7650 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
7651 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
7652 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
7653 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
7654 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
7655 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
7656 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
7657 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
7658 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
7659 - BUG/MEDIUM: applets: Don't use task_in_rq().
7660 - BUG/MAJOR: task: make sure never to delete a queued task
7661 - MINOR: task/thread: factor out a wake-up condition
7662 - CLEANUP: task: remain consistent when using the task's handler
7663 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
7664 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
7665 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
7666 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
7667 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
7668 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
7669 - BUG/MINOR: mworker: disable busy polling in the master process
7670 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
7671 - MEDIUM: ssl: Give ssl_sock its own context.
7672 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
7673 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
7674 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
7675 - MEDIUM: ssl: provide our own BIO.
7676 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
7677 - MINOR: peers: adds counters on show peers about tasks calls.
7678 - MEDIUM: enable travis-ci builds
7679 - MINOR: fd: Add a counter of used fds.
7680 - MEDIUM: connections: Add a way to control the number of idling connections.
7681 - BUG/MEDIUM: maps: only try to parse the default value when it's present
7682 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
7683 - REGTEST: Missing REQUIRE_VERSION declarations.
7684 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
7685 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
7686 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
7687 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
7688 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
7689 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
7690 - MINOR: gcc: Fix a silly gcc warning in connect_server()
7691 - MINOR: ssl/cli: async fd io-handlers printable on show fd
7692 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
7693 - BUILD: add USE_WURFL to the list of known build options
7694 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
7695 - BUILD: wurfl: build fix for 1.9/2.0 code base
7696 - CLEANUP: wurfl: removed deprecated methods
7697 - DOC: wurfl: added point of contact in MAINTAINERS file
7698 - MINOR: wurfl: enabled multithreading mode
7699 - MINOR: contrib: dummy wurfl library
7700 - MINOR: dns: dns_requester structures are now in a memory pool
7701 - MINOR: dns: move callback affection in dns_link_resolution()
7702 - MINOR: obj_type: new object type for struct stream
7703 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
7704 - MINOR: log: Extract some code to send syslog messages.
7705 - REGTEST: replace LEVEL option by a more human readable one.
7706 - REGTEST: rename the reg test files.
7707 - REGTEST: adapt some reg tests after renaming.
7708 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
7709 - BUG/MAJOR: stream: Missing DNS context initializations.
7710 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
7711 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
7712 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
7713 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
7714 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
7715 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
7716 - CLEANUP: task: report calls as unsigned in show sess
7717 - MINOR: tasks/activity: report the context switch and task wakeup rates
7718 - MINOR: stream: measure and report a stream's call rate in "show sess"
7719 - MINOR: applet: measure and report an appctx's call rate in "show sess"
7720 - BUILD: extend Travis CI config to support more platforms
7721 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
7722 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
7723 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
7724 - BUILD: travis: remove the "allow_failures" entry
7725 - BUG/MINOR: activity: always initialize the profiling variable
7726 - MINOR: activity: make the profiling status per thread and not global
7727 - MINOR: activity: enable automatic profiling turn on/off
7728 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
7729 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
7730 - MINOR: connection: make the debugging helper functions safer
7731 - MINOR: stream/debug: make a stream dump and crash function
7732 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
7733 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
7734 - MEDIUM: streams: measure processing time and abort when detecting bugs
7735 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
7736 - MEDIUM: da: HTX mode support.
7737 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
7738 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
7739 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
7740 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
7741 - DOC: contrib/modsecurity: Typos and fix the reject example
7742 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
7743 - MINOR: log: Add "sample" new keyword to "log" lines.
7744 - MINOR: log: Enable the log sampling and load-balancing feature.
7745 - DOC: log: Document the sampling and load-balancing logging feature.
7746 - REGTEST: Add a new reg test for log load-balancing feature.
7747 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
7748 - REGTEST: Make this reg test be Linux specific.
7749 - CLEANUP: task: move the task_per_thread definition to task.h
7750 - MINOR: activity: report context switch counts instead of rates
7751 - MINOR: threads: Implement HA_ATOMIC_LOAD().
7752 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
7753 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
7754 - MINOR: config: Test validity of tune.maxaccept during the config parsing
7755 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
7756 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
7757 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
7758 - BUG/MINOR: haproxy: fix rule->file memory leak
7759 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
7760 - BUG/MINOR: checks: free memory allocated for tasklets
7761 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
7762 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
7763 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
7764 - MINOR: threads: flatten the per-thread cpu-map
7765 - MINOR: init/threads: remove the useless tids[] array
7766 - MINOR: init/threads: make the threads array global
7767 - BUG/MEDIUM: ssl: Use the early_data API the right way.
7768 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
7769 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
7770 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
7771 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
7772 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
7773 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
7774 - BUG/MINOR: logs/threads: properly split the log area upon startup
7775 - BUILD: extend travis-ci matrix
7776 - CLEANUP: Remove appsession documentation
7777 - DOC: Fix typo in keyword matrix
7778 - BUILD: remove "build_libressl" duplicate declaration
7779 - BUILD: travis-ci: get back to osx without openssl support
7780 - BUILD: enable several LibreSSL hacks, including
7781 - BUILD: temporarily mark LibreSSL builds as allowed to fail
7782 - BUILD: travis: TMPDIR replacement.
7783 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
7784 - MINOR: doc: Document allow-0rtt on the server line.
7785 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
7786 - MEDIUM: proto: Change the prototype of the connect() method.
7787 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
7788 - MINOR: config: Extract the code of "stick-table" line parsing.
7789 - BUILD/MINOR: stick-table: Compilation fix.
7790 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
7791 - MINOR: stick-tables: Add peers process binding computing.
7792 - MINOR: stick-table: Add prefixes to stick-table names.
7793 - MINOR: peers: Do not emit global stick-table names.
7794 - DOC: Update for "table" lines in "peers" section.
7795 - REGTEST: Add reg tests for "table" lines in "peers" sections.
7796 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
7797 - REGTEST: make the tls_health_checks test much faster
7798 - REGTEST: make the "table in peers" test require v2.0
7799 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
7800 - BUG/MEDIUM: h2/htx: always fail on too large trailers
7801 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
7802 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
7803 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
7804 - REGTEST: Flag some slow reg tests.
7805 - REGTEST: Reg tests file renaming.
7806 - REGTEST: Wrong renaming for one reg test.
7807 - REGTEST: Wrong assumption in IP:port logging test.
7808 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
7809 - MINOR: systemd: Use the variables from /etc/default/haproxy
7810 - MINOR: systemd: Make use of master socket in systemd unit
7811 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
7812 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
7813 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
7814 - CLEANUP: task: remove unneeded tests before task_destroy()
7815 - MINOR: mworker: support a configurable maximum number of reloads
7816 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
7817 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
7818 - BUG/MINOR: mux-h1: Fix the parsing of trailers
7819 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
7820 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
7821 - MINOR: htx: Don't try to append a trailer block with the previous one
7822 - MINOR: htx: Remove support for unused OOB HTX blocks
7823 - BUILD: travis-ci bugfixes and improvements
7824 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
7825 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
7826 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
7827 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
7828 - BUILD: ssl: make libressl use its own version numbers
7829 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
7830 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
7831 - BUILD: ssl: fix libressl build again after aes-gcm-enc
7832 - REORG: ssl: move openssl-compat from proto to common
7833 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
7834 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
7835 - CLEANUP: ssl: make inclusion of openssl headers safe
7836 - BUILD: add BoringSSL to travis-ci build matrix
7837 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
7838 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
7839 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
7840 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
7841 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
7842 - MEDIUM: streams: Add a new http action, disable-l7-retry.
7843 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
7844 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
7845 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
7846 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
7847 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
7848 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
7849 - BUILD: threads: fix again the __ha_cas_dw() definition
7850 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
7851 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
7852 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
7853 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
7854 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
7855 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
7856 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
7857 - BUG/MAJOR: ssl: segfault upon an heartbeat request
7858 - MINOR: spoa-server: Clone the v1.7 spoa-example project
7859 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
7860 - MINOR: spoa-server: Externalise debug functions
7861 - MINOR: spoe-server: rename "worker" functions
7862 - MINOR: spoa-server: Replace the thread init system by processes
7863 - MINOR: spoa-server: With debug mode, start only one process
7864 - MINOR: spoa-server: Allow registering external processes
7865 - MINOR: spoa-server: Allow registering message processors
7866 - MINOR: spoa-server: Load files
7867 - MINOR: spoa-server: Prepare responses
7868 - MINOR: spoa-server: Execute registered callbacks
7869 - MINOR: spoa-server: Add Lua processing
7870 - MINOR: spoa-server: Add python
7871 - MINOR/DOC: spoe-server: Add documentation
7872 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
7873 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
7874 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
7875 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
7876 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
7877 - CLEANUP: connection: remove the handle field from the wait_event struct
7878 - BUG/MINOR: log: Wrong log format initialization.
7879 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
7880 - BUG/MINOR: mworker: use after free when the PID not assigned
7881 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
7882 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
7883 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
7884 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
7885 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
7886 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
7887 - MINOR: mux-h2: add macros to check multiple stream states at once
7888 - MINOR: mux-h2: stop relying on CS_FL_REOS
7889 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
7890 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
7891 - MINOR: debug: add a new BUG_ON macro
7892 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
7893 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
7894 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
7895 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
7896
Willy Tarreau6e893b92019-03-26 05:40:51 +010078972019/03/26 : 2.0-dev2
7898 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
7899 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
7900 - MINOR: lists: Implement locked variations.
7901 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
7902 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
7903 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
7904 - MINOR: cfgparse: Add a cast to make gcc happier.
7905 - BUG/MEDIUM: standard: Wrong reallocation size.
7906 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
7907 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
7908 - MAJOR: config: disable support for nbproc and nbthread in parallel
7909 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
7910 - MAJOR: listener: do not hold the listener lock in listener_accept()
7911 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
7912 - MINOR: tools: implement functions to look up the nth bit set in a mask
7913 - MINOR: listener: pre-compute some thread counts per bind_conf
7914 - MINOR: listener: implement multi-queue accept for threads
7915 - MAJOR: listener: use the multi-queue for multi-thread listeners
7916 - MINOR: activity: add accept queue counters for pushed and overflows
7917 - MINOR: config: add global tune.listener.multi-queue setting
7918 - MAJOR: threads: enable one thread per CPU by default
7919 - DOC: update management.txt to reflect that threads are used by default
7920 - BUG/MINOR: config: don't over-count the global maxsock value
7921 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
7922 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
7923 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
7924 - MINOR: list: make the delete and pop operations idempotent
7925 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
7926 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
7927 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
7928 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
7929 - MINOR: listener: introduce listener_backlog() to report the backlog value
7930 - MINOR: listener: do not needlessly set l->maxconn
7931 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
7932 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
7933 - MINOR: peers: Add a message for heartbeat.
7934 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
7935 - BUG/MINOR: init: never lower rlim_fd_max
7936 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
7937 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
7938 - MINOR: init: make the maxpipe computation more accurate
7939 - MINOR: init: move some maxsock updates earlier
7940 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
7941 - REGTEST: fix a spurious "nbthread 4" in the connection test
7942 - DOC: update the text related to the global maxconn value
7943 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
7944 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
7945 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
7946 - MINOR: htx: unconditionally handle parsing errors in requests or responses
7947 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
7948 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
7949 - MINOR: sample: Code factorization "ungrpc" converter.
7950 - MINOR: sample: Rework gRPC converter code.
7951 - CLEANUP: wurfl: remove dead, broken and unmaintained code
7952 - MINOR: config: relax the range checks on cpu-map
7953 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
7954 - MINOR: sample: Extract some protocol buffers specific code.
7955 - DOC: Remove tabs and fixed punctuation.
7956 - MINOR: sample: Add a protocol buffers specific converter.
7957 - REGTEST: Peers reg tests.
7958 - REGTEST: Enable reg tests with HEAD HTTP method usage.
7959 - MINOR: lists: add a LIST_DEL_INIT() macro
7960 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
7961 - MINOR: listener: improve incoming traffic distribution
7962 - MINOR: tools: implement my_flsl()
7963 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
7964 - CLEANUP: listener: remove old thread bit mapping
7965 - MINOR: listener: move thr_idx from the bind_conf to the listener
7966 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
7967 - BUG/MAJOR: config: Wrong maxconn adjustment.
7968 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
7969 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
7970 - MINOR: fd: Remove debugging code.
7971 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
7972 - MINOR: threads: Implement __ha_barrier_atomic*.
7973 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
7974 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
7975 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
7976 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
7977 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
7978 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
7979 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
7980 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
7981 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
7982 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
7983 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
7984 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
7985 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
7986 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
7987 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
7988 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
7989 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
7990 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
7991 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
7992 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
7993 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
7994 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
7995 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
7996 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
7997 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
7998 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
7999 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
8000 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
8001 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
8002 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
8003 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
8004 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
8005 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
8006 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
8007 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
8008 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
8009 - MEDIUM: list: Remove useless barriers.
8010 - MEDIUM: list: Use _HA_ATOMIC_*
8011 - MEDIUM: connections: Use _HA_ATOMIC_*
8012 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
8013 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
8014 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
8015 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
8016 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
8017 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
8018 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
8019 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
8020 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
8021 - MINOR: stats: Move stuff about the stats status codes in stats files
8022 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
8023 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
8024 - BUILD: listener: shut up a build warning when threads are disabled
8025 - BUILD: Makefile: allow the reg-tests target to be verbose
8026 - BUILD: Makefile: resolve LEVEL before calling run-regtests
8027 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
8028 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
8029 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
8030 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
8031 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
8032 - MINOR: muxes: Report the Last read with a dedicated flag
8033 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
8034 - BUILD: tools: fix a build warning on some 32-bit archs
8035 - MINOR: init: report the list of optionally available services
8036 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
8037 - BUG/MINOR: cache: Fully consume large requests in the cache applet
8038 - BUG/MINOR: stats: Fully consume large requests in the stats applet
8039 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
8040 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
8041 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
8042 - MINOR: stats/cache: Handle the header Expect when applets are registered
8043 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
8044 - CLEANUP: cache: don't export http_cache_applet anymore
8045 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
8046 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
8047 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
8048 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
8049 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
8050 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
8051 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
8052 - CLEANUP: mux-h2: add some comments to help understand the code
8053 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
8054 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
8055 - BUG/MEDIUM: h2: Try to be fair when sending data.
8056 - BUG/MINOR: proto-http: Don't forward request body anymore on error
8057 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
8058 - MINOR: connection: and new flag to mark end of input (EOI)
8059 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
8060 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
8061 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
8062 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
8063 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
8064 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
8065 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
8066 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
8067 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
8068 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
8069 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
8070 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
8071 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
8072 - CONTRIB: debug: report the CS and CF's EOI flags
8073 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
8074
Willy Tarreau6c1b6672019-02-26 16:43:49 +010080752019/02/26 : 2.0-dev1
8076 - MINOR: mux-h2: only increase the connection window with the first update
8077 - REGTESTS: remove the expected window updates from H2 handshakes
8078 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
8079 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
8080 - MEDIUM: mux-h2: remove padlen during headers phase
8081 - MINOR: h2: add a bit-based frame type representation
8082 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
8083 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
8084 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
8085 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
8086 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
8087 - MINOR: buffers: add a new b_move() function
8088 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
8089 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
8090 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
8091 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
8092 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
8093 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
8094 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
8095 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
8096 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
8097 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
8098 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
8099 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
8100 - MEDIUM: servers: Be smarter when switching connections.
8101 - MEDIUM: sessions: Keep track of which connections are idle.
8102 - MINOR: payload: add sample fetch for TLS ALPN
8103 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
8104 - MINOR: channel: Add the function channel_add_input
8105 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
8106 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
8107 - BUG/MAJOR: htx: Return the good block address after a defrag
8108 - MINOR: lb: allow redispatch when using consistent hash
8109 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
8110 - BUG/MEDIUM: mux-h2: always restart reading if data are available
8111 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
8112 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
8113 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
8114 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
8115 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
8116 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
8117 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
8118 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
8119 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
8120 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
8121 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
8122 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
8123 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
8124 - MINOR: mux-h2: remove a misleading and impossible test
8125 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
8126 - MINOR: mux-h2: check for too many streams only for idle streams
8127 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
8128 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
8129 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
8130 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
8131 - MINOR: htx: add a new function to add a block without filling it
8132 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
8133 - MEDIUM: mux-h2: pass trailers to HTX
8134 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
8135 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
8136 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
8137 - MINOR: h1: make the H1 headers block parser able to parse headers only
8138 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
8139 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
8140 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
8141 - MINOR: mux-h1: Add the subscription events in "show fd" command
8142 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
8143 - BUG/MINOR: cache/htx: Be sure to count partial trailers
8144 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
8145 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
8146 - MINOR: connections: Remove a stall comment.
8147 - BUG/MEDIUM: cli: make "show sess" really thread-safe
8148 - BUILD: add a new file "version.c" to carry version updates
8149 - MINOR: stream/htx: add the HTX flags output in "show sess all"
8150 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
8151 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
8152 - BUG/MINOR: lua: bad args are returned for Lua actions
8153 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
8154 - MINOR: htx: Add an helper function to get the max space usable for a block
8155 - MINOR: channel/htx: Add HTX version for some helper functions
8156 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
8157 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
8158 - DOC: regtest: make it clearer what the purpose of the "broken" series is
8159 - REGTEST: mailers: add new test for 'mailers' section
8160 - REGTEST: Add a reg test for health-checks over SSL/TLS.
8161 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
8162 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
8163 - BUG/MINOR: compression: Disable it if another one is already in progress
8164 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
8165 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
8166 - REGTEST: Add some informatoin to test results.
8167 - MINOR: htx: Add a function to truncate all blocks after a specific offset
8168 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
8169 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
8170 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
8171 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
8172 - DOC: http-request cache-use / http-response cache-store expects cache name
8173 - REGTEST: "capture (request|response)" regtest.
8174 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
8175 - REGTEST: filters: add compression test
8176 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
8177 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
8178 - DOC: Be a bit more explicit about allow-0rtt security implications.
8179 - MINOR: mux-h1: make the mux_h1_ops struct static
8180 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
8181 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
8182 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
8183 - REGTESTS: test case for map_regm commit 271022150d
8184 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
8185 - REGTESTS: Basic tests for using maps to redirect requests / select backend
8186 - DOC: REGTESTS README varnishtest -Dno-htx= define.
8187 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
8188 - MINOR: checks: Store the proxy in checks.
8189 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
8190 - REGTEST: Switch to vtest.
8191 - REGTEST: Adapt reg test doc files to vtest.
8192 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
8193 - BUG/MINOR: base64: dec func ignores padding for output size checking
8194 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
8195 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
8196 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
8197 - BUG/MINOR: backend: balance uri specific options were lost across defaults
8198 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
8199 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
8200 - MINOR: backend: make headers and RDP cookie also use arg_str/len
8201 - MINOR: backend: add new fields in lbprm to store more LB options
8202 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
8203 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
8204 - MINOR: backend: move hash_balance_factor out of chash
8205 - MEDIUM: backend: move all LB algo parameters into an union
8206 - MINOR: backend: make the random algorithm support a number of draws
8207 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
8208 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
8209 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
8210 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
8211 - DOC: add a missing space in the documentation for bc_http_major
8212 - REGTEST: checks basic stats webpage functionality
8213 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
8214 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
8215 - DOC: add github issue templates
8216 - MINOR: cfgparse: Extract some code to be re-used.
8217 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
8218 - CLEANUP: cfgparse: Code reindentation.
8219 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
8220 - MINOR: cfgparse: Rework peers frontend init.
8221 - MINOR: cfgparse: Simplication.
8222 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
8223 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
8224 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
8225 - DOC: peers: SSL/TLS documentation for "peers"
8226 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
8227 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
8228 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
8229 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
8230 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
8231 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
8232 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
8233 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
8234 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
8235 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
8236 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
8237 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
8238 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
8239 - MINOR: h2: declare new sets of frame types
8240 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
8241 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
8242 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
8243 - BUG/MINOR: hpack: return a compression error on invalid table size updates
8244 - MINOR: server: make sure pool-max-conn is >= -1
8245 - BUG/MINOR: stream: take care of synchronous errors when trying to send
8246 - CLEANUP: server: fix indentation mess on idle connections
8247 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
8248 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
8249 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
8250 - MINOR: server: add a max-reuse parameter
8251 - MINOR: mux-h2: always consider a server's max-reuse parameter
8252 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
8253 - MINOR: stream: don't wait before retrying after a failed connection reuse
8254 - MEDIUM: h2: always parse and deduplicate the content-length header
8255 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
8256 - CLEANUP: h2: Remove debug printf in mux_h2.c
8257 - MINOR: cfgparse: make the process/thread parser support a maximum value
8258 - MINOR: threads: make MAX_THREADS configurable at build time
8259 - DOC: nbthread is no longer experimental.
8260 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
8261 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
8262 - BUG/MINOR: spoe: corrected fragmentation string size
8263 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
8264 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
8265 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
8266 - SCRIPTS: add the issue tracker URL to the announce script
8267 - MINOR: peers: Extract some code to be reused.
8268 - CLEANUP: peers: Indentation fixes.
8269 - MINOR: peers: send code factorization.
8270 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
8271 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
8272 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
8273 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
8274 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
8275 - CLEANUP: peers: Be more generic.
8276 - MINOR: peers: move error handling to reduce the size of the I/O handler.
8277 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
8278 - MINOR: peers: move send code to reduce the size of the I/O handler.
8279 - CLEANUP: peers: Remove useless statements.
8280 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
8281 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
8282 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
8283 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
8284 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
8285 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
8286 - CLEANUP: mux-h2: remove two useless but misleading assignments
8287 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
8288 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
8289 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
8290 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
8291 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
8292 - BUG/MEDIUM: peers: Handle mux creation failure.
8293 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
8294 - BUG/MEDIUM: compression: Rewrite strong ETags
8295 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
8296 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
8297 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
8298 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
8299 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
8300 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
8301 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
8302 - MINOR: h2: add a generic frame checker
8303 - MEDIUM: mux-h2: check the frame validity before considering the stream state
8304 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
8305 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
8306 - DOC: compression: Update the reasons for disabled compression
8307 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
8308 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
8309 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
8310 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
8311 - BUG/MEDIUM: peers: Peer addresses parsing broken.
8312 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
8313 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
8314 - BUG/MINOR: stream: don't close the front connection when facing a backend error
8315 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
8316 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
8317 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
8318 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
8319 - BUG/MINOR: server: fix logic flaw in idle connection list management
8320 - MINOR: mux-h2: max-concurrent-streams should be unsigned
8321 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
8322 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
8323 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
8324 - MINOR: xref: Add missing barriers.
8325 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
8326 - MINOR: debug: Add an option that causes random allocation failures.
8327 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
8328 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
8329 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
8330 - BUG/MINOR: backend: check srv_conn before dereferencing it
8331 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
8332 - BUG/MEDIUM: mux-h2: always set :authority on request output
8333 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
8334 - BUG/MINOR: threads: fix the process range of thread masks
8335 - BUG/MINOR: config: fix bind line thread mask validation
8336 - CLEANUP: threads: fix misleading comment about all_threads_mask
8337 - CLEANUP: threads: use nbits to calculate the thread mask
8338 - OPTIM: listener: optimize cache-line packing for struct listener
8339 - MINOR: tools: improve the popcount() operation
8340 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
8341 - MINOR: global: add proc_mask() and thread_mask()
8342 - MINOR: config: simplify bind_proc processing using proc_mask()
8343 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
8344 - BUG/MINOR: compression: properly report compression stats in HTX mode
8345 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
8346 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
8347 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
8348 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
8349 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
8350 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
8351 - DOC: ssl: Stop documenting ciphers example to use
8352 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
8353 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
8354 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
8355 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
8356 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
8357 - MINOR: config: make MAX_PROCS configurable at build time
8358 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
8359 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
8360 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
8361 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
8362 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
8363 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
8364 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
8365 - BUG/MAJOR: stream: avoid double free on unique_id
8366 - BUILD/MINOR: stream: avoid a build warning with threads disabled
8367 - BUILD/MINOR: tools: fix build warning in the date conversion functions
8368 - BUILD/MINOR: peers: remove an impossible null test in intencode()
8369 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
8370 - BUG/MEDIUM: peers: Missing peer initializations.
8371 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
8372 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
8373 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
8374 - BUILD/MEDIUM: initcall: Fix build on MacOS.
8375 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
8376 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
8377 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
8378 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
8379 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
8380 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
8381 - MINOR: mux-h2: Set HTX extra value when possible
8382 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
8383 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
8384 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
8385 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
8386 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
8387 - MINOR: fd: add a new my_closefrom() function to close all FDs
8388 - MINOR: checks: use my_closefrom() to close all FDs
8389 - MINOR: fd: implement an optimised my_closefrom() function
8390 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
8391 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
8392 - BUG/MAJOR: listener: Make sure the listener exist before using it.
8393 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
8394 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
8395 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
8396 - MINOR: htx: Add function to drain data from an HTX message
8397 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
8398 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
8399 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
8400 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
8401 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
8402 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
8403 - BUG/MEDIUM: h2: advertise to servers that we don't support push
8404 - MINOR: standard: Add a function to parse uints (dotted notation).
8405 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
8406 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
8407 - MINOR: sample: Add two sample converters for protocol buffers.
8408 - DOC: sample: Add gRPC related documentation.
8409
Willy Tarreaufba74ea2018-12-22 11:19:45 +010084102018/12/22 : 2.0-dev0
8411 - BUG/MAJOR: connections: Close the connection before freeing it.
8412 - REGTEST: Require the option LUA to run lua tests
8413 - REGTEST: script: Process script arguments before everything else
8414 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
8415 - REGTEST: script: Add the option --clean to remove previous log direcotries
8416 - REGTEST: script: Add the option --debug to show logs on standard ouput
8417 - REGTEST: script: Add the option --keep-logs to keep all log directories
8418 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
8419 - REGTEST: script: Print only errors in the results report
8420 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
8421 - REGTEST: Make reg-tests target support argument.
8422 - REGTEST: Fix a typo about barrier type.
8423 - REGTEST: Be less Linux specific with a syslog regex.
8424 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
8425 - REGTEST: Exclude freebsd target for some reg tests.
8426 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
8427 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
8428 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
8429 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
8430 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
8431 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
8432 - MEDIUM: mux_h1: Implement h1_show_fd.
8433 - REGTEST: script: Add support of alternatives in requited options list
8434 - REGTEST: Add a basic test for the compression
8435 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
8436 - REGTEST: A basic test for "http-buffer-request"
8437 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
8438 - MINOR: ssl: Add ssl_sock_set_alpn().
8439 - MEDIUM: checks: Add check-alpn.
8440 - wip
8441
Willy Tarreau82230502018-12-19 19:13:17 +010084422018/12/19 : 1.9.0
8443 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
8444 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
8445 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
8446 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
8447 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
8448 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
8449 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
8450 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
8451 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
8452 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
8453 - MINOR: cli/stream: add the conn_stream in "show sess" output
8454 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
8455 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
8456 - MINOR: objtype: report a few missing types in names and base pointers
8457 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
8458 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
8459 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
8460 - BUG/MINOR: mux-h1: report the correct frontend in error captures
8461 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
8462 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
8463 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
8464 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
8465 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
8466 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
8467 - MINOR: compression: Remove the thread_local variable buf_output
8468 - CLEANUP: connection: rename subscription events values and event field
8469 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
8470 - MINOR: connection: remove an unwelcome dependency on struct stream
8471 - CLEANUP: stream-int: consistently call the si/stream_int functions
8472 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
8473 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
8474 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
8475 - MEDIUM: stream-int: always consider all CS errors on the send side
8476 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
8477 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
8478 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
8479 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
8480 - MINOR: connection: add cs_set_error() to set the error bits
8481 - CLEANUP: mux-h2: make use of cs_set_error()
8482 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
8483 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
8484 - MINOR: cli/show_fd: report that a connection is back or not
8485 - SCRIPTS: add the slack channel URL to the announce script
8486 - CLEANUP: remove my name and address from the copyright banner
8487 - DOC: mention in the readme that 1.9 is a stable version now
8488
Willy Tarreau2a7d6502018-12-16 22:35:06 +010084892018/12/16 : 1.9-dev11
8490 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
8491 - REGTEST/MINOR: remove double body specification for server txresp
8492 - BUG/MEDIUM: connections: Remove error flags when retrying.
8493 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
8494 - REGTEST/MINOR: remove health-check that can make the test fail
8495 - DOC: clarify that check-sni needs an argument.
8496 - DOC: refer to check-sni in the documentation of sni
8497 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
8498 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
8499 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
8500 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
8501 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
8502 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
8503 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
8504 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
8505 - MINOR: hpack: simplify the len to bytes conversion
8506 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
8507 - MINOR: hpack: optimize header encoding for short names
8508 - CONTRIB: hpack: add a compressed stream generator for the encoder
8509 - MEDIUM: hpack: make it possible to encode any static header name
8510 - MINOR: hpack: move the length computation and encoding functions to .h
8511 - MINOR: hpack: provide a function to encode a short indexed header
8512 - MINOR: hpack: provide a function to encode a long indexed header
8513 - MINOR: hpack: provide new functions to encode the ":status" header
8514 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
8515 - MINOR: hpack: provide a function to encode an HTTP method
8516 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
8517 - MINOR: hpack: provide a function to encode an HTTP scheme
8518 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
8519 - MINOR: hpack: provide a function to encode an HTTP path
8520 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
8521 - REGTEST: add the HTTP rules test involving HTX processing
8522 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
8523 - MEDIUM: cli: rework the CLI proxy parser
8524 - MINOR: cli: parse prompt command in the CLI proxy
8525 - MINOR: cli: implements 'quit' in the CLI proxy
8526 - BUG/MINOR: cli: wait for payload data even without prompt
8527 - MEDIUM: cli: handle payload in CLI proxy
8528 - MINOR: cli: use pcli_flags for prompt activation
8529 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
8530 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
8531 - MINOR: cache: Register the cache as a data filter only if response is cacheable
8532 - MEDIUM: cache/htx: Add the HTX support into the cache
8533 - MINOR: cache: Improve and simplify the cache configuration check
8534 - MINOR: filters: Export the name of known filters
8535 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
8536 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
8537 - REORG: htx: merge types+proto into common/htx.h
8538 - REORG: http: create http_msg.c to place there some legacy HTTP parts
8539 - REORG: h1: move legacy http functions to http_msg.c
8540 - REORG: h1: move the h1_state definition to proto_http
8541 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
8542 - REORG: h1: merge types+proto into common/h1.h
8543 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
8544 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
8545 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
8546 - BUG/MINOR: mux-h2: refrain from muxing during the preface
8547 - BUG/MINOR: mux-h2: advertise a larger connection window size
8548 - DOC: master CLI documentation in management.txt
8549 - MINOR: mux-h2: avoid copying large blocks into full buffers
8550 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
8551 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
8552 - MINOR: cli: change 'show proc' output of old processes
8553 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
8554 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
8555 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
8556 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
8557 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
8558 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
8559 - REGTEST: the cache regtest requires haproxy 1.9
8560 - MEDIUM: cli: store CLI level in the appctx
8561 - MEDIUM: cli: show and change CLI permissions
8562 - CLEANUP: cli: use dedicated define instead of appctx ones
8563 - MEDIUM: cli: handle CLI level from the master CLI
8564 - BUG/MEDIUM: cli: handle correctly prefix and payload
8565 - BUILD: Makefile: Implements the help target
8566 - REGTESTS: adjust the http-rules regtest to support window updates
8567 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
8568 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
8569 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
8570 - MEDIUM: mux: Add an optional "reset" method.
8571 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
8572 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
8573 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
8574 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
8575 - MEDIUM: htx: Try to take a connection over if it has no owner.
8576 - REGTEST: Reg testing improvements.
8577 - REGTEST: Add a first test for health-checks.
8578 - REGTEST: Reg test for "check" health-check option.
8579 - REGTEST: level 1 health-check test 2.
8580 - REGTEST: Add miscellaneous reg tests for health-checks.
8581 - REGTEST: add a few HTTP messaging tests
8582 - MINOR: lb: make the leastconn algorithm more accurate
8583 - REGTEST: fix missing space in checks/s00001
8584 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
8585 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
8586 - MINOR: connection: realign empty buffers in muxes, not transport layers
8587 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
8588 - MINOR: backend: count the number of connect and reuse per server and per backend
8589 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
8590 - MINOR: tools: increase the number of ITOA strings to 16
8591 - MINOR: cache: report the number of cache lookups and cache hits
8592 - MEDIUM: tasks: check the global task mask instead of the thread number
8593 - MINOR: mworker: set all_threads_mask and pid_bit to 1
8594 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
8595 - BUG/MINOR: stats: Parse post data for HTX streams
8596 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
8597 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
8598 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
8599 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
8600 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
8601 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
8602 - MINOR: lua: Remove useless check on the messages state in HTTP functions
8603 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
8604 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
8605 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
8606 - MINOR: cli: implements 'reload' on master CLI
8607 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
8608 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
8609 - BUG/MAJOR: backend: only update server's counters when the server exists
8610 - MINOR: tools: preset the port of fd-based "sockets" to zero
8611 - BUG/MINOR: log: fix logging to both FD and IP
8612 - REGTEST: Add a reg test for HTTP cookies.
8613 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
8614 - BUILD: thread: properly report multi-thread support
8615 - BUG/MINOR: logs: leave startup-logs global and not per-thread
8616 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
8617 - BUG/MAJOR: compression/cache: Make it really works with these both filters
8618 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
8619 - MEDIUM: proxy: Set http-reuse safe as default.
8620 - MEDIUM: servers: Add a command to limit the number of idling connections.
8621 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
8622 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
8623 - MEDIUM: mux: provide the session to the init() and attach() method.
8624 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
8625 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
8626 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
8627 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
8628 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
8629 - MINOR: pools: Cast to volatile int * instead of int *.
8630 - MINOR: debug: make the ABORT_NOW macro use a volatile int
8631 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
8632 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
8633 - DOC: clarify the agent-check status line syntax
8634 - BUG/MAJOR: hpack: fix length check for short names encoding
8635 - DOC: split the README into README + INSTALL
8636
Willy Tarreau72e92272018-12-08 16:20:55 +010086372018/12/08 : 1.9-dev10
8638 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
8639 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
8640 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
8641 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
8642 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
8643 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
8644 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
8645 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
8646 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
8647 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
8648 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
8649 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
8650 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
8651 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
8652 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
8653 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
8654 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
8655 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
8656 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
8657 - BUG/MEDIUM: h1: Correctly report used data with no len.
8658 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
8659 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
8660 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
8661 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
8662 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
8663 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
8664 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
8665 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
8666 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
8667 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
8668 - MEDIUM: channel/htx: Add functions for forward HTX data
8669 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
8670 - CLEANUP: htx: Fix indentation here and there in HTX files
8671 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
8672 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
8673 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
8674 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
8675 - BUG/MEDIUM: mworker: stop every tasks in the master
8676 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
8677 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
8678 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
8679 - MINOR: stream-int: add a new blocking condition on the remote connection
8680 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
8681 - BUG/MEDIUM: lua: block on remote connection establishment
8682 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
8683 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
8684 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
8685 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
8686 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
8687 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
8688 - REGTEST: Move LUA reg test 4 to level 1.
8689 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
8690 - MEDIUM: ist: always turn header names to lower case
8691 - MINOR: h2: don't turn HTX header names to lower case anymore
8692 - MEDIUM: ist: use local conversion arrays to case conversion
8693 - MINOR: htx: switch to case sensitive search of lower case header names
8694 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
8695 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
8696 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
8697 - REGTEST: add a basic test for HTTP rules manipulating headers
8698 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
8699 - MINOR: sample: add bc_http_major
8700 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
8701 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
8702 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
8703 - MINOR: compiler: add a new macro ALREADY_CHECKED()
8704 - BUILD: h2: mark the start line already checked to avoid warnings
8705 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
8706
Willy Tarreauda7e3be2018-12-02 19:31:37 +010087072018/12/02 : 1.9-dev9
8708 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
8709 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
8710 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
8711 - MINOR: compression: always create the compression pool
8712 - BUG/MEDIUM: mworker: fix FD leak upon reload
8713 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
8714 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
8715 - MINOR: initcall: introduce a way to register init functions to call at boot
8716 - MINOR: init: process all initcalls in order at boot time
8717 - MEDIUM: init: convert all trivial registration calls to initcalls
8718 - MINOR: thread: provide a set of lock initialisers
8719 - MINOR: threads: add new macros to declare self-initializing locks
8720 - MEDIUM: init: use self-initializing spinlocks and rwlocks
8721 - MINOR: initcall: apply initcall to all register_build_opts() calls
8722 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
8723 - MINOR: initcall: use initcalls for section parsers
8724 - MINOR: memory: add a callback function to create a pool
8725 - MEDIUM: init: use initcall for all fixed size pool creations
8726 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
8727 - MEDIUM: initcall: use initcalls for a few initialization functions
8728 - MEDIUM: memory: make the pool cache an array and not a thread_local
8729 - MINOR: ssl: free ctx when libssl doesn't support NPN
8730 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
8731 - MINOR: h2: make struct h2_ops static
8732 - BUG/MEDIUM: mworker: avoid leak of client socket
8733 - REORG: mworker: declare master variable in global.h
8734 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
8735 - CLEANUP: http: Fix typo in init_http's comment
8736 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
8737 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
8738 - REGTEST/MINOR: script: add run-regtests.sh script
8739 - REGTEST: Add a basic test for the cache.
8740 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
8741 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
8742 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
8743 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
8744 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
8745 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
8746 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
8747 - REGTEST: Fix several issues.
8748 - REGTEST: lua: check socket functionality from a lua-task
8749 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
8750 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
8751 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
8752 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
8753 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
8754 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
8755 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
8756 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
8757 - MAJOR: sessions: Store multiple outgoing connections in the session.
8758 - MEDIUM: session: Steal owner-less connections on end of transaction.
8759 - MEDIUM: server: Be smarter about deciding to reuse the last server.
8760 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
8761 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
8762 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
8763 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
8764 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
8765 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
8766 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
8767 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
8768 - BUG/MINOR: connection: report mux modes when HTX is supported
8769 - MINOR: htx: add a function to cut the beginning of a DATA block
8770 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
8771 - MINOR: mux-h1: Implement get_cs_info() callback
8772 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
8773 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
8774 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
8775 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
8776 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
8777 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
8778 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
8779 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
8780 - MINOR: htx: Add function to add an HTX block just before another one
8781 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
8782 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
8783 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
8784 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
8785 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
8786 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
8787 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
8788 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
8789 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
8790 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
8791 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
8792 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
8793 - MINOR: proto_htx: Send valid HTX message to send 30x responses
8794 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
8795 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
8796 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
8797 - MINOR: mux-h1: Capture bad H1 messages
8798 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
8799 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
8800 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
8801 - MEDIUM: compression: Adapt to be compatible with the HTX representation
8802 - MINOR: h2: implement H2->HTX request header frame transcoding
8803 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
8804 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
8805 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
8806 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
8807 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
8808 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
8809 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
8810 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
8811 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
8812 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
8813 - MINOR: listener: the mux_proto entry in the bind_conf is const
8814 - MINOR: connection: create conn_get_best_mux_entry()
8815 - MINOR: server: the mux_proto entry in the server is const
8816 - MINOR: config: make sure to associate the proper mux to bind and servers
8817 - MINOR: hpack: add ":path" to the list of common header fields
8818 - MINOR: h2: add new functions to produce an HTX message from an H2 response
8819 - MINOR: mux-h2: mention that the mux is compatible with both sides
8820 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
8821 - MEDIUM: mux-h2: start to create the outgoing mux
8822 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
8823 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
8824 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
8825 - MEDIUM: mux-h2: Implement h2_attach().
8826 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
8827 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
8828 - MINOR: connection: Fix a comment.
8829 - MINOR: mux: add a "max_streams" method.
8830 - MEDIUM: servers: Add a way to keep idle connections alive.
8831 - CLEANUP: fix typos in the htx subsystem
8832 - CLEANUP: Fix typo in the chunk headers file
8833 - CLEANUP: Fix typos in the h1 subsystem
8834 - CLEANUP: Fix typos in the h2 subsystem
8835 - CLEANUP: Fix a typo in the mini-clist header
8836 - CLEANUP: Fix a typo in the proto_htx subsystem
8837 - CLEANUP: Fix typos in the proto_tcp subsystem
8838 - CLEANUP: Fix a typo in the signal subsystem
8839 - CLEANUP: Fix a typo in the session subsystem
8840 - CLEANUP: Fix a typo in the queue subsystem
8841 - CLEANUP: Fix typos in the shctx subsystem
8842 - CLEANUP: Fix typos in the socket pair protocol subsystem
8843 - CLEANUP: Fix typos in the map management functions
8844 - CLEANUP: Fix typo in the fwrr subsystem
8845 - CLEANUP: Fix typos in the cli subsystem
8846 - CLEANUP: Fix typo in the 51d subsystem
8847 - CLEANUP: Fix a typo in the base64 subsystem
8848 - CLEANUP: Fix a typo in the connection subsystem
8849 - CLEANUP: Fix a typo in the protocol header file
8850 - CLEANUP: Fix a typo in the checks header file
8851 - CLEANUP: Fix typos in the file descriptor subsystem
8852 - CLEANUP: Fix a typo in the listener subsystem
8853 - BUG/MINOR: lb-map: fix unprotected update to server's score
8854 - BUILD: threads: fix minor build warnings when threads are disabled
8855
Willy Tarreau0b936ad2018-11-25 09:16:46 +010088562018/11/25 : 1.9-dev8
8857 - REORG: config: extract the global section parser into cfgparse-global
8858 - REORG: config: extract the proxy parser into cfgparse-listen.c
8859 - BUILD: update the list of supported targets and compilers in makefile and readme
8860 - BUILD: reorder the objects in the makefile
8861 - BUILD: Makefile: make "V=1" show some of the commands that are executed
8862 - BUILD: Makefile: add the quiet mode to a few more targets
8863 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
8864 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
8865 - MINOR: cli: format `show proc` to be more readable
8866 - MINOR: cli: displays uptime in `show proc`
8867 - MINOR: cli: show master information in 'show proc'
8868 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
8869 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
8870 - BUG/MINOR: mux-h1: Enable keep-alive on server side
8871 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
8872 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
8873 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
8874 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
8875 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
8876 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
8877 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
8878 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
8879 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
8880 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
8881 - MEDIUM: mworker: wait mode use standard init code path
8882 - MINOR: log: introduce ha_notice()
8883 - MINOR: mworker: use ha_notice to announce a new worker
8884 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
8885 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
8886 - MEDIUM: signal: signal_unregister() removes every handlers
8887 - BUG/MEDIUM: mworker: unregister the signals of main()
8888 - MINOR: cli: add a few missing includes in proto/cli.h
8889 - REORG: time/activity: move activity measurements to activity.{c,h}
8890 - MINOR: activity: report the average loop time in "show activity"
8891 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
8892 - MEDIUM: tasks: collect per-task CPU time and latency
8893 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
8894 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
8895 - BUG/MINOR: cli: Fix memory leak
8896 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
8897 - MINOR: poller: move the call of tv_update_date() back to the pollers
8898 - MINOR: polling: add an option to support busy polling
8899 - MINOR: server: Add "alpn" and "npn" keywords.
8900 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
8901 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
8902 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
8903 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
8904 - REGTEST: add the option to test only a specific set of files
8905 - REGTEST: add a test for connections to a "dispatch" address
8906 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
8907 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
8908 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
8909 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
8910 - MEDIUM: servers: Store the connection in the SI until we have a mux.
8911 - BUG/MEDIUM: h2: wake the processing task up after demuxing
8912 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
8913
Willy Tarreau5c0e41b2018-11-18 22:33:00 +010089142018/11/18 : 1.9-dev7
8915 - BUILD: cache: fix a build warning regarding too large an integer for the age
8916 - CLEANUP: fix typos in the comments of the Makefile
8917 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
8918 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
8919 - CLEANUP: fix typos in comments for contrib/spoa_example
8920 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
8921 - DOC: Fix typos in README and CONTRIBUTING
8922 - MINOR: log: slightly improve error message syntax on log failure
8923 - DOC: logs: the format directive was missing from the second log part
8924 - MINOR: log: report the number of dropped logs in the stats
8925 - MEDIUM: log: add support for logging to existing file descriptors
8926 - MEDIUM: log: support a new "short" format
8927 - MEDIUM: log: add a new "raw" format
8928 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
8929 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
8930 - MINOR: namespaces: don't build namespace.c if disabled
8931 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
8932 - MINOR: http: Add new "early-hint" http-request action.
8933 - MINOR: http: Make new "early-hint" http-request action really be parsed.
8934 - MINOR: http: Implement "early-hint" http request rules.
8935 - MINOR: doc: Add information about "early-hint" http-request action.
8936 - DOC: early-hints: fix truncated line.
8937 - MINOR: mworker: only close std{in,out,err} in daemon mode
8938 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
8939 - BUG/MEDIUM: Make sure stksess is properly aligned.
8940 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
8941 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
8942 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
8943 - CONTRIB: debug: fix build related to conn_stream flags change
8944 - REGTEST: fix scripts 1 and 3 to accept development version
8945 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
8946 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
8947 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
8948 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
8949 - MEDIUM: jobs: support unstoppable jobs for soft stop
8950 - MEDIUM: listeners: support unstoppable listener
8951 - MEDIUM: cli: worker socketpair is unstoppable
8952 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
8953 - MINOR: stream: move the conn_stream specific calls to the stream-int
8954 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
8955 - CLEANUP: h2: minimum documentation for recent API changes
8956 - MINOR: mux: implement a get_first_cs() method
8957 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
8958 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
8959 - MINOR: stream-int: expand the flags to 32-bit
8960 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
8961 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
8962 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
8963 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
8964 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
8965 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
8966 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
8967 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
8968 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
8969 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
8970 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
8971 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
8972 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
8973 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
8974 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
8975 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
8976 - MEDIUM: connections: Wait until the connection is established to try to recv.
8977 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
8978 - MINOR: mux: Add a new "avail_streams" method.
8979 - MINOR: mux: Add a destroy() method.
8980 - MINOR: sessions: Start to store the outgoing connection in sessions.
8981 - MAJOR: connections: Detach connections from streams.
8982 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
8983 - MINOR: htx: Add proto_htx.c file
8984 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
8985 - MINOR: http: Add standalone functions to parse a start-line or a header
8986 - MINOR: http: Call http_send_name_header with the stream instead of the txn
8987 - MINOR: conn_stream: Add a flag to notify the SI some data were received
8988 - MINOR: http: Add macros to check if a stream uses the HTX representation
8989 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
8990 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
8991 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
8992 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
8993 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
8994 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
8995 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
8996 - MINOR: proto_htx: Add some functions to handle HTX messages
8997 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
8998 - MINOR: http_htx: Add functions to replace part of the start-line
8999 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
9000 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
9001 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
9002 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
9003 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
9004 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
9005 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
9006 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
9007 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
9008 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
9009 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
9010 - MINOR: proto_htx: Add functions htx_send_name_header
9011 - MINOR: proto_htx: Add functions htx_perform_server_redirect
9012 - MINOR: proto_htx: Add functions to handle the stats applet
9013 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
9014 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
9015 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
9016 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
9017 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
9018 - MINOR: http_fetch: Add smp_prefetch_htx
9019 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
9020 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
9021 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
9022 - MINOR: stream: Don't reset sov value with HTX messages
9023 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
9024 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
9025 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
9026 - CLEANUP: Fix some typos in the haproxy subsystem
9027 - CLEANUP: Fix typos in the dns subsystem
9028 - CLEANUP: Fix typos in the pattern subsystem
9029 - CLEANUP: fix 2 typos in the xxhash subsystem
9030 - CLEANUP: fix a few typos in the comments of the server subsystem
9031 - CLEANUP: fix a misspell in tests/filltab25.c
9032 - CLEANUP: fix a typo found in the stream subsystem
9033 - CLEANUP: fix typos in comments in ebtree
9034 - CLEANUP: fix typos in reg-tests
9035 - CLEANUP: fix typos in the comments of the vars subsystem
9036 - CLEANUP: fix typos in the hlua_fcn subsystem
9037 - CLEANUP: fix typos in the proto_http subsystem
9038 - CLEANUP: fix typos in the proxy subsystem
9039 - CLEANUP: fix typos in the ssl_sock subsystem
9040 - DOC: Fix typos in different subsections of the documentation
9041 - DOC: fix a few typos in the documentation
9042 - MINOR: Fix an error message thrown when we run out of memory
9043 - MINOR: Fix typos in error messages in the proxy subsystem
9044 - MINOR: fix typos in the examples files
9045 - CLEANUP: Fix a typo in the stats subsystem
9046 - CLEANUP: Fix typos in the acl subsystem
9047 - CLEANUP: Fix typos in the cache subsystem
9048 - CLEANUP: Fix typos in the cfgparse subsystem
9049 - CLEANUP: Fix typos in the filters subsystem
9050 - CLEANUP: Fix typos in the http subsystem
9051 - CLEANUP: Fix typos in the log subsystem
9052 - CLEANUP: Fix typos in the peers subsystem
9053 - CLEANUP: Fix typos in the regex subsystem
9054 - CLEANUP: Fix typos in the sample subsystem
9055 - CLEANUP: Fix typos in the spoe subsystem
9056 - CLEANUP: Fix typos in the standard subsystem
9057 - CLEANUP: Fix typos in the stick_table subsystem
9058 - CLEANUP: Fix typos in the task subsystem
9059 - MINOR: Fix typo in error message in the standard subsystem
9060 - CLEANUP: fix typos in the comments of hlua
9061 - MINOR: Fix typo in the error 500 output of hlua
9062 - MINOR: Fix a typo in a warning message in the spoe subsystem
9063
Willy Tarreau96079492018-11-11 10:43:39 +010090642018/11/11 : 1.9-dev6
9065 - BUG/MEDIUM: tools: fix direction of my_ffsl()
9066 - BUG/MINOR: cli: forward the whole command on master CLI
9067 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
9068 - MINOR: compat: automatically detect support for crypt_r()
9069 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
9070 - DOC: split the http-request actions in their own section
9071 - DOC: split the http-response actions in their own section
9072 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
9073 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
9074 - MINOR: stats: report the number of active jobs and listeners in "show info"
9075 - MINOR: stats: report the number of active peers in "show info"
9076 - MINOR: stats: report the number of currently connected peers
9077 - MINOR: cli: show the number of reload in 'show proc'
9078 - MINOR: cli: can't connect to the target CLI
9079 - MEDIUM: mworker: does not create the CLI proxy when no listener
9080 - MINOR: mworker: displays more information when leaving
9081 - MEDIUM: mworker: exit with the incriminated exit code
9082 - MINOR: mworker: displays a message when a worker is forked
9083 - MEDIUM: mworker: leave when the master die
9084 - CLEANUP: stream-int: retro-document si_cs_io_cb()
9085 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
9086 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
9087 - BUG/MEDIUM: cli: crash when trying to access a worker
9088 - DOC: restore note about "independant" typo
9089 - MEDIUM: stream: implement stream_buf_available()
9090 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
9091 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
9092 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
9093 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
9094 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
9095 - MINOR: stream-int: make it clear that si_ops cannot be null
9096 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
9097 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
9098 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
9099 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
9100 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
9101 - MINOR: stream-int: replace si_update() with si_update_both()
9102 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
9103 - CLEANUP: stream-int: remove the now unused si->update() function
9104 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
9105 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
9106 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
9107
Willy Tarreaubddf2922018-10-28 20:39:31 +010091082018/10/28 : 1.9-dev5
9109 - BUILD: Makefile: add the new ERR variable to force -Werror
9110 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
9111 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
9112 - CLEANUP: http: Remove the unused function http_find_header
9113 - MINOR: h1: Export some functions parsing the value of some HTTP headers
9114 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
9115 - MINOR: proxy: add a new option "http-use-htx"
9116 - BUG/MEDIUM: pools: fix the minimum allocation size
9117 - MINOR: shctx: Shared objects block by block allocation.
9118 - MINOR: cache: Larger HTTP objects caching.
9119 - MINOR: shctx: Add a maximum object size parameter.
9120 - MINOR: cache: Add "max-object-size" option.
9121 - DOC: Update about the cache support for big objects.
9122 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
9123 - BUG/MINOR: cache: Wrong usage of shctx_init().
9124 - BUG/MINOR: ssl: Wrong usage of shctx_init().
9125 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
9126 - MINOR: shctx: Change max. object size type to unsigned int.
9127 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
9128 - CLEANUP: tools: fix misleading comment above function LIM2A
9129 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
9130 - BUG/MINOR: only mark connections private if NTLM is detected
9131 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
9132 - MINOR: stream: don't prune variables if the list is empty
9133 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
9134 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
9135 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
9136 - MEDIUM: stream: don't try to send first in process_stream()
9137 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
9138 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
9139 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
9140 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
9141 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
9142 - MINOR: mworker: number of reload in the life of a worker
9143 - MEDIUM: mworker: each worker socketpair is a CLI listener
9144 - REORG: mworker: move struct mworker_proc to global.h
9145 - MINOR: server: export new_server() function
9146 - MEDIUM: mworker: move proc_list gen before proxies startup
9147 - MEDIUM: mworker: add proc_list in global.h
9148 - MEDIUM: mworker: proxy for the master CLI
9149 - MEDIUM: mworker: create CLI listeners from argv[]
9150 - MEDIUM: cli: disable some keywords in the master
9151 - MEDIUM: mworker: find the server ptr using a CLI prefix
9152 - MEDIUM: cli: 'show proc' displays processus
9153 - MEDIUM: cli: implement 'mode cli' proxy analyzers
9154 - MINOR: cli: displays sockpair@ in "show cli sockets"
9155 - MEDIUM: cli: enable "show cli sockets" for the master
9156 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
9157 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
9158 - MEDIUM: mworker: stop the master proxy in the workers
9159 - MEDIUM: channel: reorder the channel analyzers for the cli
9160 - MEDIUM: cli: write a prompt for the CLI proxy of the master
9161 - MINOR: cli: helper to write an response message and close
9162 - MINOR: cache: Add "Age" header.
9163 - REGTEST: make the IP+port logging test more reliable
9164 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
9165 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
9166 - BUG/MINOR: backend: assign the wait list after the error check
9167
Willy Tarreau01fbe742018-10-21 20:28:30 +020091682018/10/21 : 1.9-dev4
9169 - BUILD: Allow configuration of pcre-config path
9170 - DOC: clarify force-private-cache is an option
9171 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
9172 - REORG: http: move the code to different files
9173 - REORG: http: move HTTP rules parsing to http_rules.c
9174 - CLEANUP: http: remove some leftovers from recent cleanups
9175 - BUILD: Makefile: add a "make opts" target to simply show the build options
9176 - BUILD: Makefile: speed up compiler options detection
9177 - BUG/MINOR: backend: check that the mux installed properly
9178 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
9179 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
9180 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
9181 - MINOR: ssl: cleanup old openssl API call
9182 - MINOR: ssl: generate-certificates for BoringSSL
9183 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
9184 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
9185 - CLEANUP: haproxy: Remove unused variable
9186 - CLEANUP: h1: Fix debug warnings for h1 headers
9187 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
9188 - MEDIUM: task: perform a single tree lookup per run queue batch
9189 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
9190 - BUG/MINOR: threads: move declaration of capabilities to config.h
9191 - OPTIM: tools: optimize my_ffsl() for x86_64
9192 - BUG/MINOR: h2: null-deref
9193 - BUG/MINOR: checks: queues null-deref
9194 - MINOR: connections: Introduce an unsubscribe method.
9195 - MEDIUM: connections: Change struct wait_list to wait_event.
9196 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
9197 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
9198 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
9199 - MINOR: http: Move comment about some HTTP macros in the right header file
9200 - MINOR: stats: Add missing include
9201 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
9202 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
9203 - MEDIUM: http: Ignore http-tunnel option on backend
9204 - MINOR: http: Use same flag for httpclose and forceclose options
9205 - MINOR: h1: Add EOH marker during headers parsing
9206 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
9207 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
9208 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
9209 - MINOR: log: make sess_log() support sess=NULL
9210 - MINOR: chunk: add chunk_cpy() and chunk_cat()
9211 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
9212 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
9213 - MINOR: h2: don't try to send data before preface
9214 - MINOR: h2: unify the mux init function
9215 - MINOR: h2: retrieve the front proxy from the caller instead of the session
9216 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
9217 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
9218 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
9219 - BUG/MEDIUM: stream: don't crash on out-of-memory
9220 - BUILD: compiler: add a new statement "__unreachable()"
9221 - BUILD: lua: silence some compiler warnings about potential null derefs
9222 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
9223 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
9224 - BUILD: stick-table: make sure not to fail on task_new() during initialization
9225 - BUILD: peers: check allocation error during peers_init_sync()
9226 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
9227 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
9228 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
9229 - MAJOR: tasks: create per-thread wait queues
9230 - OPTIM: tasks: group all tree roots per cache line
9231 - DOC: Fix a few typos
9232 - MINOR: pools: allocate most memory pools from an array
9233 - MINOR: pools: split pool_free() in the lockfree variant
9234 - MEDIUM: pools: implement a thread-local cache for pool entries
9235 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
9236 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
9237 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
9238 - MINOR: lua: all functions calling lua_yieldk() may return
9239 - BUILD: lua: silence some compiler warnings after WILL_LJMP
9240 - BUILD: Makefile: silence an option conflict warning with clang
9241 - MINOR: server: Use memcpy() instead of strncpy().
9242 - CLEANUP: state-file: make the path concatenation code a bit more consistent
9243 - MINOR: build: Disable -Wstringop-overflow.
9244 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
9245 - MINOR: peers: use defines instead of enums to appease clang.
9246 - DOC: fix reference to map files in MAINTAINERS
9247 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
9248 - MINOR: poller: move time and date computation out of the pollers
9249 - BUILD: memory: fix pointer declaration for atomic CAS
9250 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
9251 - MINOR: time: add now_mono_time() and now_cpu_time()
9252 - MEDIUM: time: measure the time stolen by other threads
9253 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
9254 - BUILD: compiler: rename __unreachable() to my_unreachable()
9255 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
9256 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
9257 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
9258 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
9259 - BUG/MEDIUM: stream: Make sure polling is right on retry.
9260 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
9261 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
9262 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
9263 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
9264 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
9265 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
9266
Willy Tarreau27010f02018-09-29 20:17:33 +020092672018/09/29 : 1.9-dev3
9268 - BUG/MINOR: h1: don't consider the status for each header
9269 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
9270 - MINOR: h1: parse the Connection header field
9271 - DOC: Fix typos in lua documentation
9272 - MINOR: h1: Add H1_MF_XFER_LEN flag
9273 - MINOR: http: add http_hdr_del() to remove a header from a list
9274 - MINOR: h1: add headers to the list after controls, not before
9275 - MEDIUM: h1: better handle transfer-encoding vs content-length
9276 - MEDIUM: h1: deduplicate the content-length header
9277 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
9278 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
9279 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
9280 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
9281 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
9282 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
9283 - MINOR: stream-int: make si_appctx() never fail
9284 - BUILD: ssl_sock: remove build warnings on potential null-derefs
9285 - BUILD: stats: remove build warnings on potential null-derefs
9286 - BUILD: stream: address null-deref build warnings at -Wextra
9287 - BUILD: http: address a couple of null-deref warnings at -Wextra
9288 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
9289 - BUILD: dns: fix null-deref build warning at -Wextra
9290 - BUILD: checks: silence a null-deref build warning at -Wextra
9291 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
9292 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
9293 - BUILD: sockpair: silence a build warning at -Wextra
9294 - BUILD: build with -Wextra and sort out certain warnings
9295 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
9296 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
9297 - DOC: Update configuration doc about the maximum number of stick counters.
9298 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
9299 - MINOR: h2/stream_interface: Reintroduce te wake() method.
9300 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
9301 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
9302 - MEDIUM: lua: Add stick table support for Lua.
9303
Willy Tarreau253006d2018-09-12 18:59:48 +020093042018/09/12 : 1.9-dev2
9305 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
9306 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
9307 - BUG/MEDIUM: servers: check the queues once enabling a server
9308 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
9309 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
9310 - CLEANUP: backend: Move mux install to call it at only one place
9311 - MINOR: conn_stream: add an tx buffer to the conn_stream
9312 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
9313 - MINOR: backend: Try to find the best mux for outgoing connections
9314 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
9315 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
9316 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
9317 - MINOR: mux: Print the list of existing mux protocols during HA startup
9318 - MEDIUM: checks: use the new rendez-vous point to spread check result
9319 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
9320 - MINOR: threads: remove the previous synchronization point
9321 - MAJOR: server: make server state changes synchronous again
9322 - CLEANUP: server: remove the update list and the update lock
9323 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
9324 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
9325 - MINOR: mux: Change get_mux_proto to get an ist as parameter
9326 - MINOR: mux: Improve the message with the list of existing mux protocols
9327 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
9328 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
9329 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
9330 - BUG/MEDIUM: connection/mux: take care of serverless proxies
9331 - MINOR: queue: make sure the pendconn is released before logging
9332 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
9333 - MINOR: queue: store the queue index in the stream when enqueuing
9334 - MINOR: queue: replace the linked list with a tree
9335 - MEDIUM: add set-priority-class and set-priority-offset
9336 - MEDIUM: queue: adjust position based on priority-class and priority-offset
9337 - DOC: update the roadmap about priority queues
9338 - BUG/MINOR: ssl: empty connections reported as errors.
9339 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
9340 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
9341 - MINOR: connections: Get rid of txbuf.
9342 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
9343 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
9344 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
9345 - MINOR: stream_interface: Give stream_interface its own wait_list.
9346 - MINOR: mux_h2: Don't use h2_send() as a callback.
9347 - MINOR: checks: Add event_srv_chk_io().
9348 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
9349 - BUG/MEDIUM: sessions: Don't use t->state.
9350 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
9351 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
9352 - BUG/MINOR: map: fix map_regm with backref
9353 - DOC: dns: explain set server ... fqdn requires resolver
9354 - DOC: add documentation for prio_class and prio_offset sample fetches.
9355 - DOC: ssl: Use consistent naming for TLS protocols
9356 - DOC: update the layering design notes
9357 - MINOR: tasks: Don't special-case when nbthreads == 1
9358 - MINOR: fd cache: And the thread_mask with all_threads_mask.
9359 - BUG/MEDIUM: lua: socket timeouts are not applied
9360 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
9361 - BUG/MEDIUM: server: update our local state before propagating changes
9362 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
9363 - DOC: server/threads: document which functions need to be called with/without locks
9364 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
9365 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
9366 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
9367 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
9368 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
9369 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
9370 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
9371 - BUG/MEDIUM: connection: don't forget to always delete the list's head
9372 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
9373 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
9374 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
9375 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
9376 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
9377 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
9378 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
9379 - BUG/MEDIUM: connection: don't store recv() result into trash.data
9380 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
9381 - MINOR: chunk: remove impossible tests on negative chunk->data
9382 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
9383 - DOC: Fix spelling error in configuration doc
9384 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
9385 - REGTEST/MINOR: Add a new class of regression testing files.
9386 - BUG/MEDIUM: unix: provide a ->drain() function
9387 - MINOR: connection: make conn_sock_drain() work for all socket families
9388 - BUG/MINOR: lua: Bad HTTP client request duration.
9389 - REGEST/MINOR: Add reg testing files.
9390 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
9391 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
9392 - BUG/MEDIUM: lua: reset lua transaction between http requests
9393 - MINOR: add be_conn_free sample fetch
9394 - MINOR: Add srv_conn_free sample fetch
9395 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
9396 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
9397 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
9398 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
9399 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
9400 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
9401 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
9402 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
9403 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
9404 - MINOR: tools: make date2str_log() take some consts
9405 - MINOR: thread: implement HA_ATOMIC_XADD()
9406 - BUG/MINOR: stream: use atomic increments for the request counter
9407 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
9408 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
9409 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
9410 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
9411 - MINOR: log: make the backend fall back to the frontend when there's no stream
9412 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
9413 - MINOR: log: don't unconditionally pick log info from s->logs
9414 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
9415 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
9416 - MINOR: log: do not dereference a null stream to access captures
9417 - MINOR: log: be sure not to dereference a null stream for a target
9418 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
9419 - MINOR: log: use NULL for the unique_id if there is no stream
9420 - MINOR: log: keep a copy of s->flags early to avoid a dereference
9421 - MINOR: log: use zero as the request counter if there is no stream
9422 - MEDIUM: log: make sess_build_logline() support being called with no stream
9423 - MINOR: log: provide a function to emit a log for a session
9424 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
9425 - BUG/MINOR: h1: fix buffer shift after realignment
9426 - MINOR: connection: make the initialization more consistent
9427 - MINOR: connection: add new function conn_get_proxy()
9428 - MINOR: connection: add new function conn_is_back()
9429 - MINOR: log: One const should be enough.
9430 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
9431 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
9432 - MINOR: snapshot: restart on the event ID and not the stream ID
9433 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
9434 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
9435 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
9436 - MINOR: proxy: add a new generic proxy_capture_error()
9437 - MINOR: http: make the HTTP error capture rely on the generic proxy code
9438 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
9439 - REORG: cli: move the "show errors" handler from http to proxy
9440 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
9441 - MEDIUM: snapshots: dynamically allocate the snapshots
9442 - MEDIUM: snapshot: merge the captured data after the descriptor
9443 - MEDIUM: mworker: remove register/unregister signal functions
9444 - MEDIUM: mworker: use the haproxy poll loop
9445 - BUG/MINOR: mworker: no need to stop peers for each proxy
9446 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
9447 - MEDIUM: mworker: block SIGCHLD until the master is ready
9448 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
9449 - MEDIUM: startup: unify signal init between daemon and mworker mode
9450 - MINOR: mworker: don't deinit the poller fd when in wait mode
9451 - MEDIUM: mworker: master wait mode use its own initialization
9452 - MEDIUM: mworker: replace the master pipe by socketpairs
9453 - MINOR: mworker: keep and clean the listeners
9454 - MEDIUM: threads: close the thread-waker pipe during deinit
9455 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
9456 - REORG: http: move the HTTP semantics definitions to http.h/http.c
9457 - REORG: http: move http_get_path() to http.c
9458 - REORG: http: move error codes production and processing to http.c
9459 - REORG: http: move the log encoding tables to log.c
9460 - REORG: http: move some header value processing functions to http.c
9461 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
9462 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
9463 - MEDIUM: protocol: sockpair protocol
9464 - TESTS: add a python wrapper for sockpair@
9465 - BUG/MINOR: server: Crash when setting FQDN via CLI.
9466 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
9467 - BUILD: fix build without thread
9468 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
9469 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
9470 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
9471 - MEDIUM: connections: Get rid of the recv() method.
9472 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
9473 - MEDIUM: h2: always subscribe to receive if allowed.
9474 - MEDIUM: h2: Don't use a wake() method anymore.
9475 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
9476 - MINOR: connections: Add a "handle" field to wait_list.
9477 - MEDIUM: mux_h2: Revamp the send path when blocking.
9478 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
9479 - MINOR: checks: Give checks their own wait_list.
9480 - MINOR: conn_streams: Remove wait_list from conn_streams.
9481 - REORG: h1: create a new h1m_state
9482 - MINOR: h1: add the restart offsets into struct h1m
9483 - MINOR: h1: remove the unused states from h1m_state
9484 - MINOR: h1: provide a distinct init() function for request and response
9485 - MINOR: h1: add a message flag to indicate that a message carries a response
9486 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
9487 - MINOR: h1: properly pre-initialize err_pos to -2
9488 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
9489 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
9490 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
9491 - MEDIUM: h1: make the parser support a pointer to a start line
9492 - MEDIUM: h1: let the caller pass the initial parser's state
9493 - MINOR: h1: make the message parser support a null <hdr> argument
9494 - MEDIUM: h1: support partial message parsing
9495 - MEDIUM: h1: remove the useless H1_MSG_BODY state
9496 - MINOR: h2: store the HTTP status into the H2S, not the H1M
9497 - MINOR: h1: remove the HTTP status from the H1M struct
9498 - MEDIUM: h1: implement the request parser as well
9499 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
9500 - MINOR: connection: pass the proxy when creating a connection
9501 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
9502 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
9503 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
9504
Willy Tarreau65e94d12018-08-02 18:12:50 +020095052018/08/02 : 1.9-dev1
9506 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
9507 - DOC: cache: update sections and fix some typos
9508 - BUILD/MINOR: deviceatlas: enable thread support
9509 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
9510 - BUG/MEDIUM: ssl: don't allocate shctx several time
9511 - BUG/MEDIUM: cache: bad computation of the remaining size
9512 - BUILD: checks: don't include server.h
9513 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
9514 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
9515 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
9516 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
9517 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
9518 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
9519 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
9520 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
9521 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
9522 - MINOR: config: report when "monitor fail" rules are misplaced
9523 - BUG/MINOR: mworker: fix validity check for the pipe FDs
9524 - BUG/MINOR: mworker: detach from tty when in daemon mode
9525 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
9526 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
9527 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
9528 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
9529 - BUG/MINOR: hpack: fix debugging output of pseudo header names
9530 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
9531 - BUG/MINOR: hpack: reject invalid header index
9532 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
9533 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
9534 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
9535 - BUG/MINOR: h2: try to abort closed streams as soon as possible
9536 - BUG/MINOR: h2: ":path" must not be empty
9537 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
9538 - BUG/MINOR: h2: the TE header if present may only contain trailers
9539 - BUG/MEDIUM: h2: enforce the per-connection stream limit
9540 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
9541 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
9542 - BUG/MINOR: h2: properly check PRIORITY frames
9543 - BUG/MINOR: h2: reject response pseudo-headers from requests
9544 - BUG/MEDIUM: h2: remove connection-specific headers from request
9545 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
9546 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
9547 - BUG/MINOR: action: Don't check http capture rules when no id is defined
9548 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
9549 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
9550 - BUG/MEDIUM: mworker: also close peers sockets in the master
9551 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
9552 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
9553 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
9554 - BUG/MEDIUM: h2: fix handling of end of stream again
9555 - MINOR: mworker: Update messages referencing exit-on-failure
9556 - MINOR: mworker: Improve wording in `void mworker_wait()`
9557 - CONTRIB: halog: Add help text for -s switch in halog program
9558 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
9559 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
9560 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
9561 - DOC: notifications: add precisions about thread usage
9562 - BUG/MEDIUM: lua/notification: memory leak
9563 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
9564 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
9565 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
9566 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
9567 - BUG/MEDIUM: h2: work around a connection API limitation
9568 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
9569 - MINOR: h2: store the demux padding length in the h2c struct
9570 - BUG/MEDIUM: h2: support uploading partial DATA frames
9571 - MINOR: h2: don't demand that a DATA frame is complete before processing it
9572 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
9573 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
9574 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
9575 - BUG/MEDIUM: h2: fix stream limit enforcement
9576 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
9577 - MINOR: sample: add len converter
9578 - BUG: MAJOR: lb_map: server map calculation broken
9579 - BUG: MINOR: http: don't check http-request capture id when len is provided
9580 - MINOR: sample: rename the "len" converter to "length"
9581 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
9582 - DOC/MINOR: intro: typo, wording, formatting fixes
9583 - MINOR: netscaler: respect syntax
9584 - MINOR: netscaler: remove the use of cip_magic only used once
9585 - MINOR: netscaler: rename cip_len to clarify its uage
9586 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
9587 - BUG/MAJOR: netscaler: address truncated CIP header detection
9588 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
9589 - MEDIUM: netscaler: do not analyze original IP packet size
9590 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
9591 - MINOR: spoe: add force-set-var option in spoe-agent configuration
9592 - CONTRIB: iprange: Fix compiler warning in iprange.c
9593 - CONTRIB: halog: Fix compiler warnings in halog.c
9594 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
9595 - MINOR: mux: add flags to describe a mux's capabilities
9596 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
9597 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
9598 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
9599 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
9600 - MINOR: http: adjust the list of supposedly cacheable methods
9601 - MINOR: http: update the list of cacheable status codes as per RFC7231
9602 - MINOR: http: start to compute the transaction's cacheability from the request
9603 - BUG/MINOR: http: do not ignore cache-control: public
9604 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
9605 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
9606 - MINOR: http: add a function to check request's cache-control header field
9607 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
9608 - BUG/MEDIUM: cache: replace old object on store
9609 - BUG/MEDIUM: cache: respect the request cache-control header
9610 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
9611 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
9612 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
9613 - BUG/MEDIUM: h2: properly handle and report some stream errors
9614 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
9615 - DOC/MINOR: configuration: typo, formatting fixes
9616 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
9617 - BUG/MEDIUM: mworker: don't close stdio several time
9618 - MINOR: don't close stdio anymore
9619 - BUG/MEDIUM: http: don't automatically forward request close
9620 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
9621 - MINOR: h2: add a function to report pseudo-header names
9622 - DEBUG: hpack: make hpack_dht_dump() expose the output file
9623 - DEBUG: hpack: add more traces to the hpack decoder
9624 - CONTRIB: hpack: add an hpack decoder
9625 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
9626 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
9627 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
9628 - CLEANUP: rbtree: remove
9629 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
9630 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
9631 - DOC: lua: Fix typos in comments of hlua_socket_receive
9632 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
9633 - BUG/MINOR: lua: Fix return value of Socket.settimeout
9634 - MINOR: dns: Handle SRV record weight correctly.
9635 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
9636 - MINOR: hathreads: add support for gcc < 4.7
9637 - BUILD/MINOR: ancient gcc versions atomic fix
9638 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
9639 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
9640 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
9641 - DOC: clarify the scope of ssl_fc_is_resumed
9642 - CONTRIB: debug: fix a few flags definitions
9643 - BUG/MINOR: poll: too large size allocation for FD events
9644 - MINOR: sample: add date_us sample
9645 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
9646 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
9647 - MINOR: global/threads: move cpu_map at the end of the global struct
9648 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
9649 - MINOR: global: add some global activity counters to help debugging
9650 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
9651 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
9652 - BUG/MEDIUM: fd: maintain a per-thread update mask
9653 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
9654 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
9655 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
9656 - BUG/MEDIUM: threads/mworker: fix a race on startup
9657 - BUG/MINOR: mworker: only write to pidfile if it exists
9658 - MINOR: threads: Fix build when we're not compiling with threads.
9659 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
9660 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
9661 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
9662 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
9663 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
9664 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
9665 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
9666 - CLEANUP: sample: Fix comment encoding of sample.c
9667 - CLEANUP: sample: Fix outdated comment about sample casts functions
9668 - BUG/MINOR: sample: Fix output type of c_ipv62ip
9669 - CLEANUP: Fix typo in ARGT_MSK6 comment
9670 - CLEANUP: standard: Use len2mask4 in str2mask
9671 - MINOR: standard: Add str2mask6 function
9672 - MINOR: config: Add support for ARGT_MSK6
9673 - MEDIUM: sample: Add IPv6 support to the ipmask converter
9674 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
9675 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
9676 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
9677 - MINOR: fd: don't report maxfd in alert messages
9678 - MEDIUM: polling: start to move maxfd computation to the pollers
9679 - CLEANUP: fd/threads: remove the now unused fdtab_lock
9680 - MINOR: poll: more accurately compute the new maxfd in the loop
9681 - CLEANUP: fd: remove the unused "new" field
9682 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
9683 - MEDIUM: select: make use of hap_fd_* functions
9684 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
9685 - MEDIUM: select: don't use the old FD state anymore
9686 - MEDIUM: poll: don't use the old FD state anymore
9687 - MINOR: fd: pass the iocb and owner to fd_insert()
9688 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
9689 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
9690 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
9691 - DOC: don't suggest using http-server-close
9692 - MINOR: introduce proxy-v2-options for send-proxy-v2
9693 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
9694 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
9695 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
9696 - MINOR: spoe: Always link a SPOE context with the applet processing it
9697 - MINOR: spoe: Replace sending_rate by a frequency counter
9698 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
9699 - MEDIUM: spoe: Use an ebtree to manage idle applets
9700 - MINOR: spoa_example: Count the number of frames processed by each worker
9701 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
9702 - MINOR: init: make stdout unbuffered
9703 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
9704 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
9705 - MINOR: compiler: introduce offsetoff().
9706 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
9707 - MINOR: threads: add test and set/reset operations
9708 - MINOR: pools/threads: Implement lockless memory pools.
9709 - MAJOR: fd/threads: Make the fdcache mostly lockless.
9710 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
9711 - MAJOR: fd: compute the new fd polling state out of the fd lock
9712 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
9713 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
9714 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
9715 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
9716 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
9717 - MEDIUM: fd: make updt_fd_polling() use atomics
9718 - MEDIUM: poller: use atomic ops to update the fdtab mask
9719 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
9720 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
9721 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
9722 - MINOR: fd: reorder fd_add_to_fd_list()
9723 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
9724 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
9725 - MINOR: init: emit warning when -sf/-sd cannot parse argument
9726 - BUILD: fd/threads: fix breakage build breakage without threads
9727 - DOC: Describe routing impact of using interface keyword on bind lines
9728 - DOC: Mention -Ws in the list of available options
9729 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
9730 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
9731 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
9732 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
9733 - BUILD/MINOR: memory: stdint is needed for uintptr_t
9734 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
9735 - DOC: lua: new prototype for function "register_action()"
9736 - DOC: cfgparse: Warn on option (tcp|http)log in backend
9737 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
9738 - MINOR: sample: add a new "concat" converter
9739 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
9740 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
9741 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
9742 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
9743 - CLEANUP: cfgparse: Remove unused label end
9744 - CLEANUP: spoe: Remove unused label retry
9745 - CLEANUP: h2: Remove unused labels from mux_h2.c
9746 - CLEANUP: pools: Remove unused end label in memory.h
9747 - CLEANUP: standard: Fix typo in IPv6 mask example
9748 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
9749 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
9750 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
9751 - MINOR: stats: display the number of threads in the statistics.
9752 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
9753 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
9754 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
9755 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
9756 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
9757 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
9758 - MINOR: ssl: extract full pkey info in load_certificate
9759 - MINOR: ssl: add ssl_sock_get_pkey_algo function
9760 - MINOR: ssl: add ssl_sock_get_cert_sig function
9761 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
9762 - MINOR: connection: add proxy-v2-options authority
9763 - MINOR: systemd: Add section for SystemD sandboxing to unit file
9764 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
9765 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
9766 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
9767 - MINOR: h2: provide and use h2s_detach() and h2s_free()
9768 - MEDIUM: h2: use a single buffer allocator
9769 - MINOR/BUILD: fix Lua build on Mac OS X
9770 - BUILD/MINOR: fix Lua build on Mac OS X (again)
9771 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
9772 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
9773 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
9774 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
9775 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
9776 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
9777 - CLEANUP: ssl: Remove a duplicated #include
9778 - CLEANUP: cli: Remove a leftover debug message
9779 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
9780 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
9781 - BUG/MINOR: force-persist and ignore-persist only apply to backends
9782 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
9783 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
9784 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
9785 - TESTS: Add a testcase for multi-port + multi-server listener issue
9786 - CLEANUP: dns: remove duplicate code in src/dns.c
9787 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
9788 - BUG/MINOR: cli: Ensure all command outputs end with a LF
9789 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
9790 - BUILD: ssl: Fix build with OpenSSL without NPN capability
9791 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
9792 - BUG/MINOR: lua: return bad error messages
9793 - CLEANUP: lua/syntax: lua is a name and not an acronym
9794 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
9795 - BUG/MINOR: tcp-check: use the server's service port as a fallback
9796 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
9797 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
9798 - BUILD/BUG: enable -fno-strict-overflow by default
9799 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
9800 - DOC: log: more than 2 log servers are allowed
9801 - MINOR: hash: add new function hash_crc32c
9802 - MINOR: proxy-v2-options: add crc32c
9803 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
9804 - REORG: compact "struct server"
9805 - MINOR: samples: add crc32c converter
9806 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
9807 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
9808 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
9809 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
9810 - BUG/MINOR: lua: the function returns anything
9811 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
9812 - CLEANUP: lua: typo fix in comments
9813 - BUILD/MINOR: fix build when USE_THREAD is not defined
9814 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
9815 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
9816 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
9817 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
9818 - BUILD/MINOR: cli: fix a build warning introduced by last commit
9819 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
9820 - MINOR: h2: always call h2s_detach() in h2_detach()
9821 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
9822 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
9823 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
9824 - BUILD/MINOR: threads: always export thread_sync_io_handler()
9825 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
9826 - MINOR: h2: implement a basic "show_fd" function
9827 - MINOR: cli: report cache indexes in "show fd"
9828 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
9829 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
9830 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
9831 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
9832 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
9833 - BUG/MINOR: cache: fix "show cache" output
9834 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
9835 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
9836 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
9837 - BUG/MINOR: spoe: Register the variable to set when an error occurred
9838 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
9839 - MINOR: spoe: Add metrics in to know time spent in the SPOE
9840 - MINOR: spoe: Add options to store processing times in variables
9841 - MINOR: log: move 'log' keyword parsing in dedicated function
9842 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
9843 - MINOR: spoe: Add loggers dedicated to the SPOE agent
9844 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
9845 - MINOR: spoe: use agent's logger to log SPOE messages
9846 - MINOR: spoe: Add counters to log info about SPOE agents
9847 - BUG/MAJOR: cache: always initialize newly created objects
9848 - MINOR: servers: Support alphanumeric characters for the server templates names
9849 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
9850 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
9851 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
9852 - MINOR: proxy: Add fe_defbe fetcher
9853 - MINOR: config: Warn if resolvers has no nameservers
9854 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
9855 - MINOR: cli: Ensure the CLI always outputs an error when it should
9856 - MEDIUM: sample: Extend functionality for field/word converters
9857 - MINOR: export localpeer as an environment variable
9858 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
9859 - BUILD: sample: avoid build warning in sample.c
9860 - BUG/CRITICAL: h2: fix incorrect frame length check
9861 - DOC: lua: update the links to the config and Lua API
9862 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
9863 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
9864 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
9865 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
9866 - MINOR: h2: detect presence of CONNECT and/or content-length
9867 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
9868 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
9869 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
9870 - MEDIUM: cli: Add payload support
9871 - MINOR: map: Add payload support to "add map"
9872 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
9873 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
9874 - MINOR: sample: Add strcmp sample converter
9875 - MINOR: http: Add support for 421 Misdirected Request
9876 - BUG/MINOR: config: disable http-reuse on TCP proxies
9877 - MINOR: ssl: disable SSL sample fetches when unsupported
9878 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
9879 - BUG/MINOR: checks: Fix check->health computation for flapping servers
9880 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
9881 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
9882 - MINOR: backend: implement random-based load balancing
9883 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
9884 - MINOR: lua: Add server name & puid to LUA Server class.
9885 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
9886 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
9887 - BUG/MEDIUM: task: Don't free a task that is about to be run.
9888 - MINOR: fd: Make the lockless fd list work with multiple lists.
9889 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
9890 - MINOR: pollers: move polled_mask outside of struct fdtab.
9891 - BUG/MINOR: lua: schedule socket task upon lua connect()
9892 - BUG/MINOR: lua: ensure large proxy IDs can be represented
9893 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
9894 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
9895 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
9896 - BUG/MEDIUM: ssl: properly protect SSL cert generation
9897 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
9898 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
9899 - BUG/MEDIUM: spoe: Flags are not encoded in network order
9900 - CLEANUP: spoe: Remove unused variables the agent structure
9901 - DOC: spoe: fix a typo
9902 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
9903 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
9904 - DOC: add some description of the pending rework of the buffer structure
9905 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
9906 - MINOR: lua: Improve error message
9907 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
9908 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
9909 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
9910 - BUG/BUILD: threads: unbreak build without threads
9911 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
9912 - BUG/MEDIUM: lua/socket: Length required read doesn't work
9913 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
9914 - MAJOR: tasks: Create a per-thread runqueue.
9915 - MAJOR: tasks: Introduce tasklets.
9916 - MINOR: tasks: Make the number of tasks to run at once configurable.
9917 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
9918 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
9919 - MINOR: http: Log warning if (add|set)-header fails
9920 - DOC: management: add the new wrew stats column
9921 - MINOR: stats: also report the failed header rewrites warnings on the stats page
9922 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
9923 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
9924 - MINOR: task: Also consider the task list size when getting global tasks.
9925 - MINOR: dns: Implement `parse-resolv-conf` directive
9926 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
9927 - MINOR: task/notification: Is notifications registered ?
9928 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
9929 - BUG/MAJOR: lua: Dead lock with sockets
9930 - BUG/MEDIUM: lua/socket: Notification error
9931 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
9932 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
9933 - DOC: contrib/modsecurity: few typo fixes
9934 - DOC: SPOE.txt: fix a typo
9935 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
9936 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
9937 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
9938 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
9939 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
9940 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
9941 - MINOR: task: Fix a compiler warning by adding a cast.
9942 - MINOR: stats: also report the nice and number of calls for applets
9943 - MINOR: applet: assign the same nice value to a new appctx as its owner task
9944 - MINOR: task: Fix compiler warning.
9945 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
9946 - MINOR: tasks: Don't define rqueue if we're building without threads.
9947 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
9948 - MINOR: lua: Increase debug information
9949 - BUG/MEDIUM: threads: handle signal queue only in thread 0
9950 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
9951 - BUG/MINOR: signals: ha_sigmask macro for multithreading
9952 - BUG/MAJOR: map: fix a segfault when using http-request set-map
9953 - DOC: regression testing: Add a short starting guide.
9954 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
9955 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
9956 - BUG/MINOR: lua: Segfaults with wrong usage of types.
9957 - BUG/MAJOR: ssl: Random crash with cipherlist capture
9958 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
9959 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
9960 - MINOR: tests: First regression testing file.
9961 - MINOR: reg-tests: Add reg-tests/README file.
9962 - MINOR: reg-tests: Add a few regression testing files.
9963 - DOC: Add new REGTEST tag info about reg testing.
9964 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
9965 - MINOR: Some spelling cleanup in the comments.
9966 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
9967 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
9968 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
9969 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
9970 - REGTEST/MINOR: Add levels to reg-tests target.
9971 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
9972 - BUG/BUILD: threads: unbreak build without threads
9973 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
9974 - MINOR: stick-tables: make stktable_release() do nothing on NULL
9975 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
9976 - MINOR: startup: change session/process group settings
9977 - MINOR: systemd: consider exit status 143 as successful
9978 - REGTEST/MINOR: Wrong URI syntax.
9979 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
9980 - CLEANUP: dns: inacurate comment about prefered IP score
9981 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
9982 - MINOR: dns: new DNS options to allow/prevent IP address duplication
9983 - REGTEST/MINOR: Unexpected curl URL globling.
9984 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
9985 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
9986 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
9987 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
9988 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
9989 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
9990 - MINOR: tasklet: Set process to NULL.
9991 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
9992 - MINOR: buffer: switch buffer sizes and offsets to size_t
9993 - MINOR: buffer: add a few basic functions for the new API
9994 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
9995 - MINOR: buffer: Add b_set_data().
9996 - MINOR: buffer: introduce b_realign_if_empty()
9997 - MINOR: compression: pass the channel to http_compression_buffer_end()
9998 - MINOR: channel: add a few basic functions for the new buffer API
9999 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
10000 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
10001 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
10002 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
10003 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
10004 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
10005 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
10006 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
10007 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
10008 - MINOR: buffer: remove bi_ptr()
10009 - MINOR: buffer: remove bo_ptr()
10010 - MINOR: buffer: remove bo_end()
10011 - MINOR: buffer: remove bi_end()
10012 - MINOR: buffer: remove bo_contig_data()
10013 - MINOR: buffer: merge b{i,o}_contig_space()
10014 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
10015 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
10016 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
10017 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
10018 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
10019 - MINOR: h2: clarify the fact that the send functions are unsigned
10020 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
10021 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
10022 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
10023 - MINOR: h1: make h1_measure_trailers() use an offset and a count
10024 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
10025 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
10026 - MINOR: buffer: get rid of b_end() and b_to_end()
10027 - MINOR: buffer: make b_getblk_nc() take const pointers
10028 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
10029 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
10030 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
10031 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
10032 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
10033 - MINOR: connection: add a flags argument to rcv_buf()
10034 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
10035 - MINOR: buffer: get rid of b_ptr() and convert its last users
10036 - MINOR: buffer: use b_room() to determine available space in a buffer
10037 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
10038 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
10039 - MINOR: buffer: make bo_putchar() use b_tail()
10040 - MINOR: buffer: replace buffer_full() with channel_full()
10041 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
10042 - MINOR: buffer: replace buffer_pending() with ci_data()
10043 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
10044 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
10045 - MINOR: buffer: use b_orig() to replace most references to b->data
10046 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
10047 - MINOR: channel: remove almost all references to buf->i and buf->o
10048 - MINOR: channel: Add co_set_data().
10049 - MEDIUM: channel: adapt to the new buffer API
10050 - MINOR: checks: adapt to the new buffer API
10051 - MEDIUM: h2: update to the new buffer API
10052 - MINOR: buffer: remove unused bo_add()
10053 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
10054 - MINOR: stats: adapt to the new buffers API
10055 - MINOR: cli: use the new buffer API
10056 - MINOR: cache: use the new buffer API
10057 - MINOR: stream-int: use the new buffer API
10058 - MINOR: stream: use wrappers instead of directly manipulating buffers
10059 - MINOR: backend: use new buffer API
10060 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
10061 - MINOR: filters: convert to the new buffer API
10062 - MINOR: payload: convert to the new buffer API
10063 - MEDIUM: h1: port to new buffer API.
10064 - MINOR: flt_trace: adapt to the new buffer API
10065 - MEDIUM: compression: start to move to the new buffer API
10066 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
10067 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
10068 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
10069 - MAJOR: start to change buffer API
10070 - MINOR: buffer: remove the check for output on b_del()
10071 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
10072 - MINOR: buffer: rename the "data" field to "area"
10073 - MEDIUM: buffers: move "output" from struct buffer to struct channel
10074 - MINOR: buffer: replace bi_fast_delete() with b_del()
10075 - MINOR: buffer: replace b{i,o}_put* with b_put*
10076 - MINOR: buffer: add a new file for ist + buffer manipulation functions
10077 - MINOR: checks: use b_putist() instead of b_putstr()
10078 - MINOR: buffers: remove b_putstr()
10079 - CLEANUP: buffer: minor cleanups to buffer.h
10080 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
10081 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
10082 - MINOR: buffer: rename the data length member to '->data'
10083 - MAJOR: buffer: finalize buffer detachment
10084 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
10085 - MAJOR: chunks: replace struct chunk with struct buffer
10086 - DOC: buffers: document the new buffers API
10087 - DOC: buffers: remove obsolete docs about buffers
10088 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
10089 - MINOR: connections/mux: Add a new "subscribe" method.
10090 - MEDIUM: connections/mux: Revamp the send direction.
10091 - MINOR: connection: simplify subscription by adding a registration function
10092 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
10093 - BUG/MINOR: build: Fix compilation with debug mode enabled
10094 - BUILD: Generate sha256 checksums in publish-release
10095 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
10096 - MINOR: debug: Add checks for conn_stream flags
10097 - MINOR: ist: Add the function isteqi
10098 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
10099 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
10100 - MINOR: buffers: simplify b_contig_space()
10101 - MINOR: buffers: split b_putblk() into __b_putblk()
10102 - MINOR: buffers: add b_xfer() to transfer data between buffers
10103 - DOC: add some design notes about the new layering model
10104 - MINOR: conn_stream: add a new CS_FL_REOS flag
10105 - MINOR: conn_stream: add an rx buffer to the conn_stream
10106 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
10107 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
10108 - MINOR: h2: make each H2 stream support an intermediary input buffer
10109 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
10110 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
10111 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
10112 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
10113 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
10114 - MEDIUM: h2: perform a single call to the data layer in demux()
10115 - MEDIUM: h2: don't call data_cb->recv() anymore
10116 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
10117 - MEDIUM: h2: use the default conn_stream's receive function
10118 - DOC: add more design feedback on the new layering model
10119 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
10120 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
10121 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
10122 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
10123 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
10124 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
10125 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
10126 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
10127 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
10128 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
10129 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
10130 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
10131 - MINOR: queue: centralize dequeuing code a bit better
10132 - MEDIUM: queue: make pendconn_free() work on the stream instead
10133 - DOC: queue: document the expected locking model for the server's queue
10134 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
10135 - MINOR: queue: use a distinct variable for the assigned server and the queue
10136 - MINOR: queue: implement pendconn queue locking functions
10137 - MEDIUM: queue: get rid of the pendconn lock
10138 - MINOR: tasks: Make active_tasks_mask volatile.
10139 - MINOR: tasks: Make global_tasks_mask volatile.
10140 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
10141 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
10142 - BUG/MEDIUM: threads/sync: use sched_yield when available
10143 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
10144 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
10145 - BUG/MINOR: config: stick-table is not supported in defaults section
10146 - BUILD/MINOR: threads: unbreak build with threads disabled
10147 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
10148 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
10149 - MINOR: threads: move "nbthread" parsing to hathreads.c
10150 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
10151 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
10152 - BUILD/MINOR: compiler: fix offsetof() on older compilers
10153 - SCRIPTS: git-show-backports: add missing quotes to "echo"
10154 - MINOR: threads: add more consistency between certain variables in no-thread case
10155 - MEDIUM: hathreads: implement a more flexible rendez-vous point
10156 - BUG/MEDIUM: cli: make "show fd" thread-safe
10157
Willy Tarreaub3066502017-11-26 19:50:17 +0100101582017/11/26 : 1.9-dev0
10159
Willy Tarreau0b787922017-11-26 19:25:23 +0100101602017/11/26 : 1.8.0
10161 - BUG/MEDIUM: stream: don't automatically forward connect nor close
10162 - BUG/MAJOR: stream: ensure analysers are always called upon close
10163 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
10164 - MEDIUM: mworker: Add systemd `Type=notify` support
10165 - BUG/MEDIUM: cache: free callback to remove from tree
10166 - CLEANUP: cache: remove unused struct
10167 - MEDIUM: cache: enable the HTTP analysers
10168 - CLEANUP: cache: remove wrong comment
10169 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
10170 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
10171 - MINOR: threads/atomic: implement pl_mb() in asm on x86
10172 - MINOR: threads/atomic: implement pl_bts() on non-x86
10173 - MINOR: threads/build: atomic: replace the few inlines with macros
10174 - BUILD: threads/plock: fix a build issue on Clang without optimization
10175 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
10176 - BUILD: compiler: add a new type modifier __maybe_unused
10177 - BUILD: h2: mark some inlined functions "unused"
10178 - BUILD: server: check->desc always exists
10179 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
10180 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
10181 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
10182 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
10183 - BUG/MINOR: systemd: ignore daemon mode
10184 - CONTRIB: spoa_example: allow to compile outside HAProxy.
10185 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
10186 - CONTRIB: spoa_example: remove last dependencies on type "sample"
10187 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
10188 - CLEANUP: cache: reorder includes
10189 - MEDIUM: shctx: use unsigned int for len and block_count
10190 - MEDIUM: cache: "show cache" on the cli
10191 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
10192 - BUG/MEDIUM: cache: refcount forbids to free the objects
10193 - BUG/MEDIUM: cache fix cli_kws structure
10194 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
10195 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
10196 - MINOR: ssl: Don't disable early data handling if we could not write.
10197 - MINOR: pools: prepare functions to override malloc/free in pools
10198 - MINOR: pools: implement DEBUG_UAF to detect use after free
10199 - BUG/MEDIUM: threads/time: fix time drift correction
10200 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
10201 - MINOR: sample: Add "thread" sample fetch
10202 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
10203 - BUG/MINOR: stream: fix tv_request calculation for applets
10204 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
10205 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
10206 - MINOR: ssl: Handle reading early data after writing better.
10207 - MINOR: mux: Make sure every string is woken up after the handshake.
10208 - MEDIUM: cache: store sha1 for hashing the cache key
10209 - MINOR: http: implement the "http-request reject" rule
10210 - MINOR: h2: send RST_STREAM before GOAWAY on reject
10211 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
10212 - MINOR: h2: make use of client-fin timeout after GOAWAY
10213 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
10214 - MINOR: ssl: Handle early data with BoringSSL
10215 - BUG/MEDIUM: stream: always release the stream-interface on abort
10216 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
10217 - MINOR: cache: move the refcount decrease in the applet release
10218 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
10219 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
10220 - MINOR: config: Slightly change how parse_process_number works
10221 - MINOR: config: Export parse_process_number and use it wherever it's applicable
10222 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
10223 - MINOR: config: Add auto-increment feature for cpu-map
10224 - MINOR: config: Support partial ranges in cpu-map directive
10225 - MINOR:: config: Remove thread-map directive
10226 - MINOR: config: Add the threads support in cpu-map directive
10227 - MINOR: config: Add threads support for "process" option on "bind" lines
10228 - MEDIUM: listener: Bind listeners on a thread subset if specified
10229 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
10230 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
10231 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
10232 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
10233 - DOC: update the roadmap file with the latest changes merged in 1.8
10234 - DOC: fix mangled version in peers protocol documentation
10235 - DOC: add initial peers protovol v2.0 documentation.
10236 - DOC: mention William as maintainer of the cache and master-worker
10237 - DOC: add Christopher and Emeric as maintainers of the threads
10238 - MINOR: cache: replace a fprint() by an abort()
10239 - MEDIUM: cache: max-age configuration keyword
10240 - DOC: explain HTTP2 timeout behavior
10241 - DOC: cache: configuration and management
10242 - MAJOR: mworker: exits the master on failure
10243 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
10244 - MINOR: task: keep a pointer to the currently running task
10245 - MINOR: task: align the rq and wq locks
10246 - MINOR: fd: cache-align fdtab and fdcache locks
10247 - MINOR: buffers: cache-align buffer_wq_lock
10248 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
10249 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
10250 - CLEANUP: checks: remove 16 bytes of holes in struct check
10251 - CLEANUP: cache: more efficiently pack the struct cache
10252 - CLEANUP: fd: place the lock at the beginning of struct fdtab
10253 - CLEANUP: pools: align pools on a cache line
10254 - DOC: config: add a few bits about how to configure HTTP/2
10255 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
10256 - BUILD: Makefile: reorder object files by size
10257
Willy Tarreaucfe14662017-11-19 09:55:29 +0100102582017/11/19 : 1.8-rc4
10259 - BUG/MEDIUM: cache: does not cache if no Content-Length
10260 - BUILD: thread/pipe: fix build without threads
10261 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
10262 - MINOR: debug/flags: Add missing flags
10263 - MINOR: threads: Use __decl_hathreads to declare locks
10264 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
10265 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
10266 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
10267 - MINOR: ebtree/scope: add a function to find next node from a parent
10268 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
10269 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
10270 - BUG/MEDIUM: cache: use msg->sov to forward header
10271 - MINOR: cache: forward data with headers
10272 - MINOR: cache: disable cache if shctx_row_data_append fail
10273 - BUG/MINOR: threads: tid_bit must be a unsigned long
10274 - CLEANUP: tasks: Remove useless double test on rq_next
10275 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
10276 - MINOR: tools: add a function to dump a scope-aware tree to a file
10277 - MINOR: tools: improve the DOT dump of the ebtree
10278 - MINOR: tools: emphasize the node being worked on in the tree dump
10279 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
10280 - DOC: peers: Add a first version of peers protocol v2.1.
10281 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
10282 - MINOR: mworker: display an accurate error when the reexec fail
10283 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
10284 - BUG/MEDIUM: mworker: does not deinit anymore
10285 - BUG/MEDIUM: mworker: does not close inherited FD
10286 - MINOR: tests: add a python wrapper to test inherited fd
10287 - BUG/MINOR: Allocate the log buffers before the proxies startup
10288 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
10289 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
10290 - MINOR: applets: Use a bitfield to track applets activity per-thread
10291 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
10292 - MEDIUM: applets: Don't process more than 200 active applets at once
10293 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
10294 - MINOR: SSL: Store the ASN1 representation of client sessions.
10295 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
10296 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
10297
Willy Tarreau34650d52017-11-11 09:06:48 +0100102982017/11/11 : 1.8-rc3
10299 - BUILD: use MAXPATHLEN instead of NAME_MAX.
10300 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
10301 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
10302 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
10303 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
10304 - CLEANUP: checks: remove return statements in locked functions
10305 - BUG/MINOR: cli: add severity in "set server addr" parser
10306 - CLEANUP: server: get rid of return statements in the CLI parser
10307 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
10308 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
10309 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
10310 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
10311 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
10312 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
10313 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
10314 - BUG/MEDIUM: threads: don't try to free build option message on exit
10315 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
10316 - MINOR: add master-worker in the warning about nbproc
10317 - MINOR: mworker: allow pidfile in mworker + foreground
10318 - MINOR: mworker: write parent pid in the pidfile
10319 - MINOR: mworker: do not store child pid anymore in the pidfile
10320 - MINOR: ebtree: implement the scope-aware functions for eb32
10321 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
10322 - MINOR: ebtree: update the eb32sc parent node's scope on delete
10323 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
10324 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
10325 - MAJOR: task: make use of the scope-aware ebtree functions
10326 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
10327 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
10328 - MINOR: threads: use faster locks for the spin locks
10329 - MINOR: tasks: only visit filled task slots after processing them
10330 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
10331 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
10332 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
10333 - DOC: Add note about encrypted password CPU usage
10334 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
10335 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
10336 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
10337 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
10338 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
10339 - BUG/MEDIUM: h2: fix some wrong error codes on connections
10340 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
10341 - BUILD: enable USE_THREAD for Solaris build.
10342 - BUG/MEDIUM: h2: don't close the connection is there are data left
10343 - MINOR: h2: don't re-enable the connection's task when we're closing
10344 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
10345 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
10346 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
10347 - BUG/MINOR: h2: don't send GOAWAY on failed response
10348 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
10349 - BUG/MINOR: comp: fix compilation warning compiling without compression.
10350 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
10351 - BUG/MAJOR: threads/tasks: fix the scheduler again
10352 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
10353 - MINOR: ssl: Handle session resumption with TLS 1.3
10354 - MINOR: ssl: Spell 0x10101000L correctly.
10355 - MINOR: ssl: Handle sending early data to server.
10356 - BUILD: ssl: fix build of backend without ssl
10357 - BUILD: shctx: do not depend on openssl anymore
10358 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
10359 - BUG/MEDIUM: h2: reject non-3-digit status codes
10360 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
10361 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
10362 - BUG/MEDIUM: h2: split the function to send RST_STREAM
10363 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
10364 - MINOR: tools: don't use unlikely() in hex2i()
10365 - BUG/MEDIUM: h2: support orphaned streams
10366 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
10367 - CLEANUP: mux: remove the unused "release()" function
10368 - MINOR: cli: make "show fd" report the fd's thread mask
10369 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
10370 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
10371 - MEDIUM: http: always reject the "PRI" method
10372
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +0100103732017/11/03 : 1.8-rc2
10374 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
10375 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
10376 - MINOR: mux: Only define pipe functions on linux.
10377 - MINOR: cache: Remove useless test for nonzero.
10378 - MINOR: cache: Don't confuse act_return and act_parse_ret.
10379 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
10380 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
10381 - BUG/MAJOR: fix deadlock on healthchecks.
10382 - BUG/MINOR: thread: fix a typo in the debug code
10383 - BUILD: shctx: allow to be built without openssl
10384 - BUG/MEDIUM: cache: don't try to resolve wrong filters
10385 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
10386 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
10387 - BUG/MINOR: stdarg.h inclusion
10388 - BUG/MINOR: dns: fix missing lock protection on server.
10389 - BUG/MINOR: lua: fix missing lock protection on server.
10390 - BUILD: enable USE_THREAD for OpenBSD build.
10391 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
10392 - MINOR: thread: report multi-thread support in haproxy -vv
10393
Willy Tarreau901f75c2017-10-31 23:18:29 +0100103942017/10/31 : 1.8-rc1
10395 - BUG/MEDIUM: server: Allocate tmptrash before using it.
10396 - CONTRIB: trace: add the possibility to place trace calls in the code
10397 - CONTRIB: trace: try to display the function's return value on exit
10398 - CONTRIB: trace: report the base name only for file names
10399 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
10400 - MINOR: ssl: build with recent BoringSSL library
10401 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
10402 - BUG/MINOR: cli: restore "set ssl tls-key" command
10403 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
10404 - IMPORT: sha1: import SHA1 functions
10405 - MINOR: sample: add the sha1 converter
10406 - MINOR: sample: add the hex2i converter
10407 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
10408 - MINOR: ssl: don't abort after sending 16kB
10409 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
10410 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
10411 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
10412 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
10413 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
10414 - BUG/MINOR: checks: Don't forget to release the connection on error case.
10415 - MINOR: buffer: add the buffer input manipulation functions
10416 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
10417 - MEDIUM: cfgparse: post section callback
10418 - MEDIUM: cfgparse: post parsing registration
10419 - MINOR: lua: add uuid to the Class Proxy
10420 - MINOR: hlua: Add regex class
10421 - MINOR: http: Mark the 425 code as "Too Early".
10422 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
10423 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
10424 - MINOR: ssl: generated certificate is missing in switchctx early callback
10425 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
10426 - BUILD: Makefile: disable -Wunused-label
10427 - MINOR: ssl/proto_http: Add keywords to take care of early data.
10428 - BUG/MINOR: lua: const attribute of a string is overridden
10429 - MINOR: ssl: Don't abuse ssl_options.
10430 - MINOR: update proxy-protocol-v2 #define
10431 - MINOR: merge ssl_sock_get calls for log and ppv2
10432 - MINOR: add ALPN information to send-proxy-v2
10433 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
10434 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
10435 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
10436 - REORG: shctx: move lock functions and struct
10437 - MEDIUM: shctx: allow the use of multiple shctx
10438 - REORG: shctx: move ssl functions to ssl_sock.c
10439 - MEDIUM: shctx: separate ssl and shctx
10440 - MINOR: shctx: rename lock functions
10441 - MINOR: h1: store the status code in the H1 message
10442 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
10443 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
10444 - MINOR: action: Add trk_idx inline function
10445 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
10446 - MINOR: action: Add a function pointer in act_rule struct to check its validity
10447 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
10448 - MINOR: action: Add a functions to check http capture rules
10449 - MINOR: action: Factorize checks on rules calling check_ptr if defined
10450 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
10451 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
10452 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
10453 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
10454 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
10455 - MINOR: spoe: Move message encoding in its own function
10456 - MINOR: spoe: Add a type to qualify the message list during encoding
10457 - MINOR: spoe: Add a generic function to encode a list of SPOE message
10458 - MEDIUM: spoe/rules: Process "send-spoe-group" action
10459 - BUG/MINOR: dns: Fix CLI keyword declaration
10460 - MAJOR: dns: Refactor the DNS code
10461 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
10462 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
10463 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
10464 - MINOR: standard: Add memvprintf function
10465 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
10466 - MINOR: cli: Add "show startup-logs" command
10467 - MINOR: startup: Extend the scope the MODE_STARTING flag
10468 - MINOR: threads: Prepare makefile to link with pthread
10469 - MINOR: threads: Add THREAD_LOCAL macro
10470 - MINOR: threads: Add atomic-ops and plock includes in import dir
10471 - MEDIUM: threads: Add hathreads header file
10472 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
10473 - MINOR: threads: Add nbthread parameter
10474 - MEDIUM: threads: Adds a set of functions to handle sync-point
10475 - MAJOR: threads: Start threads to experiment multithreading
10476 - MINOR: threads: Define the sync-point inside run_poll_loop
10477 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
10478 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
10479 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
10480 - MEDIUM: threads/logs: Make logs thread-safe
10481 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
10482 - MAJOR: threads/fd: Make fd stuffs thread-safe
10483 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
10484 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
10485 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
10486 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
10487 - WIP: SQUASH WITH SYNC POINT
10488 - MAJOR: threads/task: handle multithread on task scheduler
10489 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
10490 - MEDIUM: threads/listeners: Make listeners thread-safe
10491 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
10492 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
10493 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
10494 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
10495 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
10496 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
10497 - MINOR: threads/sample: Change temp_smp into a thread local variable
10498 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
10499 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
10500 - MAJOR: threads/applet: Handle multithreading for applets
10501 - MAJOR: threads/peers: Make peers thread safe
10502 - MAJOR: threads/buffer: Make buffer wait queue thread safe
10503 - MEDIUM: threads/stream: Make streams list thread safe
10504 - MAJOR: threads/ssl: Make SSL part thread-safe
10505 - MEDIUM: threads/queue: Make queues thread-safe
10506 - MAJOR: threads/map: Make acls/maps thread safe
10507 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
10508 - MEDIUM: thread/vars: Make vars thread-safe
10509 - MEDIUM: threads/filters: Add init/deinit callback per thread
10510 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
10511 - MEDIUM: threads/compression: Make HTTP compression thread-safe
10512 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
10513 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
10514 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
10515 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
10516 - MEDIUM: threads/xref: Convert xref function to a thread safe model
10517 - MEDIUM: threads/tasks: Add lock around notifications
10518 - MEDIUM: thread/spoe: Make the SPOE thread-safe
10519 - MEDIUM: thread/dns: Make DNS thread-safe
10520 - MINOR: threads: Add thread-map config parameter in the global section
10521 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
10522 - MINOR: threads/checks: Set the task process_mask when a check is executed
10523 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
10524 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
10525 - MINOR: threads: Don't start when device a detection module is used
10526 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
10527 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
10528 - MAJOR: threads: Offically enable the threads support in HAProxy
10529 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
10530 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
10531 - BUILD: stick-tables: silence an uninitialized variable warning
10532 - BUG/MINOR: dns: Fix SRV records with the new thread code.
10533 - MINOR: ssl: Remove the global allow-0rtt option.
10534 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
10535 - CLEANUP: threads: rename process_mask to thread_mask
10536 - MINOR: h1: add a function to measure the trailers length
10537 - MINOR: threads: add a portable barrier for threads and non-threads
10538 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
10539 - BUG/MEDIUM: threads: Initialize the sync-point
10540 - MEDIUM: connection: start to introduce a mux layer between xprt and data
10541 - MINOR: connection: implement alpn registration of muxes
10542 - MINOR: mux: register the pass-through mux for any ALPN string
10543 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
10544 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
10545 - MINOR: connection: introduce conn_stream
10546 - MINOR: mux: add more methods to mux_ops
10547 - MINOR: connection: introduce the conn_stream manipulation functions
10548 - MINOR: mux_pt: implement remaining mux_ops methods
10549 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
10550 - MINOR: connection: make conn_stream users also check for per-stream error flag
10551 - MINOR: conn_stream: new shutr/w status flags
10552 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
10553 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
10554 - MINOR: connection: add cs_close() to close a conn_stream
10555 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
10556 - MEDIUM: connection: replace conn_full_close() with cs_close()
10557 - MEDIUM: connection: make mux->detach() release the connection
10558 - MEDIUM: stream: do not forcefully close the client connection anymore
10559 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
10560 - MEDIUM: connection: add a destroy callback
10561 - MINOR: session: release the listener with the session, not the stream
10562 - MEDIUM: session: make use of the connection's destroy callback
10563 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
10564 - MINOR: hpack: implement the HPACK Huffman table decoder
10565 - MINOR: hpack: implement the header tables management
10566 - MINOR: hpack: implement the decoder
10567 - MEDIUM: hpack: implement basic hpack encoding
10568 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
10569 - MINOR: h2: create a very minimalistic h2 mux
10570 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
10571 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
10572 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
10573 - MINOR: h2: create the h2c struct and allocate its pool
10574 - MINOR: h2: create the h2s struct and the associated pool
10575 - MINOR: h2: handle two extra stream states for errors
10576 - MINOR: h2: add a frame header descriptor for incoming frames
10577 - MEDIUM: h2: allocate and release the h2c context on connection init/end
10578 - MEDIUM: h2: implement basic recv/send/wake functions
10579 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
10580 - MEDIUM: h2: implement the mux buffer allocator
10581 - MINOR: h2: add the connection and stream flags listing the causes for blocking
10582 - MINOR: h2: add function h2s_id() to report a stream's ID
10583 - MINOR: h2: small function to know when the mux is busy
10584 - MINOR: h2: new function h2c_error to mark an error on the connection
10585 - MINOR: h2: new function h2s_error() to mark an error on a stream
10586 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
10587 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
10588 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
10589 - MINOR: h2: add stream lookup function based on the stream ID
10590 - MINOR: h2: create dummy idle and closed streams
10591 - MINOR: h2: add the function to create a new stream
10592 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
10593 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
10594 - MINOR: h2: also terminate the connection on shutr
10595 - MEDIUM: h2: properly consider all conditions for end of connection
10596 - MEDIUM: h2: wake the connection up for send on pending streams
10597 - MEDIUM: h2: start to implement the frames processing loop
10598 - MINOR: h2: add a function to send a GOAWAY error frame
10599 - MINOR: h2: match the H2 connection preface on init
10600 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
10601 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
10602 - MEDIUM: h2: process streams pending for sending
10603 - MINOR: h2: send a real SETTINGS frame based on the configuration
10604 - MEDIUM: h2: detect the presence of the first settings frame
10605 - MINOR: h2: create a stream parser for the demuxer
10606 - MINOR: h2: implement PING frames
10607 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
10608 - MINOR: h2: lookup the stream during demuxing
10609 - MEDIUM: h2: honor WINDOW_UPDATE frames
10610 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
10611 - MINOR: h2: handle CONTINUATION frames
10612 - MEDIUM: h2: partial implementation of h2_detach()
10613 - MEDIUM: h2: unblock a connection when its current stream detaches
10614 - MEDIUM: h2: basic processing of HEADERS frame
10615 - MEDIUM: h2: don't use trash to decode headers!
10616 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
10617 - MEDIUM: h2: send the H1 response body as DATA frames
10618 - MEDIUM: h2: skip the response trailers if any
10619 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
10620 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
10621 - MEDIUM: h2: handle request body in DATA frames
10622 - MINOR: h2: handle RST_STREAM frames
10623 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
10624 - MINOR: h2: use a common function to signal some and all streams.
10625 - MEDIUM: h2: handle GOAWAY frames
10626 - MINOR: h2: centralize the check for the idle streams
10627 - MINOR: h2: centralize the check for the half-closed(remote) streams
10628 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
10629 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
10630 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
10631 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
10632 - MEDIUM: h2: apply a timeout to h2 connections
10633 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
10634 - MEDIUM: shctx: forbid shctx to read more than expected
10635 - MEDIUM: cache: configuration parsing and initialization
10636 - MEDIUM: cache: store objects in cache
10637 - MEDIUM: cache: deliver objects from cache
10638
Willy Tarreauf08137c2017-10-22 10:13:45 +0200106392017/10/22 : 1.8-dev3
10640 - REORG: ssl: move defines and methodVersions table upper
10641 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
10642 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
10643 - MEDIUM: ssl: disable SSLv3 per default for bind
10644 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
10645 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
10646 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
10647 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
10648 - BUG/MEDIUM: build without openssl broken
10649 - BUG/MINOR: warning: need_resend may be used uninitialized
10650 - BUG/MEDIUM: misplaced exit and wrong exit code
10651 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
10652 - BUILD: scripts: make publish-release support bare repositories
10653 - BUILD: scripts: add an automatic mode for publish-release
10654 - BUILD: scripts: add a "quiet" mode to publish-release
10655 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
10656 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
10657 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
10658 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
10659 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
10660 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
10661 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
10662 - BUG/MAJOR: server: Segfault after parsing server state file.
10663 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
10664 - scripts: create-release pass -n to tail
10665 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
10666 - BUG/MEDIUM: fix segfault when no argument to -x option
10667 - MINOR: warning on multiple -x
10668 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
10669 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
10670 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
10671 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
10672 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
10673 - DOC: fix references to the section about the unix socket
10674 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
10675 - MAJOR: task: task scheduler rework.
10676 - MINOR: task/stream: tasks related to a stream must be init by the caller.
10677 - MINOR: queue: Change pendconn_get_next_strm into private function
10678 - MINOR: backends: Change get_server_sh/get_server_uh into private function
10679 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
10680 - MEDIUM: stream: make stream_new() always set the target and analysers
10681 - MINOR: frontend: initialize HTTP layer after the debugging code
10682 - MINOR: connection: add a .get_alpn() method to xprt_ops
10683 - MINOR: ssl: add a get_alpn() method to ssl_sock
10684 - MINOR: frontend: retrieve the ALPN name when available
10685 - MINOR: frontend: report the connection's ALPN in the debug output
10686 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
10687 - MINOR: connection: send data before receiving
10688 - MAJOR: applet: applet scheduler rework.
10689 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
10690 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
10691 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
10692 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
10693 - MINOR: compression: Use a memory pool to allocate compression states
10694 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
10695 - DOC: fix references to the section about time format.
10696 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
10697 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
10698 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
10699 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
10700 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
10701 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
10702 - MINOR: peers: Add additional information to stick-table definition messages.
10703 - BUG/MINOR: http: properly handle all 1xx informational responses
10704 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
10705 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
10706 - CLEANUP: hdr_idx: make some function arguments const where possible
10707 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
10708 - BUG/MINOR: lua: In error case, the safe mode is not removed
10709 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
10710 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
10711 - BUG/MEDIUM: lua: bad memory access
10712 - BUG/MINOR: Lua: variable already initialized
10713 - DOC: update CONTRIBUTING regarding optional parts and message format
10714 - DOC: update the list of OpenSSL versions in the README
10715 - BUG/MINOR: http: Set the response error state in http_sync_res_state
10716 - MINOR: http: Reorder/rewrite checks in http_resync_states
10717 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
10718 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
10719 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
10720 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
10721 - BUG/MINOR: contrib/modsecurity: BSD build fix
10722 - BUG/MINOR: contrib/mod_defender: build fix
10723 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
10724 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
10725 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
10726 - MINOR: tools: add a portable timegm() alternative
10727 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
10728 - DOC: Updated 51Degrees git URL to point to a stable version.
10729 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
10730 - MINOR: memory: remove macros
10731 - BUG/MINOR: lua: Fix Server.get_addr() port values
10732 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
10733 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
10734 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
10735 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
10736 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
10737 - MINOR: task: always preinitialize the task's timeout in task_init()
10738 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
10739 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
10740 - MINOR: lua: Add proxy as member of proxy object.
10741 - DOC: lua: Proxy class doc update
10742 - MINOR: lua: Add lists of frontends and backends
10743 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
10744 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
10745 - MINOR: ssl: add a new error codes for wrong server certificates
10746 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
10747 - MINOR: ssl: add "no-ca-names" parameter for bind
10748 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
10749 - DOC: fix alphabetical order of "show commands" in management.txt
10750 - MINOR: listener: add a function to return a listener's state as a string
10751 - MINOR: cli: add a new "show fd" command
10752 - BUG/MEDIUM: ssl: Fix regression about certificates generation
10753 - MINOR: Add server port field to server state file.
10754 - MINOR: ssl: allow to start without certificate if strict-sni is set
10755 - MINOR: dns: Cache previous DNS answers.
10756 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
10757 - Add a few functions to do unaligned access.
10758 - MINOR: dns: Handle SRV records.
10759 - MINOR: check: Fix checks when using SRV records.
10760 - MINOR: doc: Document SRV label usage.
10761 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
10762 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
10763 - BUILD/MINOR: build without openssl still broken
10764 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
10765 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
10766 - MINOR: init: Fix CPU affinity setting on FreeBSD.
10767 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
10768 - MINOR: dns: update record dname matching for SRV query types
10769 - MINOR: dns: update dns response buffer reading pointer due to SRV record
10770 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
10771 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
10772 - MINOR: dns: ability to use a SRV resolution for multiple backends
10773 - MINOR: dns: enable caching of responses for server set by a SRV record
10774 - MINOR: dns: new dns record type (RTYPE) for OPT
10775 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
10776 - MINOR: dns: default "hold obsolete" timeout set to 0
10777 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
10778 - MINOR: session: add a streams field to the session struct
10779 - MINOR: stream: link the stream to its session
10780 - MEDIUM: session: do not free a session until no stream references it
10781 - MINOR: ist: implement very simple indirect strings
10782 - TESTS: ist: add a test file for the functions
10783 - MINOR: http: export some of the HTTP parser macros
10784 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
10785 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
10786 - MINOR: dns: Maximum DNS udp payload set to 8192
10787 - MINOR: dns: automatic reduction of DNS accpeted payload size
10788 - MINOR: dns: make SRV record processing more verbose
10789 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
10790 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
10791 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
10792 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
10793 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
10794 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
10795 - MINOR: lua: properly process the contents of the content-length field
10796 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
10797 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
10798 - OPTIM: lua: don't add "Connection: close" on the response
10799 - REORG/MEDIUM: connection: introduce the notion of connection handle
10800 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
10801 - MEDIUM: connection: get rid of data->init() which was not for data
10802 - MEDIUM: stream: make stream_new() allocate its own task
10803 - CLEANUP: listener: remove the unused handler field
10804 - MEDIUM: session: add a pointer to a struct task in the session
10805 - MINOR: stream: provide a new stream creation function for connections
10806 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
10807 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
10808 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
10809 - DOC: add CLI info on privilege levels
10810 - DOC: Refer to Mozilla TLS info / config generator
10811 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
10812 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
10813 - DOC: Add note about "* " prefix in CSV stats
10814 - CLEANUP: memory: Remove unused function pool_destroy
10815 - MINOR: listeners: Change listener_full and limit_listener into private functions
10816 - MINOR: listeners: Change enable_listener and disable_listener into private functions
10817 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
10818 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
10819 - MINOR: backends: Make get_server_* functions explicitly static
10820 - MINOR: applet: Check applets_active_queue before processing applets queue
10821 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
10822 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
10823 - MINOR: logs: Use dedicated function to init/deinit log buffers
10824 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
10825 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
10826 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
10827 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
10828 - MINOR: fd: Add fd_active function
10829 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
10830 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
10831 - MINOR: freq_ctr: Return the new value after an update
10832 - MEDIUM: check: server states and weight propagation re-work
10833 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
10834 - MINOR: fd: Add fd_update_events function
10835 - MINOR: polling: Use fd_update_events to update events seen for a fd
10836 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
10837 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
10838 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
10839 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
10840 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
10841 - MINOR: xref: Add a new xref system
10842 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
10843 - MINOR: tasks: Move Lua notification from Lua to tasks
10844 - MINOR: net_helper: Inline functions meant to be inlined.
10845 - MINOR: cli: add socket commands and config to prepend informational messages with severity
10846 - MINOR: add severity information to cli feedback messages
10847 - BUILD: Makefile: add a function to detect support by the compiler of certain options
10848 - BUILD: Makefile: shut certain gcc/clang stupid warnings
10849 - BUILD: Makefile: improve detection of support for compiler warnings
10850 - MINOR: peers: don't reference the incoming listener on outgoing connections
10851 - MINOR: frontend: don't retrieve ALPN on the critical path
10852 - MINOR: protocols: always pass a "port" argument to the listener creation
10853 - MINOR: protocols: register the ->add function and stop calling them directly
10854 - MINOR: unix: remove the now unused proto_uxst.h file
10855 - MINOR: listeners: new function create_listeners
10856 - MINOR: listeners: make listeners count consistent with reality
10857 - MEDIUM: session: take care of incrementing/decrementing jobs
10858 - MINOR: listener: new function listener_release
10859 - MINOR: session: small cleanup of conn_complete_session()
10860 - MEDIUM: session: factor out duplicated code for conn_complete_session
10861 - MEDIUM: session: count the frontend's connections at a single place
10862 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
10863 - BUG/MINOR: compression: Check response headers before http-response rules eval
10864 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
10865 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
10866 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
10867 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
10868 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
10869 - MINOR: tools: make my_htonll() more efficient on x86_64
10870 - MINOR: buffer: add b_del() to delete a number of characters
10871 - MINOR: buffer: add b_end() and b_to_end()
10872 - MINOR: net_helper: add functions to read from vectors
10873 - MINOR: net_helper: add write functions
10874 - MINOR: net_helper: add 64-bit read/write functions
10875 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
10876 - MINOR: ist: add a macro to ease const array initialization
10877 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
10878 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
10879 - BUG/MINOR: log: fixing small memory leak in error code path.
10880 - BUG/MINOR: contrib/halog: fixing small memory leak
10881 - BUG/MEDIUM: tcp/http: set-dst-port action broken
10882 - CLEANUUP: checks: don't set conn->handle.fd to -1
10883 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
10884 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
10885 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
10886 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
10887 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
10888 - CLEANUP: checks: remove misleading comments and statuses for external process
10889 - CLEANUP: checks: don't report report the fork() error twice
10890 - CLEANUP: checks: do not allocate a connection for process checks
10891 - TESTS: checks: add a simple test config for external checks
10892 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
10893 - TESTS: checks: add a simple test config for tcp-checks
10894 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
10895 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
10896 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
10897 - MEDIUM: checks: do not allocate a permanent connection anymore
10898 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
10899 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
10900 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
10901 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
10902 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
10903 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
10904 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
10905 - MINOR: session: remove the list of streams from struct session
10906 - DOC: fix some typos
10907 - MINOR: server: add the srv_queue() sample fetch method
10908 - MINOR: payload: add new sample fetch functions to process distcc protocol
10909 - MAJOR: servers: propagate server status changes asynchronously.
10910 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
10911 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
10912 - MINOR: server: Handle weight increase in consistent hash.
10913 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
10914 - BUG/MINOR: tools: fix my_htonll() on x86_64
10915 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
10916 - BUG/MAJOR: lua: scheduled task is freezing.
10917 - MINOR: buffer: add bo_del() to delete a number of characters from output
10918 - MINOR: buffer: add a function to match against string patterns
10919 - MINOR: buffer: add two functions to inject data into buffers
10920 - MINOR: buffer: add buffer_space_wraps()
10921 - REORG: channel: finally rename the last bi_* / bo_* functions
10922 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
10923 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
10924 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
10925 - MINOR: ist: add ist0() to add a trailing zero to a string.
10926 - BUG/MEDIUM: log: check result details truncated.
10927 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
10928 - REORG: http: move some very http1-specific parts to h1.{c,h}
10929 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
10930 - REORG: http: move the HTTP/1 header block parser to h1.c
10931 - MEDIUM: http: make the chunk size parser only depend on the buffer
10932 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
10933 - MINOR: h1: add struct h1m for basic HTTP/1 messages
10934 - MINOR: http: add very simple header management based on double strings
10935 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
10936 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
10937 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
10938 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
10939 - MINOR: connection: add conn_stop_tracking() to disable tracking
10940 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
10941 - MINOR: unix: use conn_full_close() instead of conn_force_close()
10942 - MINOR: checks: use conn_full_close() instead of conn_force_close()
10943 - MINOR: session: use conn_full_close() instead of conn_force_close()
10944 - MINOR: stream: use conn_full_close() instead of conn_force_close()
10945 - MINOR: stream: use conn_full_close() instead of conn_force_close()
10946 - MINOR: backend: use conn_full_close() instead of conn_force_close()
10947 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
10948 - MINOR: connection: remove conn_force_close()
10949 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
10950
Willy Tarreauf57a29a2017-06-02 15:59:51 +0200109512017/06/02 : 1.8-dev2
10952 - CLEANUP: server: moving netinet/tcp.h inclusion
10953 - DOC: changed "block"(deprecated) examples to http-request deny
10954 - DOC: add few comments to examples.
10955 - DOC: update sample code for PROXY protocol
10956 - DOC: mention lighttpd 1.4.46 implements PROXY
10957 - MINOR server: Restrict dynamic cookie check to the same proxy.
10958 - DOC: stick-table is available in frontend sections
10959 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
10960 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
10961 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
10962 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
10963 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
10964 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
10965 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
10966 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
10967 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
10968 - BUG/MEDIUM: servers: unbreak server weight propagation
10969 - MINOR: lua: ensure the memory allocator is used all the time
10970 - MINOR: cli: Add a command to send listening sockets.
10971 - MINOR: global: Add an option to get the old listening sockets.
10972 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
10973 - MINOR: doc: document the -x flag
10974 - MINOR: proxy: Don't close FDs if not our proxy.
10975 - MINOR: socket transfer: Set a timeout on the socket.
10976 - MINOR: systemd wrapper: add support for passing the -x option.
10977 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
10978 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
10979 - CLEANUP: logs: typo: simgle => single
10980 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
10981 - MEDIUM: config: don't check config validity when there are fatal errors
10982 - BUG/MAJOR: Use -fwrapv.
10983 - BUG/MINOR: server: don't use "proxy" when px is really meant.
10984 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
10985 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
10986 - MINOR: server: Extract the code responsible of copying default-server settings.
10987 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
10988 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
10989 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
10990 - DOC: Add documentation for new "server-template" keyword.
10991 - DOC: add layer 4 links/cross reference to "block" keyword.
10992 - DOC: errloc/errorloc302/errorloc303 missing status codes.
10993 - BUG/MEDIUM: lua: memory leak
10994 - CLEANUP: lua: remove test
10995 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
10996 - BUG/MINOR: change header-declared function to static inline
10997 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
10998 - MINOR: Add binary encoding request header sample fetch
10999 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
11000 - MINOR: Add ModSecurity wrapper as contrib
11001 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
11002 - DOC: update RFC references
11003 - CONTRIB: tcploop: add action "X" to execute a command
11004 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
11005 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
11006 - BUG/MINOR: checks: don't send proxy protocol with agent checks
11007 - MINOR: ssl: add prefer-client-ciphers
11008 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
11009 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
11010 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
11011 - MINOR: ssl: support TLSv1.3 for bind and server
11012 - MINOR: ssl: show methods supported by openssl
11013 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
11014 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
11015 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
11016 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
11017 - MINOR: sample: Add b64dec sample converter
11018 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
11019 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
11020 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
11021 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
11022 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
11023 - MAJOR: ssl: add openssl async mode support
11024 - MEDIUM: ssl: handle multiple async engines
11025 - MINOR: boringssl: basic support for OCSP Stapling
11026 - MEDIUM: mworker: replace systemd mode by master worker mode
11027 - MEDIUM: mworker: handle reload and signals
11028 - MEDIUM: mworker: wait mode on reload failure
11029 - MEDIUM: mworker: try to guess the next stats socket to use with -x
11030 - MEDIUM: mworker: exit-on-failure option
11031 - MEDIUM: mworker: workers exit when the master leaves
11032 - DOC: add documentation for the master-worker mode
11033 - MEDIUM: systemd: Type=forking in unit file
11034 - MAJOR: systemd-wrapper: get rid of the wrapper
11035 - MINOR: log: Add logurilen tunable.
11036 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
11037 - MINOR: dns: smallest DNS fqdn size
11038 - MINOR: dns: functions to manage memory for a DNS resolution structure
11039 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
11040 - REORG: dns: dns_option structure, storage of hostname_dn
11041 - MINOR: dns: new snr_check_ip_callback function
11042 - MAJOR: dns: save a copy of the DNS response in struct resolution
11043 - MINOR: dns: implement a LRU cache for DNS resolutions
11044 - MINOR: dns: make 'ancount' field to match the number of saved records
11045 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
11046 - MAJOR/REORG: dns: DNS resolution task and requester queues
11047 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
11048 - MINOR: Add Mod Defender integration as contrib
11049 - CLEANUP: str2mask return code comment: non-zero -> zero.
11050 - MINOR: tools: make debug_hexdump() use a const char for the string
11051 - MINOR: tools: make debug_hexdump() take a string prefix
11052 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
11053
Willy Tarreau7b677262017-04-03 09:27:49 +0200110542017/04/03 : 1.8-dev1
11055 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
11056 - BUG/MINOR: stats: make field_str() return an empty string on NULL
11057 - DOC: Spelling fixes
11058 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
11059 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
11060 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
11061 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
11062 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
11063 - BUG/MAJOR: stream: fix session abort on resource shortage
11064 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
11065 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
11066 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
11067 - DOC: Fix map table's format
11068 - DOC: Added 51Degrees conv and fetch functions to documentation.
11069 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
11070 - DOC: mention that req_tot is for both frontends and backends
11071 - BUG/MEDIUM: variables: some variable name can hide another ones
11072 - MINOR: lua: Allow argument for actions
11073 - BUILD: rearrange target files by build time
11074 - CLEANUP: hlua: just indent functions
11075 - MINOR: lua: give HAProxy variable access to the applets
11076 - BUG/MINOR: stats: fix be/sessions/max output in html stats
11077 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
11078 - DOC: lua: Documentation about some entry missing
11079 - DOC: lua: Add documentation about variable manipulation from applet
11080 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
11081 - DOC: Add undocumented argument of the trace filter
11082 - DOC: Fix some typo in SPOE documentation
11083 - MINOR: cli: Remove useless call to bi_putchk
11084 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
11085 - MINOR: applet: Count number of (active) applets
11086 - MINOR: task: Rename run_queue and run_queue_cur counters
11087 - BUG/MEDIUM: stream: Save unprocessed events for a stream
11088 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
11089 - BUILD/MEDIUM: Fixing the build using LibreSSL
11090 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
11091 - SCRIPTS: git-show-backports: fix a harmless typo
11092 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
11093 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
11094 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
11095 - CLEANUP: applet/table: add an "action" entry in ->table context
11096 - CLEANUP: applet: remove the now unused appctx->private field
11097 - DOC: lua: documentation about time parser functions
11098 - DOC: lua: improve links
11099 - DOC: lua: section declared twice
11100 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
11101 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
11102 - BUG/MINOR: cli: "show cli sockets" would always report process 64
11103 - CLEANUP: lua: rename one of the lua appctx union
11104 - BUG/MINOR: lua/cli: bad error message
11105 - MEDIUM: lua: use memory pool for hlua struct in applets
11106 - MINOR: lua/signals: Remove Lua part from signals.
11107 - DOC: cli: show cli sockets
11108 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
11109 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
11110 - CLEANUP: applet: group all CLI contexts together
11111 - CLEANUP: stats: move a misplaced stats context initialization
11112 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
11113 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
11114 - MINOR: appctx/cli: remove the env entry from the appctx union
11115 - MINOR: appctx/cli: remove the "be" entry from the appctx union
11116 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
11117 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
11118 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
11119 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
11120 - MINOR/DOC: lua: just precise one thing
11121 - DOC: fix small typo in fe_id (backend instead of frontend)
11122 - BUG/MINOR: Fix the sending function in Lua's cosocket
11123 - BUG/MINOR: lua: memory leak executing tasks
11124 - BUG/MINOR: lua: bad return code
11125 - BUG/MINOR: lua: memleak when Lua/cli fails
11126 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
11127 - CLEANUP: haproxy: statify unexported functions
11128 - MINOR: haproxy: add a registration for build options
11129 - CLEANUP: wurfl: use the build options list to report it
11130 - CLEANUP: 51d: use the build options list to report it
11131 - CLEANUP: da: use the build options list to report it
11132 - CLEANUP: namespaces: use the build options list to report it
11133 - CLEANUP: tcp: use the build options list to report transparent modes
11134 - CLEANUP: lua: use the build options list to report it
11135 - CLEANUP: regex: use the build options list to report the regex type
11136 - CLEANUP: ssl: use the build options list to report the SSL details
11137 - CLEANUP: compression: use the build options list to report the algos
11138 - CLEANUP: auth: use the build options list to report its support
11139 - MINOR: haproxy: add a registration for post-check functions
11140 - CLEANUP: checks: make use of the post-init registration to start checks
11141 - CLEANUP: filters: use the function registration to initialize all proxies
11142 - CLEANUP: wurfl: make use of the late init registration
11143 - CLEANUP: 51d: make use of the late init registration
11144 - CLEANUP: da: make use of the late init registration code
11145 - MINOR: haproxy: add a registration for post-deinit functions
11146 - CLEANUP: wurfl: register the deinit function via the dedicated list
11147 - CLEANUP: 51d: register the deinitialization function
11148 - CLEANUP: da: register the deinitialization function
11149 - CLEANUP: wurfl: move global settings out of the global section
11150 - CLEANUP: 51d: move global settings out of the global section
11151 - CLEANUP: da: move global settings out of the global section
11152 - MINOR: cfgparse: add two new functions to check arguments count
11153 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
11154 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
11155 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
11156 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
11157 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
11158 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
11159 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
11160 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
11161 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
11162 - MINOR: tcp-rules: check that the listener exists before updating its counters
11163 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
11164 - MINOR: listener: move the transport layer pointer to the bind_conf
11165 - MEDIUM: move listener->frontend to bind_conf->frontend
11166 - MEDIUM: ssl: remote the proxy argument from most functions
11167 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
11168 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
11169 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
11170 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
11171 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
11172 - MINOR: connection: add a minimal transport layer registration system
11173 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
11174 - CLEANUP: connection: unexport raw_sock and ssl_sock
11175 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
11176 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
11177 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
11178 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
11179 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
11180 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
11181 - BUG/MINOR: systemd: potential zombie processes
11182 - DOC: Add timings events schemas
11183 - BUILD: lua: build failed on FreeBSD.
11184 - MINOR: samples: add xx-hash functions
11185 - MEDIUM: regex: pcre2 support
11186 - BUG/MINOR: option prefer-last-server must be ignored in some case
11187 - MINOR: stats: Support "select all" for backend actions
11188 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
11189 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
11190 - BUG/MINOR: http: report real parser state in error captures
11191 - BUILD: scripts: automatically update the branch in version.h when releasing
11192 - MINOR: tools: add a generic hexdump function for debugging
11193 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
11194 - MINOR: http: custom status reason.
11195 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
11196 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
11197 - BUG/MINOR: tools: fix off-by-one in port size check
11198 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
11199 - MEDIUM: server: split the address and the port into two different fields
11200 - MINOR: tools: make str2sa_range() return the port in a separate argument
11201 - MINOR: server: take the destination port from the port field, not the addr
11202 - MEDIUM: server: disable protocol validations when the server doesn't resolve
11203 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
11204 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
11205 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
11206 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
11207 - MINOR: proto_http.c 502 error txt typo.
11208 - DOC: add deprecation notice to "block"
11209 - MINOR: compression: fix -vv output without zlib/slz
11210 - BUG/MINOR: Reset errno variable before calling strtol(3)
11211 - MINOR: ssl: don't show prefer-server-ciphers output
11212 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
11213 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
11214 - MAJOR: ssl: bind configuration per certificat
11215 - MINOR: ssl: add curve suite for ECDHE negotiation
11216 - MINOR: checks: Add agent-addr config directive
11217 - MINOR: cli: Add possiblity to change agent config via CLI/socket
11218 - MINOR: doc: Add docs for agent-addr configuration variable
11219 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
11220 - BUILD: ssl: fix to build (again) with boringssl
11221 - BUILD: ssl: fix build on OpenSSL 1.0.0
11222 - BUILD: ssl: silence a warning reported for ERR_remove_state()
11223 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
11224 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
11225 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
11226 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
11227 - MINOR: server: extend the flags to 32 bits
11228 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
11229 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
11230 - BUG/MAJOR: dns: restart sockets after fork()
11231 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
11232 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
11233 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
11234 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
11235 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
11236 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
11237 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
11238 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
11239 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
11240 - MINOR: http: don't close when redirect location doesn't start with "/"
11241 - MEDIUM: boringssl: support native multi-cert selection without bundling
11242 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
11243 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
11244 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
11245 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
11246 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
11247 - MEDIUM: ssl: remove ssl-options from crt-list
11248 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
11249 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
11250 - MINOR: ssl: improved cipherlist captures
11251 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
11252 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
11253 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
11254 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
11255 - MINOR: spoe: Remove SPOE details from the appctx structure
11256 - MINOR: spoe: Add status code in error variable instead of hardcoded value
11257 - MINOR: spoe: Send a log message when an error occurred during event processing
11258 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
11259 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
11260 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
11261 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
11262 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
11263 - MAJOR: spoe: refactor the filter to clean up the code
11264 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
11265 - REORG: spoe: Move struct and enum definitions in dedicated header file
11266 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
11267 - MINOR: spoe: Improve implementation of the payload fragmentation
11268 - MINOR: spoe: Add support of negation for options in SPOE configuration file
11269 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
11270 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
11271 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
11272 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
11273 - DOC: spoe: Update SPOE documentation to reflect recent changes
11274 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
11275 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
11276 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
11277 - BUG/MINOR: Fix "get map <map> <value>" CLI command
11278 - MINOR: Add nbsrv sample converter
11279 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
11280 - MINOR: Add hostname sample fetch
11281 - CLEANUP: Remove comment that's no longer valid
11282 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
11283 - MINOR: http-request tarpit deny_status.
11284 - CLEANUP: http: make http_server_error() not set the status anymore
11285 - MEDIUM: stats: Add JSON output option to show (info|stat)
11286 - MEDIUM: stats: Add show json schema
11287 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
11288 - MINOR: server: Add dynamic session cookies.
11289 - MINOR: cli: Let configure the dynamic cookies from the cli.
11290 - BUG/MINOR: checks: attempt clean shutw for SSL check
11291 - CONTRIB: tcploop: make it build on FreeBSD
11292 - CONTRIB: tcploop: fix time format to silence build warnings
11293 - CONTRIB: tcploop: report action 'K' (kill) in usage message
11294 - CONTRIB: tcploop: fix connect's address length
11295 - CONTRIB: tcploop: use the trash instead of NULL for recv()
11296 - BUG/MEDIUM: listener: do not try to rebind another process' socket
11297 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
11298 - CLEANUP: config: Typo in comment.
11299 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
11300 - TESTS: add a test configuration to stress handshake combinations
11301 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
11302 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
11303 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
11304 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
11305 - BUG: payload: fix payload not retrieving arbitrary lengths
11306 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
11307 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
11308 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
11309 - MINOR: doc: 2.4. Examples should be 2.5. Examples
11310 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
11311 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
11312 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
11313 - OPTIM: poll: enable support for POLLRDHUP
11314 - MINOR: kqueue: exclusively rely on the kqueue returned status
11315 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
11316 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
11317 - DOC/MINOR: Fix typos in proxy protocol doc
11318 - DOC: Protocol doc: add checksum, TLV type ranges
11319 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
11320 - DOC: Protocol doc: add noop TLV
11321 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
11322 - MINOR: dns: improve DNS response parsing to use as many available records as possible
11323 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
11324 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
11325 - MINOR: server: Make 'default-server' support 'backup' keyword.
11326 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
11327 - CLEANUP: server: code alignement.
11328 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
11329 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
11330 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
11331 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
11332 - CLEANUP: server: code alignement.
11333 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
11334 - MINOR: server: Make 'default-server' support 'ssl' keyword.
11335 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
11336 - CLEANUP: server: code alignement.
11337 - MINOR: server: Make 'default-server' support 'verify' keyword.
11338 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
11339 - MINOR: server: Make 'default-server' support 'check' keyword.
11340 - MINOR: server: Make 'default-server' support 'track' setting.
11341 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
11342 - MINOR: server: Make 'default-server' support 'redir' keyword.
11343 - MINOR: server: Make 'default-server' support 'observe' keyword.
11344 - MINOR: server: Make 'default-server' support 'cookie' keyword.
11345 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
11346 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
11347 - MINOR: server: Make 'default-server' support 'namespace' keyword.
11348 - MINOR: server: Make 'default-server' support 'source' keyword.
11349 - MINOR: server: Make 'default-server' support 'sni' keyword.
11350 - MINOR: server: Make 'default-server' support 'addr' keyword.
11351 - MINOR: server: Make 'default-server' support 'disabled' keyword.
11352 - MINOR: server: Add 'no-agent-check' server keyword.
11353 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
11354 - MINOR: doc: fix use-server example (imap vs mail)
11355 - BUG/MEDIUM: tcp: don't require privileges to bind to device
11356 - BUILD: make the release script use shortlog for the final changelog
11357 - BUILD: scripts: fix typo in announce-release error message
11358 - CLEANUP: time: curr_sec_ms doesn't need to be exported
11359 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
11360 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
11361 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
11362 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
11363 - CLEANUP: http: Remove channel_congested function
11364 - CLEANUP: buffers: Remove buffer_bounce_realign function
11365 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
11366 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
11367 - MINOR: http: Add debug messages when HTTP body analyzers are called
11368 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
11369 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
11370 - DOC: fix parenthesis and add missing "Example" tags
11371 - DOC: update the contributing file
11372 - DOC: log-format/tcplog/httplog update
11373 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
11374
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100113752016/11/25 : 1.8-dev0
11376
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100113772016/11/25 : 1.7.0
11378 - SCRIPTS: make publish-release also copy the new SPOE doc
11379 - BUILD: http: include types/sample.h in proto_http.h
11380 - BUILD: debug/flags: remove test for SF_COMP_READY
11381 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
11382 - MINOR: lua: add function which return true if the channel is full.
11383 - MINOR: lua: add ip addresses and network manipulation function
11384 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
11385 - CONTRIB: tcploop: implement fork()
11386 - CONTRIB: tcploop: implement logging when called with -v
11387 - CONTRIB: tcploop: update the usage output
11388 - CONTRIB: tcploop: support sending plain strings
11389 - CONTRIB: tcploop: don't report failed send() or recv()
11390 - CONTRIB: tcploop: add basic loops via a jump instruction
11391 - BUG/MEDIUM: channel: bad unlikely macro
11392 - CLEANUP: lua: move comment
11393 - CLEANUP: lua: control executed twice
11394 - BUG/MEDIUM: ssl: Store certificate filename in a variable
11395 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
11396 - CLEANUP: ssl: Remove goto after return dead code
11397 - CLEANUP: ssl: Fix bind keywords name in comments
11398 - DOC: ssl: Use correct wording for ca-sign-pass
11399 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
11400 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
11401 - MINOR: cli: add private pointer and release function
11402 - MEDIUM: lua: Add cli handler for Lua
11403 - BUG/MEDIUM: connection: check the control layer before stopping polling
11404 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
11405 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
11406 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
11407 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
11408 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
11409 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
11410 - MINOR: spoe: Remove useless 'timeout ack' option
11411 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
11412 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
11413 - MINOR: spoe: Add "option set-on-error" statement
11414 - MINOR: stats: correct documentation of process ID for typed output
11415 - BUILD: contrib: fix ip6range build on Centos 7
11416 - BUILD: fix build on Solaris 10/11
11417 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
11418 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
11419 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
11420 - MINOR: connection: add a few functions to report the data and xprt layers' names
11421 - MINOR: connection: add names for transport and data layers
11422 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
11423 - REORG: cli: split dumpstats.h in stats.h and cli.h
11424 - REORG: cli: move ssl CLI functions to ssl_sock.c
11425 - REORG: cli: move map and acl code to map.c
11426 - REORG: cli: move show stat resolvers to dns.c
11427 - MINOR: cli: create new function cli_has_level() to validate permissions
11428 - MINOR: server: create new function cli_find_server() to find a server
11429 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
11430 - REORG: cli: move 'set server' to server.c
11431 - REORG: cli: move 'show pools' to memory.c
11432 - REORG: cli: move 'show servers' to proxy.c
11433 - REORG: cli: move 'show sess' to stream.c
11434 - REORG: cli: move 'show backend' to proxy.c
11435 - REORG: cli: move get/set weight to server.c
11436 - REORG: cli: move "show stat" to stats.c
11437 - REORG: cli: move "show info" to stats.c
11438 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
11439 - REORG: cli: move table dump/clear/set to stick_table.c
11440 - REORG: cli: move "show errors" out of cli.c
11441 - REORG: cli: make "show env" also use the generic keyword registration
11442 - REORG: cli: move "set timeout" to its own handler
11443 - REORG: cli: move "clear counters" to stats.c
11444 - REORG: cli: move "set maxconn global" to its own handler
11445 - REORG: cli: move "set maxconn server" to server.c
11446 - REORG: cli: move "set maxconn frontend" to proxy.c
11447 - REORG: cli: move "shutdown sessions server" to stream.c
11448 - REORG: cli: move "shutdown session" to stream.c
11449 - REORG: cli: move "shutdown frontend" to proxy.c
11450 - REORG: cli: move "{enable|disable} frontend" to proxy.c
11451 - REORG: cli: move "{enable|disable} server" to server.c
11452 - REORG: cli: move "{enable|disable} health" to server.c
11453 - REORG: cli: move "{enable|disable} agent" to server.c
11454 - REORG: cli: move the "set rate-limit" functions to their own parser
11455 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
11456 - CLEANUP: cli: simplify the request parser a little bit
11457 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
11458 - BUILD: server: remove a build warning introduced by latest series
11459 - BUG/MINOR: log-format: uncatched memory allocation functions
11460 - CLEANUP: log-format: useless file and line in json converter
11461 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
11462 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
11463 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
11464 - CLEANUP: log-format: remove unused arguments
11465 - MEDIUM: log-format: strict parsing and enable fail
11466 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
11467 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
11468 - BUILD: vars: remove a build warning on vars.c
11469 - MINOR: lua: add utility function for check boolean argument
11470 - MINOR: lua: Add tokenize function.
11471 - BUG/MINOR: conf: calloc untested
11472 - MINOR: http/conf: store the use_backend configuration file and line for logs
11473 - MEDIUM: log-format: Use standard HAProxy log system to report errors
11474 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
11475 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
11476 - MINOR: cli: make "show stat" support a proxy name
11477 - MINOR: cli: make "show errors" support a proxy name
11478 - MINOR: cli: make "show errors" capable of dumping only request or response
11479 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
11480 - CLEANUP: counters: move from 3 types to 2 types
11481 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
11482 - REORG: tcp-rules: move tcp rules processing to their own file
11483 - REORG: stkctr: move all the stick counters processing to stick-tables.c
11484 - DOC: update the roadmap file with the latest changes
11485
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100114862016/11/09 : 1.7-dev6
11487 - DOC: fix the entry for hash-balance-factor config option
11488 - DOC: Fix typo in description of `-st` parameter in man page
11489 - CLEANUP: cfgparse: Very minor spelling correction
11490 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
11491 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
11492 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
11493 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
11494 - MINOR: peers: remove the pointer to the stream
11495 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
11496 - DOC: stats: provide state details for show servers state
11497 - MEDIUM: tools: make str2ip2() preserve existing ports
11498 - CLEANUP: tools: make ipcpy() preserve the original port
11499 - OPTIM: http: move all http character classs tables into a single one
11500 - OPTIM: http: improve parsing performance of long header lines
11501 - OPTIM: http: improve parsing performance of long URIs
11502 - OPTIM: http: optimize lookup of comma and quote in header values
11503 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
11504 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
11505 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
11506 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
11507 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
11508 - DOC: move the device detection modules documentation to their own files
11509 - CLEANUP: wurfl: reduce exposure in the rest of the code
11510 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
11511 - MINOR: stream: make option contstats usable again
11512 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
11513 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
11514 - MAJOR: server: postpone address resolution
11515 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
11516 - MINOR: server: indicate in the logs when RMAINT is cleared
11517 - MINOR: stats: indicate it when a server is down due to resolution
11518 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
11519 - MINOR: dns: implement extra 'hold' timers.
11520 - MAJOR: dns: runtime resolution can change server admin state
11521 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
11522 - MEDIUM: server: add a new init-addr server line setting
11523 - MEDIUM: server: make use of init-addr
11524 - MINOR: server: implement init-addr none
11525 - MEDIUM: server: make libc resolution failure non-fatal
11526 - MINOR: server: add support for explicit numeric address in init-addr
11527 - DOC: add some documentation for the "init-addr" server keyword
11528 - MINOR: init: add -dr to ignore server address resolution failures
11529 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
11530 - BUG: vars: Fix 'set-var' converter because of a typo
11531 - CLEANUP: remove last references to 'ruleset' section
11532 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
11533 - MINOR: filters: Update filters documentation accordingly to recent changes
11534 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
11535 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
11536 - MINOR: flt_trace: Add hexdump option to dump forwarded data
11537 - MINOR: cfgparse: Add functions to backup and restore registered sections
11538 - MINOR: cfgparse: Parse scope lines and save the last one parsed
11539 - REORG: sample: move code to release a sample expression in sample.c
11540 - MINOR: vars: Allow '.' in variable names
11541 - MINOR: vars: Add vars_set_by_name_ifexist function
11542 - MEDIUM: vars: Add a per-process scope for variables
11543 - MINOR: vars: Add 'unset-var' action/converter
11544 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
11545 - MINOR: spoe: add random ip-reputation service as SPOA example
11546 - MINOR: spoe/checks: Add support for SPOP health checks
11547 - DOC: update ROADMAP file
11548
Willy Tarreau608efa12016-10-25 22:22:00 +0200115492016/10/25 : 1.7-dev5
11550 - MINOR: cfgparse: few memory leaks fixes.
11551 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
11552 - CLEANUP: logs: remove unused log format field definitions
11553 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
11554 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
11555 - CLEANUP: proto_http: Removing useless variable assignation
11556 - CLEANUP: dumpstats: Removing useless variables allocation
11557 - CLEANUP: dns: Removing usless variable & assignation
11558 - BUG/MINOR: payload: fix SSLv2 version parser
11559 - MINOR: cli: allow the semi-colon to be escaped on the CLI
11560 - MINOR: cli: change a server health check port through the stats socket
11561 - BUG/MINOR: Fix OSX compilation errors
11562 - MAJOR: check: find out which port to use for health check at run time
11563 - MINOR: server: introduction of 3 new server flags
11564 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
11565 - MINOR: cli: ability to change a server's port
11566 - CLEANUP/MINOR dns: comment do not follow up code update
11567 - MINOR: chunk: new strncat function
11568 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
11569 - MINOR: dns: new MAX values
11570 - MINOR: dns: new macro to compute DNS header size
11571 - MINOR: dns: new DNS structures to store received packets
11572 - MEDIUM: dns: new DNS response parser
11573 - MINOR: dns: query type change when last record is a CNAME
11574 - MINOR: dns: proper domain name validation when receiving DNS response
11575 - MINOR: dns: comments in types/dns.h about structures endianness
11576 - BUG/MINOR: displayed PCRE version is running release
11577 - MINOR: show Built with PCRE version
11578 - MINOR: show Running on zlib version
11579 - MEDIUM: make SO_REUSEPORT configurable
11580 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
11581 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
11582 - BUG/MINOR: stats: report the correct conn_time in backend's html output
11583 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
11584 - MINOR: Add fe_req_rate sample fetch
11585 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
11586 - MEDIUM: cli: register CLI keywords with cli_register_kw()
11587 - BUILD: Make use of accept4() on OpenBSD.
11588 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
11589 - DOC: fix missed entry for "set-{src,dst}{,-port}"
11590 - BUG/MINOR: vars: use sess and not s->sess in action_store()
11591 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
11592 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
11593 - MINOR: stats: output dcon
11594 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
11595 - MINOR: counters: add new fields for denied_sess
11596 - MEDIUM: tcp: add registration and processing of TCP L5 rules
11597 - MINOR: stats: emit dses
11598 - DOC: document tcp-request session
11599 - MINOR: ssl: add debug traces
11600 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
11601 - BUG/MINOR: ssl: Check malloc return code
11602 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
11603 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
11604 - BUG/MINOR: systemd: always restore signals before execve()
11605 - BUG/MINOR: systemd: check return value of calloc()
11606 - MINOR: systemd: report it when execve() fails
11607 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
11608 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
11609 - MINOR: backend: add hash-balance-factor option for hash-type consistent
11610 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
11611 - MEDIUM: server: Implement bounded-load hash algorithm
11612 - SCRIPTS: make git-show-backports also dump a "git show" command
11613 - MINOR: build: Allow linking to device-atlas library file
11614 - MINOR: stats: Escape equals sign on socket dump
11615
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200116162016/08/14 : 1.7-dev4
11617 - MINOR: add list_append_word function
11618 - MEDIUM: init: use list_append_word in haproxy.c
11619 - MEDIUM: init: allow directory as argument of -f
11620 - CLEANUP: config: detect double registration of a config section
11621 - MINOR: log: add the %Td log-format specifier
11622 - MEDIUM: filters: Move HTTP headers filtering in its own callback
11623 - MINOR: filters: Simplify calls to analyzers using 2 new macros
11624 - MEDIUM: filters: Add pre and post analyzer callbacks
11625 - DOC: filters: Update the filters documentation accordingly to recent changes
11626 - BUG/MEDIUM: init: don't use environment locale
11627 - SCRIPTS: teach git-show-backports how to report upstream commits
11628 - SCRIPTS: make git-show-backports capable of limiting its history
11629 - BUG/MAJOR: fix listening IP address storage for frontends
11630 - BUG/MINOR: fix listening IP address storage for frontends (cont)
11631 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
11632 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
11633 - BUG/MEDIUM: stick-tables: fix breakage in table converters
11634 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
11635 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
11636 - BUILD: fix build on Solaris 11
11637 - BUG/MEDIUM: config: fix multiple declaration of section parsers
11638 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
11639 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
11640 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
11641 - DOC: update doc about tls-tickets-keys dump
11642 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
11643 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
11644 - MEDIUM: tcp/http: add 'set-src-port' action
11645 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
11646 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
11647 - BUILD/MEDIUM: rebuild everything when an include file is changed
11648 - BUILD/MEDIUM: force a full rebuild if some build options change
11649 - BUG/MEDIUM: lua: converters doesn't work
11650 - BUG/MINOR: http: add-header: header name copied twice
11651 - BUG/MEDIUM: http: add-header: buffer overwritten
11652 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
11653 - MINOR: stream: export the function 'smp_create_src_stkctr'
11654 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
11655 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
11656 - BUG/MINOR: http: url32+src should use the big endian version of url32
11657 - BUG/MINOR: http: url32+src should check cli_conn before using it
11658 - DOC: http: add documentation for url32 and url32+src
11659 - BUG/MINOR: fix http-response set-log-level parsing error
11660 - MINOR: systemd: Use variable for config and pidfile paths
11661 - MINOR: systemd: Perform sanity check on config before reload
11662 - MEDIUM: ssl: support SNI filters with multicerts
11663 - MINOR: ssl: crt-list parsing factor
11664 - BUILD: ssl: fix typo causing a build failure in the multicert patch
11665 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
11666 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
11667 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
11668 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
11669 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
11670 - BUG/MAJOR: external-checks: use asynchronous signal delivery
11671 - BUG/MINOR: external-checks: do not unblock undesired signals
11672 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
11673 - BUG/MEDIUM: filters: Fix data filtering when data are modified
11674 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
11675 - BUG/MINOR: srv-state: fix incorrect output of state file
11676 - BUG/MINOR: ssl: close ssl key file on error
11677 - BUG/MINOR: http: fix misleading error message for response captures
11678 - BUG/BUILD: don't automatically run "make" on "make install"
11679 - DOC: add missing doc for http-request deny [deny_status <status>]
11680 - CLEANUP: dumpstats: u64 field is an unsigned type.
11681 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
11682 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
11683 - MINOR: new function my_realloc2 = realloc + free upon failure
11684 - CLEANUP: fixed some usages of realloc leading to memory leak
11685 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
11686 - CLEANUP: connection: using internal struct to hold source and dest port.
11687 - DOC: spelling fixes
11688 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
11689 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
11690 - BUG/MINOR: Fix endiness issue in DNS header creation code
11691 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
11692 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
11693 - MEDIUM: http: implement http-response track-sc* directive
11694 - BUG/MINOR: peers: Fix peers data decoding issue
11695 - BUG/MINOR: peers: don't count track-sc multiple times on errors
11696 - MINOR: standard: add function "escape_string"
11697 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
11698 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
11699 - DOC: lua: remove old functions
11700 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
11701 - DOC: fix json converter example and error message
11702 - BUG/MEDIUM: stream-int: completely detach connection on connect error
11703 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
11704 - BUILD: make proto_tcp.c compatible with musl library
11705 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
11706 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
11707 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
11708 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
11709 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
11710 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
11711 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
11712 - MINOR: sample: use smp_make_rw() in upper/lower converters
11713 - MINOR: tcp: add dst_is_local and src_is_local
11714 - BUG/MINOR: peers: some updates are pushed twice after a resync.
11715 - BUILD: protocol: fix some build errors on OpenBSD
11716 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
11717 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
11718 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
11719 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
11720 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
11721 - BUILD: compression: remove a warning when no compression lib is used
11722 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
11723 - MINOR: tcp: add further tcp info fetchers
11724 - BUG/MINOR: peers: empty chunks after a resync.
11725 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
11726 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
11727 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
11728 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
11729
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200117302016/05/10 : 1.7-dev3
11731 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
11732 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
11733 - BUILD: namespaces: fix a potential build warning in namespaces.c
11734 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
11735 - DOC: add encoding to json converter example
11736 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
11737 - DOC: Clarify tunes.vars.xxx-max-size settings
11738 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
11739 - CLEANUP: connection: fix double negation on memcmp()
11740 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
11741 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
11742 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
11743 - BUG/MINOR: lua: can't load external libraries
11744 - BUG/MINOR: prevent the dump of uninitialized vars
11745 - CLEANUP: map: it seems that the map were planed to be chained
11746 - MINOR: lua: move class registration facilities
11747 - MINOR: lua: remove some useless checks
11748 - CLEANUP: lua: Remove two same functions
11749 - MINOR: lua: refactor the Lua object registration
11750 - MINOR: lua: precise message when a critical error is catched
11751 - MINOR: lua: post initialization
11752 - MINOR: lua: Add internal function which strip spaces
11753 - MINOR: lua: convert field to lua type
11754 - DOC: "addr" parameter applies to both health and agent checks
11755 - DOC: timeout client: pointers to timeout http-request
11756 - DOC: typo on stick-store response
11757 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
11758 - DOC: typo: ACL subdir match
11759 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
11760 - DOC: regsub: parser limitation about the inability to use closing square brackets
11761 - DOC: typo: req.uri is now replaced by capture.req.uri
11762 - DOC: name set-gpt0 mismatch with the expected keyword
11763 - MINOR: http: sample fetch which returns unique-id
11764 - MINOR: dumpstats: extract stats fields enum and names
11765 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
11766 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
11767 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
11768 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
11769 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
11770 - MINOR: lua: dump general info
11771 - MINOR: lua: add class proxy
11772 - MINOR: lua: add class server
11773 - MINOR: lua: add class listener
11774 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
11775 - MEDIUM: proxy: use dynamic allocation for error dumps
11776 - CLEANUP: remove unneeded casts
11777 - CLEANUP: uniformize last argument of malloc/calloc
11778 - DOC: fix "needed" typo
11779 - BUG/MINOR: dumpstats: fix write to global chunk
11780 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
11781 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
11782 - CLEANUP: proto_http: few corrections for gcc warnings.
11783 - BUG/MINOR: DNS: resolution structure change
11784 - BUG/MINOR : allow to log cookie for tarpit and denied request
11785 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
11786 - OPTIM/MINOR: session: abort if possible before connecting to the backend
11787 - DOC: http: rename the unique-id sample and add the documentation
11788 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
11789 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
11790 - BUG/MINOR: server: risk of over reading the pref_net array.
11791 - BUG/MINOR: cfgparse: couple of small memory leaks.
11792 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
11793 - DOC: fix discrepancy in the example for http-request redirect
11794 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
11795 - CLEANUP: .gitignore cleanup
11796 - DOC: Clarify IPv4 address / mask notation rules
11797 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
11798 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
11799 - BUG/MINOR: listener: stop unbound listeners on startup
11800 - BUG/MINOR: fix maxaccept computation according to the frontend process range
11801 - TESTS: add blocksig.c to run tests with all signals blocked
11802 - MEDIUM: unblock signals on startup.
11803 - MINOR: filters: Print the list of existing filters during HA startup
11804 - MINOR: filters: Typo in an error message
11805 - MINOR: filters: Filters must define the callbacks struct during config parsing
11806 - DOC: filters: Add filters documentation
11807 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
11808 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
11809 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
11810 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
11811 - MINOR: Add ability for agent-check to set server maxconn
11812 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
11813 - MINOR: filters: add opaque data
11814 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
11815 - MINOR: lua: migrate the argument mask to 64 bits type.
11816 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
11817 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
11818 - BUG/MEDIUM: http: fix incorrect reporting of server errors
11819 - MINOR: channel: add new function channel_congested()
11820 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
11821 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
11822 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
11823 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
11824 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
11825 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
11826 - MINOR: stats: fix typo in help messages
11827 - MINOR: stats: show stat resolvers missing in the help message
11828 - BUG/MINOR: dns: fix DNS header definition
11829 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
11830 - CLEANUP: don't ignore scripts in .gitignore
11831 - BUILD: add a few release and backport scripts in scripts/
11832
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100118332016/03/14 : 1.7-dev2
11834 - DOC: lua: fix lua API
11835 - DOC: mailers: typo in 'hostname' description
11836 - DOC: compression: missing mention of libslz for compression algorithm
11837 - BUILD/MINOR: regex: missing header
11838 - BUG/MINOR: stream: bad return code
11839 - DOC: lua: fix somme errors and add implicit types
11840 - MINOR: lua: add set/get priv for applets
11841 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
11842 - BUG/MINOR: http: Be sure to process all the data received from a server
11843 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
11844 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
11845 - DOC: ssl: fixed some formatting errors in crt tag
11846 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
11847 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
11848 - MINOR: chunk: make chunk_initstr() take a const string
11849 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
11850 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
11851 - MINOR: lru: new function to delete <nb> least recently used keys
11852 - DOC: add Ben Shillito as the maintainer of 51d
11853 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
11854 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
11855 - BUG/MINOR: 51d: Releases workset back to pool.
11856 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
11857 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
11858 - MINOR: rename master process name in -Ds (systemd mode)
11859 - DOC: fix a few spelling mistakes
11860 - DOC: fix "workaround" spelling
11861 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
11862 - MINOR: fix the return type for dns_response_get_query_id() function
11863 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
11864 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
11865 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
11866 - BUG/MEDIUM: servers state: server port is used uninitialized
11867 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
11868 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
11869 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
11870 - MEDIUM: pools: add a new flag to avoid rounding pool size up
11871 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
11872 - BUG/MINOR: stream: don't force retries if the server is DOWN
11873 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
11874 - MINOR: unix: don't mention free ports on EAGAIN
11875 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
11876 - MINOR: stats: send content-length with the redirect to allow keep-alive
11877 - BUG: stream_interface: Reuse connection even if the output channel is empty
11878 - DOC: remove old tunnel mode assumptions
11879 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
11880 - BUG/MEDIUM: http-reuse: do not share private connections across backends
11881 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
11882 - BUG/MINOR: stats: fix missing comma in stats on agent drain
11883 - MAJOR: filters: Add filters support
11884 - MINOR: filters: Do not reset stream analyzers if the client is gone
11885 - REORG: filters: Prepare creation of the HTTP compression filter
11886 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
11887 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
11888 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
11889 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
11890 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
11891 - MINOR: filters: Add stream_filters structure to hide filters info
11892 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
11893 - MINOR: filters: Remove unused or useless stuff and do small optimizations
11894 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
11895 - MINOR: filters/http: Slightly update the parsing of chunks
11896 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
11897 - MINOR: filters: Add an filter example
11898 - MINOR: filters: Extract proxy stuff from the struct filter
11899 - MINOR: map: Add regex matching replacement
11900 - BUG/MINOR: lua: unsafe initialization
11901 - DOC: lua: fix somme errors
11902 - MINOR: lua: file dedicated to unsafe functions
11903 - MINOR: lua: add "now" time function
11904 - MINOR: standard: add RFC HTTP date parser
11905 - MINOR: lua: Add date functions
11906 - MINOR: lua: move common function
11907 - MINOR: lua: merge function
11908 - MINOR: lua: Add concat class
11909 - MINOR: standard: add function "escape_chunk"
11910 - MEDIUM: log: add a new log format flag "E"
11911 - DOC: add server name at rate-limit sessions example
11912 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
11913 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
11914 - DOC: LUA: fix some typos and syntax errors
11915 - MINOR: cli: add a new "show env" command
11916 - MEDIUM: config: allow to manipulate environment variables in the global section
11917 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
11918 - MINOR: mailers: increase default timeout to 10 seconds
11919 - MINOR: mailers: use <CRLF> for all line endings
11920 - BUG/MAJOR: lua: segfault using Concat object
11921 - DOC: lua: copyrights
11922 - MINOR: common: mask conversion
11923 - MEDIUM: dns: extract options
11924 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
11925 - MINOR: mailers: make it possible to configure the connection timeout
11926 - BUG/MAJOR: lua: applets can't sleep.
11927 - BUG/MINOR: server: some prototypes are renamed
11928 - BUG/MINOR: lua: Useless copy
11929 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
11930 - BUG/MINOR: server: fix the format of the warning on address change
11931 - CLEANUP: server: add "const" to some message strings
11932 - MINOR: server: generalize the "updater" source
11933 - BUG/MEDIUM: chunks: always reject negative-length chunks
11934 - BUG/MINOR: systemd: ensure we don't miss signals
11935 - BUG/MINOR: systemd: report the correct signal in debug message output
11936 - BUG/MINOR: systemd: propagate the correct signal to haproxy
11937 - MINOR: systemd: ensure a reload doesn't mask a stop
11938 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
11939 - CLEANUP: stats: Avoid computation with uninitialized bits.
11940 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
11941 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
11942 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
11943 - BUG/MAJOR: samples: check smp->strm before using it
11944 - MINOR: sample: add a new helper to initialize the owner of a sample
11945 - MINOR: sample: always set a new sample's owner before evaluating it
11946 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
11947 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
11948 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
11949 - MINOR: stats: create fields types suitable for all CSV output data
11950 - MINOR: stats: add all the "show info" fields in a table
11951 - MEDIUM: stats: fill all the show info elements prior to displaying them
11952 - MINOR: stats: add a function to emit fields into a chunk
11953 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
11954 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
11955 - MINOR: stats: add a declaration of all stats fields
11956 - MINOR: stats: don't hard-code the CSV fields list anymore
11957 - MINOR: stats: create stats fields storage and CSV dump function
11958 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
11959 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
11960 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
11961 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
11962 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
11963 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
11964 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
11965 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
11966 - MEDIUM: stats: move the server state coloring logic to the server dump function
11967 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
11968 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
11969 - MINOR: stats: make CSV report server check status only when enabled
11970 - MINOR: stats: only report backend's down time if it has servers
11971 - MINOR: stats: prepend '*' in front of the check status when in progress
11972 - MINOR: stats: make HTML stats dump rely on the table for the check status
11973 - MINOR: stats: add agent_status, agent_code, agent_duration to output
11974 - MINOR: stats: add check_desc and agent_desc to the output fields
11975 - MINOR: stats: add check and agent's health values in the output
11976 - MEDIUM: stats: make the HTML server state dump use the CSV states
11977 - MEDIUM: stats: only report observe errors when observe is set
11978 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
11979 - MEDIUM: stats: report server's address in the CSV output
11980 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
11981 - MEDIUM: stats: compute the color code only in the HTML form
11982 - MEDIUM: stats: report the listeners' address in the CSV output
11983 - MEDIUM: stats: make it possible to report the WAITING state for listeners
11984 - REORG: stats: dump the frontend's HTML stats via a generic function
11985 - REORG: stats: dump the socket stats via the generic function
11986 - REORG: stats: dump the server stats via the generic function
11987 - REORG: stats: dump the backend stats via the generic function
11988 - MEDIUM: stats: add a new "mode" column to report the proxy mode
11989 - MINOR: stats: report the load balancing algorithm in CSV output
11990 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
11991 - MINOR: stats: report number of intercepted requests for frontend and backends
11992 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
11993 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
11994 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
11995 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
11996 - MINOR: stats: add functions to emit typed fields into a chunk
11997 - MEDIUM: stats: support "show info typed" on the CLI
11998 - MEDIUM: stats: implement a typed output format for stats
11999 - DOC: document the "show info typed" and "show stat typed" output formats
12000 - MINOR: cfgparse: warn when uid parameter is not a number
12001 - MINOR: cfgparse: warn when gid parameter is not a number
12002 - BUG/MINOR: standard: Avoid free of non-allocated pointer
12003 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
12004 - CLEANUP: http: fix a build warning introduced by a recent fix
12005 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
12006
Willy Tarreaucb928252015-12-20 23:33:18 +0100120072015/12/20 : 1.7-dev1
12008 - DOC: specify that stats socket doc (section 9.2) is in management
12009 - BUILD: install only relevant and existing documentation
12010 - CLEANUP: don't ignore debian/ directory if present
12011 - BUG/MINOR: dns: parsing error of some DNS response
12012 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
12013 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
12014 - MEDIUM: dns: Don't use the ANY query type
12015 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
12016 - DOC: fix a typo for a "deviceatlas" keyword
12017 - FIX: small typo in an example using the "Referer" header
12018 - MINOR: cli: ability to set per-server maxconn
12019 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
12020 - DEBUG/MEDIUM: memory: optionally protect free data in pools
12021 - DEBUG/MEDIUM: memory: add optional control pool memory operations
12022 - MEDIUM: memory: add accounting for failed allocations
12023 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
12024 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
12025 - BUG/MINOR: dns: unable to parse CNAMEs response
12026 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
12027 - DOC: deviceatlas: more example use cases.
12028 - MINOR: config: allow IPv6 bracketed literals
12029 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
12030 - BUILD: add Haiku as supported target.
12031 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
12032 - DOC: typo on capture.res.hdr and capture.req.hdr
12033 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
12034 - CLEANUP: use direction names in place of numeric values
12035 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
12036 - MINOR: check: add agent-send server parameter
12037 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
12038 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
12039 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
12040 - BUILD: freebsd: double declaration
12041 - BUG/MEDIUM: lua: clean output buffer
12042 - BUILD: check for libressl to be able to build against it
12043 - DOC: lua-api/index.rst small example fixes, spelling correction.
12044 - DOC: lua: architecture and first steps
12045 - DOC: relation between timeout http-request and option http-buffer-request
12046 - BUILD: Make deviceatlas require PCRE
12047 - BUG: http: do not abort keep-alive connections on server timeout
12048 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
12049 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
12050 - BUILD/MINOR: http: proto_http.h needs sample.h
12051 - BUG/MEDIUM: http: don't enable auto-close on the response side
12052 - BUG/MEDIUM: stream: fix half-closed timeout handling
12053 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
12054 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
12055 - BUG/MEDIUM: sample: urlp can't match an empty value
12056 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
12057 - CLEANUP: proxy: calloc call inverted arguments
12058 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
12059 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
12060 - DOC: Edited 51Degrees section of README/
12061 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
12062 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
12063 - BUG/MINOR: checks: typo in an email-alert error message
12064 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
12065 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
12066 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
12067 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
12068 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
12069 - MINOR: ssl: Added cert_key_and_chain struct
12070 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
12071 - MINOR: ssl: Added multi cert support for crt-list config keyword
12072 - MEDIUM: ssl: Added multi cert support for loading crt directories
12073 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
12074 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
12075 - MINOR: config: make tune.recv_enough configurable
12076 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
12077 - DOC: ssl: Adding docs for Multi-Cert bundling
12078 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
12079 - BUG/MEDIUM: peers: old stick table updates could be repushed.
12080 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
12081 - REORG/MINOR: lua: convert boolean "int" to bitfield
12082 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
12083 - BUG/MINOR: lua: Lua applets must not use http_txn
12084 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
12085 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
12086 - CLEANUP: lua: bad error messages
12087 - CONTRIB: initiate a debugging suite to make debugging easier
12088
Willy Tarreau991b4782015-10-13 21:48:10 +0200120892015/10/13 : 1.7-dev0
12090 - exact copy of 1.6.0
12091
Willy Tarreau844028b2015-10-13 18:52:22 +0200120922015/10/13 : 1.6.0
12093 - BUG/MINOR: Handle interactive mode in cli handler
12094 - DOC: global section missing parameters
12095 - DOC: backend section missing parameters
12096 - DOC: stats paramaters available in frontend
12097 - MINOR: lru: do not allocate useless memory in lru64_lookup
12098 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
12099 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
12100 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
12101 - MINOR: ssl: Read the file used to generate certificates in any order
12102 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
12103 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
12104 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
12105 - BUILD: Fix the build on OSX (htonll/ntohll)
12106 - BUILD: enable build on Linux/s390x
12107 - BUG/MEDIUM: lua: direction test failed
12108 - MINOR: lua: fix a spelling error in some error messages
12109 - CLEANUP: cli: ensure we can never double-free error messages
12110 - BUG/MEDIUM: lua: force server-close mode on Lua services
12111 - MEDIUM: init: support more command line arguments after pid list
12112 - MEDIUM: init: support a list of files on the command line
12113 - MINOR: debug: enable memory poisonning to use byte 0
12114 - BUILD: ssl: fix build error introduced by recent commit
12115 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
12116 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
12117 - DOC: mention the "namespace" options for bind and server lines
12118 - DOC: add the "management" documentation
12119 - DOC: move the stats socket documentation from config to management
12120 - MINOR: examples: update haproxy.spec to mention new docs
12121 - DOC: mention management.txt in README
12122 - DOC: remove haproxy-{en,fr}.txt
12123 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
12124 - MINOR: init: report use of libslz instead of "no compression"
12125 - CLEANUP: examples: remove some obsolete and confusing files
12126 - CLEANUP: examples: remove obsolete configuration file samples
12127 - CLEANUP: examples: fix the example file content-sw-sample.cfg
12128 - CLEANUP: examples: update sample file option-http_proxy.cfg
12129 - CLEANUP: examples: update sample file ssl.cfg
12130 - CLEANUP: tests: move a test file from examples/ to tests/
12131 - CLEANUP: examples: shut up warnings in transparent proxy example
12132 - CLEANUP: tests: removed completely obsolete test files
12133 - DOC: update ROADMAP to remove what was done in 1.6
12134 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
12135
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200121362015/10/06 : 1.6-dev7
12137 - MINOR: cli: Dump all resolvers stats if no resolver section is given
12138 - BUG: config: external-check command validation is checking for incorrect arguments.
12139 - DOC: documentation format cleanups
12140 - DOC: lua: few typos.
12141 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
12142 - BUG/MEDIUM: logs: segfault writing to log from Lua
12143 - DOC: fix lua use-service example
12144 - MINOR: payload: add support for tls session ticket ext
12145 - MINOR: lua: remove the run flag
12146 - MEDIUM: lua: change the timeout execution
12147 - MINOR: lua: rename the tune.lua.applet-timeout
12148 - DOC: lua: update Lua doc
12149 - DOC: lua: update doc according with the last Lua changes
12150 - MINOR: http/tcp: fill the avalaible actions
12151 - DOC: reorder misplaced res.ssl_hello_type in the doc
12152 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
12153 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
12154 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
12155 - BUILD: server: fix build warnings introduced by load-server-state
12156 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
12157
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200121582015/09/28 : 1.6-dev6
12159 - BUG/MAJOR: can't enable a server through the stat socket
12160 - MINOR: server: Macro definition for server-state
12161 - MINOR: cli: new stats socket command: show servers state
12162 - DOC: stats socket command: show servers state
12163 - MINOR: config: new global directive server-state-base
12164 - DOC: global directive server-state-base
12165 - MINOR: config: new global section directive: server-state-file
12166 - DOC: new global directive: server-state-file
12167 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
12168 - DOC: load-server-state-from-file
12169 - MINOR: init: server state loaded from file
12170 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
12171 - MINOR: cli: new stats socket command: show backend
12172 - DOC: servers state seamless reload example
12173 - BUG: dns: can't connect UDP socket on FreeBSD
12174 - MINOR: cfgparse: New function cfg_unregister_sections()
12175 - MINOR: chunk: New function free_trash_buffers()
12176 - BUG/MEDIUM: main: Freeing a bunch of static pointers
12177 - MINOR: proto_http: Externalisation of previously internal functions
12178 - MINOR: global: Few new struct fields for da module
12179 - MAJOR: da: Update of the DeviceAtlas API module
12180 - DOC: DeviceAtlas new keywords
12181 - DOC: README: DeviceAtlas sample configuration updates
12182 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
12183 - MEDIUM: log: use a separate buffer for the header and for the message
12184 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
12185 - MEDIUM: logs: add support for RFC5424 header format per logger
12186 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
12187 - DOC: mention support for the RFC5424 syslog message format
12188 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
12189 - MEDIUM: logs: pass the trailing "\n" as an iovec
12190 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
12191 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
12192 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
12193 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
12194 - MINOR: global: Added new fields for 51Degrees device detection
12195 - DOC: Added more explanation for 51Degrees V3.2
12196 - BUILD: Changed 51Degrees option to support V3.2
12197 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
12198 - MINOR: 51d: Improved string handling for LRU cache
12199 - DOC: add references to rise/fall for the fastinter explanation
12200 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
12201 - BUG/MAJOR: lua: potential unexpected aborts()
12202 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
12203 - MINOR: action: add private configuration
12204 - MINOR: action: add reference to the original keywork matched for the called parser.
12205 - MINOR: lua: change actions registration
12206 - MEDIUM: proto_http: smp_prefetch_http initialize txn
12207 - MINOR: channel: rename function chn_sess to chn_strm
12208 - CLEANUP: lua: align defines
12209 - MINOR: http: export http_get_path() function
12210 - MINOR: http: export the get_reason() function
12211 - MINOR: http: export function http_msg_analyzer()
12212 - MINOR: http: split initialization
12213 - MINOR: lua: reset pointer after use
12214 - MINOR: lua: identify userdata objects
12215 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
12216 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
12217 - CLEANUP: lua: use calloc in place of malloc
12218 - BUG/MEDIUM: lua: longjmp function must be unregistered
12219 - BUG/MEDIUM: lua: forces a garbage collection
12220 - BUG/MEDIUM: lua: wakeup task on bad conditions
12221 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
12222 - MINOR: lua: extend socket address to support non-IP families
12223 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
12224 - BUG/MEDIUM: lua: socket destroy before reading pending data
12225 - MEDIUM: lua: change the GC policy
12226 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
12227 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
12228 - MINOR: applet: add init function
12229 - MINOR: applet: add an execution timeout
12230 - MINOR: stream/applet: add use-service action
12231 - MINOR: lua: add AppletTCP class and service
12232 - MINOR: lua: add AppletHTTP class and service
12233 - DOC: lua: some documentation update
12234 - DOC: add the documentation about internal circular lists
12235 - DOC: add a CONTRIBUTING file
12236 - DOC: add a MAINTAINERS file
12237 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
12238 - DOC: update coding-style to reference checkpatch.pl
12239 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
12240 - BUG/MINOR: args: add name for ARGT_VAR
12241 - DOC: add more entries to MAINTAINERS
12242 - DOC: add more entries to MAINTAINERS
12243 - CLEANUP: stream-int: remove obsolete function si_applet_call()
12244 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
12245 - BUG/MEDIUM: http: do not dereference strm_li(stream)
12246 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
12247 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
12248 - MINOR: stream-int: use si_release_endpoint() to close idle conns
12249 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
12250 - BUG/MEDIUM: acl: always accept match "found"
12251 - MINOR: applet: rename applet_runq to applet_active_queue
12252 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
12253 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
12254 - MINOR: stream-int: implement a new stream_int_update() function
12255 - MEDIUM: stream-int: factor out the stream update functions
12256 - MEDIUM: stream-int: call stream_int_update() from si_update()
12257 - MINOR: stream-int: export stream_int_update_*
12258 - MINOR: stream-int: move the applet_pause call out of the stream updates
12259 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
12260 - MINOR: stream-int: implement the stream_int_notify() function
12261 - MEDIUM: stream-int: use the same stream notification function for applets and conns
12262 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
12263 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
12264 - BUG/MEDIUM: applet: fix reporting of broken write situation
12265 - BUG/MINOR: stats: do not call cli_release_handler 3 times
12266 - BUG/MEDIUM: cli: properly handle closed output
12267 - MINOR: cli: do not call the release handler on internal error.
12268 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
12269 - DEBUG: add p_malloc() to return a poisonned memory area
12270 - CLEANUP: lua: remove unneeded memset(0) after calloc()
12271 - MINOR: lua: use the proper applet wakeup mechanism
12272 - BUG/MEDIUM: lua: better fix for the protocol check
12273 - BUG/MEDIUM: lua: properly set the target on the connection
12274 - MEDIUM: actions: pass a new "flags" argument to custom actions
12275 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
12276 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
12277 - MEDIUM: lua: only allow actions to yield if not in a final call
12278 - DOC: clarify how to make use of abstract sockets in socat
12279 - CLEANUP: config: make the errorloc/errorfile messages less confusing
12280 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
12281 - BUG/MINOR: config: check that tune.bufsize is always positive
12282 - MEDIUM: config: set tune.maxrewrite to 1024 by default
12283 - DOC: add David Carlier as maintainer of da.c
12284 - DOC: fix some broken unexpected unicode chars in the Lua doc.
12285 - BUG/MEDIUM: proxy: ignore stopped peers
12286 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
12287 - MEDIUM: init: completely deallocate unused peers
12288 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
12289 - DOC: remove outdated actions lists on tcp-request/response
12290 - MEDIUM: tcp: add new tcp action "silent-drop"
12291 - DOC: add URLs to optional libraries in the README
12292
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200122932015/09/14 : 1.6-dev5
12294 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
12295 - BUG/MEDIUM: dns: DNS resolution doesn't start
12296 - BUG/MAJOR: dns: dns client resolution infinite loop
12297 - MINOR: dns: coding style update
12298 - MINOR: dns: new bitmasks to use against DNS flags
12299 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
12300 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
12301 - MEDIUM: dns: handling of truncated response
12302 - MINOR: DNS client query type failover management
12303 - MINOR: dns: no expected DNS record type found
12304 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
12305 - BUG/MINOR: DNS request retry counter used for retry only
12306 - DOC: DNS documentation updated
12307 - MEDIUM: actions: remove ACTION_STOP
12308 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
12309 - BUG/MINOR: lua: last log character truncated.
12310 - CLEANUP: typo: bad indent
12311 - CLEANUP: actions: missplaced includes
12312 - MINOR: build: missing header
12313 - CLEANUP: lua: Merge log functions
12314 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
12315 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
12316 - BUG/MAJOR: http: don't call http_send_name_header() after an error
12317 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
12318 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
12319 - BUG/MEDIUM: dns: use the correct server hostname when resolving
12320
Willy Tarreau61d301f2015-08-30 00:17:17 +0200123212015/08/30 : 1.6-dev4
12322 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
12323 - DOC: typo in 'redirect', 302 code meaning
12324 - DOC: typos in tcp-check expect examples
12325 - DOC: resolve-prefer default value and default-server update
12326 - MINOR: DNS counters: increment valid counter
12327 - BUG/MEDIUM: DNS resolution response parsing broken
12328 - MINOR: server: add new SRV_ADMF_CMAINT flag
12329 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
12330 - BUG/MEDIUM: dns: wrong first time DNS resolution
12331 - BUG/MEDIUM: lua: Lua tasks fail to start.
12332 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
12333 - DOC/MINOR: fix OpenBSD versions where haproxy works
12334 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
12335 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
12336 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
12337 - BUILD: ssl: Allow building against libssl without SSLv3.
12338 - DOC: clarify some points about SSL and the proxy protocol
12339 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
12340 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
12341 - DOC: match several lua configuration option names to those implemented in code
12342 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
12343 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
12344 - MINOR: stream: initialize the current_rule field to NULL on stream init
12345 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
12346 - CLEANUP: proto_http: remove useless initialisation
12347 - CLEANUP: http/tcp actions: remove the scope member
12348 - BUG/MINOR: proto_tcp: custom action continue is ignored
12349 - MINOR: proto_tcp: add session in the action prototype
12350 - MINOR: vars: reduce the code size of some wrappers
12351 - MINOR: Move http method enum from proto_http to sample
12352 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
12353 - MINOR: sample/proto_tcp: export "smp_fetch_src"
12354 - MEDIUM: cli: rely on the map's output type instead of the sample type
12355 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
12356 - BUG/MEDIUM: vars: segfault during the configuration parsing
12357 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
12358 - BUG/MEDIUM: lua: bad error processing
12359 - MINOR: samples: rename a struct from sample_storage to sample_data
12360 - MINOR: samples: rename some struct member from "smp" to "data"
12361 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
12362 - MINOR: samples: extract the anonymous union and create the union sample_value
12363 - MINOR: samples: rename union from "data" to "u"
12364 - MEDIUM: 51degrees: Adapt the 51Degrees library
12365 - MINOR: samples: data assignation simplification
12366 - MEDIUM: pattern/map: Maps can returns various types
12367 - MINOR: map: The map can return IPv4 and IPv6
12368 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
12369 - MINOR: actions: Remove the data opaque pointer
12370 - MINOR: lua: use the hlua_rule type in place of opaque type
12371 - MINOR: vars: use the vars types as argument in place of opaque type
12372 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
12373 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
12374 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
12375 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
12376 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
12377 - MEDIUM: capture: Move the capture configuration storage in the union
12378 - MINOR: actions: add "from" information
12379 - MINOR: actions: remove the mark indicating the last entry in enum
12380 - MINOR: actions: Declare all the embedded actions in the same header file
12381 - MINOR: actions: change actions names
12382 - MEDIUM: actions: Add standard return code for the action API
12383 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
12384 - MINOR: proto_tcp: proto_tcp.h is now useles
12385 - MINOR: actions: mutualise the action keyword lookup
12386 - MEDIUM: actions: Normalize the return code of the configuration parsers
12387 - MINOR: actions: Remove wrappers
12388 - MAJOR: stick-tables: use sample types in place of dedicated types
12389 - MEDIUM: stick-tables: use the sample type names
12390 - MAJOR: stick-tables: remove key storage from the key struct
12391 - MEDIUM: stick-tables: Add GPT0 in the stick tables
12392 - MINOR: stick-tables: Add GPT0 access
12393 - MINOR: stick-tables: Add GPC0 actions
12394 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
12395 - DOC: ssl: missing LF
12396 - MINOR: lua: add core.done() function
12397 - DOC: fix function name
12398 - BUG/MINOR: lua: in some case a sample may remain undefined
12399 - DOC: fix "http_action_set_req_line()" comments
12400 - MINOR: http: Action for manipulating the returned status code.
12401 - MEDIUM: lua: turns txn:close into txn:done
12402 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
12403 - BUILD: link with libdl if needed for Lua support
12404 - CLEANUP: backend: factor out objt_server() in connect_server()
12405 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
12406 - MEDIUM: stream-int: simplify si_alloc_conn()
12407 - MINOR: stream-int: add new function si_detach_endpoint()
12408 - MINOR: server: add a list of private idle connections
12409 - MINOR: connection: add a new list member in the connection struct
12410 - MEDIUM: stream-int: queue idle connections at the server
12411 - MINOR: stream-int: make si_idle_conn() only accept valid connections
12412 - MINOR: server: add a list of already used idle connections
12413 - MINOR: connection: add a new flag CO_FL_PRIVATE
12414 - MINOR: config: add new setting "http-reuse"
12415 - MAJOR: backend: initial work towards connection reuse
12416 - MAJOR: backend: improve the connection reuse mechanism
12417 - MEDIUM: backend: implement "http-reuse safe"
12418 - MINOR: server: add a list of safe, already reused idle connections
12419 - MEDIUM: backend: add the "http-reuse aggressive" strategy
12420 - DOC: document the new http-reuse directive
12421 - DOC: internals: document next steps for HTTP connection reuse
12422 - DOC: mention that %ms is left-padded with zeroes.
12423 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
12424 - MAJOR: http: remove references to appsession
12425 - CLEANUP: config: remove appsession initialization
12426 - CLEANUP: appsession: remove appsession.c and sessionhash.c
12427 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
12428 - CLEANUP: proxy: remove last references to appsession
12429 - CLEANUP: appsession: remove the last include files
12430 - DOC: remove documentation about appsession
12431 - CLEANUP: .gitignore: ignore more test files
12432 - CLEANUP: .gitignore: finally ignore everything but what is known.
12433 - MEDIUM: config: emit a warning on a frontend without listener
12434 - DOC: add doc/internals/entities-v2.txt
12435 - DOC: add doc/linux-syn-cookies.txt
12436 - DOC: add design thoughts on HTTP/2
12437 - DOC: add some thoughts on connection sharing for HTTP/2
12438 - DOC: add design thoughts on dynamic buffer allocation
12439 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
12440 - DOC: add new file intro.txt
12441 - MAJOR: tproxy: remove support for cttproxy
12442 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
12443 - DOC: lua: replace txn:close with txn:done in lua-api
12444 - DOC: intro: minor updates and fixes
12445 - DOC: intro: fix too long line.
12446 - DOC: fix example of http-request using ssl_fc_session_id
12447 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
12448 - CLEANUP: lua: fix some indent issues
12449 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
12450 - DOC: lua: mention than txn:close was renamed txn:done.
12451
Willy Tarreau50bdda62015-07-22 17:32:56 +0200124522015/07/22 : 1.6-dev3
12453 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
12454 - MEDIUM: http: Add new 'set-src' option to http-request
12455 - DOC usesrc root privileges requirments
12456 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
12457 - MINOR: proxy: bit field for proxy_find_best_match diff status
12458 - MINOR: server: new server flag: SRV_F_FORCED_ID
12459 - MINOR: server: server_find functions: id, name, best_match
12460 - DOC: dns: fix chapters syntax
12461 - BUILD/MINOR: tools: rename popcount to my_popcountl
12462 - BUILD: add netbsd TARGET
12463 - MEDIUM: 51Degrees code refactoring and cleanup
12464 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
12465 - DOC: add notes about the "51degrees-cache-size" parameter
12466 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
12467 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
12468 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
12469 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
12470 - BUG/MINOR: lua: type error in the arguments wrapper
12471 - CLEANUP: vars: remove unused struct
12472 - BUG/MINOR: http/sample: gmtime/localtime can fail
12473 - MINOR: standard: add 64 bits conversion functions
12474 - MAJOR: sample: converts uint and sint in 64 bits signed integer
12475 - MAJOR: arg: converts uint and sint in sint
12476 - MEDIUM: sample: switch to saturated arithmetic
12477 - MINOR: vars: returns variable content
12478 - MEDIUM: vars/sample: operators can use variables as parameter
12479 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
12480 - BUILD/MINOR: lua: fix a harmless build warning
12481 - BUILD/MINOR: stats: fix build warning due to condition always true
12482 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
12483 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
12484 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
12485 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
12486 - MINOR: vars: make the accounting not depend on the stream
12487 - MEDIUM: vars: move the session variables to the session, not the stream
12488 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
12489 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
12490 - BUG/MAJOR: tcp: tcp rulesets were still broken
12491 - MINOR: stats: improve compression stats reporting
12492 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
12493 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
12494 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
12495 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
12496 - MINOR: args: add new context for servers
12497 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
12498 - MINOR: ssl: provide ia function to set the SNI extension on a connection
12499 - MEDIUM: ssl: add sni support on the server lines
12500 - CLEANUP: stream: remove a useless call to si_detach()
12501 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
12502 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
12503 - MINOR: stream-int: only use si_release_endpoint() to release a connection
12504 - MINOR: standard: provide htonll() and ntohll()
12505 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
12506 - BUG/MAJOR: dns: fix the length of the string to be copied
12507
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200125082015/06/17 : 1.6-dev2
12509 - BUG/MINOR: ssl: Display correct filename in error message
12510 - MEDIUM: logs: Add HTTP request-line log format directives
12511 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
12512 - BUG/MINOR: check: fix tcpcheck error message
12513 - MINOR: use an int instead of calling tcpcheck_get_step_id
12514 - MINOR: tcpcheck_rule structure update
12515 - MINOR: include comment in tcpcheck error log
12516 - DOC: tcpcheck comment documentation
12517 - MEDIUM: server: add support for changing a server's address
12518 - MEDIUM: server: change server ip address from stats socket
12519 - MEDIUM: protocol: add minimalist UDP protocol client
12520 - MEDIUM: dns: implement a DNS resolver
12521 - MAJOR: server: add DNS-based server name resolution
12522 - DOC: server name resolution + proto DNS
12523 - MINOR: dns: add DNS statistics
12524 - MEDIUM: http: configurable http result codes for http-request deny
12525 - BUILD: Compile clean when debug options defined
12526 - MINOR: lru: Add the possibility to free data when an item is removed
12527 - MINOR: lru: Add lru64_lookup function
12528 - MEDIUM: ssl: Add options to forge SSL certificates
12529 - MINOR: ssl: Export functions to manipulate generated certificates
12530 - MEDIUM: config: add DeviceAtlas global keywords
12531 - MEDIUM: global: add the DeviceAtlas required elements to struct global
12532 - MEDIUM: sample: add the da-csv converter
12533 - MEDIUM: init: DeviceAtlas initialization
12534 - BUILD: Makefile: add options to build with DeviceAtlas
12535 - DOC: README: explain how to build with DeviceAtlas
12536 - BUG/MEDIUM: http: fix the url_param fetch
12537 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
12538 - MAJOR: peers: peers protocol version 2.0
12539 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
12540 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
12541 - MEDIUM: peers: support of any stick-table data-types for sync
12542 - BUG/MAJOR: sample: regression on sample cast to stick table types.
12543 - CLEANUP: deinit: remove codes for cleaning p->block_rules
12544 - DOC: Fix L4TOUT typo in documentation
12545 - DOC: set-log-level in Logging section preamble
12546 - BUG/MEDIUM: compat: fix segfault on FreeBSD
12547 - MEDIUM: check: include server address and port in the send-state header
12548 - MEDIUM: backend: Allow redispatch on retry intervals
12549 - MINOR: Add TLS ticket keys reference and use it in the listener struct
12550 - MEDIUM: Add support for updating TLS ticket keys via socket
12551 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
12552 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
12553 - DOC: Update doc about weight, act and bck fields in the statistics
12554 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
12555 - MINOR: ssl: add a destructor to free allocated SSL ressources
12556 - MEDIUM: ssl: add the possibility to use a global DH parameters file
12557 - MEDIUM: ssl: replace standards DH groups with custom ones
12558 - MEDIUM: stats: Add enum srv_stats_state
12559 - MEDIUM: stats: Separate server state and colour in stats
12560 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
12561 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
12562 - MEDIUM: Lower priority of email alerts for log-health-checks messages
12563 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
12564 - MEDIUM: Document when email-alerts are sent
12565 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
12566 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
12567 - BUG/MINOR: utf8: remove compilator warning
12568 - MEDIUM: map: uses HAProxy facilities to store default value
12569 - BUG/MINOR: lua: error in detection of mandatory arguments
12570 - BUG/MINOR: lua: set current proxy as default value if it is possible
12571 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
12572 - BUG/MEDIUM: lua: undetected infinite loop
12573 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
12574 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
12575 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
12576 - BUILD: lua: it miss the '-ldl' directive
12577 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
12578 - MINOR: http: split the function http_action_set_req_line() in two parts
12579 - MINOR: http: split http_transform_header() function in two parts.
12580 - MINOR: http: export function inet_set_tos()
12581 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
12582 - MINOR: lua: create and register HTTP class
12583 - DOC: lua: fix some typos
12584 - MINOR: lua: add log functions
12585 - BUG/MINOR: lua: Fix SSL initialisation
12586 - DOC: lua: some fixes
12587 - MINOR: lua: (req|res)_get_headers return more than one header value
12588 - MINOR: lua: map system integration in Lua
12589 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
12590 - MINOR: sample: add url_dec converter
12591 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
12592 - MEDIUM: sample change the prototype of sample-fetches and converters functions
12593 - MINOR: sample: fill the struct sample with the options.
12594 - MEDIUM: sample: change the prototype of sample-fetches functions
12595 - MINOR: http: split the url_param in two parts
12596 - CLEANUP: http: bad indentation
12597 - MINOR: http: add body_param fetch
12598 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
12599 - DOC: http: req.body_param documentation
12600 - MINOR: proxy: custom capture declaration
12601 - MINOR: capture: add two "capture" converters
12602 - MEDIUM: capture: Allow capture with slot identifier
12603 - MINOR: http: add array of generic pointers in http_res_rules
12604 - MEDIUM: capture: adds http-response capture
12605 - MINOR: common: escape CSV strings
12606 - MEDIUM: stats: escape some strings in the CSV dump
12607 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
12608 - MINOR: lua: Lua tcp action are not final action
12609 - DOC: lua: schematics about lua socket organization
12610 - BUG/MINOR: debug: display (null) in place of "meth"
12611 - DOC: mention the "lua action" in documentation
12612 - MINOR: standard: add function that converts signed int to a string
12613 - BUG/MINOR: sample: wrong conversion of signed values
12614 - MEDIUM: sample: Add type any
12615 - MINOR: debug: add a special converter which display its input sample content.
12616 - MINOR: tcp: increase the opaque data array
12617 - MINOR: tcp/http/conf: extends the keyword registration options
12618 - MINOR: build: fix build dependency
12619 - MEDIUM: vars: adds support of variables
12620 - MINOR: vars: adds get and set functions
12621 - MINOR: lua: Variable access
12622 - MINOR: samples: add samples which returns constants
12623 - BUG/MINOR: vars/compil: fix some warnings
12624 - BUILD: add 51degrees options to makefile.
12625 - MINOR: global: add several 51Degrees members to global
12626 - MINOR: config: add 51Degrees config parsing.
12627 - MINOR: init: add 51Degrees initialisation code
12628 - MEDIUM: sample: add fiftyone_degrees converter.
12629 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
12630 - MEDIUM: sample: add trie support to 51Degrees
12631 - DOC: add 51Degrees notes to configuration.txt.
12632 - DOC: add build indications for 51Degrees to README.
12633 - MEDIUM: cfgparse: introduce weak and strong quoting
12634 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
12635 - MINOR: cfgparse: remove line size limitation
12636 - MEDIUM: cfgparse: expand environment variables
12637 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
12638 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
12639 - CLEANUP: cfgparse: remove reference to 'ruleset' section
12640 - MEDIUM: cfgparse: check section maximum number of arguments
12641 - MEDIUM: cfgparse: max arguments check in the global section
12642 - MEDIUM: cfgparse: check max arguments in the proxies sections
12643 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
12644 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
12645 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
12646 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
12647 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
12648 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
12649 - MINOR: connection: implement conn_sock_send()
12650 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
12651 - MEDIUM: connection: make conn_drain() perform more controls
12652 - REORG: connection: move conn_drain() to connection.c and rename it
12653 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
12654 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
12655 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
12656 - BUG/MEDIUM: peers: correctly configure the client timeout
12657 - MINOR: peers: centralize configuration of the peers frontend
12658 - MINOR: proxy: store the default target into the frontend's configuration
12659 - MEDIUM: stats: use frontend_accept() as the accept function
12660 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
12661 - CLEANUP: listeners: remove unused timeout
12662 - MEDIUM: listener: store the default target per listener
12663 - BUILD: fix automatic inclusion of libdl.
12664 - MEDIUM: lua: implement a simple memory allocator
12665 - MEDIUM: compression: postpone buffer adjustments after compression
12666 - MEDIUM: compression: don't send leading zeroes with chunk size
12667 - BUG/MINOR: compression: consider the expansion factor in init
12668 - MINOR: http: check the algo name "identity" instead of the function pointer
12669 - CLEANUP: compression: statify all algo-specific functions
12670 - MEDIUM: compression: add a distinction between UA- and config- algorithms
12671 - MEDIUM: compression: add new "raw-deflate" compression algorithm
12672 - MEDIUM: compression: split deflate_flush() into flush and finish
12673 - CLEANUP: compression: remove unused reset functions
12674 - MAJOR: compression: integrate support for libslz
12675 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
12676 - BUG/MAJOR: http: null-terminate the http actions keywords list
12677 - CLEANUP: lua: remove the unused hlua_sleep memory pool
12678 - BUG/MAJOR: lua: use correct object size when initializing a new converter
12679 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
12680 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
12681 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
12682 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
12683 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
12684 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
12685 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
12686 - REORG/MAJOR: session: rename the "session" entity to "stream"
12687 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
12688 - MINOR: session: start to reintroduce struct session
12689 - MEDIUM: stream: allocate the session when a stream is created
12690 - MEDIUM: stream: move the listener's pointer to the session
12691 - MEDIUM: stream: move the frontend's pointer to the session
12692 - MINOR: session: add a pointer to the session's origin
12693 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
12694 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
12695 - MEDIUM: http: move header captures from http_txn to struct stream
12696 - MINOR: http: create a dedicated pool for http_txn
12697 - MAJOR: http: move http_txn out of struct stream
12698 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
12699 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
12700 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
12701 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
12702 - MAJOR: sample: pass a pointer to the session to each sample fetch function
12703 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
12704 - CLEANUP: stream: don't set ->target to the incoming connection anymore
12705 - MINOR: stream: move session initialization before the stream's
12706 - MINOR: session: store the session's accept date
12707 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
12708 - MINOR: session: implement session_free() and use it everywhere
12709 - MINOR: session: add stick counters to the struct session
12710 - REORG: stktable: move the stkctr_* functions from stream to sticktable
12711 - MEDIUM: streams: support looking up stkctr in the session
12712 - MEDIUM: session: update the session's stick counters upon session_free()
12713 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
12714 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
12715 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
12716 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
12717 - MAJOR: stream: don't initialize the stream anymore in stream_accept
12718 - MEDIUM: session: remove the task pointer from the session
12719 - REORG: session: move the session parts out of stream.c
12720 - MINOR: stream-int: make appctx_new() take the applet in argument
12721 - MEDIUM: peers: move the appctx initialization earlier
12722 - MINOR: session: introduce session_new()
12723 - MINOR: session: make use of session_new() when creating a new session
12724 - MINOR: peers: make use of session_new() when creating a new session
12725 - MEDIUM: peers: initialize the task before the stream
12726 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
12727 - CLEANUP: stream.c: do not re-attach the connection to the stream
12728 - MEDIUM: stream: isolate connection-specific initialization code
12729 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
12730 - MEDIUM: peers: make use of stream_accept_session()
12731 - MEDIUM: frontend: make ->accept only return +/-1
12732 - MEDIUM: stream: return the stream upon accept()
12733 - MEDIUM: frontend: move some stream initialisation to stream_new()
12734 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
12735 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
12736 - MEDIUM: frontend: move some remaining stream settings to stream_new()
12737 - CLEANUP: frontend: remove one useless local variable
12738 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
12739 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
12740 - MINOR: lua: minor cleanup in hlua_socket_new()
12741 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
12742 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
12743 - CLEANUP: stream-int: swap stream-int and appctx declarations
12744 - CLEANUP: namespaces: fix protection against multiple inclusions
12745 - MINOR: session: maintain the session count stats in the session, not the stream
12746 - MEDIUM: session: adjust the connection flags before stream_new()
12747 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
12748 - CLEANUP: poll: move the conditions for waiting out of the poll functions
12749 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
12750 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
12751 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
12752 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
12753 - DOC: update the entities diagrams
12754 - BUG/MEDIUM: http: properly retrieve the front connection
12755 - MINOR: applet: add a new "owner" pointer in the appctx
12756 - MEDIUM: applet: make the applet not depend on a stream interface anymore
12757 - REORG: applet: move the applet definitions out of stream_interface
12758 - CLEANUP: applet: rename struct si_applet to applet
12759 - REORG: stream-int: create si_applet_ops dedicated to applets
12760 - MEDIUM: applet: add basic support for an applet run queue
12761 - MEDIUM: applet: implement a run queue for active appctx
12762 - MEDIUM: stream-int: add a new function si_applet_done()
12763 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
12764 - MAJOR: stream: use a regular ->update for all stream interfaces
12765 - MEDIUM: dumpstats: don't unregister the applet anymore
12766 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
12767 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
12768 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
12769 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
12770 - MEDIUM: stream-int: pause the appctx if the task is woken up
12771 - BUG/MAJOR: tcp: only call registered actions when they're registered
12772 - BUG/MEDIUM: peers: fix applet scheduling
12773 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
12774 - MINOR: tools: provide an rdtsc() function for time comparisons
12775 - IMPORT: lru: import simple ebtree-based LRU functions
12776 - IMPORT: hash: import xxhash-r39
12777 - MEDIUM: pattern: add a revision to all pattern expressions
12778 - MAJOR: pattern: add LRU-based cache on pattern matching
12779 - BUG/MEDIUM: http: remove content-length from chunked messages
12780 - DOC: http: update the comments about the rules for determining transfer-length
12781 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
12782 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
12783 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
12784 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
12785 - MEDIUM: http: disable support for HTTP/0.9 by default
12786 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
12787 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
12788 - MEDIUM: init: don't stop proxies in parent process when exiting
12789 - MINOR: stick-table: don't attach to peers in stopped state
12790 - MEDIUM: config: initialize stick-tables after peers, not before
12791 - MEDIUM: peers: add the ability to disable a peers section
12792 - MINOR: peers: store the pointer to the signal handler
12793 - MEDIUM: peers: unregister peers that were never started
12794 - MEDIUM: config: propagate the table's process list to the peers sections
12795 - MEDIUM: init: stop any peers section not bound to the correct process
12796 - MEDIUM: config: validate that peers sections are bound to exactly one process
12797 - MAJOR: peers: allow peers section to be used with nbproc > 1
12798 - DOC: relax the peers restriction to single-process
12799 - DOC: document option http-ignore-probes
12800 - DOC: fix the comments about the meaning of msg->sol in HTTP
12801 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
12802 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
12803 - MEDIUM: stream: move HTTP request body analyser before process_common
12804 - MEDIUM: http: add a new option http-buffer-request
12805 - MEDIUM: http: provide 3 fetches for the body
12806 - DOC: update the doc on the proxy protocol
12807 - BUILD: pattern: fix build warnings introduced in the LRU cache
12808 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
12809 - CLEANUP: config: fix misleading information in error message.
12810 - MINOR: config: report the number of processes using a peers section in the error case
12811 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
12812 - MEDIUM: http: add new "capture" action for http-request
12813 - BUG/MEDIUM: http: fix the http-request capture parser
12814 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
12815 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
12816 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
12817 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
12818 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
12819 - CLEANUP: checks: simplify the loop processing of tcp-checks
12820 - BUG/MAJOR: checks: always check for end of list before proceeding
12821 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
12822 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
12823 - MEDIUM: http: make url_param iterate over multiple occurrences
12824 - BUG/MEDIUM: peers: apply a random reconnection timeout
12825 - MEDIUM: config: reject invalid config with name duplicates
12826 - MEDIUM: config: reject conflicts in table names
12827 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
12828 - MINOR: proxy: simply ignore duplicates in proxy name lookups
12829 - MINOR: config: don't open-code proxy name lookups
12830 - MEDIUM: config: clarify the conflicting modes detection for backend rules
12831 - CLEANUP: proxy: remove now unused function findproxy_mode()
12832 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
12833 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
12834 - MINOR: proxy: add a new function proxy_find_by_id()
12835 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
12836 - MEDIUM: proxy: add a new proxy_find_best_match() function
12837 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
12838 - MINOR: http: prepare support for parsing redirect actions on responses
12839 - MEDIUM: http: implement http-response redirect rules
12840 - MEDIUM: http: no need to close the request on redirect if data was parsed
12841 - BUG/MEDIUM: http: fix body processing for the stats applet
12842 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
12843 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
12844 - CLEANUP: da: move the converter registration to da.c
12845 - CLEANUP: da: register the config keywords in da.c
12846 - CLEANUP: adjust the envelope name in da.h to reflect the file name
12847 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
12848 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
12849 - BUILD: fix build warning when not using 51degrees
12850 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
12851 - BUILD: ssl: fix recent build breakage on older SSL libs
12852
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100128532015/03/11 : 1.6-dev1
12854 - CLEANUP: extract temporary $CFG to eliminate duplication
12855 - CLEANUP: extract temporary $BIN to eliminate duplication
12856 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
12857 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
12858 - CLEANUP: extract quiet_check() to avoid duplication
12859 - BUG/MINOR: don't start haproxy on reload
12860 - DOC: Address issue where documentation is excluded due to a gitignore rule.
12861 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
12862 - BUILD: fix "make install" to support spaces in the install dirs
12863 - BUG/MINOR: config: http-request replace-header arg typo
12864 - BUG: config: error in http-response replace-header number of arguments
12865 - DOC: missing track-sc* in http-request rules
12866 - BUILD: lua: missing ifdef related to SSL when enabling LUA
12867 - BUG/MEDIUM: regex: fix pcre_study error handling
12868 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
12869 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
12870 - MEDIUM: Improve signal handling in systemd wrapper.
12871 - DOC: fix typo in Unix Socket commands
12872 - BUG/MEDIUM: checks: external checks can't change server status to UP
12873 - BUG/MEDIUM: checks: segfault with external checks in a backend section
12874 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
12875 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
12876 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
12877 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
12878 - BUG/MINOR: log: fix request flags when keep-alive is enabled
12879 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
12880 - MINOR: checks: allow external checks in backend sections
12881 - MEDIUM: checks: provide environment variables to the external checks
12882 - MINOR: checks: update dynamic environment variables in external checks
12883 - DOC: checks: environment variables used by "external-check command"
12884 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
12885 - MINOR: ssl: load certificates in alphabetical order
12886 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
12887 - MINOR: lua: typo in an error message
12888 - MINOR: report the Lua version in -vv
12889 - MINOR: lua: add a compilation error message when compiled with an incompatible version
12890 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
12891 - BUILD: try to automatically detect the Lua library name
12892 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
12893 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
12894 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
12895 - MEDIUM: connection: add new bit in Proxy Protocol V2
12896 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
12897 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
12898 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
12899 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
12900 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
12901 - MINOR: ssl: add statement to force some ssl options in global.
12902 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
12903 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
12904 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
12905 - MINOR: samples: adds the bytes converter.
12906 - MINOR: samples: adds the field converter.
12907 - MINOR: samples: add the word converter.
12908 - BUG/MINOR: server: move the directive #endif to the end of file
12909 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
12910 - DOC: fix a few typos
12911 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
12912 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
12913 - BUG/MINOR: parse: refer curproxy instead of proxy
12914 - BUG/MINOR: parse: check the validity of size string in a more strict way
12915 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
12916 - DOC: expand the docs for the provided stats.
12917 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
12918 - MEDIUM: ssl: Certificate Transparency support
12919 - MEDIUM: stats: proxied stats admin forms fix
12920 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
12921 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
12922 - MAJOR: namespace: add Linux network namespace support
12923 - MINOR: systemd: Check configuration before start
12924 - BUILD: ssl: handle boringssl in openssl version detection
12925 - BUILD: ssl: disable OCSP when using boringssl
12926 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
12927 - MINOR: ssl: don't use boringssl's cipher_list
12928 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
12929 - MINOR: stats: fix minor typo in HTML page
12930 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
12931 - MEDIUM: Add support for configurable TLS ticket keys
12932 - DOC: Document the new tls-ticket-keys bind keyword
12933 - DOC: clearly state that the "show sess" output format is not fixed
12934 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
12935 - DOC: httplog does not support 'no'
12936 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
12937 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
12938 - BUG/MEDIUM: Consistently use 'check' in process_chk
12939 - MEDIUM: Add external check
12940 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
12941 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
12942 - MEDIUM: Remove connect_chk
12943 - MEDIUM: Refactor init_check and move to checks.c
12944 - MEDIUM: Add free_check() helper
12945 - MEDIUM: Move proto and addr fields struct check
12946 - MEDIUM: Attach tcpcheck_rules to check
12947 - MEDIUM: Add parsing of mailers section
12948 - MEDIUM: Allow configuration of email alerts
12949 - MEDIUM: Support sending email alerts
12950 - DOC: Document email alerts
12951 - MINOR: Remove trailing '.' from email alert messages
12952 - MEDIUM: Allow suppression of email alerts by log level
12953 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
12954 - MINOR: deinit: fix memory leak
12955 - MINOR: http: export the function 'smp_fetch_base32'
12956 - BUG/MEDIUM: http: tarpit timeout is reset
12957 - MINOR: sample: add "json" converter
12958 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
12959 - MINOR: map/acl/dumpstats: remove the "Done." message
12960 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
12961 - BUG/MINOR: pattern: error message missing
12962 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
12963 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
12964 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
12965 - MEDIUM: task: call session analyzers if the task is woken by a message.
12966 - MEDIUM: protocol: automatically pick the proto associated to the connection.
12967 - MEDIUM: channel: wake up any request analyzer on response activity
12968 - MINOR: converters: add a "void *private" argument to converters
12969 - MINOR: converters: give the session pointer as converter argument
12970 - MINOR: sample: add private argument to the struct sample_fetch
12971 - MINOR: global: export function and permits to not resolve DNS names
12972 - MINOR: sample: add function for browsing samples.
12973 - MINOR: global: export many symbols.
12974 - MINOR: includes: fix a lot of missing or useless includes
12975 - MEDIUM: tcp: add register keyword system.
12976 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
12977 - MEDIUM: http: change the code returned by the response processing rule functions
12978 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
12979 - MINOR: channel: functions to get data from a buffer without copy
12980 - MEDIUM: lua: lua integration in the build and init system.
12981 - MINOR: lua: add ease functions
12982 - MINOR: lua: add runtime execution context
12983 - MEDIUM: lua: "com" signals
12984 - MINOR: lua: add the configuration directive "lua-load"
12985 - MINOR: lua: core: create "core" class and object
12986 - MINOR: lua: post initialisation bindings
12987 - MEDIUM: lua: add coroutine as tasks.
12988 - MINOR: lua: add sample and args type converters
12989 - MINOR: lua: txn: create class TXN associated with the transaction.
12990 - MINOR: lua: add shared context in the lua stack
12991 - MINOR: lua: txn: import existing sample-fetches in the class TXN
12992 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
12993 - MINOR: lua: register and execute sample-fetches in LUA
12994 - MINOR: lua: register and execute converters in LUA
12995 - MINOR: lua: add bindings for tcp and http actions
12996 - MINOR: lua: core: add sleep functions
12997 - MEDIUM: lua: socket: add "socket" class for TCP I/O
12998 - MINOR: lua: core: pattern and acl manipulation
12999 - MINOR: lua: channel: add "channel" class
13000 - MINOR: lua: txn: object "txn" provides two objects "channel"
13001 - MINOR: lua: core: can set the nice of the current task
13002 - MINOR: lua: core: can yield an execution stack
13003 - MINOR: lua: txn: add binding for closing the client connection.
13004 - MEDIUM: lua: Lua initialisation "on demand"
13005 - BUG/MAJOR: lua: send function fails and return bad bytes
13006 - MINOR: remove unused declaration.
13007 - MINOR: lua: remove some #define
13008 - MINOR: lua: use bitfield and macro in place of integer and enum
13009 - MINOR: lua: set skeleton for Lua execution expiration
13010 - MEDIUM: lua: each yielding function returns a wake up time.
13011 - MINOR: lua: adds "forced yield" flag
13012 - MEDIUM: lua: interrupt the Lua execution for running other process
13013 - MEDIUM: lua: change the sleep function core
13014 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
13015 - DOC: lua: Lua configuration documentation
13016 - MINOR: lua: add the struct session in the lua channel struct
13017 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
13018 - BUG/MEDIUM: lua: reset flags before resuming execution
13019 - BUG/MEDIUM: lua: fix infinite loop about channel
13020 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
13021 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
13022 - MEDIUM: lua: use the Lua-5.3 version of the library
13023 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
13024 - BUG/MEDIUM: lua: can't handle the response bytes
13025 - BUG/MEDIUM: lua: segfault with buffer_replace2
13026 - BUG/MINOR: lua: check buffers before initializing socket
13027 - BUG/MINOR: log: segfault if there are no proxy reference
13028 - BUG/MEDIUM: lua: sockets don't have buffer to write data
13029 - BUG/MEDIUM: lua: cannot connect socket
13030 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
13031 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
13032 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
13033 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
13034 - MINOR: replace the Core object by a simple model.
13035 - MEDIUM: lua: change the objects configuration
13036 - MEDIUM: lua: create a namespace for the fetches
13037 - MINOR: converters: add function to browse converters
13038 - MINOR: lua: wrapper for converters
13039 - MINOR: lua: replace function (req|get)_channel by a variable
13040 - MINOR: lua: fetches and converters can return an empty string in place of nil
13041 - DOC: lua api
13042 - BUG/MEDIUM: sample: fix random number upper-bound
13043 - BUG/MINOR: stats:Fix incorrect printf type.
13044 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
13045 - BUG/MINOR: logs: properly initialize and count log sockets
13046 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
13047 - BUG/MINOR: counters: do not untrack counters before logging
13048 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
13049 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
13050 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
13051 - BUILD: remove TODO from the spec file and add README
13052 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
13053 - MEDIUM: log: support a user-configurable max log line length
13054 - DOC: provide an example of how to use ssl_c_sha1
13055 - BUILD: checks: external checker needs signal.h
13056 - BUILD: checks: kill a minor warning on Solaris in external checks
13057 - BUILD: http: fix isdigit & isspace warnings on Solaris
13058 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
13059 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
13060 - MEDIUM: listener: implement a per-protocol pause() function
13061 - MEDIUM: listener: support rebinding during resume()
13062 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
13063 - DOC: explicitly mention the limits of abstract namespace sockets
13064 - DOC: minor fix on {sc,src}_kbytes_{in,out}
13065 - DOC: fix alphabetical sort of converters
13066 - MEDIUM: stick-table: implement lookup from a sample fetch
13067 - MEDIUM: stick-table: add new converters to fetch table data
13068 - MINOR: samples: add two converters for the date format
13069 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
13070 - DOC: remove references to CPU=native in the README
13071 - DOC: mention that "compression offload" is ignored in defaults section
13072 - DOC: mention that Squid correctly responds 400 to PPv2 header
13073 - BUILD: fix dependencies between config and compat.h
13074 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
13075 - MEDIUM: stick-table: make it easier to register extra data types
13076 - BUG/MINOR: http: base32+src should use the big endian version of base32
13077 - MINOR: sample: allow IP address to cast to binary
13078 - MINOR: sample: add new converters to hash input
13079 - MINOR: sample: allow integers to cast to binary
13080 - BUILD: report commit ID in git versions as well
13081 - CLEANUP: session: move the stick counters declarations to stick_table.h
13082 - MEDIUM: http: add the track-sc* actions to http-request rules
13083 - BUG/MEDIUM: connection: fix proxy v2 header again!
13084 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
13085 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
13086 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
13087 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
13088 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
13089 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
13090 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
13091 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
13092 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
13093 - MEDIUM: http: enable header manipulation for 101 responses
13094 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
13095 - MEDIUM: config: properly propagate process binding between proxies
13096 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
13097 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
13098 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
13099 - MEDIUM: config: report it when tcp-request rules are misplaced
13100 - DOC: indicate in the doc that track-sc* can wait if data are missing
13101 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
13102 - MEDIUM: systemd-wrapper: support multiple executable versions and names
13103 - BUG/MEDIUM: remove debugging code from systemd-wrapper
13104 - BUG/MEDIUM: http: adjust close mode when switching to backend
13105 - BUG/MINOR: config: don't propagate process binding on fatal errors.
13106 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
13107 - BUG/MINOR: tcp-check: report the correct failed step in the status
13108 - DOC: indicate that weight zero is reported as DRAIN
13109 - BUG/MEDIUM: config: avoid skipping disabled proxies
13110 - BUG/MINOR: config: do not accept more track-sc than configured
13111 - BUG/MEDIUM: backend: fix URI hash when a query string is present
13112 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
13113 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
13114 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
13115 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
13116 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
13117 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
13118 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
13119 - MEDIUM: ssl: add support for smaller SSL records
13120 - MINOR: session: release a few other pools when stopping
13121 - MINOR: task: release the task pool when stopping
13122 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
13123 - BUG/MAJOR: frontend: initialize capture pointers earlier
13124 - BUG/MINOR: stats: correctly set the request/response analysers
13125 - MAJOR: polling: centralize calls to I/O callbacks
13126 - DOC: fix typo in the body parser documentation for msg.sov
13127 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
13128 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
13129 - DEBUG: pools: apply poisonning on every allocated pool
13130 - BUG/MAJOR: sessions: unlink session from list on out of memory
13131 - BUG/MEDIUM: patterns: previous fix was incomplete
13132 - BUG/MEDIUM: payload: ensure that a request channel is available
13133 - BUG/MINOR: tcp-check: don't condition data polling on check type
13134 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
13135 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
13136 - BUG/MINOR: config: fix typo in condition when propagating process binding
13137 - BUG/MEDIUM: config: do not propagate processes between stopped processes
13138 - BUG/MAJOR: stream-int: properly check the memory allocation return
13139 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
13140 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
13141 - BUG/MEDIUM: compression: correctly report zlib_mem
13142 - CLEANUP: lists: remove dead code
13143 - CLEANUP: memory: remove dead code
13144 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
13145 - MINOR: memory: cut pool allocator in 3 layers
13146 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
13147 - MINOR: stream-int: retrieve session pointer from stream-int
13148 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
13149 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
13150 - MINOR: buffer: move buffer initialization after channel initialization
13151 - MINOR: buffer: only use b_free to release buffers
13152 - MEDIUM: buffer: always assign a dummy empty buffer to channels
13153 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
13154 - MEDIUM: channel: do not report full when buf_empty is present on a channel
13155 - MINOR: session: group buffer allocations together
13156 - MINOR: buffer: implement b_alloc_fast()
13157 - MEDIUM: buffer: implement b_alloc_margin()
13158 - MEDIUM: session: implement a basic atomic buffer allocator
13159 - MAJOR: session: implement a wait-queue for sessions who need a buffer
13160 - MAJOR: session: only allocate buffers when needed
13161 - MINOR: stats: report a "waiting" flags for sessions
13162 - MAJOR: session: only wake up as many sessions as available buffers permit
13163 - MINOR: config: implement global setting tune.buffers.reserve
13164 - MINOR: config: implement global setting tune.buffers.limit
13165 - MEDIUM: channel: implement a zero-copy buffer transfer
13166 - MEDIUM: stream-int: support splicing from applets
13167 - OPTIM: stream-int: try to send pending spliced data
13168 - CLEANUP: session: remove session_from_task()
13169 - DOC: add missing entry for log-format and clarify the text
13170 - MINOR: logs: add a new per-proxy "log-tag" directive
13171 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
13172 - MINOR: config: extend the default max hostname length to 64 and beyond
13173 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
13174 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
13175 - MINOR: channel: add channel_in_transit()
13176 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
13177 - MEDIUM: channel: make bi_avail() use channel_in_transit()
13178 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
13179 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
13180 - MINOR: channel: rename channel_full() to !channel_may_recv()
13181 - MINOR: channel: rename buffer_reserved() to channel_reserved()
13182 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
13183 - MINOR: channel: rename bi_avail() to channel_recv_max()
13184 - MINOR: channel: rename bi_erase() to channel_truncate()
13185 - BUG/MAJOR: log: don't try to emit a log if no logger is set
13186 - MINOR: tools: add new round_2dig() function to round integers
13187 - MINOR: global: always export some SSL-specific metrics
13188 - MINOR: global: report information about the cost of SSL connections
13189 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
13190 - MINOR: http: add a new fetch "query" to extract the request's query string
13191 - MINOR: hash: add new function hash_crc32
13192 - MINOR: samples: provide a "crc32" converter
13193 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
13194 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
13195 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
13196 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
13197 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
13198 - MINOR: args: add type-specific flags for each arg in a list
13199 - MINOR: args: implement a new arg type for regex : ARGT_REG
13200 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
13201 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
13202 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
13203 - MEDIUM: http: implement http-request set-{method,path,query,uri}
13204 - DOC: fix missing closing brackend on regsub
13205 - MEDIUM: samples: provide basic arithmetic and bitwise operators
13206 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
13207 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
13208 - BUG/MINOR: http: abort request processing on filter failure
13209 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
13210 - MINOR: ssl/server: add the "no-ssl-reuse" server option
13211 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
13212 - MINOR: http: add a new function to iterate over each header line
13213 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
13214 - MEDIUM: task: always ensure that the run queue is consistent
13215 - BUILD: Makefile: add -Wdeclaration-after-statement
13216 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
13217 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
13218 - MEDIUM: protocol: use a family array to index the protocol handlers
13219 - BUILD: lua: cleanup many mixed occurrences declarations & code
13220 - BUG/MEDIUM: task: fix recently introduced scheduler skew
13221 - BUG/MINOR: lua: report the correct function name in an error message
13222 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
13223 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
13224 - MINOR: lua: convert IP addresses to type string
13225 - CLEANUP: lua: use the same function names in C and Lua
13226 - REORG/MAJOR: move session's req and resp channels back into the session
13227 - CLEANUP: remove now unused channel pool
13228 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
13229 - MEDIUM: stream-int: add a flag indicating which side the SI is on
13230 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
13231 - MEDIUM: stream-interface: remove now unused pointers to channels
13232 - MEDIUM: stream-int: make si_sess() use the stream int's side
13233 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
13234 - MEDIUM: stream-int: remove any reference to the owner
13235 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
13236 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
13237 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
13238 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
13239 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
13240 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
13241 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
13242 - CLEANUP: session: use local variables to access channels / stream ints
13243 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
13244 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
13245 - CLEANUP: stream-int: limit usage of si_ic/si_oc
13246 - CLEANUP: lua: limit usage of si_ic/si_oc
13247 - MINOR: channel: add chn_sess() helper to retrieve session from channel
13248 - MEDIUM: session: simplify receive buffer allocator to only use the channel
13249 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
13250 - CLEANUP: lua: remove the session pointer from hlua_channel
13251 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
13252 - MEDIUM: lua: remove struct hlua_channel
13253 - MEDIUM: lua: remove hlua_sample_fetch
13254
Willy Tarreau15480d72014-06-19 21:10:58 +0200132552014/06/19 : 1.6-dev0
13256 - exact copy of 1.5.0
13257
Willy Tarreau9229f122014-06-19 21:01:06 +0200132582014/06/19 : 1.5.0
13259 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
13260 - MEDIUM: ssl: basic OCSP stapling support.
13261 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
13262 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
13263 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
13264 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
13265 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
13266 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
13267 - MEDIUM: Break out check establishment into connect_chk()
13268 - MEDIUM: Add port_to_str helper
13269 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
13270 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
13271 - MINOR: regex: fix a little configuration memory leak.
13272 - MINOR: regex: Create JIT compatible function that return match strings
13273 - MEDIUM: regex: replace all standard regex function by own functions
13274 - MEDIUM: regex: Remove null terminated strings.
13275 - MINOR: regex: Use native PCRE API.
13276 - MINOR: missing regex.h include
13277 - DOC: Add Exim as Proxy Protocol implementer.
13278 - BUILD: don't use type "uint" which is not portable
13279 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
13280 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
13281 - CLEANUP: http: don't clear CF_READ_NOEXP twice
13282 - DOC: fix proxy protocol v2 decoder example
13283 - DOC: fix remaining occurrences of "pattern extraction"
13284 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
13285 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
13286 - MINOR: sample: improve sample_fetch_string() to report partial contents
13287 - MINOR: capture: extend the captures to support non-header keys
13288 - MINOR: tcp: prepare support for the "capture" action
13289 - MEDIUM: tcp: add a new tcp-request capture directive
13290 - MEDIUM: session: allow shorter retry delay if timeout connect is small
13291 - MEDIUM: session: don't apply the retry delay when redispatching
13292 - MEDIUM: session: redispatch earlier when possible
13293 - MINOR: config: warn when tcp-check rules are used without option tcp-check
13294 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
13295 - DOC: proxy protocol example parser was still wrong
13296 - DOC: minor updates to the proxy protocol doc
13297 - CLEANUP: connection: merge proxy proto v2 header and address block
13298 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
13299 - MINOR: tools: add new functions to quote-encode strings
13300 - DOC: clarify the CSV format
13301 - MEDIUM: stats: report the last check and last agent's output on the CSV status
13302 - MINOR: freq_ctr: introduce a new averaging method
13303 - MEDIUM: session: maintain per-backend and per-server time statistics
13304 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
13305 - BUG/MINOR: http: fix typos in previous patch
13306 - DOC: remove the ultra-obsolete TODO file
13307 - DOC: update roadmap
13308 - DOC: minor updates to the README
13309 - DOC: mention the maxconn limitations with the select poller
13310 - DOC: commit a few old design thoughts files
13311
Willy Tarreau2e858402014-05-28 17:50:53 +0200133122014/05/28 : 1.5-dev26
13313 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
13314 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
13315 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
13316 - MINOR: fix a few memory usage errors
13317 - CONTRIB: halog: Filter input lines by date and time through timestamp
13318 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
13319 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
13320 - MINOR: acl: set "str" as default match for strings
13321 - DOC: Add some precisions about acl default matching method
13322 - MEDIUM: acl: strenghten the option parser to report invalid options
13323 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
13324 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
13325 - MINOR: stats: improve alignment of color codes to save one line of header
13326 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
13327 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
13328 - MINOR: server: use functions to detect state changes and to update them
13329 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
13330 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
13331 - BUG/MAJOR: config: don't free valid regex memory
13332 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
13333 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
13334 - MEDIUM: proxy: make timeout parser a bit stricter
13335 - REORG/MEDIUM: server: split server state and flags in two different variables
13336 - REORG/MEDIUM: server: move the maintenance bits out of the server state
13337 - MAJOR: server: use states instead of flags to store the server state
13338 - REORG: checks: put the functions in the appropriate files !
13339 - MEDIUM: server: properly support and propagate the maintenance status
13340 - MEDIUM: server: allow multi-level server tracking
13341 - CLEANUP: checks: rename the server_status_printf function
13342 - MEDIUM: checks: simplify server up/down/nolb transitions
13343 - MAJOR: checks: move health checks changes to set_server_check_status()
13344 - MINOR: server: make the status reporting function support a reason
13345 - MINOR: checks: simplify health check reporting functions
13346 - MINOR: server: implement srv_set_stopped()
13347 - MINOR: server: implement srv_set_running()
13348 - MINOR: server: implement srv_set_stopping()
13349 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
13350 - MEDIUM: checks: simplify success notification using srv_set_running()
13351 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
13352 - MEDIUM: stats: report a server's own state instead of the tracked one's
13353 - MINOR: server: make use of srv_is_usable() instead of checking eweight
13354 - MAJOR: checks: add support for a new "drain" administrative mode
13355 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
13356 - MEDIUM: stats: introduce new actions to simplify admin status management
13357 - MINOR: cli: introduce a new "set server" command
13358 - MINOR: stats: report a distinct output for DOWN caused by agent
13359 - MINOR: checks: support specific check reporting for the agent
13360 - MINOR: checks: support a neutral check result
13361 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
13362 - MEDIUM: cli: add support for enabling/disabling health checks.
13363 - MEDIUM: stats: report down caused by agent prior to reporting up
13364 - MAJOR: agent: rework the response processing and support additional actions
13365 - MINOR: stats: improve the stats web page to support more actions
13366 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
13367 - DOC: document the workarouds for Google Chrome's bogus pre-connect
13368 - MINOR: stats: report SSL key computations per second
13369 - MINOR: stats: add counters for SSL cache lookups and misses
13370
Willy Tarreaua3393952014-05-10 15:16:43 +0200133712014/05/10 : 1.5-dev25
13372 - MEDIUM: connection: Implement and extented PROXY Protocol V2
13373 - MINOR: ssl: clean unused ACLs declarations
13374 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
13375 - MINOR: ssl: merge client's and frontend's certificate functions.
13376 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
13377 - MINOR: ssl: adds sample converter base64 for binary type.
13378 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
13379 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
13380 - MAJOR: ssl: Change default locks on ssl session cache.
13381 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
13382 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
13383 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
13384 - BUG/MEDIUM: patterns: last fix was still not enough
13385 - MINOR: http: export the smp_fetch_cookie function
13386 - MINOR: http: generic pointer to rule argument
13387 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
13388 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
13389 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
13390 - BUG/MINOR: http: log 407 in case of proxy auth
13391 - MINOR: http: rely on the message body parser to send 100-continue
13392 - MEDIUM: http: move reqadd after execution of http_request redirect
13393 - MEDIUM: http: jump to dedicated labels after http-request processing
13394 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
13395 - BUG/MINOR: http: block rules forgot to increment the session's request counter
13396 - MEDIUM: http: move Connection header processing earlier
13397 - MEDIUM: http: remove even more of the spaghetti in the request path
13398 - MINOR: http: silently support the "block" action for http-request
13399 - CLEANUP: proxy: rename "block_cond" to "block_rules"
13400 - MEDIUM: http: emulate "block" rules using "http-request" rules
13401 - MINOR: http: remove the now unused loop over "block" rules
13402 - MEDIUM: http: factorize the "auth" action of http-request and stats
13403 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
13404 - MINOR: config: add minimum support for emitting warnings only once
13405 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
13406 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
13407 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
13408 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
13409 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
13410 - BUILD: config: remove a warning with clang
13411 - BUG/MAJOR: http: connection setup may stall on balance url_param
13412 - BUG/MEDIUM: http/session: disable client-side expiration only after body
13413 - BUG/MEDIUM: http: correctly report request body timeouts
13414 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
13415 - MEDIUM: listener: make the accept function more robust against pauses
13416 - BUILD: syscalls: remove improper inline statement in front of syscalls
13417 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
13418 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
13419 - DOC: add some explanation on the shared cache build options in the readme.
13420 - MEDIUM: proxy: only adjust the backend's bind-process when already set
13421 - MEDIUM: config: limit nbproc to the machine's word size
13422 - MEDIUM: config: check the bind-process settings according to nbproc
13423 - MEDIUM: listener: parse the new "process" bind keyword
13424 - MEDIUM: listener: inherit the process mask from the proxy
13425 - MAJOR: listener: only start listeners bound to the same processes
13426 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
13427 - CLEANUP: config: set the maxaccept value for peers listeners earlier
13428 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
13429 - BUG/MINOR: checks: correctly configure the address family and protocol
13430 - MINOR: tools: split is_addr() and is_inet_addr()
13431 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
13432 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
13433 - MEDIUM: checks: only complain about the missing port when the check uses TCP
13434 - MEDIUM: unix: implement support for Linux abstract namespace sockets
13435 - DOC: map_beg was missing from the table of map_* converters
13436 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
13437 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
13438 - BUILD: remove the obsolete BSD and OSX makefiles
13439 - MEDIUM: unix: avoid a double connect probe when no data are sent
13440 - DOC: stop referencing the slow git repository in the README
13441 - BUILD: only build the systemd wrapper on Linux 2.6 and above
13442 - DOC: update roadmap with completed tasks
13443 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
13444
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200134452014/04/26 : 1.5-dev24
13446 - MINOR: pattern: find element in a reference
13447 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
13448 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
13449 - DOC: Full section dedicated to the converters
13450 - MEDIUM: http: register http-request and http-response keywords
13451 - BUG/MINOR: compression: correctly report incoming byte count
13452 - BUG/MINOR: http: don't report server aborts as client aborts
13453 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
13454 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
13455 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
13456 - BUG/MAJOR: http: fix timeouts during data forwarding
13457 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
13458 - MEDIUM: http: move skipping of 100-continue earlier
13459 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
13460 - CLEANUP: general: get rid of all old occurrences of "session *t"
13461 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
13462 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
13463 - MEDIUM: http: enable analysers to have keep-alive on stats
13464 - REORG: http: move HTTP Connection response header parsing earlier
13465 - MINOR: stats: always emit HTTP/1.1 in responses
13466 - MINOR: http: add capture.req.ver and capture.res.ver
13467 - MINOR: checks: add a new global max-spread-checks directive
13468 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
13469 - MINOR: http: implement the max-keep-alive-queue setting
13470 - DOC: fix alphabetic order of tcp-check
13471 - MINOR: connection: add a new error code for SSL with heartbeat
13472 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
13473 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
13474 - BUILD: http: remove a warning on strndup
13475 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
13476 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
13477 - MINOR: ssl: finally catch the heartbeats missing the padding
13478
Willy Tarreau8317b282014-04-23 01:49:41 +0200134792014/04/23 : 1.5-dev23
13480 - BUG/MINOR: reject malformed HTTP/0.9 requests
13481 - MINOR: systemd wrapper: re-execute on SIGUSR2
13482 - MINOR: systemd wrapper: improve logging
13483 - MINOR: systemd wrapper: propagate exit status
13484 - BUG/MINOR: tcpcheck connect wrong behavior
13485 - MEDIUM: proxy: support use_backend with dynamic names
13486 - MINOR: stats: Enhancement to stats page to provide information of last session time.
13487 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
13488 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
13489 - DOC: fix fetching samples syntax
13490 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
13491 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
13492 - DOC: fix typo
13493 - CLEANUP: code style: use tabs to indent codes instead of spaces
13494 - DOC: fix a few config typos.
13495 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
13496 - DOC: lowercase format string in unique-id
13497 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
13498 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
13499 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
13500 - BUG/MINOR: build: handle whitespaces in wc -l output
13501 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
13502 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
13503 - BUG/MEDIUM: map: The map parser includes blank lines.
13504 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
13505 - MINOR: standard: add function "encode_chunk"
13506 - BUG/MINOR: http: fix encoding of samples used in http headers
13507 - MINOR: sample: add hex converter
13508 - MEDIUM: sample: change the behavior of the bin2str cast
13509 - MAJOR: auth: Change the internal authentication system.
13510 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
13511 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
13512 - MEDIUM: pattern: Change the prototype of the function pattern_register().
13513 - CONTRIB: ip6range: add a network IPv6 range to mask converter
13514 - MINOR: pattern: separe list element from the data part.
13515 - MEDIUM: pattern: add indexation function.
13516 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
13517 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
13518 - MINOR: sample: dont call the sample cast function "c_none"
13519 - MINOR: standard: Add function for converting cidr to network mask.
13520 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
13521 - MEDIUM: sample/http_proto: Add new type called method
13522 - MINOR: dumpstats: Group map inline help
13523 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
13524 - MINOR: dumpstats: change map inline sentences
13525 - MINOR: dumpstats: change the "get map" display management
13526 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
13527 - MEDIUM: pattern: The match function browse itself the list or the tree.
13528 - MEDIUM: pattern: Index IPv6 addresses in a tree.
13529 - MEDIUM: pattern: add delete functions
13530 - MEDIUM: pattern: add prune function
13531 - MEDIUM: pattern: add sample lookup function.
13532 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
13533 - MINOR: map/pattern: The sample parser is stored in the pattern
13534 - MAJOR: pattern/map: Extends the map edition system in the patterns
13535 - MEDIUM: pattern: merge same pattern
13536 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
13537 - MINOR: pattern: Each pattern is identified by unique id.
13538 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
13539 - MINOR: pattern: The function "pattern_register()" is no longer used.
13540 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
13541 - MINOR: pattern: store configuration reference for each acl or map pattern.
13542 - MINOR: pattern: Each pattern expression element store the reference struct.
13543 - MINOR: dumpstats: display the reference for th key/pattern and value.
13544 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
13545 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
13546 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
13547 - MINOR: pattern/map/acl: Centralization of the file parsers
13548 - MINOR: pattern: Check if the file reference is not used with acl and map
13549 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
13550 - MEDIUM: dumpstats: Display error message during add of values.
13551 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
13552 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
13553 - MINOR: cli: Block the usage of the command "acl add" in many cases.
13554 - MINOR: doc: Update the documentation about the map and acl
13555 - MINOR: pattern: index duplicates
13556 - MINOR: configuration: File and line propagation
13557 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
13558 - MINOR: standard: Disable ip resolution during the runtime
13559 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
13560 - MINOR: pattern: forbid dns resolutions
13561 - DOC: document "get map" / "get acl" on the CLI
13562 - MEDIUM: acl: Change the acl register struct
13563 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
13564 - DOC: pattern: pattern organisation schematics
13565 - MINOR: pattern/cli: Update used terms in documentation and cli
13566 - MINOR: cli: remove information about acl or map owner.
13567 - MINOR: session: don't always assume there's a listener
13568 - MINOR: pattern: Add function to prune and reload pattern list.
13569 - MINOR: standard: Add ipv6 support in the function url2sa().
13570 - MEDIUM: config: Dynamic sections.
13571 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
13572 - MINOR: http: Add the "language" converter to for use with accept-language
13573 - BUG/MINOR: log: Don't dump empty unique-id
13574 - BUG/MAJOR: session: fix a possible crash with src_tracked
13575 - DOC: Update "language" documentation
13576 - MINOR: http: add the function "del-header" to the directives http-request and http-response
13577 - DOC: add some information on capture.(req|res).hdr
13578 - MINOR: http: capture.req.method and capture.req.uri
13579 - MINOR: http: optimize capture.req.method and capture.req.uri
13580 - MINOR: session: clean up the connection free code
13581 - BUG/MEDIUM: checks: immediately report a connection success
13582 - MEDIUM: connection: don't use real send() flags in snd_buf()
13583 - OPTIM: ssl: implement dynamic record size adjustment
13584 - MINOR: stats: report exact last session time in backend too
13585 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
13586 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
13587 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
13588 - MINOR: channel: add the date of last read in the channel
13589 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
13590 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
13591 - MINOR: config: make the stream interface idle timer user-configurable
13592 - MINOR: config: add global directives to set default SSL ciphers
13593 - MINOR: sample: add a rand() sample fetch to return a sample.
13594 - BUG/MEDIUM: config: immediately abort if peers section has no name
13595 - BUG/MINOR: ssl: fix syntax in config error message
13596 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
13597 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
13598 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
13599 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
13600 - MEDIUM: acl: fix pattern type for payload / payload_lv
13601 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
13602 - BUG/MEDIUM: compression: fix the output type of the compressor name
13603 - BUG/MEDIUM: http: don't start to forward request data before the connect
13604 - MINOR: http: release compression context only in http_end_txn()
13605 - MINOR: protect ebimtree/ebistree against multiple inclusions
13606 - MEDIUM: proxy: create a tree to store proxies by name
13607 - MEDIUM: proxy: make findproxy() use trees to look up proxies
13608 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
13609 - MEDIUM: stick-table: lookup table names using trees.
13610 - MEDIUM: config: faster lookup for duplicated proxy name
13611 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
13612 - MINOR: sample: move smp_to_type to sample.c
13613 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
13614 - REORG: cfgparse: move server keyword parsing to server.c
13615 - BUILD: adjust makefile for AIX 5.1
13616 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
13617 - CLEANUP: pattern: move array definitions to proto/ and not types/
13618 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
13619 - BUILD: ssl: previous patch failed
13620 - BUILD/MEDIUM: standard: get rid of the last strcpy()
13621 - BUILD/MEDIUM: standard: get rid of sprintf()
13622 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
13623 - BUILD/MEDIUM: checks: get rid of sprintf()
13624 - BUILD/MEDIUM: http: remove calls to sprintf()
13625 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
13626 - BUILD/MINOR: ssl: remove one call to sprintf()
13627 - MEDIUM: http: don't reject anymore message bodies not containing the url param
13628 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
13629 - CLEANUP: http: rename http_process_request_body()
13630 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
13631 - MINOR: http: make msg->eol carry the last CRLF length
13632 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
13633 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
13634 - MAJOR: http: don't update msg->sov anymore while processing the body
13635 - MINOR: http: add a small helper to compute the amount of body bytes present
13636 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
13637 - MINOR: http: add a small helper to compute how far to rewind to find URI
13638 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
13639 - MAJOR: http: reset msg->sov after headers are forwarded
13640 - MEDIUM: http: forward headers again while waiting for connection to complete
13641 - BUG/MINOR: http: deinitialize compression after a parsing error
13642 - BUG/MINOR: http: deinitialize compression after a compression error
13643 - MEDIUM: http: headers must be forwarded even if data was already inspected
13644 - MAJOR: http: re-enable compression on chunked encoding
13645 - MAJOR: http/compression: fix chunked-encoded response processing
13646 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
13647 - MEDIUM: http: start to centralize the forwarding code
13648 - MINOR: http: further cleanups of response forwarding function
13649 - MEDIUM: http: only allocate the temporary compression buffer when needed
13650 - MAJOR: http: centralize data forwarding in the request path
13651 - CLEANUP: http: document the response forwarding states
13652 - CLEANUP: http: remove all calls to http_silent_debug()
13653 - DOC: internal: add some reminders about HTTP parsing and pointer states
13654 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
13655 - BUG/MINOR: stats: last session was not always set
13656 - DOC: add pointer to the Cyril's HTML doc in the README
13657 - MEDIUM: config: relax use_backend check to make the condition optional
13658 - MEDIUM: config: report misplaced http-request rules
13659 - MEDIUM: config: report misplaced use-server rules
13660 - DOC: update roadmap with what was done.
13661
Willy Tarreau1a34d572014-02-03 00:41:29 +0100136622014/02/03 : 1.5-dev22
13663 - MEDIUM: tcp-check new feature: connect
13664 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
13665 - MINOR: ssl: handshake optim for long certificate chains.
13666 - BUG/MINOR: pattern: pattern comparison executed twice
13667 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
13668 - BUG/MEDIUM: pattern: Segfault in binary parser
13669 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
13670 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
13671 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
13672 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
13673 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
13674 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
13675 - MINOR: doc: Bad cli function name.
13676 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
13677 - BUILD: last release inadvertently prepended a "+" in front of the date
13678 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
13679 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
13680 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
13681 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
13682 - MINOR: http: try to stick to same server after status 401/407
13683 - BUG/MINOR: http: always disable compression on HTTP/1.0
13684 - OPTIM: poll: restore polling after a poll/stop/want sequence
13685 - OPTIM: http: don't stop polling for read on the client side after a request
13686 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
13687 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
13688 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
13689 - BUG/MINOR: stream-int: do not clear the owner upon unregister
13690 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
13691 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
13692 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
13693 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
13694 - OPTIM: session: set the READ_DONTWAIT flag when connecting
13695 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
13696 - MINOR: session: factor out the connect time measurement
13697 - MEDIUM: session: prepare to support earlier transitions to the established state
13698 - MEDIUM: stream-int: make si_connect() return an established state when possible
13699 - MINOR: checks: use an inline function for health_adjust()
13700 - OPTIM: session: put unlikely() around the freewheeling code
13701 - MEDIUM: config: report a warning when multiple servers have the same name
13702 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
13703 - BUILD/MINOR: listener: remove a glibc warning on accept4()
13704 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
13705 - BUILD: listener: fix recent accept4() again
13706 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
13707 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
13708 - MEDIUM: listener: fix polling management in the accept loop
13709 - MINOR: protocol: improve the proto->drain() API
13710 - MINOR: connection: add a new conn_drain() function
13711 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
13712 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
13713 - MINOR: connection: add more error codes to report connection errors
13714 - MEDIUM: tcp: report connection error at the connection level
13715 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
13716 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
13717 - DOC: fix misleading information about SIGQUIT
13718 - BUG/MAJOR: fix freezes during compression
13719 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
13720 - BUILD: fix VERDATE exclusion regex
13721 - CLEANUP: polling: rename "spec_e" to "state"
13722 - DOC: add a diagram showing polling state transitions
13723 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
13724 - REORG: polling: rename "fd_spec" to "fd_cache"
13725 - REORG: polling: rename the cache allocation functions
13726 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
13727 - MAJOR: polling: rework the whole polling system
13728 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
13729 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
13730 - MEDIUM: connection: add check for readiness in I/O handlers
13731 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
13732 - MINOR: stream-interface: no need to call fd_stop_both() on error
13733 - MEDIUM: connection: no need to recheck FD state
13734 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
13735 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
13736 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
13737 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
13738 - MEDIUM: polling: centralize polled events processing
13739 - MINOR: polling: create function fd_compute_new_polled_status()
13740 - MINOR: cli: add more information to the "show info" output
13741 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
13742 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
13743 - REORG: stats: move the stats socket states to dumpstats.c
13744 - MINOR: cli: add the new "show pools" command
13745 - BUG/MEDIUM: counters: flush content counters after each request
13746 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
13747 - MINOR: tools: add very basic support for composite pointers
13748 - MEDIUM: counters: stop relying on session flags at all
13749 - BUG/MINOR: cli: fix missing break in command line parser
13750 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
13751 - MAJOR: http: update connection mode configuration
13752 - MEDIUM: http: make keep-alive + httpclose be passive mode
13753 - MAJOR: http: switch to keep-alive mode by default
13754 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
13755 - BUG/MEDIUM: listener: improve detection of non-working accept4()
13756 - BUILD: listener: add fcntl.h and unistd.h
13757 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
13758
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100137592013/12/17 : 1.5-dev21
13760 - MINOR: stats: don't use a monospace font to report numbers
13761 - MINOR: session: remove debugging code
13762 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
13763 - MEDIUM: http: make option http_proxy automatically rewrite the URL
13764 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
13765 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
13766 - BUG/MEDIUM: checks: servers must not start in slowstart mode
13767 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
13768 - MEDIUM: stream-int: implement a very simplistic idle connection manager
13769 - DOC: update the ROADMAP file
13770
Willy Tarreau11f64d62013-12-16 02:32:37 +0100137712013/12/16 : 1.5-dev20
13772 - DOC: add missing options to the manpage
13773 - DOC: add manpage references to all system calls
13774 - DOC: update manpage reference to haproxy-en.txt
13775 - DOC: remove -s and -l options from the manpage
13776 - DOC: missing information for the "description" keyword
13777 - DOC: missing http-send-name-header keyword in keyword table
13778 - MINOR: tools: function my_memmem() to lookup binary contents
13779 - MEDIUM: checks: add send/expect tcp based check
13780 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
13781 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
13782 - DOC: Documentation for hashing function, with test results.
13783 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
13784 - BUILD: ssl: compilation issue with openssl v0.9.6.
13785 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
13786 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
13787 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
13788 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
13789 - CLEANUP: session: remove event_accept() which was not used anymore
13790 - BUG/MINOR: deinit: free fdinfo while doing cleanup
13791 - DOC: minor typo fix in documentation
13792 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
13793 - BUG/MINOR: use the same check condition for server as other algorithms
13794 - DOC: fix typo in comments
13795 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
13796 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
13797 - MINOR: buffer: align the last output line of buffer_dump()
13798 - MINOR: buffer: align the last output line if there are less than 8 characters left
13799 - DOC: stick-table: modify the description
13800 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
13801 - CLEANUP: code style: use tabs to indent codes
13802 - DOC: checkcache: block responses with cacheable cookies
13803 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
13804 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
13805 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
13806 - LOW: systemd-wrapper: Write debug information to stdout
13807 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
13808 - MEDIUM: http: add IPv6 support for "set-tos"
13809 - DOC: ssl: update build instructions to use new SSL_* variables
13810 - BUILD/MINOR: systemd: fix compiler warning about unused result
13811 - url32+src - like base32+src but whole url including parameters
13812 - BUG/MINOR: fix forcing fastinter in "on-error"
13813 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
13814 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
13815 - MEDIUM: Split up struct server's check element
13816 - MEDIUM: Move result element to struct check
13817 - MEDIUM: Paramatise functions over the check of a server
13818 - MEDIUM: cfgparse: Factor out check initialisation
13819 - MEDIUM: Add state to struct check
13820 - MEDIUM: Move health element to struct check
13821 - MEDIUM: Add helper for task creation for checks
13822 - MEDIUM: Add helper function for failed checks
13823 - MEDIUM: Log agent fail, stopped or down as info
13824 - MEDIUM: Remove option lb-agent-chk
13825 - MEDIUM: checks: Add supplementary agent checks
13826 - MEDIUM: Do not mark a server as down if the agent is unavailable
13827 - MEDIUM: Set rise and fall of agent checks to 1
13828 - MEDIUM: Add enable and disable agent unix socket commands
13829 - MEDIUM: Add DRAIN state and report it on the stats page
13830 - BUILD/MINOR: missing header file
13831 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
13832 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
13833 - MINOR: http: some exported functions were not in the header file
13834 - MINOR: http: change url_decode to return the size of the decoded string.
13835 - BUILD/MINOR: missing header file
13836 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
13837 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
13838 - MINOR: sample: export the generic sample conversion parser
13839 - MINOR: sample: export sample_casts
13840 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
13841 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
13842 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
13843 - MINOR: tools: Add a function to convert buffer to an ipv6 address
13844 - MINOR: acl: export acl arrays
13845 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
13846 - MINOR: acl: Extract the pattern matching function
13847 - MINOR: sample: Define new struct sample_storage
13848 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
13849 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
13850 - MEDIUM: pattern: create pattern expression
13851 - MEDIUM: pattern: rename "acl" prefix to "pat"
13852 - MEDIUM: sample: let the cast functions set their output type
13853 - MINOR: sample: add a private field to the struct sample_conv
13854 - MINOR: map: Define map types
13855 - MEDIUM: sample: add the "map" converter
13856 - MEDIUM: http: The redirect strings follows the log format rules.
13857 - BUG/MINOR: acl: acl parser does not recognize empty converter list
13858 - BUG/MINOR: map: The map list was declared in the map.h file
13859 - MINOR: map: Cleanup the initialisation of map descriptors.
13860 - MEDIUM: map: merge identical maps
13861 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
13862 - BUG/MEDIUM: map: Bad map file parser
13863 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
13864 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
13865 - MINOR: map: export map_get_reference() function
13866 - MINOR: pattern: Each pattern sets the expected input type
13867 - MEDIUM: acl: Last patch change the output type
13868 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
13869 - MINOR: standard: The function parse_binary() can use preallocated buffer
13870 - MINOR: regex: Change the struct containing regex
13871 - MINOR: regex: Copy the original regex expression into string.
13872 - MINOR: pattern: add support for compiling patterns for lookups
13873 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
13874 - MINOR: map: export parse output sample functions
13875 - MINOR: pattern: add function to lookup a specific entry in pattern list
13876 - MINOR: pattern/map: Each pattern must free the associated sample
13877 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
13878 - MEDIUM: map: dynamic manipulation of maps
13879 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
13880 - BUG/MINOR: log: junk at the end of syslog packet
13881 - MINOR: Makefile: provide cscope rule
13882 - DOC: compression: chunk are not compressed anymore
13883 - MEDIUM: session: disable lingering on the server when the client aborts
13884 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
13885 - DOC: remove the comment saying that SSL certs are not checked on the server side
13886 - BUG: counters: third counter was not stored if others unset
13887 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
13888 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
13889 - BUG/MAJOR: http: sample prefetch code was not properly migrated
13890 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
13891 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
13892 - OPTIM: splicing: use splice() for the last block when relevant
13893 - MEDIUM: sample: handle comma-delimited converter list
13894 - MINOR: sample: fix sample_process handling of unstable data
13895 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
13896 - MINOR: sample: add a new "date" fetch to return the current date
13897 - MINOR: samples: add the http_date([<offset>]) sample converter.
13898 - DOC: minor improvements to the part on the stats socket.
13899 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
13900 - MINOR: payload: split smp_fetch_rdp_cookie()
13901 - MINOR: counters: factor out smp_fetch_sc*_tracked
13902 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
13903 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
13904 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
13905 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
13906 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
13907 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
13908 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
13909 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
13910 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
13911 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
13912 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
13913 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
13914 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
13915 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
13916 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
13917 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
13918 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
13919 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
13920 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
13921 - MINOR: session: make the number of stick counter entries more configurable
13922 - MEDIUM: counters: support passing the counter number as a fetch argument
13923 - MEDIUM: counters: support looking up a key in an alternate table
13924 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
13925 - MINOR: cli: make it possible to enter multiple values at once with "set table"
13926 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
13927 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
13928 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
13929 - MINOR: config: warn when a server with no specific port uses rdp-cookie
13930 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
13931 - DOC: add a mention about the limited chunk size
13932 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
13933 - MEDIUM: stick-tables: flush old entries upon soft-stop
13934 - MINOR: tcp: add new "close" action for tcp-response
13935 - MINOR: payload: provide the "res.len" fetch method
13936 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
13937 - MINOR: http: compute response time before processing headers
13938 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
13939 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
13940 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
13941 - BUG/MEDIUM: session: risk of crash on out of memory conditions
13942 - BUG/MINOR: peers: set the accept date in outgoing connections
13943 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
13944 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
13945 - MINOR: acl: add a warning when an ACL keyword is used without any value
13946 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
13947 - BUG/MINOR: acl: remove patterns from the tree before freeing them
13948 - MEDIUM: backend: add support for the wt6 hash
13949 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
13950 - OPTIM/MINOR: mark the source address as already known on accept()
13951 - BUG/MINOR: stats: don't count tarpitted connections twice
13952 - CLEANUP: http: homogenize processing of denied req counter
13953 - CLEANUP: http: merge error handling for req* and http-request *
13954 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
13955 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
13956 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
13957 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
13958 - MINOR: stats: report correct throttling percentage for servers in slowstart
13959 - OPTIM: connection: fold the error handling with handshake handling
13960 - MINOR: peers: accept to learn strings of different lengths
13961 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
13962 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
13963 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
13964 - BUG/MINOR: connection: fix typo in error message report
13965 - BUG/MINOR: backend: fix target address retrieval in transparent mode
13966 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
13967 - BUG/MINOR: log: fix log-format parsing errors
13968 - DOC: add some information about how to apply converters to samples
13969 - MINOR: acl/pattern: use types different from int to clarify who does what.
13970 - MINOR: pattern: import acl_find_match_name() into pattern.h
13971 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
13972 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
13973 - BUG/MINOR: http: usual deinit stuff in last commit
13974 - BUILD: log: silent a warning about isblank() with latest patches
13975 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
13976 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
13977 - BUG/MINOR: checks: don't consider errno and use conn->err_code
13978 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
13979 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
13980 - BUG/MINOR: tcp: check that no error is pending during a connect probe
13981 - BUG/MINOR: connection: check EINTR when sending a PROXY header
13982 - MEDIUM: connection: set the socket shutdown flags on socket errors
13983 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
13984 - MINOR: connection: clear errno prior to checking for errors
13985 - BUG/MINOR: checks: do not trust errno in write event before any syscall
13986 - MEDIUM: checks: centralize error reporting
13987 - OPTIM: checks: don't poll on recv when using plain TCP connects
13988 - OPTIM: checks: avoid setting SO_LINGER twice
13989 - MINOR: tools: add a generic binary hex string parser
13990 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
13991 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
13992 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
13993 - BUG/MINOR: acl: fix sample expression error reporting
13994 - BUG/MINOR: checks: tcp-check actions are enums, not flags
13995 - MEDIUM: checks: make tcp-check perform multiple send() at once
13996 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
13997 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
13998 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
13999 - CLEANUP: stream_interface: remove unused field err_loc
14000 - MEDIUM: stats: don't use conn->xprt_st anymore
14001 - MINOR: session: add a simple function to retrieve a session from a task
14002 - MEDIUM: stats: don't use conn->xprt_ctx anymore
14003 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
14004 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
14005 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
14006 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
14007 - MAJOR: stats: move the HTTP stats handling to its applet
14008 - MEDIUM: stats: move request argument processing to the final step
14009 - MEDIUM: session: detect applets from the session by using s->target
14010 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
14011 - MAJOR: session: pass applet return traffic through the response analysers
14012 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
14013 - MINOR: stream-int: make the shutr/shutw functions void
14014 - MINOR: obj: provide a safe and an unsafe access to pointed objects
14015 - MINOR: connection: add a field to store an object type
14016 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
14017 - MEDIUM: stream interface: move the peers' ptr into the applet context
14018 - MINOR: stream-interface: move the applet context to its own struct
14019 - MINOR: obj: introduce a new type appctx
14020 - MINOR: stream-int: rename ->applet to ->appctx
14021 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
14022 - MINOR: stream-int: add a new pointer to the end point
14023 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
14024 - MAJOR: stream interface: remove the ->release function pointer
14025 - MEDIUM: stream-int: make ->end point to the connection or the appctx
14026 - CLEANUP: stream-int: remove obsolete si_ctrl function
14027 - MAJOR: stream-int: stop using si->conn and use si->end instead
14028 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
14029 - MEDIUM: session: attach incoming connection to target on embryonic sessions
14030 - MINOR: connection: add conn_init() to (re)initialize a connection
14031 - MINOR: checks: call conn_init() to properly initialize the connection.
14032 - MINOR: peers: make use of conn_init() to initialize the connection
14033 - MINOR: session: use conn_init() to initialize the connections
14034 - MINOR: http: use conn_init() to reinitialize the server connection
14035 - MEDIUM: connection: replace conn_prepare with conn_assign
14036 - MINOR: get rid of si_takeover_conn()
14037 - MINOR: connection: add conn_new() / conn_free()
14038 - MAJOR: connection: add two new flags to indicate readiness of control/transport
14039 - MINOR: stream-interface: introduce si_reset() and si_set_state()
14040 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
14041 - MINOR: connection: replace conn_assign with conn_attach
14042 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
14043 - MAJOR: stream interface: dynamically allocate the outgoing connection
14044 - MEDIUM: connection: move the send_proxy offset to the connection
14045 - MINOR: connection: check for send_proxy during the connect(), not the SI
14046 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
14047 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
14048 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
14049 - MAJOR: stream-interface: dynamically allocate the applet context
14050 - MEDIUM: session: automatically register the applet designated by the target
14051 - MEDIUM: stats: delay appctx initialization
14052 - CLEANUP: peers: use less confusing state/status code names
14053 - MEDIUM: peers: delay appctx initialization
14054 - MINOR: stats: provide some appctx information in "show sess all"
14055 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
14056 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
14057 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
14058 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
14059 - DIET/MINOR: session: reduce the struct session size by 8 bytes
14060 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
14061 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
14062 - MINOR: http: switch the http state to an enum
14063 - MINOR: http: use an enum for the auth method in http_auth_data
14064 - DIET/MINOR: task: reduce struct task size by 8 bytes
14065 - MINOR: stream_interface: add reporting of ressouce allocation errors
14066 - MINOR: session: report lack of resources using the new stream-interface's error code
14067 - BUILD: simplify the date and version retrieval in the makefile
14068 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
14069 - BUILD: use format tags in VERDATE and SUBVERS files
14070 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
14071 - CLEANUP: check: server port is unsigned
14072 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
14073 - MINOR: tools: buf2ip6 must not modify output on failure
14074 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
14075 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
14076 - MINOR: arg: improve wording on error reporting
14077 - BUG/MEDIUM: sample: simplify and fix the argument parsing
14078 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
14079 - MEDIUM: acl: fix the initialization order of the ACL expression
14080 - CLEANUP: acl: remove useless blind copy-paste from sample converters
14081 - TESTS: add regression tests for ACL and sample expression parsers
14082 - BUILD: time: adapt the type of TV_ETERNITY to the local system
14083 - MINOR: chunks: allocate the trash chunks before parsing the config
14084 - BUILD: definitely silence some stupid GCC warnings
14085 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
14086 - MINOR: checks: improve handling of the servers tracking chain
14087 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
14088 - MINOR: checks: use an enum instead of flags to report a check result
14089 - MINOR: checks: rename the state flags
14090 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
14091 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
14092 - MINOR: checks: fix agent check interval computation
14093 - MINOR: checks: add a PAUSED state for the checks
14094 - MINOR: checks: create the agent tasks even when no check is configured
14095 - MINOR: checks: add a flag to indicate what check is an agent
14096 - MEDIUM: checks: enable agent checks even if health checks are disabled
14097 - BUG/MEDIUM: checks: ensure we can enable a server after boot
14098 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
14099 - BUG/MAJOR: session: repair tcp-request connection rules
14100 - BUILD: fix SUBVERS extraction in the Makefile
14101 - BUILD: pattern: silence a warning about uninitialized value
14102 - BUILD: log: fix build warning on Solaris
14103 - BUILD: dumpstats: fix build error on Solaris
14104 - DOC: move option pgsql-check to the correct place
14105 - DOC: move option tcp-check to the proper place
14106 - MINOR: connection: add simple functions to report connection readiness
14107 - MEDIUM: connection: centralize handling of nolinger in fd management
14108 - OPTIM: http: set CF_READ_DONTWAIT on response message
14109 - OPTIM: http: do not re-enable reading on client side while closing the server side
14110 - MINOR: config: add option http-keep-alive
14111 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
14112 - MAJOR: stream-int: handle the connection reuse in si_connect()
14113 - MAJOR: http: add the keep-alive transition on the server side
14114 - MAJOR: backend: enable connection reuse
14115 - MINOR: http: add option prefer-last-server
14116 - MEDIUM: http: do not report connection errors for second and further requests
14117
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200141182013/06/17 : 1.5-dev19
14119 - MINOR: stats: remove the autofocus on the scope input field
14120 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
14121 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
14122 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
14123 - MEDIUM: ssl: improve crt-list format to support negation
14124 - BUG: ssl: fix crt-list for clients not supporting SNI
14125 - MINOR: stats: show soft-stopped servers in different color
14126 - BUG/MINOR: config: "source" does not work in defaults section
14127 - BUG: regex: fix pcre compile error when using JIT
14128 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
14129 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
14130 - MINOR: show PCRE version and JIT status in -vv
14131 - BUG/MINOR: jit: don't rely on USE flag to detect support
14132 - DOC: readme: add suggestion to link against static openssl
14133 - DOC: examples: provide simplified ssl configuration
14134 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
14135 - MINOR: tproxy: add support for FreeBSD
14136 - MINOR: tproxy: add support for OpenBSD
14137 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
14138 - CLEANUP: fix minor typo in error message.
14139 - CLEANUP: fix missing include <string.h> in proto/listener.h
14140 - CLEANUP: protect checks.h from multiple inclusions
14141 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
14142 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
14143 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
14144 - BUG/MEDIUM: splicing is broken since 1.5-dev12
14145 - BUG/MAJOR: acl: add implicit arguments to the resolve list
14146 - BUG/MINOR: tcp: fix error reporting for TCP rules
14147 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
14148 - MINOR: stick-table: allow to allocate an entry without filling it
14149 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
14150 - MINOR: session: only call http_send_name_header() when changing the server
14151 - MINOR: tcp: report the erroneous word in tcp-request track*
14152 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
14153 - BUG/MEDIUM: log: fix regression on log-format handling
14154 - MEDIUM: log: report file name, line number, and directive name with log-format errors
14155 - BUG/MINOR: cli: "clear table" did not work anymore without a key
14156 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
14157 - BUG/MAJOR: http: compression still has defects on chunked responses
14158 - BUG/MINOR: stats: fix confirmation links on the stats interface
14159 - BUG/MINOR: stats: the status bar does not appear anymore after a change
14160 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
14161 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
14162 - BUG/MINOR: fix unterminated ACL array in compression
14163 - BUILD: last fix broke non-linux platforms
14164 - MINOR: init: indicate the SSL runtime version on -vv.
14165 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
14166 - BUILD: stdbool is not portable (again)
14167 - DOC: readme: add a small reminder about restrictions to respect in the code
14168 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
14169 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
14170 - DOC: fix wrong copy-paste in the rspdel example
14171 - MINOR: counters: make it easier to extend the amount of tracked counters
14172 - MEDIUM: counters: add support for tracking a third counter
14173 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
14174 - BUG/MAJOR: http: always ensure response buffer has some room for a response
14175 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
14176 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
14177 - MINOR: log: add a new flag 'L' for locally processed requests
14178 - MINOR: http: add full-length header fetch methods
14179 - MEDIUM: protocol: implement a "drain" function in protocol layers
14180 - MEDIUM: http: add a new "http-response" ruleset
14181 - MEDIUM: http: add the "set-nice" action to http-request and http-response
14182 - MEDIUM: log: add a log level override value in struct session
14183 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
14184 - MEDIUM: http: add support for "set-tos" in http-request/http-response
14185 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
14186 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
14187 - MEDIUM: acl: automatically detect the type of certain fetches
14188 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
14189 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
14190 - DOC: major reorg of ACL + sample fetch
14191 - CLEANUP: http: remove the bogus urlp_ip ACL match
14192 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
14193 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
14194 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
14195 - DOC: update ROADMAP file
14196 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
14197 - MEDIUM: stats: add proxy name filtering on the statistic page
14198
Willy Tarreau289dd922013-04-03 02:26:31 +0200141992013/04/03 : 1.5-dev18
14200 - DOCS: Add explanation of intermediate certs to crt paramater
14201 - DOC: typo and minor fixes in compression paragraph
14202 - MINOR: config: http-request configuration error message misses new keywords
14203 - DOC: minor typo fix in documentation
14204 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
14205 - MEDIUM: ssl: add bind-option "strict-sni"
14206 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
14207 - MEDIUM: regex: Use PCRE JIT in acl
14208 - DOC: simplify bind option "interface" explanation
14209 - DOC: tfo: bump required kernel to linux-3.7
14210 - BUILD: add explicit support for TFO with USE_TFO
14211 - MEDIUM: New cli option -Ds for systemd compatibility
14212 - MEDIUM: add haproxy-systemd-wrapper
14213 - MEDIUM: add systemd service
14214 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
14215 - BUG/MEDIUM: remove supplementary groups when changing gid
14216 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
14217 - BUG/MINOR: Correct logic in cut_crlf()
14218 - CLEANUP: checks: Make desc argument to set_server_check_status const
14219 - CLEANUP: dumpstats: Make cli_release_handler() static
14220 - MEDIUM: server: Break out set weight processing code
14221 - MEDIUM: server: Allow relative weights greater than 100%
14222 - MEDIUM: server: Tighten up parsing of weight string
14223 - MEDIUM: checks: Add agent health check
14224 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
14225 - BUG/MINOR: time: frequency counters are not totally accurate
14226 - BUG/MINOR: http: don't process abortonclose when request was sent
14227 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
14228 - BUG/MEDIUM: checks: ignore late resets after valid responses
14229 - DOC: fix bogus recommendation on usage of gpc0 counter
14230 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
14231 - MINOR: signal: don't block SIGPROF by default
14232 - OPTIM: epoll: make use of EPOLLRDHUP
14233 - OPTIM: splice: detect shutdowns and avoid splice() == 0
14234 - OPTIM: splice: assume by default that splice is working correctly
14235 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
14236 - BUG/MEDIUM: peers: only the last peers section was used by tables
14237 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
14238 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
14239 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
14240 - BUG/MINOR: config: free peer's address when exiting upon parsing error
14241 - BUG/MINOR: config: check the proper variable when parsing log minlvl
14242 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
14243 - BUG/MINOR: cli: show sess should always validate s->listener
14244 - BUG/MINOR: log: improper NULL return check on utoa_pad()
14245 - CLEANUP: http: remove a useless null check
14246 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
14247 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
14248 - BUG/MEDIUM: tools: off-by-one in quote_arg()
14249 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
14250 - BUG/MINOR: unix: remove the 'level' field from the ux struct
14251 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
14252 - CLEANUP: config: slowstart is never negative
14253 - CLEANUP: config: maxcompcpuusage is never negative
14254 - BUG/MEDIUM: log: emit '-' for empty fields again
14255 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
14256 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
14257 - BUILD: improve the makefile's support for libpcre
14258 - MEDIUM: halog: add support for counting per source address (-ic)
14259 - MEDIUM: tools: make str2sa_range support all address syntaxes
14260 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
14261 - MEDIUM: config: use str2sa_range() to parse server addresses
14262 - MEDIUM: config: use str2sa_range() to parse peers addresses
14263 - MINOR: tests: add a config file to ease address parsing tests.
14264 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
14265 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
14266 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
14267 - MINOR: config: report missing peers section name
14268 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
14269 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
14270 - MINOR: tools: prepare str2sa_range() to return an error message
14271 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
14272 - MINOR: tools: prepare str2sa_range() to accept a prefix
14273 - MEDIUM: tools: make str2sa_range() parse unix addresses too
14274 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
14275 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
14276 - MEDIUM: config: use str2sa_range() to parse log addresses
14277 - CLEANUP: tools: remove str2sun() which is not used anymore.
14278 - MEDIUM: config: add complete support for str2sa_range() in dispatch
14279 - MEDIUM: config: add complete support for str2sa_range() in server addr
14280 - MEDIUM: config: add complete support for str2sa_range() in 'server'
14281 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
14282 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
14283 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
14284 - CLEANUP: config: do not use multiple errmsg at once
14285 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
14286 - MAJOR: listener: support inheriting a listening fd from the parent
14287 - MAJOR: tools: support environment variables in addresses
14288 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
14289 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
14290 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
14291 - DOC: mention the new HTTP 307 and 308 redirect statues
14292 - MEDIUM: poll: do not use FD_* macros anymore
14293 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
14294 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
14295 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
14296 - BUILD: fix usual isdigit() warning on solaris
14297 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
14298 - OPTIM: buffer: remove one jump in buffer_count()
14299 - OPTIM: http: improve branching in chunk size parser
14300 - OPTIM: http: optimize the response forward state machine
14301 - BUILD: enable poll() by default in the makefile
14302 - BUILD: add explicit support for Mac OS/X
14303 - BUG/MAJOR: http: use a static storage for sample fetch context
14304 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
14305 - BUG/MAJOR: http: fix regression introduced by commit a890d072
14306 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
14307 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
14308 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
14309 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
14310 - MINOR: log: indicate it when some unreliable sample fetches are logged
14311 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
14312 - MINOR: backend: rename sample fetch functions and declare the sample keywords
14313 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
14314 - MINOR: listener: rename sample fetch functions and declare the sample keywords
14315 - MEDIUM: http: unify acl and sample fetch functions
14316 - MINOR: session: rename sample fetch functions and declare the sample keywords
14317 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
14318 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
14319 - MAJOR: acl: remove fetch argument validation from the ACL struct
14320 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
14321 - MINOR: payload: add new direction-explicit sample fetches
14322 - CLEANUP: acl: remove ACL hooks which were never used
14323 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
14324 - MINOR: sample: provide a function to report the name of a sample check point
14325 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
14326 - CLEANUP: acl: remove unused references to ACL_USE_*
14327 - MINOR: http: replace acl_parse_ver with acl_parse_str
14328 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
14329 - MAJOR: acl: add option -m to change the pattern matching method
14330 - MINOR: acl: remove the use_count in acl keywords
14331 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
14332 - MEDIUM: acl: support using sample fetches directly in ACLs
14333 - MEDIUM: http: remove val_usr() to validate user_lists
14334 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
14335 - MINOR: ssl: add support for the "alpn" bind keyword
14336 - MINOR: http: status code 303 is HTTP/1.1 only
14337 - MEDIUM: http: implement redirect 307 and 308
14338 - MINOR: http: status 301 should not be marked non-cacheable
14339
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100143402012/12/28 : 1.5-dev17
14341 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
14342 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
14343 - BUG/MINOR: stats: last fix was still wrong
14344 - BUG/MINOR: stats: http-request rules still don't cope with stats
14345 - BUG/MINOR: http: http-request add-header emits a corrupted header
14346 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
14347 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
14348 - BUILD: log: unused variable svid
14349 - CLEANUP: http: rename the misleading http_check_access_rule
14350 - MINOR: http: move redirect rule processing to its own function
14351 - REORG: config: move the http redirect rule parser to proto_http.c
14352 - MEDIUM: http: add support for "http-request redirect" rules
14353 - MEDIUM: http: add support for "http-request tarpit" rule
14354
Willy Tarreau69eda352012-12-24 16:48:14 +0100143552012/12/24 : 1.5-dev16
14356 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
14357 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
14358 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
14359 - MINOR: contrib: make the iprange tool grep for addresses
14360 - CLEANUP: polling: gcc doesn't always optimize constants away
14361 - OPTIM: poll: optimize fd management functions for low register count CPUs
14362 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
14363 - OPTIM: epoll: use a temp variable for intermediary flag computations
14364 - OPTIM: epoll: current fd does not count as a new one
14365 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
14366 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
14367 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
14368 - BUG/MINOR: stream_interface: don't return when the fd is already set
14369 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
14370 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
14371 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
14372 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
14373 - BUG/MINOR: http: don't abort client connection on premature responses
14374 - BUILD: no need to clean up when making git-tar
14375 - MINOR: log: add a tag for amount of bytes uploaded from client to server
14376 - BUG/MEDIUM: log: fix possible segfault during config parsing
14377 - MEDIUM: log: change a few log tokens to make them easier to remember
14378 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
14379 - MEDIUM: log-format: make the format parser more robust and more extensible
14380 - MINOR: sample: support cast from bool to string
14381 - MINOR: samples: add a function to fetch and convert any sample to a string
14382 - MINOR: log: add lf_text_len
14383 - MEDIUM: log: add the ability to include samples in logs
14384 - REORG: stats: massive code reorg and cleanup
14385 - REORG: stats: move the HTTP header injection to proto_http
14386 - REORG: stats: functions are now HTTP/CLI agnostic
14387 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
14388 - MINOR: chunks: centralize the trash chunk allocation
14389 - MEDIUM: stats: use hover boxes instead of title to report details
14390 - MEDIUM: stats: use multi-line tips to display detailed counters
14391 - MINOR: tools: simplify the use of the int to ascii macros
14392 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
14393 - MINOR: http: prepare to support more http-request actions
14394 - MINOR: log: make parse_logformat_string() take a const char *
14395 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
14396
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100143972012/12/12 : 1.5-dev15
14398 - DOC: add a few precisions on compression
14399 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
14400 - BUG/MINOR: ssl: One free session in cache remains unused.
14401 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
14402 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
14403 - MINOR: acl: add fetch for server session rate
14404 - BUG/MINOR: compression: Content-Type is case insensitive
14405 - MINOR: compression: disable on multipart or status != 200
14406 - BUG/MINOR: http: don't report client aborts as server errors
14407 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
14408 - MINOR: http: factor out the content-type checks
14409 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
14410 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
14411 - BUG/MINOR: http: disable compression when message has no body
14412 - MINOR: compression: make the stats a bit more robust
14413 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
14414 - MINOR: connection: don't remove failed handshake flags
14415 - MEDIUM: connection: add an error code in connections
14416 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
14417 - MEDIUM: connection: add error reporting for the PROXY protocol header
14418 - MEDIUM: connection: add error reporting for the SSL
14419 - DOC: document the connection error format in logs
14420 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
14421 - BUILD: stdbool is not portable
14422 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
14423 - BUG/MAJOR: raw_sock: must check error code on hangup
14424 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
14425 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
14426 - MINOR: stats: add a few more information on session dump
14427 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
14428 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
14429 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
14430 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
14431 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
14432 - CLEANUP: proto_tcp: use the same code to bind servers and backends
14433 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
14434 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
14435 - MEDIUM: proto_tcp: add support for tracking L7 information
14436 - MEDIUM: counters: add sc1_trackers/sc2_trackers
14437 - MINOR: http: add the "base32" pattern fetch function
14438 - MINOR: http: add the "base32+src" fetch method.
14439 - CLEANUP: session: use an array for the stick counters
14440 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
14441 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
14442 - BUG/MAJOR: connection: always recompute polling status upon I/O
14443 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
14444 - MINOR: config: improve error checking on TCP stick-table tracking
14445 - DOC: add some clarifications to the readme
14446
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100144472012/11/26 : 1.5-dev14
14448 - DOC: fix minor typos
14449 - BUG/MEDIUM: compression: does not forward trailers
14450 - MINOR: buffer_dump with ASCII
14451 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
14452 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
14453 - BUG/MINOR: checks: don't mark the FD as closed before transport close
14454 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
14455 - MINOR: cli: report the msg state in full text in "show sess $PTR"
14456 - CLEANUP: checks: rename some server check flags
14457 - MAJOR: checks: rework completely bogus state machine
14458 - BUG/MINOR: checks: slightly clean the state machine up
14459 - MEDIUM: checks: avoid waking the application up for pure TCP checks
14460 - MEDIUM: checks: close the socket as soon as we have a response
14461 - BUG/MAJOR: checks: close FD on all timeouts
14462 - MINOR: checks: fix recv polling after connect()
14463 - MEDIUM: connection: provide a common conn_full_close() function
14464 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
14465 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
14466 - MINOR: listeners: make the accept loop more robust when maxaccept==0
14467 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
14468 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
14469 - BUG/MINOR: stats: fix inversion of the report of a check in progress
14470 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
14471 - BUG/MEDIUM: connection: always disable polling upon error
14472 - MINOR: connection: abort earlier when errors are detected
14473 - BUG/MEDIUM: checks: report handshake failures
14474 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
14475 - MINOR: tcp: add support for the "v6only" bind option
14476 - MINOR: stats: also report the computed compression savings in html stats
14477 - MINOR: stats: report the total number of compressed responses per front/back
14478 - MINOR: tcp: add support for the "v4v6" bind option
14479 - DOC: stats: document the comp_rsp stats column
14480 - BUILD: buffer: fix another isprint() warning on solaris
14481 - MINOR: cli: add support for the "show sess all" command
14482 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
14483 - MINOR: cli: improve output format for show sess $ptr
14484
Willy Tarreauad15d122012-11-22 01:11:33 +0100144852012/11/22 : 1.5-dev13
14486 - BUILD: fix build issue without USE_OPENSSL
14487 - BUILD: fix compilation error with DEBUG_FULL
14488 - DOC: ssl: remove prefer-server-ciphers documentation
14489 - DOC: ssl: surround keywords with quotes
14490 - DOC: fix minor typo on http-send-name-header
14491 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
14492 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
14493 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
14494 - BUILD: report zlib support in haproxy -vv
14495 - DOC: compression: add some details and clean up the formatting
14496 - DOC: Change is_ssl acl to ssl_fc acl in example
14497 - DOC: make it clear what the HTTP request size is
14498 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
14499 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
14500 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
14501 - DOC: ssl: add 'ecdhe' statement on 'bind'
14502 - MEDIUM: ssl: add client certificate authentication support
14503 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
14504 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
14505 - DOC: ssl: add fetch and ACL 'client_cert'
14506 - MINOR: ssl: add ignore verify errors options
14507 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
14508 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
14509 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
14510 - MINOR: ssl: add fetches and ACLs to return verify errors
14511 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
14512 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
14513 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
14514 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
14515 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
14516 - MEDIUM: config: authorize frontend and listen without bind.
14517 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
14518 - DOC: ssl: add 'no-tls-tickets' statement documentation.
14519 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
14520 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
14521 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
14522 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
14523 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
14524 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
14525 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
14526 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
14527 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
14528 - MINOR: ssl: use bit fields to store ssl options instead of one int each
14529 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
14530 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
14531 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
14532 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
14533 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
14534 - MEDIUM: ssl: reject ssl server keywords in default-server statement
14535 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
14536 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
14537 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
14538 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
14539 - MINOR: acl: add parse and match primitives to use binary type on ACLs
14540 - MINOR: sample: export 'sample_get_trash_chunk(void)'
14541 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
14542 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
14543 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
14544 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
14545 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
14546 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
14547 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
14548 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
14549 - MINOR: ssl: add 'crt' statement on server.
14550 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
14551 - BUG/MEDIUM: ssl: review polling on reneg.
14552 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
14553 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
14554 - MINOR: build: allow packagers to specify the ssl cache size
14555 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
14556 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
14557 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
14558 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
14559 - DOC: duplicate ssl_sni section
14560 - MEDIUM: HTTP compression (zlib library support)
14561 - CLEANUP: use struct comp_ctx instead of union
14562 - BUILD: remove dependency to zlib.h
14563 - MINOR: compression: memlevel and windowsize
14564 - MEDIUM: use pool for zlib
14565 - MINOR: compression: try init in cfgparse.c
14566 - MINOR: compression: init before deleting headers
14567 - MEDIUM: compression: limit RAM usage
14568 - MINOR: compression: tune.comp.maxlevel
14569 - MINOR: compression: maximum compression rate limit
14570 - MINOR: log-format: check number of arguments in cfgparse.c
14571 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
14572 - BUG/MINOR: compression: deinit zlib only when required
14573 - MEDIUM: compression: don't compress when no data
14574 - MEDIUM: compression: use pool for comp_ctx
14575 - MINOR: compression: rate limit in 'show info'
14576 - MINOR: compression: report zlib memory usage
14577 - BUG/MINOR: compression: dynamic level increase
14578 - DOC: compression: unsupported cases.
14579 - MINOR: compression: CPU usage limit
14580 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
14581 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
14582 - MINOR: config: add a function to indent error messages
14583 - REORG: split "protocols" files into protocol and listener
14584 - MEDIUM: config: replace ssl_conf by bind_conf
14585 - CLEANUP: listener: remove unused conf->file and conf->line
14586 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
14587 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
14588 - MEDIUM: move bind SSL parsing to ssl_sock
14589 - MINOR: config: improve error reporting for "bind" lines
14590 - MEDIUM: config: move the common "bind" settings to listener.c
14591 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
14592 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
14593 - MINOR: listener: add a scope field in the bind keyword lists
14594 - MINOR: config: pass the file and line to config keyword parsers
14595 - MINOR: stats: fill the file and line numbers in the stats frontend
14596 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
14597 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
14598 - REORG: listener: move unix perms from the listener to the bind_conf
14599 - BUG: backend: balance hdr was broken since 1.5-dev11
14600 - MINOR: standard: make memprintf() support a NULL destination
14601 - MINOR: config: make str2listener() use memprintf() to report errors.
14602 - MEDIUM: stats: remove the stats_sock struct from the global struct
14603 - MINOR: ssl: set the listeners' data layer to ssl during parsing
14604 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
14605 - DOC: move bind options to their own section
14606 - DOC: stats: refer to "bind" section for "stats socket" settings
14607 - DOC: fix index to reference bind and server options
14608 - BUG: http: do not print garbage on invalid requests in debug mode
14609 - BUG/MINOR: config: check the proper pointer to report unknown protocol
14610 - CLEANUP: connection: offer conn_prepare() to set up a connection
14611 - CLEANUP: config: fix typo inteface => interface
14612 - BUG: stats: fix regression introduced by commit 4348fad1
14613 - MINOR: cli: allow to set frontend maxconn to zero
14614 - BUG/MAJOR: http: chunk parser was broken with buffer changes
14615 - MEDIUM: monitor: simplify handling of monitor-net and mode health
14616 - MINOR: connection: add a pointer to the connection owner
14617 - MEDIUM: connection: make use of the owner instead of container_of
14618 - BUG/MINOR: ssl: report the L4 connection as established when possible
14619 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
14620 - BUG/MINOR: config: use a copy of the file name in proxy configurations
14621 - BUG/MEDIUM: listener: don't pause protocols that do not support it
14622 - MEDIUM: proxy: add the global frontend to the list of normal proxies
14623 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
14624 - MINOR: signal: really ignore signals configured with no handler
14625 - MINOR: buffers: add a few functions to write chars, strings and blocks
14626 - MINOR: raw_sock: always report asynchronous connection errors
14627 - MEDIUM: raw_sock: improve connection error reporting
14628 - REORG: connection: rename the data layer the "transport layer"
14629 - REORG: connection: rename app_cb "data"
14630 - MINOR: connection: provide a generic data layer wakeup callback
14631 - MINOR: connection: split conn_prepare() in two functions
14632 - MINOR: connection: add an init callback to the data_cb struct
14633 - MEDIUM: session: use a specific data_cb for embryonic sessions
14634 - MEDIUM: connection: use a generic data-layer init() callback
14635 - MEDIUM: connection: reorganize connection flags
14636 - MEDIUM: connection: only call the data->wake callback on activity
14637 - MEDIUM: connection: make it possible for data->wake to return an error
14638 - MEDIUM: session: register a data->wake callback to process errors
14639 - MEDIUM: connection: don't call the data->init callback upon error
14640 - MEDIUM: connection: it's not the data layer's role to validate the connection
14641 - MEDIUM: connection: automatically disable polling on error
14642 - REORG: connection: move the PROXY protocol management to connection.c
14643 - MEDIUM: connection: add a new local send-proxy transport callback
14644 - MAJOR: checks: make use of the connection layer to send checks
14645 - REORG: server: move the check-specific parts into a check subsection
14646 - MEDIUM: checks: use real buffers to store requests and responses
14647 - MEDIUM: check: add the ctrl and transport layers in the server check structure
14648 - MAJOR: checks: completely use the connection transport layer
14649 - MEDIUM: checks: add the "check-ssl" server option
14650 - MEDIUM: checks: enable the PROXY protocol with health checks
14651 - CLEANUP: checks: remove minor warnings for assigned but not used variables
14652 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
14653 - BUG: connection: fix regression from commit 9e272bf9
14654 - CLEANUP: cttproxy: remove a warning on undeclared close()
14655 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
14656 - MEDIUM: listener: add support for linux's accept4() syscall
14657 - MINOR: halog: sort output by cookie code
14658 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
14659 - BUG/MINOR: halog: fix help message for -ut/-uto
14660 - MINOR: halog: add a parameter to limit output line count
14661 - BUILD: accept4: move the socketcall declaration outside of accept4()
14662 - MINOR: server: add minimal infrastructure to parse keywords
14663 - MINOR: standard: make indent_msg() support empty messages
14664 - MEDIUM: server: check for registered keywords when parsing unknown keywords
14665 - MEDIUM: server: move parsing of keyword "id" to server.c
14666 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
14667 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
14668 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
14669 - MEDIUM: connection: always unset the transport layer upon close
14670 - BUG/MINOR: session: fix some leftover from debug code
14671 - BUG/MEDIUM: session: enable the conn_session_update() callback
14672 - MEDIUM: connection: add a flag to hold the transport layer
14673 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
14674 - MINOR: log: make lf_text use a const char *
14675 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
14676 - REORG: http: rename msg->buf to msg->chn since it's a channel
14677 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
14678 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
14679 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
14680 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
14681 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
14682 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
14683 - OPTIM: channel: reorganize struct members to improve cache efficiency
14684 - CLEANUP: session: remove term_trace which is not used anymore
14685 - OPTIM: session: reorder struct session fields
14686 - OPTIM: connection: pack the struct target
14687 - DOC: document relations between internal entities
14688 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
14689 - BUILD: ssl: fix shctx build on older compilers
14690 - MEDIUM: ssl: add support for the "npn" bind keyword
14691 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
14692 - MINOR: chunk: provide string compare functions
14693 - MINOR: sample: accept fetch keywords without parenthesis
14694 - MEDIUM: sample: pass an empty list instead of a null for fetch args
14695 - MINOR: ssl: improve socket behaviour upon handshake abort.
14696 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
14697 - MEDIUM: listener: provide a fallback for accept4() when not supported
14698 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
14699 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
14700 - OPTIM: channel: inline channel_forward's fast path
14701 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
14702 - OPTIM: tools: inline hex2i()
14703 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
14704 - MINOR: compression: automatically disable compression for older browsers
14705 - MINOR: compression: optimize memLevel to improve byte rate
14706 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
14707 - BUILD: fix coexistence of openssl and zlib
14708 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
14709 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
14710 - MINOR: tools: add a clear_addr() function to unset an address
14711 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
14712 - CLEANUP: remove trashlen
14713 - MAJOR: session: detach the connections from the stream interfaces
14714 - DOC: update document describing relations between internal entities
14715 - BUILD: make it possible to specify ZLIB path
14716 - MINOR: compression: add an offload option to remove the Accept-Encoding header
14717 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
14718 - CLEANUP: completely remove trashlen
14719 - MINOR: chunk: add a function to reset a chunk
14720 - CLEANUP: replace chunk_printf() with chunk_appendf()
14721 - MEDIUM: make the trash be a chunk instead of a char *
14722 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
14723 - MEDIUM: stick-table: allocate the table key of size buffer size
14724 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
14725 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
14726 - OPTIM: session: don't process the whole session when only timers need a refresh
14727 - BUG/MINOR: session: mark the handshake as complete earlier
14728 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
14729 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
14730 - MAJOR: sepoll: make the poller totally event-driven
14731 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
14732 - BUILD: compression: remove a build warning
14733 - MEDIUM: fd: don't unset fdtab[].updated upon delete
14734 - REORG: fd: move the speculative I/O management from ev_sepoll
14735 - REORG: fd: move the fd state management from ev_sepoll
14736 - REORG: fd: centralize the processing of speculative events
14737 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
14738 - BUILD: stream_interface: remove si_fd() and its references
14739 - BUILD: compression: enable build in BSD and OSX Makefiles
14740 - MAJOR: ev_select: make the poller support speculative events
14741 - MAJOR: ev_poll: make the poller support speculative events
14742 - MAJOR: ev_kqueue: make the poller support speculative events
14743 - MAJOR: polling: replace epoll with sepoll and remove sepoll
14744 - MAJOR: polling: remove unused callbacks from the poller struct
14745 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
14746 - CLEANUP: channel: remove any reference of the hijackers
14747 - CLEANUP: stream_interface: remove the external task type target
14748 - MAJOR: connection: replace struct target with a pointer to an enum
14749 - BUG: connection: fix typo in previous commit
14750 - BUG: polling: don't skip polled events in the spec list
14751 - MINOR: splice: disable it when the system returns EBADF
14752 - MINOR: build: allow packagers to specify the default maxzlibmem
14753 - BUG: halog: fix broken output limitation
14754 - BUG: proxy: fix server name lookup in get_backend_server()
14755 - BUG: compression: do not always increment the round counter on allocation failure
14756 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
14757 - MINOR: global: don't prevent nbproc from being redefined
14758 - MINOR: config: support process ranges for "bind-process"
14759 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
14760 - MINOR: ssl: rename and document the tune.ssl.cachesize option
14761 - DOC: update the PROXY protocol spec to support v2
14762 - MINOR: standard: add a simple popcount function
14763 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
14764 - BUG: compression: properly disable compression when content-type does not match
14765 - MINOR: cli: report connection status in "show sess xxx"
14766 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
14767 - BUILD: cli: fix build when SSL is enabled
14768 - MINOR: cli: report the fd state in "show sess xxx"
14769 - MINOR: cli: report an error message on missing argument to compression rate
14770 - MINOR: http: add some debugging functions to pretty-print msg state names
14771 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
14772 - DOC: documentation on http header capture is wrong
14773 - MINOR: http: allow the cookie capture size to be changed
14774 - DOC: http header capture has not been limited in size for a long time
14775 - DOC: update readme with build methods for BSD
14776 - BUILD: silence a warning on Solaris about usage of isdigit()
14777 - MINOR: stats: report HTTP compression stats per frontend and per backend
14778 - MINOR: log: add '%Tl' to log-format
14779 - MINOR: samples: update the url_param fetch to match parameters in the path
14780
Willy Tarreau16216822012-09-10 09:46:55 +0200147812012/09/10 : 1.5-dev12
14782 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
14783 - MEDIUM: ssl: add support for prefer-server-ciphers option
14784 - MINOR: IPv6 support for transparent proxy
14785 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
14786 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
14787 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
14788 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
14789 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
14790 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
14791 - MEDIUM: ssl: protect against client-initiated renegociation
14792 - BUILD: add optional support for SSL via the USE_OPENSSL flag
14793 - MEDIUM: ssl: add shared memory session cache implementation.
14794 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
14795 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
14796 - MEDIUM: ssl: add support for SNI and wildcard certificates
14797 - DOC: Typos cleanup
14798 - DOC: fix name for "option independant-streams"
14799 - DOC: specify the default value for maxconn in the context of a proxy
14800 - BUG/MINOR: to_log erased with unique-id-format
14801 - LICENSE: add licence exception for OpenSSL
14802 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
14803 - BUILD: add an AIX 5.2 (and later) target.
14804 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
14805 - MINOR: halog: use the more recent dual-mode fgets2 implementation
14806 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
14807 - CLEANUP: halog: make clean should also remove .o files
14808 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
14809 - OPTIM: halog: improve cold-cache behaviour when loading a file
14810 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
14811 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
14812 - MEDIUM: pattern: add the "base" sample fetch method
14813 - OPTIM: i386: make use of kernel-mode-linux when available
14814 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
14815 - BUG/MINOR: polling: some events were not set in various pollers
14816 - MINOR: http: add the urlp_val ACL match
14817 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
14818 - MINOR: stats/cli: add plans to support more stick-table actions
14819 - MEDIUM: stats/cli: add support for "set table key" to enter values
14820 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
14821 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
14822 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
14823 - REORG/MINOR: connection: move declaration to its own include file
14824 - REORG/MINOR: checks: put a struct connection into the server
14825 - MINOR: connection: add flags to the connection struct
14826 - MAJOR: get rid of fdtab[].state and use connection->flags instead
14827 - MINOR: fd: add a new I/O handler to fdtab
14828 - MEDIUM: polling: prepare to call the iocb() function when defined.
14829 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
14830 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
14831 - MINOR: connection: add a handler for fd-based connections
14832 - MAJOR: connection: replace direct I/O callbacks with the connection callback
14833 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
14834 - MEDIUM: connection: remove the FD_POLL_* flags only once
14835 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
14836 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
14837 - CLEANUP: remove the now unused fdtab direct I/O callbacks
14838 - MAJOR: remove the stream interface and task management code from sock_*
14839 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
14840 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
14841 - MAJOR: connection: add a new CO_FL_CONNECTED flag
14842 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
14843 - MAJOR: connection: call data layer handshakes from the handler
14844 - MEDIUM: fd: remove the EV_FD_COND_* primitives
14845 - MINOR: sock_raw: move calls to si_data_close upper
14846 - REORG: connection: replace si_data_close() with conn_data_close()
14847 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
14848 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
14849 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
14850 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
14851 - MEDIUM: connection: add definitions for dual polling mechanisms
14852 - MEDIUM: connection: make use of the new polling functions
14853 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
14854 - MEDIUM: checks: don't use FD_WAIT_* anymore
14855 - MINOR: fd: get rid of FD_WAIT_*
14856 - MEDIUM: stream_interface: offer a generic function for connection updates
14857 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
14858 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
14859 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
14860 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
14861 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
14862 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
14863 - REORG/MAJOR: extract "struct buffer" from "struct channel"
14864 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
14865 - REORG: sock_raw: rename the files raw_sock*
14866 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
14867 - MAJOR: raw_sock: temporarily disable splicing
14868 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
14869 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
14870 - MAJOR: connection: split the send call into connection and stream interface
14871 - MAJOR: stream-interface: restore splicing mechanism
14872 - MAJOR: stream-interface: make conn_notify_si() more robust
14873 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
14874 - MAJOR: stream-interface: don't commit polling changes in every callback
14875 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
14876 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
14877 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
14878 - REORG: buffers: split buffers into chunk,buffer,channel
14879 - MAJOR: channel: remove the BF_OUT_EMPTY flag
14880 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
14881 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
14882 - MINOR: buffer: provide a new buffer_full() function
14883 - MAJOR: channel: stop relying on BF_FULL to take action
14884 - MAJOR: channel: remove the BF_FULL flag
14885 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
14886 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
14887 - CLEANUP: channel: use "channel" instead of "buffer" in function names
14888 - REORG: connection: move the target pointer from si to connection
14889 - MAJOR: connection: move the addr field from the stream_interface
14890 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
14891 - MEDIUM: proto_tcp: remove any dependence on stream_interface
14892 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
14893 - MEDIUM: connection: add an ->init function to data layer
14894 - MAJOR: session: introduce embryonic sessions
14895 - MAJOR: connection: make the PROXY decoder a handshake handler
14896 - CLEANUP: frontend: remove the old proxy protocol decoder
14897 - MAJOR: connection: rearrange the polling flags.
14898 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
14899 - MEDIUM: connection: complete the polling cleanups
14900 - MEDIUM: connection: avoid calling handshakes when polling is required
14901 - MAJOR: stream_interface: continue to update data polling flags during handshakes
14902 - CLEANUP: fd: remove fdtab->flags
14903 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
14904 - CLEANUP: includes: fix includes for a number of users of fd.h
14905 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
14906 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
14907 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
14908 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
14909 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
14910 - BUILD: ssl: fix shctx build on RHEL with futex
14911 - BUILD: include sys/socket.h to fix build failure on FreeBSD
14912 - BUILD: fix build error without SSL (ssl_cert)
14913 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
14914 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
14915 - MEDIUM: config: support per-listener backlog and maxconn
14916 - MINOR: session: do not send an HTTP/500 error on SSL sockets
14917 - MEDIUM: config: implement maxsslconn in the global section
14918 - BUG: tcp: close socket fd upon connect error
14919 - MEDIUM: connection: improve error handling around the data layer
14920 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
14921 - BUILD: shut a gcc warning introduced by commit 269ab31
14922 - MEDIUM: config: centralize handling of SSL config per bind line
14923 - BUILD: makefile: report USE_OPENSSL status in build options
14924 - BUILD: report openssl build settings in haproxy -vv
14925 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
14926 - DOC: add a special acknowledgement for the stud project
14927 - DOC: add missing SSL options for servers and listeners
14928 - BUILD: automatically add -lcrypto for SSL
14929 - DOC: add some info about openssl build in the README
14930
Willy Tarreau02c7c142012-06-04 00:43:45 +0200149312012/06/04 : 1.5-dev11
14932 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
14933 - BUG/MAJOR: trash must always be the size of a buffer
14934 - DOC: fix minor regex example issue and improve doc on stats
14935 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
14936 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
14937 - MINOR: checks: add on-marked-up option
14938 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
14939 - MEDIUM: stream_interface: remove the si->init
14940 - MINOR: buffers: add a rewind function
14941 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
14942 - MAJOR: http: stop using msg->sol outside the parsers
14943 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
14944 - MEDIUM: http: get rid of msg->som which is not used anymore
14945 - MEDIUM: http: msg->sov and msg->sol will never wrap
14946 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
14947 - BUG/MINOR: stop connect timeout when connect succeeds
14948 - REORG: move the send-proxy code to tcp_connect_write()
14949 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
14950 - MINOR: stream_interface: introduce a new "struct connection" type
14951 - REORG/MINOR: stream_interface: move si->fd to struct connection
14952 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
14953 - MINOR: stream_interface: add a data channel close function
14954 - MEDIUM: stream_interface: call si_data_close() before releasing the si
14955 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
14956 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
14957 - MINOR: add a new function call tracer for debugging purposes
14958 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
14959 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
14960 - BUG/MEDIUM: register peer sync handler in the proper order
14961 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
14962 - BUG/MINOR: fix option httplog validation with TCP frontends
14963 - BUG/MINOR: log: don't report logformat errors in backends
14964 - REORG/MINOR: use dedicated proxy flags for the cookie handling
14965 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
14966 - MINOR: http: add support for "httponly" and "secure" cookie attributes
14967 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
14968 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
14969 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
14970 - MEDIUM: stats: add the ability to kill sessions from the admin interface
14971 - BUILD: add support for linux kernels >= 2.6.28
14972
Willy Tarreauffb89472012-05-14 07:26:56 +0200149732012/05/14 : 1.5-dev10
14974 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
14975 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
14976 - CLEANUP: auth: make the code build again with DEBUG_AUTH
14977 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
14978 - REORG: use the name sock_raw instead of stream_sock
14979 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
14980 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
14981 - CLEANUP: sock_raw: remove last references to stream_sock
14982 - CLEANUP: stream_interface: stop exporting socket layer functions
14983 - MINOR: stream_interface: add an init callback to sock_ops
14984 - MEDIUM: stream_interface: derive the socket operations from the target
14985 - MAJOR: fd: remove the need for the socket layer to recheck the connection
14986 - MINOR: session: call the socket layer init function when a session establishes
14987 - MEDIUM: session: add support for tunnel timeouts
14988 - MINOR: standard: add a new debug macro : fddebug()
14989 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
14990 - OPTIM: proto_http: don't enable quick-ack on empty buffers
14991 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
14992 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
14993
Willy Tarreaua0564f32012-05-08 21:56:27 +0200149942012/05/08 : 1.5-dev9
14995 - MINOR: Add release callback to si_applet
14996 - CLEANUP: Fix some minor typos
14997 - MINOR: Add TO/FROM_SET flags to struct stream_interface
14998 - CLEANUP: Fix some minor whitespace issues
14999 - MINOR: stats admin: allow unordered parameters in POST requests
15000 - CLEANUP: fix typo in findserver() log message
15001 - MINOR: stats admin: use the backend id instead of its name in the form
15002 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
15003 - DOC: cleanup indentation, alignment, columns and chapters
15004 - DOC: fix some keywords arguments documentation
15005 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
15006 - BUG/MAJOR: log: possible segfault with logformat
15007 - MEDIUM: log: split of log_format generation
15008 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
15009 - MEDIUM: log: Unique ID
15010 - MINOR: log: log-format: usable without httplog and tcplog
15011 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
15012 - MINOR: contrib/iprange: add a network IP range to mask converter
15013 - MEDIUM: session: implement the "use-server" directive
15014 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
15015 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
15016 - MEDIUM: http: add cookie and scookie ACLs
15017 - CLEANUP: lb_first: add reference to a paper describing the original idea
15018 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
15019 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
15020 - BUILD: http: make extract_cookie_value() return an int not size_t
15021 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
15022 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
15023 - MINOR: standard: add a memprintf() function to build formatted error messages
15024 - CLEANUP: remove a few warning about unchecked return values in debug code
15025 - MEDIUM: move message-related flags from transaction to message
15026 - DOC: add a diagram to explain how circular buffers work
15027 - MAJOR: buffer rework: replace ->send_max with ->o
15028 - MAJOR: buffer: replace buf->l with buf->{o+i}
15029 - MINOR: buffers: provide simple pointer normalization functions
15030 - MINOR: buffers: remove unused function buffer_contig_data()
15031 - MAJOR: buffers: replace buf->w with buf->p - buf->o
15032 - MAJOR: buffers: replace buf->r with buf->p + buf->i
15033 - MAJOR: http: move buffer->lr to http_msg->next
15034 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
15035 - CLEANUP: http: remove unused http_msg->col
15036 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
15037 - MEDIUM: http: add a pointer to the buffer in http_msg
15038 - MAJOR: http: make http_msg->sol relative to buffer's origin
15039 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
15040 - MEDIUM: http: remove buffer arg in a few header manipulation functions
15041 - MEDIUM: http: remove buffer arg in http_capture_bad_message
15042 - MEDIUM: http: remove buffer arg in http_msg_analyzer
15043 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
15044 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
15045 - MEDIUM: http: remove buffer arg in chunk parsing functions
15046 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
15047 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
15048 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
15049 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
15050 - MEDIUM: buffers: rename a number of buffer management functions
15051 - MEDIUM: http: add a prefetch function for ACL pattern fetch
15052 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
15053 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
15054 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
15055 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
15056 - MEDIUM: add a new typed argument list parsing framework
15057 - MAJOR: acl: make use of the new argument parsing framework
15058 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
15059 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
15060 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
15061 - MAJOR: acl: ensure that implicit table and proxies are valid
15062 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
15063 - MEDIUM: pattern: replace type pattern_arg with type arg
15064 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
15065 - MEDIUM: pattern: use the standard arg parser
15066 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
15067 - MEDIUM: pattern: report the precise argument parsing error when known.
15068 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
15069 - MINOR: pattern: add a new 'sample' type to store fetched data
15070 - MEDIUM: pattern: add new sample types to replace pattern types
15071 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
15072 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
15073 - MEDIUM: acl: get rid of the SET_RES flags
15074 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
15075 - MINOR: pattern: replace struct pattern with struct sample
15076 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
15077 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
15078 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
15079 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
15080 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
15081 - MEDIUM: acl/pattern: use the same direction scheme
15082 - MEDIUM: acl/pattern: start merging common sample fetch functions
15083 - MEDIUM: pattern: ensure that sample types always cast into other types.
15084 - MEDIUM: acl/pattern: factor out the src/dst address fetches
15085 - MEDIUM: acl: implement payload and payload_lv
15086 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
15087 - MINOR: stick_table: centralize the handling of empty keys
15088 - MINOR: pattern: centralize handling of unstable data in pattern_process()
15089 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
15090 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
15091 - MINOR: acl: add a val_args field to keywords
15092 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
15093 - MEDIUM: http: merge acl and pattern header fetch functions
15094 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
15095 - MEDIUM: acl: report parsing errors to the caller
15096 - MINOR: arg: improve error reporting on invalid arguments
15097 - MINOR: acl: report errors encountered when loading patterns from files
15098 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
15099 - REORG: use the name "sample" instead of "pattern" to designate extracted data
15100 - REORG: rename "pattern" files
15101 - MINOR: acl: add types to ACL patterns
15102 - MINOR: standard: add an IPv6 parsing function (str62net)
15103 - MEDIUM: acl: support IPv6 address matching
15104 - REORG: stream_interface: create a struct sock_ops to hold socket operations
15105 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
15106 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
15107 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
15108 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
15109 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
15110 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
15111 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
15112 - MEDIUM: http: improve error capture reports
15113 - MINOR: acl: add the cook_val() match to match a cookie against an integer
15114 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
15115 - MEDIUM: memory: add the ability to poison memory at run time
15116 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
15117 - MINOR: cfgparse: use a common errmsg pointer for all parsers
15118 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
15119 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
15120 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
15121
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200151222012/03/26 : 1.5-dev8
15123 - MINOR: patch for minor typo (ressources/resources)
15124 - MEDIUM: http: add support for sending the server's name in the outgoing request
15125 - DOC: mention that default checks are TCP connections
15126 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
15127 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
15128 - CLEANUP: Fix HCHK spelling errors
15129 - BUG/MINOR: fix typo in processing of http-send-name-header
15130 - MEDIUM: log: Use linked lists for loggers
15131 - BUILD: fix declaration inside a scope block
15132 - REORG: log: split send_log function
15133 - MINOR: config: Parse the string of the log-format config keyword
15134 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
15135 - MINOR: Date and time fonctions that don't use snprintf
15136 - MEDIUM: log: make http_sess_log use log_format
15137 - DOC: log-format documentation
15138 - MEDIUM: log: use log_format for mode tcplog
15139 - MEDIUM: log-format: backend source address %Bi %Bp
15140 - BUG/MINOR: log-format: fix %o flag
15141 - BUG/MEDIUM: bad length in log_format and __send_log
15142 - MINOR: logformat %st is signed
15143 - BUILD/MINOR: fix the source URL in the spec file
15144 - DOC: acl is http_first_req, not http_req_first
15145 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
15146 - MINOR: acl: add new matches for header/path/url length
15147 - BUILD: halog: make halog build on solaris
15148 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
15149 - MINOR: remove the client/server side distinction in SI addresses
15150 - MINOR: halog: add support for matching queued requests
15151 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
15152 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
15153 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
15154 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
15155 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
15156 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
15157 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
15158 - CLEANUP: rename possibly confusing struct field "tracked"
15159 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
15160 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
15161 - MEDIUM: buffers: add some new primitives and rework existing ones
15162 - BUG: buffers: don't return a negative value on buffer_total_space_res()
15163 - MINOR: buffers: make buffer_pointer() support negative pointers too
15164 - CLEANUP: kill buffer_replace() and use an inline instead
15165 - BUG: tcp: option nolinger does not work on backends
15166 - CLEANUP: ebtree: remove a few annoying signedness warnings
15167 - CLEANUP: ebtree: clarify licence and update to 6.0.6
15168 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
15169 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
15170 - BUG: ebtree: ebst_lookup() could return the wrong entry
15171 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
15172 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
15173 - MINOR: acl: add support for TLS server name matching using SNI
15174 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
15175 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
15176 - MINOR: pattern: export the global temporary pattern
15177 - CLEANUP: patterns: get rid of pattern_data_setstring()
15178 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
15179 - MINOR: acl: include pattern.h to make pattern migration more transparent
15180 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
15181 - MEDIUM: acl: use temp_pattern to store any integer-type information
15182 - MEDIUM: acl: use temp_pattern to store any address-type information
15183 - CLEANUP: acl: integer part of acl_test is not used anymore
15184 - MEDIUM: acl: use temp_pattern to store any string-type information
15185 - CLEANUP: acl: remove last data fields from the acl_test struct
15186 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
15187 - MEDIUM: patterns: the hdr() pattern is now of type string
15188 - DOC: add minimal documentation on how ACLs work internally
15189 - DOC: add a coding-style file
15190 - OPTIM: halog: keep a fast path for the lines-count only
15191 - CLEANUP: silence a warning when building on sparc
15192 - BUG: http: tighten the list of allowed characters in a URI
15193 - MEDIUM: http: block non-ASCII characters in URIs by default
15194 - DOC: add some documentation from RFC3986 about URI format
15195 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
15196 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
15197 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
15198 - MINOR: halog: add some help on the command line
15199 - BUILD: fix build error on FreeBSD
15200 - BUG: fix double free in peers config error path
15201 - MEDIUM: improve config check return codes
15202 - BUILD: make it possible to look for pcre in the default system paths
15203 - MINOR: config: emit a warning when 'default_backend' masks servers
15204 - MINOR: backend: rework the LC definition to support other connection-based algos
15205 - MEDIUM: backend: add the 'first' balancing algorithm
15206 - BUG: fix httplog trailing LF
15207 - MEDIUM: increase chunk-size limit to 2GB-1
15208 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
15209 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
15210 - BUG: checks: fix server maintenance exit sequence
15211 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
15212 - DOC: enumerate valid status codes for "observe layer7"
15213 - MINOR: buffer: switch a number of buffer args to const
15214 - CLEANUP: silence signedness warning in acl.c
15215 - BUG: stream_sock: si->release was not called upon shutw()
15216 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
15217 - BUG/CRITICAL: log: fix risk of crash in development snapshot
15218 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
15219 - MINOR: config: disable header captures in TCP mode and complain
15220
Willy Tarreau60612eb2011-09-10 23:43:11 +0200152212011/09/10 : 1.5-dev7
15222 - [BUG] fix binary stick-tables
15223 - [MINOR] http: *_dom matching header functions now also split on ":"
15224 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
15225 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
15226 - [MINOR] check: add redis check support
15227 - [DOC] small fixes to clearly distinguish between keyword and variables
15228 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
15229 - [DOC] Minor spelling fixes and grammatical enhancements
15230 - [CLEANUP] dumpstats: make symbols static where possible
15231 - [MINOR] Break out dumping table
15232 - [MINOR] Break out processing of clear table
15233 - [MINOR] Allow listing of stick table by key
15234 - [MINOR] Break out all stick table socat command parsing
15235 - [MINOR] More flexible clearing of stick table
15236 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
15237 - [MINOR] Allow showing and clearing by key of integer stick tables
15238 - [MINOR] Allow showing and clearing by key of string stick tables
15239 - [CLEANUP] Remove assigned but unused variables
15240 - [CLEANUP] peers.h: fix declarations
15241 - [CLEANUP] session.c: Make functions static where possible
15242 - [MINOR] Add active connection list to server
15243 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
15244 - [MINOR] Add down termination condition
15245 - [MINOR] Make appsess{,ion}_refresh static
15246 - [MINOR] Add rdp_cookie pattern fetch function
15247 - [CLEANUP] Remove unnecessary casts
15248 - [MINOR] Add non-stick server option
15249 - [MINOR] Consistently use error in tcp_parse_tcp_req()
15250 - [MINOR] Consistently free expr on error in cfg_parse_listen()
15251 - [MINOR] Free rdp_cookie_name on denint()
15252 - [MINOR] Free tcp rules on denint()
15253 - [MINOR] Free stick table pool on denint()
15254 - [MINOR] Free stick rules on denint()
15255 - [MEDIUM] Fix stick-table replication on soft-restart
15256 - [MEDIUM] Correct ipmask() logic
15257 - [MINOR] Correct type in table dump examples
15258 - [MINOR] Fix build error in stream_int_register_handler()
15259 - [MINOR] Use DPRINTF in assign_server()
15260 - [BUG] checks: http-check expect could fail a check on multi-packet responses
15261 - [DOC] fix minor typo in the "dispatch" doc
15262 - [BUG] proto_tcp: fix address binding on remote source
15263 - [MINOR] http: don't report the "haproxy" word on the monitoring response
15264 - [REORG] http: move HTTP error codes back to proto_http.h
15265 - [MINOR] http: make the "HTTP 200" status code configurable.
15266 - [MINOR] http: partially revert the chunking optimization for now
15267 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
15268 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
15269 - [MEDIUM] http: add support for "http-no-delay"
15270 - [OPTIM] http: optimize chunking again in non-interactive mode
15271 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
15272 - [OPTIM] stream_sock: don't use splice on too small payloads
15273 - [MINOR] config: make it possible to specify a cookie even without a server
15274 - [BUG] stats: support url-encoded forms
15275 - [MINOR] config: automatically compute a default fullconn value
15276 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
15277 - [DOC] add missing entry or stick store-response
15278 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
15279 - [BUG] halog: correctly handle truncated last line
15280 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
15281 - [MINOR] halog: add support for HTTP log matching (-H)
15282 - [MINOR] halog: gain back performance before SKIP_CHAR fix
15283 - [OPTIM] halog: cache some common fields positions
15284 - [OPTIM] halog: check once for correct line format and reuse the pointer
15285 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
15286 - [OPTIM] halog: remove support for tab delimiters in input data
15287 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
15288 - [MINOR] session: try to emit a 500 response on memory allocation errors
15289 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
15290 - [BUG] stream_sock: disable listener when system resources are exhausted
15291 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
15292 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
15293 - [MINOR] listeners: add listen_full() to mark a listener full
15294 - [MINOR] listeners: add support for queueing resource limited listeners
15295 - [MEDIUM] listeners: put listeners in queue upon resource shortage
15296 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
15297 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
15298 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
15299 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
15300 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
15301 - [MINOR] proxy: make session rate-limit more accurate
15302 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
15303 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
15304 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
15305 - [MINOR] task: new function task_schedule() to schedule a wake up
15306 - [MAJOR] proxy: finally get rid of maintain_proxies()
15307 - [BUG] proxy: stats frontend and peers were missing many initializers
15308 - [MEDIUM] listeners: add a global listener management task
15309 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
15310 - [DOC] fix typos, "#" is a sharp, not a dash
15311 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
15312 - [MEDIUM] checks: group health checks methods by values and save option bits
15313 - [MINOR] session-counters: add the ability to clear the counters
15314 - [BUG] check: http-check expect + regex would crash in defaults section
15315 - [MEDIUM] http: make x-forwarded-for addition conditional
15316 - [REORG] build: move syscall redefinition to specific places
15317 - [CLEANUP] update the year in the copyright banner
15318 - [BUG] possible crash in 'show table' on stats socket
15319 - [BUG] checks: use the correct destination port for sending checks
15320 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
15321 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
15322 - [DOC] fixed a few "sensible" -> "sensitive" errors
15323 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
15324 - [BUG] http: trailing white spaces must also be trimmed after headers
15325 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
15326 - [MINOR] http: take a capture of too large requests and responses
15327 - [MINOR] http: take a capture of truncated responses
15328 - [MINOR] http: take a capture of bad content-lengths.
15329 - [DOC] add a few old and uncommitted docs
15330 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
15331 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
15332 - [MINOR] halog: support backslash-escaped quotes
15333 - [CLEANUP] remove dirty left-over of a debugging message
15334 - [MEDIUM] stats: disable complex socket reservation for stats socket
15335 - [CLEANUP] remove a useless test in manage_global_listener_queue()
15336 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
15337 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
15338 - [MINOR] stats: report the current and max global connection rates
15339 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
15340 - [BUG] peers: don't pre-allocate 65000 connections to each peer
15341 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
15342 - [BUG] peers: the peer frontend must not emit any log
15343 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
15344 - [BUG] peers: don't keep a peers section which has a NULL frontend
15345 - [BUG] peers: ensure the peers are resumed if they were paused
15346 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
15347 - [MEDIUM] session: make session_shutdown() an independant function
15348 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
15349 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
15350 - [MEDIUM] stats: offer the possibility to kill sessions by server
15351 - [MINOR] halog: do not consider byte 0x8A as end of line
15352 - [MINOR] frontend: ensure debug message length is always initialized
15353 - [OPTIM] halog: make fgets parse more bytes by blocks
15354 - [OPTIM] halog: add assembly version of the field lookup code
15355 - [MEDIUM] poll: add a measurement of idle vs work time
15356 - [CLEANUP] startup: report only the basename in the usage message
15357 - [MINOR] startup: add an option to change to a new directory
15358 - [OPTIM] task: don't scan the run queue if we know it's empty
15359 - [BUILD] stats: stdint is not present on solaris
15360 - [DOC] update the README file to reflect new naming rules for patches
15361 - [MINOR] stats: report the number of requests intercepted by the frontend
15362 - [DOC] update ROADMAP file
15363
Willy Tarreau04df1122011-04-08 00:56:41 +0200153642011/04/08 : 1.5-dev6
15365 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
15366 - [BUG] TCP source tracking was broken with IPv6 changes
15367 - [BUG] stick-tables did not work when converting IPv6 to IPv4
15368 - [CRITICAL] fix risk of crash when dealing with space in response cookies
15369
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200153702011/03/29 : 1.5-dev5
15371 - [BUG] standard: is_addr return value for IPv4 was inverted
15372 - [MINOR] update comment about IPv6 support for server
15373 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
15374 - [DOC] update IPv6 support for bind
15375 - [DOC] document IPv6 support for server
15376 - [DOC] fix a minor typo
15377 - [MEDIUM] IPv6 support for syslog
15378 - [DOC] document IPv6 support for syslog
15379 - [MEDIUM] IPv6 support for stick-tables
15380 - [DOC] document IPv6 support for stick-tables
15381 - [DOC] update ROADMAP file
15382 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
15383 - [MINOR] frontend: add a make_proxy_line function
15384 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
15385 - [MEDIUM] server: add support for the "send-proxy" option
15386 - [DOC] update the spec on the proxy protocol
15387 - [BUILD] proto_tcp: fix build issue with CTTPROXY
15388 - [DOC] update ROADMAP file
15389 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
15390 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
15391 - [BUILD] add the USE_GETADDRINFO build option
15392 - [TESTS] provide a test case for various address formats
15393 - [BUG] session: conn_retries was not always initialized
15394 - [BUG] log: retrieve the target from the session, not the SI
15395 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
15396 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
15397 - [BUG] http: fix content-length handling on 32-bit platforms
15398 - [OPTIM] buffers: uninline buffer_forward()
15399 - [BUG] stream_sock: fix handling for server side PROXY protocol
15400 - [MINOR] acl: add support for table_cnt and table_avl matches
15401 - [DOC] update ROADMAP file
15402
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100154032011/03/13 : 1.5-dev4
15404 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
15405 - [MINOR] unix sockets : inherits the backlog size from the listener
15406 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
15407 - [DOC] fix a minor typo
15408 - [DOC] fix ignore-persist documentation
15409 - [MINOR] add warnings on features not compatible with multi-process mode
15410 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
15411 - [MINOR] stats: add support for several packets in stats admin
15412 - [BUG] stats: admin commands must check the proxy state
15413 - [BUG] stats: admin web interface must check the proxy state
15414 - [MINOR] http: add pattern extraction method to stick on query string parameter
15415 - [MEDIUM] add internal support for IPv6 server addresses
15416 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
15417 - [MINOR] log: add support for passing the forwarded hostname
15418 - [MINOR] log: ability to override the syslog tag
15419 - [MINOR] checks: add PostgreSQL health check
15420 - [DOC] update ROADMAP file
15421 - [BUILD] pattern: use 'int' instead of 'int32_t'
15422 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
15423 - [BUG] debug: report the correct poller list in verbose mode
15424 - [BUG] capture: do not capture a cookie if there is no memory left
15425 - [BUG] appsession: fix possible double free in case of out of memory
15426 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
15427 - [BUG] http: correctly update the header list when removing two consecutive headers
15428 - [BUILD] add the CPU=native and ARCH=32/64 build options
15429 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
15430 - [CLEANUP] hash: move the avalanche hash code globally available
15431 - [MEDIUM] hash: add support for an 'avalanche' hash-type
15432 - [DOC] update roadmap file
15433 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
15434 - [OPTIM] http: don't send each chunk in a separate packet
15435 - [DOC] fix minor typos reported recently in the peers section
15436 - [DOC] fix another typo in the doc
15437 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
15438 - [BUG] http chunking: don't report a parsing error on connection errors
15439 - [BUG] stream_interface: truncate buffers when sending error messages
15440 - [MINOR] http: support wrapping messages in error captures
15441 - [MINOR] http: capture incorrectly chunked message bodies
15442 - [MINOR] stats: add global event ID and count
15443 - [BUG] http: analyser optimizations broke pipelining
15444 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
15445 - [BUG] http: fix incorrect error reporting during data transfers
15446 - [CRITICAL] session: correctly leave turn-around and queue states on abort
15447 - [BUG] session: release slot before processing pending connections
15448 - [MINOR] tcp: add support for dynamic MSS setting
15449 - [BUG] stick-table: correctly terminate string keys during lookups
15450 - [BUG] acl: fix handling of empty lines in pattern files
15451 - [BUG] stick-table: use the private buffer when padding strings
15452 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
15453 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
15454 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
15455 - [REVERT] undo the stick-table string key lookup fixes
15456 - [MINOR] http: improve url_param pattern extraction to ignore empty values
15457 - [BUILD] frontend: shut a warning with TCP_MAXSEG
15458 - [BUG] http: update the header list's tail when removing the last header
15459 - [DOC] fix minor typo in the proxy protocol doc
15460 - [DOC] fix typos (http-request instead of http-check)
15461 - [BUG] http: use correct ACL pointer when evaluating authentication
15462 - [BUG] cfgparse: correctly count one socket per port in ranges
15463 - [BUG] startup: set the rlimits before binding ports, not after.
15464 - [BUG] acl: srv_id must return no match when the server is NULL
15465 - [MINOR] acl: add ability to check for internal response-only parameters
15466 - [MINOR] acl: srv_id is only valid in responses
15467 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
15468 - [BUG] acl: fd leak when reading patterns from file
15469 - [DOC] fix minor typo in "usesrc"
15470 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
15471 - [BUG] http: fix computation of message body length after forwarding has started
15472 - [BUG] http: balance url_param did not work with first parameters on POST
15473 - [TESTS] update the url_param regression test to test check_post too
15474 - [DOC] update ROADMAP
15475 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
15476 - [BUG] config: don't crash on empty pattern files.
15477 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
15478 - [REORG] stream_interface: move the st0, st1 and private members to the applet
15479 - [REORG] stream_interface: split the struct members in 3 parts
15480 - [REORG] session: move client and server address to the stream interface
15481 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
15482 - [MEDIUM] stream_interface: store the target pointer and type
15483 - [CLEANUP] stream_interface: remove the applet.handler pointer
15484 - [MEDIUM] log: take the logged server name from the stream interface
15485 - [CLEANUP] session: remove data_source from struct session
15486 - [CLEANUP] stats: make all dump functions only rely on the stream interface
15487 - [REORG] session: move the data_ctx struct to the stream interface's applet
15488 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
15489 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
15490 - [MINOR] session: add a pointer to the new target into the session
15491 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
15492 - [CLEANUP] stream_interface: use inline functions to manipulate targets
15493 - [MAJOR] session: remove the ->srv pointer from struct session
15494 - [MEDIUM] stats: split frontend and backend stats
15495 - [MEDIUM] http: always evaluate http-request rules before stats http-request
15496 - [REORG] http: move the http-request rules to proto_http
15497 - [BUG] http: stats were not incremented on http-request deny
15498 - [MINOR] checks: report it if checks fail due to socket creation error
15499
Willy Tarreau442e8342010-11-11 23:29:35 +0100155002010/11/11 : 1.5-dev3
15501 - [DOC] fix http-request documentation
15502 - [MEDIUM] enable/disable servers from the stats web interface
15503 - [MEDIUM] stats: add an admin level
15504 - [DOC] stats: document the "stats admin" statement
15505 - [MINOR] startup: print the proxy socket which caused an error
15506 - [CLEANUP] Remove unneeded chars allocation
15507 - [MINOR] config: detect options not supported due to compilation options
15508 - [MINOR] Add pattern's fetchs payload and payload_lv
15509 - [MINOR] frontend: improve accept-proxy header parsing
15510 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
15511 - [MEDIUM] Enhance message errors management on binds
15512 - [MINOR] Manage unix socket source field on logs
15513 - [MINOR] Manage unix socket source field on session dump on sock stats
15514 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
15515 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
15516 - [MINOR] Manage socket type unix for some logs
15517 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
15518 - [MINOR] Support listener's sockets unix on http logs.
15519 - [MEDIUM] Add supports of bind on unix sockets.
15520 - [BUG] stick table purge failure if size less than 255
15521 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
15522 - [MEDIUM] Implement tcp inspect response rules
15523 - [DOC] tcp-response content and inspect
15524 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
15525 - [DOC] acls rep_ssl_hello and req_ssl_hello
15526 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
15527 - [DOC] new type binary in stick-table
15528 - [DOC] stick store-response and new patterns payload and payload_lv
15529 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
15530 - [MEDIUM] Create updates tree on stick table to manage sync.
15531 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
15532 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
15533 - [MEDIUM] Manage soft stop on peers proxy
15534 - [DOC] add documentation for peers section
15535 - [MINOR] checks: add support for LDAPv3 health checks
15536 - [MINOR] add better support to "mysql-check"
15537 - [BUG] Restore info about available active/backup servers
15538 - [CONTRIB] Update haproxy.pl
15539 - [CONTRIB] Update Cacti Tempates
15540 - [CONTRIB] add templates for Cacti.
15541 - [BUG] http: don't consider commas as a header delimitor within quotes
15542 - [MINOR] support a global jobs counter
15543 - [DOC] add a summary about cookie incompatibilities between specs and browsers
15544 - [DOC] fix description of cookie "insert" and "indirect" modes
15545 - [MEDIUM] http: fix space handling in the request cookie parser
15546 - [MEDIUM] http: fix space handling in the response cookie parser
15547 - [DOC] fix typo in the queue() definition (backend, not frontend)
15548 - [BUG] deinit: unbind listeners before freeing them
15549 - [BUG] stream_interface: only call si->release when both dirs are closed
15550 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
15551 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
15552 - [MINOR] halog: add '-tc' to sort by termination codes
15553 - [MINOR] halog: skip non-traffic logs for -st and -tc
15554 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
15555 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
15556 - [DOC] bind option is "defer-accept", not "defer_accept"
15557 - [DOC] missing index entry for http-check send-state
15558 - [DOC] tcp-request inspect-delay is for backends too
15559 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
15560 - [BUG] stream_sock: try to flush any extra pending request data after a POST
15561 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
15562 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
15563 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
15564 - [MEDIUM] checks: add support for HTTP contents lookup
15565 - [TESTS] add test-check-expect to test various http-check methods
15566 - [MINOR] global: add "tune.chksize" to change the default check buffer size
15567 - [MINOR] cookie: add options "maxidle" and "maxlife"
15568 - [MEDIUM] cookie: support client cookies with some contents appended to their value
15569 - [MINOR] http: make some room in the transaction flags to extend cookies
15570 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
15571 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
15572 - [MINOR] add encode/decode function for 30-bit integers from/to base64
15573 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
15574 - [MEDIUM] cookie: set the date in the cookie if needed
15575 - [DOC] document the cookie maxidle and maxlife parameters
15576 - [BUG] checks: don't log backend down for all zero-weight servers
15577 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
15578 - [BUG] config: report correct keywords for "observe"
15579 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
15580 - [MINOR] acl: add the http_req_first match
15581 - [DOC] fix typos about bind-process syntax
15582 - [BUG] cookie: correctly unset default cookie parameters
15583 - [MINOR] cookie: add support for the "preserve" option
15584 - [BUG] ebtree: fix duplicate strings insertion
15585 - [CONTRIB] halog: report per-url counts, errors and times
15586 - [CONTRIB] halog: minor speed improvement in timer parser
15587 - [MINOR] buffers: add a new request analyser flag for PROXY mode
15588 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
15589 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
15590 - [MINOR] standard: change arg type from const char* to char*
15591 - [MINOR] frontend: add a new analyser to parse a proxied connection
15592 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
15593 - [DOC] add the proxy protocol's specifications
15594 - [DOC] document the 'accept-proxy' bind option
15595 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
15596 - [DOC] add references to unix socket handling
15597 - [MINOR] move MAXPATHLEN definition to compat.h
15598 - [MEDIUM] unix sockets: cleanup the error reporting path
15599 - [BUG] session: don't stop forwarding of data upon last packet
15600 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
15601 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
15602 - [BUG] accept: don't close twice upon error
15603 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
15604 - [OPTIM] stream_sock: don't clear FDs that are already cleared
15605 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
15606
Willy Tarreau37242fa2010-08-28 19:21:00 +0200156072010/08/28 : 1.5-dev2
15608 - [MINOR] startup: release unused structs after forking
15609 - [MINOR] startup: don't wait for nothing when no old pid remains
15610 - [CLEANUP] reference product branch 1.5
15611 - [MEDIUM] signals: add support for registering functions and tasks
15612 - [MEDIUM] signals: support redistribution of signal zero when stopping
15613 - [BUG] http: don't set auto_close if more data are expected
15614
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200156152010/08/25 : 1.5-dev1
15616 - [BUG] stats: session rate limit gets garbaged in the stats
15617 - [DOC] mention 'option http-server-close' effect in Tq section
15618 - [DOC] summarize and highlight persistent connections behaviour
15619 - [DOC] add configuration samples
15620 - [BUG] http: dispatch and http_proxy modes were broken for a long time
15621 - [BUG] http: the transaction must be initialized even in TCP mode
15622 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
15623 - [BUG] consistent hash: balance on all servers, not only 2 !
15624 - [CONTRIB] halog: report per-server status codes, errors and response times
15625 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
15626 - [BUG] client: always ensure to zero rep->analysers
15627 - [BUG] session: clear BF_READ_ATTACHED before next I/O
15628 - [BUG] http: automatically close response if req is aborted
15629 - [BUG] proxy: connection rate limiting was eating lots of CPU
15630 - [BUG] http: report correct flags in case of client aborts during body
15631 - [TESTS] refine non-regression tests and add 4 new tests
15632 - [BUG] debug: wrong pointer was used to report a status line
15633 - [BUG] debug: correctly report truncated messages
15634 - [DOC] document the "dispatch" keyword
15635 - [BUG] stick_table: fix possible memory leak in case of connection error
15636 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
15637 - [MINOR] accept: count the incoming connection earlier
15638 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
15639 - [CLEANUP] client: move some ACLs away to their respective locations
15640 - [CLEANUP] rename client -> frontend
15641 - [MEDIUM] separate protocol-level accept() from the frontend's
15642 - [MINOR] proxy: add a list to hold future layer 4 rules
15643 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
15644 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
15645 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
15646 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
15647 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
15648 - [CLEANUP] buffer->cto is not used anymore
15649 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
15650 - [MEDIUM] session: initialize server-side timeouts after connect()
15651 - [MEDIUM] backend: initialize the server stream_interface upon connect()
15652 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
15653 - [MEDIUM] session: move the conn_retries attribute to the stream interface
15654 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
15655 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
15656 - [MAJOR] frontend: reorder the session initialization upon accept
15657 - [MINOR] proxy: add an accept() callback for the application layer
15658 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
15659 - [MEDIUM] stats: rely on the standard session_accept() function
15660 - [MINOR] buffer: refine the flags that may wake an analyser up.
15661 - [MINOR] stream_sock: don't dereference a non-existing frontend
15662 - [MINOR] session: differenciate between accepted connections and received connections
15663 - [MEDIUM] frontend: count the incoming connection earlier
15664 - [MINOR] frontend: count denied TCP requests separately
15665 - [CLEANUP] stick_table: add/clarify some comments
15666 - [BUILD] memory: add a few missing parenthesis to the pool management macros
15667 - [MINOR] stick_table: add support for variable-sized data
15668 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
15669 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
15670 - [MEDIUM] stick_table: add room for extra data types
15671 - [MINOR] stick_table: add support for "conn_cum" data type.
15672 - [MEDIUM] stick_table: don't overwrite data when storing an entry
15673 - [MINOR] config: initialize stick tables after all the parsing
15674 - [MINOR] stick_table: provide functions to return stksess data from a type
15675 - [MEDIUM] stick_table: move the server ID to a generic data type
15676 - [MINOR] stick_table: enable it for frontends too
15677 - [MINOR] stick_table: export the stick_table_key
15678 - [MINOR] tcp: add per-source connection rate limiting
15679 - [MEDIUM] stick_table: separate storage and update of session entries
15680 - [MEDIUM] stick-tables: add a reference counter to each entry
15681 - [MINOR] session: add a pointer to the tracked counters for the source
15682 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
15683 - [BUG] config: report the correct proxy type in tcp-request errors
15684 - [MINOR] config: provide a function to quote args in a more friendly way
15685 - [BUG] stick_table: the fix for the memory leak caused a regression
15686 - [MEDIUM] backend: support servers on 0.0.0.0
15687 - [BUG] stick-table: correctly refresh expiration timers
15688 - [MEDIUM] stream-interface: add a ->release callback
15689 - [MINOR] proxy: add a "parent" member to the structure
15690 - [MEDIUM] session: make it possible to call an I/O handler on both SI
15691 - [MINOR] tools: add a fast div64_32 function
15692 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
15693 - [MINOR] errors: provide new status codes for config parsing functions
15694 - [BUG] http: denied requests must not be counted as denied resps in listeners
15695 - [MINOR] tools: add a get_std_op() function to parse operators
15696 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
15697 - [MAJOR] stream_sock: better wakeup conditions on read()
15698 - [BUG] session: analysers must be checked when SI state changes
15699 - [MINOR] http: reset analysers to listener's, not frontend's
15700 - [MEDIUM] session: support "tcp-request content" rules in backends
15701 - [BUILD] always match official tags when doing git-tar
15702 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
15703 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
15704 - [MINOR] tcp: src_count acl does not have a permanent result
15705 - [MAJOR] session: add track-counters to track counters related to the session
15706 - [MINOR] stick-table: provide a table lookup function
15707 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
15708 - [MEDIUM] session: move counter ACL fetches from proto_tcp
15709 - [MEDIUM] session: add concurrent connections counter
15710 - [MEDIUM] session: add data in and out volume counters
15711 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
15712 - [MEDIUM] session-counters: automatically update tracked connection count
15713 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
15714 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
15715 - [MEDIUM] session: add a counter on the cumulated number of sessions
15716 - [MINOR] config: support a comma-separated list of store data types in stick-table
15717 - [MEDIUM] stick-tables: add support for arguments to data_types
15718 - [MEDIUM] stick-tables: add stored data argument type checking
15719 - [MEDIUM] session counters: add conn_rate and sess_rate counters
15720 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
15721 - [MINOR] stktable: add a stktable_update_key() function
15722 - [MINOR] session-counters: add a general purpose counter (gpc0)
15723 - [MEDIUM] session-counters: add HTTP req/err tracking
15724 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
15725 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
15726 - [CLEANUP] stick-table: declare stktable_data_types as extern
15727 - [MEDIUM] stick-table: make use of generic types for stored data
15728 - [MINOR] stats: correctly report errors on "show table" and "clear table"
15729 - [MEDIUM] stats: add the ability to dump table entries matching criteria
15730 - [DOC] configuration: document all the new tracked counters
15731 - [DOC] stats: document "show table" and "clear table"
15732 - [MAJOR] session-counters: split FE and BE track counters
15733 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
15734 - [MEDIUM] session counters: automatically remove expired entries.
15735 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
15736 - [MEDIUM] session-counters: make it possible to count connections from frontend
15737 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
15738 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
15739 - [CLEANUP] stats: use stksess_kill() to remove table entries
15740 - [DOC] update the references to session counters and to tcp-request connection
15741 - [DOC] cleanup: split a few long lines
15742 - [MEDIUM] http: forward client's close when abortonclose is set
15743 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
15744 - [BUG] stats: global stats timeout may be specified before stats socket.
15745 - [BUG] conf: add tcp-request content rules to the correct list
15746
Willy Tarreau21475e32010-05-23 08:46:08 +0200157472010/05/23 : 1.5-dev0
15748 - exact copy of 1.4.6
15749
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200157502010/05/16 : 1.4.6
15751 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
15752 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
15753 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
15754 - [DOC] add a few precisions about the use of RDP cookies
15755
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200157562010/05/13 : 1.4.5
15757 - [DOC] report minimum kernel version for tproxy in the Makefile
15758 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
15759 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
15760 - [DOC] fix ignore-persist/force-persist documentation
15761 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
15762 - [DOC] doc/configuration.txt: fix typos
15763 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
15764 - [MINOR] fix possible crash in debug mode with invalid responses
15765 - [MINOR] halog: add support for statisticts on status codes
15766 - [OPTIM] halog: use a faster zero test in fgets()
15767 - [OPTIM] halog: minor speedup by using unlikely()
15768 - [OPTIM] halog: speed up fgets2-64 by about 10%
15769 - [DOC] refresh the README file and merge the CONTRIB file into it
15770 - [MINOR] acl: support loading values from files
15771 - [MEDIUM] ebtree: upgrade to version 6.0
15772 - [MINOR] acl trees: add flags and union members to store values in trees
15773 - [MEDIUM] acl: add ability to insert patterns in trees
15774 - [MEDIUM] acl: add tree-based lookups of exact strings
15775 - [MEDIUM] acl: add tree-based lookups of networks
15776 - [MINOR] acl: ignore empty lines and comments in pattern files
15777 - [MINOR] stick-tables: add support for "stick on hdr"
15778
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200157792010/04/07 : 1.4.4
15780 - [BUG] appsession should match the whole cookie name
15781 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
15782 - [MEDIUM] backend: move the transparent proxy address selection to backend
15783 - [MINOR] add very fast IP parsing functions
15784 - [MINOR] add new tproxy flags for dynamic source address binding
15785 - [MEDIUM] add ability to connect to a server from an IP found in a header
15786 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
15787 - [MINOR] http: make it possible to pretend keep-alive when doing close
15788 - [MINOR] config: report "default-server" instead of "(null)" in error messages
15789
Willy Tarreau75934a12010-03-30 09:50:08 +0200157902010/03/30 : 1.4.3
15791 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
15792 - [MEDIUM] session: better fix for connection to servers with closed input
15793 - [DOC] indicate in the doc how to bind to port ranges
15794 - [BUG] backend: L7 hashing must not be performed on incomplete requests
15795 - [TESTS] add a simple program to test connection resets
15796 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
15797 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
15798 - [MINOR] config: allow "slowstart 0s"
15799 - [BUILD] 'make tags' did not consider files ending in '.c'
15800 - [MINOR] checks: add the ability to disable a server in the config
15801
Willy Tarreauda618cb2010-03-17 23:41:57 +0100158022010/03/17 : 1.4.2
15803 - [CLEANUP] product branch update
15804 - [DOC] Some more documentation cleanups
15805 - [BUG] clf logs segfault when capturing a non existant header
15806 - [OPTIM] config: only allocate check buffer when checks are enabled
15807 - [MEDIUM] checks: support multi-packet health check responses
15808 - [CLEANUP] session: remove duplicate test
15809 - [BUG] http: don't wait for response data to leave buffer is client has left
15810 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
15811 - [MINOR] stats: don't send empty lines in "show errors"
15812 - [MINOR] stats: make the data dump function reusable for other purposes
15813 - [MINOR] stats socket: add show sess <id> to dump details about a session
15814 - [BUG] stats: connection reset counters must be plain ascii, not HTML
15815 - [BUG] url_param hash may return a down server
15816 - [MINOR] force null-termination of hostname
15817 - [MEDIUM] connect to servers even when the input has already been closed
15818 - [BUG] don't merge anonymous ACLs !
15819 - [BUG] config: fix endless loop when parsing "on-error"
15820 - [MINOR] http: don't mark a server as failed when it returns 501/505
15821 - [OPTIM] checks: try to detect the end of response without polling again
15822 - [BUG] checks: don't report an error when recv() returns an error after data
15823 - [BUG] checks: don't abort when second poll returns an error
15824 - [MINOR] checks: make shutdown() silently fail
15825 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
15826 - [BUG] init: unconditionally catch SIGPIPE
15827 - [BUG] checks: don't wait for a close to start parsing the response
15828
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100158292010/03/04 : 1.4.1
15830 - [BUG] Clear-cookie path issue
15831 - [DOC] fix typo on stickiness rules
15832 - [BUILD] fix BSD and OSX makefiles for missing files
15833 - [BUILD] includes order breaks OpenBSD build
15834 - [BUILD] fix some build warnings on Solaris with is* macros
15835 - [BUG] logs: don't report "last data" when we have just closed after an error
15836 - [BUG] logs: don't report "proxy request" when server closes early
15837 - [BUILD] fix platform-dependant build issues related to crypt()
15838 - [STATS] count transfer aborts caused by client and by server
15839 - [STATS] frontend requests were not accounted for failed requests
15840 - [MINOR] report total number of processed connections when stopping a proxy
15841 - [DOC] be more clear about the limitation to one single monitor-net entry
15842
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100158432010/02/26 : 1.4.0
15844 - [MINOR] stats: report maint state for tracking servers too
15845 - [DOC] fix summary to add pattern extraction
15846 - [DOC] Documentation cleanups
15847 - [BUG] cfgparse memory leak and missing free calls in deinit()
15848 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
15849 - [EXAMPLES] add auth.cfg
15850 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
15851 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
15852 - [BUILD] auth: don't use unnamed unions
15853 - [BUG] config: report unresolvable host names as errors
15854 - [BUILD] fix build breakage with DEBUG_FULL
15855 - [DOC] fix a typo about timeout check and clarify the explanation.
15856 - [MEDIUM] http: don't use trash to realign large buffers
15857 - [STATS] report HTTP requests (total and rate) in frontends
15858 - [STATS] separate frontend and backend HTTP stats
15859 - [MEDIUM] http: revert to use a swap buffer for realignment
15860 - [MINOR] stats: report the request rate in frontends as cell titles
15861 - [MINOR] stats: mark areas with an underline when tooltips are available
15862 - [DOC] reorder some entries to maintain the alphabetical order
15863 - [DOC] cleanup of the keyword matrix
15864
Willy Tarreaub05613d2010-02-02 10:18:28 +0100158652010/02/02 : 1.4-rc1
15866 - [MEDIUM] add a maintenance mode to servers
15867 - [MINOR] http-auth: last fix was wrong
15868 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
15869 - [MINOR] Base64 decode
15870 - [MINOR] generic auth support with groups and encrypted passwords
15871 - [MINOR] add ACL_TEST_F_NULL_MATCH
15872 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
15873 - [MINOR] acl: add http_auth and http_auth_group
15874 - [MAJOR] use the new auth framework for http stats
15875 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
15876 - [STATS] make it possible to change a CLI connection timeout
15877 - [BUG] patterns: copy-paste typo in type conversion arguments
15878 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
15879 - [MINOR] standard: str2mask: string to netmask converter
15880 - [MINOR] pattern: add support for argument parsers for converters
15881 - [MINOR] pattern: add the "ipmask()" converting function
15882 - [MINOR] config: off-by-one in "stick-table" after list of converters
15883 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
15884 - [BUG] restore accidentely removed line in last patch !
15885 - [MINOR] checks: make the HTTP check code add the CRLF itself
15886 - [MINOR] checks: add the server's status in the checks
15887 - [BUILD] halog: make without arch-specific optimizations
15888 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
15889 - [MINOR] http: disable keep-alive when process is going down
15890 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
15891 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
15892 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
15893 - [MINOR] prepare req_*/rsp_* to receive a condition
15894 - [CLEANUP] config: specify correct const char types to warnif_* functions
15895 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
15896 - [MEDIUM] http: make the request filter loop check for optional conditions
15897 - [MEDIUM] http: add support for conditional request filter execution
15898 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
15899 - [MEDIUM] http: add support for conditional request header addition
15900 - [MEDIUM] http: add support for conditional response header rewriting
15901 - [DOC] add some missing ACLs about response header matching
15902 - [MEDIUM] http: add support for proxy authentication
15903 - [MINOR] http-auth: make the 'unless' keyword work as expected
15904 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
15905 - [MEDIUM] add support for anonymous ACLs
15906 - [MEDIUM] http: switch to tunnel mode after status 101 responses
15907 - [MEDIUM] http: stricter processing of the CONNECT method
15908 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
15909 - [MINOR] config: fix too large ssl-hello-check message.
15910 - [BUG] fix error response in case of server error
15911
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100159122010/01/25 : 1.4-dev8
15913 - [CLEANUP] Keep in sync "defaults" support between documentation and code
15914 - [MEDIUM] http: add support for Proxy-Connection header
15915 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
15916 - [MINOR] http: remove a copy-paste typo in transaction cleaning
15917 - [BUG] http: trim any excess buffer data when recycling a connection
15918
Willy Tarreau6939b552010-01-25 01:54:37 +0100159192010/01/25 : 1.4-dev7
15920 - [BUG] appsession: possible memory leak in case of out of memory condition
15921 - [MINOR] config: don't accept 'appsession' in defaults section
15922 - [MINOR] Add function to parse a size in configuration
15923 - [MEDIUM] Add stick table (persistence) management functions and types
15924 - [MEDIUM] Add pattern fetch management types and functions
15925 - [MEDIUM] Add src dst and dport pattern fetches.
15926 - [MEDIUM] Add stick table configuration and init.
15927 - [MEDIUM] Add stick and store rules analysers.
15928 - [MINOR] add option "mysql-check" to use MySQL health checks
15929 - [BUG] health checks: fix requeued message
15930 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
15931 - [BUG] checks: fix newline termination
15932 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
15933 - [BUG] appsession's sessid must be reset at end of transaction
15934 - [BUILD] appsession did not build anymore under gcc-2.95
15935 - [BUG] server redirection used an uninitialized string.
15936 - [MEDIUM] http: fix handling of message pointers
15937 - [MINOR] http: fix double slash prefix with server redirect
15938 - [MINOR] http redirect: add the ability to append a '/' to the URL
15939 - [BUG] stream_interface: fix retnclose and remove cond_close
15940 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
15941 - [MINOR] http: move appsession 'sessid' from session to http_txn
15942 - [OPTIM] reorder http_txn to optimize cache lines placement
15943 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
15944 - [MINOR] http: add a separate "http-keep-alive" timeout
15945 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
15946 - [DOC] fix various too large lines
15947 - [DOC] remove several trailing spaces
15948 - [DOC] add the doc about stickiness
15949 - [BUILD] remove a warning in standard.h on AIX
15950 - [BUG] checks: chars are unsigned on AIX, check was always true
15951 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
15952 - [BUG] check: we must not check for error before reading a response
15953 - [BUG] buffers: remove remains of wrong obsolete length check
15954 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
15955 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
15956 - [MEDIUM] http: don't switch to tunnel mode upon close
15957 - [DOC] add documentation about connection header processing
15958 - [MINOR] http: add http_remove_header2() to remove a header value.
15959 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
15960 - [MAJOR] http: rework request Connection header handling
15961 - [MAJOR] http: rework response Connection header handling
15962 - [MINOR] add the ability to force kernel socket buffer size.
15963 - [BUG] http_server_error() must not purge a previous pending response
15964 - [OPTIM] http: don't delay response if next request is incomplete
15965 - [MINOR] add the "force-persist" statement to force persistence on down servers
15966 - [MINOR] http: logs must report persistent connections to down servers
15967 - [BUG] buffer_replace2 must never change the ->w entry
15968
Willy Tarreau11f8f542010-01-08 07:49:44 +0100159692010/01/08 : 1.4-dev6
15970 - [BUILD] warning in stream_interface.h
15971 - [BUILD] warning ultoa_r returns char *
15972 - [MINOR] hana: only report stats if it is enabled
15973 - [MINOR] stats: add "a link" & "a href" for sockets
15974 - [MINOR]: stats: add show-legends to report additional informations
15975 - [MEDIUM] default-server support
15976 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
15977 - [MINOR] stats: add href to tracked server
15978 - [BUG] stats: show UP/DOWN status also in tracking servers
15979 - [DOC] Restore ability to search a keyword at the beginning of a line
15980 - [BUG] stats: cookie should be reported under backend not under proxy
15981 - [BUG] cfgparser/stats: fix error message
15982 - [BUG] http: disable auto-closing during chunk analysis
15983 - [BUG] http: fix hopefully last closing issue on data forwarding
15984 - [DEBUG] add an http_silent_debug function to debug HTTP states
15985 - [MAJOR] http: fix again the forward analysers
15986 - [BUG] http_process_res_common() must not skip the forward analyser
15987 - [BUG] http: some possible missed close remain in the forward chain
15988 - [BUG] http: redirect needed to be updated after recent changes
15989 - [BUG] http: don't set no-linger on response in case of forced close
15990 - [MEDIUM] http: restore the original behaviour of option httpclose
15991 - [TESTS] add a file to test various connection modes
15992 - [BUG] http: check options before the connection header
15993 - [MAJOR] session: fix the order by which the analysers are run
15994 - [MEDIUM] session: also consider request analysers added during response
15995 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
15996 - [BUG] http: memory leak with captures when using keep-alive
15997 - [BUG] http: fix for capture memory leak was incorrect
15998 - [MINOR] http redirect: use proper call to return last response
15999 - [MEDIUM] http: wait for some flush of the response buffer before a new request
16000 - [MEDIUM] session: limit the number of analyser loops
16001
Willy Tarreau1f445892010-01-03 23:23:36 +0100160022010/01/03 : 1.4-dev5
16003 - [MINOR] server tracking: don't care about the tracked server's mode
16004 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
16005 - [MEDIUM] appsession: add the "request-learn" option
16006 - [BUG] Configuration parser bug when escaping characters
16007 - [MINOR] CSS & HTML fun
16008 - [MINOR] Collect & provide http response codes received from servers
16009 - [BUG] Fix silly typo: hspr_other -> hrsp_other
16010 - [MINOR] Add "a name" to stats page
16011 - [MINOR] add additional "a href"s to stats page
16012 - [MINOR] Collect & provide http response codes for frontends, fix backends
16013 - [DOC] some small spell fixes and unifications
16014 - [MEDIUM] Decrease server health based on http responses / events, version 3
16015 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
16016 - [BUG] config: fix erroneous check on cookie domain names, again
16017 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
16018 - [DOC] trivial fix for man page
16019 - [MINOR] config: report all supported options for the "bind" keyword
16020 - [MINOR] tcp: add support for the defer_accept bind option
16021 - [MINOR] unix socket: report the socket path in case of bind error
16022 - [CONTRIB] halog: support searching by response time
16023 - [DOC] add a reminder about obsolete documents
16024 - [DOC] point to 1.4 doc, not 1.3
16025 - [DOC] option tcp-smart-connect was missing from index
16026 - [MINOR] http: detect connection: close earlier
16027 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
16028 - [OPTIM] move some rarely used fields out of fdtab
16029 - [MEDIUM] fd: merge fd_list into fdtab
16030 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
16031 - [MINOR] http: add new transaction flags for keep-alive and content-length
16032 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
16033 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
16034 - [MINOR] http request: simplify the test of no-data
16035 - [MEDIUM] http request: simplify POST length detection
16036 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
16037 - [MAJOR] http: create the analyser which waits for a response
16038 - [MINOR] http: pre-set the persistent flags in the transaction
16039 - [MEDIUM] http response: check body length and set transaction flags
16040 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
16041 - [MINOR] http: remove the last call to stream_int_return
16042 - [IMPORT] import ebtree v5.0 into directory ebtree/
16043 - [MEDIUM] build: switch ebtree users to use new ebtree version
16044 - [CLEANUP] ebtree: remove old unused files
16045 - [BUG] definitely fix regparm issues between haproxy core and ebtree
16046 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
16047 - [BUILD] missing #ifndef in ebmbtree.h
16048 - [BUILD] missing #ifndef in ebsttree.h
16049 - [MINOR] tools: add hex2i() function to convert hex char to int
16050 - [MINOR] http: create new MSG_BODY sub-states
16051 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
16052 - [DOC] option is "defer-accept", not "defer_accept"
16053 - [MINOR] http: keep pointer to beginning of data
16054 - [BUG] x-original-to: name was not set in default instance
16055 - [MINOR] http: detect tunnel mode and set it in the session
16056 - [BUG] config: fix error message when config file is not found
16057 - [BUG] config: fix wrong handling of too large argument count
16058 - [BUG] config: disable 'option httplog' on TCP proxies
16059 - [BUG] config: fix erroneous check on cookie domain names
16060 - [BUG] config: cookie domain was ignored in defaults sections
16061 - [MINOR] config: support passing multiple "domain" statements to cookies
16062 - [MINOR] ebtree: add functions to lookup non-null terminated strings
16063 - [MINOR] config: don't report error on all subsequent files on failure
16064 - [BUG] second fix for the printf format warning
16065 - [BUG] check_post: limit analysis to the buffer length
16066 - [MEDIUM] http: process request body in a specific analyser
16067 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
16068 - [MAJOR] http: completely process the "connection" header
16069 - [MINOR] http: only consider chunk encoding with HTTP/1.1
16070 - [MAJOR] buffers: automatically compute the maximum buffer length
16071 - [MINOR] http: move the http transaction init/cleanup code to proto_http
16072 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
16073 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
16074 - [MEDIUM] http: rework chunk-size parser
16075 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
16076 - [MINOR] buffers: add buffer_ignore() to skip some bytes
16077 - [BUG] http: offsets are relative to the buffer, not to ->som
16078 - [MEDIUM] http: automatically re-aling request buffer
16079 - [BUG] http: body parsing must consider the start of message
16080 - [MINOR] new function stream_int_cond_close()
16081 - [MAJOR] http: implement body parser
16082 - [BUG] http: typos on several unlikely() around header insertion
16083 - [BUG] stream_sock: wrong max computation on recv
16084 - [MEDIUM] http: rework the buffer alignment logic
16085 - [BUG] buffers: wrong size calculation for displaced data
16086 - [MINOR] stream_sock: prepare for closing when all pending data are sent
16087 - [MEDIUM] http: add two more states for the closing period
16088 - [MEDIUM] http: properly handle "option forceclose"
16089 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
16090 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
16091 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
16092 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
16093 - [MINOR] config: option forceclose is valid in frontends too
16094 - [BUILD] halog: insufficient include path in makefile
16095 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
16096 - [MEDIUM] http: make the parsers able to wait for a buffer flush
16097 - [MAJOR] http: add support for option http-server-close
16098 - [BUG] http: ensure we abort data transfer on write error
16099 - [BUG] last fix was overzealous and disabled server-close
16100 - [BUG] http: fix erroneous trailers size computation
16101 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
16102 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
16103 - [BUG] http: redirects were broken by chunk changes
16104 - [BUG] http: the request URI pointer is relative to the buffer
16105 - [OPTIM] http: don't immediately enable reading on request
16106 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
16107 - [BUG] http: take care of errors, timeouts and aborts during the data phase
16108 - [MINOR] http: don't wait for sending requests to the server
16109 - [MINOR] http: make the conditional redirect support keep-alive
16110 - [BUG] http: fix cookie parser to support spaces and commas in values
16111 - [MINOR] config: some options were missing for "redirect"
16112 - [MINOR] redirect: add support for unconditional rules
16113 - [MINOR] config: centralize proxy struct initialization
16114 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
16115 - [MEDIUM] config: remove the limitation of 10 config files
16116 - [CLEANUP] http: remove a remaining impossible condition
16117 - [OPTIM] http: optimize a bit the construct of the forward loops
16118
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200161192009/10/12 : 1.4-dev4
16120 - [DOC] add missing rate_lim and rate_max
16121 - [MAJOR] struct chunk rework
16122 - [MEDIUM] Health check reporting code rework + health logging, v3
16123 - [BUG] check if rise/fall has an argument and it is > 0
16124 - [MINOR] health checks logging unification
16125 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
16126 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
16127 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
16128 - [MINOR] Introduce include/types/counters.h
16129 - [CLEANUP] Move counters to dedicated structures
16130 - [MINOR] Add "clear counters" to clear statistics counters
16131 - [MEDIUM] Collect & provide separate statistics for sockets, v2
16132 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
16133 - [MINOR] acl: don't report valid acls as potential mistakes
16134 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
16135 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
16136 - [MINOR] Capture & display more data from health checks, v2
16137 - [BUG] task.c: don't assing last_timer to node-less entries
16138 - [BUG] http stats: large outputs sometimes got some parts chopped off
16139 - [MINOR] backend: export some functions to recount servers
16140 - [MINOR] backend: uninline some LB functions
16141 - [MINOR] include time.h from freq_ctr.h as is uses "now".
16142 - [CLEANUP] backend: move LB algos to individual files
16143 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
16144 - [CLEANUP] proxy: move last lb-specific bits to their respective files
16145 - [MINOR] backend: separate declarations of LB algos from their lookup method
16146 - [MINOR] backend: reorganize the LB algorithm selection
16147 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
16148 - [MINOR] report list of supported pollers with -vv
16149 - [DOC] log-health-checks is an option, not a directive
16150 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
16151 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
16152 - [MINOR] stats: strip CR and LF from the input command line
16153 - [BUG] don't refresh timeouts late after detected activity
16154 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
16155 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
16156 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
16157 - [MEDIUM] stats: don't use s->ana_state anymore
16158 - [MINOR] remove now obsolete ana_state from the session struct
16159 - [MEDIUM] stats: make HTTP stats use an I/O handler
16160 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
16161 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
16162 - [MINOR] config: reference file and line with any listener/proxy/server declaration
16163 - [MINOR] config: report places of duplicate names or IDs
16164 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
16165 - [MINOR] tools: add a new get_next_id() function
16166 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
16167 - [OPTIM] counters: move some max numbers to the counters struct
16168 - [BUG] counters: fix segfault on missing counters for a listener
16169 - [MEDIUM] backend: implement consistent hashing variation
16170 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
16171 - [MINOR] stats: use 'clear counters all' to clear all values
16172 - [MEDIUM] add access restrictions to the stats socket
16173 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
16174 - [MINOR] proxy: provide function to retrieve backend/server pointers
16175 - [MINOR] add the "initial weight" to the server struct.
16176 - [MEDIUM] stats: add the "get weight" command to report a server's weight
16177 - [MEDIUM] stats: add the "set weight" command
16178 - [BUILD] add a 'make tags' target
16179 - [MINOR] stats: add support for numeric IDs in set weight/get weight
16180 - [MINOR] stats: use a dedicated state to output static data
16181 - [OPTIM] stats: check free space before trying to print
16182
Willy Tarreau9f389e02009-09-24 00:12:50 +0200161832009/09/24 : 1.4-dev3
16184 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
16185 - [MEDIUM] Collect & show information about last health check, v3
16186 - [MINOR] export the hostname variable so that all the code can access it
16187 - [MINOR] stats: add a new node-name setting
16188 - [MEDIUM] remove old experimental tcpsplice option
16189 - [BUILD] fix build for systems without SOL_TCP
16190 - [MEDIUM] move connection establishment from backend to the SI.
16191 - [MEDIUM] make the global stats socket part of a frontend
16192 - [MEDIUM] session: account per-listener connections
16193 - [MINOR] session: switch to established state if no connect function
16194 - [MEDIUM] make the unix stats sockets use the generic session handler
16195 - [CLEANUP] unix: remove uxst_process_session()
16196 - [CLEANUP] move remaining stats sockets code to dumpstats
16197 - [MINOR] move the initial task's nice value to the listener
16198 - [MINOR] cleanup set_session_backend by using pre-computed analysers
16199 - [MINOR] set s->srv_error according to the analysers
16200 - [MEDIUM] set rep->analysers from fe and be analysers
16201 - [MEDIUM] replace BUFSIZE with buf->size in computations
16202 - [MEDIUM] make it possible to change the buffer size in the configuration
16203 - [MEDIUM] report error on buffer writes larger than buffer size
16204 - [MEDIUM] stream_interface: add and use ->update function to resync
16205 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
16206 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
16207 - [BUG] tarpit did not work anymore
16208 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
16209 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
16210 - [MINOR] buffers: provide more functions to handle buffer data
16211 - [MEDIUM] buffers: provide new buffer_feed*() function
16212 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
16213 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
16214 - [BUG] buffer_forward() would not correctly consider data already scheduled
16215 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
16216 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
16217 - [MAJOR] http: add support for HTTP 1xx informational responses
16218 - [MINOR] buffers: inline buffer_si_putchar()
16219 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
16220 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
16221 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
16222 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
16223 - [MEDIUM] add support for infinite forwarding
16224 - [BUILD] stream_interface: fix conflicting declaration
16225 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
16226 - [BUG] variable buffer size ignored at initialization time
16227 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
16228 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
16229 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
16230 - [MINOR] stream_interface: add iohandler callback
16231 - [MINOR] stream_interface: add functions to support running as internal/external tasks
16232 - [MEDIUM] session: call iohandler for embedded tasks (applets)
16233 - [MINOR] add a ->private member to the stream_interface
16234 - [MEDIUM] stats: prepare the connection for closing before dumping
16235 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
16236
Willy Tarreau68dcd252009-08-09 22:57:09 +0200162372009/08/09 : 1.4-dev2
16238 - [BUG] task: fix possible crash when some timeouts are not configured
16239 - [BUG] log: option tcplog would log to global if no logger was defined
16240
Willy Tarreaub03d2982009-07-29 22:38:32 +0200162412009/07/29 : 1.4-dev1
16242 - [MINOR] acl: add support for matching of RDP cookies
16243 - [MEDIUM] add support for RDP cookie load-balancing
16244 - [MEDIUM] add support for RDP cookie persistence
16245 - [MINOR] add a new CLF log format
16246 - [MINOR] startup: don't imply -q with -D
16247 - [BUG] ensure that we correctly re-start old process in case of error
16248 - [MEDIUM] add support for binding to source port ranges during connect
16249 - [MINOR] config: track "no option"/"option" changes
16250 - [MINOR] config: support resetting options do default values
16251 - [MEDIUM] implement option tcp-smart-accept at the frontend
16252 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
16253 - [MEDIUM] implement tcp-smart-connect option at the backend
16254 - [MEDIUM] add support for TCP MSS adjustment for listeners
16255 - [MEDIUM] support setting a server weight to zero
16256 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
16257 - [MAJOR] session: don't clear buffer status flags anymore
16258 - [MAJOR] session: only check for timeouts when they have just occurred.
16259 - [MAJOR] session: simplify buffer error handling
16260 - [MEDIUM] config: split parser and checker in two functions
16261 - [MEDIUM] config: support loading multiple configuration files
16262 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
16263 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
16264 - [MEDIUM] splice: set the capability on each stream_interface
16265 - [BUG] http: redirect rules were processed too early
16266 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
16267 - [MEDIUM] http: split request waiter from request processor
16268 - [MEDIUM] session: tell analysers what bit they were called for
16269 - [MAJOR] http: complete splitting of the remaining stages
16270 - [MINOR] report in the proxies the requirements for ACLs
16271 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
16272 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
16273 - [MINOR] prepare callers of session_set_backend to handle errors
16274 - [BUG] default ACLs did not properly set the ->requires flag
16275 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
16276 - [MINOR] ensure we can jump from swiching rules to http without data
16277 - [MINOR] http: take http request timeout from the backend
16278 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
16279 - [BUILD] report commit date and not author's date as build date
16280 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
16281 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
16282 - [BUG] stream_sock: don't stop reading when the poller reports an error
16283 - [BUG] config: tcp-request content only accepts "if" or "unless"
16284 - [BUG] task: fix possible timer drift after update
16285 - [MINOR] apply tcp-smart-connect option for the checks too
16286 - [MINOR] stats: better displaying in MSIE
16287 - [MINOR] config: improve error reporting in global section
16288 - [MINOR] config: improve error reporting in listen sections
16289 - [MINOR] config: the "capture" keyword is not allowed in backends
16290 - [MINOR] config: improve error reporting when checking configuration
16291 - [BUILD] fix a minor build warning on AIX
16292 - [BUILD] use "git cmd" instead of "git-cmd"
16293 - [CLEANUP] report 2009 not 2008 in the copyright banner.
16294 - [MINOR] print usage on the stats sockets upon invalid commands
16295 - [MINOR] acl: detect and report potential mistakes in ACLs
16296 - [BUILD] fix incorrect printf arg count with tcp_splice
16297 - [BUG] fix random pauses on last segment of a series
16298 - [BUILD] add support for build under Cygwin
16299
Willy Tarreau79158882009-06-09 11:59:08 +0200163002009/06/09 : 1.4-dev0
16301 - exact copy of 1.3.18
16302
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200163032009/05/10 : 1.3.18
16304 - [MEDIUM] add support for "balance hdr(name)"
16305 - [CLEANUP] give a little bit more information in error message
16306 - [MINOR] add X-Original-To: header
16307 - [BUG] x-original-to: fix missing initialization to default value
16308 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
16309 - [MINOR] improve reporting of misplaced acl/reqxxx rules
16310 - [MEDIUM] http: add options to ignore invalid header names
16311 - [MEDIUM] http: capture invalid requests/responses even if accepted
16312 - [BUILD] add format(printf) to printf-like functions
16313 - [MINOR] fix several printf formats and missing arguments
16314 - [BUG] stats: total and lbtot are unsigned
16315 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
16316 - [CLEANUP] remove unused make option from haproxy.spec
16317 - [BUILD] make it possible to pass alternative arch at build time
16318 - [MINOR] switch all stat counters to 64-bit
16319 - [MEDIUM] ensure we don't recursively call pool_gc2()
16320 - [CRITICAL] uninitialized response field can sometimes cause crashes
16321 - [BUG] fix wrong pointer arithmetics in HTTP message captures
16322 - [MINOR] rhel init script : support the reload operation
16323 - [MINOR] add basic signal handling functions
16324 - [BUILD] add signal.o to all makefiles
16325 - [MEDIUM] call signal_process_queue from run_poll_loop
16326 - [MEDIUM] pollers: don't wait if a signal is pending
16327 - [MEDIUM] convert all signals to asynchronous signals
16328 - [BUG] O(1) pollers should check their FD before closing it
16329 - [MINOR] don't close stdio fds twice
16330 - [MINOR] add options dontlog-normal and log-separate-errors
16331 - [DOC] minor fixes and rearrangements
16332 - [BUG] fix parser crash on unconditional tcp content rules
16333 - [DOC] rearrange the configuration manual and add a summary
16334 - [MINOR] standard: provide a new 'my_strndup' function
16335 - [MINOR] implement per-logger log level limitation
16336 - [MINOR] compute the max of sessions/s on fe/be/srv
16337 - [MINOR] stats: report max sessions/s and limit in CSV export
16338 - [MINOR] stats: report max sessions/s and limit in HTML stats
16339 - [MINOR] stats/html: use the arial font before helvetica
16340
Willy Tarreauf459b422009-03-29 15:26:57 +0200163412009/03/29 : 1.3.17
16342 - Update specfile to build for v2.6 kernel.
16343 - [BUG] reset the stream_interface connect timeout upon connect or error
16344 - [BUG] reject unix accepts when connection limit is reached
16345 - [MINOR] show sess: report number of calls to each task
16346 - [BUG] don't call epoll_ctl() on closed sockets
16347 - [BUG] stream_sock: disable I/O on fds reporting an error
16348 - [MINOR] sepoll: don't count two events on the same FD.
16349 - [MINOR] show sess: report a lot more information about sessions
16350 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
16351 - [BUG] don't set an expiration date directly from now_ms
16352 - [MINOR] implement ulltoh() to write HTML-formatted numbers
16353 - [MINOR] stats/html: group digits by 3 to clarify numbers
16354 - [BUILD] remove haproxy-small.spec
16355 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
16356
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100163572009/03/22 : 1.3.16
16358 - [BUILD] Fixed Makefile for linking pcre
16359 - [CONTRIB] selinux policy for haproxy
16360 - [MINOR] show errors: encode backslash as well as non-ascii characters
16361 - [MINOR] cfgparse: some cleanups in the consistency checks
16362 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
16363 - [MINOR] tcp-inspect: permit the use of no-delay inspection
16364 - [MEDIUM] reverse internal proxy declaration order to match configuration
16365 - [CLEANUP] config: catch and report some possibly wrong rule ordering
16366 - [BUG] connect timeout is in the stream interface, not the buffer
16367 - [BUG] session: errors were not reported in termination flags in TCP mode
16368 - [MINOR] tcp_request: let the caller take care of errors and timeouts
16369 - [CLEANUP] http: remove some commented out obsolete code in process_response
16370 - [MINOR] update ebtree to version 4.1
16371 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
16372 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
16373 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
16374 - [MINOR] sched: permit a task to stay up between calls
16375 - [MINOR] task: keep a task count and clean up task creators
16376 - [MINOR] stats: report number of tasks (active and running)
16377 - [BUG] server check intervals must not be null
16378 - [OPTIM] stream_sock: don't retry to read after a large read
16379 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
16380 - [MEDIUM] session: don't resync FSMs on non-interesting changes
16381 - [BUG] check for global.maxconn before doing accept()
16382 - [OPTIM] sepoll: do not re-check whole list upon accepts
16383
Willy Tarreau8185ced2009-03-09 22:45:53 +0100163842009/03/09 : 1.3.16-rc2
16385 - [BUG] stream_sock: write timeout must be updated when forwarding !
16386
Willy Tarreauff63b432009-03-09 01:03:42 +0100163872009/03/09 : 1.3.16-rc1
16388 - appsessions: cleanup DEBUG_HASH and initialize request_counter
16389 - [MINOR] acl: add new keyword "connslots"
16390 - [MINOR] cfgparse: fix off-by 2 in error message size
16391 - [BUILD] fix build with gcc 4.3
16392 - [BUILD] fix MANDIR default location to match documentation
16393 - [TESTS] add a debug patch to help trigger the stats bug
16394 - [BUG] Flush buffers also where there are exactly 0 bytes left
16395 - [MINOR] Allow to specify a domain for a cookie
16396 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
16397 - [MEDIUM] Fix memory freeing at exit
16398 - [MEDIUM] Fix memory freeing at exit, part 2
16399 - [BUG] Fix listen & more of 2 couples <ip>:<port>
16400 - [DOC] remove buggy comment for use_backend
16401 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
16402 - [MEDIUM] add support for URI hash depth and length limits
16403 - [MINOR] permit renaming of x-forwarded-for header
16404 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
16405 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
16406 - [MEDIUM] upgrade to ebtree v4.0
16407 - [DOC] update the README file with new build options
16408 - [MEDIUM] reduce risk of event starvation in ev_sepoll
16409 - [MEDIUM] detect streaming buffers and tag them as such
16410 - [MEDIUM] add support for conditional HTTP redirection
16411 - [BUILD] make install should depend on haproxy not "all"
16412 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
16413 - [BUG] event pollers must not wait if a task exists in the run queue
16414 - [BUG] queue management: wake oldest request in queues
16415 - [BUG] log: reported queue position was offed-by-one
16416 - [BUG] fix the dequeuing logic to ensure that all requests get served
16417 - [DOC] documentation for the "retries" parameter was missing.
16418 - [MEDIUM] implement a monotonic internal clock
16419 - [MEDIUM] further improve monotonic clock by check forward jumps
16420 - [OPTIM] add branch prediction hints in list manipulations
16421 - [MAJOR] replace ultree with ebtree in wait-queues
16422 - [BUG] we could segfault during exit while freeing uri_auths
16423 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
16424 - [MINOR] introduce now_ms, the current date in milliseconds
16425 - [BUG] disable buffer read timeout when reading stats
16426 - [MEDIUM] rework the wait queue mechanism
16427 - [BUILD] change declaration of base64tab to fix build with Intel C++
16428 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
16429 - [MAJOR] use an ebtree instead of a list for the run queue
16430 - [MEDIUM] introduce task->nice and boot access to statistics
16431 - [OPTIM] task_queue: assume most consecutive timers are equal
16432 - [BUILD] silent a warning in unlikely() with gcc 4.x
16433 - [MAJOR] convert all expiration timers from timeval to ticks
16434 - [BUG] use_backend would not correctly consider "unless"
16435 - [TESTS] added test-acl.cfg to test some ACL combinations
16436 - [MEDIUM] add support for configuration keyword registration
16437 - [MEDIUM] modularize the global "stats" keyword configuration parser
16438 - [MINOR] cfgparse: add support for warnings in external functions
16439 - [MEDIUM] modularize the "timeout" keyword configuration parser
16440 - [MAJOR] implement tcp request content inspection
16441 - [MINOR] acl: add a new parsing function: parse_dotted_ver
16442 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
16443 - [CLEANUP] remove unused include/types/client.h
16444 - [CLEANUP] remove many #include <types/xxx> from C files
16445 - [CLEANUP] remove dependency on obsolete INTBITS macro
16446 - [DOC] document the new "tcp-request" keyword and associated ACLs
16447 - [MINOR] acl: add REQ_CONTENT to the list of default acls
16448 - [MEDIUM] acl: permit fetch() functions to set the result themselves
16449 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
16450 - [MINOR] acl: add the "wait_end" acl verb
16451 - [MEDIUM] acl: enforce ACL type checking
16452 - [MEDIUM] acl: set types on all currently known ACL verbs
16453 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
16454 - [CLEANUP] remove 65 useless NULL checks before free
16455 - [MEDIUM] memory: update pool_free2() to support NULL pointers
16456 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
16457 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
16458 - [MEDIUM] process_srv: don't rely at all on client state
16459 - [MEDIUM] process_cli: don't rely at all on server state
16460 - [BUG] fix segfault with url_param + check_post
16461 - [BUG] server timeout was not considered in some circumstances
16462 - [BUG] client timeout incorrectly rearmed while waiting for server
16463 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
16464 - [MAJOR] get rid of SV_STANALYZE (step 2)
16465 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
16466 - [MAJOR] completely separate HTTP and TCP states on the request path
16467 - [BUG] fix recently introduced loop when client closes early
16468 - [MAJOR] get rid of the SV_STHEADERS state
16469 - [MAJOR] better separation of response processing and server state
16470 - [MAJOR] clearly separate HTTP response processing from TCP server state
16471 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
16472 - [MINOR] term_trace: add better instrumentations to trace the code
16473 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
16474 - [BUG] process_response must not enable the read FD
16475 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
16476 - [BUG] process_response: do not touch srv_state
16477 - [BUG] maintain_proxies must not disable backends
16478 - [CLEANUP] get rid of BF_SHUT*_PENDING
16479 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
16480 - [MAJOR] process_session: rely only on buffer flags
16481 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
16482 - [MEDIUM] centralize buffer timeout checks at the top of process_session
16483 - [MINOR] ensure the termination flags are set by process_xxx
16484 - [MEDIUM] session: move the analysis bit field to the buffer
16485 - [OPTIM] process_cli/process_srv: reduce the number of tests
16486 - [BUG] regparm is broken on gcc < 3
16487 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
16488 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
16489 - [BUG] process_cli/process_srv: don't call shutdown when already done
16490 - [BUG] process_request: HTTP body analysis must return zero if missing data
16491 - [TESTS] test-fsm: 22 regression tests for state machines
16492 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
16493 - [BUG] fix harmless but wrong fd insertion sequence
16494 - [MEDIUM] make it possible for analysers to follow the whole session
16495 - [MAJOR] rework of the server FSM
16496 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
16497 - [MEDIUM] massive cleanup of process_srv()
16498 - [MEDIUM] second level of code cleanup for process_srv_data
16499 - [MEDIUM] third cleanup and optimization of process_srv_data()
16500 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
16501 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
16502 - [MAJOR] make the client side use stream_sock_process_data()
16503 - [MEDIUM] split stream_sock_process_data
16504 - [OPTIM] stream_sock_read must check for null-reads more often
16505 - [MINOR] only call flow analysers when their read side is connected.
16506 - [MEDIUM] reintroduce BF_HIJACK with produce_content
16507 - [MINOR] re-arrange buffer flags and rename some of them
16508 - [MINOR] do not check for BF_SHUTR when computing write timeout
16509 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
16510 - [OPTIM] reduce the number of calls to task_wakeup()
16511 - [OPTIM] force inlining of large functions with gcc >= 3
16512 - [MEDIUM] indicate a reason for a task wakeup
16513 - [MINOR] change type of fdtab[]->owner to void*
16514 - [MAJOR] make stream sockets aware of the stream interface
16515 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
16516 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
16517 - [MEDIUM] process_session: make use of the new buffer flags
16518 - [CLEANUP] process_session: move debug outputs out of the critical loop
16519 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
16520 - [OPTIM] add compiler hints in tick_is_expired()
16521 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
16522 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
16523 - [MINOR] add an expiration flag to the stream_sock_interface
16524 - [MAJOR] migrate the connection logic to stream interface
16525 - [MAJOR] add a connection error state to the stream_interface
16526 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
16527 - [MEDIUM] continue layering cleanups.
16528 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
16529 - [MEDIUM] remove stream_sock_update_data()
16530 - [MINOR] maintain a global session list in order to ease debugging
16531 - [BUG] shutw must imply close during a connect
16532 - [MEDIUM] process shutw during connection attempt
16533 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
16534 - [MAJOR] complete layer4/7 separation
16535 - [CLEANUP] move the session-related functions to session.c
16536 - [MINOR] call session->do_log() for logging
16537 - [MINOR] replace the ambiguous client_return function by stream_int_return
16538 - [MINOR] replace client_retnclose() with stream_int_retnclose()
16539 - [MINOR] replace srv_close_with_err() with http_server_error()
16540 - [MEDIUM] make the http server error function a pointer in the session
16541 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
16542 - [MINOR] stream_sock_data_finish() should not expose fd
16543 - [MEDIUM] extract TCP request processing from HTTP
16544 - [MEDIUM] extract the HTTP tarpit code from process_request().
16545 - [MEDIUM] move the HTTP request body analyser out of process_request().
16546 - [MEDIUM] rename process_request to http_process_request
16547 - [BUG] fix forgotten server session counter
16548 - [MINOR] declare process_session in session.h, not proto_http.h
16549 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
16550 - [MINOR] add an analyser code for UNIX stats request
16551 - [MINOR] pre-set analyser flags on the listener at registration time
16552 - [BUG] do not forward close from cons to prod with analysers
16553 - [MEDIUM] ensure that sock->shutw() also closes read for init states
16554 - [MINOR] add an analyser state in struct session
16555 - [MAJOR] make unix sockets work again with stats
16556 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
16557 - [MINOR] move the listener reference from fd to session
16558 - [MEDIUM] reference the current hijack function in the buffer itself
16559 - [MINOR] slightly rebalance stats_dump_{raw,http}
16560 - [MINOR] add a new back-reference type : struct bref
16561 - [MINOR] add back-references to sessions for later use by a dumper.
16562 - [MEDIUM] add support for "show sess" in unix stats socket
16563 - [BUG] do not release the connection slot during a retry
16564 - [BUG] dynamic connection throttling could return a max of zero conns
16565 - [BUG] do not try to pause backends during reload
16566 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
16567 - [BUG] acl-related keywords are not allowed in defaults sections
16568 - [BUG] cookie capture is declared in the frontend but checked on the backend
16569 - [BUG] critical errors should be reported even in daemon mode
16570 - [MINOR] redirect: add support for the "drop-query" option
16571 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
16572 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
16573 - [BUG] do not dequeue requests on a dead server
16574 - [BUG] do not dequeue the backend's pending connections on a dead server
16575 - [MINOR] stats: indicate if a task is running in "show sess"
16576 - [BUG] check timeout must not be changed if timeout.check is not set
16577 - [BUG] "option transparent" is for backend, not frontend !
16578 - [MINOR] transfer errors were not reported anymore in data phase
16579 - [MEDIUM] add a send limit to a buffer
16580 - [MEDIUM] don't report buffer timeout when there is I/O activity
16581 - [MEDIUM] indicate when we don't care about read timeout
16582 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
16583 - [MEDIUM] enable inter-stream_interface wakeup calls
16584 - [MAJOR] implement autonomous inter-socket forwarding
16585 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
16586 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
16587 - [MEDIUM] i/o: rework ->to_forward and ->send_max
16588 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
16589 - [OPTIM] buffer: replace rlim by max_len
16590 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
16591 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
16592 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
16593 - [MEDIUM] split stream_sock_write() into callback and core functions
16594 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
16595 - [MINOR] stream_sock: fix a few wrong empty calculations
16596 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
16597 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
16598 - [MEDIUM] splice: add configuration options and set global.maxpipes
16599 - [MINOR] introduce structures required to support Linux kernel splicing
16600 - [MEDIUM] add definitions for Linux kernel splicing
16601 - [MAJOR] complete support for linux 2.6 kernel splicing
16602 - [BUG] reserve some pipes for backends with splice enabled
16603 - [MEDIUM] splice: add hints to support older buggy kernels
16604 - [MEDIUM] introduce pipe pools
16605 - [MEDIUM] splice: make use of pipe pools
16606 - [STATS] report pipe usage in the statistics
16607 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
16608 - [BUILD] fix snapshot date extraction with negative timezones
16609 - [MEDIUM] move global tuning options to the global structure
16610 - [MEDIUM] splice: add the global "nosplice" option
16611 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
16612 - [BUG] we must not exit if protocol binding only returns a warning
16613 - [MINOR] add support for bind interface name
16614 - [BUG] inform the user when root is expected but not set
16615 - [MEDIUM] add support for source interface binding
16616 - [MEDIUM] add support for source interface binding at the server level
16617 - [MEDIUM] implement bind-process to limit service presence by process
16618 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
16619 - [DOC] filled the logging section of the configuration manual
16620 - [DOC] document HTTP status codes
16621 - [DOC] document a few missing info about errorfile
16622 - [BUG] fix random memory corruption using "show sess"
16623 - [BUG] fix unix socket processing of interrupted output
16624 - [DOC] add diagrams of queuing and future ACL design
16625 - [BUILD] proto_http did not build on gcc-2.95
16626 - [BUG] the "source" keyword must first clear optional settings
16627 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
16628 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
16629 - [MEDIUM] store a complete dump of request and response errors in proxies
16630 - [MEDIUM] implement error dump on unix socket with "show errors"
16631 - [DOC] document "show errors"
16632 - [MINOR] errors dump must use user-visible date, not internal date.
16633 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
16634 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
16635 - [MEDIUM] measure and report session rate on frontend, backends and servers
16636 - [BUG] the "connslots" keyword was matched as "connlots"
16637 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
16638 - [MEDIUM] implement "rate-limit sessions" for the frontend
16639 - [BUG] interface binding: length must include the trailing zero
16640 - [BUG] typo in timeout error reporting : report *res and not *err
16641 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
16642 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
16643 - [BUG] switch server-side stream interface to close in case of abort
16644 - [CLEANUP] remove last references to term_trace
16645 - [OPTIM] freq_ctr: do not rotate the counters when reading
16646 - [BUG] disable any analysers for monitoring requests
16647 - [BUG] rate-limit in defaults section was ignored
16648 - [BUG] task: fix handling of duplicate keys
16649 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
16650 - [OPTIM] displace tasks in the wait queue only if absolutely needed
16651 - [MEDIUM] minor update to the task api: let the scheduler queue itself
16652 - [BUG] event_accept() must always wake the task up, even in health mode
16653 - [CLEANUP] task: distinguish between clock ticks and timers
16654 - [OPTIM] task: reduce the number of calls to task_queue()
16655 - [OPTIM] do not re-check req buffer when only response has changed
16656 - [CLEANUP] don't enable kernel splicing when socket is closed
16657 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
16658 - [MINOR] buffers: implement buffer_flush()
16659 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
16660 - [BUILD] build fixes for Solaris
16661 - [BUILD] proto_http did not build on gcc-2.95 (again)
16662 - [CONTRIB] halog: fast log parser for haproxy
16663 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
16664
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200166652008/04/19 : 1.3.15
16666 - [BUILD] Added support for 'make install'
16667 - [BUILD] Added 'install-man' make target for installing the man page
16668 - [BUILD] Added 'install-bin' make target
16669 - [BUILD] Added 'install-doc' make target
16670 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
16671 - [BUILD] Changed 'install' target to install the binaries first
16672 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
16673 - [MEDIUM]: Inversion for options
16674 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
16675 - [BUG]: Restore clearing t->logs.bytes
16676 - [MEDIUM]: rework checks handling
16677 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
16678 - [MEDIUM] Implement "track [<backend>/]<server>"
16679 - [MINOR] Implement persistent id for proxies and servers
16680 - [BUG] Don't increment server connections too much + fix retries
16681 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
16682 - [MAJOR] proto_uxst rework -> SNMP support
16683 - [BUG] appsession lookup in URL does not work
16684 - [BUG] transparent proxy address was ignored in backend
16685 - [BUG] hot reconfiguration failed because of a wrong error check
16686 - [DOC] big update to the configuration manual
16687 - [DOC] large update to the configuration manual
16688 - [DOC] document more options
16689 - [BUILD] major rework of the GNU Makefile
16690 - [STATS] add support for "show info" on the unix socket
16691 - [DOC] document options forwardfor to logasap
16692 - [MINOR] add support for the "backlog" parameter
16693 - [OPTIM] introduce global parameter "tune.maxaccept"
16694 - [MEDIUM] introduce "timeout http-request" in frontends
16695 - [MINOR] tarpit timeout is also allowed in backends
16696 - [BUG] increment server connections for each connect()
16697 - [MEDIUM] add a turn-around state of one second after a connection failure
16698 - [BUG] fix typo in redispatched connection
16699 - [DOC] document options nolinger to ssl-hello-chk
16700 - [DOC] added documentation for "option tcplog" to "use_backend"
16701 - [BUG] connect_server: server might not exist when sending error report
16702 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
16703 - [MEDIUM] add non-local bind to connect() on Linux
16704 - [MINOR] add transparent proxy support for balabit's Tproxy v4
16705 - [BUG] use backend's source and not server's source with tproxy
16706 - [BUG] fix overlapping server flags
16707 - [MEDIUM] fix server health checks source address selection
16708 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
16709 - [DOC] added "server", "source" and "stats" keywords
16710 - [DOC] all server parameters have been documented
16711 - [DOC] document all req* and rsp* keywords.
16712 - [DOC] added documentation about HTTP header manipulations
16713 - [BUG] log response byte count, not request
16714 - [BUILD] code did not build in full debug mode
16715 - [BUG] fix truncated responses with sepoll
16716 - [MINOR] use s->frt_addr as the server's address in transparent proxy
16717 - [MINOR] fix configuration hint about timeouts
16718 - [DOC] minor cleanup of the doc and notice to contributors
16719 - [MINOR] report correct section type for unknown keywords.
16720 - [BUILD] update MacOS Makefile to build on newer versions
16721 - [DOC] fix erroneous "useallbackups" option in the doc
16722 - [DOC] applied small fixes from early readers
16723 - [MINOR] add configuration support for "redir" server keyword
16724 - [MEDIUM] completely implement the server redirection method
16725 - [TESTS] add a test case for the server redirection mechanism
16726 - [DOC] add a configuration entry for "server ... redir <prefix>"
16727 - [BUILD] backend.c and checks.c did not build without tproxy !
16728 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
16729 - [BUILD] backend.c and checks.c did not build without tproxy !
16730 - [OPTIM] used unsigned ints for HTTP state and message offsets
16731 - [OPTIM] GCC4's builtin_expect() is suboptimal
16732 - [BUG] failed conns were sometimes incremented in the frontend!
16733 - [BUG] timeout.check was not pre-set to eternity
16734 - [TESTS] add test-pollers.cfg to easily report pollers in use
16735 - [BUG] do not apply timeout.connect in checks if unset
16736 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
16737 - [MINOR] silent gcc for a wrong warning
16738 - [CLEANUP] update .gitignore to ignore more temporary files
16739 - [CLEANUP] report dlmalloc's source path only if explictly specified
16740 - [BUG] str2sun could leak a small buffer in case of error during parsing
16741 - [BUG] option allbackups was not working anymore in roundrobin mode
16742 - [MAJOR] implementation of the "leastconn" load balancing algorithm
16743 - [BUILD] ensure that users don't build without setting the target anymore.
16744 - [DOC] document the leastconn LB algo
16745 - [MEDIUM] fix stats socket limitation to 16 kB
16746 - [DOC] fix unescaped space in httpchk example.
16747 - [BUG] fix double-decrement of server connections
16748 - [TESTS] add a test case for port mapping
16749 - [TESTS] add a benchmark for integer hashing
16750 - [TESTS] add new methods in ip-hash test file
16751 - [MAJOR] implement parameter hashing for POST requests
16752
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100167532007/12/06 : 1.3.14
16754 - New option http_proxy (Alexandre Cassen)
16755 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
16756 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
16757 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
16758 - use backends only with use_backend directive (Krzysztof Oledzki)
16759 - Handle long lines properly (Krzysztof Oledzki)
16760 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
16761 - continous statistics (Krzysztof Oledzki)
16762 - add support for logging via a UNIX socket (Robert Tsai)
16763 - fix error checking in strl2ic/strl2uic()
16764 - fix calls to localtime()
16765 - provide easier-to-use ultoa_* functions
16766 - provide easy-to-use limit_r and LIM2A* macros
16767 - add a simple test for the status page
16768 - move error codes to common/errors.h
16769 - silent warning about LIST_* being redefined on OpenBSD
16770 - add socket address length to the protocols
16771 - group PR_O_BALANCE_* bits into a checkable value
16772 - externalize the "balance" option parser to backend.c
16773 - introduce the "url_param" balance method
16774 - make default_backend work in TCP mode too
16775 - disable warning about localtime_r on Solaris
16776 - adjust error messages about conflicting proxies
16777 - avoid calling some layer7 functions if not needed
16778 - simplify error path in event_accept()
16779 - add an options field to the listeners
16780 - added a new state to listeners
16781 - unbind_listener() must use fd_delete() and not close()
16782 - add a generic unbind_listener() primitive
16783 - add a generic delete_listener() primitive
16784 - add a generic unbind_all_listeners() primitive
16785 - create proto_tcp and move initialization of proxy listeners
16786 - stats: report numerical process ID, proxy ID and server ID
16787 - relative_pid was not initialized
16788 - missing header names in raw stats output
16789 - fix missing parenthesis in check_response_for_cacheability
16790 - small optimization on session_process_counters()
16791 - merge ebtree version 3.0
16792 - make ebtree headers multiple-include compatible
16793 - ebtree: include config.h for REGPRM*
16794 - differentiate between generic LB params and map-specific ones
16795 - add a weight divisor to the struct proxy
16796 - implement the Fast Weighted Round Robin (FWRR) algo
16797 - include filltab25.c to experiment on FWRR for dynamic weights
16798 - merge test-fwrr.cfg to validate dynamic weights
16799 - move the load balancing algorithm to be->lbprm.algo
16800 - change server check result to a bit field
16801 - implement "http-check disable-on-404" for graceful shutdown
16802 - secure the calling conditions of ->set_server_status_{up,down}
16803 - report disabled servers as "NOLB" when they are still UP
16804 - document the "http-check disable-on-404" option
16805 - http-check disable-on-404 is not limited to HTTP mode
16806 - add a test file for disable-on-404
16807 - use distinct bits per load-balancing algorithm type
16808 - implement the slowstart parameter for servers
16809 - document the server's slowstart parameter
16810 - stats: report the server warm up status in a "throttle" column
16811 - fix 2 minor issues on AIX
16812 - add the "nbsrv" ACL verb
16813 - add the "fail" condition to monitor requests
16814 - remove a warning from gcc due to htons() in standard.c
16815 - fwrr: ensure that we never overflow in placements
16816 - store the build options to report with -vv
16817 - fix the status return of the init script (R.I. Pienaar)
16818 - stats: real time monitoring script for unix socket (Prizee)
16819 - document "nbsrv" and "monitor fail"
16820 - restrict the set of allowed characters for identifiers
16821 - implement a time parsing function
16822 - add support for time units in the configuration
16823 - add a bit of documentation about timers
16824 - introduce separation between contimeout, and tarpit + queue
16825 - introduce the "timeout" keyword
16826 - grouped all timeouts in one structure
16827 - slowstart is in ms, not seconds
16828 - slowstart: ensure we don't start with a null weight
16829 - report the number of times each server was selected
16830 - fix build on AIX due to recent log changes
16831 - fix build on Solaris due to recent log changes
16832
Willy Tarreaue855f422007-10-18 22:38:22 +0200168332007/10/18 : 1.3.13
16834 - replace the code under O'Reilly license (Arnaud Cornet)
16835 - add a small man page (Arnaud Cornet)
16836 - stats: report haproxy's version by default (Krzysztof Oledzki)
16837 - stats: count server retries and redispatches (Krzysztof Oledzki)
16838 - core: added easy support for Doug Lea's malloc (dlmalloc)
16839 - core: fade out memory usage when stopping proxies
16840 - core: moved the sockaddr pointer to the fdtab structure
16841 - core: add generic protocol support
16842 - core: implement client-side support for PF_UNIX sockets
16843 - stats: implement the CSV output
16844 - stats: add a link to the CSV export HTML page
16845 - stats: implement the statistics output on a unix socket
16846 - config: introduce the "stats" keyword in global section
16847 - build: centralize version and date into one file for each
16848 - tests: added a new hash algorithm
16849
168502007/10/18 : 1.3.12.3
16851 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
16852 - fix double-free during clean exit (Krzysztof Oledzki)
16853 - prevent the system from sending an RST when closing health-checks
16854 (Krzysztof Oledzki)
16855 - do not add a cache-control header when on non-cacheable responses
16856 (Krzysztof Oledzki)
16857 - spread health checks even more (Krzysztof Oledzki)
16858 - stats: scope "." must match the backend and not the frontend
16859 - fixed call to chroot() during startup
16860 - fix wrong timeout computation in event_accept()
16861 - remove condition for exit() under fork() failure
16862
168632007/09/20 : 1.3.12.2
16864 - fix configuration sanity checks for TCP listeners
16865 - set the log socket receive window to zero bytes
16866 - pre-initialize timeouts to infinity, not zero
16867 - fix the SIGHUP message not to alert on server-less proxies
16868 - timeouts and retries could be ignored when switching backend
16869 - added a file to check that "retries" works.
16870 - O'Reilly has clarified its license
16871
168722007/09/05 : 1.3.12.1
16873 - spec I/O: fix allocations of spec entries for an FD
16874 - ensure we never overflow in chunk_printf()
16875 - improve behaviour with large number of servers per proxy
16876 - add support for "stats refresh <interval>"
16877 - stats page: added links for 'refresh' and 'hide down'
16878 - fix backend's weight in the stats page.
16879 - the "stats" keyword is not allowed in a pure frontend.
16880 - provide a test configuration file for stats and checks
16881
Willy Tarreaub21152b2007-06-17 23:41:40 +0200168822007/06/17 : 1.3.12
16883 - fix segfault at exit when using captures
16884 - bug: negation in ACL conds was not cleared between terms
16885 - errorfile: use a local file to feed error messages
16886 - acl: support '-i' to ignore case when matching
16887 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
16888 - acl: support maching on 'path' component
16889 - acl: implement matching on header values
16890 - acl: distinguish between request and response headers
16891 - acl: permit to return any header when no name specified
16892 - acl: provide default ACLs
16893 - added the 'use_backend' keyword for full content-switching
16894 - acl: specify the direction during fetches
16895 - acl: provide the argument length for fetch functions
16896 - acl: provide a reference to the expr to fetch()
16897 - improve memory freeing upon exit
16898 - str2net() must not change the const char *
16899 - shut warnings 'is*' macros from ctype.h on solaris
16900
Willy Tarreaua3503e02007-06-03 17:27:07 +0200169012007/06/03 : 1.3.11.4
16902 - do not re-arm read timeout in SHUTR state !
16903 - optimize I/O by detecting system starvation
16904 - the epoll FD must not be shared between processes
16905 - limit the number of events returned by *poll*
16906
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200169072007/05/14 : 1.3.11.3
16908 - pre-initialize timeouts with tv_eternity during parsing
16909
Willy Tarreaufc273c22007-05-14 03:42:47 +0200169102007/05/14 : 1.3.11.2
16911 - fixed broken health-checks since switch to timeval
16912
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200169132007/05/14 : 1.3.11.1
16914 - fixed ev_kqueue which was forgotten during the switch to timeval
16915 - allowed null timeouts for past events in select
16916
Willy Tarreau544eb402007-05-14 02:42:33 +0200169172007/05/14 : 1.3.11
16918 - fixed ev_sepoll again by rewriting the state machine
16919 - switched all timeouts to timevals instead of milliseconds
16920 - improved memory management using mempools v2.
16921 - several minor optimizations
16922
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200169232007/05/09 : 1.3.10.2
16924 - fixed build on OpenBSD (missing types.h)
16925
Willy Tarreau13398d32007-05-09 22:58:28 +0200169262007/05/09 : 1.3.10.1
16927 - fixed sepoll transition matrix (two states were missing)
16928
Willy Tarreau61beedf2007-05-09 01:44:58 +0200169292007/05/08 : 1.3.10
16930 - several fixes in ev_sepoll
16931 - fixed some expiration dates on some tasks
16932 - fixed a bug in connection establishment detection due to speculative I/O
16933 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
16934 - implemented URI hashing algorithm (Guillaume Dallaire)
16935 - implemented SMTP health checks (Peter van Dijk)
16936 - replaced the rbtree with ul2tree from old scheduler project
16937 - new framework for generic ACL support
16938 - added the 'acl' and 'block' keywords to the config language
16939 - added several ACL criteria and matches (IP, port, URI, ...)
16940 - cleaned up and better modularization for some time functions
16941 - fixed list macros
16942 - fixed useless memory allocation in str2net()
16943 - store the original destination address in the session
16944
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200169452007/04/15 : 1.3.9
16946 - modularized the polling mechanisms and use function pointers instead
16947 of macros at many places
16948 - implemented support for FreeBSD's kqueue() polling mechanism
16949 - fixed a warning on OpenBSD : MIN/MAX redefined
16950 - change socket registration order at startup to accomodate kqueue.
16951 - several makefile cleanups to support old shells
16952 - fix build with limits.h once for all
16953 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
16954 - fdtab now holds the results of polling
16955 - implemented support for speculative I/O processing with epoll()
16956 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
16957 - auto-registering of pollers at load time
16958
Willy Tarreau42c76592007-04-03 20:30:13 +0200169592007/04/03 : 1.3.8.2
16960 - rewriting either the status line or request line could crash the
16961 process due to a pointer which ought to be reset before parsing.
16962 - rewriting the status line in the response did not work, it caused
16963 a 502 Bad Gateway due to an erroneous state during parsing
16964
Willy Tarreauef6d7612007-04-01 11:06:22 +0200169652007/04/01 : 1.3.8.1
16966 - fix reqadd when no option httpclose is used.
16967 - removed now unused fiprm and beprm from proxies
16968 - split logs into two versions : TCP and HTTP
16969 - added some docs about http headers storage and acls
16970 - added a VIM script for syntax color highlighting (Bruno Michel)
16971
Willy Tarreaud661cc02007-03-26 00:24:56 +0200169722007/03/25 : 1.3.8
16973 - fixed several bugs which might have caused a crash with bad configs
16974 - several optimizations in header processing
16975 - many progresses towards transaction-based processing
16976 - option forwardfor may be used in frontends
16977 - completed HTTP response processing
16978 - some code refactoring between request and response processing
16979 - new HTTP header manipulation functions
16980 - optimizations on the recv() patch to reduce CPU usage under very
16981 high data rates.
16982 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
16983 - username/groupname support from Marcus Rueckert
16984 - added the "except" keyword to the "forwardfor" option (Bryan German)
16985 - support for health-checks on other addresses (Fabrice Dulaunoy)
16986 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
16987 - do not insert "Connection: close" in HTTP/1.0 messages
16988
Willy Tarreau9cabf702007-01-26 23:49:01 +0100169892007/01/26 : 1.3.7
16990 - fix critical bug introduced with 1.3.6 : an empty request header
16991 may lead to a crash due to missing pointer assignment
16992 - hdr_idx might be left uninitialized in debug mode
16993 - fixed build on FreeBSD due to missing fd_set declaration
16994
Willy Tarreaue7a24382007-01-22 08:57:44 +0100169952007/01/22 : 1.3.6.1
16996 - change in the header chaining broke cookies and authentication
16997
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100169982007/01/22 : 1.3.6
16999 - stats now support the HEAD method too
17000 - extracted http request from the session
17001 - huge rework of the HTTP parser which is now a 28-state FSM.
17002 - linux-style likely/unlikely macros for optimization hints
17003 - do not create a server socket when there's no server
17004 - imported lots of docs
17005
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100170062007/01/07 : 1.3.5
17007 - stats: swap color sets for active and backup servers
17008 - try to guess server check port when unset
17009 - added complete support and doc for TCP Splicing
17010 - replace the wait-queue linked list with an rbtree.
17011 - a few bugfixes and cleanups
17012
Willy Tarreau85270da2007-01-02 00:59:39 +0100170132007/01/02 : 1.3.4
17014 - support for cttproxy on the server side to present the client
17015 address to the server.
17016 - added support for SO_REUSEPORT on Linux (needs kernel patch)
17017 - new RFC2616-compliant HTTP request parser with header indexing
17018 - split proxies in frontends, rulesets and backends
17019 - implemented the 'req[i]setbe' to select a backend depending
17020 on the contents
17021 - added the 'default_backend' keyword to select a default BE.
17022 - new stats page featuring FEs and BEs + bytes in both dirs
17023 - improved log format to indicate the backend and the time in ms.
17024 - lots of cleanups
17025
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200170262006/10/15 : 1.3.3
17027 - fix broken redispatch option in case the connection has already
17028 been marked "in progress" (ie: nearly always).
17029 - support regparm on x86 to speed up some often called functions
17030 - removed a few useless calls to gettimeofday() in log functions.
17031 - lots of 'const char*' cleanups
17032 - turn every FD_* into functions which are faster on recent CPUs
17033
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200170342006/09/03 : 1.3.2
17035 - started the changes towards I/O completion callbacks. stream_sock* have
17036 replaced event_*.
17037 - added the new "reqtarpit" and "reqitarpit" protection features
17038
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200170392006/07/09 : 1.3.1 (1.2.15)
17040 - now, haproxy warns about missing timeout during startup to try to
17041 eliminate all those buggy configurations.
17042 - added "Content-Type: text/html" in responses wherever appropriate, as
17043 suggested by Cameron Simpson.
17044 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
17045 test server's health
17046 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
17047 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
17048 at once.
17049
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200170502006/06/29 : 1.3.0
17051 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020017052 difference is expected at all.
17053 - fixed a bug by which neither stats nor error messages could be returned if
17054 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020017055
willy tarreau7e6328d2006-05-21 23:26:20 +0200170562006/05/21 : 1.2.14
17057 - new HTML status report with the 'stats' keyword.
17058 - added the 'abortonclose' option to better resist traffic surges
17059 - implemented dynamic traffic regulation with the 'minconn' option
17060 - show request time on denied requests
17061 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
17062 - now a proxy instance is allowed to run without servers, which is
17063 useful to dedicate one instance to stats
17064 - added lots of error counters
17065 - a missing parenthesis preventd matching of cacheable cookies
17066 - a missing parenthesis in poll_loop() might have caused missed events.
17067
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200170682006/05/14 : 1.2.13.1
17069 - an uninitialized field in the struct session could cause a crash when
17070 the session was freed. This has been encountered on Solaris only.
17071 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
17072 be nice to them by performing a soft stop if pause fails.
17073
willy tarreauc3a2e072006-05-13 18:51:38 +0200170742006/05/13 : 1.2.13
17075 - 'maxconn' server parameter to do per-server session limitation
17076 - queueing to support non-blocking session limitation
17077 - fixed removal of cookies for cookie-less servers such as backup servers
17078 - two separate wait queues for expirable and non-expirable tasks provide
17079 better performance with lots of sessions.
17080 - some code cleanups and performance improvements
17081 - made state dumps a bit more verbose
17082 - fixed missing checks for NULL srv in dispatch mode
17083 - load balancing on backup servers was not possible in source hash mode.
17084 - two session flags shared the same bit, but fortunately they were not
17085 compatible.
17086
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200170872006/04/15 : 1.2.12
17088 Very few changes preparing for more important changes to support per-server
17089 session limitations and queueing :
17090 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
17091 - added the 'weight' parameter to the servers, limited to 1..256. It applies
17092 to roundrobin and source hash.
17093 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
17094
willy tarreaue0dd2692006-03-30 16:27:34 +0200170952006/03/30 : 1.2.11.1
17096 - under some conditions, it might have been possible that when the
17097 last dead server became available, it would not have been used
17098 till another one would have changed state. Could not be reproduced
17099 at all, however seems possible from the code.
17100
willy tarreaud2058dc2006-03-25 20:35:41 +0100171012006/03/25 : 1.2.11
17102 - added the '-db' command-line option to disable backgrounding.
17103 - added the -sf/-st command-line arguments which are used to specify
17104 a list of pids to send a FINISH or TERMINATE signal upon startup.
17105 They will also be asked to release their port if a bind fails.
17106 - reworked the startup mechanism to allow the sending of a signal to a list
17107 of old pids if a socket cannot be bound, with a retry for a limited amount
17108 of time (1 second by default).
17109 - added the ability to enforce limits on memory usage.
17110 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
17111 - re-architectured the server round-robin mechanism to ease integration of
17112 other algorithms. It now relies on the number of active and backup servers.
17113 - added a counter for the number of active and backup servers, and report
17114 these numbers upon SIGHUP or state change.
17115
willy tarreaubfad5742006-03-23 14:19:11 +0100171162006/03/23 : 1.2.10.1
17117 - while fixing the backup server round-robin "feature", a new bug was
17118 introduced which could miss some backup servers.
17119 - the displayed proxy name was wrong when dumping upon SIGHUP.
17120
willy tarreauaaff30e2006-03-19 21:30:41 +0100171212006/03/19 : 1.2.10
17122 - assert.h is needed when DEBUG is defined.
17123 - ENORMOUS long standing bug affecting the epoll polling system :
17124 event_data is a union, not a structure !
17125 - Make fd management more robust and easier to debug. Also some
17126 micro-optimisations.
17127 - Limit the number of consecutive accept() in multi-process mode.
17128 This produces a more evenly distributed load across the processes and
17129 slightly improves performance by reducing bottlenecks.
17130 - Make health-checks be more regular, and faster to retry after a timeout.
17131 - Fixed some messages to ease parsing of alerts.
17132 - provided a patch to enable epoll on RHEL3 kernels.
17133 - Separated OpenBSD build from the main Makefile into a new one.
17134
willy tarreau50be0172006-03-15 19:41:19 +0100171352006/03/15 : 1.2.9
17136 - haproxy could not be stopped after being paused, it had to be woken up
17137 first. This has been fixed.
17138 - the 'ulimit-n' parameter is now optional and by default computed from
17139 maxconn + the number of listeners + the number of health-checks.
17140 - it is now possible to specify a maximum number of connections at build
17141 time with the SYSTEM_MAXCONN define. The value set in the configuration
17142 file will then be limited to this value, and only the command-line '-n'
17143 option will be able to bypass it. It will prevent against accidental
17144 high memory usage on small systems.
17145 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
17146 versions did not detect a line beginning with a space as the continuation
17147 of previous header. It is now correct.
17148 - health checks sent to servers configured with identical intervals were
17149 sent in perfect synchronisation because the initial time was the same
17150 for all. This could induce high load peaks when fragile servers were
17151 hosting tens of instances for the same application. Now the load is
17152 spread evenly across the smallest interval amongst a listener.
17153 - a new 'forceclose' option was added to make the proxy close the outgoing
17154 channel to the server once it has sent all its headers and the server
17155 starts responding. This helps some servers which don't close upon the
17156 'Connection: close' header. It implies 'option httpclose'.
17157 - there was a bug in the way the backup servers were handled. They were
17158 erroneously load-balanced while the doc said the opposite. Since
17159 load-balanced backup servers is one of the features some people have
17160 been asking for, the problem was fixed to reflect the documented
17161 behaviour and a new option 'allbackups' was introduced to provide the
17162 feature to those who need it.
17163 - a never ending connect() could lead to a fast select() loop if its
17164 timeout times the number of retransmits exceeded the server read or write
17165 timeout, because the later was used to compute select()'s timeout while
17166 the connection timeout was not reached.
17167 - now we initialize the libc's localtime structures very early so that even
17168 under OOM conditions, we can still send dated error messages without
17169 segfaulting.
17170 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
17171 descriptors are closed.
17172
willy tarreau065f1c02006-01-29 22:10:07 +0100171732006/01/29 : 1.2.8
17174 - fixed a nasty bug affecting poll/epoll which could return unmodified data
17175 from the server to the client, and sometimes lead to memory corruption
17176 crashing the process.
17177 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
17178
171792005/12/18 : 1.2.7.1
17180 - the "retries" option was ignored because connect() could not return an
17181 error if the connection failed before the timeout.
17182 - TCP health-checks could not detect a connection refused in poll/epoll
17183 mode.
17184
willy tarreaua56eca72005-12-18 01:34:42 +0100171852005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010017186 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
17187 least on Solaris, this caused the libc's regex primitives to be used instead
17188 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010017189 - delayed the quiet mode during startup so that most of the startup alerts can
17190 be displayed even in quiet mode.
17191 - display an alert when a listener has no address, invalid or no port, or when
17192 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010017193 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010017194
willy tarreaub952e1d2005-12-18 01:31:20 +0100171952005/10/09 : 1.2.7rc (1.1.33rc)
17196 - second batch of socklen_t changes.
17197 - clean-ups from Cameron Simpson.
17198 - because tv_remain() does not know about eternity, using no timeout can
17199 make select() spin around a null time-out. Bug reported by Cameron Simpson.
17200 - client read timeout was not properly set to eternity initialized after an
17201 accept() if it was not set in the config. It remained undetected so long
17202 because eternity is 0 and newly allocated pages are zeroed by the system.
17203 - do not call get_original_dst() when not in transparent mode.
17204 - implemented a workaround for a bug in certain epoll() implementations on
17205 linux-2.4 kernels (epoll-lt <= 0.21).
17206 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
17207
willy tarreauc5f73ed2005-12-18 01:26:38 +0100172082005/08/07 : 1.2.6
17209 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
17210
172112005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010017212 - added the number of active sessions (proxy/process) in the logs
17213
172142005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010017215 - the time-out fix introduced in 1.1.25 caused a corner case where it was
17216 possible for a client to keep a connection maintained regardless of the
17217 timeout if the server closed the connection during the HEADER phase,
17218 while the client ignored the close request while doing nothing in the
17219 other direction. This has been fixed now by ensuring that read timeouts
17220 are re-armed when switching to any SHUTW state.
17221
172222005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
17223 - enhanced error reporting in the logs. Now the proxy will precisely detect
17224 various error conditions related to the system and/or process limits, and
17225 generate LOG_EMERG logs indicating that a resource has been exhausted.
17226 - logs will contain two new characters for the error cause : 'R' indicates
17227 a resource exhausted, and 'I' indicates an internal error, though this
17228 one should never happen.
17229 - server connection timeouts can now be reported in the logs (sC), as well
17230 as connections refused because of maxconn limitations (PC).
17231
172322005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
17233 - new global configuration keyword "ulimit-n" may be used to raise the FD
17234 limit to usable values.
17235 - a warning is now displayed on startup if the FD limit is lower than the
17236 configured maximum number of sockets.
17237
172382005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
17239 - new configuration keyword "monitor-net" makes it possible to be monitored
17240 by external devices which connect to the proxy without being logged nor
17241 forwarded to any server. Particularly useful on generic TCPv4 relays.
17242
willy tarreau5dffb602005-12-18 01:15:23 +0100172432005/06/21 : 1.2.5.2
17244 - fixed build on PPC where chars are unsigned by default
17245
willy tarreau08dedbe2005-12-18 01:13:48 +0100172462005/05/02 : 1.2.5.1
17247 - dirty hack to fix a bug introduced with epoll : if we close an FD and
17248 immediately reassign it to another session through a connect(), the
17249 Prev{Read,Write}Events are not updated, which causes trouble detecting
17250 changes, thus leading to many timeouts at high loads.
17251
willy tarreau64a3cc32005-12-18 01:13:11 +0100172522005/04/30 : 1.2.5 (1.1.31)
17253 - changed the runtime argument to disable epoll() to '-de'
17254 - changed the runtime argument to disable poll() to '-dp'
17255 - added global options 'nopoll' and 'noepoll' to do the same at the
17256 configuration level.
17257 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
17258 support epoll().
17259 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
17260 - conditionned signals redirection to #ifdef DEBUG_MEMORY
17261
willy tarreau1c2ad212005-12-18 01:11:29 +0100172622005/04/26 : 1.2.5-pre4
17263 - made epoll() support a compile-time option : ENABLE_EPOLL
17264 - provided a very little libc replacement for a possibly missing epoll()
17265 implementation which can be enabled by -DUSE_MY_EPOLL
17266 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
17267 The equivalent runtime argument becomes '-P'. A few tests show that it
17268 performs like select() with many fds, but slightly slower (certainly
17269 because of the higher amount of memory involved).
17270 - separated the 3 polling methods and the tasks scheduler into 4 distinct
17271 functions which makes the code a lot more modular.
17272 - moved some event tables to private static declarations inside the poller
17273 functions.
17274 - the poller functions can now initialize themselves, run, and cleanup.
17275 - changed the runtime argument to enable epoll() to '-E'.
17276 - removed buggy epoll_ctl() code in the client_retnclose() function. This
17277 function was never meant to remove anything.
17278 - fixed a typo which caused glibc to yell about a double free on exit.
17279 - removed error checking after epoll_ctl(DEL) because we can never know if
17280 the fd is still active or already closed.
17281 - added a few entries in the makefile
17282
willy tarreauad90a0c2005-12-18 01:09:15 +0100172832005/04/25 : 1.2.5-pre3
17284 - experimental epoll() support (use temporary '-e' argument)
17285
172862005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010017287 - implemented the HTTP 303 code for error redirection. This forces the
17288 browser to fetch the given URI with a GET request. The new keyword for
17289 this is 'errorloc303', and a new 'errorloc302' keyword has been created
17290 to make them easily distinguishable.
17291 - added more controls in the parser for valid use of '\x' sequence.
17292 - few fixes from Alex & Klaus
17293
willy tarreauad90a0c2005-12-18 01:09:15 +0100172942005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010017295 - fixed a few errors in the documentation
17296
172972005/02/13
17298 - do not pre-initialize unused file-descriptors before select() anymore.
17299
willy tarreau12350152005-12-18 01:03:27 +0100173002005/01/22 : 1.2.4
17301 - merged Alexander Lazic's and Klaus Wagner's work on application
17302 cookie-based persistence. Since this is the first merge, this version is
17303 not intended for general use and reports are more than welcome. Some
17304 documentation is really needed though.
17305
willy tarreau0174f312005-12-18 01:02:42 +0100173062005/01/22 : 1.2.3 (1.1.30)
17307 - add an architecture guide to the documentation
17308 - released without any changes
17309
173102004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
17311 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
17312 compatible with Apache. This limit can be configured in the makefile now.
17313 Thanks to Eric Fehr for the checks.
17314 - added a per-server "source" option which now makes it possible to bind to
17315 a different source for each (potentially identical) server.
17316 - changed cookie-based server selection slightly to allow several servers to
17317 share a same cookie, thus making it possible to associate backup servers to
17318 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
17319 - added the cookie 'prefix' mode which makes it possible to use persistence
17320 with thin clients which support only one cookie. The server name is prefixed
17321 before the application cookie, and restore back.
17322 - fixed the order of servers within an instance to match documentation. Now
17323 the servers are *really* used in the order of their declaration. This is
17324 particularly important when multiple backup servers are in use.
17325
willy tarreau4302f492005-12-18 01:00:37 +0100173262004/10/18 : 1.2.2 (1.1.29)
17327 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
17328 option was enabled without the 'tcplog' option.
17329 - encode_string() would use hdr_encode_map instead of the map argument.
17330
173312004/08/10 : (1.1.29-pre2)
17332 - the logged request is now encoded with '#XX' for unprintable characters
17333 - new keywords 'capture request header' and 'capture response header' enable
17334 logging of arbitrary HTTP headers in requests and responses
17335 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
17336
willy tarreau982249e2005-12-18 00:57:06 +0100173372004/06/06 : 1.2.1 (1.1.28)
17338 - added the '-V' command line option to verbosely report errors even though
17339 the -q or 'quiet' options are specified. This is useful with '-c'.
17340 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010017341
willy tarreau982249e2005-12-18 00:57:06 +0100173422004/06/05 :
17343 - added the "logasap" option which produces a log without waiting for the data
17344 to be transferred from the server to the client.
17345 - added the "httpclose" option which removes any "connection:" header and adds
17346 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010017347 - added the 'checkcache' option which blocks cacheable responses containing
17348 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010017349 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
17350 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010017351
173522004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010017353 - send an EMERG log when no server is available for a given proxy
17354 - added the '-c' command line option to syntactically check the
17355 configuration file without starting the service.
17356
willy tarreau8a86dbf2005-12-18 00:45:59 +0100173572003/11/09 : 1.2.0
17358 - the same as 1.1.27 + IPv6 support on the client side
17359
willy tarreaufe2c5c12005-12-17 14:14:34 +0100173602003/10/27 : 1.1.27
17361 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
17362 bug : the code still assumed that HTTP requests were the same size as the
17363 original ones (22 bytes), and failed if they were not.
17364 - added support for pidfiles.
17365
willy tarreauc58fc692005-12-17 14:13:08 +0100173662003/10/22 : 1.1.26
17367 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
17368 broke almost all compatibility with POST requests, because the proxy
17369 stopped to read anything from the client as soon as it got all of its
17370 headers.
17371
willy tarreauc1cae632005-12-17 14:12:23 +0100173722003/10/15 : 1.1.25
17373 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
17374 generic TCP proxies, or lighter logs for HTTP proxies.
17375 - fixed a time-out condition wrongly reported as client time-out in data
17376 phase if the client timeout was lower than the connect timeout times the
17377 number of retries.
17378
willy tarreau197e8ec2005-12-17 14:10:59 +0100173792003/09/21 : 1.1.24
17380 - if a client sent a full request then shut its write connection down, then
17381 the request was aborted. This case was detected only when using haproxy
17382 both as health-check client and as a server.
17383 - if 'option httpchk' is used in a 'health' mode server, then responses will
17384 change from 'OK' to 'HTTP/1.0 200 OK'.
17385 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
17386 server response followed by a close could be ignored, and the server seen
17387 as failed.
17388
willy tarreaueedaa9f2005-12-17 14:08:03 +0100173892003/09/19 : 1.1.23
17390 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
17391 'default' sections to keep previous parameters, and not initialize logs
17392 correctly.
17393 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
17394 relying on 'dispatch' mode to segfault at the first connection.
17395 - 'option httpchk' now supports method, HTTP version and a few headers.
17396 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
17397 'defaults' section
17398
173992003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010017400 - 'listen' now supports optionnal address:port-range lists
17401 - 'bind' introduced to add new listen addresses
17402 - fixed a bug which caused a session to be kept established on a server till
17403 it timed out if the client closed during the DATA phase.
17404 - the port part of each server address can now be empty to make the proxy
17405 connect to the server on the same port it was connected to, be an absolute
17406 unsigned number to reflect a single port (as in older versions), or an
17407 explicitly signed number (+N/-N) to indicate that this offset must be
17408 applied to the port the proxy was connected to, when connecting to the
17409 server.
17410 - the 'port' server option allows the user to specify a different
17411 health-check port than the service one. It is mandatory when only relative
17412 ports have been specified and check is required. By default, the checks are
17413 sent to the service port.
17414 - new 'defaults' section which is rather similar to 'listen' except that all
17415 values are only used as default values for future 'listen' sections, until
17416 a new 'defaults' resets them. At the moment, server options, regexes,
17417 cookie names and captures cannot be set in the 'defaults' section.
17418
willy tarreau2f6ba652005-12-17 13:57:42 +0100174192003/05/06 : 1.1.21
17420 - changed the debug output format so that it now includes the session unique
17421 ID followed by the instance name at the beginning of each line.
17422 - in debug mode, accept now shows the client's IP and port.
17423 - added one 3 small debugging scripts to search and pretty print debug output
17424 - changed the default health check request to "OPTIONS /" instead of
17425 "OPTIONS *" since not all servers implement the later one.
17426 - "option httpchk" now accepts an optional parameter allowing the user to
17427 specify and URI other than '/' during health-checks.
17428
willy tarreaub1ff9db2005-12-17 13:51:03 +0100174292003/04/21 : 1.1.20
17430 - fixed two problems with time-outs, one where a server would be logged as
17431 timed out during transfer that take longer to complete than the fixed
17432 time-out, and one where clients were logged as timed-out during the data
17433 phase because they didn't have anything to send. This sometimes caused
17434 slow client connections to close too early while in fact there was no
17435 problem. The proper fix would be to have a per-fd time-out with
17436 conditions depending on the state of the HTTP FSM.
17437
willy tarreau906b2682005-12-17 13:49:52 +0100174382003/04/16 : 1.1.19
17439 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
17440 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
17441 cookie persistence because it uses "cookie:". Two memcmp() have been
17442 replaced with strncasecmp().
17443
willy tarreau036e1ce2005-12-17 13:46:33 +0100174442003/04/02 : 1.1.18
17445 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
17446 REGEX=pcre on the make command line.
17447 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
17448 - when explicit source address binding is required, it is now also used for
17449 health-checks.
17450 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
17451 itself.
17452 - factored several strings to reduce binary size by about 2 kB.
17453 - replaced setreuid() and setregid() with more standard setuid() and setgid().
17454 - added 4 status flags to the log line indicating who ended the connection
17455 first, the sessions state, the validity of the cookie, and action taken on
17456 the set-cookie header.
17457
174582002/10/18 : 1.1.17
17459 - add the notion of "backup" servers, which are used only when all other
17460 servers are down.
17461 - make Set-Cookie return "" instead of "(null)" when the server has no
17462 cookie assigned (useful for backup servers).
17463 - "log" now supports an optionnal level name (info, notice, err ...) above
17464 which nothing is sent.
17465 - replaced some strncmp() with memcmp() for better efficiency.
17466 - added "capture cookie" option which logs client and/or server cookies
17467 - cleaned up/down messages and dump servers states upon SIGHUP
17468 - added a redirection feature for errors : "errorloc <errnum> <url>"
17469 - now we won't insist on connecting to a dead server, even with a cookie,
17470 unless option "persist" is specified.
17471 - added HTTP/408 response for client request time-out and HTTP/50[234] for
17472 server reply time-out or errors.
17473
174742002/09/01 : 1.1.16
17475 - implement HTTP health checks when option "httpchk" is specified.
17476
174772002/08/07 : 1.1.15
17478 - replaced setpgid()/setpgrp() with setsid() for better portability, because
17479 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
17480
174812002/07/20 : 1.1.14
17482 - added "postonly" cookie mode
17483
174842002/07/15 : 1.1.13
17485 - tv_diff used inverted parameters which led to negative times !
17486
174872002/07/13 : 1.1.12
17488 - fixed stats monitoring, and optimized some tv_* for most common cases.
17489 - replaced temporary 'newhdr' with 'trash' to reduce stack size
17490 - made HTTP errors more HTML-fiendly.
17491 - renamed strlcpy() to strlcpy2() because of a slightly difference between
17492 their behaviour (return value), to avoid confusion.
17493 - restricted HTTP messages to HTTP proxies only
17494 - added a 502 message when the connection has been refused by the server,
17495 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
17496 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
17497 inserting a cookie, because some caches (apache) don't understand it.
17498 - fixed processing of server headers when client is in SHUTR state
17499
175002002/07/04 :
17501 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
17502 setpgid()
17503
175042002/06/04 : 1.1.11
17505 - fixed multi-cookie handling in client request to allow clean deletion
17506 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010017507 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010017508 - added a "nocache" option to "cookie" to specify that we explicitly want
17509 to add a "cache-control" header when we add a cookie.
17510 It is also possible to add an "Expires: <old-date>" to keep compatibility
17511 with old/broken caches.
17512
175132002/05/10 : 1.1.10
17514 - if a cookie is used in insert+indirect mode, it's desirable that the
17515 the servers don't see it. It was not possible to remove it correctly
17516 with regexps, so now it's removed automatically.
17517
175182002/04/19 : 1.1.9
17519 - don't use snprintf()'s return value as an end of message since it may
17520 be larger. This caused bus errors and segfaults in internal libc's
17521 getenv() during localtime() in send_log().
17522 - removed dead insecure send_syslog() function and all references to it.
17523 - fixed warnings on Solaris due to buggy implementation of isXXXX().
17524
175252002/04/18 : 1.1.8
17526 - option "dontlognull"
17527 - fixed "double space" bug in config parser
17528 - fixed an uninitialized server field in case of dispatch
17529 with no existing server which could cause a segfault during
17530 logging.
17531 - the pid logged was always the father's, which was wrong for daemons.
17532 - fixed wrong level "LOG_INFO" for message "proxy started".
17533
175342002/04/13 :
17535 - http logging is now complete :
17536 - ip:port, date, proxy, server
17537 - req_time, conn_time, hdr_time, tot_time
17538 - status, size, request
17539 - source address
17540
175412002/04/12 : 1.1.7
17542 - added option forwardfor
17543 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
17544 - added "log global" in "listen" section.
17545
175462002/04/09 :
17547 - added a new "global" section :
17548 - logs
17549 - debug, quiet, daemon modes
17550 - uid, gid, chroot, nbproc, maxconn
17551
175522002/04/08 : 1.1.6
17553 - regex are now chained and not limited anymore.
17554 - unavailable server now returns HTTP/502.
17555 - increased per-line args limit to 40
17556 - added reqallow/reqdeny to block some request on matches
17557 - added HTTP 400/403 responses
17558
175592002/04/03 : 1.1.5
17560 - connection logging displayed incorrect source address.
17561 - added proxy start/stop and server up/down log events.
17562 - replaced log message short buffers with larger trash.
17563 - enlarged buffer to 8 kB and replace buffer to 4 kB.
17564
175652002/03/25 : 1.1.4
17566 - made rise/fall/interval time configurable
17567
175682002/03/22 : 1.1.3
17569 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
17570 which could lead to loops.
17571
175722002/03/21 : 1.1.2
17573 - fixed a bug in buffer management where we could have a loop
17574 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
17575 => implemented an adjustable buffer limit.
17576 - fixed a bug : expiration of tasks in wait queue timeout is used again,
17577 and running tasks are skipped.
17578 - added some debug lines for accept events.
17579 - send warnings for servers up/down.
17580
175812002/03/12 : 1.1.1
17582 - fixed a bug in total failure handling
17583 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
17584
175852002/03/10 : 1.1.0
17586 - fixed a few timeout bugs
17587 - rearranged the task scheduler subsystem to improve performance,
17588 add new tasks, and make it easier to later port to librt ;
17589 - allow multiple accept() for one select() wake up ;
17590 - implemented internal load balancing with basic health-check ;
17591 - cookie insertion and header add/replace/delete, with better strings
17592 support.
17593
175942002/03/08
17595 - reworked buffer handling to fix a few rewrite bugs, and
17596 improve overall performance.
17597 - implement the "purge" option to delete server cookies in direct mode.
17598
175992002/03/07
17600 - fixed some error cases where the maxfd was not decreased.
17601
176022002/02/26
17603 - now supports transparent proxying, at least on linux 2.4.
17604
176052002/02/12
17606 - soft stop works again (fixed select timeout computation).
17607 - it seems that TCP proxies sometimes cannot timeout.
17608 - added a "quiet" mode.
17609 - enforce file descriptor limitation on socket() and accept().
17610
176112001/12/30 : release of version 1.0.2 : fixed a bug in header processing
176122001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
176132001/12/16 : release of version 1.0.0.
176142001/12/16 : added syslog capability for each accepted connection.
176152001/11/19 : corrected premature end of files and occasional SIGPIPE.
176162001/10/31 : added health-check type servers (mode health) which replies OK then closes.
176172001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
17618 with or without cookies (use keyword http for this).
176192001/09/01 : added client/server header replacing with regexps.
17620 eg:
17621 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
17622 srvexp ^Server:\ .* Server:\ Apache
176232000/11/29 : first fully working release with complete FSMs and timeouts.
176242000/11/28 : major rewrite
176252000/11/26 : first write