blob: 8f29cdf842a51bd1f0547a935b9ea298b43d656d [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Willy Tarreaueaded982022-12-01 15:25:34 +010042022/12/01 : 2.8-dev0
5 - MINOR: version: mention that it's development again
6
Willy Tarreau437fd282022-12-01 15:16:46 +010072022/12/01 : 2.7.0
8 - MINOR: ssl: forgotten newline in error messages on ca-file
9 - BUG/MINOR: ssl: shut the ca-file errors emitted during httpclient init
10 - DOC: config: provide some configuration hints for "http-reuse"
11 - DOC: config: refer to section about quoting in the "add_item" converter
12 - DOC: halog: explain how to use -ac and -ad in the help message
13 - DOC: config: clarify the fact that SNI should not be used in HTTP scenarios
14 - DOC: config: mention that a single monitor-uri rule is supported
15 - DOC: config: explain how default matching method for ACL works
16 - DOC: config: clarify the fact that "retries" is not just for connections
17 - BUILD: halog: fix missing double-quote at end of help line
18 - DOC: config: clarify the -m dir and -m dom pattern matching methods
19 - MINOR: activity: report uptime in "show activity"
20 - REORG: activity/cli: move the "show activity" handler to activity.c
21 - DEV: poll: add support for epoll
22 - DEV: tcploop: centralize the polling code into wait_for_fd()
23 - DEV: tcploop: add support for POLLRDHUP when supported
24 - DEV: tcploop: do not report an error on POLLERR
25 - DEV: tcploop: add optional support for epoll
26 - SCRIPTS: announce-release: add a link to the data plane API
27 - CLEANUP: stick-table: fill alignment holes in the stktable struct
28 - MINOR: stick-table: store a per-table hash seed and use it
29 - MINOR: stick-table: show the shard number in each entry's "show table" output
30 - CLEANUP: ncbuf: remove ncb_blk args by value
31 - CLEANUP: ncbuf: inline small functions
32 - CLEANUP: ncbuf: use standard BUG_ON with DEBUG_STRICT
33 - BUG/MINOR: quic: Endless loop during retransmissions
34 - MINOR: mux-h2: add the expire task and its expiration date in "show fd"
35 - BUG/MINOR: peers: always initialize the stksess shard value
36 - REGTESTS: fix peers-related regtests regarding "show table"
37 - BUG/MEDIUM: mux-h1: Close client H1C on EOS when there is no output data
38 - MINOR: stick-table: change the API of the function used to calculate the shard
39 - CLEANUP: peers: factor out the key len calculation in received updates
40 - BUG/MINOR: peers: always update the stksess shard number on incoming updates
41 - CLEANUP: assorted typo fixes in the code and comments
42 - MINOR: mux-h1: add the expire task and its expiration date in "show fd"
43 - MINOR: debug: improve error handling on the memstats command parser
44 - BUILD: quic: allow build with USE_QUIC and USE_OPENSSL_WOLFSSL
45 - CLEANUP: anon: clarify the help message on "debug dev hash"
46 - MINOR: debug: relax access restrictions on "debug dev hash" and "memstats"
47 - SCRIPTS: run-regtests: add a version check
48 - MINOR: version: mention that it's stable now
49
Willy Tarreau0279df92022-11-24 17:13:05 +0100502022/11/24 : 2.7-dev10
51 - MEDIUM: tcp-act: add parameter rst-ttl to silent-drop
52 - BUG/MAJOR: quic: Crash upon retransmission of dgrams with several packets
53 - MINOR: cli: print parsed command when not found
54 - BUG/MAJOR: quic: Crash after discarding packet number spaces
55 - CLEANUP: quic: replace "choosen" with "chosen" all over the code
56 - MINOR: cli/pools: store "show pools" results into a temporary array
57 - MINOR: cli/pools: add sorting capabilities to "show pools"
58 - MINOR: cli/pools: add pool name filtering capability to "show pools"
59 - DOC: configuration: fix quic prefix typo
60 - MINOR: quic: report error if force-retry without cluster-secret
61 - MINOR: global: generate random cluster.secret if not defined
62 - BUG/MINOR: resolvers: do not run the timeout task when there's no resolution
63 - BUG/MINOR: server/idle: at least use atomic stores when updating max_used_conns
64 - MINOR: server/idle: make the next_takeover index per-tgroup
65 - BUILD: listener: fix build warning on global_listener_rwlock without threads
66 - BUG/MAJOR: sched: protect task during removal from wait queue
67 - BUILD: sched: fix build with DEBUG_THREAD with the previous commit
68 - DOC: quic: add note on performance issue with listener contention
69 - BUG/MINOR: cfgparse-listen: fix ebpt_next_dup pointer dereference on proxy "from" inheritance
70 - BUG/MINOR: log: fix parse_log_message rfc5424 size check
71 - CLEANUP: arg: remove extra check in make_arg_list arg escaping
72 - CLEANUP: tools: extra check in utoa_pad
73 - MINOR: h1: Consider empty port as invalid in authority for CONNECT
74 - MINOR: http: Considere empty ports as valid default ports
75 - BUG/MINOR: http-htx: Normalized absolute URIs with an empty port
76 - BUG/MINOR: h1: Replace authority validation to conform RFC3986
77 - REG-TESTS: http: Add more tests about authority/host matching
78 - BUG/MINOR: http-htx: Don't consider an URI as normalized after a set-uri action
79 - BUG/MEDIUM: mux-h1: Don't release H1C on timeout if there is a SC attached
80 - BUG/MEDIUM: mux-h1: Subscribe for reads on error on sending path
81 - BUILD: http-htx: Silent build error about a possible NULL start-line
82 - DOC: configuration.txt: add default_value for table_idle signature
83 - BUILD: ssl-sock: Silent error about NULL deref in ssl_sock_bind_verifycbk()
84 - BUG/MEDIUM: mux-h1: Remove H1C_F_WAIT_NEXT_REQ flag on a next request
85 - BUG/MINOR: mux-h1: Fix handling of 408-Request-Time-Out
86 - MINOR: mux-h1: Remove H1C_F_WAIT_NEXT_REQ in functions handling errors
87 - MINOR: mux-h1: Avoid useless call to h1_send() if no error is sent
88 - DOC: configuration.txt: fix typo in table_idle signature
89 - BUILD: stick-tables: fix build breakage in xxhash on older compilers
90 - BUILD: compiler: include compiler's definitions before ours
91 - BUILD: quic: global.h is needed in cfgparse-quic
92 - CLEANUP: tools: do not needlessly include xxhash nor cli from tools.h
93 - BUILD: flags: really restrict the cases where flags are exposed
94 - BUILD: makefile: minor reordering of objects by build time
95 - BUILD: quic: silence two invalid build warnings at -O1 with gcc-6.5
96 - BUILD: quic: use openssl-compat.h instead of openssl/ssl.h
97 - MEDIUM: ssl: add minimal WolfSSL support with OpenSSL compatibility mode
98 - MINOR: sample: make the rand() sample fetch function use the statistical_prng
99 - MINOR: auth: silence null dereference warning in check_user()
100 - CLEANUP: peers: fix format string for status messages (int signedness)
101 - CLEANUP: qpack: fix format string in debugging code (int signedness)
102 - CLEANUP: qpack: properly use the QPACK macros not HPACK ones in debug code
103 - BUG/MEDIUM: quic: fix datagram dropping on queueing failed
104
Willy Tarreaua0abec82022-11-18 17:48:49 +01001052022/11/18 : 2.7-dev9
106 - BUILD: quic: QUIC mux build fix for 32-bit build
107 - BUILD: scripts: disable tests build on QuicTLS build
108 - BUG/MEDIUM: httpclient: segfault when the httpclient parser fails
109 - BUILD: ssl_sock: fix null dereference for QUIC build
110 - BUILD: quic: Fix build for m68k cross-compilation
111 - BUG/MINOR: quic: fix buffer overflow on retry token generation
112 - MINOR: quic: add version field on quic_rx_packet
113 - MINOR: quic: extend pn_offset field from quic_rx_packet
114 - MINOR: quic: define first packet flag
115 - MINOR: quic: extract connection retrieval
116 - MINOR: quic: split and rename qc_lstnr_pkt_rcv()
117 - MINOR: quic: refactor packet drop on reception
118 - MINOR: quic: extend Retry token check function
119 - BUG/MINOR: log: Preserve message facility when the log target is a ring buffer
120 - BUG/MINOR: ring: Properly parse connect timeout
121 - BUG/MEDIUM: httpclient/lua: crash when the lua task timeout before the httpclient
122 - BUG/MEDIUM: httpclient: check if the httpclient was released in the IO handler
123 - REGTESTS: httpclient/lua: test the lua task timeout with the httpclient
124 - CI: github: dump the backtrace of coredumps in the alpine container
125 - BUILD: Makefile: add "USE_SHM_OPEN" on the linux-musl target
126 - DOC: lua: add a note about compression w/ httpclient
127 - CLEANUP: mworker/cli: rename the status function to loadstatus
128 - MINOR: mworker/cli: does no try to dump the startup-logs w/o USE_SHM_OPEN
129 - MINOR: list: fixing typo in MT_LIST_LOCK_ELT
130 - DOC/MINOR: list: fixing MT_LIST_LOCK_ELT macro documentation
131 - MINOR: list: adding MT_LIST_APPEND_LOCKED macro
132 - BUG/MINOR: mux-quic: complete flow-control for uni streams
133 - BUG/MEDIUM: compression: handle rewrite errors when updating response headers
134 - MINOR: quic: do not crash on unhandled sendto error
135 - MINOR: quic: display unknown error sendto counter on stat page
136 - MINOR: peers: Support for peer shards
137 - MINOR: peers: handle multiple resync requests using shards
138 - BUG/MINOR: sink: Only use backend capability for the sink proxies
139 - BUG/MINOR: sink: Set default connect/server timeout for implicit ring buffers
140 - MINOR: ssl: add the SSL error string when failing to load a certificate
141 - MINOR: ssl: add the SSL error string before the chain
142 - MEDIUM: ssl: be stricter about chain error
143 - BUG/MAJOR: stick-table: don't process store-response rules for applets
144 - MINOR: quic: remove unnecessary quic_session_accept()
145 - BUG/MINOR: quic: fix subscribe operation
146 - BUG/MINOR: log: fixing bug in tcp syslog_io_handler Octet-Counting
147 - MINOR: ssl: dump the SSL string error when SSL_CTX_use_PrivateKey() failed.
148 - MINOR: quic: add counter for interrupted reception
149 - BUG/MINOR: quic: fix race condition on datagram purging
150 - CI: add monthly gcc cross compile jobs
151 - CLEANUP: assorted typo fixes in the code and comments
152 - CLEANUP: ssl: remove dead code in ssl_sock_load_pem_into_ckch()
153 - BUG/MINOR: httpclient: fixed memory allocation for the SSL ca_file
154 - BUG/MINOR: ssl: Memory leak of DH BIGNUM fields
155 - BUG/MINOR: ssl: Memory leak of AUTHORITY_KEYID struct when loading issuer
156 - BUG/MINOR: ssl: ocsp structure not freed properly in case of error
157 - CI: switch to the "latest" LibreSSL
158 - CI: enable QUIC for LibreSSL builds
159 - BUG/MEDIUM: ssl: Verify error codes can exceed 63
160 - MEDIUM: ssl: {ca,crt}-ignore-err can now use error constant name
161 - MINOR: ssl: x509_v_err_str converter transforms an integer to a X509_V_ERR name
162 - CLEANUP: cli: rename dynamic error printing state
163 - MINOR: cli: define usermsgs print context
164 - MINOR: server: clear prefix on stderr logs after add server
165 - BUG/MINOR: ssl: bind_conf is uncorrectly accessed when using QUIC
166 - BUILD: ssl_utils: fix build on gcc versions before 8
167 - BUILD: debug: remove unnecessary quotes in HA_WEAK() calls
168 - CI: emit the compiler's version in the build reports
169 - IMPORT: xxhash: update xxHash to version 0.8.1
170 - IMPORT: slz: declare len to fix debug build when optimal match is enabled
171 - IMPORT: slz: mention the potential header in slz_finish()
172 - IMPORT: slz: define and use a __fallthrough statement for switch/case
173 - BUILD: compiler: add a macro to detect if another one is set and equals 1
174 - BUILD: compiler: add a default definition for __has_attribute()
175 - BUILD: compiler: define a __fallthrough statement for switch/case
176 - BUILD: sample: use __fallthrough in smp_is_rw() and smp_dup()
177 - BUILD: quic: use __fallthrough in quic_connect_server()
178 - BUILD: ssl/crt-list: use __fallthrough in cli_io_handler_add_crtlist()
179 - BUILD: ssl: use __fallthrough in cli_io_handler_commit_{cert,cafile_crlfile}()
180 - BUILD: ssl: use __fallthrough in cli_io_handler_tlskeys_files()
181 - BUILD: hlua: use __fallthrough in hlua_post_init_state()
182 - BUILD: stream: use __fallthrough in stats_dump_full_strm_to_buffer()
183 - BUILD: tcpcheck: use __fallthrough in check_proxy_tcpcheck()
184 - BUILD: stats: use __fallthrough in stats_dump_proxy_to_buffer()
185 - BUILD: peers: use __fallthrough in peer_io_handler()
186 - BUILD: hash: use __fallthrough in hash_djb2()
187 - BUILD: tools: use __fallthrough in url_decode()
188 - BUILD: args: use __fallthrough in make_arg_list()
189 - BUILD: acl: use __fallthrough in parse_acl_expr()
190 - BUILD: spoe: use __fallthrough in spoe_handle_appctx()
191 - BUILD: logs: use __fallthrough in build_log_header()
192 - BUILD: check: use __fallthrough in __health_adjust()
193 - BUILD: http_act: use __fallthrough in parse_http_del_header()
194 - BUILD: h1_htx: use __fallthrough in h1_parse_chunk()
195 - BUILD: vars: use __fallthrough in var_accounting_{diff,add}()
196 - BUILD: map: use __fallthrough in cli_io_handler_*()
197 - BUILD: compression: use __fallthrough in comp_http_payload()
198 - BUILD: stconn: use __fallthrough in various shutw() functions
199 - BUILD: prometheus: use __fallthrough in promex_dump_metrics() and IO handler()
200 - CLEANUP: ssl: remove printf in bind_parse_ignore_err
201 - BUG/MINOR: ssl: crt-ignore-err memory leak with 'all' parameter
202 - BUG/MINOR: ssl: Fix potential overflow
203 - CLEANUP: stick-table: remove the unused table->exp_next
204 - OPTIM: stick-table: avoid atomic ops in stktable_requeue_exp() when possible
205 - BUG/MEDIUM: stick-table: fix a race condition when updating the expiration task
206 - MEDIUM: http-ana: remove set-cookie2 support
207 - BUG/MEDIUM: wdt/clock: properly handle early task hangs
208 - MINOR: deinit: add a "quick-exit" option to bypass the deinit step
209 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's pfx
210 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's key
211 - MINOR: ssl: ssl_sock_load_cert_chain() display error strings
212 - MINOR: ssl: reintroduce ERR_GET_LIB(ret) == ERR_LIB_PEM in ssl_sock_load_pem_into_ckch()
213 - BUG/MINOR: http-htx: Fix error handling during parsing http replies
214 - BUG/MINOR: resolvers: Don't wait periodic resolution on healthcheck failure
215 - BUG/MINOR: resolvers: Set port before IP address when processing SRV records
216 - BUG/MINOR: mux-fcgi: Be sure to send empty STDING record in case of zero-copy
217 - BUG/MEDIUM: mux-fcgi: Avoid value length overflow when it doesn't fit at once
218 - BUG/MINOR: ssl: SSL_load_error_strings might not be defined
219 - MINOR: pool/debug: create a new pool_alloc_flag() macro
220 - MINOR: dynbuf: switch allocation and release to macros to better track users
221 - BUG/MINOR: mux-h1: Do not send a last null chunk on body-less answers
222 - REG-TESTS: cache: Remove T-E header for 304-Not-Modified responses
223 - DOC: config: fix alphabetical ordering of global section
224 - MINOR: trace: split the CLI "trace" parser in CLI vs statement
225 - MEDIUM: trace: create a new "trace" statement in the "global" section
226 - BUG/MEDIUM: ring: fix creation of server in uninitialized ring
227 - BUILD: quic: fix dubious 0-byte overflow on qc_release_lost_pkts
228 - BUILD: makefile: mark poll and tcploop targets as phony
229 - BUILD: makefile: properly pass CC to sub-projects
230 - BUILD: makefile: move default verbosity settings to include/make/verbose.mk
231 - BUILD: makefile: use $(cmd_MAKE) in quiet mode
232 - BUILD: makefile: move the compiler option detection stuff to compiler.mk
233 - DEV: poll: make the connect() step an action as well
234 - DEV: poll: strip the "do_" prefix from reported function names
235 - DEV: poll: indicate the FD's side in front of its value
236 - BUG/MINOR: pool/cli: use ullong to report total pool usage in bytes
237 - MINOR: mux-h1: Remove usless code inside shutr callback
238 - CLEANUP: mux-h1; Rename H1S_F_ERROR flag into H1S_F_ERROR_MASK
239 - REORG: mux-h1: Reorg the H1C structure
240 - CLEANUP: mux-h1: Rename H1C_F_ST_ERROR and H1C_F_ST_SILENT_SHUT flags
241 - MINOR: mux-h1: Add a dedicated enum to deal with H1 connection state
242 - MEDIUM: mux-h1: Handle H1C states via its state field instead of H1C_F_ST_*
243 - MINOR: mux-h1: Don't handle subscribe for reads in h1_process_demux()
244 - CLEANUP: mux-h1: Rename H1C_F_ERR_PENDING into H1C_F_ABRT_PENDING
245 - MINOR: mux-h1: Add flag on H1 stream to deal with internal errors
246 - MEDIUM: mux-h1: Rely on the H1C to deal with shutdown for reads
247 - CLEANUP: mux-h1: Reorder H1 connection flags to avoid holes
248 - MEDIUM: mux-h1: Don't report a final error whe a message is aborted
249 - MEDIUM: mux-pt: Don't always set a final error on SE on the sending path
250 - MEDIUM: mux-h2: Introduce flags to deal with connection read/write errors
251 - CLEANUP: mux-h2: Remove unused fields in h2c structures
252 - MEDIUM: mux-fcgi: Introduce flags to deal with connection read/write errors
253 - MINOR: sconn: Set SE_FL_ERROR only when there is no more data to read
254 - MINOR: mux-h1: Rely on a H1S flag to know a WS key was found or not
255 - DOC: lua-api: Remove warning about the lua filters
256 - BUG/MEDIUM: listener: Fix race condition when updating the global mngmt task
257 - CLEANUP: listener: Remove useless task_queue from manage_global_listener_queue
258 - BUG/MINOR: mux-h1: Fix error handling when H1S allocation failed on client side
259 - DOC: internal: commit notes about polling states and flags
260 - DOC: internal: commit notes about polling states and flags on connect()
261 - CLEANUP: mux-h1: Don't test h1c in h1_shutw_conn()
262 - BUG/MINOR: http_ana/txn: don't re-initialize txn and req var lists
263 - BUG/MEDIUM: raw-sock: Don't report connection error if something was received
264 - BUG/MINOR: ssl: don't initialize the keylog callback when not required
265 - BUILD: Makefile: enable USE_SHM_OPEN by default on freebsd
266 - BUG/MEDIUM: peers: messages about unkown tables not correctly ignored
267 - MINOR: cfgparse: Always check the section position
268 - MEDIUM: thread: Restric nbthread/thread-group(s) to very first global sections
269 - BUILD: peers: Remove unused variables
270 - MINOR: ncbuf: complete doc for ncb_advance()
271 - BUG/MEDIUM: quic: fix unsuccessful handshakes on ncb_advance error
272 - BUG/MEDIUM: quic: fix memleak for out-of-order crypto data
273 - MINOR: quic: complete traces/debug for handshake
274
Willy Tarreauea8aebe2022-10-14 20:45:23 +02002752022/10/14 : 2.7-dev8
276 - BUG/MINOR: checks: update pgsql regex on auth packet
277 - DOC: config: Fix pgsql-check documentation to make user param mandatory
278 - CLEANUP: mux-quic: remove usage of non-standard ull type
279 - CLEANUP: quic: remove global var definition in quic_tls header
280 - BUG/MINOR: quic: adjust quic_tls prototypes
281 - CLEANUP: quic: fix headers
282 - CLEANUP: quic: remove unused function prototype
283 - CLEANUP: quic: remove duplicated varint code from xprt_quic.h
284 - CLEANUP: quic: create a dedicated quic_conn module
285 - BUG/MINOR: mux-quic: ignore STOP_SENDING for locally closed stream
286 - BUG/MEDIUM: lua: Don't crash in hlua_lua2arg_check on failure
287 - BUG/MEDIUM: lua: handle stick table implicit arguments right.
288 - BUILD: h1: silence an initiialized warning with gcc-4.7 and -Os
289 - MINOR: fd: add a new function to only raise RLIMIT_NOFILE
290 - MINOR: init: do not try to shrink existing RLIMIT_NOFIlE
291 - BUG/MINOR: http-fetch: Update method after a prefetch in smp_fetch_meth()
292 - BUILD: http_fetch: silence an uninitiialized warning with gcc-4/5/6 at -Os
293 - BUG/MINOR: hlua: hlua_channel_insert_data() behavior conflicts with documentation
294 - MINOR: quic: limit usage of ssl_sock_ctx in favor of quic_conn
295 - MINOR: mux-quic: check quic-conn return code on Tx
296 - CLEANUP: quic: fix indentation
297 - MEDIUM: quic: retrieve frontend destination address
298 - CLEANUP: Reapply ist.cocci (2)
299 - CLEANUP: Reapply strcmp.cocci
300 - CLEANUP: quic/receiver: remove the now unused tx_qring list
301 - BUG/MINOR: quic: set IP_PKTINFO socket option for QUIC receivers only
302 - MINOR: hlua: some luaL_checktype() calls were not guarded with MAY_LJMP
303 - DOC: configuration: missing 'if' in tcp-request content example
304 - MINOR: hlua: removing ambiguous lua_pushvalue with 0 index
305 - BUG/MAJOR: stick-tables: do not try to index a server name for applets
306 - MINOR: plock: support disabling exponential back-off
307 - MINOR: freq_ctr: use the thread's local time whenever possible
308 - MEDIUM: stick-table: switch the table lock to rwlock
309 - MINOR: stick-table: do not take an exclusive lock when downing ref_cnt
310 - MINOR: stick-table: move the write lock inside stktable_touch_with_exp()
311 - MEDIUM: stick-table: only take the lock when needed in stktable_touch_with_exp()
312 - MEDIUM: stick-table: make stksess_kill_if_expired() avoid the exclusive lock
313 - MEDIUM: stick-table: return inserted entry in __stktable_store()
314 - MEDIUM: stick-table: free newly allocated stkess if it couldn't be inserted
315 - MEDIUM: stick-table: switch to rdlock in stktable_lookup() and lookup_key()
316 - MEDIUM: stick-table: make stktable_get_entry() look up under a read lock
317 - MEDIUM: stick-table: do not take a lock to update t->current anymore.
318 - MEDIUM: stick-table: make stktable_set_entry() look up under a read lock
319 - MEDIUM: stick-table: requeue the expiration task out of the exclusive lock
320 - MINOR: stick-table: split stktable_store() between key and requeue
321 - MEDIUM: stick-table: always use atomic ops to requeue the table's task
322 - MEDIUM: stick-table: requeue the wakeup task out of the write lock
323 - BUG/MINOR: stick-table: fix build with DEBUG_THREAD
324 - REORG: mux-fcgi: Extract flags and enums into mux_fcgi-t.h
325 - MINOR: flags/mux-fcgi: Decode FCGI connection and stream flags
326 - BUG/MEDIUM: mux-h1: Add connection error handling when reading/sending on a pipe
327 - BUG/MEDIUM: mux-h1: Handle abort with an incomplete message during parsing
328 - BUG/MINOR: server: make sure "show servers state" hides private bits
329 - MINOR: checks: use the lighter PRNG for spread checks
330 - MEDIUM: checks: spread the checks load over random threads
331 - CI: SSL: use proper version generating when "latest" semantic is used
332 - CI: SSL: temporarily stick to LibreSSL=3.5.3
333 - MINOR: quic: New quic_cstream object implementation
334 - MINOR: quic: Extract CRYPTO frame parsing from qc_parse_pkt_frms()
335 - MINOR: quic: Use a non-contiguous buffer for RX CRYPTO data
336 - BUG/MINOR: quic: Stalled 0RTT connections with big ClientHello TLS message
337 - MINOR: quic: Split the secrets key allocation in two parts
338 - CLEANUP: quic: remove unused rxbufs member in receiver
339 - CLEANUP: quic: improve naming for rxbuf/datagrams handling
340 - MINOR: quic: implement datagram cleanup for quic_receiver_buf
341 - MINOR: ring: ring_cast_from_area() cast from an allocated area
342 - MINOR: buffers: split b_force_xfer() into b_cpy() and b_force_xfer()
343 - MINOR: logs: startup-logs can use a shm for logging the reload
344 - MINOR: mworker/cli: reload command displays the startup-logs
345 - MEDIUM: quic: respect the threads assigned to a bind line
346 - DOC: management: update the "reload" command of the master CLI
347 - BUILD: ssl_sock: bind_conf uninitialized in ssl_sock_bind_verifycbk()
348 - BUG/MEDIUM: httpclient: Don't set EOM flag on an empty HTX message
349 - MINOR: httpclient/lua: Don't set req_payload callback if body is empty
350 - DOC/CLEANUP: lua-api: some minor corrections
351 - DOC: lua-api: updating toolbox link
352 - DOC/CLEANUP: lua-api: removing duplicate core.proxies attribute
353 - DOC: management: add forgotten "show startup-logs"
354 - DOC: management: "show startup-logs" for master CLI
355 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in matrix.py
356 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in workflow definition
357
Willy Tarreaudd4a2a62022-10-03 15:20:38 +02003582022/10/03 : 2.7-dev7
359 - BUG/MEDIUM: mux-quic: fix nb_hreq decrement
360 - CLEANUP: httpclient: deleted unused variables
361 - MINOR: httpclient: enabled the use of SNI presets
362 - OPTIM: hpack-huff: reduce the cache footprint of the huffman decoder
363 - BUG/MINOR: mux-quic: do not keep detached qcs with empty Tx buffers
364 - REORG: mux-quic: extract traces in a dedicated source file
365 - REORG: mux-quic: export HTTP related function in a dedicated file
366 - MINOR: mux-quic: refactor snd_buf
367 - BUG/MEDIUM: mux-quic: properly trim HTX buffer on snd_buf reset
368 - BUG/MINOR: mux-h1: Account consumed output data on synchronous connection error
369 - BUG/MINOR: log: improper behavior when escaping log data
370 - CLEANUP: tools: removing escape_chunk() function
371 - MINOR: clock: split local and global date updates
372 - MINOR: pollers: only update the local date during busy polling
373 - MINOR: clock: do not update the global date too often
374 - REGTESTS: 4be_1srv_smtpchk_httpchk_layer47errors: Return valid SMTP replies
375 - MINOR: smtpchk: Update expect rule to fully match replies to EHLO commands
376 - BUG/MINOR: smtpchk: SMTP Service check should gracefully close SMTP transaction
377 - MINOR: list: documenting mt_list_for_each_entry_safe() macro
378 - CLEANUP: list: Fix mt_list_for_each_entry_safe indentation
379 - BUG/MINOR: hlua: Remove \n in Lua error message built with memprintf
380 - MINOR: hlua: Allow argument on lua-lod(-per-thread) directives
381 - BUG/MINOR: anon: memory illegal accesses in tools.c with hash_anon and hash_ipanon
382 - MEDIUM: mworker/cli: keep the connection of the FD that ask for a reload
383 - BUG/MINOR: hlua: fixing ambiguous sizeof in hlua_load_per_thread
384 - MINOR: mworker/cli: replace close() by fd_delete()
385 - MINOR: mworker: store and shows loading status
386 - MINOR: mworker: mworker_cli_proxy_new_listener() returns a bind_conf
387 - MINOR: mworker: stores the mcli_reload bind_conf
388 - MINOR: mworker/cli: the mcli_reload bind_conf only send the reload status
389 - DOC: management: describe the new reload command behavior
390 - CLEANUP: list: fix again some style issues in the recent comments
391 - BUG/MINOR: stream: Perform errors handling in right order in stream_new()
392 - BUG/MEDIUM: stconn: Reset SE descriptor when we fail to create a stream
393 - BUG/MEDIUM: resolvers: Remove aborted resolutions from query_ids tree
394 - DOC: management: add timeout on the "reload" command
395 - BUG/MINOR: ring: fix the size check in ring_make_from_area()
396 - BUG/MINOR: config: don't count trailing spaces as empty arg
397 - Revert "BUG/MINOR: config: don't count trailing spaces as empty arg"
398 - BUG/MINOR: hlua: fixing hlua_http_msg_del_data behavior
399 - BUG/MINOR: hlua: fixing hlua_http_msg_insert_data behavior
400 - MINOR: cli: Add anonymization on a missed element for 'show sess all'
401 - MINOR: cli: remove error message with 'set anon on|off'
402 - MINOR: tools: modify hash_ipanon in order to use it in cli
403 - MINOR: cli: use hash_ipanon to anonymized address
404 - MINOR: cli: Add an anonymization on a missed element in 'show server state'
405 - MINOR: config: correct errors about argument number in condition in cfgparse.c
406 - MINOR: config: Add other keywords when dump the anonymized configuration file
407 - MINOR: config: Add option line when the configuration file is dumped
408 - MINOR: cli: correct commentary and replace 'set global-key' name
409 - MINOR: tools: Impprove hash_ipanon to support dgram sockets and port offsets
410 - MINOR: tools: Impprove hash_ipanon to not hash FD-based addresses
411 - BUG/MINOR: hlua: _hlua_http_msg_delete incorrect behavior when offset is used
412 - DOC: management: httpclient can resolve server names in URLs
413 - BUG/MINOR: hlua: prevent crash when loading numerous arguments using lua-load(per-thread)
414 - DOC/CLEANUP: lua-api: removing duplicate date functions doc
415 - MINOR: hlua: ambiguous lua_pushvalue with 0 index
416 - BUG/MINOR: config: don't count trailing spaces as empty arg (v2)
417 - BUG/MEDIUM: config: count line arguments without dereferencing the output
418 - BUG/MAJOR: conn-idle: fix hash indexing issues on idle conns
419 - BUG/MINOR: config: insufficient syntax check of the global "maxconn" value
420 - BUG/MINOR: backend: only enforce turn-around state when not redispatching
421
Willy Tarreau4b10a5c2022-09-17 12:24:53 +02004222022/09/17 : 2.7-dev6
423 - MINOR: Revert part of clarifying samples support per os commit
424 - BUILD: makefile: enable crypt(3) for NetBSD
425 - BUG/MINOR: quic: Retransmitted frames marked as acknowledged
426 - BUG/MINOR: quic: Possible crash with "tls-ticket-keys" on QUIC bind lines
427 - MINOR: http-check: Remove support for headers/body in "option httpchk" version
428 - BUG/MINOR: h1: Support headers case adjustment for TCP proxies
429 - BUG/MINOR: quic: Possible crash when verifying certificates
430 - BUILD: quic: add some ifdef around the SSL_ERROR_* for libressl
431 - BUILD: ssl: fix ssl_sock_switchtx_cbk when no client_hello_cb
432 - BUILD: quic: temporarly ignore chacha20_poly1305 for libressl
433 - BUILD: quic: enable early data only with >= openssl 1.1.1
434 - BUILD: ssl: fix the ifdef mess in ssl_sock_initial_ctx
435 - BUILD: quic: fix the #ifdef in ssl_quic_initial_ctx()
436 - MINOR: quic: add QUIC support when no client_hello_cb
437 - MINOR: quic: Add traces about sent or resent TX frames
438 - MINOR: quic: No TRACE_LEAVE() in retrieve_qc_conn_from_cid()
439 - BUG/MINOR: quic: Wrong connection ID to thread ID association
440 - BUG/MINOR: task: always reset a new tasklet's call date
441 - BUG/MINOR: task: make task_instant_wakeup() work on a task not a tasklet
442 - MINOR: task: permanently enable latency measurement on tasklets
443 - CLEANUP: task: rename ->call_date to ->wake_date
444 - BUG/MINOR: sched: properly account for the CPU time of dying tasks
445 - MINOR: sched: store the current profile entry in the thread context
446 - BUG/MINOR: stream/sched: take into account CPU profiling for the last call
447 - MINOR: tasks: do not keep cpu and latency times in struct task
448 - MINOR: tools: add generic pointer hashing functions
449 - CLEANUP: activity: make memprof use the generic ptr_hash() function
450 - CLEANUP: activity: make taskprof use ptr_hash()
451 - MINOR: debug: add struct ha_caller to describe a calling location
452 - CLEANUP: debug: use struct ha_caller for memstat
453 - DEBUG: task: define a series of wakeup types for tasks and tasklets
454 - DEBUG: task: use struct ha_caller instead of arrays of file:line
455 - DEBUG: applet: instrument appctx_wakeup() to log the caller's location
456 - DEBUG: task: simplify the caller recording in DEBUG_TASK
457 - CLEANUP: task: move tid and wake_date into the common part
458 - CLEANUP: sched: remove duplicate code in run_tasks_from_list()
459 - CLEANUP: activity: make the number of sched activity entries more configurable
460 - DEBUG: resolvers: unstatify process_resolvers() to make it appear in profiling
461 - DEBUG: quic: export the few task handlers that often appear in task dumps
462 - MEDIUM: tasks/activity: combine the called function with the caller
463 - MINOR: tasks/activity: improve the caller-callee activity hash
464 - MINOR: activity/cli: support aggregating task profiling outputs
465 - MINOR: activity/cli: support sorting task profiling by total CPU time
466 - BUG/MINOR: signals/poller: set the poller timeout to 0 when there are signals
467 - BUG/MINOR: quic: Speed up the handshake completion only one time
468 - BUG/MINOR: quic: Trace fix about packet number space information.
469 - BUG/MINOR: h3: Crash when h3 trace verbosity is "minimal"
470 - MINOR: h3: Add the quic_conn object to h3 traces
471 - MINOR: h3: Missing connection argument for a TRACE_LEAVE() argument
472 - MINOR: h3: Send the h3 settings with others streams (requests)
473 - MINOR: dev/udp: Apply the corruption to both directions
474 - BUILD: udp-perturb: Add a make target for udp-perturb tool
475 - BUG/MINOR: signals/poller: ensure wakeup from signals
476 - CI: cirrus-ci: bump FreeBSD image to 13-1
477 - DEV: flags: fix usage message to reflect available options
478 - DEV: flags: add missing CO_FL_FDLESS connection flag
479 - MINOR: flags: add a new file to host flag dumping macros
480 - MINOR: flags: implement a macro used to dump enums inside masks
481 - MINOR: flags/channel: use flag dumping for channel flags and analysers
482 - MINOR: flags/connection: use flag dumping for connection flags
483 - MINOR: flags/stconn: use flag dumping for stconn and sedesc flags
484 - MINOR: flags/stream: use flag dumping for stream error type
485 - MINOR: flags/stream: use flag dumping for stream flags
486 - MINOR: flags/task: use flag dumping for task state
487 - MINOR: flags/http_ana: use flag dumping for txn flags
488 - DEV: flags: remove the now unused SHOW_FLAG() definition
489 - DEV: flags: remove the now useless intermediary functions
490 - MINOR: flags/htx: use flag dumping to show htx and start-line flags
491 - MINOR: flags/http_ana: use flag dumping to show http msg states
492 - BUG/MEDIUM: proxy: ensure pause_proxy() and resume_proxy() own PROXY_LOCK
493 - MINOR: listener: small API change
494 - MINOR: proxy/listener: support for additional PAUSED state
495 - BUG/MINOR: stats: fixing stat shows disabled frontend status as 'OPEN'
496 - BUILD: flags: fix build warning in some macros used by show_flags
497 - BUILD: flags: fix the fallback macros for missing stdio
498 - CLEANUP: pollers: remove dead code in the polling loop
499 - BUG/MINOR: mux-h1: Increment open_streams counter when H1 stream is created
500 - REGTESTS: healthcheckmail: Relax matching on the healthcheck log message
501 - CLEANUP: listener: function comment typo in stop_listener()
502 - BUG/MINOR: listener: null pointer dereference suspected by coverity
503 - MINOR: flags/fd: decode FD flags states
504 - REORG: mux-h2: extract flags and enums into mux_h2-t.h
505 - MINOR: flags/mux-h2: decode H2C and H2S flags
506 - REGTESTS: log: test the log-forward feature
507 - BUG/MEDIUM: sink: bad init sequence on tcp sink from a ring.
508 - REGTESTS: ssl/log: test the log-forward with SSL
509 - MEDIUM: httpclient: httpclient_create_proxy() creates a proxy for httpclient
510 - MEDIUM: httpclient: allow to use another proxy
511 - DOC: fix TOC in starter guide for subsection 3.3.8. Statistics
512 - MINOR: httpclient: export httpclient_create_proxy()
513 - MEDIUM: quic: separate path for rx and tx with set_encryption_secrets
514 - BUG/MEDIUM: mux-quic: fix crash on early app-ops release
515 - REORG: mux-h1: extract flags and enums into mux_h1-t.h
516 - MINOR: flags/mux-h1: decode H1C and H1S flags
517 - CLEANUP: mux-quic: remove stconn usage in h3/hq
518 - BUG/MINOR: mux-quic: do not remotely close stream too early
519 - CLEANUP: exclude udp-perturb with .gitignore
520 - BUG/MEDIUM: server: segv when adding server with hostname from CLI
521 - CLEANUP: quic,ssl: fix tiny typos in C comments
522 - BUG/MEDIUM: captures: free() an error capture out of the proxy lock
523 - BUILD: fd: fix a build warning on the DWCAS
524 - MINOR: anon: add new macros and functions to anonymize contents
525 - MINOR: anon: store the anonymizing key in the global structure
526 - MINOR: anon: store the anonymizing key in the CLI's appctx
527 - MINOR: cli: anonymize commands 'show sess' and 'show sess all'
528 - MINOR: cli: anonymize 'show servers state' and 'show servers conn'
529 - MINOR: config: add command-line -dC to dump the configuration file
530 - SCRIPTS: announce-release: update some URLs to https
531
Willy Tarreau3bb2b5d2022-09-02 19:36:50 +02005322022/09/02 : 2.7-dev5
533 - BUG/MINOR: mux-quic: Fix memleak on QUIC stream buffer for unacknowledged data
534 - BUG/MEDIUM: cpu-map: fix thread 1's affinity affecting all threads
535 - MINOR: cpu-map: remove obsolete diag warning about combined ranges
536 - BUG/MAJOR: mworker: fix infinite loop on master with no proxies.
537 - REGTESTS: launch http_reuse_always in mworker mode
538 - BUG/MINOR: quix: Memleak for non in flight TX packets
539 - BUG/MINOR: quic: Wrong list_for_each_entry() use when building packets from qc_do_build_pkt()
540 - BUG/MINOR: quic: Safer QUIC frame builders
541 - MINOR: quic: Replace MT_LISTs by LISTs for RX packets.
542 - BUG/MEDIUM: applet: fix incorrect check for abnormal return condition from handler
543 - BUG/MINOR: applet: make the call_rate only count the no-progress calls
544 - MEDIUM: peers: limit the number of updates sent at once
545 - BUILD: tcp_sample: fix build of get_tcp_info() on OpenBSD
546 - BUG/MINOR: resolvers: return the correct value in resolvers_finalize_config()
547 - BUG/MINOR: mworker: does not create the "default" resolvers in wait mode
548 - BUG/MINOR: tcpcheck: Disable QUICKACK only if data should be sent after connect
549 - REGTESTS: Fix prometheus script to perform HTTP health-checks
550 - MINOR: resolvers: shut the warning when "default" resolvers is implicit
551 - Revert "BUG/MINOR: quix: Memleak for non in flight TX packets"
552 - BUG/MINOR: quic: Leak in qc_release_lost_pkts() for non in flight TX packets
553 - BUG/MINOR: quic: Stalled connections (missing I/O handler wakeup)
554 - CLEANUP: quic: No more use ->rx_list MT_LIST entry point (quic_rx_packet)
555 - CLEANUP: quic: Remove a useless check in qc_lstnr_pkt_rcv()
556 - MINOR: quic: Remove useless traces about references to TX packets
557 - Revert "MINOR: quic: Remove useless traces about references to TX packets"
558 - DOC: configuration: do-resolve doesn't work with a port in the string
559 - MINOR: sample: add the host_only and port_only converters
560 - BUG/MINOR: httpclient: fix resolution with port
561 - DOC: configuration.txt: do-resolve must use host_only to remove its port.
562 - BUG/MINOR: quic: Null packet dereferencing from qc_dup_pkt_frms() trace
563 - BUG/MINOR: quic: Frames added to packets even if not built.
564 - BUG/MEDIUM: spoe: Properly update streams waiting for a ACK in async mode
565 - BUG/MEDIUM: peers: Add connect and server timeut to peers proxy
566 - BUG/MEDIUM: peers: Don't use resync timer when local resync is in progress
567 - BUG/MEDIUM: peers: Don't start resync on reload if local peer is not up-to-date
568 - BUG/MINOR: hlua: Rely on CF_EOI to detect end of message in HTTP applets
569 - BUG/MEDIUM: mux-h1: do not refrain from signaling errors after end of input
570 - BUG/MINOR: epoll: do not actively poll for Rx after an error
571 - MINOR: raw-sock: don't try to send if an error was already reported
572 - BUG/MINOR: quic: Missing header protection AES cipher context initialisations (draft-v2)
573 - MINOR: quic: Add a trace to distinguish the datagram from the packets inside
574 - BUG/MINOR: ssl: fix deinit of the ca-file tree
575 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free()
576 - BUG/MINOR: tcpcheck: Disable QUICKACK for default tcp-check (with no rule)
577 - BUG/MEDIUM: ssl: Fix a UAF when old ckch instances are released
578 - BUG/MINOR: ssl: revert two wrong fixes with ckhi_link
579 - BUG/MINOR: dev/udp: properly preset the rx address size
580 - BUILD: debug: make sure debug macros are never empty
581 - MINOR: quic: Move traces about RX/TX bytes from QUIC_EV_CONN_PRSAFRM event
582 - BUG/MINOR: quic: TX frames memleak
583 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free() v2
584 - MINOR: sink/ring: rotate non-empty file-backed contents only
585 - BUG/MINOR: regex: Properly handle PCRE2 lib compiled without JIT support
586 - REGTESTS: http_request_buffer: Add a barrier to not mix up log messages
587 - BUG/MEDIUM: mux-h1: always use RST to kill idle connections in pools
588 - MINOR: backend: always satisfy the first req reuse rule with l7 retries
589 - BUG/MINOR: quic: Do not ack when probing
590 - MINOR: quic: Add TX frames addresses to traces to several trace events
591 - MINOR: quic: Trace typo fix in qc_release_frm()
592 - BUG/MINOR: quic: Frames leak during retransmissions
593 - BUG/MINOR: h2: properly set the direction flag on HTX response
594 - BUG/MEDIUM: httpclient: always detach the caller before self-killing
595 - BUG/MINOR: httpclient: only ask for more room on failed writes
596 - BUG/MINOR: httpclient: keep-alive was accidentely disabled
597 - MEDIUM: httpclient: enable ALPN support on outgoing https connections
598 - BUG/MINOR: mux-h2: fix the "show fd" dest buffer for the subscriber
599 - BUG/MINOR: mux-h1: fix the "show fd" dest buffer for the subscriber
600 - BUG/MINOR: mux-fcgi: fix the "show fd" dest buffer for the subscriber
601 - DEBUG: stream: minor rearrangement of a few fields in struct stream.
602 - MINOR: debug: report applet pointer and handler in crashes when known
603 - MINOR: mux-h2: extract the stream dump function out of h2_show_fd()
604 - MINOR: mux-h2: extract the connection dump function out of h2_show_fd()
605 - MINOR: muxes: add a "show_sd" helper to complete "show sess" dumps
606 - MINOR: mux-h2: provide a "show_sd" helper to output stream debugging info
607 - MINOR: mux-h2: insert line breaks in "show sess all" output for legibility
608 - MINOR: mux-quic: provide a "show_sd" helper to output stream debugging info
609 - MINOR: mux-h1: split "show_fd" into connection and stream
610 - MINOR: mux-h1: provide a "show_sd" helper to output stream debugging info
611 - BUG/MINOR: http-act: initialize http fmt head earlier
612
Willy Tarreauf5320192022-08-20 15:56:31 +02006132022/08/20 : 2.7-dev4
614 - BUG/MEDIUM: quic: Wrong packet length check in qc_do_rm_hp()
615 - MINOR: quic: Too much useless traces in qc_build_frms()
616 - BUG/MEDIUM: quic: Missing AEAD TAG check after removing header protection
617 - MINOR: quic: Replace pool_zalloc() by pool_malloc() for fake datagrams
618 - MINOR: debug: make the mem_stats section aligned to void*
619 - MINOR: debug: store and report the pool's name in struct mem_stats
620 - MINOR: debug: also store the function name in struct mem_stats
621 - MINOR: debug/memstats: automatically determine first column size
622 - MINOR: debug/memstats: permit to pass the size to free()
623 - CLEANUP: mux-quic: remove loop on sending frames
624 - MINOR: quic: replace custom buf on Tx by default struct buffer
625 - MINOR: quic: release Tx buffer on each send
626 - MINOR: quic: refactor datagram commit in Tx buffer
627 - MINOR: quic: skip sending if no frame to send in io-cb
628 - BUG/MINOR: mux-quic: open stream on STOP_SENDING
629 - BUG/MINOR: quic: fix crash on handshake io-cb for null next enc level
630 - BUG/MEDIUM: quic: always remove the connection from the accept list on close
631 - BUG/MEDIUM: poller: use fd_delete() to release the poller pipes
632 - BUG/MEDIUM: task: relax one thread consistency check in task_unlink_wq()
633 - MEDIUM: quic: xprt traces rework
634 - BUILD: stconn: fix build warning at -O3 about possible null sc
635 - MINOR: quic: Remove useless lock for RX packets
636 - BUG/MINOR: quic: Possible infinite loop in quic_build_post_handshake_frames()
637 - CLEANUP: quic: Remove trailing spaces
638 - MINOR: mux-quic: adjust enter/leave traces
639 - MINOR: mux-quic: define protocol error traces
640 - CLEANUP: mux-quic: adjust traces level
641 - MINOR: mux-quic: define new traces
642 - BUG/MEDIUM: mux-quic: fix crash due to invalid trace arg
643 - BUG/MEDIUM: quic: Possible use of uninitialized <odcid> variable in qc_lstnr_params_init()
644 - BUG/MEDIUM: ring: fix too lax 'size' parser
645 - BUG/MEDIUM: quic: Wrong use of <token_odcid> in qc_lsntr_pkt_rcv()
646 - BUILD: ring: forward-declare struct appctx to avoid a build warning
647 - MINOR: ring: support creating a ring from a linear area
648 - MINOR: ring: add support for a backing-file
649 - DEV: haring: add a simple utility to read file-backed rings
650 - DEV: haring: support remapping LF in contents with CR VT
651 - BUG/MINOR: quic: memleak on wrong datagram receipt
652 - BUILD: sink: replace S_IRUSR, S_IWUSR with their octal value
653 - MINOR: ring: archive a previous file-backed ring on startup
654 - BUG/MINOR: mux-quic: fix crash with traces in qc_detach()
655 - BUG/MINOR: quic: MIssing check when building TX packets
656 - BUG/MINOR: quic: Wrong status returned by qc_pkt_decrypt()
657 - MINOR: memprof: export the minimum definitions for memory profiling
658 - MINOR: pool/memprof: report pool alloc/free in memory profiling
659 - MINOR: pools/memprof: store and report the pool's name in each bin
660 - MINOR: chunk: inline alloc_trash_chunk()
661 - MINOR: stick-table: Add table_expire() and table_idle() new converters
662 - CLEANUP: exclude haring with .gitignore
663 - MINOR: quic: adjust quic_frame flag manipulation
664 - MINOR: h3: report error on control stream close
665 - MINOR: qpack: report error on enc/dec stream close
666 - BUG/MEDIUM: mux-quic: reject uni stream ID exceeding flow control
667 - MINOR: mux-quic: adjust traces on stream init
668 - MINOR: mux-quic: add missing args on some traces
669 - MINOR: quic: refactor application send
670 - BUG/MINOR: quic: do not notify MUX on frame retransmit
671 - BUG/MEDIUM: http-ana: fix crash or wrong header deletion by http-restrict-req-hdr-names
672 - BUG/MINOR: quic: Missing initializations for ducplicated frames.
673 - BUG/MEDIUM: quic: fix crash on MUX send notification
674 - REORG: h2: extract cookies concat function in http_htx
675 - REGTESTS: add test for HTTP/2 cookies concatenation
676 - MEDIUM: h3: concatenate multiple cookie headers
677 - MINOR: applet: add a function to reset the svcctx of an applet
678 - BUG/MEDIUM: cli: always reset the service context between commands
679 - BUG/MEDIUM: mux-h2: do not fiddle with ->dsi to indicate demux is idle
680 - MINOR: mux-h2/traces: report transition to SETTINGS1 before not after
681 - MINOR: mux-h2: make streams know if they need to send more data
682 - BUG/MINOR: mux-h2: send a CANCEL instead of ES on truncated writes
683 - BUG/MINOR: quic: Possible crashes when dereferencing ->pkt quic_frame struct member
684 - MINOR: quic: Add frame addresses to QUIC_EV_CONN_PRSAFRM event traces
685 - BUG/MINOR: quic: Wrong splitted duplicated frames handling
686 - MINOR: quic: Add the QUIC connection to mux traces
687 - MINOR: quic: Trace fix in qc_release_frm()
688 - BUG/MAJOR: log-forward: Fix log-forward proxies not fully initialized
689 - BUG/MAJOR: log-forward: Fix ssl layer not initialized on bind even if configured
690 - MINOR: quic: Add reusable cipher contexts for header protection
691 - BUG/MINOR: ssl/cli: error when the ca-file is empty
692 - MINOR: ssl: handle ca-file appending in cafile_entry
693 - MINOR: ssl/cli: implement "add ssl ca-file"
694
Willy Tarreau87e95d32022-08-07 17:28:59 +02006952022/08/07 : 2.7-dev3
696 - BUILD: makefile: Fix install(1) handling for OpenBSD/NetBSD/Solaris/AIX
697 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds (try 2)
698 - MINOR: resolvers: resolvers_destroy() deinit and free a resolver
699 - BUG/MINOR: resolvers: shut off the warning for the default resolvers
700 - BUG/MINOR: ssl: allow duplicate certificates in ca-file directories
701 - BUG/MINOR: tools: fix statistical_prng_range()'s output range
702 - BUG/MINOR: quic: do not send CONNECTION_CLOSE_APP in initial/handshake
703 - BUILD: debug: Add braces to if statement calling only CHECK_IF()
704 - BUG/MINOR: fd: Properly init the fd state in fd_insert()
705 - BUG/MEDIUM: fd/threads: fix incorrect thread selection in wakeup broadcast
706 - MINOR: init: load OpenSSL error strings
707 - MINOR: ssl: enhance ca-file error emitting
708 - BUG/MINOR: mworker/cli: relative pid prefix not validated anymore
709 - BUG/MAJOR: mux_quic: fix invalid PROTOCOL_VIOLATION on POST data overlap
710 - BUG/MEDIUM: mworker: proc_self incorrectly set crashes upon reload
711 - BUILD: add detection for unsupported compiler models
712 - BUG/MEDIUM: stconn: Only reset connect expiration when processing backend side
713 - BUG/MINOR: backend: Fallback on RR algo if balance on source is impossible
714 - BUG/MEDIUM: master: force the thread count earlier
715 - BUG/MAJOR: poller: drop FD's tgid when masks don't match
716 - DEBUG: fd: detect possibly invalid tgid in fd_insert()
717 - BUG/MINOR: sockpair: wrong return value for fd_send_uxst()
718 - MINOR: sockpair: move send_fd_uxst() error message in caller
719 - Revert "BUG/MINOR: peers: set the proxy's name to the peers section name"
720 - DEBUG: fd: split the fd check
721 - MEDIUM: resolvers: continue startup if network is unavailable
722 - BUG/MINOR: fd: always remove late updates when freeing fd_updt[]
723 - MINOR: cli: emit a warning when _getsocks was used more than once
724 - BUG/MINOR: mworker: PROC_O_LEAVING used but not updated
725 - Revert "MINOR: cli: emit a warning when _getsocks was used more than once"
726 - MINOR: cli: warning on _getsocks when socket were closed
727 - BUG/MEDIUM: mux-quic: fix missing EOI flag to prevent streams leaks
728 - MINOR: quic: Congestion control architecture refactoring
729 - MEDIUM: quic: Cubic congestion control algorithm implementation
730 - MINOR: quic: New "quic-cc-algo" bind keyword
731 - BUG/MINOR: quic: loss time limit variable computed but not used
732 - MINOR: quic: Stop looking for packet loss asap
733 - BUG/MAJOR: quic: Useless resource intensive loop qc_ackrng_pkts()
734 - MINOR: quic: Send packets as much as possible from qc_send_app_pkts()
735 - BUG/MEDIUM: queue/threads: limit the number of entries dequeued at once
736 - MAJOR: threads/plock: update the embedded library
737 - MINOR: thread: provide an alternative to pthread's rwlock
738 - DEBUG: tools: provide a tree dump function for ebmbtrees as well
739 - MINOR: ebtree: add ebmb_lookup_shorter() to pursue lookups
740 - BUG/MEDIUM: pattern: only visit equivalent nodes when skipping versions
741 - BUG/MINOR: mux-quic: prevent crash if conn released during IO callback
742 - CLEANUP: mux-quic: remove useless app_ops is_active callback
743 - BUG/MINOR: mux-quic: do not free conn if attached streams
744 - MINOR: mux-quic: save proxy instance into qcc
745 - MINOR: mux-quic: use timeout server for backend conns
746 - MEDIUM: mux-quic: adjust timeout refresh
747 - MINOR: mux-quic: count in-progress requests
748 - MEDIUM: mux-quic: implement http-keep-alive timeout
749 - MINOR: peers: Add a warning about incompatible SSL config for the local peer
750 - MINOR: peers: Use a dedicated reconnect timeout when stopping the local peer
751 - BUG/MEDIUM: peers: limit reconnect attempts of the old process on reload
752 - BUG/MINOR: peers: Use right channel flag to consider the peer as connected
753 - BUG/MEDIUM: dns: Properly initialize new DNS session
754 - BUG/MINOR: backend: Don't increment conn_retries counter too early
755 - MINOR: server: Constify source server to copy its settings
756 - REORG: server: Export srv_settings_cpy() function
757 - BUG/MEDIUM: proxy: Perform a custom copy for default server settings
758 - BUG/MINOR: quic: Missing in flight ack eliciting packet counter decrement
759 - BUG/MEDIUM: quic: Floating point exception in cubic_root()
760 - MINOR: h3: support HTTP request framing state
761 - MINOR: mux-quic: refresh timeout on frame decoding
762 - MINOR: mux-quic: refactor refresh timeout function
763 - MEDIUM: mux-quic: implement http-request timeout
764 - BUG/MINOR: quic: Avoid sending truncated datagrams
765 - BUG/MINOR: ring/cli: fix a race condition between the writer and the reader
766 - BUG/MEDIUM: sink: Set the sink ref for forwarders created during ring parsing
767 - BUG/MINOR: sink: fix a race condition between the writer and the reader
768 - BUG/MINOR: quic: do not reject datagrams matching minimum permitted size
769 - MINOR: quic: Add two new stats counters for sendto() errors
770 - BUG/MINOR: quic: Missing Initial packet dropping case
771 - MINOR: quic: explicitely ignore sendto error
772 - BUG/MINOR: quic: adjust errno handling on sendto
773 - BUG/MEDIUM: quic: break out of the loop in quic_lstnr_dghdlr
774 - MINOR: threads: report the number of thread groups in build options
775 - MINOR: config: automatically preset MAX_THREADS based on MAX_TGROUPS
776 - BUILD: SSL: allow to pass additional configure args to QUICTLS
777 - CI: enable weekly "m32" builds on x86_64
778 - CLEANUP: assorted typo fixes in the code and comments
779 - BUG/MEDIUM: fix DH length when EC key is used
780 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
781 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
782 - REGTESTS: ssl: fix grep invocation to use extended regex in ssl_generate_certificate.vtc
783 - BUILD: cfgparse: always defined _GNU_SOURCE for sched.h and crypt.h
784
Willy Tarreau2200a9c2022-07-16 17:17:22 +02007852022/07/16 : 2.7-dev2
786 - BUG/MINOR: qpack: fix build with QPACK_DEBUG
787 - MINOR: h3: handle errors on HEADERS parsing/QPACK decoding
788 - BUG/MINOR: qpack: abort on dynamic index field line decoding
789 - MINOR: qpack: properly handle invalid dynamic table references
790 - MINOR: task: Add tasklet_wakeup_after()
791 - BUG/MINOR: quic: Dropped packets not counted (with RX buffers full)
792 - MINOR: quic: Add new stats counter to diagnose RX buffer overrun
793 - MINOR: quic: Duplicated QUIC_RX_BUFSZ definition
794 - MINOR: quic: Improvements for the datagrams receipt
795 - CLEANUP: h2: Typo fix in h2_unsubcribe() traces
796 - MINOR: quic: Increase the QUIC connections RX buffer size (upto 64Kb)
797 - CLEANUP: mux-quic: adjust comment on qcs_consume()
798 - MINOR: ncbuf: implement ncb_is_fragmented()
799 - BUG/MINOR: mux-quic: do not signal FIN if gap in buffer
800 - MINOR: fd: add a new FD_DISOWN flag to prevent from closing a deleted FD
801 - BUG/MEDIUM: ssl/fd: unexpected fd close using async engine
802 - MINOR: tinfo: make tid temporarily still reflect global ID
803 - CLEANUP: config: remove unused proc_mask()
804 - MINOR: debug: remove mask support from "debug dev sched"
805 - MEDIUM: task: add and preset a thread ID in the task struct
806 - MEDIUM: task/debug: move the ->thread_mask integrity checks to ->tid
807 - MAJOR: task: use t->tid instead of ffsl(t->thread_mask) to take the thread ID
808 - MAJOR: task: replace t->thread_mask with 1<<t->tid when thread mask is needed
809 - CLEANUP: task: remove thread_mask from the struct task
810 - MEDIUM: applet: only keep appctx_new_*() and drop appctx_new()
811 - MEDIUM: task: only keep task_new_*() and drop task_new()
812 - MINOR: applet: always use task_new_on() on applet creation
813 - MEDIUM: task: remove TASK_SHARED_WQ and only use t->tid
814 - MINOR: task: replace task_set_affinity() with task_set_thread()
815 - CLEANUP: task: remove the unused task_unlink_rq()
816 - CLEANUP: task: remove the now unused TASK_GLOBAL flag
817 - MINOR: task: make rqueue_ticks atomic
818 - MEDIUM: task: move the shared runqueue to one per thread
819 - MEDIUM: task: replace the global rq_lock with a per-rq one
820 - MINOR: task: remove grq_total and use rq_total instead
821 - MINOR: task: replace global_tasks_mask with a check for tree's emptiness
822 - MEDIUM: task: use regular eb32 trees for the run queues
823 - MEDIUM: queue: revert to regular inter-task wakeups
824 - MINOR: thread: make wake_thread() take care of the sleeping threads mask
825 - MINOR: thread: move the flags to the shared cache line
826 - MINOR: thread: only use atomic ops to touch the flags
827 - MINOR: poller: centralize poll return handling
828 - MEDIUM: polling: make update_fd_polling() not care about sleeping threads
829 - MINOR: poller: update_fd_polling: wake a random other thread
830 - MEDIUM: thread: add a new per-thread flag TH_FL_NOTIFIED to remember wakeups
831 - MEDIUM: tasks/fd: replace sleeping_thread_mask with a TH_FL_SLEEPING flag
832 - MINOR: tinfo: add the tgid to the thread_info struct
833 - MINOR: tinfo: replace the tgid with tgid_bit in tgroup_info
834 - MINOR: tinfo: add the mask of enabled threads in each group
835 - MINOR: debug: use ltid_bit in ha_thread_dump()
836 - MINOR: wdt: use ltid_bit in wdt_handler()
837 - MINOR: clock: use ltid_bit in clock_report_idle()
838 - MINOR: thread: use ltid_bit in ha_tkillall()
839 - MINOR: thread: add a new all_tgroups_mask variable to know about active tgroups
840 - CLEANUP: thread: remove thread_sync_release() and thread_sync_mask
841 - MEDIUM: tinfo: add a dynamic thread-group context
842 - MEDIUM: thread: make stopping_threads per-group and add stopping_tgroups
843 - MAJOR: threads: change thread_isolate to support inter-group synchronization
844 - MINOR: thread: add is_thread_harmless() to know if a thread already is harmless
845 - MINOR: debug: mark oneself harmless while waiting for threads to finish
846 - MINOR: wdt: do not rely on threads_to_dump anymore
847 - MEDIUM: debug: make the thread dumper not rely on a thread mask anymore
848 - BUILD: debug: fix build issue on clang with previous commit
849 - BUILD: debug: re-export thread_dump_state
850 - BUG/MEDIUM: threads: fix incorrect thread group being used on soft-stop
851 - BUG/MEDIUM: thread: check stopping thread against local bit and not global one
852 - MINOR: proxy: use tg->threads_enabled in hard_stop() to detect stopped threads
853 - BUILD: Makefile: Add Lua 5.4 autodetect
854 - CI: re-enable gcc asan builds
855 - MEDIUM: mworker: set the iocb of the socketpair without using fd_insert()
856 - MINOR: fd: Add BUG_ON checks on fd_insert()
857 - CLEANUP: mworker: rename mworker_pipe to mworker_sockpair
858 - CLEANUP: mux-quic: do not export qc_get_ncbuf
859 - REORG: mux-quic: reorganize flow-control fields
860 - MINOR: mux-quic: implement accessor for sedesc
861 - MEDIUM: mux-quic: refactor streams opening
862 - MINOR: mux-quic: rename qcs flag FIN_RECV to SIZE_KNOWN
863 - MINOR: mux-quic: emit FINAL_SIZE_ERROR on invalid STREAM size
864 - BUG/MINOR: peers/config: always fill the bind_conf's argument
865 - BUG/MEDIUM: peers/config: properly set the thread mask
866 - CLEANUP: bwlim: Set pointers to NULL when memory is released
867 - BUG/MINOR: http-check: Preserve headers if not redefined by an implicit rule
868 - BUG/MINOR: http-act: Properly generate 103 responses when several rules are used
869 - BUG/MEDIUM: thread: mask stopping_threads with threads_enabled when checking it
870 - CLEANUP: thread: also remove a thread's bit from stopping_threads on stop
871 - BUG/MINOR: peers: fix possible NULL dereferences at config parsing
872 - BUG/MINOR: http-htx: Fix scheme based normalization for URIs wih userinfo
873 - MINOR: http: Add function to get port part of a host
874 - MINOR: http: Add function to detect default port
875 - BUG/MEDIUM: h1: Improve authority validation for CONNCET request
876 - MINOR: http-htx: Use new HTTP functions for the scheme based normalization
877 - BUG/MEDIUM: http-fetch: Don't fetch the method if there is no stream
878 - REGTEESTS: filters: Fix CONNECT request in random-forwarding script
879 - MEDIUM: mworker/systemd: send STATUS over sd_notify
880 - BUG/MINOR: mux-h1: Be sure to commit htx changes in the demux buffer
881 - BUG/MEDIUM: http-ana: Don't wait to have an empty buf to switch in TUNNEL state
882 - BUG/MEDIUM: mux-h1: Handle connection error after a synchronous send
883 - MEDIUM: epoll: don't synchronously delete migrated FDs
884 - BUILD: debug: silence warning on gcc-5
885 - BUILD: http: silence an uninitialized warning affecting gcc-5
886 - BUG/MEDIUM: mux-quic: fix server chunked encoding response
887 - REORG: mux-quic: rename stream initialization function
888 - MINOR: mux-quic: rename stream purge function
889 - MINOR: mux-quic: add traces on frame parsing functions
890 - MINOR: mux-quic: implement qcs_alert()
891 - MINOR: mux-quic: filter send/receive-only streams on frame parsing
892 - MINOR: mux-quic: do not ack STREAM frames on unrecoverable error
893 - MINOR: mux-quic: support stream opening via MAX_STREAM_DATA
894 - MINOR: mux-quic: define basic stream states
895 - MINOR: mux-quic: use stream states to mark as detached
896 - MEDIUM: mux-quic: implement RESET_STREAM emission
897 - MEDIUM: mux-quic: implement STOP_SENDING handling
898 - BUG/MEDIUM: debug: fix possible hang when multiple threads dump at once
899 - BUG/MINOR: quic: fix closing state on NO_ERROR code sent
900 - CLEANUP: quic: clean up include on quic_frame-t.h
901 - MINOR: quic: define a generic QUIC error type
902 - MINOR: mux-quic: support app graceful shutdown
903 - MINOR: mux-quic/h3: prepare CONNECTION_CLOSE on release
904 - MEDIUM: quic: send CONNECTION_CLOSE on released MUX
905 - CLEANUP: mux-quic: move qc_release()
906 - MINOR: mux-quic: send one last time before release
907 - MINOR: h3: store control stream in h3c
908 - MINOR: h3: implement graceful shutdown with GOAWAY
909 - BUG/MINOR: threads: produce correct global mask for tgroup > 1
910 - BUG/MEDIUM: cli/threads: make "show threads" more robust on applets
911 - BUG/MINOR: thread: use the correct thread's group in ha_tkillall()
912 - BUG/MINOR: debug: enter ha_panic() only once
913 - BUG/MEDIUM: debug: fix parallel thread dumps again
914 - MINOR: cli/streams: show a stream's tgid next to its thread ID
915 - DEBUG: cli: add a new "debug dev deadlock" expert command
916 - MINOR: cli/activity: add a thread number argument to "show activity"
917 - CLEANUP: applet: remove the obsolete command context from the appctx
918 - MEDIUM: config: remove deprecated "bind-process" directives from frontends
919 - MEDIUM: config: remove the "process" keyword on "bind" lines
920 - MINOR: listener/config: make "thread" always support up to LONGBITS
921 - CLEANUP: fd: get rid of the __GET_{NEXT,PREV} macros
922 - MEDIUM: debug/threads: make the lock debugging take tgroups into account
923 - MEDIUM: proto: stop protocols under thread isolation during soft stop
924 - MEDIUM: poller: program the update in fd_update_events() for a migrated FD
925 - MEDIUM: poller: disable thread-groups for poll() and select()
926 - MINOR: thread: remove MAX_THREADS limitation
927 - MEDIUM: cpu-map: replace the process number with the thread group number
928 - MINOR: mworker/threads: limit the mworker sockets to group 1
929 - MINOR: cli/threads: always bind CLI to thread group 1
930 - MINOR: fd/thread: get rid of thread_mask()
931 - MEDIUM: task/thread: move the task shared wait queues per thread group
932 - MINOR: task: move the niced_tasks counter to the thread group context
933 - DOC: design: add some thoughts about how to handle the update_list
934 - MEDIUM: conn: make conn_backend_get always scan the same group
935 - MAJOR: fd: remove pending updates upon real close
936 - MEDIUM: fd/poller: make the update-list per-group
937 - MINOR: fd: delete unused updates on close()
938 - MINOR: fd: make fd_insert() apply the thread mask itself
939 - MEDIUM: fd: add the tgid to the fd and pass it to fd_insert()
940 - MINOR: cli/fd: show fd's tgid and refcount in "show fd"
941 - MINOR: fd: add functions to manipulate the FD's tgid
942 - MINOR: fd: add fd_get_running() to atomically return the running mask
943 - MAJOR: fd: grab the tgid before manipulating running
944 - MEDIUM: fd/poller: turn polled_mask to group-local IDs
945 - MEDIUM: fd/poller: turn update_mask to group-local IDs
946 - MEDIUM: fd/poller: turn running_mask to group-local IDs
947 - MINOR: fd: make fd_clr_running() return the previous value instead
948 - MEDIUM: fd: make thread_mask now represent group-local IDs
949 - MEDIUM: fd: make fd_insert() take local thread masks
950 - MEDIUM: fd: make fd_insert/fd_delete atomically update fd.tgid
951 - MEDIUM: fd: quit fd_update_events() when FD is closed
952 - MEDIUM: thread: change thread_resolve_group_mask() to return group-local values
953 - MEDIUM: listener: switch bind_thread from global to group-local
954 - MINOR: fd: add fd_reregister_all() to deal with boot-time FDs
955 - MEDIUM: fd: support stopping FDs during starting
956 - MAJOR: pollers: rely on fd_reregister_all() at boot time
957 - MAJOR: poller: only touch/inspect the update_mask under tgid protection
958 - MEDIUM: fd: support broadcasting updates for foreign groups in updt_fd_polling
959 - CLEANUP: threads: remove the now unused all_threads_mask and tid_bit
960 - MINOR: config: change default MAX_TGROUPS to 16
961 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds
962
Willy Tarreauf9de4e92022-06-24 22:09:05 +02009632022/06/24 : 2.7-dev1
964 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a cert entry fails
965 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a CA/CRL entry fails
966 - BUG/MEDIUM: ssl_ckch: Don't delete a cert entry if it is being modified
967 - BUG/MEDIUM: ssl_ckch: Don't delete CA/CRL entry if it is being modified
968 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a cert entry
969 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a CA/CRL entry
970 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl cert' to handle full buffer cases
971 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl ca-file' to handle full buffer cases
972 - BUG/MEDIUM: ssl/crt-list: Rework 'add ssl crt-list' to handle full buffer cases
973 - BUG/MEDIUM: httpclient: Don't remove HTX header blocks before duplicating them
974 - BUG/MEDIUM: httpclient: Rework CLI I/O handler to handle full buffer cases
975 - MEDIUM: httpclient: Don't close CLI applet at the end of a response
976 - MEDIUM: http-ana: Always report rewrite failures as PRXCOND in logs
977 - CLEANUP: Re-apply xalloc_size.cocci (2)
978 - REGTESTS: abortonclose: Add a barrier to not mix up log messages
979 - REGTESTS: http_request_buffer: Increase client timeout to wait "slow" clients
980 - CLEANUP: ssl_ckch: Use corresponding enum for commit_cacrlfile_ctx.cafile_type
981 - MINOR: ssl_ckch: Simplify I/O handler to commit changes on CA/CRL entry
982 - BUG/MINOR: ssl_ckch: Use right type for old entry in show_crlfile_ctx
983 - BUG/MINOR: ssl_ckch: Dump CRL transaction only once if show command yield
984 - BUG/MINOR: ssl_ckch: Dump CA transaction only once if show command yield
985 - BUG/MINOR: ssl_ckch: Dump cert transaction only once if show command yield
986 - BUG/MINOR: ssl_ckch: Init right field when parsing "commit ssl crl-file" cmd
987 - CLEANUP: ssl_ckch: Remove unused field in commit_cacrlfile_ctx structure
988 - MINOR: ssl_ckch: Simplify structure used to commit changes on CA/CRL entries
989 - MINOR: ssl_ckch: Remove service context for "set ssl cert" command
990 - MINOR: ssl_ckch: Remove service context for "set ssl ca-file" command
991 - MINOR: ssl_ckch: Remove service context for "set ssl crl-file" command
992 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cert I/O handler
993 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cafile I/O handler
994 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_crlfile I/O handler
995 - BUILD: ssl_ckch: Fix build error about a possible uninitialized value
996 - BUG/MINOR: ssl_ckch: Fix another possible uninitialized value
997 - REGTESTS: http_abortonclose: Extend supported versions
998 - REGTESTS: restrict_req_hdr_names: Extend supported versions
999 - MINOR: connection: support HTTP/3.0 for smp_*_http_major fetch
1000 - MINOR: h3: add h3c pointer into h3s instance
1001 - MINOR: mux-quic: simplify decode_qcs API
1002 - MINOR: mux-quic/h3: adjust demuxing function return values
1003 - BUG/MINOR: h3: fix return value on decode_qcs on error
1004 - BUILD: quic: fix anonymous union for gcc-4.4
1005 - BUILD: compiler: implement unreachable for older compilers too
1006 - DEV: tcploop: reorder options in the usage message
1007 - DEV: tcploop: make the current address the default address
1008 - DEV: tcploop: make it possible to change the target address of a connect()
1009 - DEV: tcploop: factor out the socket creation
1010 - DEV: tcploop: permit port 0 to ease handling of default options
1011 - DEV: tcploop: add a new "bind" command to bind to ip/port.
1012 - DEV: tcploop: add minimal UDP support
1013 - BUG/MINOR: trace: Test server existence for health-checks to get proxy
1014 - BUG/MINOR: checks: Properly handle email alerts in trace messages
1015 - BUG/MEDIUM: mailers: Set the object type for check attached to an email alert
1016 - REGTESTS: healthcheckmail: Update the test to be functionnal again
1017 - REGTESTS: healthcheckmail: Relax health-check failure condition
1018 - BUG/MINOR: h3: fix incorrect BUG_ON assert on SETTINGS parsing
1019 - MEDIUM: mux-h2: try to coalesce outgoing WINDOW_UPDATE frames
1020 - OPTIM: mux-h2: increase h2_settings_initial_window_size default to 64k
1021 - BUG/MINOR: h3: fix frame type definition
1022 - BUG/MEDIUM: h3: fix SETTINGS parsing
1023 - BUG/MINOR: cli/stats: add missing trailing LF after JSON outputs
1024 - BUG/MINOR: server: do not enable DNS resolution on disabled proxies
1025 - BUG/MINOR: cli/stats: add missing trailing LF after "show info json"
1026 - DOC: design: update the notes on thread groups
1027 - BUG/MEDIUM: mux-quic: fix flow control connection Tx level
1028 - MINOR: mux-quic: complete BUG_ON on TX flow-control enforcing
1029 - BUG/MINOR: mux-quic: fix memleak on frames rejected by transport
1030 - BUG/MINOR: tcp-rules: Make action call final on read error and delay expiration
1031 - CLEANUP: check: Remove useless tests on check's stream-connector
1032 - BUG/MEDIUM: stconn: Don't wakeup applet for send if it won't consume data
1033 - BUG/MEDIUM: cli: Notify cli applet won't consume data during request processing
1034 - BUG/MEDIUM: mux-quic: fix segfault on flow-control frame cleanup
1035 - MINOR: task: move profiling bit to per-thread
1036 - CLEANUP: quic: use task_new_on() for single-threaded tasks
1037 - MINOR: tinfo: remove the global thread ID bit (tid_bit)
1038 - CLEANUP: hlua: check for at least 2 threads on a task
1039 - MINOR: thread: get rid of MAX_THREADS_MASK
1040 - OPTIM: task: do not consult shared WQ when we're already full
1041 - DOC: design: update the task vs thread affinity requirements
1042 - MINOR: qpack: add comments and remove a useless trace
1043 - MINOR: qpack: reduce dependencies on other modules
1044 - BUG/MINOR: qpack: support header litteral name decoding
1045 - MINOR: qpack: add ABORT_NOW on unimplemented decoding
1046 - BUG/MINOR: h3/qpack: deal with too many headers
1047 - MINOR: qpack: improve decoding function
1048 - MINOR: qpack: implement standalone decoder tool
1049 - BUG/BUILD: h3: fix wrong label name
1050 - BUG/MINOR: quic: Stop hardcoding Retry packet Version field
1051 - MINOR: quic: Add several nonce and key definitions for Retry tag
1052 - BUG/MINOR: quic: Wrong PTO calculation
1053 - MINOR: quic: Parse long packet version from qc_parse_hd_form()
1054 - CLEANUP: quid: QUIC draft-28 no more supported
1055 - MEDIUM: quic: Add QUIC v2 draft support
1056 - MINOR: quic: Released QUIC TLS extension for QUIC v2 draft
1057 - MEDIUM: quic: Compatible version negotiation implementation (draft-08)
1058 - CLEANUP: quic: Remove any reference to boringssl
1059 - BUG/MINOR: task: fix thread assignment in tasklet_kill()
1060 - BUG/MEDIUM: stream: Properly handle destructive client connection upgrades
1061 - MINOR: stream: Rely on stconn flags to abort stream destructive upgrade
1062 - CLEANUP: stconn: Don't expect to have no sedesc on detach
1063 - BUG/MINOR: log: Properly test connection retries to fix dontlog-normal option
1064 - MINOR: hlua: don't dump empty entries in hlua_traceback()
1065 - MINOR: hlua: add a new hlua_show_current_location() function
1066 - MEDIUM: debug: add a tainted flag when a shared library is loaded
1067 - MEDIUM: debug: detect redefinition of symbols upon dlopen()
1068 - BUILD: quic: Wrong HKDF label constant variable initializations
1069 - BUG/MINOR: quic: Unexpected half open connection counter wrapping
1070 - BUG/MINOR: quic_stats: Duplicate "quic_streams_data_blocked_bidi" field name
1071 - BUG/MINOR: quic: purge conn Rx packet list on release
1072 - BUG/MINOR: quic: free rejected Rx packets
1073 - BUG/MINOR: qpack: abort on dynamic index field line decoding
1074 - BUG/MEDIUM: ssl/cli: crash when crt inserted into a crt-list
1075 - REGTESTS: ssl: add the same cert for client/server
1076 - BUG/MINOR: quic: Acknowledgement must be forced during handshake
1077 - MINOR: quic: Dump version_information transport parameter
1078 - BUG/MEDIUM: mworker: use default maxconn in wait mode
1079 - MINOR: intops: add a function to return a valid bit position from a mask
1080 - TESTS: add a unit test for one_among_mask()
1081 - BUILD: ssl_ckch: fix "maybe-uninitialized" build error on gcc-9.4 + ARM
1082 - BUG/MINOR: ssl: Do not look for key in extra files if already in pem
1083 - BUG/MINOR: quic: Missing acknowledgments for trailing packets
1084 - BUG/MINOR: http-ana: Set method to HTTP_METH_OTHER when an HTTP txn is created
1085 - BUG/MINOR: http-fetch: Use integer value when possible in "method" sample fetch
1086 - MINOR: freq_ctr: Add a function to get events excess over the current period
1087 - BUG/MINOR: stream: only free the req/res captures when set
1088 - CLEANUP: pool/tree-wide: remove suffix "_pool" from certain pool names
1089 - MEDIUM: debug: improve DEBUG_MEM_STATS to also report pool alloc/free
1090 - BUG/MINOR: quic: Wrong reuse of fulfilled dgram RX buffer
1091 - BUG/MAJOR: quic: Big RX dgrams leak when fulfilling a buffer
1092 - BUG/MAJOR: quic: Big RX dgrams leak with POST requests
1093 - BUILD: quic+h3: 32-bit compilation errors fixes
1094 - MEDIUM: bwlim: Add support of bandwith limitation at the stream level
1095
Willy Tarreau29698e32022-05-31 17:05:27 +020010962022/05/31 : 2.7-dev0
1097 - MINOR: version: it's development again
1098
Willy Tarreaua1efc042022-05-31 16:58:21 +020010992022/05/31 : 2.6.0
1100 - DOC: Fix formatting in configuration.txt to fix dconv
1101 - CLEANUP: tcpcheck: Remove useless test on the stream-connector in tcpcheck_main
1102 - CLEANUP: muxes: Consider stream's sd as defined in .show_fd callback functions
1103 - MINOR: quic: Ignore out of packet padding.
1104 - CLEANUP: quic: Useless QUIC_CONN_TX_BUF_SZ definition
1105 - CLEANUP: quic: No more used handshake output buffer
1106 - MINOR: quic: QUIC transport parameters split.
1107 - MINOR: quic: Transport parameters dump
1108 - DOC: quic: Update documentation for QUIC Retry
1109 - MINOR: quic: Tunable "max_idle_timeout" transport parameter
1110 - MINOR: quic: Tunable "initial_max_streams_bidi" transport parameter
1111 - MINOR: quic: Clarifications about transport parameters value
1112 - MINOIR: quic_stats: add QUIC connection errors counters
1113 - BUG/MINOR: quic: Largest RX packet numbers mixing
1114 - MINOR: quic_stats: Add transport new counters (lost, stateless reset, drop)
1115 - DOC: quic: Documentation update for QUIC
1116 - MINOR: quic: Connection TX buffer setting renaming.
1117 - MINOR: h3: Add a statistics module for h3
1118 - MINOR: quic: Send STOP_SENDING frames if mux is released
1119 - MINOR: quic: Do not drop packets with RESET_STREAM frames
1120 - BUG/MINOR: qpack: fix buffer API usage on prefix integer encoding
1121 - BUG/MINOR: qpack: support bigger prefix-integer encoding
1122 - BUG/MINOR: h3: do not report bug on unknown method
1123 - SCRIPTS: add make-releases-json to recreate a releases.json file in download dirs
1124 - SCRIPTS: make publish-release try to launch make-releases-json
1125 - MINOR: htx: add an unchecked version of htx_get_head_blk()
1126 - BUILD: htx: use the unchecked version of htx_get_head_blk() where needed
1127 - BUILD: quic: use inttypes.h instead of stdint.h
1128 - DOC: internal: remove totally outdated diagrams
1129 - DOC: remove the outdated ROADMAP file
1130 - DOC: add maintainers for QUIC and HTTP/3
1131 - MINOR: h3: define h3 trace module
1132 - MINOR: h3: add traces on frame recv
1133 - MINOR: h3: add traces on frame send
1134 - MINOR: h3: add traces on h3s init/end
1135 - EXAMPLES: remove completely outdated acl-content-sw.cfg
1136 - BUILD: makefile: reorder objects by build time
1137 - DOC: fix a few spelling mistakes in the docs
1138 - BUG/MEDIUM: peers/cli: fix "show peers" crash
1139 - CLEANUP: peers/cli: stop misusing the appctx local variable
1140 - CLEANUP: peers/cli: make peers_dump_peer() take an appctx instead of an stconn
1141 - BUG/MINOR: peers: set the proxy's name to the peers section name
1142 - MINOR: server: indicate when no address was expected for a server
1143 - BUG/MINOR: peers: detect and warn on init_addr/resolvers/check/agent-check
1144 - DOC: peers: indicate that some server settings are not usable
1145 - DOC: peers: clarify when entry expiration date is renewed.
1146 - DOC: peers: fix port number and addresses on new peers section format
1147 - DOC: gpc/gpt: add commments of gpc/gpt array definitions on stick tables.
1148 - DOC: install: update supported OpenSSL versions in the INSTALL doc
1149 - MINOR: ncbuf: adjust ncb_data with NCBUF_NULL
1150 - BUG/MINOR: h3: fix frame demuxing
1151 - BUG/MEDIUM: h3: fix H3_EXCESSIVE_LOAD when receiving H3 frame header only
1152 - BUG/MINOR: quic: Fix QUIC_EV_CONN_PRSAFRM event traces
1153 - CLEANUP: quic: remove useless check on local UNI stream reception
1154 - BUG/MINOR: qpack: do not consider empty enc/dec stream as error
1155 - DOC: intro: adjust the numbering of paragrams to keep the output ordered
1156 - MINOR: version: mention that it's LTS now.
1157
Willy Tarreau0edb9972022-05-27 19:49:31 +020011582022/05/27 : 2.6-dev12
1159 - CLEANUP: tools: Clean up non-QUIC error message handling in str2sa_range()
1160 - BUG/MEDIUM: tools: Fix `inet_ntop` usage in sa2str
1161 - CLEANUP: tools: Crash if inet_ntop fails due to ENOSPC in sa2str
1162 - BUG/MEDIUM: mux-quic: adjust buggy proxy closing support
1163 - Revert "MINOR: quic: activate QUIC traces at compilation"
1164 - Revert "MINOR: mux-quic: activate qmux traces on stdout via macro"
1165 - CLEANUP: init: address a coverity warning about possible multiply overflow
1166 - BUG/MEDIUM: http: Properly reject non-HTTP/1.x protocols
1167 - MEDIUM: h1: enlarge the scope of accepted version chars with accept-invalid-http-request
1168 - BUG/MEDIUM: resolvers: Don't defer resolutions release in deinit function
1169 - BUG/MEDIUM: peers: fix segfault using multiple bind on peers sections
1170 - BUG/MEDIUM: peers: prevent unitialized multiple listeners on peers section
1171 - BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping
1172 - MINOR: h3: mark ncbuf as const on h3_b_dup
1173 - MINOR: mux-quic: do not alloc quic_stream_desc for uni remote stream
1174 - MINOR: mux-quic: delay cs_endpoint allocation
1175 - MINOR: mux-quic: add traces in qc_recv()
1176 - MINOR: mux-quic: adjust return value of decode_qcs
1177 - CLEANUP: h3: rename struct h3 -> h3c
1178 - CLEANUP: h3: rename uni stream type constants
1179 - BUG/MINOR: h3: prevent overflow when parsing SETTINGS
1180 - MINOR: h3: refactor h3_control_send()
1181 - MINOR: quic: support CONNECTION_CLOSE_APP emission
1182 - MINOR: mux-quic: disable read on CONNECTION_CLOSE emission
1183 - MINOR: h3: reject too big frames
1184 - MINOR: mux-quic: emit STREAM_STATE_ERROR in qcc_recv
1185 - BUG/MINOR: mux-quic: refactor uni streams TX/send H3 SETTINGS
1186 - MINOR: h3/qpack: use qcs as type in decode callbacks
1187 - MINOR: h3: define stream type
1188 - MINOR: h3: refactor uni streams initialization
1189 - MINOR: h3: check if frame is valid for stream type
1190 - MINOR: h3: define non-h3 generic parsing function
1191 - MEDIUM: quic: refactor uni streams RX
1192 - CLEANUP: h3: remove h3 uni tasklet
1193 - MINOR: h3: abort read on unknown uni stream
1194 - MINOR: h3: refactor SETTINGS parsing/error reporting
1195 - Revert "BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping"
1196 - DOC: configuration: add a warning for @system-ca on bind
1197 - CLEANUP: init: address another coverity warning about a possible multiply overflow
1198 - BUG/MINOR: ssl/lua: use correctly cert_ext in CertCache.set()
1199 - BUG/MEDIUM: sample: Fix adjusting size in word converter
1200 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+ (2)
1201 - CLEANUP: conn_stream: remove unneeded exclusion of RX_WAIT_EP from RXBLK_ANY
1202 - CLEANUP: conn_stream: rename the cs_endpoint's context to "conn"
1203 - MINOR: conn_stream: add new sets of functions to set/get endpoint flags
1204 - DEV: coccinelle: add cs_endp_flags.cocci
1205 - CLEANUP: conn_stream: apply cs_endp_flags.cocci tree-wide
1206 - DEV: coccinelle: add endp_flags.cocci
1207 - CLEANUP: conn_stream: apply endp_flags.cocci tree-wide
1208 - CLEANUP: conn_stream: rename the stream endpoint flags CS_EP_* to SE_FL_*
1209 - CLEANUP: conn_stream: rename the cs_endpoint's target to "se"
1210 - CLEANUP: conn_stream: rename cs_endpoint to sedesc (stream endpoint descriptor)
1211 - CLEANUP: applet: rename the sedesc pointer from "endp" to "sedesc"
1212 - CLEANUP: conn_stream: rename the conn_stream's endp to sedesc
1213 - CLEANUP: conn_stream: rename cs_app_* to sc_app_*
1214 - CLEANUP: conn_stream: tree-wide rename to stconn (stream connector)
1215 - CLEANUP: mux-h1: add and use h1s_sc() to retrieve the stream connector
1216 - CLEANUP: mux-h2: add and use h2s_sc() to retrieve the stream connector
1217 - CLEANUP: mux-fcgi: add and use fcgi_strm_sc() to retrieve the stream connector
1218 - CLEANUP: mux-pt: add and use pt_sc() to retrieve the stream connector
1219 - CLEANUP: stdesc: rename the stream connector ->cs field to ->sc
1220 - CLEANUP: stream: rename "csf" and "csb" to "scf" and "scb"
1221 - CLEANUP: stconn: tree-wide rename stream connector flags CS_FL_* to SC_FL_*
1222 - CLEANUP: stconn: tree-wide rename stconn states CS_ST/SB_* to SC_ST/SB_*
1223 - MINOR: check: export wake_srv_chk()
1224 - MINOR: conn_stream: test the various ops functions before calling them
1225 - MEDIUM: stconn: merge the app_ops and the data_cb fields
1226 - MINOR: applet: add new wrappers to put chk/blk/str/chr to channel from appctx
1227 - CLEANUP: applet: use applet_put*() everywhere possible
1228 - CLEANUP: stconn: rename cs_{i,o}{b,c} to sc_{i,o}{b,c}
1229 - CLEANUP: stconn: rename cs_{check,strm,strm_task} to sc_strm_*
1230 - CLEANUP: stconn: rename cs_conn() to sc_conn()
1231 - CLEANUP: stconn: rename cs_mux() to sc_mux_strm()
1232 - CLEANUP: stconn: rename cs_conn_mux() to sc_mux_ops()
1233 - CLEANUP: stconn: rename cs_appctx() to sc_appctx()
1234 - CLEANUP: stconn: rename __cs_endp_target() to __sc_endp()
1235 - CLEANUP: stconn: rename cs_get_data_name() to sc_get_data_name()
1236 - CLEANUP: stconn: rename cs_conn_*() to sc_conn_*()
1237 - CLEANUP: stconn: rename cs_conn_get_first() to conn_get_first_sc()
1238 - CLEANUP: stconn: rename cs_ep_set_error() to se_fl_set_error()
1239 - CLEANUP: stconn: make a few functions take a const argument
1240 - CLEANUP: stconn: use a single function to know if SC may send to SE
1241 - MINOR: stconn: consider CF_SHUTW for sc_is_send_allowed()
1242 - MINOR: stconn: remove calls to cs_done_get()
1243 - MEDIUM: stconn: always rely on CF_SHUTR in addition to cs_rx_blocked()
1244 - MEDIUM: stconn: remove SE_FL_RXBLK_SHUT
1245 - MINOR: stconn: rename SE_FL_RXBLK_CONN to SE_FL_APPLET_NEED_CONN
1246 - MEDIUM: stconn: take SE_FL_APPLET_NEED_CONN out of the RXBLK_ANY flags
1247 - CLEANUP: stconn: rename cs_rx_room_{blk,rdy} to sc_{need,have}_room()
1248 - CLEANUP: stconn: rename cs_rx_chan_{blk,rdy} to sc_{wont,will}_read()
1249 - CLEANUP: stconn: rename cs_rx_buff_{blk,rdy} to sc_{need,have}_buff()
1250 - MINOR: stconn: start to rename cs_rx_endp_{more,done}() to se_have_{no_,}more_data()
1251 - MINOR: stconn: add sc_is_recv_allowed() to check for ability to receive
1252 - CLEANUP: stconn: rename SE_FL_RX_WAIT_EP to SE_FL_HAVE_NO_DATA
1253 - MEDIUM: stconn: move the RXBLK flags to the stream connector
1254 - CLEANUP: stconn: rename SE_FL_WANT_GET to SE_FL_WILL_CONSUME
1255 - CLEANUP: stconn: remove cs_tx_blocked() and cs_tx_endp_ready()
1256 - CLEANUP: stconn: rename cs_{want,stop}_get() to se_{will,wont}_consume()
1257 - CLEANUP: stconn: rename cs_cant_get() to se_need_more_data()
1258 - CLEANUP: stconn: rename cs_{new,create,free,destroy}_* to sc_*
1259 - CLEANUP: stconn: rename remaining management functions from cs_* to sc_*
1260 - CLEANUP: stconn: rename cs{,_get}_{src,dst} to sc_*
1261 - CLEANUP: stconn: rename cs_{shut,chk}* to sc_*
1262 - CLEANUP: stconn: rename final state manipulation functions from cs_* to sc_*
1263 - CLEANUP: quic: drop the name "conn_stream" from the pool variable names
1264 - REORG: rename cs_utils.h to sc_strm.h
1265 - REORG: stconn: rename conn_stream.{c,h} to stconn.{c,h}
1266 - CLEANUP: muxes: rename "get_first_cs" to "get_first_sc"
1267 - DEV: flags: use "sc" for stream conns instead of "cs"
1268 - CLEANUP: check: rename all occurrences of stconn "cs" to "sc"
1269 - CLEANUP: connection: rename all occurrences of stconn "cs" to "sc"
1270 - CLEANUP: stconn: rename all occurrences of stconn "cs" to "sc"
1271 - CLEANUP: quic/h3: rename all occurrences of stconn "cs" to "sc"
1272 - CLEANUP: stream: rename all occurrences of stconn "cs" to "sc"
1273 - CLEANUP: promex: rename all occurrences of stconn "cs" to "sc"
1274 - CLEANUP: stats: rename all occurrences of stconn "cs" to "sc"
1275 - CLEANUP: cli: rename all occurrences of stconn "cs" to "sc"
1276 - CLEANUP: applet: rename all occurrences of stconn "cs" to "sc"
1277 - CLEANUP: cache: rename all occurrences of stconn "cs" to "sc"
1278 - CLEANUP: dns: rename all occurrences of stconn "cs" to "sc"
1279 - CLEANUP: spoe: rename all occurrences of stconn "cs" to "sc"
1280 - CLEANUP: hlua: rename all occurrences of stconn "cs" to "sc"
1281 - CLEANUP: log-forward: rename all occurrences of stconn "cs" to "sc"
1282 - CLEANUP: http-client: rename all occurrences of stconn "cs" to "sc"
1283 - CLEANUP: mux-fcgi: rename all occurrences of stconn "cs" to "sc"
1284 - CLEANUP: mux-h1: rename all occurrences of stconn "cs" to "sc"
1285 - CLEANUP: mux-h2: rename all occurrences of stconn "cs" to "sc"
1286 - CLEANUP: mux-pt: rename all occurrences of stconn "cs" to "sc"
1287 - CLEANUP: peers: rename all occurrences of stconn "cs" to "sc"
1288 - CLEANUP: sink: rename all occurrences of stconn "cs" to "sc"
1289 - CLEANUP: sslsock: remove only occurrence of local variable "cs"
1290 - CLEANUP: applet: rename appctx_cs() to appctx_sc()
1291 - CLEANUP: stream: rename stream_upgrade_from_cs() to stream_upgrade_from_sc()
1292 - CLEANUP: obj_type: rename OBJ_TYPE_CS to OBJ_TYPE_SC
1293 - CLEANUP: stconn: replace a few remaining occurrences of CS in comments or traces
1294 - DOC: internal: update the muxes doc to mention the stconn
1295 - CLEANUP: mux-quic: rename the "endp" field to "sd"
1296 - CLEANUP: mux-h1: rename the "endp" field to "sd"
1297 - CLEANUP: mux-h2: rename the "endp" field to "sd"
1298 - CLEANUP: mux-fcgi: rename the "endp" field to "sd"
1299 - CLEANUP: mux-pt: rename the "endp" field to "sd"
1300 - CLEANUP: stconn: rename a few "endp" arguments and variables to "sd"
1301 - MINOR: stconn: turn SE_FL_WILL_CONSUME to SE_FL_WONT_CONSUME
1302 - CLEANUP: stream: remove unneeded test on appctx during initialization
1303 - CLEANUP: stconn: remove the new unneeded SE_FL_APP_MASK
1304 - DEV: flags: fix "siet" shortcut name
1305 - DEV: flags: rename the "endp" shortcut to "sd" for "stream descriptor"
1306 - DEV: flags: reorder a few SC/SE flags
1307 - DOC: internal: add a description of the stream connectors and descriptors
1308
Willy Tarreau137c8fd2022-05-20 23:31:51 +020013092022/05/20 : 2.6-dev11
1310 - CI: determine actual LibreSSL version dynamically
1311 - BUG/MEDIUM: ncbuf: fix null buffer usage
1312 - MINOR: ncbuf: fix warnings for testing build
1313 - MEDIUM: http-ana: Add a proxy option to restrict chars in request header names
1314 - MEDIUM: ssl: Delay random generator initialization after config parsing
1315 - MINOR: ssl: Add 'ssl-propquery' global option
1316 - MINOR: ssl: Add 'ssl-provider' global option
1317 - CLEANUP: Add missing header to ssl_utils.c
1318 - CLEANUP: Add missing header to hlua_fcn.c
1319 - CLEANUP: Remove unused function hlua_get_top_error_string
1320 - BUILD: fix build warning on solaris based systems with __maybe_unused.
1321 - MINOR: tools: add get_exec_path implementation for solaris based systems.
1322 - BUG/MINOR: ssl: Fix crash when no private key is found in pem
1323 - CLEANUP: conn-stream: Remove cs_applet_shut declaration from header file
1324 - MINOR: applet: Prepare appctx to own the session on frontend side
1325 - MINOR: applet: Let the frontend appctx release the session
1326 - MINOR: applet: Change return value for .init callback function
1327 - MINOR: stream: Export stream_free()
1328 - MINOR: applet: Add appctx_init() helper fnuction
1329 - MINOR: applet: Add a function to finalize frontend appctx startup
1330 - MINOR: applet: Add function to release appctx on error during init stage
1331 - MEDIUM: dns: Refactor dns appctx creation
1332 - MEDIUM: spoe: Refactor SPOE appctx creation
1333 - MEDIUM: lua: Refactor cosocket appctx creation
1334 - MEDIUM: httpclient: Refactor http-client appctx creation
1335 - MINOR: sink: Add a ref to sink in the sink_forward_target structure
1336 - MEDIUM: sink: Refactor sink forwarder appctx creation
1337 - MINOR: peers: Add a ref to peers section in the peer structure
1338 - MEDIUM: peers: Refactor peer appctx creation
1339 - MINOR: applet: Add API to start applet on a thread subset
1340 - MEDIUM: applet: Add support for async appctx startup on a thread subset
1341 - MINOR: peers: Track number of applets run by thread
1342 - MEDIUM: peers: Balance applets across threads
1343 - MINOR: conn-stream/applet: Stop setting appctx as the endpoint context
1344 - CLEANUP: proxy: Remove dead code when parsing "http-restrict-req-hdr-names" option
1345 - REGTESTS: abortonclose: Fix some race conditions
1346 - MINOR: ssl: Add 'ssl-provider-path' global option
1347 - CLEANUP: http_ana: Make use of the return value of stream_generate_unique_id()
1348 - BUG/MINOR: spoe: Fix error handling in spoe_init_appctx()
1349 - CLEANUP: peers: Remove unreachable code in peer_session_create()
1350 - CLEANUP: httpclient: Remove useless test on ss_dst in httpclient_applet_init()
1351 - BUG/MEDIUM: quic: fix Rx buffering
1352 - OPTIM: quic: realign empty Rx buffer
1353 - BUG/MINOR: ncbuf: fix ncb_is_empty()
1354 - MINOR: ncbuf: refactor ncb_advance()
1355 - BUG/MINOR: mux-quic: update session's idle delay before stream creation
1356 - MINOR: h3: do not wait a complete frame for demuxing
1357 - MINOR: h3: flag demux as full on HTX full
1358 - MEDIUM: mux-quic: implement recv on io-cb
1359 - MINOR: mux-quic: remove qcc_decode_qcs() call in XPRT
1360 - MINOR: mux-quic: reorganize flow-control frames emission
1361 - MINOR: mux-quic: implement MAX_STREAM_DATA emission
1362 - MINOR: mux-quic: implement MAX_DATA emission
1363 - BUG/MINOR: mux-quic: support nul buffer with qc_free_ncbuf()
1364 - MINOR: mux-quic: free RX buf if empty
1365 - BUG/MEDIUM: config: Reset outline buffer size on realloc error in readcfgfile()
1366 - BUG/MINOR: check: Reinit the buffer wait list at the end of a check
1367 - MEDIUM: check: No longer shutdown the connection in .wake callback function
1368 - REORG: check: Rename and export I/O callback function
1369 - MEDIUM: check: Use the CS to handle subscriptions for read/write events
1370 - BUG/MINOR: quic: break for error on sendto
1371 - MINOR: quic: abort on unlisted errno on sendto()
1372 - MINOR: quic: detect EBADF on sendto()
1373 - BUG/MEDIUM: quic: fix initialization for local/remote TPs
1374 - CLEANUP: quic: adjust comment/coding style for TPs init
1375 - BUG/MINOR: cfgparse: abort earlier in case of allocation error
1376 - MINOR: quic: Dump initial derived secrets
1377 - MINOR: quic_tls: Add quic_tls_derive_retry_token_secret()
1378 - MINOR: quic_tls: Add quic_tls_decrypt2() implementation
1379 - MINOR: quic: Retry implementation
1380 - MINOR: cfgparse: Update for "cluster-secret" keyword for QUIC Retry
1381 - MINOR: quic: Move quic_lstnr_dgram_dispatch() out of xprt_quic.c
1382 - BUILD: stats: Missing headers inclusions from stats.h
1383 - MINOR: quic_stats: Add a new stats module for QUIC
1384 - MINOR: quic: Attach proxy QUIC stats counters to the QUIC connection
1385 - BUG/MINOR: quic: Fix potential memory leak during QUIC connection allocations
1386 - MINOR: quic: QUIC stats counters handling
1387 - MINOR: quic: Add tune.quic.retry-threshold keyword
1388 - MINOR: quic: Dynamic Retry implementation
1389 - MINOR: quic/mux-quic: define CONNECTION_CLOSE send API
1390 - MINOR: mux-quic: emit FLOW_CONTROL_ERROR
1391 - MINOR: mux-quic: emit STREAM_LIMIT_ERROR
1392 - MINOR: mux-quic: close connection on error if different data at offset
1393 - BUG/MINOR: peers: fix error reporting of "bind" lines
1394 - CLEANUP: config: improve address parser error report for unmatched protocols
1395 - CLEANUP: config: provide cleare hints about unsupported QUIC addresses
1396 - MINOR: protocol: replace ctrl_type with xprt_type and clarify it
1397 - MINOR: listener: provide a function to process all of a bind_conf's arguments
1398 - MINOR: config: use the new bind_parse_args_list() to parse a "bind" line
1399 - CLEANUP: listener: add a comment about what the BC_SSL_O_* flags are for
1400 - MINOR: listener: add a new "options" entry in bind_conf
1401 - CLEANUP: listener: replace all uses of bind_conf->is_ssl with BC_O_USE_SSL
1402 - CLEANUP: listener: replace bind_conf->generate_cers with BC_O_GENERATE_CERTS
1403 - CLEANUP: listener: replace bind_conf->quic_force_retry with BC_O_QUIC_FORCE_RETRY
1404 - CLEANUP: listener: store stream vs dgram at the bind_conf level
1405 - MINOR: listener: detect stream vs dgram conflict during parsing
1406 - MINOR: listener: set the QUIC xprt layer immediately after parsing the args
1407 - MINOR: listener/ssl: set the SSL xprt layer only once the whole config is known
1408 - MINOR: connection: add flag MX_FL_FRAMED to mark muxes relying on framed xprt
1409 - MINOR: config: detect and report mux and transport incompatibilities
1410 - MINOR: listener: automatically select a QUIC mux with a QUIC transport
1411 - MINOR: listener: automatically enable SSL if a QUIC transport is found
1412 - BUG/MINOR: quic: Fixe a typo in qc_idle_timer_task()
1413 - BUG/MINOR: quic: Missing <conn_opening> stats counter decrementation
1414 - BUILD/MINOR: cpuset fix build for FreeBSD 13.1
1415 - CI: determine actual OpenSSL version dynamically
1416
Willy Tarreau37033252022-05-14 16:05:50 +020014172022/05/14 : 2.6-dev10
1418 - MINOR: ssl: ignore dotfiles when loading a dir w/ ca-file
1419 - MEDIUM: ssl: ignore dotfiles when loading a dir w/ crt
1420 - BUG/MINOR: ssl: Fix typos in crl-file related CLI commands
1421 - MINOR: compiler: add a new macro to set an attribute on an enum when possible
1422 - BUILD: stats: conditionally mark obsolete stats states as deprecated
1423 - BUILD: ssl: work around bogus warning in gcc 12's -Wformat-truncation
1424 - BUILD: debug: work around gcc-12 excessive -Warray-bounds warnings
1425 - BUILD: listener: shut report of possible null-deref in listener_accept()
1426 - BUG/MEDIUM: ssl: fix the gcc-12 broken fix :-(
1427 - DOC: install: update gcc version requirements
1428 - BUILD: makefile: add -Wfatal-errors to the default flags
1429 - BUG/MINOR: server: Make SRV_STATE_LINE_MAXLEN value from 512 to 2kB (2000 bytes).
1430 - BUG/MAJOR: dns: multi-thread concurrency issue on UDP socket
1431 - BUG/MINOR: mux-h2: mark the stream as open before processing it not after
1432 - MINOR: mux-h2: report a trace event when failing to create a new stream
1433 - DOC: configuration: add the httpclient keywords to the global keywords index
1434 - MINOR: quic: Add a debug counter for sendto() errors
1435 - BUG/MINOR: quic: Dropped peer transport parameters
1436 - BUG/MINOR: quic: Wrong unit for ack delay for incoming ACK frames
1437 - MINOR: quic: Congestion controller event trace fix (loss)
1438 - MINOR: quic: Add correct ack delay values to ACK frames
1439 - MINOR: config: Add "cluster-secret" new global keyword
1440 - MINOR: quic-tls: Add quic_hkdf_extract_and_expand() for HKDF
1441 - MINOR: quic: new_quic_cid() code moving
1442 - MINOR: quic: Initialize stateless reset tokens with HKDF secrets
1443 - MINOR: qc_new_conn() rework for stateless reset
1444 - MINOR: quic: Stateless reset token copy to transport parameters
1445 - MINOR: quic: Send stateless reset tokens
1446 - MINOR: quic: Short packets always embed a trailing AEAD TAG
1447 - CLEANUP: quic: wrong use of eb*entry() macro
1448 - CLEANUP: quic: Useless use of pointer for quic_hkdf_extract()
1449 - CLEANUP: quic_tls: QUIC_TLS_IV_LEN defined two times
1450 - MINOR: ncbuf: define non-contiguous buffer
1451 - MINOR: ncbuf: complete API and define block interal abstraction
1452 - MINOR: ncbuf: optimize storage for the last gap
1453 - MINOR: ncbuf: implement insertion
1454 - MINOR: ncbuf: define various insertion modes
1455 - MINOR: ncbuf: implement advance
1456 - MINOR: ncbuf: write unit tests
1457 - BUG/MEDIUM: lua: fix argument handling in data removal functions
1458 - DOC/MINOR: fix typos in the lua-api document
1459 - BUG/MEDIUM: wdt: don't trigger the watchdog when p is unitialized
1460 - MINOR: mux-h1: Add global option accpet payload for any HTTP/1.0 requests
1461 - CLEANUP: mux-h1: Fix comments and error messages for global options
1462 - MINOR: conn_stream: make cs_set_error() work on the endpoint instead
1463 - CLEANUP: mux-h1: always take the endp from the h1s not the cs
1464 - CLEANUP: mux-h2: always take the endp from the h2s not the cs
1465 - CLEANUP: mux-pt: always take the endp from the context not the cs
1466 - CLEANUP: mux-fcgi: always take the endp from the fstrm not the cs
1467 - CLEANUP: mux-quic: always take the endp from the qcs not the cs
1468 - CLEANUP: applet: use the appctx's endp instead of cs->endp
1469 - MINOR: conn_stream: add a pointer back to the cs from the endpoint
1470 - MINOR: mux-h1: remove the now unneeded h1s->cs
1471 - MINOR: mux-h2: make sure any h2s always has an endpoint
1472 - MINOR: mux-h2: remove the now unneeded conn_stream from the h2s
1473 - MINOR: mux-fcgi: make sure any stream always has an endpoint
1474 - MINOR: mux-fcgi: remove the now unneeded conn_stream from the fcgi_strm
1475 - MINOR: mux-quic: remove the now unneeded conn_stream from the qcs
1476 - MINOR: mux-pt: remove the now unneeded conn_stream from the context
1477 - CLEANUP: muxes: make mux->attach/detach take a conn_stream endpoint
1478 - MINOR: applet: replace cs_applet_shut() with appctx_shut()
1479 - MINOR: applet: add appctx_strm() and appctx_cs() to access common fields
1480 - CLEANUP: applet: remove the unneeded appctx->owner
1481 - CLEANUP: conn_stream: merge cs_new_from_{mux,applet} into cs_new_from_endp()
1482 - MINOR: ext-check: indicate the transport and protocol of a server
1483 - BUG/MEDIUM: mux-quic: fix a thinko in the latest cs/endpoint cleanup
1484 - MINOR: tools: improve error message accuracy in str2sa_range
1485 - MINOR: config: make sure never to mix dgram and stream protocols on a bind line
1486 - BUG/MINOR: ncbuf: fix coverity warning on uninit sz_data
1487 - MINOR: xprt_quic: adjust flow-control according to bufsize
1488 - MEDIUM: mux-quic/h3/hq-interop: use ncbuf for bidir streams
1489 - MEDIUM: mux-quic/h3/qpack: use ncbuf for uni streams
1490 - CLEANUP: mux-quic: remove unused fields for Rx
1491 - CLEANUP: quic: remove unused quic_rx_strm_frm
1492
Willy Tarreaue9797962022-05-08 11:44:15 +020014932022/05/08 : 2.6-dev9
1494 - MINOR: mux-quic: support full request channel buffer
1495 - BUG/MINOR: h3: fix parsing of unknown frame type with null length
1496 - CLEANUP: backend: make alloc_{bind,dst}_address() idempotent
1497 - MEDIUM: stream: remove the confusing SF_ADDR_SET flag
1498 - MINOR: conn_stream: remove the now unused CS_FL_ADDR_*_SET flags
1499 - CLEANUP: protocol: make sure the connect_* functions always receive a dst
1500 - MINOR: connection: get rid of the CO_FL_ADDR_*_SET flags
1501 - MINOR: session: get rid of the now unused SESS_FL_ADDR_*_SET flags
1502 - CLEANUP: mux: Useless xprt_quic-t.h inclusion
1503 - MINOR: quic: Make the quic_conn be aware of the number of streams
1504 - BUG/MINOR: quic: Dropped retransmitted STREAM frames
1505 - BUG/MINOR: mux_quic: Dropped packet upon retransmission for closed streams
1506 - MEDIUM: httpclient: remove url2sa to use a more flexible parser
1507 - MEDIUM: httpclient: http-request rules for resolving
1508 - MEDIUM: httpclient: allow address and port change for resolving
1509 - CLEANUP: httpclient: remove the comment about resolving
1510 - MINOR: httpclient: handle unix and other socket types in dst
1511 - MINOR: httpclient: rename dash by dot in global option
1512 - MINOR: init: exit() after pre-check upon error
1513 - MINOR: httpclient: cleanup the error handling in init
1514 - MEDIUM: httpclient: hard-error when SSL is configured
1515 - MINOR: httpclient: allow to configure the ca-file
1516 - MINOR: httpclient: configure the resolvers section to use
1517 - MINOR: httpclient: allow ipv4 or ipv6 preference for resolving
1518 - DOC: configuration: httpclient global option
1519 - MINOR: conn-stream: Add mask from flags set by endpoint or app layer
1520 - BUG/MEDIUM: conn-stream: Only keep app layer flags of the endpoint on reset
1521 - BUG/MEDIUM: mux-fcgi: Be sure to never set EOM flag on an empty HTX message
1522 - BUG/MEDIUM: mux-h1: Be able to handle trailers when C-L header was specified
1523 - DOC: config: Update doc for PR/PH session states to warn about rewrite failures
1524 - MINOR: resolvers: cleanup alert/warning in parse-resolve-conf
1525 - MINOR: resolvers: move the resolv.conf parser in parse_resolv_conf()
1526 - MINOR: resolvers: resolvers_new() create a resolvers with default values
1527 - BUILD: debug: unify the definition of ha_backtrace_to_stderr()
1528 - BUG/MINOR: tcp/http: release the expr of set-{src,dst}[-port]
1529 - MEDIUM: resolvers: create a "default" resolvers section at startup
1530 - DOC: resolvers: default resolvers section
1531 - BUG/MINOR: startup: usage() when no -cc arguments
1532 - BUG/MEDIUM: resolvers: make "show resolvers" properly yield
1533 - BUG/MEDIUM: cli: make "show cli sockets" really yield
1534 - BUG/MINOR: proxy/cli: don't enumerate internal proxies on "show backend"
1535 - BUG/MINOR: map/cli: protect the backref list during "show map" errors
1536 - BUG/MINOR: map/cli: make sure patterns don't vanish under "show map"'s init
1537 - BUG/MINOR: ssl/cli: fix "show ssl ca-file/crl-file" not to mix cli+ssl contexts
1538 - BUG/MINOR: ssl/cli: fix "show ssl ca-file <name>" not to mix cli+ssl contexts
1539 - BUG/MINOR: ssl/cli: fix "show ssl crl-file" not to mix cli+ssl contexts
1540 - BUG/MINOR: ssl/cli: fix "show ssl cert" not to mix cli+ssl contexts
1541 - CLEANUP: ssl/cli: do not loop on unknown states in "add ssl crt-list" handler
1542 - MINOR: applet: reserve some generic storage in the applet's context
1543 - CLEANUP: applet: make appctx_new() initialize the whole appctx
1544 - CLEANUP: stream/cli: take the "show sess" context definition out of the appctx
1545 - CLEANUP: stream/cli: stop using appctx->st2 for the dump state
1546 - CLEANUP: stream/cli: remove the unneeded init state from "show sess"
1547 - CLEANUP: stream/cli: remove the unneeded STATE_FIN state from "show sess"
1548 - CLEANUP: stream/cli: remove the now unneeded dump state from "show sess"
1549 - CLEANUP: proxy/cli: take the "show errors" context definition out of the appctx
1550 - CLEANUP: stick-table/cli: take the "show table" context definition out of the appctx
1551 - CLEANUP: stick-table/cli: stop using appctx->st2 for the dump state
1552 - CLEANUP: stick-table/cli: remove the unneeded STATE_INIT for "show table"
1553 - CLEANUP: map/cli: take the "show map" context definition out of the appctx
1554 - CLEANUP: map/cli: stop using cli.i0/i1 to store the generation numbers
1555 - CLEANUP: map/cli: stop using appctx->st2 for the dump state
1556 - CLEANUP: map/cli: always detach the backref from the list after "show map"
1557 - CLEANUP: peers/cli: take the "show peers" context definition out of the appctx
1558 - CLEANUP: peers/cli: stop using appctx->st2 for the dump state
1559 - CLEANUP: peers/cli: remove unneeded state STATE_INIT
1560 - CLEANUP: cli: initialize the whole appctx->ctx, not just the stats part
1561 - CLEANUP: promex: make the applet use its own context
1562 - CLEANUP: promex: stop using appctx->st2
1563 - CLEANUP: stats/cli: take the "show stat" context definition out of the appctx
1564 - CLEANUP: stats/cli: stop using appctx->st2
1565 - CLEANUP: hlua/cli: take the hlua_cli context definition out of the appctx
1566 - CLEANUP: ssl/cli: use a local context for "show cafile"
1567 - CLEANUP: ssl/cli: use a local context for "show crlfile"
1568 - CLEANUP: ssl/cli: use a local context for "show ssl cert"
1569 - CLEANUP: ssl/cli: use a local context for "commit ssl cert"
1570 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl cert"
1571 - CLEANUP: ssl/cli: use a local context for "set ssl cert"
1572 - CLEANUP: ssl/cli: use a local context for "set ssl cafile"
1573 - CLEANUP: ssl/cli: use a local context for "set ssl crlfile"
1574 - CLEANUP: ssl/cli: use a local context for "commit ssl {ca|crl}file"
1575 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl ca/crl"
1576 - CLEANUP: ssl/cli: stop using ctx.cli.i0/i1/p0 for "show tls-keys"
1577 - CLEANUP: ssl/cli: add a new "dump_entries" field to "show_keys_ref"
1578 - CLEANUP: ssl/cli: make "show tlskeys" not use appctx->st2 anymore
1579 - CLEANUP: ssl/cli: make "show ssl ocsp-response" not use cli.p0 anymore
1580 - CLEANUP: ssl/cli: make "{show|dump} ssl crtlist" use its own context
1581 - CLEANUP: ssl/cli: make "add ssl crtlist" use its own context
1582 - CLEANUP: ssl/cli: make "add ssl crtlist" not use st2 anymore
1583 - CLEANUP: dns: stop abusing the sink forwarder's context
1584 - CLEANUP: sink: use the generic context to store the forwarder's context
1585 - CLEANUP: activity/cli: make "show profiling" not use ctx.cli anymore
1586 - CLEANUP: debug/cli: make "debug dev fd" not use ctx.cli anymore
1587 - CLEANUP: debug/cli: make "debug dev memstats" not use ctx.cli anymore
1588 - CLEANUP: ring: pass the ring watch flags to ring_attach_cli(), not in ctx.cli
1589 - CLEANUP: ring/cli: use a locally-defined context instead of using ctx.cli
1590 - CLEANUP: resolvers/cli: make "show resolvers" use a locally-defined context
1591 - CLEANUP: resolvers/cli: remove the unneeded appctx->st2 from "show resolvers"
1592 - CLEANUP: cache/cli: make use of a locally defined context for "show cache"
1593 - CLEANUP: proxy/cli: make use of a locally defined context for "show servers"
1594 - CLEANUP: proxy/cli: get rid of appctx->st2 in "show servers"
1595 - CLEANUP: proxy/cli: make "show backend" only use the generic context
1596 - CLEANUP: cli: make "show fd" use its own context
1597 - CLEANUP: cli: make "show env" use its own context
1598 - CLEANUP: cli: simplify the "show cli sockets" I/O handler
1599 - CLEANUP: cli: make "show cli sockets" use its own context
1600 - CLEANUP: httpclient/cli: use a locally-defined context instead of ctx.cli
1601 - CLEANUP: httpclient: do not use the appctx.ctx anymore
1602 - CLEANUP: peers: do not use appctx.ctx anymore
1603 - CLEANUP: spoe: do not use appctx.ctx anymore
1604 - BUILD: applet: mark the CLI's generic variables as deprecated
1605 - BUILD: applet: mark the appctx's st2 variable as deprecated
1606 - CLEANUP: cache: take the context out of appctx.ctx
1607 - MEDIUM: lua: move the cosocket storage outside of appctx.ctx
1608 - MINOR: lua: move the tcp service storage outside of appctx.ctx
1609 - MINOR: lua: move the http service context out of appctx.ctx
1610 - CLEANUP: cli: move the status print context into its own context
1611 - CLEANUP: stats: rename the stats state values an mark the old ones deprecated
1612 - DOC: internal: document the new cleaner approach to the appctx
1613 - MINOR: tcp: socket translate TCP_KEEPIDLE for macOs equivalent
1614 - DOC: fix typo "ant" for "and" in INSTALL
1615 - CI: dynamically determine actual version of h2spec
1616
Willy Tarreau026fef92022-04-30 14:17:51 +020016172022/04/30 : 2.6-dev8
1618 - BUG/MINOR: quic: fix use-after-free with trace on ACK consume
1619 - BUG/MINOR: rules: Forbid captures in defaults section if used by a backend
1620 - BUG/MEDIUM: rules: Be able to use captures defined in defaults section
1621 - BUG/MINOR: rules: Fix check_capture() function to use the right rule arguments
1622 - BUG/MINOR: http-act: make release_http_redir() more robust
1623 - BUG/MINOR: sample: add missing use_backend/use-server contexts in smp_resolve_args
1624 - MINOR: sample: don't needlessly call c_none() in sample_fetch_as_type()
1625 - MINOR: sample: make the bool type cast to bin
1626 - MEDIUM: backend: add new "balance hash <expr>" algorithm
1627 - MINOR: init: add global setting "fd-hard-limit" to bound system limits
1628 - BUILD: pollers: use an initcall to register the pollers
1629 - BUILD: xprt: use an initcall to register the transport layers
1630 - BUILD: thread: use initcall instead of a constructor
1631 - BUILD: http: remove the two unused constructors in rules and ana
1632 - CLEANUP: compression: move the default setting of maxzlibmem to defaults
1633 - MINOR: tree-wide: always consider EWOULDBLOCK in addition to EAGAIN
1634 - BUG/MINOR: connection: "connection:close" header added despite 'close-spread-time'
1635 - MINOR: fd: add functions to set O_NONBLOCK and FD_CLOEXEC
1636 - CLEANUP: tree-wide: use fd_set_nonblock() and fd_set_cloexec()
1637 - CLEANUP: tree-wide: remove 25 occurrences of unneeded fcntl.h
1638 - REGTESTS: fix the race conditions in be2dec.vtc ad field.vtc
1639 - REGTESTS: webstats: remove unused stats socket in /tmp
1640 - MEDIUM: httpclient: disable SSL when the ca-file couldn't be loaded
1641 - BUG/MINOR: httpclient/lua: error when the httpclient_start() fails
1642 - BUG/MINOR: ssl: free the cafile entries on deinit
1643 - BUG/MINOR: ssl: memory leak when trying to load a directory with ca-file
1644 - MEDIUM: httpclient: re-enable the verify by default
1645 - BUG/MEDIUM: ssl/cli: fix yielding in show_cafile_detail
1646 - BUILD: compiler: properly distinguish weak and global symbols
1647 - MINOR: connection: Add way to disable active connection closing during soft-stop
1648 - BUG/MEDIUM: http-ana: Fix memleak in redirect rules with ignore-empty option
1649 - CLEANUP: Destroy `http_err_chunks` members during deinit
1650 - BUG/MINOR: resolvers: Fix memory leak in resolvers_deinit()
1651 - MINOR: Call deinit_and_exit(0) for `haproxy -vv`
1652 - BUILD: fd: disguise the fd_set_nonblock/cloexec result
1653 - BUG/MINOR: pools: make sure to also destroy shared pools in pool_destroy_all()
1654 - MINOR: ssl: add a new global option "tune.ssl.hard-maxrecord"
1655 - CLEANUP: errors: also call deinit_errors_buffers() on deinit()
1656 - CLEANUP: chunks: release trash also in deinit
1657 - CLEANUP: deinit: release the pre-check callbacks
1658 - CLEANUP: deinit: release the config postparsers
1659 - CLEANUP: listeners/deinit: release accept queue tasklets on deinit
1660 - CLEANUP: connections/deinit: destroy the idle_conns tasks
1661 - BUG/MINOR: mux-quic: fix build in release mode
1662 - MINOR: mux-quic: adjust comment on emission function
1663 - MINOR: mux-quic: remove unused bogus qcc_get_stream()
1664 - BUG/MINOR: mux-quic: fix leak if cs alloc failure
1665 - MINOR: mux-quic: count local flow-control stream limit on reception
1666 - BUG/MINOR: h3: fix incomplete POST requests
1667 - BUG/MEDIUM: h3: fix use-after-free on mux Rx buffer wrapping
1668 - MINOR: mux-quic: partially copy Rx frame if almost full buf
1669 - MINOR: h3: change frame demuxing API
1670 - MINOR: mux-quic: add a app-layer context in qcs
1671 - MINOR: h3: implement h3 stream context
1672 - MINOR: h3: support DATA demux if buffer full
1673 - MINOR: quic: decode as much STREAM as possible
1674 - MINOR: quic: Improve qc_prep_pkts() flexibility
1675 - MINOR: quic: Prepare quic_frame struct duplication
1676 - MINOR: quic: Do not retransmit frames from coalesced packets
1677 - MINOR: quic: Add traces about TX frame memory releasing
1678 - MINOR: quic: process_timer() rework
1679 - MEDIUM: quic: New functions for probing rework
1680 - MEDIUM: quic: Retransmission functions rework
1681 - MEDIUM: quic: qc_requeue_nacked_pkt_tx_frms() rework
1682 - MINOR: quic: old data distinction for qc_send_app_pkt()
1683 - MINOR: quic: Mark packets as probing with old data
1684 - MEDIUM: quic: Mark copies of acknowledged frames as acknowledged
1685 - MEDIUM: quic: Enable the new datagram probing process
1686 - MINOR: quic: Do not send ACK frames when probing
1687 - BUG/MINOR: quic: Wrong returned status by qc_build_frms()
1688 - BUG/MINOR: quic: Avoid sending useless PADDING frame
1689 - BUG/MINOR: quic: Traces fix about remaining frames upon packet build failure
1690 - MINOR: quic: Wake up the mux to probe with new data
1691 - BUG/MEDIUM: quic: Possible crash on STREAM frame loss
1692 - BUG/MINOR: quic: Missing Initial packet length check
1693 - CLEANUP: quic: Rely on the packet length set by qc_lstnr_pkt_rcv()
1694 - MINOR: quic: Drop 0-RTT packets if not allowed
1695 - BUG/MINOR: httpclient/ssl: use the correct verify constant
1696 - BUG/MEDIUM: conn-stream: Don't erase endpoint flags on reset
1697 - BUG/MEDIUM: httpclient: Fix loop consuming HTX blocks from the response channel
1698 - BUG/MINOR: httpclient: Count metadata in size to transfer via htx_xfer_blks()
1699 - MINOR: httpclient: Don't use co_set_data() to decrement output
1700 - BUG/MINOR: conn_stream: do not confirm a connection from the frontend path
1701 - MEDIUM: quic: do not ACK packet with STREAM if MUX not present
1702 - MEDIUM: quic: do not ack packet with invalid STREAM
1703 - MINOR: quic: Drop 0-RTT packets without secrets
1704 - CLEANUP: quic: Remaining fprintf() debug trace
1705 - MINOR: quic: moving code for QUIC loss detection
1706 - BUG/MINOR: quic: Missing time threshold multiplifier for loss delay computation
1707 - CI: github actions: update LibreSSL to 3.5.2
1708 - SCRIPTS: announce-release: add URL of dev packages
1709
Willy Tarreau3e69fcc2022-04-23 04:38:36 +020017102022/04/23 : 2.6-dev7
1711 - BUILD: calltrace: fix wrong include when building with TRACE=1
1712 - MINOR: ssl: Use DH parameters defined in RFC7919 instead of hard coded ones
1713 - MEDIUM: ssl: Disable DHE ciphers by default
1714 - BUILD: ssl: Fix compilation with OpenSSL 1.0.2
1715 - MINOR: mux-quic: split xfer and STREAM frames build
1716 - REORG: quic: use a dedicated module for qc_stream_desc
1717 - MINOR: quic-stream: use distinct tree nodes for quic stream and qcs
1718 - MINOR: quic-stream: add qc field
1719 - MEDIUM: quic: implement multi-buffered Tx streams
1720 - MINOR: quic-stream: refactor ack management
1721 - MINOR: quic: limit total stream buffers per connection
1722 - MINOR: mux-quic: implement immediate send retry
1723 - MINOR: cfg-quic: define tune.quic.conn-buf-limit
1724 - MINOR: ssl: Add 'show ssl providers' cli command and providers list in -vv option
1725 - REGTESTS: ssl: Update error messages that changed with OpenSSLv3.1.0-dev
1726 - BUG/MEDIUM: quic: Possible crash with released mux
1727 - BUG/MINOR: mux-quic: unsubscribe on release
1728 - BUG/MINOR: mux-quic: handle null timeout
1729 - BUG/MEDIUM: logs: fix http-client's log srv initialization
1730 - BUG/MINOR: mux-quic: remove dead code in qcs_xfer_data()
1731 - DEV: stream: Fix conn-streams dump in full stream message
1732 - CLEANUP: conn-stream: Rename cs_conn_close() and cs_conn_drain_and_close()
1733 - CLEANUP: conn-stream: Rename cs_applet_release()
1734 - MINOR: conn-stream: Rely on endpoint shutdown flags to shutdown an applet
1735 - BUG/MINOR: cache: Disable cache if applet creation fails
1736 - BUG/MINOR: backend: Don't allow to change backend applet
1737 - BUG/MEDIUM: conn-stream: Set back CS to RDY state when the appctx is created
1738 - MINOR: stream: Don't needlessly detach server endpoint on early client abort
1739 - MINOR: conn-stream: Make cs_detach_* private and use cs_destroy() from outside
1740 - MINOR: init: add the pre-check callback
1741 - MEDIUM: httpclient: change the init sequence
1742 - MEDIUM: httpclient/ssl: verify required
1743 - MINOR: httpclient/mworker: disable in the master process
1744 - MEDIUM: httpclient/ssl: verify is configurable and disabled by default
1745 - BUG/MAJOR: connection: Never remove connection from idle lists outside the lock
1746 - BUG/MEDIUM: mux-quic: fix stalled POST requets
1747 - BUG/MINOR: mux-quic: fix POST with abortonclose
1748 - MINOR: task: add a new task_instant_wakeup() function
1749 - MEDIUM: queue: use tasklet_instant_wakeup() to wake tasks
1750 - DOC: remove my name from the config doc
1751
Willy Tarreaua8b10652022-04-16 12:15:47 +020017522022/04/16 : 2.6-dev6
1753 - CLEANUP: connection: reduce the with of the mux dump output
1754 - CI: Update to actions/checkout@v3
1755 - CI: Update to actions/cache@v3
1756 - DOC: adjust QUIC instruction in INSTALL
1757 - BUG/MINOR: stats: define the description' background color in dark color scheme
1758 - BUILD: ssl: add USE_ENGINE and disable the openssl engine by default
1759 - BUILD: makefile: pass USE_ENGINE to cflags
1760 - BUILD: xprt-quic: replace ERR_func_error_string() with ERR_peek_error_func()
1761 - DOC: install: document the fact that SSL engines are not enabled by default
1762 - CI: github actions: disable -Wno-deprecated
1763 - BUILD: makefile: silence unbearable OpenSSL deprecation warnings
1764 - MINOR: sock: check configured limits at the sock layer, not the listener's
1765 - MINOR: connection: add a new flag CO_FL_FDLESS on fd-less connections
1766 - MINOR: connection: add conn_fd() to retrieve the FD only when it exists
1767 - MINOR: stream: only dump connections' FDs when they are valid
1768 - MINOR: connection: use conn_fd() when displaying connection errors
1769 - MINOR: connection: skip FD-based syscalls for FD-less connections
1770 - MEDIUM: connection: panic when calling FD-specific functions on FD-less conns
1771 - MINOR: mux-quic: properly set the flags and name fields
1772 - MINOR: connection: rearrange conn_get_src/dst to be a bit more extensible
1773 - MINOR: protocol: add get_src() and get_dst() at the protocol level
1774 - MINOR: quic-sock: provide a pair of get_src/get_dst functions
1775 - MEDIUM: ssl: improve retrieval of ssl_sock_ctx and SSL detection
1776 - MEDIUM: ssl: stop using conn->xprt_ctx to access the ssl_sock_ctx
1777 - MEDIUM: xprt-quic: implement get_ssl_sock_ctx()
1778 - MEDIUM: quic: move conn->qc into conn->handle
1779 - BUILD: ssl: fix build warning with previous changes to ssl_sock_ctx
1780 - BUILD: ssl: add an unchecked version of __conn_get_ssl_sock_ctx()
1781 - MINOR: ssl: refine the error testing for fc_err and fc_err_str
1782 - BUG/MINOR: sock: do not double-close the accepted socket on the error path
1783 - CI: cirrus: switch to FreeBSD-13.0
1784 - MINOR: log: add '~' to frontend when the transport layer provides SSL
1785 - BUILD/DEBUG: lru: fix printf format in debug code
1786 - BUILD: peers: adjust some printf format to silence cppcheck
1787 - BUILD/DEBUG: hpack-tbl: fix format string in standalone debug code
1788 - BUILD/DEBUG: hpack: use unsigned int in printf format in debug code
1789 - BUILD: halog: fix some incorrect signs in printf formats for integers
1790 - BUG/MINOR: h3: fix build with DEBUG_H3
1791 - BUG/MINOR: mux-h2: do not send GOAWAY if SETTINGS were not sent
1792 - BUG/MINOR: cache: do not display expired entries in "show cache"
1793 - BUG/MINOR: mux-h1: Don't release unallocated CS on error path
1794 - MINOR: applet: Make .init callback more generic
1795 - MINOR: conn-stream: Add flags to set the type of the endpoint
1796 - MEDIUM: applet: Set the appctx owner during allocation
1797 - MAJOR: conn-stream: Invert conn-stream endpoint and its context
1798 - REORG: Initialize the conn-stream by hand in cs_init()
1799 - MEDIUM: conn-stream: Add an endpoint structure in the conn-stream
1800 - MINOR: conn-stream: Move some CS flags to the endpoint
1801 - MEDIUM: conn-stream: Be able to pass endpoint to create a conn-stream
1802 - MEDIUM: conn-stream: Pre-allocate endpoint to create CS from muxes and applets
1803 - REORG: applet: Uninline appctx_new function
1804 - MAJOR: conn-stream: Share endpoint struct between the CS and the mux/applet
1805 - MEDIUM: conn-stream: Move remaning flags from CS to endpoint
1806 - MINOR: mux-pt: Rely on the endpoint instead of the conn-stream when possible
1807 - MINOR: conn-stream: Add ISBACK conn-stream flag
1808 - MINOR: conn-stream: Add header file with util functions related to conn-streams
1809 - MEDIUM: tree-wide: Use CS util functions instead of SI ones
1810 - MINOR: stream-int/txn: Move buffer for L7 retries in the HTTP transaction
1811 - CLEANUP: http-ana: Remove http_alloc_txn() function
1812 - MINOR: stream-int/stream: Move conn_retries counter in the stream
1813 - MINOR: stream: Simplify retries counter calculation
1814 - MEDIUM: stream-int/conn-stream: Move src/dst addresses in the conn-stream
1815 - MINOR: stream-int/conn-stream: Move half-close timeout in the conn-stream
1816 - MEDIUM: stream-int/stream: Use connect expiration instead of SI expiration
1817 - MINOR: stream-int/conn-stream: Report error to the CS instead of the SI
1818 - MEDIUM: conn-stream: Use endpoint error instead of conn-stream error
1819 - MINOR: channel: Use conn-streams as channel producer and consumer
1820 - MINOR: stream-int: Remove SI_FL_KILL_CON to rely on conn-stream endpoint only
1821 - MINOR: mux-h2/mux-fcgi: Fully rely on CS_EP_KILL_CONN
1822 - MINOR: stream-int: Remove SI_FL_NOLINGER/NOHALF to rely on CS flags instead
1823 - MINOR: stream-int: Remove SI_FL_DONT_WAKE to rely on CS flags instead
1824 - MINOR: stream-int: Remove SI_FL_INDEP_STR to rely on CS flags instead
1825 - MINOR: stream-int: Remove SI_FL_SRC_ADDR to rely on stream flags instead
1826 - CLEANUP: stream-int: Remove unused SI_FL_CLEAN_ABRT flag
1827 - MINOR: stream: Only save previous connection state for the server side
1828 - MEDIUM: stream-int: Move SI err_type in the stream
1829 - MEDIUM: stream-int/conn-stream: Move stream-interface state in the conn-stream
1830 - MINOR: stream-int/stream: Move si_retnclose() in the stream scope
1831 - MINOR: stream-int/backend: Move si_connect() in the backend scope
1832 - MINOR: stream-int/conn-stream: Move si_conn_ready() in the conn-stream scope
1833 - MINOR: conn-stream/connection: Move SHR/SHW modes in the connection scope
1834 - MEDIUM: conn-stream: Be prepared to fail to attach a cs to a mux
1835 - MEDIUM: stream-int/conn-stream: Handle I/O subscriptions in the conn-stream
1836 - MINOR: conn-stream: Rename CS functions dedicated to connections
1837 - MINOR: stream-int/conn-stream: Move si_shut* and si_chk* in conn-stream scope
1838 - MEDIUM: stream-int/conn-stream: Move si_ops in the conn-stream scope
1839 - MINOR: applet: Use the CS to register and release applets instead of SI
1840 - MINOR: connection: unconst mux's get_fist_cs() callback function
1841 - MINOR: stream-int/connection: Move conn_si_send_proxy() in the connection scope
1842 - REORG: stream-int: Export si_cs_recv(), si_cs_send() and si_cs_process()
1843 - REORG: stream-int: Move si_is_conn_error() in the header file
1844 - REORG: conn-stream: Move cs_shut* and cs_chk* in cs_utils
1845 - REORG: conn-stream: Move cs_app_ops in conn_stream.c
1846 - MINOR: stream-int-conn-stream: Move si_update_* in conn-stream scope
1847 - MINOR: stream-int/stream: Move si_update_both in stream scope
1848 - MEDIUM: conn-stream/applet: Add a data callback for applets
1849 - MINOR: stream-int/conn-stream: Move stream_int_read0() in the conn-stream scope
1850 - MINOR: stream-int/conn-stream: Move stream_int_notify() in the conn-stream scope
1851 - MINOR: stream-int/conn-stream: Move si_cs_io_cb() in the conn-stream scope
1852 - MINOR: stream-int/conn-stream: Move si_sync_recv/send() in conn-stream scope
1853 - MINOR: conn-stream: Move si_conn_cb in the conn-stream scope
1854 - MINOR: stream-int/conn-stream Move si_is_conn_error() in the conn-stream scope
1855 - MINOR: stream-int/conn-stream: Move si_alloc_ibuf() in the conn-stream scope
1856 - CLEANUP: stream-int: Remove unused SI functions
1857 - MEDIUM: stream-int/conn-stream: Move blocking flags from SI to CS
1858 - MEDIUM: stream-int/conn-stream: Move I/O functions to conn-stream
1859 - REORG: stream-int/conn-stream: Move remaining functions to conn-stream
1860 - MINOR: stream: Use conn-stream to report server error
1861 - MINOR: http-ana: Use CS to perform L7 retries
1862 - MEDIUM: stream: Don't use the stream-int anymore in process_stream()
1863 - MINOR: conn-stream: Remove the stream-interface from the conn-stream
1864 - DEV: flags: No longer dump SI flags
1865 - CLEANUP: tree-wide: Remove any ref to stream-interfaces
1866 - CLEANUP: conn-stream: Don't export internal functions
1867 - DOC: conn-stream: Add comments on functions of the new CS api
1868 - MEDIUM: check: Use a new conn-stream for each health-check run
1869 - CLEANUP: muxes: Remove MX_FL_CLEAN_ABRT flag
1870 - MINOR: conn-stream: Use a dedicated function to conditionally remove a CS
1871 - CLEANUP: conn-stream: rename cs_register_applet() to cs_applet_create()
1872 - MINOR: muxes: Improve show_fd callbacks to dump endpoint flags
1873 - MINOR: mux-h1: Rely on the endpoint instead of the conn-stream when possible
1874 - BUG/MINOR: quic: Avoid starting the mux if no ALPN sent by the client
1875 - BUILD: debug: mark the __start_mem_stats/__stop_mem_stats symbols as weak
1876 - BUILD: initcall: mark the __start_i_* symbols as weak, not global
1877 - BUG/MINOR: mux-h2: do not use timeout http-keep-alive on backend side
1878 - BUG/MINOR: mux-h2: use timeout http-request as a fallback for http-keep-alive
1879 - MINOR: muxes: Don't expect to have a mux without connection in destroy callback
1880 - MINOR: muxes: Don't handle proto upgrade for muxes not supporting it
1881 - MINOR: muxes: Don't expect to call release function with no mux defined
1882 - MINOR: conn-stream: Use unsafe functions to get conn/appctx in cs_detach_endp
1883 - BUG/MEDIUM: mux-h1: Don't request more room on partial trailers
1884 - BUILD: http-client: Avoid dead code when compiled without SSL support
1885 - BUG/MINOR: mux-quic: prevent a crash in session_free on mux.destroy
1886 - BUG/MINOR: quic-sock: do not double free session on conn init failure
1887 - BUG/MINOR: quic: fix return value for error in start
1888 - MINOR: quic: emit CONNECTION_CLOSE on app init error
1889 - BUILD: sched: workaround crazy and dangerous warning in Clang 14
1890 - BUILD: compiler: use a more portable set of asm(".weak") statements
1891 - BUG/MEDIUM: stream: do not abort connection setup too early
1892 - CLEANUP: extcheck: do not needlessly preset the server's address/port
1893 - MINOR: extcheck: fill in the server's UNIX socket address when known
1894 - BUG/MEDIUM: connection: Don't crush context pointer location if it is a CS
1895 - BUG/MEDIUM: quic: properly clean frames on stream free
1896 - BUG/MEDIUM: fcgi-app: Use http_msg flags to know if C-L header can be added
1897 - BUG/MEDIUM: compression: Don't forget to update htx_sl and http_msg flags
1898 - MINOR: tcp_sample: clarifying samples support per os, for further expansion.
1899 - MINOR: tcp_sample: extend support for get_tcp_info to macOs.
1900 - SCRIPTS: announce-release: update the doc's URL
1901 - DOC: lua: update a few doc URLs
1902 - SCRIPTS: announce-release: add shortened links to pending issues
1903
Willy Tarreaud3b4cd12022-04-09 11:31:40 +020019042022/04/09 : 2.6-dev5
1905 - DOC: reflect H2 timeout changes
1906 - BUG/MEDIUM: mux-fcgi: Properly handle return value of headers/trailers parsing
1907 - BUG/MEDIUM: mux-h1: Properly detect full buffer cases during message parsing
1908 - BUG/MINOR: log: Initialize the list element when allocating a new log server
1909 - BUG/MINOR: samples: add missing context names for sample fetch functions
1910 - MINOR: management: add some basic keyword dump infrastructure
1911 - MINOR: config: add a function to dump all known config keywords
1912 - MINOR: filters: extend flt_dump_kws() to dump to stdout
1913 - MINOR: services: extend list_services() to dump to stdout
1914 - MINOR: cli: add a new keyword dump function
1915 - MINOR: acl: add a function to dump the list of known ACL keywords
1916 - MINOR: samples: add a function to list register sample fetch keywords
1917 - MINOR: sample: list registered sample converter functions
1918 - MINOR: tools: add strordered() to check whether strings are ordered
1919 - MINOR: action: add a function to dump the list of actions for a ruleset
1920 - MINOR: config: alphanumerically sort config keywords output
1921 - MINOR: sample: alphanumerically sort sample & conv keyword dumps
1922 - MINOR: acl: alphanumerically sort the ACL dump
1923 - MINOR: cli: alphanumerically sort the dump of supported commands
1924 - MINOR: filters: alphabetically sort the list of filter names
1925 - MINOR: services: alphabetically sort service names
1926 - MEDIUM: httpclient/lua: be stricter with httpclient parameters
1927 - MINOR: ssl: split the cert commit io handler
1928 - MINOR: ssl: move the cert_exts and the CERT_TYPE enum
1929 - MINOR: ssl: simplify the certificate extensions array
1930 - MINOR: ssl: export ckch_inst_rebuild()
1931 - MINOR: ssl: add "crt" in the cert_exts array
1932 - MINOR: ssl/lua: CertCache.set() allows to update an SSL certificate file
1933 - BUILD: ssl/lua: CacheCert needs OpenSSL
1934 - DOC: lua: CertCache class documentation
1935 - BUG/MEDIUM: quic: do not use qcs from quic_stream on ACK parsing
1936 - MINOR: mux-quic: return qcs instance from qcc_get_qcs
1937 - MINOR: mux-quic: reorganize qcs free
1938 - MINOR: mux-quic: define release app-ops
1939 - BUG/MINOR: h3: release resources on close
1940 - BUG/MINOR: mux-quic: ensure to free all qcs on MUX release
1941 - CLEANUP: quic: complete comment on qcs_try_to_consume
1942 - MINOR: quic: implement stream descriptor for transport layer
1943 - MEDIUM: quic: move transport fields from qcs to qc_conn_stream
1944 - MEDIUM: mux-quic: remove qcs tree node
1945 - BUG/MINOR: cli/stream: fix "shutdown session" to iterate over all threads
1946 - DOC: management: add missing dot in 9.4.1
1947 - BUG/MAJOR: mux_pt: always report the connection error to the conn_stream
1948 - DOC: remove double blanks in configuration.txt
1949 - CI: github actions: update OpenSSL to 3.0.2
1950 - BUG/MEDIUM: quic: Possible crash in ha_quic_set_encryption_secrets()
1951 - CLEANUP: quic: Remove all atomic operations on quic_conn struct
1952 - CLEANUP: quic: Remove all atomic operations on packet number spaces
1953 - MEDIUM: quic: Send ACK frames asap
1954 - BUG/MINOR: quic: Missing probing packets when coalescing
1955 - BUG/MINOR: quic: Discard Initial packet number space only one time
1956 - MINOR: quic: Do not display any timer value from process_timer()
1957 - BUG/MINOR: quic: Do not probe from an already probing packet number space
1958 - BUG/MINOR: quic: Non duplicated frames upon fast retransmission
1959 - BUG/MINOR: quic: Too much prepared retransmissions due to anti-amplification
1960 - MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
1961 - MINOR: quic: Add traces about list of frames
1962 - BUG/MINOR: h3: Missing wait event struct field initialization
1963 - BUG/MINOR: quic: QUIC TLS secrets memory leak
1964 - BUG/MINOR: quic: Missing ACK range deallocations
1965 - BUG/MINOR: quic: Missing TX packet deallocations
1966 - CLEANUP: hpack: be careful about integer promotion from uint8_t
1967 - OPTIM: hpack: read 32 bits at once when possible.
1968 - MEDIUM: ssl: allow loading of a directory with the ca-file directive
1969 - BUG/MINOR: ssl: continue upon error when opening a directory w/ ca-file
1970 - MINOR: ssl: ca-file @system-ca loads the system trusted CA
1971 - DOC: configuration: add the ca-file changes
1972 - MINOR: sample: converter: Add add_item convertor
1973 - BUG/MINOR: ssl: handle X509_get_default_cert_dir() returning NULL
1974 - BUG/MINOR: ssl/cli: Remove empty lines from CLI output
1975 - MINOR: httpclient: enable request buffering
1976 - MEDIUM: httpclient: enable l7-retry
1977 - BUG/MINOR: httpclient: end callback in applet release
1978 - MINOR: quic: Add draining connection state.
1979 - MINOR: quic: Add closing connection state
1980 - BUG/MEDIUM: quic: ensure quic-conn survives to the MUX
1981 - CLEANUP: quic: use static qualifer on quic_close
1982 - CLEANUP: mux-quic: remove unused QC_CF_CC_RECV
1983 - BUG/MINOR: fix memleak on quic-conn streams cleaning
1984 - MINOR: mux-quic: factorize conn-stream attach
1985 - MINOR: mux-quic: adjust timeout to accelerate closing
1986 - MINOR: mux-quic: define is_active app-ops
1987 - MINOR: mux-quic: centralize send operations in qc_send
1988 - MEDIUM: mux-quic: report CO_FL_ERROR on send
1989 - MEDIUM: mux-quic: report errors on conn-streams
1990 - MEDIUM: quic: report closing state for the MUX
1991 - BUG/MINOR: fcgi-app: Don't add C-L header on response to HEAD requests
1992 - BUG/MEDIUM: stats: Be sure to never set EOM flag on an empty HTX message
1993 - BUG/MEDIUM: hlua: Don't set EOM flag on an empty HTX message in HTTP applet
1994 - BUG/MEDIUM: promex: Be sure to never set EOM flag on an empty HTX message
1995 - BUG/MEDIUM: mux-h1: Set outgoing message to DONE when payload length is reached
1996 - BUG/MINOR: http_client: Don't add input data on an empty request buffer
1997 - BUG/MEDIUM: http-conv: Fix url_enc() to not crush const samples
1998 - BUG/MEDIUM: http-act: Don't replace URI if path is not found or invalid
1999 - CLEANUP: mux-quic: remove uneeded TODO in qc_detach
2000 - BUG/MEDIUM: mux-quic: properly release conn-stream on detach
2001 - BUG/MINOR: quic: set the source not the destination address on accept()
2002 - BUG/MEDIUM: quic: Possible crash from quic_free_arngs()
2003 - MINOR: quic_tls: Add reusable cipher contexts to QUIC TLS contexts
2004 - MINOR: quic_tls: Stop hardcoding cipher IV lengths
2005 - CLEANUP: quic: Do not set any cipher/group from ssl_quic_initial_ctx()
2006 - MINOR: quic: Add short packet key phase bit values to traces
2007 - MINOR: quic_tls: Make key update use of reusable cipher contexts
2008 - BUG/MINOR: opentracing: setting the return value in function flt_ot_var_set()
2009 - BUG/BUILD: opentracing: fixed OT_DEFINE variable setting
2010 - EXAMPLES: opentracing: refined shell scripts for testing filter performance
2011 - DOC: opentracing: corrected comments in function descriptions
2012 - CLEANUP: opentracing: removed unused function flt_ot_var_unset()
2013 - CLEANUP: opentracing: removed unused function flt_ot_var_get()
2014 - Revert "MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'"
2015 - MINOR: opentracing: only takes the variables lock on shared entries
2016 - CLEANUP: opentracing: added flt_ot_smp_init() function
2017 - CLEANUP: opentracing: added variable to store variable length
2018 - MINOR: opentracing: improved normalization of context variable names
2019 - DEBUG: opentracing: show return values of all functions in the debug output
2020 - CLEANUP: opentracing: added FLT_OT_PARSE_INVALID_enum enum
2021 - DEBUG: opentracing: display the contents of the err variable after setting
2022 - MAJOR: opentracing: reenable usage of vars to transmit opentracing context
2023 - Revert "BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time"
2024 - MEDIUM: global: Add a "close-spread-time" option to spread soft-stop on time window
2025
Willy Tarreau0541c2b2022-03-26 08:31:33 +010020262022/03/26 : 2.6-dev4
2027 - BUG/MEDIUM: httpclient: don't consume data before it was analyzed
2028 - CLEANUP: htx: remove unused co_htx_remove_blk()
2029 - BUG/MINOR: httpclient: consume partly the blocks when necessary
2030 - BUG/MINOR: httpclient: remove the UNUSED block when parsing headers
2031 - BUG/MEDIUM: httpclient: must manipulate head, not first
2032 - REGTESTS: fix the race conditions in be2hex.vtc
2033 - BUG/MEDIUM: quic: Blocked STREAM when retransmitted
2034 - BUG/MAJOR: quic: Possible crash with full congestion control window
2035 - BUG/MINOR: httpclient/lua: stuck when closing without data
2036 - BUG/MEDIUM: applet: Don't call .release callback function twice
2037 - BUG/MEDIUM: cli/debug: Properly get the stream-int in all debug I/O handlers
2038 - BUG/MEDIUM: sink: Properly get the stream-int in appctx callback functions
2039 - DEV: udp: switch parser to getopt() instead of positional arguments
2040 - DEV: udp: add support for random packet corruption
2041 - MINOR: server: export server_parse_sni_expr() function
2042 - BUG/MINOR: httpclient: send the SNI using the host header
2043 - BUILD: httpclient: fix build without SSL
2044 - BUG/MINOR: server/ssl: free the SNI sample expression
2045 - BUG/MINOR: logs: fix logsrv leaks on clean exit
2046 - MINOR: actions: add new function free_act_rule() to free a single rule
2047 - BUG/MINOR: tcp-rules: completely free incorrect TCP rules on error
2048 - BUG/MINOR: http-rules: completely free incorrect TCP rules on error
2049 - BUG/MINOR: httpclient: only check co_data() instead of HTTP_MSG_DATA
2050 - BUG/MINOR: httpclient: process the response when received before the end of the request
2051 - BUG/MINOR: httpclient: CF_SHUTW_NOW should be tested with channel_is_empty()
2052 - CI: github actions: switch to LibreSSL-3.5.1
2053 - BUG/MEDIUM: mux-h1: only turn CO_FL_ERROR to CS_FL_ERROR with empty ibuf
2054 - BUG/MEDIUM: stream-int: do not rely on the connection error once established
2055 - BUG/MEDIUM: trace: avoid race condition when retrieving session from conn->owner
2056 - MEDIUM: mux-h2: slightly relax timeout management rules
2057 - BUG/MEDIUM: mux-h2: make use of http-request and keep-alive timeouts
2058 - BUG/MINOR: rules: Initialize the list element when allocating a new rule
2059 - BUG/MINOR: http-rules: Don't free new rule on allocation failure
2060 - DEV: coccinelle: Fix incorrect replacement in ist.cocci
2061 - CLEANUP: Reapply ist.cocci with `--include-headers-for-types --recursive-includes`
2062 - DEV: coccinelle: Add a new pattern to ist.cocci
2063 - CLEANUP: Reapply ist.cocci
2064 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+
2065 - MINOR: quic: Code factorization (TX buffer reuse)
2066 - CLEANUP: quic: "largest_acked_pn" pktns struc member moving
2067 - MEDIUM: quic: Limit the number of ACK ranges
2068 - MEDIUM: quic: Rework of the TX packets memory handling
2069 - BUG/MINOR: quic: Possible crash in parse_retry_token()
2070 - BUG/MINOR: quic: Possible leak in quic_build_post_handshake_frames()
2071 - BUG/MINOR: quic: Unsent frame because of qc_build_frms()
2072 - BUG/MINOR: mux-quic: Access to empty frame list from qc_send_frames()
2073 - BUG/MINOR: mux-quic: Missing I/O handler events initialization
2074 - BUG/MINOR: quic: Missing TX packet initializations
2075 - BUG/MINOR: quic: 1RTT packets ignored after mux was released
2076 - BUG/MINOR: quic: Incorrect peer address validation
2077 - BUG/MINOR: quic: Non initialized variable in quic_build_post_handshake_frames()
2078 - BUG/MINOR: quic: Wrong TX packet related counters handling
2079 - MEDIUM: mqtt: support mqtt_is_valid and mqtt_field_value converters for MQTTv3.1
2080 - DOC: config: Explictly add supported MQTT versions
2081 - MINOR: quic: Add traces about stream TX buffer consumption
2082 - MINOR: quic: Add traces in qc_set_timer() (scheduling)
2083 - CLEANUP: mux-quic: change comment style to not mess with git conflict
2084 - CLEANUP: mux-quic: adjust comment for coding-style
2085 - MINOR: mux-quic: complete trace when stream is not found
2086 - MINOR: mux-quic: add comments for send functions
2087 - MINOR: mux-quic: use shorter name for flow-control fields
2088 - MEDIUM: mux-quic: respect peer bidirectional stream data limit
2089 - MEDIUM: mux-quic: respect peer connection data limit
2090 - MINOR: mux-quic: support MAX_STREAM_DATA frame parsing
2091 - MINOR: mux-quic: support MAX_DATA frame parsing
2092 - BUILD: stream-int: avoid a build warning when DEBUG is empty
2093 - BUG/MINOR: quic: Wrong buffer length passed to generate_retry_token()
2094 - BUG/MINOR: tools: fix url2sa return value with IPv4
2095 - MINOR: mux-quic: convert fin on push-frame as boolean
2096 - BUILD: quic: add missing includes
2097 - REORG: quic: use a dedicated quic_loss.c
2098 - MINOR: mux-quic: declare the qmux trace module
2099 - MINOR: mux-quic: replace printfs by traces
2100 - MINOR: mux-quic: add trace event for frame sending
2101 - MINOR: mux-quic: add trace event for qcs_push_frame
2102 - MINOR: mux-quic: activate qmux traces on stdout via macro
2103 - BUILD: qpack: fix unused value when not using DEBUG_HPACK
2104 - CLEANUP: qpack: suppress by default stdout traces
2105 - CLEANUP: h3: suppress by default stdout traces
2106 - BUG/MINOR: tools: url2sa reads too far when no port nor path
2107
Willy Tarreaubc8b7a12022-03-11 18:09:24 +010021082022/03/11 : 2.6-dev3
2109 - DEBUG: rename WARN_ON_ONCE() to CHECK_IF()
2110 - DEBUG: improve BUG_ON output message accuracy
2111 - DEBUG: implement 4 levels of choices between warn and crash.
2112 - DEBUG: add two new macros to enable debugging in hot paths
2113 - DEBUG: buf: replace some sensitive BUG_ON() with BUG_ON_HOT()
2114 - DEBUG: buf: add BUG_ON_HOT() to most buffer management functions
2115 - MINOR: channel: don't use co_set_data() to decrement output
2116 - DEBUG: channel: add consistency checks using BUG_ON_HOT() in some key functions
2117 - MINOR: conn-stream: Improve API to have safe/unsafe accessors
2118 - MEDIUM: tree-wide: Use unsafe conn-stream API when it is relevant
2119 - CLEANUP: stream-int: Make si_cs_send() function static
2120 - REORG: stream-int: Uninline si_sync_recv() and make si_cs_recv() private
2121 - BUG/MEDIUM: mux-fcgi: Don't rely on SI src/dst addresses for FCGI health-checks
2122 - BUG/MEDIUM: htx: Fix a possible null derefs in htx_xfer_blks()
2123 - REGTESTS: fix the race conditions in normalize_uri.vtc
2124 - DEBUG: stream-int: Fix BUG_ON used to test appctx in si_applet_ops callbacks
2125 - BUILD: debug: fix build warning on older compilers around DEBUG_STRICT_ACTION
2126 - CLEANUP: connection: Indicate unreachability to the compiler in conn_recv_proxy
2127 - MINOR: connection: Transform safety check in PROXYv2 parsing into BUG_ON()
2128 - DOC: install: it's DEBUG_CFLAGS, not DEBUG, which is set to -g
2129 - DOC: install: describe the DEP variable
2130 - DOC: install: describe how to choose options used in the DEBUG variable
2131 - MINOR: queue: Replace if() + abort() with BUG_ON()
2132 - CLEANUP: adjust indentation in bidir STREAM handling function
2133 - MINOR: quic: simplify copy of STREAM frames to RX buffer
2134 - MINOR: quic: handle partially received buffered stream frame
2135 - MINOR: mux-quic: define flag for last received frame
2136 - BUG/MINOR: quic: support FIN on Rx-buffered STREAM frames
2137 - MEDIUM: quic: rearchitecture Rx path for bidirectional STREAM frames
2138 - REGTESTS: fix the race conditions in secure_memcmp.vtc
2139 - CLEANUP: stream: Remove useless tests on conn-stream in stream_dump()
2140 - BUILD: ssl: another build warning on LIBRESSL_VERSION_NUMBER
2141 - MINOR: quic: Ensure PTO timer is not set in the past
2142 - MINOR: quic: Post handshake I/O callback switching
2143 - MINOR: quic: Drop the packets of discarded packet number spaces
2144 - CLEANUP: quic: Useless tests in qc_try_rm_hp()
2145 - CLEANUP: quic: Indentation fix in qc_prep_pkts()
2146 - MINOR: quic: Assemble QUIC TLS flags at the same level
2147 - BUILD: conn_stream: avoid null-deref warnings on gcc 6
2148 - BUILD: connection: do not declare register_mux_proto() inline
2149 - BUILD: http_rules: do not declare http_*_keywords_registre() inline
2150 - BUILD: trace: do not declare trace_registre_source() inline
2151 - BUILD: tcpcheck: do not declare tcp_check_keywords_register() inline
2152 - DEBUG: reduce the footprint of BUG_ON() calls
2153 - BUG/MEDIUM: httpclient/lua: infinite appctx loop with POST
2154 - BUG/MINOR: pool: always align pool_heads to 64 bytes
2155 - DEV: udp: add a tiny UDP proxy for testing
2156 - DEV: udp: implement pseudo-random reordering/loss
2157 - DEV: udp: add an optional argument to set the prng seed
2158 - BUG/MINOR: quic: fix segfault on CC if mux uninitialized
2159 - BUG/MEDIUM: pools: fix ha_free() on area in the process of being freed
2160 - CLEANUP: tree-wide: remove a few rare non-ASCII chars
2161 - CI: coverity: simplify debugging options
2162 - CLEANUP: quic: complete ABORT_NOW with a TODO comment
2163 - MINOR: quic: qc_prep_app_pkts() implementation
2164 - MINOR: quic: Send short packet from a frame list
2165 - MINOR: quic: Make qc_build_frms() build ack-eliciting frames from a list
2166 - MINOR: quic: Export qc_send_app_pkts()
2167 - MINOR: mux-quic: refactor transport parameters init
2168 - MINOR: mux-quic: complete functions to detect stream type
2169 - MINOR: mux-quic: define new unions for flow-control fields
2170 - MEDIUM: mux-quic: use direct send transport API for STREAMs
2171 - MINOR: mux-quic: retry send opportunistically for remaining frames
2172 - MEDIUM: mux-quic: implement MAX_STREAMS emission for bidir streams
2173 - BUILD: fix kFreeBSD build.
2174 - MINOR: quic: Retry on qc_build_pkt() failures
2175 - BUG/MINOR: quic: Missing recovery start timer reset
2176 - CLEANUP: quic: Remove QUIC path manipulations out of the congestion controller
2177 - MINOR: quic: Add a "slow start" callback to congestion controller
2178 - MINOR: quic: Persistent congestion detection outside of controllers
2179 - CLEANUP: quic: Remove useless definitions from quic_cc_event struct
2180 - BUG/MINOR: quic: Confusion betwen "in_flight" and "prep_in_flight" in quic_path_prep_data()
2181 - MINOR: quic: More precise window update calculation
2182 - CLEANUP: quic: Remove window redundant variable from NewReno algorithm state struct
2183 - MINOR: quic: Add quic_max_int_by_size() function
2184 - BUG/MAJOR: quic: Wrong quic_max_available_room() returned value
2185 - MINOR: pools: add a new global option "no-memory-trimming"
2186 - BUG/MINOR: add missing modes in proxy_mode_str()
2187 - BUG/MINOR: cli: shows correct mode in "show sess"
2188 - BUG/MEDIUM: quic: do not drop packet on duplicate stream/decoding error
2189 - MINOR: stats: Add dark mode support for socket rows
2190 - BUILD: fix recent build breakage of freebsd caused by kFreeBSD build fix
2191 - BUG/MINOR: httpclient: Set conn-stream/channel EOI flags at the end of request
2192 - BUG/MINOR: hlua: Set conn-stream/channel EOI flags at the end of request
2193 - BUG/MINOR: stats: Set conn-stream/channel EOI flags at the end of request
2194 - BUG/MINOR: cache: Set conn-stream/channel EOI flags at the end of request
2195 - BUG/MINOR: promex: Set conn-stream/channel EOI flags at the end of request
2196 - BUG/MEDIUM: stream: Use the front analyzers for new listener-less streams
2197 - DEBUG: cache: Update underlying buffer when loading HTX message in cache applet
2198 - BUG/MEDIUM: mcli: Properly handle errors and timeouts during reponse processing
2199 - DEBUG: stream: Add the missing descriptions for stream trace events
2200 - DEBUG: stream: Fix stream trace message to print response buffer state
2201 - MINOR: proxy: Store monitor_uri as a `struct ist`
2202 - MINOR: proxy: Store fwdfor_hdr_name as a `struct ist`
2203 - MINOR: proxy: Store orgto_hdr_name as a `struct ist`
2204 - MEDIUM: proxy: Store server_id_hdr_name as a `struct ist`
2205 - CLEANUP: fcgi: Replace memcpy() on ist by istcat()
2206 - CLEANUP: fcgi: Use `istadv()` in `fcgi_strm_send_params`
2207 - BUG/MAJOR: mux-pt: Always destroy the backend connection on detach
2208 - DOC: sample fetch methods: move distcc_* to the right locations
2209 - MINOR: rules: record the last http/tcp rule that gave a final verdict
2210 - MINOR: stream: add "last_rule_file" and "last_rule_line" samples
2211 - BUG/MINOR: session: fix theoretical risk of memleak in session_accept_fd()
2212 - MINOR: quic: Add max_idle_timeout advertisement handling
2213 - MEDIUM: quic: Remove the QUIC connection reference counter
2214 - BUG/MINOR: quic: ACK_REQUIRED and ACK_RECEIVED flag collision
2215 - BUG/MINOR: quic: Missing check when setting the anti-amplification limit as reached
2216 - MINOR: quic: Add a function to compute the current PTO
2217 - MEDIUM: quic: Implement the idle timeout feature
2218 - BUG/MEDIUM: quic: qc_prep_app_pkts() retries on qc_build_pkt() failures
2219 - CLEANUP: quic: Comments fix for qc_prep_(app)pkts() functions
2220 - MINOR: mux-quic: prevent push frame for unidir streams
2221 - MINOR: mux-quic: improve opportunistic retry sending for STREAM frames
2222 - MINOR: quic: implement sending confirmation
2223 - MEDIUM: mux-quic: improve bidir STREAM frames sending
2224 - MEDIUM: check: do not auto configure SSL/PROXY for dynamic servers
2225 - REGTESTS: server: test SSL/PROXY with checks for dynamic servers
2226 - MEDIUM: server: remove experimental-mode for dynamic servers
2227 - BUG/MINOR: buffer: fix debugging condition in b_peek_varint()
2228
Willy Tarreau3b1d1902022-02-25 17:12:11 +010022292022/02/25 : 2.6-dev2
2230 - DOC: management: rework the Master CLI section
2231 - DOC: management: add expert and experimental mode in 9.4.1
2232 - CLEANUP: cleanup a commentary in pcli_parse_request()
2233 - BUG/MINOR: mworker/cli: don't display help on master applet
2234 - MINOR: mworker/cli: mcli-debug-mode enables every command
2235 - MINOR: mworker/cli: add flags in the prompt
2236 - BUG/MINOR: httpclient: Revisit HC request and response buffers allocation
2237 - BUG/MEDIUM: httpclient: Xfer the request when the stream is created
2238 - MINOR: httpclient: Don't limit data transfer to 1024 bytes
2239 - BUILD: ssl: adjust guard for X509_get_X509_PUBKEY(x)
2240 - REGTESTS: ssl: skip show_ssl_ocspresponse.vtc when BoringSSL is used
2241 - MINOR: quic: Do not modify a marked as consumed datagram
2242 - MINOR: quic: Wrong datagram buffer passed to quic_lstnr_dgram_dispatch()
2243 - MINOR: quic: Remove a useless test in quic_get_dgram_dcid()
2244 - BUG/MINOR: ssl: Remove empty lines from "show ssl ocsp-response <id>" output
2245 - CLEANUP: ssl: Remove unused ssl_sock_create_cert function
2246 - MINOR: ssl: Use high level OpenSSL APIs in sha2 converter
2247 - MINOR: ssl: Remove EC_KEY related calls when preparing SSL context
2248 - REGTESTS: ssl: Add test for "curves" and "ecdhe" SSL options
2249 - MINOR: ssl: Remove EC_KEY related calls when creating a certificate
2250 - REGTESTS: ssl: Add test for "generate-certificates" SSL option
2251 - MINOR: ssl: Remove call to SSL_CTX_set_tlsext_ticket_key_cb with OpenSSLv3
2252 - MINOR: ssl: Remove call to HMAC_Init_ex with OpenSSLv3
2253 - MINOR: h3: hardcode the stream id of control stream
2254 - MINOR: mux-quic: remove quic_transport_params_update
2255 - MINOR: quic: rename local tid variable
2256 - MINOR: quic: remove unused xprt rcv_buf operation
2257 - MINOR: quic: take out xprt snd_buf operation
2258 - CI: enable QUIC for Coverity scan
2259 - BUG/MINOR: mworker: does not erase the pidfile upon reload
2260 - MINOR: ssl: Remove call to ERR_func_error_string with OpenSSLv3
2261 - MINOR: ssl: Remove call to ERR_load_SSL_strings with OpenSSLv3
2262 - REGTESTS: ssl: Add tests for DH related options
2263 - MINOR: ssl: Create HASSL_DH wrapper structure
2264 - MINOR: ssl: Add ssl_sock_get_dh_from_bio helper function
2265 - MINOR: ssl: Factorize ssl_get_tmp_dh and append a cbk to its name
2266 - MINOR: ssl: Add ssl_sock_set_tmp_dh helper function
2267 - MINOR: ssl: Add ssl_sock_set_tmp_dh_from_pkey helper function
2268 - MINOR: ssl: Add ssl_new_dh_fromdata helper function
2269 - MINOR: ssl: Build local DH of right size when needed
2270 - MINOR: ssl: Set default dh size to 2048
2271 - MEDIUM: ssl: Replace all DH objects by EVP_PKEY on OpenSSLv3 (via HASSL_DH type)
2272 - MINOR: ssl: Remove calls to SSL_CTX_set_tmp_dh_callback on OpenSSLv3
2273 - MINOR: quic: Remove an RX buffer useless lock
2274 - MINOR: quic: Variable used before being checked in ha_quic_add_handshake_data()
2275 - MINOR: quic: EINTR error ignored
2276 - MINOR: quic: Potential overflow expression in qc_parse_frm()
2277 - MINOR: quic: Possible overflow in qpack_get_varint()
2278 - CLEANUP: h3: Unreachable target in h3_uqs_init()
2279 - MINOR: quic: Possible memleak in qc_new_conn()
2280 - MINOR: quic: Useless statement in quic_crypto_data_cpy()
2281 - BUG/MEDIUM: pools: ensure items are always large enough for the pool_cache_item
2282 - BUG/MINOR: pools: always flush pools about to be destroyed
2283 - CLEANUP: pools: don't needlessly set a call mark during refilling of caches
2284 - DEBUG: pools: add extra sanity checks when picking objects from a local cache
2285 - DEBUG: pools: let's add reverse mapping from cache heads to thread and pool
2286 - DEBUG: pools: replace the link pointer with the caller's address on pool_free()
2287 - BUG/MAJOR: sched: prevent rare concurrent wakeup of multi-threaded tasks
2288 - MINOR: quic: use a global dghlrs for each thread
2289 - BUG/MEDIUM: quic: fix crash on CC if mux not present
2290 - MINOR: qpack: fix typo in trace
2291 - BUG/MINOR: quic: fix FIN stream signaling
2292 - BUG/MINOR: h3: fix the header length for QPACK decoding
2293 - MINOR: h3: remove transfer-encoding header
2294 - MINOR: h3: add documentation on h3_decode_qcs
2295 - MINOR: h3: set properly HTX EOM/BODYLESS on HEADERS parsing
2296 - MINOR: mux-quic: implement rcv_buf
2297 - MINOR: mux-quic: set EOS on rcv_buf
2298 - MINOR: h3: set CS_FL_NOT_FIRST
2299 - MINOR: h3: report frames bigger than rx buffer
2300 - MINOR: h3: extract HEADERS parsing in a dedicated function
2301 - MINOR: h3: implement DATA parsing
2302 - MINOR: quic: Wrong smoothed rtt initialization
2303 - MINOR: quic: Wrong loss delay computation
2304 - MINOR: quic: Code never reached in qc_ssl_sess_init()
2305 - MINOR: quic: ha_quic_set_encryption_secrets without server specific code
2306 - MINOR: quic: Avoid warning about NULL pointer dereferences
2307 - MINOR: quic: Useless test in quic_lstnr_dghdlr()
2308 - MINOR: quic: Non checked returned value for cs_new() in hq_interop_decode_qcs()
2309 - MINOR: h3: Dead code in h3_uqs_init()
2310 - MINOR: quic: Non checked returned value for cs_new() in h3_decode_qcs()
2311 - MINOR: quic: Possible frame parsers array overrun
2312 - MINOR: quic: Do not retransmit too much packets.
2313 - MINOR: quic: Move quic_rxbuf_pool pool out of xprt part
2314 - MINOR: h3: report error on HEADERS/DATA parsing
2315 - BUG/MINOR: jwt: Double free in deinit function
2316 - BUG/MINOR: jwt: Missing pkey free during cleanup
2317 - BUG/MINOR: jwt: Memory leak if same key is used in multiple jwt_verify calls
2318 - BUG/MINOR: httpclient/cli: display junk characters in vsn
2319 - MINOR: h3: remove unused return value on decode_qcs
2320 - BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies
2321 - BUG/MAJOR: spoe: properly detach all agents when releasing the applet
2322 - REGTESTS: server: close an occasional race on dynamic_server_ssl.vtc
2323 - REGTESTS: peers: leave a bit more time to peers to synchronize
2324 - BUG/MEDIUM: h2/hpack: fix emission of HPACK DTSU after settings change
2325 - BUG/MINOR: mux-h2: update the session's idle delay before creating the stream
2326 - BUG/MINOR: httpclient: reinit flags in httpclient_start()
2327 - BUG/MINOR: mailers: negotiate SMTP, not ESMTP
2328 - MINOR: httpclient: sets an alternative destination
2329 - MINOR: httpclient/lua: add 'dst' optionnal field
2330 - BUG/MINOR: ssl: Add missing return value check in ssl_ocsp_response_print
2331 - BUG/MINOR: ssl: Fix leak in "show ssl ocsp-response" CLI command
2332 - BUG/MINOR: ssl: Missing return value check in ssl_ocsp_response_print
2333 - CLEANUP: httpclient/cli: fix indentation alignment of the help message
2334 - BUG/MINOR: tools: url2sa reads ipv4 too far
2335 - BUG/MEDIUM: httpclient: limit transfers to the maximum available room
2336 - DEBUG: buffer: check in __b_put_blk() whether the buffer room is respected
2337 - MINOR: mux-quic: fix a possible null dereference in qc_timeout_task
2338 - BUG/MEDIUM: htx: Be sure to have a buffer to perform a raw copy of a message
2339 - BUG/MEDIUM: mux-h1: Don't wake h1s if mux is blocked on lack of output buffer
2340 - BUG/MAJOR: mux-h2: Be sure to always report HTX parsing error to the app layer
2341 - DEBUG: stream-int: Check CS_FL_WANT_ROOM is not set with an empty input buffer
2342 - MINOR: quic: do not modify offset node if quic_rx_strm_frm in tree
2343 - MINOR: h3: fix compiler warning variable set but not used
2344 - MINOR: mux-quic: fix uninitialized return on qc_send
2345 - MINOR: quic: fix handling of out-of-order received STREAM frames
2346 - MINOR: pools: mark most static pool configuration variables as read-mostly
2347 - CLEANUP: pools: remove the now unused pool_is_crowded()
2348 - REGTESTS: fix the race conditions in 40be_2srv_odd_health_checks
2349 - BUG/MEDIUM: stream: Abort processing if response buffer allocation fails
2350 - MINOR: httpclient/lua: ability to set a server timeout
2351 - BUG/MINOR: httpclient/lua: missing pop for new timeout parameter
2352 - DOC: httpclient/lua: fix the type of the dst parameter
2353 - CLEANUP: httpclient: initialize the client in stage INIT not REGISTER
2354 - CLEANUP: muxes: do not use a dynamic trash in list_mux_protos()
2355 - CLEANUP: vars: move the per-process variables initialization to vars.c
2356 - CLEANUP: init: remove the ifdef on HAPROXY_MEMMAX
2357 - MINOR: pools: disable redundant poisonning on pool_free()
2358 - MINOR: pools: introduce a new pool_debugging global variable
2359 - MINOR: pools: switch the fail-alloc test to runtime only
2360 - MINOR: pools: switch DEBUG_DONT_SHARE_POOLS to runtime
2361 - MINOR: pools: add a new debugging flag POOL_DBG_COLD_FIRST
2362 - MINOR: pools: add a new debugging flag POOL_DBG_INTEGRITY
2363 - MINOR: pools: make the global pools a runtime option.
2364 - MEDIUM: pools: replace CONFIG_HAP_POOLS with a runtime "NO_CACHE" flag.
2365 - MINOR: pools: store the allocated size for each pool
2366 - MINOR: pools: get rid of POOL_EXTRA
2367 - MINOR: pools: replace DEBUG_POOL_TRACING with runtime POOL_DBG_CALLER
2368 - MINOR: pools: replace DEBUG_MEMORY_POOLS with runtime POOL_DBG_TAG
2369 - MINOR: pools: add a debugging flag for memory poisonning option
2370 - MEDIUM: initcall: move STG_REGISTER earlier
2371 - MEDIUM: init: split the early initialization in its own function
2372 - MINOR: init: extract args parsing to their own function
2373 - MEDIUM: init: handle arguments earlier
2374 - MINOR: pools: delegate parsing of command line option -dM to a new function
2375 - MINOR: pools: support setting debugging options using -dM
2376 - BUILD: makefile: enable both DEBUG_STRICT and DEBUG_MEMORY_POOLS by default
2377 - CI: github: enable pool debugging by default
2378 - DOC: Fix usage/examples of deprecated ACLs
2379 - DOC: internal: update the pools API to mention boot-time settings
2380 - DOC: design: add design thoughts for later simplification of the pools
2381 - DOC: design: commit the temporary design notes on thread groups
2382 - MINOR: stream-int: Handle appctx case first when releasing the endpoint
2383 - MINOR: connection: Be prepared to handle conn-stream with no connection
2384 - MINOR: stream: Handle appctx case first when creating a new stream
2385 - MINOR: connection: Add a function to detach a conn-stream from the connection
2386 - MINOR: stream-int: Add function to reset a SI endpoint
2387 - MINOR: stream-int: Add function to attach a connection to a SI
2388 - MINOR: stream-int: Be able to allocate a CS without connection
2389 - MEDIUM: stream: No longer release backend conn-stream on connection retry
2390 - MEDIUM: stream: Allocate backend CS when the stream is created
2391 - REORG: conn_stream: move conn-stream stuff in dedicated files
2392 - MEDIUM: conn-stream: No longer access connection field directly
2393 - MEDIUM: conn-stream: Be prepared to use an appctx as conn-stream endpoint
2394 - MAJOR: conn_stream/stream-int: move the appctx to the conn-stream
2395 - MEDIUM: applet: Set the conn-stream as appctx owner instead of the stream-int
2396 - MEDIUM: conn_stream: Add a pointer to the app object into the conn-stream
2397 - MINOR: stream: Add pointer to front/back conn-streams into stream struct
2398 - MINOR: stream: Slightly rework stream_new to separate CS/SI initialization
2399 - MINOR: stream-int: Always access the stream-int via the conn-stream
2400 - MINOR: backend: Always access the stream-int via the conn-stream
2401 - MINOR: stream: Always access the stream-int via the conn-stream
2402 - MINOR: http-ana: Always access the stream-int via the conn-stream
2403 - MINOR: cli: Always access the stream-int via the conn-stream
2404 - MINOR: log: Always access the stream-int via the conn-stream
2405 - MINOR: frontend: Always access the stream-int via the conn-stream
2406 - MINOR: proxy: Always access the stream-int via the conn-stream
2407 - MINOR: peers: Always access the stream-int via the conn-stream
2408 - MINOR: debug: Always access the stream-int via the conn-stream
2409 - MINOR: hlua: Always access the stream-int via the conn-stream
2410 - MINOR: cache: Always access the stream-int via the conn-stream
2411 - MINOR: dns: Always access the stream-int via the conn-stream
2412 - MINOR: http-act: Always access the stream-int via the conn-stream
2413 - MINOR: httpclient: Always access the stream-int via the conn-stream
2414 - MINOR: tcp-act: Always access the stream-int via the conn-stream
2415 - MINOR: sink: Always access the stream-int via the conn-stream
2416 - MINOR: conn-stream: Rename cs_detach() to cs_detach_endp()
2417 - CLEANUP: conn-stream: Don't export conn-stream pool
2418 - MAJOR: stream/conn_stream: Move the stream-interface into the conn-stream
2419 - CLEANUP: stream-int: rename si_reset() to si_init()
2420 - MINOR: conn-stream: Release a CS when both app and endp are detached
2421 - MINOR: stream: Don't destroy conn-streams but detach app and endp
2422 - MAJOR: check: Use a persistent conn-stream for health-checks
2423 - CLEANUP: conn-stream: Remove cs_destroy()
2424 - CLEANUP: backend: Don't export connect_server anymore
2425 - BUG/MINOR: h3/hq_interop: Fix CS and stream creation
2426 - BUILD: tree-wide: Avoid warnings about undefined entities retrieved from a CS
2427 - BUG/MINOR: proxy: preset the error message pointer to NULL in parse_new_proxy()
2428 - BUG/MEDIUM: quic: fix received ACK stream calculation
2429 - BUILD: stream: fix build warning with older compilers
2430 - BUG/MINOR: debug: fix get_tainted() to properly read an atomic value
2431 - DEBUG: move the tainted stuff to bug.h for easier inclusion
2432 - DEBUG: cleanup back trace generation
2433 - DEBUG: cleanup BUG_ON() configuration
2434 - DEBUG: mark ABORT_NOW() as unreachable
2435 - DBEUG: add a new WARN_ON() macro
2436 - DEBUG: make the _BUG_ON() macro return the condition
2437 - DEBUG: add a new WARN_ON_ONCE() macro
2438 - DEBUG: report BUG_ON() and WARN_ON() in the tainted flags
2439 - MINOR: quic: adjust buffer handling for STREAM transmission
2440 - MINOR: quic: liberate the TX stream buffer after ACK processing
2441 - MINOR: quic: add a TODO for a memleak frame on ACK consume
2442
Willy Tarreau2454d6e2022-02-01 18:06:59 +010024432022/02/01 : 2.6-dev1
2444 - BUG/MINOR: cache: Fix loop on cache entries in "show cache"
2445 - BUG/MINOR: httpclient: allow to replace the host header
2446 - BUG/MINOR: lua: don't expose internal proxies
2447 - MEDIUM: mworker: seamless reload use the internal sockpairs
2448 - BUG/MINOR: lua: remove loop initial declarations
2449 - BUG/MINOR: mworker: does not add the -sf in wait mode
2450 - BUG/MEDIUM: mworker: FD leak of the eventpoll in wait mode
2451 - MINOR: quic: do not reject PADDING followed by other frames
2452 - REORG: quic: add comment on rare thread concurrence during CID alloc
2453 - CLEANUP: quic: add comments on CID code
2454 - MEDIUM: quic: handle CIDs to rattach received packets to connection
2455 - MINOR: qpack: support litteral field line with non-huff name
2456 - MINOR: quic: activate QUIC traces at compilation
2457 - MINOR: quic: use more verbose QUIC traces set at compile-time
2458 - MEDIUM: pool: refactor malloc_trim/glibc and jemalloc api addition detections.
2459 - MEDIUM: pool: support purging jemalloc arenas in trim_all_pools()
2460 - BUG/MINOR: mworker: deinit of thread poller was called when not initialized
2461 - BUILD: pools: only detect link-time jemalloc on ELF platforms
2462 - CI: github actions: add the output of $CC -dM -E-
2463 - BUG/MEDIUM: cli: Properly set stream analyzers to process one command at a time
2464 - BUILD: evports: remove a leftover from the dead_fd cleanup
2465 - MINOR: quic: Set "no_application_protocol" alert
2466 - MINOR: quic: More accurate immediately close.
2467 - MINOR: quic: Immediately close if no transport parameters extension found
2468 - MINOR: quic: Rename qc_prep_hdshk_pkts() to qc_prep_pkts()
2469 - MINOR: quic: Possible crash when inspecting the xprt context
2470 - MINOR: quic: Dynamically allocate the secrete keys
2471 - MINOR: quic: Add a function to derive the key update secrets
2472 - MINOR: quic: Add structures to maintain key phase information
2473 - MINOR: quic: Optional header protection key for quic_tls_derive_keys()
2474 - MINOR: quic: Add quic_tls_key_update() function for Key Update
2475 - MINOR: quic: Enable the Key Update process
2476 - MINOR: quic: Delete the ODCIDs asap
2477 - BUG/MINOR: vars: Fix the set-var and unset-var converters
2478 - MEDIUM: pool: Following up on previous pool trimming update.
2479 - BUG/MEDIUM: mux-h1: Fix splicing by properly detecting end of message
2480 - BUG/MINOR: mux-h1: Fix splicing for messages with unknown length
2481 - MINOR: mux-h1: Improve H1 traces by adding info about http parsers
2482 - MINOR: mux-h1: register a stats module
2483 - MINOR: mux-h1: add counters instance to h1c
2484 - MINOR: mux-h1: count open connections/streams on stats
2485 - MINOR: mux-h1: add stat for total count of connections/streams
2486 - MINOR: mux-h1: add stat for total amount of bytes received and sent
2487 - REGTESTS: h1: Add a script to validate H1 splicing support
2488 - BUG/MINOR: server: Don't rely on last default-server to init server SSL context
2489 - BUG/MEDIUM: resolvers: Detach query item on response error
2490 - MEDIUM: resolvers: No longer store query items in a list into the response
2491 - BUG/MAJOR: segfault using multiple log forward sections.
2492 - BUG/MEDIUM: h1: Properly reset h1m flags when headers parsing is restarted
2493 - BUG/MINOR: resolvers: Don't overwrite the error for invalid query domain name
2494 - BUILD: bug: Fix error when compiling with -DDEBUG_STRICT_NOCRASH
2495 - BUG/MEDIUM: sample: Fix memory leak in sample_conv_jwt_member_query
2496 - DOC: spoe: Clarify use of the event directive in spoe-message section
2497 - DOC: config: Specify %Ta is only available in HTTP mode
2498 - BUILD: tree-wide: avoid warnings caused by redundant checks of obj_types
2499 - IMPORT: slz: use the correct CRC32 instruction when running in 32-bit mode
2500 - MINOR: quic: fix segfault on CONNECTION_CLOSE parsing
2501 - MINOR: h3: add BUG_ON on control receive function
2502 - MEDIUM: xprt-quic: finalize app layer initialization after ALPN nego
2503 - MINOR: h3: remove duplicated FIN flag position
2504 - MAJOR: mux-quic: implement a simplified mux version
2505 - MEDIUM: mux-quic: implement release mux operation
2506 - MEDIUM: quic: detect the stream FIN
2507 - MINOR: mux-quic: implement subscribe on stream
2508 - MEDIUM: mux-quic: subscribe on xprt if remaining data after send
2509 - MEDIUM: mux-quic: wake up xprt on data transferred
2510 - MEDIUM: mux-quic: handle when sending buffer is full
2511 - MINOR: quic: RX buffer full due to wrong CRYPTO data handling
2512 - MINOR: quic: Race issue when consuming RX packets buffer
2513 - MINOR: quic: QUIC encryption level RX packets race issue
2514 - MINOR: quic: Delete remaining RX handshake packets
2515 - MINOR: quic: Remove QUIC TX packet length evaluation function
2516 - MINOR: hq-interop: fix tx buffering
2517 - MINOR: mux-quic: remove uneeded code to check fin on TX
2518 - MINOR: quic: add HTX EOM on request end
2519 - BUILD: mux-quic: fix compilation with DEBUG_MEM_STATS
2520 - MINOR: http-rules: Add capture action to http-after-response ruleset
2521 - BUG/MINOR: cli/server: Don't crash when a server is added with a custom id
2522 - MINOR: mux-quic: do not release qcs if there is remaining data to send
2523 - MINOR: quic: notify the mux on CONNECTION_CLOSE
2524 - BUG/MINOR: mux-quic: properly initialize flow control
2525 - MINOR: quic: Compilation fix for quic_rx_packet_refinc()
2526 - MINOR: h3: fix possible invalid dereference on htx parsing
2527 - DOC: config: retry-on list is space-delimited
2528 - DOC: config: fix error-log-format example
2529 - BUG/MEDIUM: mworker/cli: crash when trying to access an old PID in prompt mode
2530 - MINOR: hq-interop: refix tx buffering
2531 - REGTESTS: ssl: use X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY for cert check
2532 - MINOR: cli: "show version" displays the current process version
2533 - CLEANUP: cfgparse: modify preprocessor guards around numa detection code
2534 - MEDIUM: cfgparse: numa detect topology on FreeBSD.
2535 - BUILD: ssl: unbreak the build with newer libressl
2536 - MINOR: vars: Move UPDATEONLY flag test to vars_set_ifexist
2537 - MINOR: vars: Set variable type to ANY upon creation
2538 - MINOR: vars: Delay variable content freeing in var_set function
2539 - MINOR: vars: Parse optional conditions passed to the set-var converter
2540 - MINOR: vars: Parse optional conditions passed to the set-var actions
2541 - MEDIUM: vars: Enable optional conditions to set-var converter and actions
2542 - DOC: vars: Add documentation about the set-var conditions
2543 - REGTESTS: vars: Add new test for conditional set-var
2544 - MINOR: quic: Attach timer task to thread for the connection.
2545 - CLEANUP: quic_frame: Remove a useless suffix to STOP_SENDING
2546 - MINOR: quic: Add traces for STOP_SENDING frame and modify others
2547 - CLEANUP: quic: Remove cdata_len from quic_tx_packet struct
2548 - MINOR: quic: Enable TLS 0-RTT if needed
2549 - MINOR: quic: No TX secret at EARLY_DATA encryption level
2550 - MINOR: quic: Add quic_set_app_ops() function
2551 - MINOR: ssl_sock: Set the QUIC application from ssl_sock_advertise_alpn_protos.
2552 - MINOR: quic: Make xprt support 0-RTT.
2553 - MINOR: qpack: Missing check for truncated QPACK fields
2554 - CLEANUP: quic: Comment fix for qc_strm_cpy()
2555 - MINOR: hq_interop: Stop BUG_ON() truncated streams
2556 - MINOR: quic: Do not mix packet number space and connection flags
2557 - CLEANUP: quic: Shorten a litte bit the traces in lstnr_rcv_pkt()
2558 - MINOR: mux-quic: fix trace on stream creation
2559 - CLEANUP: quic: fix spelling mistake in a trace
2560 - CLEANUP: quic: rename quic_conn conn to qc in quic_conn_free
2561 - MINOR: quic: add missing lock on cid tree
2562 - MINOR: quic: rename constant for haproxy CIDs length
2563 - MINOR: quic: refactor concat DCID with address for Initial packets
2564 - MINOR: quic: compare coalesced packets by DCID
2565 - MINOR: quic: refactor DCID lookup
2566 - MINOR: quic: simplify the removal from ODCID tree
2567 - REGTESTS: vars: Remove useless ssl tunes from conditional set-var test
2568 - MINOR: ssl: Remove empty lines from "show ssl ocsp-response" output
2569 - MINOR: quic: Increase the RX buffer for each connection
2570 - MINOR: quic: Add a function to list remaining RX packets by encryption level
2571 - MINOR: quic: Stop emptying the RX buffer asap.
2572 - MINOR: quic: Do not expect to receive only one O-RTT packet
2573 - MINOR: quic: Do not forget STREAM frames received in disorder
2574 - MINOR: quic: Wrong packet refcount handling in qc_pkt_insert()
2575 - DOC: fix misspelled keyword "resolve_retries" in resolvers
2576 - CLEANUP: quic: rename quic_conn instances to qc
2577 - REORG: quic: move mux function outside of xprt
2578 - MINOR: quic: add reference to quic_conn in ssl context
2579 - MINOR: quic: add const qualifier for traces function
2580 - MINOR: trace: add quic_conn argument definition
2581 - MINOR: quic: use quic_conn as argument to traces
2582 - MINOR: quic: add quic_conn instance in traces for qc_new_conn
2583 - MINOR: quic: Add stream IDs to qcs_push_frame() traces
2584 - MINOR: quic: unchecked qc_retrieve_conn_from_cid() returned value
2585 - MINOR: quic: Wrong dropped packet skipping
2586 - MINOR: quic: Handle the cases of overlapping STREAM frames
2587 - MINOR: quic: xprt traces fixes
2588 - MINOR: quic: Drop asap Retry or Version Negotiation packets
2589 - MINOR: pools: work around possibly slow malloc_trim() during gc
2590 - DEBUG: ssl: make sure we never change a servername on established connections
2591 - MINOR: quic: Add traces for RX frames (flow control related)
2592 - MINOR: quic: Add CONNECTION_CLOSE phrase to trace
2593 - REORG: quic: remove qc_ prefix on functions which not used it directly
2594 - BUG/MINOR: quic: upgrade rdlock to wrlock for ODCID removal
2595 - MINOR: quic: remove unnecessary call to free_quic_conn_cids()
2596 - MINOR: quic: store ssl_sock_ctx reference into quic_conn
2597 - MINOR: quic: remove unnecessary if in qc_pkt_may_rm_hp()
2598 - MINOR: quic: replace usage of ssl_sock_ctx by quic_conn
2599 - MINOR: quic: delete timer task on quic_close()
2600 - MEDIUM: quic: implement refcount for quic_conn
2601 - BUG/MINOR: quic: fix potential null dereference
2602 - BUG/MINOR: quic: fix potential use of uninit pointer
2603 - BUG/MEDIUM: backend: fix possible sockaddr leak on redispatch
2604 - BUG/MEDIUM: peers: properly skip conn_cur from incoming messages
2605 - CI: Github Actions: do not show VTest failures if build failed
2606 - BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time
2607 - MINOR: compat: detect support for dl_iterate_phdr()
2608 - MINOR: debug: add ability to dump loaded shared libraries
2609 - MINOR: debug: add support for -dL to dump library names at boot
2610 - BUG/MEDIUM: ssl: initialize correctly ssl w/ default-server
2611 - REGTESTS: ssl: fix ssl_default_server.vtc
2612 - BUG/MINOR: ssl: free the fields in srv->ssl_ctx
2613 - BUG/MEDIUM: ssl: free the ckch instance linked to a server
2614 - REGTESTS: ssl: update of a crt with server deletion
2615 - BUILD/MINOR: cpuset FreeBSD 14 build fix.
2616 - MINOR: pools: always evict oldest objects first in pool_evict_from_local_cache()
2617 - DOC: pool: document the purpose of various structures in the code
2618 - CLEANUP: pools: do not use the extra pointer to link shared elements
2619 - CLEANUP: pools: get rid of the POOL_LINK macro
2620 - MINOR: pool: allocate from the shared cache through the local caches
2621 - CLEANUP: pools: group list updates in pool_get_from_cache()
2622 - MINOR: pool: rely on pool_free_nocache() in pool_put_to_shared_cache()
2623 - MINOR: pool: make pool_is_crowded() always true when no shared pools are used
2624 - MINOR: pool: check for pool's fullness outside of pool_put_to_shared_cache()
2625 - MINOR: pool: introduce pool_item to represent shared pool items
2626 - MINOR: pool: add a function to estimate how many may be released at once
2627 - MEDIUM: pool: compute the number of evictable entries once per pool
2628 - MINOR: pools: prepare pool_item to support chained clusters
2629 - MINOR: pools: pass the objects count to pool_put_to_shared_cache()
2630 - MEDIUM: pools: centralize cache eviction in a common function
2631 - MEDIUM: pools: start to batch eviction from local caches
2632 - MEDIUM: pools: release cached objects in batches
2633 - OPTIM: pools: reduce local pool cache size to 512kB
2634 - CLEANUP: assorted typo fixes in the code and comments This is 29th iteration of typo fixes
2635 - CI: github actions: update OpenSSL to 3.0.1
2636 - BUILD/MINOR: tools: solaris build fix on dladdr.
2637 - BUG/MINOR: cli: fix _getsocks with musl libc
2638 - BUG/MEDIUM: http-ana: Preserve response's FLT_END analyser on L7 retry
2639 - MINOR: quic: Wrong traces after rework
2640 - MINOR: quic: Add trace about in flight bytes by packet number space
2641 - MINOR: quic: Wrong first packet number space computation
2642 - MINOR: quic: Wrong packet number space computation for PTO
2643 - MINOR: quic: Wrong loss time computation in qc_packet_loss_lookup()
2644 - MINOR: quic: Wrong ack_delay compution before calling quic_loss_srtt_update()
2645 - MINOR: quic: Remove nb_pto_dgrams quic_conn struct member
2646 - MINOR: quic: Wrong packet number space trace in qc_prep_pkts()
2647 - MINOR: quic: Useless test in qc_prep_pkts()
2648 - MINOR: quic: qc_prep_pkts() code moving
2649 - MINOR: quic: Speeding up Handshake Completion
2650 - MINOR: quic: Probe Initial packet number space more often
2651 - MINOR: quic: Probe several packet number space upon timer expiration
2652 - MINOR: quic: Comment fix.
2653 - MINOR: quic: Improve qc_prep_pkts() flexibility
2654 - MINOR: quic: Do not drop secret key but drop the CRYPTO data
2655 - MINOR: quic: Prepare Handshake packets asap after completed handshake
2656 - MINOR: quic: Flag asap the connection having reached the anti-amplification limit
2657 - MINOR: quic: PTO timer too often reset
2658 - MINOR: quic: Re-arm the PTO timer upon datagram receipt
2659 - MINOR: proxy: add option idle-close-on-response
2660 - MINOR: cpuset: switch to sched_setaffinity for FreeBSD 14 and above.
2661 - CI: refactor spelling check
2662 - CLEANUP: assorted typo fixes in the code and comments
2663 - BUILD: makefile: add -Wno-atomic-alignment to work around clang abusive warning
2664 - MINOR: quic: Only one CRYPTO frame by encryption level
2665 - MINOR: quic: Missing retransmission from qc_prep_fast_retrans()
2666 - MINOR: quic: Non-optimal use of a TX buffer
2667 - BUG/MEDIUM: mworker: don't use _getsocks in wait mode
2668 - BUG/MINOR: ssl: Store client SNI in SSL context in case of ClientHello error
2669 - BUG/MAJOR: mux-h1: Don't decrement .curr_len for unsent data
2670 - DOC: internals: document the pools architecture and API
2671 - CI: github actions: clean default step conditions
2672 - BUILD: cpuset: fix build issue on macos introduced by previous change
2673 - MINOR: quic: Remaining TRACEs with connection as firt arg
2674 - MINOR: quic: Reset ->conn quic_conn struct member when calling qc_release()
2675 - MINOR: quic: Flag the connection as being attached to a listener
2676 - MINOR: quic: Wrong CRYPTO frame concatenation
2677 - MINOR: quid: Add traces quic_close() and quic_conn_io_cb()
2678 - REGTESTS: ssl: Fix ssl_errors regtest with OpenSSL 1.0.2
2679 - MINOR: quic: Do not dereference ->conn quic_conn struct member
2680 - MINOR: quic: fix return of quic_dgram_read
2681 - MINOR: quic: add config parse source file
2682 - MINOR: quic: implement Retry TLS AEAD tag generation
2683 - MEDIUM: quic: implement Initial token parsing
2684 - MINOR: quic: define retry_source_connection_id TP
2685 - MEDIUM: quic: implement Retry emission
2686 - MINOR: quic: free xprt tasklet on its thread
2687 - BUG/MEDIUM: connection: properly leave stopping list on error
2688 - MINOR: pools: enable pools with DEBUG_FAIL_ALLOC as well
2689 - MINOR: quic: As server, skip 0-RTT packet number space
2690 - MINOR: quic: Do not wakeup the I/O handler before the mux is started
2691 - BUG/MEDIUM: htx: Adjust length to add DATA block in an empty HTX buffer
2692 - CI: github actions: use cache for OpenTracing
2693 - BUG/MINOR: httpclient: don't send an empty body
2694 - BUG/MINOR: httpclient: set default Accept and User-Agent headers
2695 - BUG/MINOR: httpclient/lua: don't pop the lua stack when getting headers
2696 - BUILD/MINOR: fix solaris build with clang.
2697 - BUG/MEDIUM: server: avoid changing healthcheck ctx with set server ssl
2698 - CI: refactor OpenTracing build script
2699 - DOC: management: mark "set server ssl" as deprecated
2700 - MEDIUM: cli: yield between each pipelined command
2701 - MINOR: channel: add new function co_getdelim() to support multiple delimiters
2702 - BUG/MINOR: cli: avoid O(bufsize) parsing cost on pipelined commands
2703 - MEDIUM: h2/hpack: emit a Dynamic Table Size Update after settings change
2704 - MINOR: quic: Retransmit the TX frames in the same order
2705 - MINOR: quic: Remove the packet number space TX MT_LIST
2706 - MINOR: quic: Splice the frames which could not be added to packets
2707 - MINOR: quic: Add the number of TX bytes to traces
2708 - CLEANUP: quic: Replace <nb_pto_dgrams> by <probe>
2709 - MINOR: quic: Send two ack-eliciting packets when probing packet number spaces
2710 - MINOR: quic: Probe regardless of the congestion control
2711 - MINOR: quic: Speeding up handshake completion
2712 - MINOR: quic: Release RX Initial packets asap
2713 - MINOR: quic: Release asap TX frames to be transmitted
2714 - MINOR: quic: Probe even if coalescing
2715 - BUG/MEDIUM: cli: Never wait for more data on client shutdown
2716 - BUG/MEDIUM: mcli: do not try to parse empty buffers
2717 - BUG/MEDIUM: mcli: always realign wrapping buffers before parsing them
2718 - BUG/MINOR: stream: make the call_rate only count the no-progress calls
2719 - MINOR: quic: do not use quic_conn after dropping it
2720 - MINOR: quic: adjust quic_conn refcount decrement
2721 - MINOR: quic: fix race-condition on xprt tasklet free
2722 - MINOR: quic: free SSL context on quic_conn free
2723 - MINOR: quic: Add QUIC_FT_RETIRE_CONNECTION_ID parsing case
2724 - MINOR: quic: Wrong packet number space selection
2725 - DEBUG: pools: add new build option DEBUG_POOL_INTEGRITY
2726 - MINOR: quic: add missing include in quic_sock
2727 - MINOR: quic: fix indentation in qc_send_ppkts
2728 - MINOR: quic: remove dereferencement of connection when possible
2729 - MINOR: quic: set listener accept cb on parsing
2730 - MEDIUM: quic/ssl: add new ex data for quic_conn
2731 - MINOR: quic: initialize ssl_sock_ctx alongside the quic_conn
2732 - MINOR: ssl: fix build in release mode
2733 - MINOR: pools: partially uninline pool_free()
2734 - MINOR: pools: partially uninline pool_alloc()
2735 - MINOR: pools: prepare POOL_EXTRA to be split into multiple extra fields
2736 - MINOR: pools: extend pool_cache API to pass a pointer to a caller
2737 - DEBUG: pools: add new build option DEBUG_POOL_TRACING
2738 - DEBUG: cli: add a new "debug dev fd" expert command
2739 - MINOR: fd: register the write side of the poller pipe as well
2740 - CI: github actions: use cache for SSL libs
2741 - BUILD: debug/cli: condition test of O_ASYNC to its existence
2742 - BUILD: pools: fix build error on DEBUG_POOL_TRACING
2743 - MINOR: quic: refactor header protection removal
2744 - MINOR: quic: handle app data according to mux/connection layer status
2745 - MINOR: quic: refactor app-ops initialization
2746 - MINOR: receiver: define a flag for local accept
2747 - MEDIUM: quic: flag listener for local accept
2748 - MINOR: quic: do not manage connection in xprt snd_buf
2749 - MINOR: quic: remove wait handshake/L6 flags on init connection
2750 - MINOR: listener: add flags field
2751 - MINOR: quic: define QUIC flag on listener
2752 - MINOR: quic: create accept queue for QUIC connections
2753 - MINOR: listener: define per-thr struct
2754 - MAJOR: quic: implement accept queue
2755 - CLEANUP: mworker: simplify mworker_free_child()
2756 - BUILD/DEBUG: lru: update the standalone code to support the revision
2757 - DEBUG: lru: use a xorshift generator in the testing code
2758 - BUG/MAJOR: compiler: relax alignment constraints on certain structures
2759 - BUG/MEDIUM: fd: always align fdtab[] to 64 bytes
2760 - MINOR: quic: No DCID length for datagram context
2761 - MINOR: quic: Comment fix about the token found in Initial packets
2762 - MINOR: quic: Get rid of a struct buffer in quic_lstnr_dgram_read()
2763 - MINOR: quic: Remove the QUIC haproxy server packet parser
2764 - MINOR: quic: Add new defintion about DCIDs offsets
2765 - MINOR: quic: Add a list to QUIC sock I/O handler RX buffer
2766 - MINOR: quic: Allocate QUIC datagrams from sock I/O handler
2767 - MINOR: proto_quic: Allocate datagram handlers
2768 - MINOR: quic: Pass CID as a buffer to quic_get_cid_tid()
2769 - MINOR: quic: Convert quic_dgram_read() into a task
2770 - CLEANUP: quic: Remove useless definition
2771 - MINOR: proto_quic: Wrong allocations for TX rings and RX bufs
2772 - MINOR: quic: Do not consume the RX buffer on QUIC sock i/o handler side
2773 - MINOR: quic: Do not reset a full RX buffer
2774 - MINOR: quic: Attach all the CIDs to the same connection
2775 - MINOR: quic: Make usage of by datagram handler trees
2776 - MEDIUM: da: new optional data file download scheduler service.
2777 - MEDIUM: da: update doc and build for new scheduler mode service.
2778 - MEDIUM: da: update module to handle schedule mode.
2779 - MINOR: quic: Drop Initial packets with wrong ODCID
2780 - MINOR: quic: Wrong RX buffer tail handling when no more contiguous data
2781 - MINOR: quic: Iterate over all received datagrams
2782 - MINOR: quic: refactor quic CID association with threads
2783 - BUG/MEDIUM: resolvers: Really ignore trailing dot in domain names
2784 - DEV: flags: Add missing flags
2785 - BUG/MINOR: sink: Use the right field in appctx context in release callback
2786 - MINOR: sock: move the unused socket cleaning code into its own function
2787 - BUG/MEDIUM: mworker: close unused transferred FDs on load failure
2788 - BUILD: atomic: make the old HA_ATOMIC_LOAD() support const pointers
2789 - BUILD: cpuset: do not use const on the source of CPU_AND/CPU_ASSIGN
2790 - BUILD: checks: fix inlining issue on set_srv_agent_[addr,port}
2791 - BUILD: vars: avoid overlapping field initialization
2792 - BUILD: server-state: avoid using not-so-portable isblank()
2793 - BUILD: mux_fcgi: avoid aliasing of a const struct in traces
2794 - BUILD: tree-wide: mark a few numeric constants as explicitly long long
2795 - BUILD: tools: fix warning about incorrect cast with dladdr1()
2796 - BUILD: task: use list_to_mt_list() instead of casting list to mt_list
2797 - BUILD: mworker: include tools.h for platforms without unsetenv()
2798 - BUG/MINOR: mworker: fix a FD leak of a sockpair upon a failed reload
2799 - MINOR: mworker: set the master side of ipc_fd in the worker to -1
2800 - MINOR: mworker: allocate and initialize a mworker_proc
2801 - CI: Consistently use actions/checkout@v2
2802 - REGTESTS: Remove REQUIRE_VERSION=1.8 from all tests
2803 - MINOR: mworker: sets used or closed worker FDs to -1
2804 - MINOR: quic: Try to accept 0-RTT connections
2805 - MINOR: quic: Do not try to treat 0-RTT packets without started mux
2806 - MINOR: quic: Do not try to accept a connection more than one time
2807 - MINOR: quic: Initialize the connection timer asap
2808 - MINOR: quic: Do not use connection struct xprt_ctx too soon
2809 - Revert "MINOR: mworker: sets used or closed worker FDs to -1"
2810 - BUILD: makefile: avoid testing all -Wno-* options when not needed
2811 - BUILD: makefile: validate support for extra warnings by batches
2812 - BUILD: makefile: only compute alternative options if required
2813 - DEBUG: fd: make sure we never try to insert/delete an impossible FD number
2814 - MINOR: mux-quic: add comment
2815 - MINOR: mux-quic: properly initialize qcc flags
2816 - MINOR: mux-quic: do not consider CONNECTION_CLOSE for the moment
2817 - MINOR: mux-quic: create a timeout task
2818 - MEDIUM: mux-quic: delay the closing with the timeout
2819 - MINOR: mux-quic: release idle conns on process stopping
2820 - MINOR: listener: replace the listener's spinlock with an rwlock
2821 - BUG/MEDIUM: listener: read-lock the listener during accept()
2822 - MINOR: mworker/cli: set expert/experimental mode from the CLI
2823
Willy Tarreau73dec762021-11-23 15:50:11 +010028242021/11/23 : 2.6-dev0
2825 - MINOR: version: it's development again
2826
Willy Tarreauf2e08332021-11-23 15:40:21 +010028272021/11/23 : 2.5.0
2828 - BUILD: SSL: add quictls build to scripts/build-ssl.sh
2829 - BUILD: SSL: add QUICTLS to build matrix
2830 - CLEANUP: sock: Wrap `accept4_broken = 1` into additional parenthesis
2831 - BUILD: cli: clear a maybe-unused warning on some older compilers
2832 - BUG/MEDIUM: cli: make sure we can report a warning from a bind keyword
2833 - BUG/MINOR: ssl: make SSL counters atomic
2834 - CLEANUP: assorted typo fixes in the code and comments
2835 - BUG/MINOR: ssl: free correctly the sni in the backend SSL cache
2836 - MINOR: version: mention that it's stable now
2837
Willy Tarreaua99cdfb2021-11-19 19:30:04 +010028382021/11/19 : 2.5-dev15
2839 - BUG/MINOR: stick-table/cli: Check for invalid ipv6 key
2840 - CLEANUP: peers: Remove useless test on peer variable in peer_trace()
2841 - DOC: log: Add comments to specify when session's listener is defined or not
2842 - BUG/MEDIUM: mux-h1: Handle delayed silent shut in h1_process() to release H1C
2843 - REGTESTS: ssl_crt-list_filters: feature cmd incorrectly set
2844 - DOC: internals: document the list API
2845 - BUG/MINOR: h3: ignore unknown frame types
2846 - MINOR: quic: redirect app_ops snd_buf through mux
2847 - MEDIUM: quic: inspect ALPN to install app_ops
2848 - MINOR: quic: support hq-interop
2849 - MEDIUM: quic: send version negotiation packet on unknown version
2850 - BUG/MEDIUM: mworker: cleanup the listeners when reexecuting
2851 - DOC: internals: document the scheduler API
2852 - BUG/MINOR: quic: fix version negotiation packet generation
2853 - CLEANUP: ssl: fix wrong #else commentary
2854 - MINOR: config: support default values for environment variables
2855 - SCRIPTS: run-regtests: reduce the number of processes needed to check options
2856 - SCRIPT: run-regtests: avoid several calls to grep to test for features
2857 - SCRIPT: run-regtests: avoid calling awk to compute the version
2858 - REGTEST: set retries count to zero for all tests that expect at 503
2859 - REGTESTS: make tcp-check_min-recv fail fast
2860 - REGTESTS: extend the default I/O timeouts and make them overridable
2861 - BUG/MEDIUM: ssl: backend TLS resumption with sni and TLSv1.3
2862 - BUG/MEDIUM: ssl: abort with the correct SSL error when SNI not found
2863 - REGTESTS: ssl: test the TLS resumption
2864 - BUILD: makefile: stop opening sub-shells for each and every command
2865 - BUILD: makefile: reorder objects by build time
2866 - BUG/MEDIUM: mux-h2: always process a pending shut read
2867 - MINOR: quic_sock: missing CO_FL_ADDR_TO_SET flag
2868 - MINOR: quic: Possible wrong connection identification
2869 - MINOR: quic: Correctly pad UDP datagrams
2870 - MINOR: quic: Support transport parameters draft TLS extension
2871 - MINOR: quic: Anti-amplification implementation
2872 - MINOR: quic: Wrong Initial packet connection initialization
2873 - MINOR: quic: Wrong ACK range building
2874 - MINOR: quic: Update some QUIC protocol errors
2875 - MINOR: quic: Send CONNECTION_CLOSE frame upon TLS alert
2876 - MINOR: quic: Wrong largest acked packet number parsing
2877 - MINOR: quic: Add minimalistic support for stream flow control frames
2878 - MINOR: quic: Wrong value for version negotiation packet 'Unused' field
2879 - MINOR: quic: Support draft-29 QUIC version
2880 - BUG/MINOR: quic: fix segfault on trace for version negotiation
2881 - BUG/MINOR: hq-interop: fix potential NULL dereference
2882 - BUILD: quic: fix potential NULL dereference on xprt_quic
2883 - DOC: lua: documentation about the httpclient API
2884 - BUG/MEDIUM: cache/cli: make "show cache" thread-safe
2885 - BUG/MEDIUM: shctx: leave the block allocator when enough blocks are found
2886 - BUG/MINOR: shctx: do not look for available blocks when the first one is enough
2887 - MINOR: shctx: add a few BUG_ON() for consistency checks
2888
Willy Tarreaud83f6e62021-11-14 16:04:57 +010028892021/11/14 : 2.5-dev14
2890 - DEV: coccinelle: Remove unused `expression e`
2891 - DEV: coccinelle: Add rule to use `istend()` where possible
2892 - CLEANUP: Apply ist.cocci
2893 - CLEANUP: Re-apply xalloc_size.cocci
2894 - CLEANUP: halog: make the default usage message fit in small screens
2895 - MINOR: h3/qpack: fix gcc11 warnings
2896 - MINOR: mux-quic: fix gcc11 warning
2897 - MINOR: h3: fix potential NULL dereference
2898 - MINOR: quic: Fix potential null pointer dereference
2899 - CLEANUP: halog: remove unused strl2ui()
2900 - OPTIM: halog: improve field parser speed for modern compilers
2901 - OPTIM: halog: skip fields 64 bits at a time when supported
2902 - DEV: coccinelle: Add rule to use `isttrim()` where possible
2903 - CLEANUP: Apply ist.cocci
2904 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_memcat()`
2905 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`
2906 - CLEANUP: Apply ist.cocci
2907 - CLEANUP: chunk: Remove duplicated chunk_Xcat implementation
2908 - CLEANUP: chunk: remove misleading chunk_strncat() function
2909 - BUG/MINOR: cache: properly ignore unparsable max-age in quotes
2910 - Revert "DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`"
2911 - DOC: stats: fix location of the text representation
2912 - DOC: internals: document the IST API
2913 - BUG/MINOR: httpclient/lua: rcv freeze when no request payload
2914 - BUG/MEDIUM: httpclient: channel_add_input() must use htx->data
2915 - MINOR: promex: backend aggregated server check status
2916 - DOC: config: Fix typo in ssl_fc_unique_id description
2917 - BUG/MINOR: http-ana: Apply stop to the current section for http-response rules
2918 - Revert "BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back"
2919 - DOC: config: Be more explicit in "allow" actions description
2920 - DOC: lua: Be explicit with the Reply object limits
2921 - MINOR: mux-h1: Slightly Improve H1 traces
2922 - BUG/MEDIUM: conn-stream: Don't reset CS flags on close
2923 - CLEANUP: mworker: remove any relative PID reference
2924 - MEDIUM: mworker: reexec in waitpid mode after successful loading
2925 - MINOR: mworker: clarify starting/failure messages
2926 - MINOR: mworker: only increment the number of reload in wait mode
2927 - MINOR: mworker: implement a reload failure counter
2928 - MINOR: mworker: ReloadFailed shown depending on failedreload
2929 - MINOR: mworker: change the way we set PROC_O_LEAVING
2930 - BUG/MINOR: mworker: doesn't launch the program postparser
2931 - DOC: management: edit the "show proc" example to show the current output
2932 - BUG/MEDIUM: httpclient/cli: free of unallocated hc->req.uri
2933 - REGTESTS: httpclient/lua: add greater body values
2934 - BUG/MINOR: mux-h2: Fix H2_CF_DEM_SHORT_READ value
2935 - BUG/MINOR: pools: don't mark ourselves as harmless in DEBUG_UAF mode
2936 - BUG/MEDIUM: connection: make cs_shutr/cs_shutw//cs_close() idempotent
2937 - BUILD: makefile: simplify detection of libatomic
2938
Willy Tarreau08d32202021-11-06 09:25:57 +010029392021/11/06 : 2.5-dev13
2940 - SCRIPTS: git-show-backports: re-enable file-based filtering
2941 - MINOR: jwt: Make invalid static JWT algorithms an error in `jwt_verify` converter
2942 - MINOR: mux-h2: add trace on extended connect usage
2943 - BUG/MEDIUM: mux-h2: reject upgrade if no RFC8441 support
2944 - MINOR: stream/mux: implement websocket stream flag
2945 - MINOR: connection: implement function to update ALPN
2946 - MINOR: connection: add alternative mux_ops param for conn_install_mux_be
2947 - MEDIUM: server/backend: implement websocket protocol selection
2948 - MINOR: server: add ws keyword
2949 - BUG/MINOR: resolvers: fix sent messages were counted twice
2950 - BUG/MINOR: resolvers: throw log message if trash not large enough for query
2951 - MINOR: resolvers/dns: split dns and resolver counters in dns_counter struct
2952 - MEDIUM: resolvers: rename dns extra counters to resolvers extra counters
2953 - BUG/MINOR: jwt: Fix jwt_parse_alg incorrectly returning JWS_ALG_NONE
2954 - DOC: add QUIC instruction in INSTALL
2955 - CLEANUP: halog: Remove dead stores
2956 - DEV: coccinelle: Add ha_free.cocci
2957 - CLEANUP: Apply ha_free.cocci
2958 - DEV: coccinelle: Add rule to use `istnext()` where possible
2959 - CLEANUP: Apply ist.cocci
2960 - REGTESTS: Use `feature cmd` for 2.5+ tests (2)
2961 - DOC: internals: move some API definitions to an "api" subdirectory
2962 - MINOR: quic: Allocate listener RX buffers
2963 - CLEANUP: quic: Remove useless code
2964 - MINOR: quic: Enhance the listener RX buffering part
2965 - MINOR: quic: Remove a useless lock for CRYPTO frames
2966 - MINOR: quic: Use QUIC_LOCK QUIC specific lock label.
2967 - MINOR: backend: Get client dst address to set the server's one only if needful
2968 - MINOR: compression: Warn for 'compression offload' in defaults sections
2969 - MEDIUM: connection: rename fc_conn_err and bc_conn_err to fc_err and bc_err
2970 - DOC: configuration: move the default log formats to their own section
2971 - MINOR: ssl: make the ssl_fc_sni() sample-fetch function always available
2972 - MEDIUM: log: add the client's SNI to the default HTTPS log format
2973 - DOC: config: add an example of reasonably complete error-log-format
2974 - DOC: config: move error-log-format before custom log format
2975
Willy Tarreau35dc13f2021-11-02 18:05:41 +010029762021/11/02 : 2.5-dev12
2977 - MINOR: httpclient: support payload within a buffer
2978 - MINOR: httpclient/lua: support more HTTP methods
2979 - MINOR: httpclient/lua: return an error when it can't generate the request
2980 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
2981 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
2982 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
2983 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
2984 - CLEANUP: lua: Use a const address to retrieve info about a connection
2985 - MINOR: connection: Add function to get src/dst without updating the connection
2986 - MINOR: session: Add src and dst addresses to the session
2987 - MINOR: stream-int: Add src and dst addresses to the stream-interface
2988 - MINOR: frontend: Rely on client src and dst addresses at stream level
2989 - MINOR: log: Rely on client addresses at the appropriate level to log messages
2990 - MINOR: session: Rely on client source address at session level to log error
2991 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
2992 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
2993 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
2994 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
2995 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
2996 - MEDIUM: backend: Rely on addresses at stream level to init server connection
2997 - MEDIUM: connection: Assign session addresses when PROXY line is received
2998 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
2999 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
3000 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
3001 - DOC: config: Fix alphabetical order of fc_* samples
3002 - MINOR: tcp-sample: Add samples to get original info about client connection
3003 - REGTESTS: Add script to test client src/dst manipulation at different levels
3004 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
3005 - BUILD: log: Fix compilation without SSL support
3006 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
3007 - MINOR: protocols: add a new protocol type selector
3008 - MINOR: protocols: make use of the protocol type to select the protocol
3009 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
3010 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
3011 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
3012 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
3013 - DEV: coccinelle: Add realloc_leak.cocci
3014 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
3015 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
3016 - BUILD: atomic: fix build on mac/arm64
3017 - MINOR: atomic: remove the memcpy() call and dependency on string.h
3018 - MINOR: httpclient: request streaming with a callback
3019 - MINOR: httpclient/lua: handle the streaming into the lua applet
3020 - REGTESTS: lua: test httpclient with body streaming
3021 - DOC: halog: Move the `-qry` parameter into the correct section in help text
3022 - MINOR: halog: Rename -qry to -query
3023 - CLEANUP: halog: Use consistent indentation in help()
3024 - BUG/MINOR: halog: Add missing newlines in die() messages
3025 - MINOR: halog: Add support for extracting captures using -hdr
3026 - DOC: Typo fixed "it" should be "is"
3027 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
3028 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
3029 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
3030 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
3031 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
3032 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
3033 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
3034 - BUILD/MINOR: cpuset freebsd build fix
3035 - BUG/MINOR: httpclient: use a placeholder value for Host header
3036 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
3037 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
3038 - MINOR: stream: Improve dump of bogus streams
3039 - DOC/peers: some grammar fixes for peers 2.1 spec
3040 - MEDIUM: vars: make the var() sample fetch function really return type ANY
3041 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
3042
Willy Tarreaub4d0cd02021-10-22 19:40:44 +020030432021/10/22 : 2.5-dev11
3044 - DEV: coccinelle: Add strcmp.cocci
3045 - CLEANUP: Apply strcmp.cocci
3046 - CI: Add `permissions` to GitHub Actions
3047 - CI: Clean up formatting in GitHub Action definitions
3048 - MINOR: add ::1 to predefined LOCALHOST acl
3049 - CLEANUP: assorted typo fixes in the code and comments
3050 - CLEANUP: Consistently `unsigned int` for bitfields
3051 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
3052 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
3053 - MINOR: jwt: Empty the certificate tree during deinit
3054 - MINOR: jwt: jwt_verify returns negative values in case of error
3055 - MINOR: jwt: Do not rely on enum order anymore
3056 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
3057 - MINOR: httpclient/cli: access should be only done from expert mode
3058 - DOC: management: doc about the CLI httpclient
3059 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
3060 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
3061 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
3062 - CLEANUP: dns: always detach the appctx from the dns session on release
3063 - DEBUG: dns: add a few more BUG_ON at sensitive places
3064 - BUG/MAJOR: resolvers: add other missing references during resolution removal
3065 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
3066 - BUILD: resolvers: avoid a possible warning on null-deref
3067 - BUG/MEDIUM: resolvers: always check a valid item in query_list
3068 - CLEANUP: always initialize the answer_list
3069 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
3070 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
3071 - MEDIUM: resolvers: use a kill list to preserve the list consistency
3072 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
3073 - BUG/MEDIUM: checks: fix the starting thread for external checks
3074 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
3075 - MEDIUM: resolvers: hash the records before inserting them into the tree
3076 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
3077 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
3078 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
3079 - OPTIM: dns: use an atomic check for the list membership
3080 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
3081 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
3082 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
3083 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
3084 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
3085 - MINOR: quic: Increase the size of handshake RX UDP datagrams
3086 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
3087 - MINOR: memprof: report the delta between alloc and free on realloc()
3088 - MINOR: memprof: add one pointer size to the size of allocations
3089 - BUILD: fix compilation on NetBSD
3090 - MINOR: backend: add traces for idle connections reuse
3091 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
3092 - MINOR: backend: improve perf with tcp proxies skipping idle conns
3093 - MINOR: connection: remove unneeded memset 0 for idle conns
3094
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +020030952021/10/16 : 2.5-dev10
3096 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
3097 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
3098 - MINOR: rules: add a file name and line number to act_rules
3099 - MINOR: stream: report the current rule in "show sess all" when known
3100 - MINOR: stream: report the current filter in "show sess all" when known
3101 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
3102 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
3103 - CI: github: switch to OpenSSL 3.0.0
3104 - REGTESTS: ssl: Fix references to removed option in test description
3105 - MINOR: ssl: Add ssllib_name_startswith precondition
3106 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
3107 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
3108 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
3109 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
3110 - MEDIUM: h3: properly manage tx buffers for large data
3111 - MINOR: mux-quic: standardize h3 settings sending
3112 - CLEANUP: h3: remove dead code
3113 - MINOR: mux-quic: implement standard method to detect if qcc is dead
3114 - MEDIUM: mux-quic: defer stream shut if remaining tx data
3115 - MINOR: mux: remove last occurences of qcc ring buffer
3116 - MINOR: quic: handle CONNECTION_CLOSE frame
3117 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
3118 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
3119 - MINOR: http: Add http_auth_bearer sample fetch
3120 - MINOR: jwt: Parse JWT alg field
3121 - MINOR: jwt: JWT tokenizing helper function
3122 - MINOR: jwt: Insert public certificates into dedicated JWT tree
3123 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
3124 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
3125 - REGTESTS: jwt: Add tests for the jwt_verify converter
3126 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
3127 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
3128 - MINOR: proto_tcp: also report the attempted MSS values in error message
3129 - MINOR: inet: report the faulty interface name in "bind" errors
3130 - MINOR: protocol: report the file and line number for binding/listening errors
3131 - MINOR: protocol: uniformize protocol errors
3132 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
3133 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
3134 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
3135 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
3136 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
3137 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
3138 - MEDIUM: listener: add the "shards" bind keyword
3139 - BUG/MEDIUM: resolvers: use correct storage for the target address
3140 - MINOR: resolvers: merge address and target into a union "data"
3141 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
3142 - BUG/MEDIUM: jwt: fix base64 decoding error detection
3143 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
3144 - DOC: jwt: fix a typo in the jwt_verify() keyword description
3145 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
3146 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
3147 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
3148 - DOC: config: Move 'tcp-response content' at the right place
3149 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
3150 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
3151 - MINOR: sample/arg: Be able to resolve args found in defaults sections
3152 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
3153 - MINOR: proxy: Be able to reference the defaults section used by a proxy
3154 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
3155 - MINOR: config: Finish configuration for referenced default proxies
3156 - MINOR: config: No longer remove previous anonymous defaults section
3157 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
3158 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
3159 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
3160 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
3161 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
3162 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
3163 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
3164 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
3165 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
3166 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
3167 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
3168 - BUG/MINOR: listener: fix incorrect return on out-of-memory
3169 - BUG/MINOR: listener: add an error check for unallocatable trash
3170 - CLEANUP: listeners: remove unreachable code in clone_listener()
3171
Willy Tarreau4c67bd62021-10-08 18:22:24 +020031722021/10/08 : 2.5-dev9
3173 - head-truc
3174 - REGTESTS: lua: test the httpclient:get() feature
3175 - Revert "head-truc"
3176 - BUG/MEDIUM: httpclient: replace ist0 by istptr
3177 - MINOR: config: use a standard parser for the "nbthread" keyword
3178 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
3179 - MEDIUM: init: de-uglify the per-thread affinity setting
3180 - MINOR: init: extract the setup and end of threads to their own functions
3181 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
3182 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
3183 - MINOR: mux-h1: Be able to set custom status code on parsing error
3184 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
3185 - MEDIUM: h1: Force close mode for invalid uses of T-E header
3186 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
3187 - MINOR: http: Add 422-Unprocessable-Content error message
3188 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
3189 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
3190 - REGTESTS: Add script to validate T-E header parsing
3191 - REORG: pools: move default settings to defaults.h
3192 - DOC: peers: fix doc "enable" statement on "peers" sections
3193 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
3194 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
3195 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
3196 - MINOR: ssl: Store the last SSL error code in case of read or write failure
3197 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
3198 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
3199 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
3200 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
3201 - MINOR: arg: Be able to forbid unresolved args when building an argument list
3202 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
3203 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
3204 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
3205 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
3206 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
3207 - CLEANUP: tasks: remove the long-unused work_lists
3208 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
3209 - MINOR: time: uninline report_idle() and move it to task.c
3210 - REORG: sched: move idle time calculation from time.h to task.h
3211 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
3212 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
3213 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
3214 - MINOR: httpclient: destroy() must free the headers and the ists
3215 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
3216 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
3217 - MINOR: httpclient: test if started during stop_and_destroy()
3218 - MINOR: httpclient/lua: implement garbage collection
3219 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
3220 - MINOR: httpclient: destroy checks if a client was started but not stopped
3221 - BUG/MINOR: httpclient/lua: does not process headers when failed
3222 - MINOR: httpclient/lua: supports headers via named arguments
3223 - CLEANUP: server: always include the storage for SSL settings
3224 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
3225 - CLEANUP: sample: uninline sample_conv_var2smp_str()
3226 - MINOR: sample: provide a generic var-to-sample conversion function
3227 - BUG/MEDIUM: sample: properly verify that variables cast to sample
3228 - BUILD: action: add the relevant structures for function arguments
3229 - BUILD: extcheck: needs to include stream-t.h
3230 - BUILD: hlua: needs to include stream-t.h
3231 - BUILD: stats: define several missing structures in stats.h
3232 - BUILD: resolvers: define missing types in resolvers.h
3233 - BUILD: httpclient: include missing ssl_sock-t
3234 - BUILD: sample: include openssl-compat
3235 - BUILD: http_ana: need to include proxy-t to get redirect_rule
3236 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
3237 - BUILD: vars: need to include xxhash
3238 - BUILD: peers: need to include eb{32/mb/pt}tree.h
3239 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
3240 - BUILD: compiler: add the container_of() and container_of_safe() macros
3241 - BUILD: idleconns: include missing ebmbtree.h at several places
3242 - BUILD: connection: connection.h needs list.h and server.h
3243 - BUILD: tree-wide: add missing http_ana.h from many places
3244 - BUILD: cfgparse-ssl: add missing errors.h
3245 - BUILD: tcp_sample: include missing errors.h and session-t.h
3246 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
3247 - BUILD: tree-wide: add several missing activity.h
3248 - BUILD: compat: fix -Wundef on SO_REUSEADDR
3249 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
3250 - REORG: pools: uninline the UAF allocator and force-inline the rest
3251 - REORG: thread: uninline the lock-debugging code
3252 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
3253 - CLEANUP: remove some unneeded includes from applet-t.h
3254 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
3255 - CLEANUP: listeners: do not include openssl-compat
3256 - CLEANUP: servers: do not include openssl-compat
3257 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
3258 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
3259 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
3260 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
3261 - REORG: sample: move the crypto samples to ssl_sample.c
3262 - REORG: sched: moved samp_time and idle_time to task.c as well
3263 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
3264 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
3265 - REORG: activity: uninline activity_count_runtime()
3266 - REORG: acitvity: uninline sched_activity_entry()
3267 - CLEANUP: stream: remove many unneeded includes from stream-t.h
3268 - CLEANUP: stick-table: no need to include socket nor in.h
3269 - MINOR: connection: use uint64_t for the hashes
3270 - REORG: connection: move the hash-related stuff to connection.c
3271 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
3272 - REORG: server: uninline the idle conns management functions
3273 - REORG: ebtree: split structures into their own file ebtree-t.h
3274 - CLEANUP: tree-wide: only include ebtree-t from type files
3275 - REORG: connection: move the largest inlines from connection.h to connection.c
3276 - CLEANUP: connection: do not include http_ana!
3277 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
3278 - REORG: connection: uninline the rest of the alloc/free stuff
3279 - REORG: task: uninline the loop time measurement code
3280 - CLEANUP: time: move a few configurable defines to defaults.h
3281 - CLEANUP: fd: do not include time.h
3282 - REORG: fd: uninline compute_poll_timeout()
3283 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
3284 - REORG: thread: move the thread init/affinity/stop to thread.c
3285 - REORG: thread: move ha_get_pthread_id() to thread.c
3286 - MINOR: thread: use a dedicated static pthread_t array in thread.c
3287 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
3288 - DOC: configuration: add clarification on escaping in keyword arguments
3289 - BUG/MINOR: task: fix missing include with DEBUG_TASK
3290 - MINOR: pools: report the amount used by thread caches in "show pools"
3291 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
3292 - MINOR: quic: Add a function to dump SSL stack errors
3293 - MINOR: quic: BUG_ON() SSL errors.
3294 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
3295 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
3296 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
3297 - MINOR: mux-quic: release connection if no more bidir streams
3298 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
3299 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
3300 - MINOR: qpack: do not encode invalid http status code
3301 - MINOR: qpack: support non-indexed http status code encoding
3302 - MINOR: qpack: fix memory leak on huffman decoding
3303 - CLEANUP: mux-quic: remove unused code
3304 - BUG/MINOR: quic: fix includes for compilation
3305 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
3306 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
3307 - REORG: time: move time-keeping code and variables to clock.c
3308 - REORG: clock: move the updates of cpu/mono time to clock.c
3309 - MINOR: activity: get the run_time from the clock updates
3310 - CLEANUP: clock: stop exporting before_poll and after_poll
3311 - REORG: clock: move the clock_id initialization to clock.c
3312 - REORG: clock/wdt: move wdt timer initialization to clock.c
3313 - MINOR: clock: move the clock_ids to clock.c
3314 - MINOR: wdt: move wd_timer to wdt.c
3315 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
3316 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
3317 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
3318 - REORG: thread/sched: move the thread_info flags to the thread_ctx
3319 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
3320 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
3321 - MINOR: threads: introduce a minimalistic notion of thread-group
3322 - MINOR: global: add a new "thread-groups" directive
3323 - MINOR: global: add a new "thread-group" directive
3324 - MINOR: threads: make tg point to the current thread's group
3325 - MEDIUM: threads: automatically assign threads to groups
3326 - MINOR: threads: set the group ID and its bit in the thread group
3327 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
3328 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
3329 - MINOR: threads: add the current group ID in thread-local "tgid" variable
3330 - MINOR: debug: report the group and thread ID in the thread dumps
3331 - MEDIUM: listeners: support the definition of thread groups on bind lines
3332 - MINOR: threads: add a new function to resolve config groups and masks
3333 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
3334 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
3335
Willy Tarreau538f3e02021-09-24 15:52:17 +020033362021/09/24 : 2.5-dev8
3337 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
3338 - BUILD: halog: fix a -Wundef warning on non-glibc systems
3339 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
3340 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
3341 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
3342 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
3343 - MINOR: pools: automatically disable malloc_trim() with external allocators
3344 - MINOR: pools: report it when malloc_trim() is enabled
3345 - DOC: Add .mailmap
3346 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
3347 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
3348 - CLEANUP: acl: Remove unused variable when releasing an acl expression
3349 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
3350 - DOC: update Tim's address in .mailmap
3351 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
3352 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
3353 - DOC: management: certificate files must be sanitized before injection
3354 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
3355 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
3356 - BUG/MINOR: cli/payload: do not search for args inside payload
3357 - BUILD: sockpair: do not set unused flag
3358 - BUILD: proto_uxst: do not set unused flag
3359 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
3360 - MINOR: applet: remove the thread mask from appctx_new()
3361 - REORG: threads: move ha_get_pthread_id() to tinfo.h
3362 - CLEANUP: Apply ist.cocci
3363 - DEV: coccinelle: Add ist.cocci
3364 - CLEANUP: Apply bug_on.cocci
3365 - DEV: coccinelle: Add xalloc_size.cocci
3366 - DEV: coccinelle: Add bug_on.cocci
3367 - CLEANUP: Apply xalloc_size.cocci
3368 - DEV: coccinelle: Add xalloc_cast.cocci
3369 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
3370 - MINOR: httpclient: add the EOH when no headers where provided
3371 - CLEANUP: Include check.h in flt_spoe.c
3372 - CLEANUP: Remove unreachable `break` from parse_time_err()
3373 - BUG/MINOR: server: allow 'enable health' only if check configured
3374 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
3375 - MINOR: server: enable more keywords for ssl checks for dynamic servers
3376 - MINOR: server: enable more check related keywords for dynamic servers
3377 - REORG: server: move slowstart init outside of checks
3378 - MINOR: server: enable slowstart for dynamic server
3379 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
3380 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
3381 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
3382 - MINOR: quic: Move transport parmaters to anynomous struct.
3383 - MINOR: mux_quic: Add QUIC mux layer.
3384 - MINOR: connection: Add callbacks definitions for QUIC.
3385 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
3386 - MINOR: quic: Add a new definition to store STREAM frames.
3387 - MINOR: h3: Add HTTP/3 definitions.
3388 - MINOR: qpack: Add QPACK compression.
3389 - MINOR: quic_sock: Finalize the QUIC connections.
3390 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
3391 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
3392 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
3393 - BUG/MINOR: quic: Wrong ->accept() error handling
3394 - MINOR: quic: Add a wrapper function to update transport parameters.
3395 - MINOR: quic: Update the streams transport parameters.
3396 - MINOR: quic: Avoid header collisions
3397 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
3398 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
3399 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
3400 - MINOR: quic: Initialize the session before starting the xprt.
3401 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
3402 - MINOR: quic: QUIC conn initialization from I/O handler
3403 - MINOR: quic: Remove header protection for conn with context
3404 - MINOR: quic: Derive the initial secrets asap
3405 - MINOR: quic: Remove header protection also for Initial packets
3406 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
3407 - MINOR: quic: quic_update_ack_ranges_list() code factorization
3408 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
3409 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
3410 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
3411 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
3412 - BUG/MINOR: quic: Wrong RX packet reference counter usage
3413 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
3414 - MINOR: quic: Add a lock for RX packets
3415 - MINOR: quic: Move the connection state
3416 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
3417 - MINOR: quic: Replace the RX list of packet by a thread safety one.
3418 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
3419 - MINOR: quic: Add useful traces for I/O dgram handler
3420 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
3421 - MINOR: quic: Connection allocations rework
3422 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
3423 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
3424 - MINOR: quic: Add a ring buffer implementation for QUIC
3425 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
3426 - MINOR: quic: Add the QUIC v1 initial salt.
3427 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
3428 - MINOR: net_helper: add functions for pointers
3429 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
3430 - MINOR: proto_quic: Allocate TX ring buffers for listeners
3431 - MINOR: quic: Initialize pointers to TX ring buffer list
3432 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
3433 - MINOR: quic_tls: Make use of the QUIC V1 salt.
3434 - MINOR: quic: Remove old TX buffer implementation
3435 - MINOR: Add function for TX packets reference counting
3436 - MINOR: quic: Add TX packets at the very last time to their tree.
3437 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
3438 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
3439 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
3440 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
3441 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
3442 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
3443 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
3444 - MINOR: quic: Add a useful function to compute any frame length.
3445 - MINOR: quic: Add the QUIC connection state to traces
3446 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
3447 - MINOR: quic: Add the packet type to quic_tx_packet struct
3448 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
3449 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
3450 - MINOR: quic: Modify qc_build_cfrms() to support any frame
3451 - MINOR: quic: quic_conn_io_cb() task rework
3452 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
3453 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
3454 - MINOR: quic: Remove Application level related functions
3455 - MINOR: quic: Rename functions which do not build only Handshake packets
3456 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
3457 - MINOR: quic: Add a pool for TX ring buffer internal buffer
3458 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
3459 - MINOR: quic: Missing acks encoded size updates.
3460 - MINOR: quic: Evaluate the packet lengths in advance
3461 - MINOR: quic: Update the TLS extension for QUIC transport parameters
3462 - MINOR: quic: Fix handshake state debug strings
3463 - MINOR: quic: Atomically get/set the connection state
3464 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
3465 - MINOR: quic: Coalesce Application level packets with Handshake packets.
3466 - MINOR: quic: Wrong flags handling for acks
3467 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
3468 - MINOR: quic: Post handshake packet building improvements
3469 - MINOR: quic: Prepare Application level packet asap.
3470 - MINOR: h3: Send h3 settings asap
3471 - MINOR: quic: Wrong STREAM frame length computing
3472 - MINOR: quic: Wrong short packet minimum length
3473 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
3474 - MINOR: h3: change default settings
3475 - MINOR: quic-enc: fix varint encoding
3476 - MINOR: qpack: fix wrong comment
3477 - MINOR: qpack: generate headers list on decoder
3478 - MINOR: h3: parse headers to htx
3479 - MINOR: h3: allocate stream on headers
3480 - MEDIUM: mux-quic: implement ring buffer on stream tx
3481 - MINOR: mux-quic: send SETTINGS on uni stream
3482 - MINOR: h3: define snd_buf callback and divert mux ops
3483 - MINOR: mux-quic: define FIN stream flag
3484 - MINOR: qpack: create qpack-enc module
3485 - MINOR: qpack: encode headers functions
3486 - MINOR: h3: encode htx headers to QPACK
3487 - MINOR: h3: send htx data
3488 - MINOR: h3/mux: detect fin on last h3 frame of the stream
3489 - MINOR: quic: Shorten some handshakes
3490 - MINOR: quic: Make QUIC-TLS support at least two initial salts
3491 - MINOR: quic: Attach the QUIC connection to a thread.
3492 - MINOR: quic: Missing active_connection_id_limit default value
3493 - MINOR: quic_sock: Do not flag QUIC connections as being set
3494 - MINOR: buf: Add b_force_xfer() function
3495 - MINOR: quic: Make use of buffer structs to handle STREAM frames
3496 - MINOR: mux_quic: move qc_process() code to qc_send()
3497 - MINOR: quic: Add a typedef for unsigned long long
3498 - MINOR: quic: Confusion between TX/RX for the frame builders
3499 - MINOR: quic: Wrong packet flags settings during frame building
3500 - MINOR: quic: Constantness fixes for frame builders/parsers.
3501 - MINOR: quic_tls: Client/serveur state reordering
3502 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
3503 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
3504 - MINOR: quic: Initial packet number spaced not discarded
3505 - MINOR: quic: Add useful trace about pktns discarding
3506 - MINOR: mux_quic: Export the mux related flags
3507 - MINOR: quic: Implement quic_conn_subscribe()
3508 - MINOR: quic: Wake up the mux upon ACK receipt
3509 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
3510 - MINOR: quic: Implement qc_process_mux()
3511 - MINOR: quic: Wake up the xprt from mux
3512 - CLEANUP: quic: Remove useless inline functions
3513 - MINOR: quic: RX packets memory leak
3514 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
3515 - MINOR: quic: Crash upon too big packets receipt
3516 - MINOR: quic: define close handler
3517 - MEDIUM: quic: implement mux release/conn free
3518 - MINOR: quic: fix qcc subs initialization
3519 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
3520 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
3521 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
3522 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
3523 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
3524 - MINOR: htx: Add an HTX flag to know when a message is fragmented
3525 - MINOR: htx: Add a function to know if the free space wraps
3526 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
3527 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
3528 - BUG/MINOR: http-ana: increment internal_errors counter on response error
3529 - MINOR: stats: Enable dark mode on stat web page
3530 - CLEANUP: stats: Fix some alignment mistakes
3531 - MINOR: httpclient: httpclient_data() returns the available data
3532 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
3533 - MINOR: httpclient/lua: httpclient:get() API in lua
3534 - MINOR: httpclient/lua: implement the headers in the response object
3535 - BUG/MINOR: httpclient/lua: return an error on argument check
3536 - CLEANUP: slz: Mark `reset_refs` as static
3537
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +020035382021/09/12 : 2.5-dev7
3539 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
3540 - CLEANUP: htx: remove comments about "must be < 256 MB"
3541 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
3542 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
3543 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
3544 - MINOR: vars: rename vars_init() to vars_init_head()
3545 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
3546 - REORG: vars: remerge sample_store{,_stream}() into var_set()
3547 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
3548 - MINOR: vars: add a VF_CREATEONLY flag for creation
3549 - MINOR: vars: support storing empty sample data with a variable
3550 - MINOR: vars: store flags into variables and add VF_PERMANENT
3551 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
3552 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
3553 - MINOR: vars: preset a random seed to hash variables names
3554 - MEDIUM: vars: replace the global name index with a hash
3555 - CLEANUP: vars: remove the now unused var_names array
3556 - MINOR: vars: centralize the lock/unlock into static inlines
3557 - OPTIM: vars: only takes the variables lock on shared entries
3558 - OPTIM: vars: remove internal bookkeeping for vars_global_size
3559 - OPTIM: vars: do not keep variables usage stats if no limit is set
3560 - BUILD: fix dragonfly build again on __read_mostly
3561 - CI: Github Actions: temporarily disable Opentracing
3562 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
3563 - MINOR: htx: Skip headers with no value when adding a header list to a message
3564 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
3565 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
3566 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
3567 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
3568 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
3569 - CLEANUP: ebmbtree: Replace always-taken elseif by else
3570 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
3571 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
3572 - BUG/MINOR: opentracing: enable the use of http headers without a set value
3573 - CLEANUP: opentracing: use the haproxy function to generate uuid
3574 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
3575 - CI: Github Actions: re-enable Opentracing
3576 - CLEANUP: opentracing: simplify the condition on the empty header
3577 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
3578
Willy Tarreauf653e832021-09-03 15:19:56 +020035792021/09/03 : 2.5-dev6
3580 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
3581 - BUG/MINOR: tools: Fix loop condition in dump_text()
3582 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
3583 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
3584 - BUILD: tools: properly guard __GLIBC__ with defined()
3585 - BUILD: globally enable -Wundef
3586 - MINOR: log: Remove log-error-via-logformat option
3587 - MINOR: log: Add new "error-log-format" option
3588 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
3589 - CLEANUP: Add missing include guard to signal.h
3590 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
3591 - MINOR: connection: Add a connection error code sample fetch for backend side
3592 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
3593 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
3594 - CI: Github Actions: temporarily disable BoringSSL builds
3595 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
3596 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
3597 - MINOR: sample: add missing ARGC_ entries
3598 - BUG/MINOR: vars: properly set the argument parsing context in the expression
3599 - DOC: configuration: remove wrong tcp-request examples in tcp-response
3600 - MEDIUM: vars: add a new "set-var-fmt" action
3601 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
3602 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
3603 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
3604 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
3605 - MINOR: log: make log-format expressions completely usable outside of req/resp
3606 - MINOR: vars: add a "set-var-fmt" directive to the global section
3607 - MEDIUM: vars: also support format strings in CLI's "set var" command
3608 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
3609 - MINOR: vars: make vars_get_by_* support an optional default value
3610 - MINOR: vars: make the vars() sample fetch function support a default value
3611 - BUILD: ot: add argument for default value to vars_get_by_name()
3612
Willy Tarreau446344c2021-08-28 13:46:11 +020036132021/08/28 : 2.5-dev5
3614 - MINOR: httpclient: initialize the proxy
3615 - MINOR: httpclient: implement a simple HTTP Client API
3616 - MINOR: httpclient/cli: implement a simple client over the CLI
3617 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
3618 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
3619 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
3620 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
3621 - MINOR: server: check if srv is NULL in free_server()
3622 - MINOR: proxy: check if p is NULL in free_proxy()
3623 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
3624 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
3625 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
3626 - REGTESTS: abortonclose: after retries, 503 is expected, not close
3627 - REGTESTS: server: fix agent-check syntax and expectation
3628 - BUG/MINOR: httpclient: fix uninitialized sl variable
3629 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
3630 - BUG/MINOR: httpclient: check if hdr_num is not 0
3631 - MINOR: httpclient: cleanup the include files
3632 - MINOR: hlua: take the global Lua lock inside a global function
3633 - MINOR: tools: add FreeBSD support to get_exec_path()
3634 - BUG/MINOR: systemd: ExecStartPre must use -Ws
3635 - MINOR: systemd: remove the ExecStartPre line in the unit file
3636 - MINOR: ssl: add an openssl version string parser
3637 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
3638 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
3639 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
3640 - BUG/MINOR: httpclient: remove deinit of the httpclient
3641 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
3642 - MINOR: httpclient: set verify none on the https server
3643 - MINOR: httpclient: add the server to the proxy
3644 - BUG/MINOR: httpclient: fix Host header
3645 - BUILD: httpclient: fix build without OpenSSL
3646 - CI: github-actions: remove obsolete options
3647 - CLEANUP: assorted typo fixes in the code and comments
3648 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
3649 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
3650 - MINOR: server: return the next srv instance on free_server
3651 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
3652 - MEDIUM: server: extend refcount for all servers
3653 - MINOR: server: define non purgeable server flag
3654 - MINOR: server: mark referenced servers as non purgeable
3655 - MINOR: server: mark servers referenced by LUA script as non purgeable
3656 - MEDIUM: server: allow to remove servers at runtime except non purgeable
3657 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
3658 - REGTEST: add missing lua requirements on server removal test
3659 - REGTEST: fix haproxy required version for server removal test
3660 - BUG/MINOR: proxy: don't dump servers of internal proxies
3661 - REGTESTS: Use `feature cmd` for 2.5+ tests
3662 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
3663 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
3664 - MINOR: compiler: implement an ONLY_ONCE() macro
3665 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
3666 - MEDIUM: ssl: Capture more info from Client Hello
3667 - MINOR: sample: Expose SSL captures using new fetchers
3668 - MINOR: sample: Add be2dec converter
3669 - MINOR: sample: Add be2hex converter
3670 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
3671 - BUG/MINOR: time: fix idle time computation for long sleeps
3672 - MINOR: time: add report_idle() to report process-wide idle time
3673 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
3674 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
3675 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
3676 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
3677 - IMPORT: slz: silence a build warning with -Wundef
3678 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
3679
Willy Tarreau08d0f232021-08-17 14:08:55 +020036802021/08/17 : 2.5-dev4
3681 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
3682 - MINOR: doc: rename conn_status in `option httsplog`
3683 - MINOR: proxy: disabled takes a stopping and a disabled state
3684 - MINOR: stats: shows proxy in a stopped state
3685 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
3686 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
3687 - MINOR: threads: make thread_release() not wait for other ones to complete
3688 - MEDIUM: threads: add a stronger thread_isolate_full() call
3689 - MEDIUM: servers: make the server deletion code run under full thread isolation
3690 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
3691 - MINOR: activity/fd: remove the dead_fd counter
3692 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
3693 - CLEANUP: fd: remove the now unused fd_set_running()
3694 - CLEANUP: fd: remove the now unneeded fd_mig_lock
3695 - BUG/MINOR: server: update last_change on maint->ready transitions too
3696 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
3697 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
3698 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
3699 - MINOR: server: unmark deprecated on enable health/agent cli
3700 - MEDIUM: task: implement tasklet kill
3701 - MINOR: server: initialize fields for dynamic server check
3702 - MINOR: check: allocate default check ruleset for every backends
3703 - MINOR: check: export check init functions
3704 - MINOR: check: do not increment global maxsock at runtime
3705 - MINOR: server: implement a refcount for dynamic servers
3706 - MEDIUM: check: implement check deletion for dynamic servers
3707 - MINOR: check: enable safe keywords for dynamic servers
3708 - MEDIUM: server: implement check for dynamic servers
3709 - MEDIUM: server: implement agent check for dynamic servers
3710 - REGTESTS: server: add dynamic check server test
3711 - MINOR: doc: specify ulimit-n usage for dynamic servers
3712 - REGTESTS: server: fix dynamic server with checks test
3713 - CI: travis-ci: temporarily disable arm64 builds
3714 - BUG/MINOR: check: test if server is not null in purge
3715 - MINOR: global: define MODE_STOPPING
3716 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
3717 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
3718 - BUG/MINOR: check: do not reset check flags on purge
3719 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
3720 - BUG/MEDIUM: check: fix leak on agent-check purge
3721 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
3722 - BUG/MINOR: buffer: fix buffer_dump() formatting
3723 - MINOR: channel: remove an htx block from a channel
3724 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
3725 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
3726 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
3727 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
3728 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
3729 - MINOR: filters/lua: Release filters before the lua context
3730 - MINOR: lua: Add a function to get a reference on a table in the stack
3731 - MEDIUM: lua: Process buffer data using an offset and a length
3732 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
3733 - DOC: Improve the lua documentation
3734 - MEDIUM: filters/lua: Add support for dummy filters written in lua
3735 - MINOR: lua: Add a function to get a filter attached to a channel class
3736 - MINOR: lua: Add flags on the lua TXN to know the execution context
3737 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
3738 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
3739 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
3740 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
3741 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
3742 - DOC: config: Fix 'http-response send-spoe-group' documentation
3743 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
3744 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
3745 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
3746 - MINOR: cli: delare the CLI frontend as an internal proxy
3747 - MINOR: proxy: disable warnings for internal proxies
3748 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
3749 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
3750 - DOC: lua-api: Add documentation about lua filters
3751 - CI: Remove obsolete USE_SLZ=1 CI job
3752 - CLEANUP: assorted typo fixes in the code and comments
3753 - CI: github actions: relax OpenSSL-3.0.0 version comparision
3754 - BUILD: tools: get the absolute path of the current binary on NetBSD.
3755 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
3756 - DOC/MINOR: fix typo in management document
3757 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
3758 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
3759 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
3760 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
3761 - BUG/MEDIUM: h2: give :authority precedence over Host
3762 - REGTESTS: add a test to prevent h2 desync attacks
3763
Willy Tarreau8441deb2021-08-01 18:19:51 +020037642021/08/01 : 2.5-dev3
3765 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
3766 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
3767 - MEDIUM: proxy: remove long-broken 'option http_proxy'
3768 - CLEANUP: http_ana: Remove now unused label from http_process_request()
3769 - MINOR: deinit: always deinit the init_mutex on failed initialization
3770 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
3771 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
3772 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
3773 - BUILD/MINOR: memprof fix macOs build.
3774 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
3775 - BUG/MINOR: stats: Add missing agent stats on servers
3776 - BUG/MINOR: check: fix the condition to validate a port-less server
3777 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
3778 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
3779 - MINOR: ssl: use __objt_* variant when retrieving counters
3780 - BUG/MINOR: systemd: must check the configuration using -Ws
3781 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
3782 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
3783 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
3784 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
3785 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
3786 - MINOR: mworker: the mworker CLI proxy is internal
3787 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
3788 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
3789 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
3790 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
3791 - MINOR: connection: Add a connection error code sample fetch
3792 - MINOR: ssl: Enable error fetches in case of handshake error
3793 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
3794 - MINOR: ssl: Define a default https log format
3795 - MEDIUM: connection: Add option to disable legacy error log
3796 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
3797 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
3798 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
3799 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
3800 - BUG/MINOR: select: fix excess number of dead/skip reported
3801 - BUG/MINOR: poll: fix abnormally high skip_fd counter
3802 - BUG/MINOR: pollers: always program an update for migrated FDs
3803 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
3804 - DOC: internals: document the FD takeover process
3805 - MINOR: fd: update flags only once in fd_update_events()
3806 - MINOR: poll/epoll: move detection of RDHUP support earlier
3807 - REORG: fd: uninline fd_update_events()
3808 - MEDIUM: fd: rely more on fd_update_events() to detect changes
3809 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
3810 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
3811 - MEDIUM: atomic: relax the load/store barriers on x86_64
3812 - BUILD: opentracing: fixed build when using pkg-config utility
3813
Willy Tarreaubccc91d2021-07-17 12:35:11 +020038142021/07/17 : 2.5-dev2
3815 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
3816 - DOC: config: use CREATE USER for mysql-check
3817 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
3818 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
3819 - MINOR: stick-table: make skttable_data_cast to use only std types
3820 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
3821 - MEDIUM: peers: handle arrays of std types in peers protocol
3822 - DOC: stick-table: add missing documentation about gpt0 stored type
3823 - MEDIUM: stick-table: add the new array of gpt data_type
3824 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
3825 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
3826 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
3827 - BUG/MEDIUM: sock: make sure to never miss early connection failures
3828 - BUG/MINOR: cli: fix server name output in "show fd"
3829 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
3830 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
3831 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
3832 - MINOR: http: implement http_get_scheme
3833 - MEDIUM: http: implement scheme-based normalization
3834 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
3835 - MEDIUM: h2: apply scheme-based normalization on h2 requests
3836 - REGTESTS: add http scheme-based normalization test
3837 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
3838 - MINOR: http: implement http uri parser
3839 - MINOR: http: use http uri parser for scheme
3840 - MINOR: http: use http uri parser for authority
3841 - REORG: http_ana: split conditions for monitor-uri in wait for request
3842 - MINOR: http: use http uri parser for path
3843 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
3844 - MINOR: mux_h2: define config to disable h2 websocket support
3845 - CLEANUP: applet: remove unused thread_mask
3846 - BUG/MINOR: ssl: Default-server configuration ignored by server
3847 - BUILD: add detection of missing important CFLAGS
3848 - BUILD: lua: silence a build warning with TCC
3849 - MINOR: srv: extract tracking server config function
3850 - MINOR: srv: do not allow to track a dynamic server
3851 - MEDIUM: server: support track keyword for dynamic servers
3852 - REGTESTS: test track support for dynamic servers
3853 - MINOR: init: verify that there is a single word on "-cc"
3854 - MINOR: init: make -cc support environment variables expansion
3855 - MINOR: arg: add a free_args() function to free an args array
3856 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
3857 - CLEANUP: hlua: use free_args() to release args arrays
3858 - REORG: config: move the condition preprocessing code to its own file
3859 - MINOR: cfgcond: start to split the condition parser to introduce terms
3860 - MEDIUM: cfgcond: report invalid trailing chars after expressions
3861 - MINOR: cfgcond: remerge all arguments into a single line
3862 - MINOR: cfgcond: support negating conditional expressions
3863 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
3864 - MINOR: cfgcond: insert an expression between the condition and the term
3865 - MINOR: cfgcond: support terms made of parenthesis around expressions
3866 - REGTEST: make check_condition.vtc fail as soon as possible
3867 - REGTESTS: add more complex check conditions to check_conditions.vtc
3868 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
3869
Willy Tarreau96a2f502021-06-30 16:16:14 +020038702021/06/30 : 2.5-dev1
3871 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
3872 - MINOR: ssl: Allow duplicated entries in the cafile_tree
3873 - MEDIUM: ssl: Chain ckch instances in ca-file entries
3874 - MINOR: ssl: Add reference to default ckch instance in bind_conf
3875 - MINOR: ssl: Add helper functions to create/delete cafile entries
3876 - MEDIUM: ssl: Add a way to load a ca-file content from memory
3877 - MINOR: ssl: Add helper function to add cafile entries
3878 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
3879 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
3880 - REGTESTS: ssl: Add new ca-file update tests
3881 - MINOR: ssl: Add "abort ssl ca-file" CLI command
3882 - MINOR: ssl: Add a cafile_entry type field
3883 - MINOR: ssl: Refactorize the "show certificate details" code
3884 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
3885 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
3886 - MINOR: ssl: Add "del ssl ca-file" CLI command
3887 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
3888 - DOC: ssl: Add documentation about CA file hot update commands
3889 - DOC: internals: update the SSL architecture schema
3890 - MINOR: ssl: Chain instances in ca-file entries
3891 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
3892 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
3893 - MINOR: ssl: Add "abort ssl crl-file" CLI command
3894 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
3895 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
3896 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
3897 - DOC: ssl: Add documentation about CRL file hot update commands
3898 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
3899 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
3900 - CI: introduce scripts/build-vtest.sh for installing VTest
3901 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
3902 - CI: github actions: add OpenTracing builds
3903 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
3904 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
3905 - BUILD/MINOR: opentracing: fixed build when using clang
3906 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
3907 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
3908 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
3909 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
3910 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
3911 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
3912 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
3913 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
3914 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
3915 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
3916 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
3917 - MINOR: buf: Add function to realign a buffer with a specific head position
3918 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
3919 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
3920 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
3921 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
3922 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
3923 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
3924 - MINOR: cfgparse: Fail when encountering extra arguments in macro
3925 - DOC: intro: Fix typo in starter guide
3926 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
3927 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
3928 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
3929 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
3930 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
3931 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
3932 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
3933 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
3934 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
3935 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
3936 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
3937 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
3938 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
3939 - CLEANUP: http-ana: Remove useless if statement about L7 retries
3940 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
3941 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
3942 - BUG/MINOR: vars: Be sure to have a session to get checks variables
3943 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
3944 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
3945 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
3946 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
3947 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
3948 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
3949 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
3950 - CI: github actions: add OpenSSL-3.0.0 builds
3951 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
3952 - MINOR: errors: allow empty va_args for diag variadic macro
3953 - REORG: errors: split errors reporting function from log.c
3954 - CLEANUP: server: fix cosmetic of error message on sni parsing
3955 - MEDIUM: errors: implement user messages buffer
3956 - MINOR: log: do not discard stderr when starting is over
3957 - MEDIUM: errors: implement parsing context type
3958 - MINOR: errors: use user messages context in print_message
3959 - MINOR: log: display exec path on first warning
3960 - MINOR: errors: specify prefix "config" for parsing output
3961 - MINOR: log: define server user message format
3962 - REORG: server: use parsing ctx for server parsing
3963 - REORG: config: use parsing ctx for server config check
3964 - MINOR: server: use parsing ctx for server init addr
3965 - MINOR: server: use ha_alert in server parsing functions
3966 - DOC: use the req.ssl_sni in examples
3967 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
3968 - CLEANUP: tools: Make errptr const in `parse_line()`
3969 - MINOR: haproxy: Add `-cc` argument
3970 - BUG: errors: remove printf positional args for user messages context
3971 - CI: Make matrix.py executable and add shebang
3972 - BUILD: make tune.ssl.keylog available again
3973 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
3974 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
3975 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
3976 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
3977 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
3978 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
3979 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
3980 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
3981 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
3982 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
3983 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
3984 - REGTESTS: ssl: Add "show ssl ocsp-response" test
3985 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
3986 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
3987 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
3988 - MINOR: pools: do not maintain the lock during pool_flush()
3989 - MINOR: pools: call malloc_trim() under thread isolation
3990 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
3991 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
3992 - CLEANUP: pools: remove now unused seq and pool_free_list
3993 - MEDIUM: pools: remove the locked pools implementation
3994 - BUILD: ssl: Fix compilation with BoringSSL
3995 - BUG/MEDIUM: errors: include missing obj_type file
3996 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
3997 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
3998 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
3999 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
4000 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
4001 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
4002 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
4003 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
4004 - BUG/MINOR: server-state: load SRV resolution only if params match the config
4005 - MINOR: config: remove support for deprecated option "tune.chksize"
4006 - MINOR: config: completely remove support for "no option http-use-htx"
4007 - MINOR: log: remove the long-deprecated early log-format tags
4008 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
4009 - MINOR: config: reject long-deprecated "option forceclose"
4010 - MINOR: config: remove deprecated option "http-tunnel"
4011 - MEDIUM: proxy: remove the deprecated "grace" keyword
4012 - MAJOR: config: remove parsing of the global "nbproc" directive
4013 - BUILD: init: remove initialization of multi-process thread mappings
4014 - BUILD: log: remove unused fmt_directive()
4015 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
4016 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
4017 - CI: github actions: enable alpine/musl builds
4018 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
4019 - DOC: lua: Add a warning about buffers modification in HTTP
4020 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
4021 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
4022 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
4023 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
4024 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
4025 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
4026 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
4027 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
4028 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
4029 - BUG/MINOR: mworker: fix typo in chroot error message
4030 - CLEANUP: global: remove unused definition of stopping_task[]
4031 - MEDIUM: init: remove the loop over processes during init
4032 - MINOR: mworker: remove the initialization loop over processes
4033 - CLEANUP: global: remove the nbproc field from the global structure
4034 - CLEANUP: global: remove pid_bit and all_proc_mask
4035 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
4036 - MEDIUM: config: simplify cpu-map handling
4037 - MEDIUM: cpu-set: make the proc a single bit field and not an array
4038 - CLEANUP: global: remove unused definition of MAX_PROCS
4039 - MEDIUM: global: remove the relative_pid from global and mworker
4040 - DOC: update references to process numbers in cpu-map and bind-process
4041 - MEDIUM: config: warn about "bind-process" deprecation
4042 - CLEANUP: shctx: remove the different inter-process locking techniques
4043 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
4044 - MINOR: backend: only skip LB when there are actual connections
4045 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
4046 - MINOR: connection: add helper conn_append_debug_info()
4047 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
4048 - CLEANUP: mux-h2/traces: better align user messages
4049 - BUG/MINOR: stats: make "show stat typed desc" work again
4050 - MINOR: mux-h2: obey http-ignore-probes during the preface
4051 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
4052 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
4053 - CLEANUP: assorted typo fixes in the code and comments
4054 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
4055 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
4056 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
4057 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
4058 - REGTESTS: Remove support for REQUIRE_BINARIES
4059 - CI: ssl: enable parallel builds for OpenSSL on Linux
4060 - CI: ssl: do not needlessly build the OpenSSL docs
4061 - CI: ssl: keep the old method for ancient OpenSSL versions
4062 - CLEANUP: server: a separate function for initializing the per_thr field
4063 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
4064 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
4065 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
4066 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
4067 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
4068 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
4069 - BUG/MINOR: backend: do not set sni on connection reuse
4070 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
4071 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
4072 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
4073 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
4074 - MINOR: ssl: always initialize random generator
4075 - MINOR: ssl: check allocation in ssl_sock_init_srv
4076 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
4077 - MINOR: ssl: check allocation in parse npn/sni
4078 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
4079 - MINOR: ssl: render file-access optional on server crt loading
4080 - MINOR: ssl: split parse functions for alpn/check-alpn
4081 - MINOR: ssl: support ca-file arg for dynamic servers
4082 - MINOR: ssl: support crt arg for dynamic servers
4083 - MINOR: ssl: support crl arg for dynamic servers
4084 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
4085 - MINOR: ssl: support ssl keyword for dynamic servers
4086 - REGTESTS: server: test ssl support for dynamic servers
4087 - MINOR: queue: update the stream's pend_pos before queuing it
4088 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
4089 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
4090 - REGTESTS: fix maxconn update with agent-check
4091 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
4092 - MINOR: queue: update proxy->served once out of the loop
4093 - MEDIUM: queue: refine the locking in process_srv_queue()
4094 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
4095 - MINOR: queue: create a new structure type "queue"
4096 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
4097 - MINOR: server: replace the pendconns-related stuff with a struct queue
4098 - MEDIUM: queue: use a dedicated lock for the queues
4099 - MEDIUM: queue: simplify again the process_srv_queue() API
4100 - MINOR: queue: factor out the proxy/server queuing code
4101 - MINOR: queue: use atomic-ops to update the queue's index
4102 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
4103 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
4104 - MEDIUM: queue: unlock as soon as possible
4105 - MINOR: queue: make pendconn_first() take the lock by itself
4106 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
4107 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
4108 - DOC: config: Add missing actions in "tcp-request session" documentation
4109 - CLEANUP: dns: Remove a forgotten debug message
4110 - DOC: Replace issue templates by issue forms
4111 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
4112 - Revert "MEDIUM: queue: unlock as soon as possible"
4113 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
4114 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
4115 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
4116 - Revert "MINOR: queue: factor out the proxy/server queuing code"
4117 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
4118 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
4119 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
4120 - Revert "MINOR: queue: update proxy->served once out of the loop"
4121 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
4122 - MEDIUM: queue: update px->served and lb's take_conn once per loop
4123 - MEDIUM: queue: use a dedicated lock for the queues (v2)
4124 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
4125 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
4126 - MINOR: queue: factor out the proxy/server queuing code (v2)
4127 - MINOR: queue: use atomic-ops to update the queue's index (v2)
4128 - MEDIUM: queue: take the proxy lock only during the px queue accesses
4129 - MEDIUM: queue: use a trylock on the server's queue
4130 - MINOR: queue: add queue_init() to initialize a queue
4131 - MINOR: queue: add a pointer to the server and the proxy in the queue
4132 - MINOR: queue: store a pointer to the queue into the pendconn
4133 - MINOR: queue: remove the px/srv fields from pendconn
4134 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
4135 - BUG: backend: stop looking for queued connections once there's no more
4136 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
4137 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
4138 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
4139 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
4140 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
4141 - BUILD: Makefile: fix linkage for Haiku.
4142 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
4143 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
4144 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
4145 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
4146 - CLEANUP: tcp-act: Sort action lists
4147 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
4148 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
4149 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
4150 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
4151 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
4152 - CLEANUP: peers: re-write intdecode function comment.
4153
Willy Tarreau1f973062021-05-14 09:36:37 +020041542021/05/14 : 2.5-dev0
4155 - MINOR: version: it's development again
4156
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020041572021/05/14 : 2.4.0
4158 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
4159 - CLEANUP: cli/activity: Remove double spacing in set profiling command
4160 - CI: Build VTest with clang
4161 - CI: extend spellchecker whitelist, add "ists" as well
4162 - CLEANUP: assorted typo fixes in the code and comments
4163 - BUG/MINOR: memprof: properly account for differences for realloc()
4164 - MINOR: memprof: also report the method used by each call
4165 - MINOR: memprof: also report the totals and delta alloc-free
4166 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
4167 - BUG/MINOR: http_act: Fix normalizer names in error messages
4168 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
4169 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
4170 - IMPORT: slz: use the generic function for the last bytes of the crc32
4171 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
4172 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
4173 - BUILD: makefile: add a few popular ARMv8 CPU targets
4174 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
4175 - REGTESTS: stick-table: add src_conn_rate test
4176 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
4177 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
4178 - EXAMPLES: add a "basic-config-edge" example config
4179 - EXAMPLES: add a trivial config for quick testing
4180 - DOC: management: Correct example reload command in the document
4181 - Revert "CI: Build VTest with clang"
4182 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
4183 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
4184 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
4185 - DOC: config: Fix configuration example for mqtt
4186 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
4187 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
4188 - DOC: update min requirements in INSTALL
4189 - IMPORT: slz: use inttypes.h instead of stdint.h
4190 - BUILD: sample: use strtoll() instead of atoll()
4191 - MINOR: version: mention that it's LTS now.
4192
Willy Tarreau46b93af2021-05-10 07:50:26 +020041932021/05/10 : 2.4-dev19
4194 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
4195 - BUG/MEDIUM: cli: prevent memory leak on write errors
4196 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
4197 - MINOR: debug: add a new "debug dev sym" command in expert mode
4198 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
4199 - CI: Github Actions: switch to LibreSSL-3.3.3
4200 - MINOR: srv: close all idle connections on shutdown
4201 - MINOR: connection: move session_list member in a union
4202 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
4203 - MEDIUM: connection: close front idling connection on soft-stop
4204 - MINOR: tools: add functions to retrieve the address of a symbol
4205 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
4206 - MINOR: activity: add a "memory" entry to "profiling"
4207 - MINOR: activity: declare the storage for memory usage statistics
4208 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
4209 - MINOR: activity: clean up the show profiling io_handler a little bit
4210 - MINOR: activity: make "show profiling" support a few arguments
4211 - MINOR: activity: make "show profiling" also dump the memoery usage
4212 - MINOR: activity: add the profiling.memory global setting
4213 - BUILD: makefile: add new option USE_MEMORY_PROFILING
4214 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
4215 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
4216 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
4217 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
4218 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
4219 - REGTESTS: Add script to test abortonclose option
4220 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
4221 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
4222 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
4223 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
4224 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
4225 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
4226 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
4227 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
4228 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
4229 - BUG/MINOR: config: .if/.elif should also accept negative integers
4230 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
4231 - MINOR: config: keep up-to-date current file/line/section in the global struct
4232 - MINOR: config: support some pseudo-variables for file/line/section
4233 - BUILD: activity: do not include malloc.h
4234 - MINOR: arg: improve the error message on missing closing parenthesis
4235 - MINOR: global: export the build features string list
4236 - MINOR: global: add version comparison functions
4237 - MINOR: config: improve .if condition error reporting
4238 - MINOR: config: make cfg_eval_condition() support predicates with arguments
4239 - MINOR: config: add predicate "defined()" to conditional expression blocks
4240 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
4241 - MINOR: config: add predicate "feature" to detect certain built-in features
4242 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
4243 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
4244 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
4245 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
4246 - MINOR: config: add a new message directive: .diag
4247 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
4248 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
4249 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
4250 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
4251 - MINOR: global: define tainted flag
4252 - MINOR: cfgparse: add a new field flags in cfg_keyword
4253 - MINOR: cfgparse: implement experimental config keywords
4254 - MINOR: action: replace match_pfx by a keyword flags field
4255 - MINOR: action: implement experimental actions
4256 - MINOR: cli: set tainted when using CLI expert/experimental mode
4257 - MINOR: stats: report tainted on show info
4258 - MINOR: http_act: mark normalize-uri as experimental
4259 - BUILD: fix usage of ha_alert without format string
4260 - MINOR: proxy: define PR_CAP_LB
4261 - BUG/MINOR: server: do not report diag for peer servers with null weight
4262 - DOC: ssl: Extra files loading now works for backends too
4263 - ADDONS: make addons/ discoverable by git via .gitignore
4264 - DOC: ssl: Add information about crl-file option
4265 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
4266 - DOC: management: mention that some fields may be emitted as floats
4267 - MINOR: tools: implement trimming of floating point numbers
4268 - MINOR: tools: add a float-to-ascii conversion function
4269 - MINOR: freq_ctr: add new functions to report float measurements
4270 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
4271 - MINOR: stats: add the HTML conversion for float types
4272 - MINOR: stats: pass the appctx flags to stats_fill_info()
4273 - MINOR: stats: support an optional "float" option to "show info"
4274 - MINOR: stats: use tv_remain() to precisely compute the uptime
4275 - MINOR: stats: report uptime and start time as floats with subsecond resolution
4276 - MINOR: stats: make "show info" able to report rates as floats when asked
4277 - MINOR: config: mark tune.fd.edge-triggered as experimental
4278 - REORG: vars: move the "proc" scope variables out of the global struct
4279 - REORG: threads: move all_thread_mask() to thread.h
4280 - BUILD: wdt: include signal-t.h
4281 - BUILD: auth: include missing list.h
4282 - REORG: mworker: move proc_self from global to mworker
4283 - BUILD: ssl: ssl_utils requires chunk.h
4284 - BUILD: config: cfgparse-ssl.c needs tools.h
4285 - BUILD: wurfl: wurfl.c needs tools.h
4286 - BUILD: spoe: flt_spoe.c needs tools.h
4287 - BUILD: promex: service-prometheus.c needs tools.h
4288 - BUILD: resolvers: include tools.h
4289 - BUILD: config: include tools.h in cfgparse-listen.c
4290 - BUILD: htx: include tools.h in http_htx.c
4291 - BUILD: proxy: include tools.h in proxy.c
4292 - BUILD: session: include tools.h in session.c
4293 - BUILD: cache: include tools.h in cache.c
4294 - BUILD: sink: include tools.h in sink.c
4295 - BUILD: connection: include tools.h in connection.c
4296 - BUILD: server-state: include tools.h from server_state.c
4297 - BUILD: dns: include tools.h in dns.c
4298 - BUILD: payload: include tools.h in payload.c
4299 - BUILD: vars: include tools.h in vars.c
4300 - BUILD: compression: include tools.h in compression.c
4301 - BUILD: mworker: include tools.h from mworker.c
4302 - BUILD: queue: include tools.h from queue.c
4303 - BUILD: udp: include tools.h from proto_udp.c
4304 - BUILD: stick-table: include freq_ctr.h from stick_table.h
4305 - BUILD: server: include tools.h from server.c
4306 - BUILD: server: include missing proxy.h in server.c
4307 - BUILD: sink: include proxy.h in sink.c
4308 - BUILD: mworker: include proxy.h in mworker.c
4309 - BUILD: filters: include proxy.h in filters.c
4310 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
4311 - BUILD: connection: move list_mux_proto() to connection.c
4312 - REORG: stick-table: uninline stktable_alloc_data_type()
4313 - REORG: stick-table: move composite address functions to stick_table.h
4314 - REORG: config: uninline warnifnotcap() and failifnotcap()
4315 - BUILD: task: remove unused includes from task.c
4316 - MINOR: task: stop including stream.h from task.c
4317 - BUILD: connection: stop including listener-t.h
4318 - BUILD: hlua: include proxy.h from hlua.c
4319 - BUILD: mux-h1: include proxy.h from mux-h1.c
4320 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
4321 - BUILD: listener: include proxy.h from listener.c
4322 - BUILD: http-rules: include proxy.h from http_rules.c
4323 - BUILD: thread: include log.h from thread.c
4324 - BUILD: comp: include proxy.h from flt_http_comp.c
4325 - BUILD: fd: include log.h from fd.c
4326 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
4327 - BUILD: makefile: reorder object files by build time
4328 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
4329 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
4330 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
4331 - DOC: remove last occurrences of "HA-Proxy" syntax
4332 - DOC: peers: fix the protocol tag name in the doc
4333 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
4334 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
4335 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
4336 - MINOR: tools/rnd: compute the result outside of the CAS loop
4337 - BUILD: http_fetch: address a few aliasing warnings with older compilers
4338 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
4339 - BUILD: errors: include stdarg in errors.h
4340 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
4341 - MINOR: cli: make "help" support a command in argument
4342 - MINOR: cli: sort the output of the "help" keywords
4343 - CLEANUP: cli/mworker: properly align the help messages
4344 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
4345 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
4346 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
4347 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
4348 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
4349
Willy Tarreau080347f2021-05-01 08:25:15 +020043502021/05/01 : 2.4-dev18
4351 - DOC: Fix indentation for `path-strip-dot` normalizer
4352 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
4353 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
4354 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
4355 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
4356 - REORG: htx: Inline htx functions to add HTX blocks in a message
4357 - CLEANUP: assorted typo fixes in the code and comments
4358 - DOC: general: fix white spaces for HTML converter
4359 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
4360 - BUG/MINOR: cpuset: move include guard at the very beginning
4361 - BUG/MAJOR: fix build on musl with cpu_set_t support
4362 - BUG/MEDIUM: cpuset: fix build on MacOS
4363 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
4364 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
4365 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
4366 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
4367 - MEDIUM: http-ana: handle read error on server side if waiting for response
4368 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
4369 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
4370 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
4371 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
4372 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
4373 - DOC: general: fix example in set-timeout
4374 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
4375 - MINOR: config: add a new "default-path" global directive
4376 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
4377 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
4378 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
4379 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
4380 - BUG/MEDIUM: peers: reset commitupdate value in new conns
4381 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
4382 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
4383 - MINOR: peers: add informative flags about resync process for debugging
4384 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
4385 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
4386 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
4387 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
4388 - REGTESTS: server: fix cli_add_server due to previous trace update
4389 - REGTESTS: add minimal CLI "add map" tests
4390 - DOC: management: move "set var" to the proper place
4391 - CLEANUP: map: slightly reorder the add map function
4392 - MINOR: map: get rid of map_add_key_value()
4393 - MINOR: map: show the current and next pattern version in "show map"
4394 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
4395 - MINOR: pattern: support purging arbitrary ranges of generations
4396 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
4397 - MINOR: map/acl: add the "prepare map/acl" CLI command
4398 - MINOR: map/acl: add the "commit map/acl" CLI command
4399 - MINOR: map/acl: make "add map/acl" support an optional version number
4400 - CLEANUP: map/cli: properly align the map/acl help
4401 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
4402
Willy Tarreaubfd19d62021-04-23 19:11:10 +020044032021/04/23 : 2.4-dev17
4404 - MINOIR: mux-pt/trace: Register a new trace source with its events
4405 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
4406 - CI: travis: Drastically clean up .travis.yml
4407 - CLEANUP: pattern: make all pattern tables read-only
4408 - MINOR: trace: replace the trace() inline function with an equivalent macro
4409 - MINOR: initcall: uniformize the section names between MacOS and other unixes
4410 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
4411 - MINOR: compiler: add macros to declare section names
4412 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
4413 - MINOR: global: declare a read_mostly section
4414 - MINOR: fd: move a few read-mostly variables to their own section
4415 - MINOR: epoll: move epoll_fd to read_mostly
4416 - MINOR: kqueue: move kqueue_fd to read_mostly
4417 - MINOR: pool: move pool declarations to read_mostly
4418 - MINOR: threads: mark all_threads_mask as read_mostly
4419 - MINOR: server: move idle_conn_task to read_mostly
4420 - MINOR: protocol: move __protocol_by_family to read_mostly
4421 - MINOR: pattern: make the pat_lru_seed read_mostly
4422 - MINOR: trace: make trace sources read_mostly
4423 - MINOR: freq_ctr: add a generic function to report the total value
4424 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
4425 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
4426 - MINOR: freq_ctr: add the missing next_event_delay_period()
4427 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
4428 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
4429 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
4430 - MINOR: freq_ctr: simplify and improve the update function
4431 - CLEANUP: time: remove the now unused ms_left_scaled
4432 - MINOR: time: move the time initialization out of tv_update_date()
4433 - MINOR: time: remove useless variable copies in tv_update_date()
4434 - MINOR: time: change the global timeval and the the global tick at once
4435 - MEDIUM: time: make the clock offset global and no per-thread
4436 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
4437 - MINOR: trace: Add the checks as a possible trace source
4438 - MINOIR: checks/trace: Register a new trace source with its events
4439 - MINOR: hlua: Add function to release a lua function
4440 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
4441 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
4442 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
4443 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
4444 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
4445 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
4446 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
4447 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
4448 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
4449 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
4450 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
4451 - DOC: internals: update the SSL architecture schema
4452 - BUG/MEDIUM: sample: Fix adjusting size in field converter
4453 - MINOR: sample: add ub64dec and ub64enc converters
4454 - CLEANUP: sample: align samples list in sample.c
4455 - MINOR: ist: Add `istclear(struct ist*)`
4456 - CI: cirrus: install "pcre" package
4457 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
4458 - MINOR: opentracing: transfer of context names without prefix
4459 - MINOR: sample: converter: Add mjson library.
4460 - MINOR: sample: converter: Add json_query converter
4461 - CI: travis-ci: enable weekly graviton2 builds
4462 - DOC: ssl: Certificate hot update only works on fronted certificates
4463 - DOC: ssl: Certificate hot update works on server certificates
4464 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
4465 - MINOR: threads: Only consider running threads to end a thread harmeless period
4466 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
4467 - MINOR: logs: Add support of checks as session origin to format lf strings
4468 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
4469 - MINOR: connection: Make bc_http_major compatible with tcp-checks
4470 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
4471 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
4472 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
4473 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
4474 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
4475 - BUG/MINOR: logs: Report the true number of retries if there was no connection
4476 - BUILD: makefile: Redirect stderr to /dev/null when probing options
4477 - MINOR: uri_normalizer: Add uri_normalizer module
4478 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
4479 - MINOR: uri_normalizer: Add `http-request normalize-uri`
4480 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
4481 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
4482 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
4483 - MINOR: uri_normalizer: Add a `sort-query` normalizer
4484 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
4485 - MEDIUM: http_act: Rename uri-normalizers
4486 - DOC: Add introduction to http-request normalize-uri
4487 - DOC: Note that URI normalization is experimental
4488 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
4489 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
4490 - MINOR: pools: drop the unused static history of artificially failed allocs
4491 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
4492 - MEDIUM: pools: move the cache into the pool header
4493 - MINOR: pool: remove the size field from pool_cache_head
4494 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
4495 - MINOR: pools: enable the fault injector in all allocation modes
4496 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
4497 - MEDIUM: pools: unify pool_refill_alloc() across all models
4498 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
4499 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
4500 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
4501 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
4502 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
4503 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
4504 - MINOR: tools: add statistical_prng_range() to get a random number over a range
4505 - MINOR: pools: use cheaper randoms for fault injections
4506 - MINOR: pools: move the fault injector to __pool_alloc()
4507 - MINOR: pools: split the OS-based allocator in two
4508 - MINOR: pools: always use atomic ops to maintain counters
4509 - MINOR: pools: move pool_free_area() out of the lock in the locked version
4510 - MINOR: pools: factor the release code into pool_put_to_os()
4511 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
4512 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
4513 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
4514 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
4515 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
4516 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
4517 - CLEANUP: pools: uninline pool_put_to_cache()
4518 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
4519 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
4520 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
4521 - CONTRIB: mod_defender: import the minimal number of includes
4522 - CONTRIB: mod_defender: make the code build with the embedded includes
4523 - CONTRIB: modsecurity: import the minimal number of includes
4524 - CONTRIB: modsecurity: make the code build with the embedded includes
4525 - CLEANUP: sample: Improve local variables in sample_conv_json_query
4526 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
4527 - CLEANUP: sample: Use explicit return for successful `json_query`s
4528 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
4529 - CONTRIB: move spoa_example out of the tree
4530 - BUG/MINOR: server: free srv.lb_nodes in free_server
4531 - BUG/MINOR: logs: free logsrv.conf.file on exit
4532 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
4533 - MINOR: server: add log on dynamic server creation
4534 - MINOR: server: implement delete server cli command
4535 - CONTRIB: move spoa_server out of the tree
4536 - CONTRIB: move modsecurity out of the tree
4537 - BUG/MINOR: server: fix potential null gcc error in delete server
4538 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
4539 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
4540 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
4541 - CLEANUP: uri_normalizer: Remove trailing whitespace
4542 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
4543 - CONTRIB: move mod_defender out of the tree
4544 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
4545 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
4546 - MINOR: config: add a diag for invalid cpu-map statement
4547 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
4548 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
4549 - BUILD: makefile: fix the "make clean" target on strict bourne shells
4550 - IMPORT: slz: import slz into the tree
4551 - BUILD: compression: switch SLZ from out-of-tree to in-tree
4552 - CI: github: do not build libslz any more
4553 - CLEANUP: compression: remove calls to SLZ init functions
4554 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
4555 - MINOR: cpuset: define a platform-independent cpuset type
4556 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
4557 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
4558 - MINOR: thread: implement the detection of forced cpu affinity
4559 - MINOR: cfgparse: support the comma separator on parse_cpu_set
4560 - MEDIUM: cfgparse: detect numa and set affinity if needed
4561 - MINOR: global: add option to disable numa detection
4562 - BUG/MINOR: haproxy: fix compilation on macOS
4563 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
4564 - MINOR: time: avoid unneeded updates to now_offset
4565 - MINOR: time: avoid overwriting the same values of global_now
4566 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
4567 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
4568 - BUG/MINOR: peers: remove useless table check if initial resync is finished
4569 - BUG/MEDIUM: peers: re-work connection to new process during reload.
4570 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
4571 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
4572
Willy Tarreau86512dd2021-04-09 17:10:39 +020045732021/04/09 : 2.4-dev16
4574 - CLEANUP: dev/flags: remove useless test in the stdin number parser
4575 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
4576 - MINOR: acl: Add HTTP_2.0 predefined macro
4577 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
4578 - BUG/MINOR: tools: fix parsing "us" unit for timers
4579 - MINOR: server/bind: add support of new prefixes for addresses.
4580 - MINOR: log: register config file and line number on log servers.
4581 - MEDIUM: log: support tcp or stream addresses on log lines.
4582 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
4583 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
4584 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
4585 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
4586 - MINOR: fd: move .linger_risk into fdtab[].state
4587 - MINOR: fd: move .cloned into fdtab[].state
4588 - MINOR: fd: move .initialized into fdtab[].state
4589 - MINOR: fd: move .et_possible into fdtab[].state
4590 - MINOR: fd: move .exported into fdtab[].state
4591 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
4592 - MINOR: cli/show-fd: slightly reorganize the FD status flags
4593 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
4594 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
4595 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
4596 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
4597 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
4598 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
4599 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
4600 - MINOR: atomic: implement native BTS/BTR for x86
4601 - MINOR: ist: Add `istappend(struct ist, char)`
4602 - MINOR: ist: Add `istshift(struct ist*)`
4603 - MINOR: ist: Add `istsplit(struct ist*, char)`
4604 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
4605 - MINOR: opentracing: register config file and line number on log servers
4606 - MEDIUM: resolvers: add support of tcp address on nameserver line.
4607 - MINOR: ist: Rename istappend() to __istappend()
4608 - CLEANUP: htx: Make http_get_stline take a `const struct`
4609 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
4610 - CLEANUP: Remove useless malloc() casts
4611
Willy Tarreau59fa1d12021-04-02 19:16:32 +020046122021/04/02 : 2.4-dev15
4613 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
4614 - BUG/MINOR: stats: Apply proper styles in HTML status page.
4615 - BUG/MEDIUM: time: make sure to always initialize the global tick
4616 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
4617 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
4618 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
4619 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
4620 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
4621 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
4622 - MINOR: frontend: Create HTTP txn for HTX streams
4623 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
4624 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
4625 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
4626 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
4627 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
4628 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
4629 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
4630 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
4631 - MINOR: muxes: Show muxes flags when the mux list is displayed
4632 - DOC: config: Improve documentation about proto/check-proto keywords
4633 - MINOR: stream: Use stream type instead of proxy mode when appropriate
4634 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
4635 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
4636 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
4637 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
4638 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
4639 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
4640 - DOC: config: Add documentation about TCP to HTTP upgrades
4641 - REGTESTS: Add script to tests TCP to HTTP upgrades
4642 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
4643 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
4644 - MINOR: action: Use a generic function to check validity of an action rule list
4645 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
4646 - MEDIUM: http-rules: Add wait-for-body action on request and response side
4647 - REGTESTS: Add script to tests the wait-for-body HTTP action
4648 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
4649 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
4650 - MINOR: global: define diagnostic mode of execution
4651 - MINOR: cfgparse: diag for multiple nbthread statements
4652 - MINOR: server: diag for 0 weight server
4653 - MINOR: diag: create cfgdiag module
4654 - MINOR: diag: diag if servers use the same cookie value
4655 - MINOR: config: diag if global section after non-global
4656 - TESTS: slightly reorganize the code in the tests/ directory
4657 - TESTS: move tests/*.cfg to tests/config
4658 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
4659 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
4660 - CONTRIB: halog: fix issue with array of type char
4661 - CONTRIB: tcploop: add a shutr command
4662 - CONTRIB: debug: add the show-fd-to-flags script
4663 - CONTRIB: debug: split poll from flags
4664 - CONTRIB: move some dev-specific tools to dev/
4665 - BUILD: makefile: always build the flags utility
4666 - DEV: flags: replace the unneeded makefile with a README
4667 - BUILD: makefile: integrate the hpack tools
4668 - CONTRIB: merge ip6range with iprange
4669 - CONTRIB: move some admin-related sub-projects to admin/
4670 - CONTRIB: move halog to admin/
4671 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
4672 - BUILD: makefile: build halog with the correct flags
4673 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
4674 - CONTRIB: move prometheus-exporter to addons/promex
4675 - DOC: add a few words about USE_* and the addons directory
4676 - CONTRIB: move 51Degrees to addons/51degrees
4677 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
4678 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
4679 - CONTRIB: move contrib/opentracing to addons/ot
4680 - BUG/MINOR: opentracing: initialization after establishing daemon mode
4681 - DOC: clarify that compression works for HTTP/2
4682
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010046832021/03/27 : 2.4-dev14
4684 - MEDIUM: quic: Fix build.
4685 - MEDIUM: quic: Fix build.
4686 - CI: codespell: whitelist "Dragan Dosen"
4687 - CLEANUP: assorted typo fixes in the code and comments
4688 - CI: github actions: update LibreSSL to 3.2.5
4689 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
4690 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
4691 - REGTESTS: remove unneeded experimental-mode in cli add server test
4692 - REGTESTS: wait for proper return of enable server in cli add server test
4693 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
4694 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
4695 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
4696 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
4697 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
4698 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
4699 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
4700 - CLEANUP: compression: do not test for buffer before calling b_alloc()
4701 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
4702 - MINOR: channel: simplify the channel's buffer allocation
4703 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
4704 - CLEANUP: dynbuf: remove b_alloc_margin()
4705 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
4706 - CLEANUP: pools: remove the unused pool_get_first() function
4707 - MINOR: pools: make the pool allocator support a few flags
4708 - MINOR: pools: add pool_zalloc() to return a zeroed area
4709 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
4710 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
4711 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
4712 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
4713 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
4714 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
4715 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
4716 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
4717 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
4718 - MINOR: time: also provide a global, monotonic global_now_ms timer
4719 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
4720 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
4721 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
4722 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
4723 - CLEANUP: ssl: remove unused definitions
4724 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
4725 - MINOR: lua: Slightly improve function dumping the lua traceback
4726 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
4727 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
4728 - MINOR: fd: make fd_clr_running() return the remaining running mask
4729 - MINOR: fd: remove the unneeded running bit from fd_insert()
4730 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
4731 - CLEANUP: fd: remove unused fd_set_running_excl()
4732 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
4733 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
4734 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
4735 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
4736 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
4737 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
4738 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
4739 - BUG/MINOR: ssl: Fix update of default certificate
4740 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
4741 - BUILD: ssl: introduce fine guard for ssl random extraction functions
4742 - REORG: global: move initcall register code in a dedicated file
4743 - REORG: global: move free acl/action in their related source files
4744 - REORG: split proxy allocation functions
4745 - MINOR: proxy: implement a free_proxy function
4746 - MINOR: proxy: define cap PR_CAP_LUA
4747 - MINOR: lua: properly allocate the lua Socket proxy
4748 - MINOR: lua: properly allocate the lua Socket servers
4749 - MINOR: vars: make get_vars() allow the session to be null
4750 - MINOR: vars: make the var() sample fetch keyword depend on nothing
4751 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
4752 - MINOR: sample: make smp_resolve_args() return an allocate error message
4753 - MINOR: sample: add a new SMP_SRC_CONST sample capability
4754 - MINOR: sample: mark the truly constant sample fetch keywords as such
4755 - MINOR: sample: add a new CFG_PARSER context for samples
4756 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
4757 - MEDIUM: vars: add support for a "set-var" global directive
4758 - REGTESTS: add a basic reg-test for some "set-var" commands
4759 - MINOR: sample: add a new CLI_PARSER context for samples
4760 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
4761 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
4762 - MEDIUM: cli: add a new experimental "set var" command
4763 - MINOR: compat: add short aliases for a few very commonly used types
4764 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
4765 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
4766
Willy Tarreau09cc6692021-03-19 17:16:18 +010047672021/03/19 : 2.4-dev13
4768 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
4769 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
4770 - MINOR: tools: improve word fingerprinting by counting presence
4771 - MINOR: tools: do not sum squares of differences for word fingerprints
4772 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
4773 - MINOR: cli: sort the suggestions by order of relevance
4774 - MINOR: cli: limit spelling suggestions to 5
4775 - MINOR: cfgparse/proxy: also support spelling fixes on options
4776 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
4777 - MINOR: time: export the global_now variable
4778 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
4779 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
4780 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
4781 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
4782 - MINOR: cli: implement experimental-mode
4783 - REORG: server: add a free server function
4784 - MINOR: cfgparse: always alloc idle conns task
4785 - REORG: server: move keywords in srv_kws
4786 - MINOR: server: remove fastinter from mistyped kw list
4787 - REORG: server: split parse_server
4788 - REORG: server: move alert traces in parse_server
4789 - REORG: server: rename internal functions from parse_server
4790 - REORG: server: attach servers in parse_server
4791 - REORG: server: use flags for parse_server
4792 - MINOR: server: prepare parsing for dynamic servers
4793 - MINOR: stats: export function to allocate extra proxy counters
4794 - MEDIUM: server: implement 'add server' cli command
4795 - REGTESTS: implement test for 'add server' cli
4796 - MINOR: server: enable standard options for dynamic servers
4797 - MINOR: server: support keyword proto in 'add server' cli
4798 - BUG/MINOR: protocol: add missing support of dgram unix socket.
4799 - CLEANUP: Fix a typo in fix_is_valid description
4800 - MINOR: raw_sock: Add a close method.
4801 - MEDIUM: connections: Introduce a new XPRT method, start().
4802 - MEDIUM: connections: Implement a start() method for xprt_handshake.
4803 - MEDIUM: connections: Implement a start() method in ssl_sock.
4804 - MINOR: muxes: garbage collect the reset() method.
4805 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
4806 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
4807 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
4808
Willy Tarreauacdd47d2021-03-13 11:48:28 +010048092021/03/13 : 2.4-dev12
4810 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
4811 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
4812 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
4813 - MINOR: connection: Use a `struct ist` to store proxy_authority
4814 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
4815 - BUILD: task: fix build at -O0 with threads disabled
4816 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
4817 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
4818 - BUILD: connection: do not use VAR_ARRAY in struct tlv
4819 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
4820 - MINOR: build: force CC to set a return code when probing options
4821 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
4822 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
4823 - CLEANUP: config: also address the cfg_keyword API change in the compression code
4824 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
4825 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
4826 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
4827 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
4828 - BUG/MINOR: connection: Missing QUIC initialization
4829 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
4830 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
4831 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
4832 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
4833 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
4834 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
4835 - BUG/MINOR: server-state: properly handle the case where the base is not set
4836 - BUG/MINOR: server-state: use the argument, not the global state
4837 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
4838 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
4839 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
4840 - CLEANUP: actions: the keyword must always be const from the rule
4841 - MINOR: tools: add simple word fingerprinting to find similar-looking words
4842 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
4843 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
4844 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
4845 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
4846 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
4847 - MINOR: actions: add a function to suggest an action ressembling a given word
4848 - MINOR: http-rules: suggest approaching action names on mismatch
4849 - MINOR: tcp-rules: suggest approaching action names on mismatch
4850 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
4851 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
4852 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
4853 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
4854 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
4855 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
4856 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
4857 - MINOR: resolvers: new function find_srvrq_answer_record()
4858 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
4859 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
4860 - MINOR: resolvers: Use a function to remove answers attached to a resolution
4861 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
4862 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
4863 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
4864 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
4865 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
4866 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
4867 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
4868 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
4869 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
4870 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
4871 - CLEANUP: cli: fix misleading comment and better indent the access level flags
4872 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
4873 - MINOR: cli: test the appctx level for master access instead of comparing pointers
4874 - MINOR: cli: print the error message in the parser function itself
4875 - MINOR: cli: filter the list of commands to the matching part
4876 - MEDIUM: cli: apply spelling fixes for known commands before listing them
4877 - MINOR: tools: add the ability to update a word fingerprint
4878 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
4879 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
4880 - CLEANUP: cli: rename the last few "stats_" to "cli_"
4881 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
4882 - CLEANUP: assorted typo fixes in the code and comments
4883
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010048842021/03/05 : 2.4-dev11
4885 - CI: codespell: skip Makefile for spell check
4886 - CLEANUP: assorted typo fixes in the code and comments
4887 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
4888 - BUG/MINOR: connection: Use the client's dst family for adressless servers
4889 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
4890 - CLEANUP: Use ist2(const void*, size_t) whenever possible
4891 - CLEANUP: Use IST_NULL whenever possible
4892 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
4893 - BUILD: quic: Implicit conversion between SSL related enums.
4894 - DOC: spoe: Add a note about fragmentation support in HAProxy
4895 - MINOR: contrib: add support for heartbeat control messages.
4896 - MINOR: contrib: Enhance peers dissector heuristic.
4897 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
4898 - CLEANUP: Reapply the ist2() replacement patch
4899 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
4900 - CLEANUP: Use isttest(const struct ist) whenever possible
4901 - Revert "CI: Pin VTest to a known good commit"
4902 - CLEANUP: backend: fix a wrong comment
4903 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
4904 - MINOR: backend: handle reuse for conns with no server as target
4905 - REGTESTS: test http-reuse if no server target
4906 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
4907 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
4908 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
4909 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
4910 - DOC: fix originalto except clause on destination address
4911 - CLEANUP: Use the ist() macro whenever possible
4912 - CLEANUP: Replace for loop with only a condition by while
4913 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
4914 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
4915 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
4916 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
4917 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
4918 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
4919 - MINOR: pools: double the local pool cache size to 1 MB
4920 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
4921 - CLEANUP: stream: explain why we queue the stream at the head of the server list
4922 - MEDIUM: backend: use a trylock when trying to grab an idle connection
4923 - REORG: tools: promote the debug PRNG to more general use as a statistical one
4924 - OPTIM: lb-random: use a cheaper PRNG to pick a server
4925 - MINOR: task: stop abusing the nice field to detect a tasklet
4926 - MINOR: task: move the nice field to the struct task only
4927 - MEDIUM: task: extend the state field to 32 bits
4928 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
4929 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
4930 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
4931 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
4932 - MINOR: server: don't read curr_used_conns multiple times
4933 - CLEANUP: global: reorder some fields to respect cache lines
4934 - CLEANUP: sockpair: silence a coverity check about fcntl()
4935 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
4936 - MINOR: server: add a global list of all known servers
4937 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
4938 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
4939 - MINOR: server: move actconns to the per-thread structure
4940 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
4941 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
4942 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
4943 - BUILD: Fix build when using clang without optimizing.
4944 - CLEANUP: assorted typo fixes in the code and comments
4945
Willy Tarreau8ab65c22021-02-26 22:49:10 +010049462021/02/26 : 2.4-dev10
4947 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
4948 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
4949 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
4950 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
4951 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
4952 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
4953 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
4954 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
4955 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
4956 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
4957 - MINOR: stream: add an "epoch" to figure which streams appeared when
4958 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
4959 - MINOR: streams: use one list per stream instead of a global one
4960 - MEDIUM: streams: do not use the streams lock anymore
4961 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
4962 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
4963 - MINOR: tasks: do not maintain the rqueue_size counter anymore
4964 - CLEANUP: tasks: use a less confusing name for task_list_size
4965 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
4966 - MINOR: task: limit the remote thread wakeup to the global runqueue only
4967 - MINOR: task: move the allocated tasks counter to the per-thread struct
4968 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
4969 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
4970 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
4971 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
4972 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
4973 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
4974 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
4975 - DOC: Update the module list in MAINTAINERS file
4976 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
4977 - DOC: Update the HTX API documentation
4978 - DOC: Update the filters guide
4979 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
4980 - MINOR: task: split the counts of local and global tasks picked
4981 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
4982 - MINOR: task: don't decrement then increment the local run queue
4983 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
4984 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
4985 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
4986 - MINOR: task: make tasklet wakeup latency measurements more accurate
4987 - MINOR: server: Be more strict on the server-state line parsing
4988 - MINOR: server: Only fill one array when parsing a server-state line
4989 - MEDIUM: server: Refactor apply_server_state() to make it more readable
4990 - CLEANUP: server: Rename state_line node to node instead of name_name
4991 - CLEANUP: server: Rename state_line structure into server_state_line
4992 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
4993 - MINOR: server: Be more strict when reading the version of a server-state file
4994 - MEDIUM: server: Store parsed params of a server-state line in the tree
4995 - MINOR: server: Remove cached line from global server-state tree when found
4996 - MINOR: server: Move loading state of servers in a dedicated function
4997 - MEDIUM: server: Use a tree to store local server-state lines
4998 - MINOR: server: Parse and store server-state lines in a dedicated function
4999 - MEDIUM: server: Don't load server-state file if a line is corrupted
5000 - REORG: server: Export and rename some functions updating server info
5001 - REORG: server-state: Move functions to deal with server-state in its own file
5002 - MINOR: server-state: Don't load server-state file for serverless proxies
5003 - CLEANUP: muxes: Remove useless if condition in show_fd function
5004 - BUG/MINOR: stats: fix compare of no-maint url suffix
5005 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
5006 - MINOR: ssl: mark the SSL handshake tasklet as heavy
5007 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
5008 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
5009 - MINOR: task: add one extra tasklet class: TL_HEAVY
5010 - MINOR: task: place the heavy elements in TL_HEAVY
5011 - MINOR: task: only limit TL_HEAVY tasks but not others
5012 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
5013 - MINOR: tools: Add net_addr structure describing a network addess
5014 - MINOR: tools: Add function to compare an address to a network address
5015 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
5016 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
5017 - REGTESTS: Add script to test except param for fowardedfor/originalto options
5018 - DOC: scheduler: add a diagram showing the different queues and their usages
5019 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
5020 - CLEANUP: config: replace a few free() with ha_free()
5021 - CLEANUP: vars: always zero the pointers after a free()
5022 - CLEANUP: ssl: remove a useless "if" before freeing an error message
5023 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
5024 - CLEANUP: ssl: use realloc() instead of free()+malloc()
5025
Willy Tarreau31dd3932021-02-20 13:30:31 +010050262021/02/20 : 2.4-dev9
5027 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
5028 - CLEANUP: check: fix get_check_status_info declaration
5029 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
5030 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
5031 - MINOR: stats: add helper to get status string
5032 - MEDIUM: contrib/prometheus-exporter: add listen stats
5033 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
5034 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
5035 - BUG/MINOR: dns: missing test writing in output channel in session handler
5036 - BUG/MINOR: dns: fix ring attach control on dns_session_new
5037 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
5038 - BUG/MAJOR: connection: prevent double free if conn selected for removal
5039 - BUG/MINOR: session: atomically increment the tracked sessions counter
5040 - REGTESTS: fix http_reuse_conn_hash proxy test
5041 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
5042 - MINOR: connection: remove pointers for prehash in conn_hash_params
5043 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
5044 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
5045 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
5046 - OPTIM: server: switch the actconn list to an mt-list
5047 - Revert "MINOR: threads: change lock_t to an unsigned int"
5048 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
5049 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
5050 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
5051 - OPTIM: lb-leastconn: do not unlink the server if it did not change
5052 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
5053 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
5054 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
5055 - MINOR: cli: add missing agent commands for set server
5056 - BUILD/MEDIUM: da Adding pcre2 support.
5057 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
5058 - REGTESTS: reorder reuse conn proxy protocol test
5059 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
5060 - MINOR: tasks: refine the default run queue depth
5061 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
5062 - MINOR: mux_h2: do not try to remove front conn from idle trees
5063 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
5064 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
5065 - MINOR: connection: allocate dynamically hash node for backend conns
5066 - DOC: DeviceAtlas documentation typo fix.
5067 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
5068 - BUG/MINOR: http-rules: Always replace the response status on a return action
5069 - BUG/MINOR: server: Init params before parsing a new server-state line
5070 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
5071 - MEDIUM: server: Don't introduce a new server-state file version
5072 - DOC: contrib/prometheus-exporter: remove htx reference
5073 - REGTESTS: contrib/prometheus-exporter: test NaN values
5074 - REGTESTS: contrib/prometheus-exporter: test well known labels
5075 - CI: github actions: switch to stable LibreSSL release
5076 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
5077 - MINOR: dynbuf: make the buffer wait queue per thread
5078 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
5079 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
5080 - MINOR: sched: have one runqueue ticks counter per thread
5081
Willy Tarreaudc626ec2021-02-13 10:17:27 +010050822021/02/13 : 2.4-dev8
5083 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
5084 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
5085 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
5086 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
5087 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
5088 - CLEANUP: assorted typo fixes in the code and comments
5089 - CLEANUP: check: fix some typo in comments
5090 - CLEANUP: tools: typo in `strl2irc` mention
5091 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
5092 - MEDIUM: ssl: add a rwlock for SSL server session cache
5093 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
5094 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
5095 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
5096 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
5097 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
5098 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
5099 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
5100 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
5101 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
5102 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
5103 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
5104 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
5105 - BUG/MINOR: server: re-align state file fields number
5106 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
5107 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
5108 - CLEANUP: remove unused variable assigned found by Coverity
5109 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
5110 - BUG/MINOR: backend: hold correctly lock when killing idle conn
5111 - MEDIUM: connection: protect idle conn lists with locks
5112 - MEDIUM: connection: replace idle conn lists by eb trees
5113 - MINOR: backend: search conn in idle/safe trees after available
5114 - MINOR: backend: search conn in idle tree after safe on always reuse
5115 - MINOR: connection: prepare hash calcul for server conns
5116 - MINOR: connection: use the srv pointer for the srv conn hash
5117 - MINOR: backend: compare conn hash for session conn reuse
5118 - MINOR: connection: use sni as parameter for srv conn hash
5119 - MINOR: reg-tests: test http-reuse with sni
5120 - MINOR: backend: rewrite alloc of stream target address
5121 - MINOR: connection: use dst addr as parameter for srv conn hash
5122 - MINOR: reg-test: test http-reuse with specific dst addr
5123 - MINOR: backend: rewrite alloc of connection src address
5124 - MINOR: connection: use src addr as parameter for srv conn hash
5125 - MINOR: connection: use proxy protocol as parameter for srv conn hash
5126 - MINOR: reg-tests: test http-reuse with proxy protocol
5127 - MINOR: doc: update http reuse for new eligilible connections
5128 - BUG/MINOR: backend: fix compilation without ssl
5129 - REGTESTS: adjust http_reuse_conn_hash requirements
5130 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
5131 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
5132 - CI: cirrus: update FreeBSD image to 12.2
5133 - MEDIUM: cli: add check-addr command
5134 - MEDIUM: cli: add agent-port command
5135 - MEDIUM: server: add server-states version 2
5136 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
5137 - MINOR: server: enhance error precision when applying server state
5138 - BUG/MINOR: server: Fix server-state-file-name directive
5139 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
5140 - BUG/MEDIUM: config: don't pick unset values from last defaults section
5141 - BUG/MINOR: stats: revert the change on ST_CONVDONE
5142 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
5143 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
5144 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
5145 - BUILD: proxy: add missing compression-t.h to proxy-t.h
5146 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
5147 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
5148 - MEDIUM: proxy: only take defaults when a default proxy is passed.
5149 - MINOR: proxy: move the defproxy freeing code to proxy.c
5150 - MINOR: proxy: always properly reset the just freed default instance pointers
5151 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
5152 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
5153 - BUG/MINOR: server: parse_server() must take a const for the defproxy
5154 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
5155 - MINOR: proxy: add a new capability PR_CAP_DEF
5156 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
5157 - MINOR: cfgparse: use a pointer to the current default proxy
5158 - MINOR: proxy: also store the name for a defaults section
5159 - MINOR: proxy: support storing defaults sections into their own tree
5160 - MEDIUM: proxy: store the default proxies in a tree by name
5161 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
5162 - MINOR: http: add baseq sample fetch
5163 - CLEANUP: tcpcheck: Remove a useless test on port variable
5164 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
5165 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
5166 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
5167 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
5168 - DOC: tune: explain the origin of block size for ssl.cachesize
5169 - MINOR: tcp: add support for defer-accept on FreeBSD.
5170 - MINOR: ring: adds new ring_init function.
5171 - CLEANUP: channel: fix comment in ci_putblk.
5172 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
5173 - BUG/MINOR: resolvers: fix attribute packed struct for dns
5174 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
5175 - MINOR: resolvers: renames type dns_resolvers to resolvers.
5176 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
5177 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
5178 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
5179 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
5180 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
5181 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
5182 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
5183 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
5184 - MEDIUM: resolvers: split resolving and dns message exchange layers.
5185 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
5186 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
5187 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
5188
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010051892021/02/05 : 2.4-dev7
5190 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
5191 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
5192 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
5193 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
5194 - CLEANUP: stats: improve field selection for frontend http fields
5195 - CLEANUP: assorted typo fixes in the code and comments
5196 - DOC: Improve documentation of the various hdr() fetches
5197 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
5198 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
5199 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
5200 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
5201 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
5202 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
5203 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
5204 - MINOR: reg-tests: add http-reuse test
5205 - CLEANUP: srv: fix comment for pool-max-conn
5206 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
5207 - REORG: backend: simplify conn_backend_get
5208 - MINOR: ssl: Server ssl context prepare function refactoring
5209 - MINOR: ssl: Certificate chain loading refactorization
5210 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
5211 - MEDIUM: ssl: Enable backend certificate hot update
5212 - MINOR: ssl: Remove client_crt member of the server's ssl context
5213 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
5214 - CLEANUP: ssl: remove SSL_CTX function parameter
5215 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
5216 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
5217 - CI: Fix DEBUG_STRICT definition for Coverity
5218 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
5219 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
5220 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
5221 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
5222 - BUG/MEDIUM: session: only retrieve ready idle conn from session
5223 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
5224 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
5225 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
5226 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
5227 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
5228 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
5229 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
5230 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
5231 - MINOR: stream: Add a function to validate TCP to H1 upgrades
5232 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
5233 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
5234 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
5235 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
5236 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
5237 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
5238 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
5239 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
5240 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
5241 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
5242 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
5243 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
5244 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
5245 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
5246 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
5247 - MINOR: htx: Add a function to know if a block is the only one in a message
5248 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
5249 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
5250 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
5251 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
5252 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
5253 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
5254 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
5255 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
5256 - MINOR: h1: reject websocket handshake if missing key
5257 - MEDIUM: h1: generate WebSocket key on response if needed
5258 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
5259 - MEDIUM: h2: parse Extended CONNECT reponse to htx
5260 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
5261 - MEDIUM: h1: add a WebSocket key on handshake if needed
5262 - MEDIUM: mux_h2: generate Extended CONNECT response
5263 - MEDIUM: h2: parse Extended CONNECT request to htx
5264 - MEDIUM: h2: send connect protocol h2 settings
5265 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
5266 - MINOR: vtc: add websocket test
5267 - REGTESTS: Fix required versions for several scripts
5268 - REGTEST: Don't use the websocket to validate http-check
5269 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
5270 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
5271 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
5272 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
5273 - REGTESTS: set_ssl_server_cert.vtc: set as broken
5274 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
5275 - BUG/MINOR: backend: check available list allocation for reuse
5276 - CI: Fix the coverity builds
5277 - DOC: management: fix "show resolvers" alphabetical ordering
5278 - MINOR: tools: add print_time_short() to print a condensed duration value
5279 - MINOR: activity: make profiling more manageable
5280 - MINOR: activity: declare a new structure to collect per-function activity
5281 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
5282 - MINOR: activity: also report collected tasks stats in "show profiling"
5283 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
5284 - MINOR: activity: add a new "show tasks" command to list currently active tasks
5285 - MINOR: listener: export accept_queue_process
5286 - MINOR: session: export session_expire_embryonic()
5287 - MINOR: muxes: export the timeout and shutr task handlers
5288 - MINOR: checks: export a few functions that appear often in trace dumps
5289 - MINOR: peers: export process_peer_sync() to improve traces
5290 - MINOR: stick-tables: export process_table_expire()
5291 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
5292 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
5293 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
5294 - MINOR: http-conv: Don't check if argument list is set in sample converters
5295 - MINOR: sample: Don't check if argument list is set in sample fetches
5296 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
5297 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
5298 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
5299 - MINOR: contrib/prometheus-exporter: declare states for objects
5300 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
5301 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
5302 - MINOR: listener: export manage_global_listener_queue()
5303 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
5304 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
5305 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
5306 - MINOR: checks: Add function to get the result code corresponding to a status
5307 - MAJOR: contrib/prometheus-exporter: move health check status to labels
5308 - MINOR: contrib/prometheus-exporter: improve service status description field
5309 - MINOR: stats: improve pending connections description
5310 - MINOR: stats: improve max stats descriptions
5311 - MINOR: contrib/prometheus-exporter: use stats desc when possible
5312 - MINOR: contrib/prometheus-exporter: add uweight field
5313 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
5314 - CLEANUP: contrib/prometheus-exporter: remove unused includes
5315 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
5316 - CLEANUP: contrib/prometheus-exporter: remove description in README
5317 - DOC: contrib/prometheus-exporter: Add missing metrics in README
5318 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
5319 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
5320 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
5321 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
5322 - BUG/MINOR: mux_h2: fix incorrect stat titles
5323 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
5324 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
5325 - MINOR: server: Don't set the check port during the update from a state file
5326 - MINOR: dns: Don't set the check port during a server dns resolution
5327 - MEDIUM: check: remove checkport checkaddr flag
5328 - MEDIUM: server: adding support for check_port in server state
5329 - BUG/MINOR: check: consitent way to set agentaddr
5330 - MEDIUM: check: align agentaddr and agentport behaviour
5331 - DOC: server: Add missing params in comment of the server state line parsing
5332 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
5333 - REGTESTS: mark http-check-send.vtc as 2.4-only
5334 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
5335 - BUG/MINOR: ssl: do not try to use early data if not configured
5336 - REGTESTS: unbreak http-check-send.vtc
5337 - MINOR: cli/show_fd: report local and report ports when known
5338 - BUILD: Makefile: move REGTESTST_TYPE default setting
5339 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
5340 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
5341 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
5342 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
5343
Willy Tarreau24c41d52021-01-22 16:19:46 +010053442021/01/22 : 2.4-dev6
5345 - MINOR: converter: adding support for url_enc
5346 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
5347 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
5348 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
5349 - BUILD: Makefile: exclude broken tests by default
5350 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
5351 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
5352 - MINOR: contrib/prometheus-exporter: export build_info
5353 - DOC: fix some spelling issues over multiple files
5354 - CLEANUP: Fix spelling errors in comments
5355 - SCRIPTS: announce-release: fix typo in help message
5356 - CI: github: add a few more words to the codespell ignore list
5357 - DOC: Add maintainers for the Prometheus exporter
5358 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
5359 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
5360 - CLEANUP: sample: remove uneeded check in json validation
5361 - MINOR: reg-tests: add a way to add service dependency
5362 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
5363 - BUG/MINOR: reg-tests: fix service dependency script
5364 - MINOR: reg-tests: add base prometheus test
5365 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
5366 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
5367 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
5368 - BUG/MINOR: init: enforce strict-limits when using master-worker
5369 - MINOR: contrib/prometheus-exporter: avoid connection close header
5370 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
5371 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
5372 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
5373 - MINOR: server: Forbid server definitions in frontend sections
5374 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
5375 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
5376 - MINOR: pattern: add the missing generation ID manipulation functions
5377 - MINOR: peers: Add traces for peer control messages.
5378 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
5379 - BUILD: peers: fix build warning about unused variable
5380 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
5381 - MINOR: cache: Do not store responses with an unknown encoding
5382 - BUG/MINOR: peers: Possible appctx pointer dereference.
5383 - MINOR: build: discard echoing in help target
5384 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
5385 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
5386 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
5387 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
5388 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
5389 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
5390 - CLEANUP: tools: make resolve_sym_name() take a const pointer
5391 - CLEANUP: cli: make "show fd" use a const connection to access other fields
5392 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
5393 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
5394 - MINOR: ssl: provide a "show fd" helper to report important SSL information
5395 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
5396 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
5397 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
5398 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
5399 - CI: Pin VTest to a known good commit
5400 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
5401 - MINOR: cli/show_fd: report some easily detectable suspicious states
5402 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
5403 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
5404 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
5405 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
5406 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
5407 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
5408 - MINOR: http: Add HTTP 501-not-implemented error message
5409 - MINOR: muxes: Add exit status for errors about not implemented features
5410 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
5411 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
5412 - DOC: Remove space after comma in converter signature
5413 - DOC: Rename '<var name>' to '<var>' in converter signature
5414 - MINOR: stats: duplicate 3 fields in bytes in info
5415 - MINOR: stats: add new start time field
5416 - MINOR: contrib/prometheus-exporter: merge info description from stats
5417 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
5418 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
5419 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
5420 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
5421 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
5422 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
5423 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
5424 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
5425 - MINOR: debug: always export the my_backtrace function
5426 - MINOR: debug: extract the backtrace dumping code to its own function
5427 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
5428 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
5429 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
5430 - BUILD: debug: fix build warning by consuming the write() result
5431 - MINOR: lua: remove unused variable
5432 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
5433
Willy Tarreau421ed392021-01-06 17:41:32 +010054342021/01/06 : 2.4-dev5
5435 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
5436 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
5437 - MINOR: time: increase the minimum wakeup interval to 60s
5438 - MINOR: check: do not ignore a connection header for http-check send
5439 - REGTESTS: complete http-check test
5440 - CI: travis-ci: drop coverity scan builds
5441 - MINOR: atomic: don't use ; to separate instruction on aarch64.
5442 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
5443 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
5444 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
5445 - CLEANUP: xxhash: remove the unused src/xxhash.c
5446 - MINOR: sample: add the xxh3 converter
5447 - REGTESTS: add tests for the xxh3 converter
5448 - MINOR: protocol: Create proto_quic QUIC protocol layer.
5449 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
5450 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
5451 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
5452 - MINOR: connection: Add a new xprt to connection.
5453 - MINOR: ssl: Export definitions required by QUIC.
5454 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
5455 - MINOR: tools: Add support for QUIC addresses parsing.
5456 - MINOR: quic: Add definitions for QUIC protocol.
5457 - MINOR: quic: Import C source code files for QUIC protocol.
5458 - MINOR: listener: Add QUIC info to listeners and receivers.
5459 - MINOR: server: Add QUIC definitions to servers.
5460 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
5461 - MINOR: ssl: QUIC transport parameters parsing.
5462 - MINOR: quic: QUIC socket management finalization.
5463 - MINOR: cfgparse: QUIC default server transport parameters init.
5464 - MINOR: quic: Enable the compilation of QUIC modules.
5465 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
5466 - MINOR: quic: Attempt to make trace more readable
5467 - MINOR: quic: Make usage of the congestion control window.
5468 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
5469 - MINOR: quic: Code reordering to help in reviewing/modifying.
5470 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
5471 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
5472 - MINOR: quic: Update the initial salt to that of draft-29.
5473 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
5474 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
5475 - MINOR: quic: Add traces for quic_packet_encrypt().
5476 - MINOR: cache: Refactoring of secondary_key building functions
5477 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
5478 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
5479 - MINOR: cache: Add specific secondary key comparison mechanism
5480 - MINOR: http: Add helper functions to trim spaces and tabs
5481 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
5482 - REGTESTS: cache: Simplify vary.vtc file
5483 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
5484 - MINOR: cache: Remove redundant test in http_action_req_cache_use
5485 - MINOR: cache: Replace the "process-vary" option's expected values
5486 - CI: GitHub Actions: enable daily Coverity scan
5487 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
5488 - MEDIUM: stick-tables: Add srvkey option to stick-table
5489 - REGTESTS: add test for stickiness using "srvkey addr"
5490 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
5491 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
5492 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
5493 - MINOR: lua: Use consistent error message 'memory allocation failed'
5494 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
5495 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
5496 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
5497 - MINOR: qpack: Add static header table definitions for QPACK.
5498 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
5499 - CLEANUP: quic: Remove useless QUIC event trace definitions.
5500 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
5501 - MINOR: quic: Pass quic_conn struct to frame parsers.
5502 - BUG/MINOR: quic: Wrong STREAM frames parsing.
5503 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
5504 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
5505 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
5506 - MINOR: ssl: make tlskeys_list_get_next() take a list element
5507 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
5508 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
5509 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
5510 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
5511 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
5512 - CLEANUP: spoe: fix typo on `var_check_arg` comment
5513 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
5514 - CI: github actions: build several popular "contrib" tools
5515 - DOC: Improve the message printed when running `make` w/o `TARGET`
5516 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
5517 - REGTESTS: add unresolvable servers to srvkey-addr
5518 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
5519 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
5520 - SCRIPTS: improve announce-release to support different tag and versions
5521 - SCRIPTS: make announce release support preparing announces before tag exists
5522 - CLEANUP: assorted typo fixes in the code and comments
5523 - BUG/MINOR: srv: do not init address if backend is disabled
5524 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
5525 - CLEANUP: assorted typo fixes in the code and comments
5526 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
5527
Willy Tarreau4d711762020-12-21 11:54:56 +010055282020/12/21 : 2.4-dev4
5529 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
5530 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
5531 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
5532 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
5533 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
5534 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
5535 - MEDIUM: cache: Avoid going over duplicates lists too often
5536 - MINOR: cache: Add a max-secondary-entries cache option
5537 - CI: cirrus: drop CentOS 6 builds
5538 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
5539 - MINOR: vars: replace static functions with global ones
5540 - MINOR: opentracing: add ARGC_OT enum
5541 - CONTRIB: opentracing: add the OpenTracing filter
5542 - DOC: opentracing: add the OpenTracing filter section
5543 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
5544 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
5545 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
5546 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
5547 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
5548 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
5549 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
5550 - CLEANUP: debug: mark the RNG's seed as unsigned
5551 - CONTRIB: halog: fix build issue caused by %L printf format
5552 - CONTRIB: halog: mark the has_zero* functions unused
5553 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
5554 - CONTRIB: debug: address "poll" utility build on non-linux platforms
5555 - BUILD: plock: remove dead code that causes a warning in gcc 11
5556 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
5557 - BUG/MINOR: dns: SRV records ignores duplicated AR records
5558 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
5559 - CLEANUP: assorted typo fixes in the code and comments
5560 - DOC: assorted typo fixes in the documentation
5561 - CI: codespell: whitelist "te" and "nd" words
5562
Willy Tarreaua786c412020-12-11 17:22:51 +010055632020/12/11 : 2.4-dev3
5564 - MINOR: log: Logging HTTP path only with %HPO
5565 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
5566 - MINOR: traces: add a new level "error" below the "user" level
5567 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
5568 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
5569 - BUG/MINOR: lua: missing "\n" in error message
5570 - BUG/MINOR: lua: lua-load doesn't check its parameters
5571 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
5572 - BUG/MINOR: lua: Some lua init operation are processed unsafe
5573 - MINOR: actions: Export actions lookup functions
5574 - MINOR: actions: add a function returning a service pointer from its name
5575 - MINOR: cli: add a function to look up a CLI service description
5576 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
5577 - MINOR: cache: Improve accept_encoding_normalizer
5578 - MINOR: cache: Add entry to the tree as soon as possible
5579 - BUG/MINOR: trace: Wrong displayed trace level
5580 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
5581 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
5582 - MEDIUM: lua-thread: use atomics for memory accounting
5583 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
5584 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
5585 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
5586 - MINOR: lua-thread: Use NULL context for main lua state
5587 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
5588 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
5589 - MINOR: lua-thread: Split hlua_init() function in two parts
5590 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
5591 - MINOR: lua-thread: Split hlua_load function in two parts
5592 - MINOR: lua-thread: Split hlua_post_init() function in two parts
5593 - MINOR: lua-thread: Add the "thread" core variable
5594 - MEDIUM: lua-thread: No longer use locked context in initialization parts
5595 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
5596 - MINOR: lua-thread: Replace global gL var with an array of states
5597 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
5598 - MINOR: lua-thread: Replace state_from by state_id
5599 - MINOR: lua-thread: Store each function reference and init reference in array
5600 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
5601 - MINOR: lua-thread: Add verbosity in errors
5602 - REGTESTS: add a test for the threaded Lua code
5603 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
5604 - DOC/MINOR: Fix formatting in Management Guide
5605 - MINOR: cache: Do not store stale entry
5606 - MINOR: cache: Add extra "cache-control" value checks
5607 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
5608 - MINOR: cache: Consider invalid Age values as stale
5609 - BUG/MEDIUM: lua-thread: some parts must be initialized once
5610 - BUG/MINOR: lua-thread: close all states on deinit
5611 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
5612 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
5613 - MINOR: session: Add the idle duration field into the session
5614 - MINOR: mux-h1: Update session idle duration when data are received
5615 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
5616 - MINOR: logs: Use session idle duration when no stream is provided
5617 - MINOR: stream: Always get idle duration from the session
5618 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
5619 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
5620 - MINOR: muxes: Remove get_cs_info callback function now useless
5621 - MINOR: stream: Pass an optional input buffer when a stream is created
5622 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
5623 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
5624 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
5625 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
5626 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
5627 - MINOR: mux-h1: Add a rxbuf into the H1 stream
5628 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
5629 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
5630 - MINOR: mux-h1: rework the h1_timeout_task() function
5631 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
5632 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
5633 - MINOR: mux-h1: Rework how shutdowns are handled
5634 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
5635 - MINOR: mux-h1: Process next request for IDLE connection only
5636 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
5637 - MINOR: stick-tables: Add functions to update some values of a tracked counter
5638 - MINOR: session: Add functions to increase http values of tracked counters
5639 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
5640 - MINOR: logs: Get the multiplexer exist status when no stream is provided
5641 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
5642 - MAJOR: mux-h1: Create the client stream as later as possible
5643 - DOC: config: Add notes about errors emitted by H1 mux
5644 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
5645 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
5646 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
5647 - MEDIUM: http-ana: Don't process partial or empty request anymore
5648 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
5649 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
5650 - REGTESTS: Fix proxy_protocol_tlv_validation
5651 - MINOR: http-ana: Properly set message flags from the start-line flags
5652 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
5653 - MINOR: protocol: add a ->set_port() helper to address families
5654 - MINOR: listener: automatically set the port when creating listeners
5655 - MINOR: listener: now use a generic add_listener() function
5656 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
5657 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
5658 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
5659 - MINOR: protocol: remove the redundant ->sock_domain field
5660 - MINOR: protocol: export protocol definitions
5661 - CLEANUP: protocol: group protocol struct members by usage
5662 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
5663 - MINOR: connection: use the control layer's init/close
5664 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
5665 - BUG/MAJOR: spoa/python: Fixing return None
5666 - DOC: spoa/python: Fixing typo in IP related error messages
5667 - DOC: spoa/python: Rephrasing memory related error messages
5668 - DOC: spoa/python: Fixing typos in comments
5669 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
5670 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
5671 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
5672 - BUG/MEDIUM: spoa/python: Fixing references to None
5673 - DOC: email change of the DeviceAtlas maintainer
5674 - MINOR: cache: Dump secondary entries in "show cache"
5675 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
5676 - MINOR: stream-int: don't touch polling anymore on shutdown
5677 - MINOR: connection: implement cs_drain_and_close()
5678 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
5679 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
5680 - MINOR: checks: don't call conn_cond_update_polling() anymore
5681 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
5682 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
5683 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
5684 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
5685 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
5686 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
5687 - BUG/MINOR: tools: Reject size format not starting by a digit
5688 - MINOR: action: define enum for timeout type of the set-timeout rule
5689 - MINOR: stream: prepare the hot refresh of timeouts
5690 - MEDIUM: stream: support a dynamic server timeout
5691 - MEDIUM: stream: support a dynamic tunnel timeout
5692 - MEDIUM: http_act: define set-timeout server/tunnel action
5693 - MINOR: frontend: add client timeout sample fetch
5694 - MINOR: backend: add timeout sample fetches
5695 - MINOR: stream: add sample fetches
5696 - MINOR: stream: add timeout sample fetches
5697 - REGTESTS: add regtest for http-request set-timeout
5698 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
5699 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
5700 - MINOR: connection: remove sock-specific code from conn_sock_send()
5701 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
5702 - MINOR: protocol: add a ->drain() function at the connection control layer
5703 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
5704 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
5705 - MEDIUM: connection: make use of the control layer check_events/ignore_events
5706
Willy Tarreauc94431b2020-12-01 08:15:26 +010057072020/12/01 : 2.4-dev2
5708 - BUILD: Make DEBUG part of .build_opts
5709 - BUILD: Show the value of DEBUG= in haproxy -vv
5710 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
5711 - MINOR: stream: Add level 7 retries on http error 401, 403
5712 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
5713 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
5714 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
5715 - BUG/MEDIUM: http_act: Restore init of log-format list
5716 - DOC: better describes how to configure a fallback crt
5717 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
5718 - MINOR: cache: Prepare helper functions for Vary support
5719 - MEDIUM: cache: Add the Vary header support
5720 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
5721 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
5722 - BUG/MAJOR: peers: fix partial message decoding
5723 - DOC: cache: Add new caching limitation information
5724 - DOC: cache: Add information about Vary support
5725 - DOC: better document the config file format and escaping/quoting rules
5726 - DOC: Clarify %HP description in log-format
5727 - CI: github actions: update LibreSSL to 3.3.0
5728 - CI: github actions: enable 51degrees feature
5729 - MINOR: fd/threads: silence a build warning with threads disabled
5730 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
5731 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
5732 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
5733 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
5734 - MINOR: config: Deprecate and ignore tune.chksize global option
5735 - MINOR: config: Add a warning if tune.chksize is used
5736 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
5737 - MINOR: check: Always increment check health counter on CONPASS
5738 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
5739 - DOC: config: Make disable-on-404 option clearer on transition conditions
5740 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
5741 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
5742 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
5743 - MINOR: debug: add "debug dev sched" to stress the scheduler.
5744 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
5745 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
5746 - MINOR: task: remove tasklet_insert_into_tasklet_list()
5747 - MINOR: task: perform atomic counter increments only once per wakeup
5748 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
5749 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
5750 - BUG/MEDIUM: local log format regression.
5751
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010057522020/11/21 : 2.4-dev1
5753 - MINOR: ist: Add istend() function to return a pointer to the end of the string
5754 - MINOR: sample: Add converters to parse FIX messages
5755 - REGTEST: converter: Add a regtest for fix converters
5756 - MINOR: sample: Add converts to parses MQTT messages
5757 - REGTEST: converter: Add a regtest for MQTT converters
5758 - MINOR: compat: automatically include malloc.h on glibc
5759 - MEDIUM: pools: call malloc_trim() from pool_gc()
5760 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
5761 - MINOR: pattern: move the update revision to the pat_ref, not the expression
5762 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
5763 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
5764 - MINOR: pattern: make the delete and prune functions more generic
5765 - MEDIUM: pattern: link all final elements from the reference
5766 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
5767 - MINOR: pattern: remerge the list and tree deletion functions
5768 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
5769 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
5770 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
5771 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
5772 - MINOR: pattern: store a generation number in the reference patterns
5773 - MEDIUM: pattern: only match patterns that match the current generation
5774 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
5775 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
5776 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
5777 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
5778 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
5779 - MINOR: pattern: prepare removal of a pattern from the list head
5780 - MEDIUM: pattern: turn the pattern chaining to single-linked list
5781 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
5782 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
5783 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
5784 - MINOR: ssl: instantiate stats module
5785 - MINOR: ssl: count client hello for stats
5786 - MINOR: ssl: add counters for ssl sessions
5787 - DOC: config: Fix a typo on ssl_c_chain_der
5788 - MINOR: server: remove idle lock in srv_cleanup_connections
5789 - BUILD: ssl: silence build warning on uninitialised counters
5790 - BUILD: http-htx: fix build warning regarding long type in printf
5791 - REGTEST: ssl: test wildcard and multi-type + exclusions
5792 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
5793 - CI: Expand use of GitHub Actions for CI
5794 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
5795 - BUG/MINOR: pattern: a sample marked as const could be written
5796 - BUG/MINOR: lua: set buffer size during map lookups
5797 - MEDIUM: cache: Change caching conditions
5798 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
5799 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
5800 - MINOR: peers: Add traces to peer_treat_updatemsg().
5801 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
5802 - BUG/MINOR: peers: Missing TX cache entries reset.
5803 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
5804 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
5805 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
5806 - BUG/MEDIUM: check: reuse srv proto only if using same mode
5807 - MINOR: check: report error on incompatible proto
5808 - MINOR: check: report error on incompatible connect proto
5809 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
5810 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
5811 - MINOR: spoe: Don't close connection in sync mode on processing timeout
5812 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
5813 - MINOR: init: Fix the prototype for per-thread free callbacks
5814 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
5815 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
5816 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
5817 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
5818 - REGTESTS: Add sample_fetches/cook.vtc
5819 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
5820 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
5821 - CLEANUP: flt-trace: Remove unused random-parsing option
5822 - MINOR: flt-trace: Add an option to inhibits trace messages
5823 - MINOR: flt-trace: Use a bitfield for the trace options
5824 - REGTESTS: Add a script to test the random forwarding with several filters
5825 - REGTESTS: mark the abns test as broken again
5826 - REGTESTS: converter: add url_dec test
5827 - CI: Stop hijacking the hosts file
5828 - CI: Make the h2spec workflow more consistent with the VTest workflow
5829 - CI: travis-ci: remove amd64, osx builds
5830 - CI: travis-ci: arm64 are not allowed to fail anymore
5831 - DOC: add missing 3.10 in the summary
5832 - MINOR: ssl: remove client hello counters
5833 - MEDIUM: stats: add counters for failed handshake
5834 - MINOR: ssl: create common ssl_ctx init
5835 - MEDIUM: cli/ssl: configure ssl on server at runtime
5836 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
5837 - DOC: coding-style: update a few rules about pointers
5838 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
5839 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
5840 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
5841 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
5842 - BUG/MEDIUM: ssl: error when no certificate are found
5843 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
5844 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
5845 - CI: Github Actions: enable prometheus exporter
5846 - CI: Github Actions: remove LibreSSL-3.0.2 builds
5847 - CI: Github Actions: enable BoringSSL builds
5848 - CI: travis-ci: remove builds migrated to GH actions
5849 - BUILD: makefile: enable crypt(3) for OpenBSD
5850 - CI: Github Action: run "apt-get update" before packages restore
5851 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
5852 - CI: Pass the github.event_name to matrix.py
5853 - CI: Clean up Windows CI
5854 - DOC: clarify how to create a fallback crt
5855 - CLEANUP: connection: do not use conn->owner when the session is known
5856 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
5857 - REGTESTS: mark proxy_protocol_random_fail as broken
5858 - BUG/MINOR: http_htx: Fix searching headers by substring
5859 - MINOR: http_act: Add -m flag for del-header name matching method
5860
Willy Tarreau1db55792020-11-05 17:20:35 +010058612020/11/05 : 2.4-dev0
5862 - MINOR: version: it's development again.
5863 - DOC: mention in INSTALL that it's development again
5864
Willy Tarreau1c0a7222020-11-05 17:04:53 +010058652020/11/05 : 2.3.0
5866 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
5867 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
5868 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
5869 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
5870 - BUG/MINOR: checks: Report a socket error before any connection attempt
5871 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
5872 - MINOR: server: Copy configuration file and line for server templates
5873 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
5874 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
5875 - MINOR: debug: don't count free(NULL) in memstats
5876 - BUG/MINOR: filters: Skip disabled proxies during startup only
5877 - MINOR: mux_h2: capitalize frame type in stats
5878 - MINOR: mux_h2: add stat for total count of connections/streams
5879 - MINOR: stats: do not display empty stat module title on html
5880 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
5881 - BUG/MEDIUM: listener: only enable a listening listener if needed
5882 - BUG/MEDIUM: listener: never suspend inherited sockets
5883 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
5884 - MINOR: fd: add fd_want_recv_safe()
5885 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
5886 - REGTESTS: mark abns_socket as working now
5887 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
5888 - MINOR: sock: add a check against cross worker<->master socket activities
5889 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
5890 - BUG/MEDIUM: server: make it possible to kill last idle connections
5891 - MINOR: mworker/cli: the master CLI use its own applet
5892 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
5893 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
5894 - DOC: Add dns as an available domain to show stat
5895 - BUILD: makefile: usual reorder of objects for faster builds
5896 - DOC: update INSTALL to mention that TCC is supported
5897 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
5898 - MINOR: version: mention that it's stable now
5899
Willy Tarreaubd703e52020-10-31 13:17:06 +010059002020/10/31 : 2.3-dev9
5901 - CLEANUP: http_ana: remove unused assignation of `att_beg`
5902 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
5903 - BUG/MINOR: log: fix memory leak on logsrv parse error
5904 - BUG/MINOR: log: fix risk of null deref on error path
5905 - BUILD: ssl: more elegant OpenSSL early data support check
5906 - CI: github actions: update h2spec to 2.6.0
5907 - BUG/MINOR: cache: Check the return value of http_replace_res_status
5908 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
5909 - MINOR: cache: Process the If-Modified-Since header in conditional requests
5910 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
5911 - MINOR: mux-h2: register a stats module
5912 - MINOR: mux-h2: add counters instance to h2c
5913 - MINOR: mux-h2: add stats for received frame types
5914 - MINOR: mux-h2: report detected error on stats
5915 - MINOR: mux-h2: count open connections/streams on stats
5916 - BUG/MINOR: server: fix srv downtime calcul on starting
5917 - BUG/MINOR: server: fix down_time report for stats
5918 - BUG/MINOR: lua: initialize sample before using it
5919 - MINOR: cache: Add Expires header value parsing
5920 - MINOR: ist: Add a case insensitive istmatch function
5921 - BUG/MINOR: cache: Manage multiple values in cache-control header value
5922 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
5923 - MINOR: pattern: make pat_ref_append() return the newly added element
5924 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
5925 - MINOR: pattern: export pat_ref_push()
5926 - CLEANUP: pattern: use calloc() rather than malloc for structures
5927 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
5928
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020059292020/10/24 : 2.3-dev8
5930 - MINOR: backend: replace the lbprm lock with an rwlock
5931 - MINOR: lb/map: use seek lock and read locks where appropriate
5932 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
5933 - MINOR: lb/first: use a read lock in fas_get_next_server()
5934 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
5935 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
5936 - BUILD: ssl: make BoringSSL use its own version numbers
5937 - CLEANUP: threads: don't register an initcall when not debugging
5938 - MINOR: threads: change lock_t to an unsigned int
5939 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
5940 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
5941 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
5942 - MEDIUM: config: report that "nbproc" is deprecated
5943 - BUG/MINOR: listener: close before free in `listener_accept`
5944 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
5945 - BUG/MINOR: queue: properly report redistributed connections
5946 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
5947 - BUILD: makefile: add entries to build common debugging tools
5948 - BUG/MEDIUM: server: support changing the slowstart value from state-file
5949 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
5950 - MINOR: http: Add etag comparison function
5951 - MEDIUM: cache: Store the ETag information in the cache_entry
5952 - MEDIUM: cache: Add support for 'If-None-Match' request header
5953 - REGTEST: cache: Add if-none-match test case
5954 - CLEANUP: compression: Make use of http_get_etag_type()
5955 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
5956 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
5957 - MINOR: threads/debug: only report used lock stats
5958 - MINOR: threads/debug: only report lock stats for used operations
5959 - MINOR: proxy; replace the spinlock with an rwlock
5960 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
5961 - MINOR: proxy/cli: only take a read lock in "show errors"
5962 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
5963 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
5964 - MINOR: queue: reduce the locked area in pendconn_add()
5965 - OPTIM: queue: make the nbpend counters atomic
5966 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
5967 - MINOR: leastconn: take the queue length into account when queuing servers
5968 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
5969 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
5970 - MINOR: stats: support the "up" output modifier for "show stat"
5971 - MINOR: stats: also support a "no-maint" show stat modifier
5972 - MINOR: stats: indicate the number of servers in a backend's status
5973 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
5974 - REGTEST: ssl: test "set ssl cert" with separate key / crt
5975 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
5976 - MINOR: stats: report server's user-configured weight next to effective weight
5977 - CI: travis-ci: switch to Ubuntu 20.04
5978 - CONTRIB: release-estimator: Add release estimating tool
5979 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
5980 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
5981
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020059822020/10/17 : 2.3-dev7
5983 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
5984 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
5985 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
5986 - MINOR: fd: report an error message when failing initial allocations
5987 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
5988 - MINOR: sock: add sock_accept_conn() to test a listening socket
5989 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
5990 - MINOR: sockpair: implement the .rx_listening function
5991 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
5992 - CLEANUP: unix: make use of sock_accept_conn() where relevant
5993 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
5994 - CONTRIB: tcploop: implement a disconnect operation 'D'
5995 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
5996 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
5997 - BUG/MINOR: connection: fix loop iter on connection takeover
5998 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
5999 - MINOR: connection: improve list api usage
6000 - MINOR: mux/connection: add a new mux flag for HOL risk
6001 - MINOR: connection: don't check priv flag on free
6002 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
6003 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
6004 - MEDIUM: h2: remove conn from session on detach
6005 - MEDIUM: fcgi: remove conn from session on detach
6006 - DOC: Describe reuse safe for HOL handling
6007 - MEDIUM: proxy: remove obsolete "mode health"
6008 - MEDIUM: proxy: remove obsolete "monitor-net"
6009 - CLEANUP: protocol: remove the ->drain() function
6010 - CLEANUP: fd: finally get rid of fd_done_recv()
6011 - MINOR: connection: make sockaddr_alloc() take the address to be copied
6012 - MEDIUM: listener: allocate the connection before queuing a new connection
6013 - MINOR: session: simplify error path in session_accept_fd()
6014 - MINOR: connection: add new error codes for accept_conn()
6015 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
6016 - MINOR: protocol: add a new function accept_conn()
6017 - MINOR: sock: implement sock_accept_conn() to accept a connection
6018 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
6019 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
6020 - MEDIUM: listener: remove the second pass of fd manipulation at the end
6021 - MINOR: protocol: add a default I/O callback and put it into the receiver
6022 - MINOR: log: set the UDP receiver's I/O handler in the receiver
6023 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
6024 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
6025 - DOC: improve the documentation for "option nolinger"
6026 - BUG/MEDIUM: proxy: properly stop backends
6027 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
6028 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
6029 - MINOR: threads: add the transitions to/from the seek state
6030 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
6031 - BUILD: listener: avoir a build warning when threads are disabled
6032 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
6033 - MINOR: ssl: add volatile flags to ssl samples
6034 - MEDIUM: backend: reuse connection if using a static sni
6035 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
6036 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
6037 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
6038 - DOC: fix typo in MAX_SESS_STKCTR
6039
Willy Tarreaub7ffe192020-10-10 10:45:13 +020060402020/10/10 : 2.3-dev6
6041 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
6042 - BUILD: makefile: Update feature flags for OpenBSD
6043 - DOC: agent-check: fix typo in "fail" word expected reply
6044 - DOC: crt: advise to move away from cert bundle
6045 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
6046 - REGTEST: fix host part in balance-uri-path-only.vtc
6047 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
6048 - REGTEST: the iif converter test requires 2.3
6049 - REGTEST: make agent-check.vtc require 1.8
6050 - REGTEST: make abns_socket.vtc require 1.8
6051 - REGTEST: make map_regm_with_backref require 1.7
6052 - BUILD: makefile: Update feature flags for FreeBSD
6053 - OPTIM: backend/random: never queue on the server, always on the backend
6054 - OPTIM: backend: skip LB when we know the backend is full
6055 - BUILD: makefile: Fix building with closefrom() support enabled
6056 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
6057 - MINOR: tools: support for word expansion of environment in parse_line
6058 - BUILD: tools: fix minor build issue on isspace()
6059 - BUILD: makefile: Enable closefrom() support on Solaris
6060 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
6061 - MINOR: ssl: Add error if a crt-list might be truncated
6062 - MINOR: ssl: remove uneeded check in crtlist_parse_file
6063 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
6064 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
6065 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
6066 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
6067 - DOC: ssl: new "cert bundle" behavior
6068 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
6069 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
6070 - MINOR: counters: fix a typo in comment
6071 - BUG/MINOR: stats: fix validity of the json schema
6072 - REORG: stats: export some functions
6073 - MINOR: stats: add stats size as a parameter for csv/json dump
6074 - MINOR: stats: hide px/sv/li fields in applet struct
6075 - REORG: stats: extract proxy json dump
6076 - REORG: stats: extract proxies dump loop in a function
6077 - MINOR: hlua: Display debug messages on stderr only in debug mode
6078 - MINOR: stats: define the concept of domain for statistics
6079 - MINOR: stats: define additional flag px cap on domain
6080 - MEDIUM: stats: add delimiter for static proxy stats on csv
6081 - MEDIUM: stats: define an API to register stat modules
6082 - MEDIUM: stats: add abstract type to store counters
6083 - MEDIUM: stats: integrate static proxies stats in new stats
6084 - MINOR: stats: support clear counters for dynamic stats
6085 - MINOR: stats: display extra proxy stats on the html page
6086 - MINOR: stats: add config "stats show modules"
6087 - MINOR: dns/stats: integrate dns counters in stats
6088 - MINOR: stats: remove for loop declaration
6089 - DOC: ssl: fix typo about ocsp files
6090 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
6091 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
6092 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
6093 - CLEANUP: cache: Fix leak of cconf->c.name during config check
6094 - CLEANUP: ssl: Release cached SSL sessions on deinit
6095 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
6096 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
6097 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
6098 - CLEANUP: sock-unix: Remove an unreachable goto clause
6099 - BUG/MINOR: proxy: inc req counter on new syslog messages.
6100 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
6101 - MINOR: stats: inc req counter on listeners.
6102 - MINOR: channel: new getword and getchar functions on channel.
6103 - MEDIUM: log: syslog TCP support on log forward section.
6104 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
6105 - DOC: re-work log forward bind statement documentation.
6106 - DOC: fix a confusing typo on a regsub example
6107 - BUILD: Add a DragonFlyBSD target
6108 - BUG/MINOR: makefile: fix a tiny typo in the target list
6109 - BUILD: makefile: Update feature flags for NetBSD
6110 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
6111 - DOC: Add missing stats fields in the management doc
6112 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
6113 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
6114 - DOC: Fix typos in configuration.txt
6115 - BUG/MINOR: http: Fix content-length of the default 500 error
6116 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
6117 - REGTESTS: mark abns_socket as broken
6118 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
6119 - MEDIUM: listeners: don't bounce listeners management between queues
6120 - MEDIUM: init: stop disabled proxies after initializing fdtab
6121 - MEDIUM: listeners: make unbind_listener() converge if needed
6122 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
6123 - MEDIUM: listeners: remove the now unused ZOMBIE state
6124 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
6125 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
6126 - MINOR: listeners: introduce listener_set_state()
6127 - MINOR: proxy: maintain per-state counters of listeners
6128 - MEDIUM: proxy: remove the unused PR_STFULL state
6129 - MEDIUM: proxy: remove the PR_STERROR state
6130 - MEDIUM: proxy: remove state PR_STPAUSED
6131 - MINOR: startup: don't rely on PR_STNEW to check for listeners
6132 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
6133 - MEDIUM: proxy: replace proxy->state with proxy->disabled
6134 - MEDIUM: proxy: remove start_proxies()
6135 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
6136 - MINOR: listeners: check the current listener state in pause_listener()
6137 - MINOR: listeners: check the current listener earlier state in resume_listener()
6138 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
6139 - MINOR: protocol: introduce protocol_{pause,resume}_all()
6140 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
6141 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
6142 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
6143 - BUG/MEDIUM: listeners: correctly report pause() errors
6144 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
6145 - CLEANUP: protocol: remove the ->disable_all method
6146 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
6147 - MINOR: listeners: export enable_listener()
6148 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
6149 - CLEANUP: protocol: remove the ->enable_all method
6150 - CLEANUP: listeners: remove the now unused enable_all_listeners()
6151 - MINOR: protocol: rename the ->listeners field to ->receivers
6152 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
6153 - MINOR: protocol: implement an ->rx_resume() method
6154 - MINOR: listener: use the protocol's ->rx_resume() method when available
6155 - MINOR: sock: provide a set of generic enable/disable functions
6156 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
6157 - MINOR: protocol: add a new pair of enable/disable methods for listeners
6158 - MEDIUM: listeners: now use the listener's ->enable/disable
6159 - MINOR: listeners: split delete_listener() in two versions
6160 - MINOR: listeners: count unstoppable jobs on creation, not deletion
6161 - MINOR: listeners: add a new stop_listener() function
6162 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
6163 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
6164 - MEDIUM: proxy: centralize proxy status update and reporting
6165 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
6166 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
6167 - MEDIUM: udp: implement udp_suspend() and udp_resume()
6168 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
6169 - MEDIUM: listeners: always close master vs worker listeners
6170 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
6171 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
6172 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
6173 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
6174 - MEDIUM: receivers: add an rx_unbind() method in the protocols
6175 - MINOR: listeners: split do_unbind_listener() in two
6176 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
6177 - MEDIUM: config: mark "grace" as deprecated
6178 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
6179 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
6180 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
6181 - BUILD: makefile: Enable getaddrinfo() on OS/X
6182
Christopher Faulet05f01882020-09-25 18:40:47 +020061832020/09/25 : 2.3-dev5
6184 - DOC: Fix typo in iif() example
6185 - CLEANUP: Update .gitignore
6186 - BUILD: introduce possibility to define ABORT_NOW() conditionally
6187 - CI: travis-ci: help Coverity to recognize abort()
6188 - BUG/MINOR: Fix type passed of sizeof() for calloc()
6189 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
6190 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
6191 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
6192 - BUG/MINOR: ssl: verifyhost is case sensitive
6193 - BUILD: makefile: change default value of CC from gcc to cc
6194 - CI: travis-ci: split asan step out of running tests
6195 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
6196 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
6197 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
6198 - BUG/MINOR: log-forward: fail on unknown keywords
6199 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
6200 - BUG/MEDIUM: log-forward: always quit on parsing errors
6201 - MEDIUM: ssl: remove bundle support in crt-list and directories
6202 - MEDIUM: ssl/cli: remove support for multi certificates bundle
6203 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
6204 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
6205 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
6206 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
6207 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
6208 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
6209 - CLEANUP: ssl: remove utility functions for bundle
6210 - DOC: explain bundle emulation in configuration.txt
6211 - BUILD: fix build with openssl < 1.0.2 since bundle removal
6212 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
6213 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
6214 - MINOR: listener: create a new struct "settings" in bind_conf
6215 - MINOR: listener: move bind_proc and bind_thread to struct settings
6216 - MINOR: listener: move the interface to the struct settings
6217 - MINOR: listener: move the network namespace to the struct settings
6218 - REORG: listener: create a new struct receiver
6219 - REORG: listener: move the listening address to a struct receiver
6220 - REORG: listener: move the receiving FD to struct receiver
6221 - REORG: listener: move the listener's proto to the receiver
6222 - MINOR: listener: make sock_find_compatible_fd() check the socket type
6223 - REORG: listener: move the receiver part to a new file
6224 - MINOR: receiver: link the receiver to its settings
6225 - MINOR: receiver: link the receiver to its owner
6226 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
6227 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
6228 - MINOR: listener: move the INHERITED flag down to the receiver
6229 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
6230 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
6231 - MINOR: protocol: rename the ->bind field to ->listen
6232 - MINOR: protocol: add a new ->bind() entry to bind the receiver
6233 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
6234 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
6235 - MEDIUM: udp: make use of sock_inet_bind_receiver()
6236 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
6237 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
6238 - MEDIUM: sockpair: implement sockpair_bind_receiver()
6239 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
6240 - MEDIUM: protocol: explicitly start the receiver before the listener
6241 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
6242 - MINOR: protocol: add a new proto_fam structure for protocol families
6243 - MINOR: protocol: retrieve the family-specific fields from the family
6244 - CLEANUP: protocol: remove family-specific fields from struct protocol
6245 - MINOR: protocol: add a real family for existing FDs
6246 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
6247 - MINOR: tools: make str2sa_range() take more options than just resolve
6248 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
6249 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
6250 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
6251 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
6252 - MINOR: listener: remove the inherited arg to create_listener()
6253 - MINOR: tools: make str2sa_range() optionally return the fd
6254 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
6255 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
6256 - MINOR: config: do not test an inherited socket again
6257 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
6258 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
6259 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
6260 - MINOR: tools: remove the central test for "udp" in str2sa_range()
6261 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
6262 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
6263 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
6264 - MINOR: listener: pass the chosen protocol to create_listeners()
6265 - MINOR: tools: make str2sa_range() directly return the protocol
6266 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
6267 - MINOR: protocol: add the control layer type in the protocol struct
6268 - MEDIUM: protocol: store the socket and control type in the protocol array
6269 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
6270 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
6271 - MINOR: tools: drop listener detection hack from str2sa_range()
6272 - BUILD: sock_unix: add missing errno.h
6273 - MINOR: sock_inet: report the errno string in binding errors
6274 - MINOR: sock_unix: report the errno string in binding errors
6275 - BUILD: sock_inet: include errno.h
6276 - MINOR: h2/trace: also display the remaining frame length in traces
6277 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
6278 - BUG/MEDIUM: h2: report frame bits only for handled types
6279 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
6280 - BUG/MINOR: Fix memory leaks cfg_parse_peers
6281 - BUG/MINOR: config: Fix memory leak on config parse listen
6282 - MINOR: backend: make the "whole" option of balance uri take only one bit
6283 - MINOR: backend: add a new "path-only" option to "balance uri"
6284 - REGTESTS: add a few load balancing tests
6285 - BUG/MEDIUM: listeners: do not pause foreign listeners
6286 - BUG/MINOR: listeners: properly close listener FDs
6287 - BUILD: trace: include tools.h
6288
Willy Tarreau253c4dc2020-09-11 17:05:59 +020062892020/09/11 : 2.3-dev4
6290 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
6291 - BUG/MEDIUM: ssl: crt-list negative filters don't work
6292 - DOC: overhauling github issue templates
6293 - MEDIUM: cfgparse: Emit hard error on truncated lines
6294 - DOC: cache: Use '<name>' instead of '<id>' in error message
6295 - MINOR: cache: Reject duplicate cache names
6296 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
6297 - MINOR: stats: prevent favicon.ico requests for stats page
6298 - BUILD: tools: include auxv a bit later
6299 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
6300 - MEDIUM: ssl: Support certificate chaining for certificate generation
6301 - MINOR: ssl: Support SAN extension for certificate generation
6302 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
6303 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
6304 - MINOR: reload: determine the foreing binding status from the socket
6305 - MEDIUM: reload: stop passing listener options along with FDs
6306 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
6307 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
6308 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
6309 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
6310 - MEDIUM: reload: pass all exportable FDs, not just listeners
6311 - DOC: add description of pidfile in master-worker mode
6312 - BUG/MINOR: reload: do not fail when no socket is sent
6313 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
6314 - CLEANUP: tcp: stop exporting smp_fetch_src()
6315 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
6316 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
6317 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
6318 - REORG: sock: start to move some generic socket code to sock.c
6319 - MINOR: sock: introduce sock_inet and sock_unix
6320 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
6321 - MINOR: sock_inet: implement sock_inet_get_dst()
6322 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
6323 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
6324 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
6325 - REORG: listener: move xfer_sock_list to sock.{c,h}.
6326 - MINOR: sock: add interface and namespace length to xfer_sock_list
6327 - MINOR: sock: implement sock_find_compatible_fd()
6328 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
6329 - REORG: sock: move get_old_sockets() from haproxy.c
6330 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
6331 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
6332 - BUILD: sock_unix: fix build issue with isdigit()
6333 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
6334 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
6335 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
6336 - MINOR: http-htx: Handle an optional reason when replacing the response status
6337 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
6338 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
6339 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
6340 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
6341 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
6342 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
6343 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
6344 - REGTEST: increase some short timeouts to make tests more reliable
6345 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
6346 - BUILD: thread: limit the libgcc_s workaround to glibc only
6347 - MINOR: protocol: do not call proto->bind_all() anymore
6348 - MINOR: protocol: do not call proto->unbind_all() anymore
6349 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
6350 - MAJOR: init: start all listeners via protocols and not via proxies anymore
6351 - BUG/MINOR: startup: haproxy -s cause 100% cpu
6352 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
6353 - BUG/MEDIUM: doc: Fix replace-path action description
6354 - MINOR: http-rules: Add set-pathq and replace-pathq actions
6355 - MINOR: http-fetch: Add pathq sample fetch
6356 - REGTEST: Add a test for request path manipulations, with and without the QS
6357 - MINOR: Commit .gitattributes
6358 - CLEANUP: Update .gitignore
6359 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
6360 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
6361 - MINOR: server: Improve log message sent when server address is updated
6362 - DOC: ssl-load-extra-files only applies to certificates on bind lines
6363 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
6364 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
6365 - BUILD: threads: better workaround for late loading of libgcc_s
6366 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
6367 - BUILD: compiler: workaround a glibc madness around __attribute__()
6368 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
6369 - BUILD: trace: always have an argument before variadic args in macros
6370 - BUILD: traces: don't pass an empty argument for missing ones
6371 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
6372 - CLEANUP: Free old_argv on deinit
6373 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
6374 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
6375 - CLEANUP: haproxy: Free post_check_list in deinit()
6376 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
6377 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
6378 - MINOR: sample: Add iif(<true>,<false>) converter
6379
Willy Tarreauf104b532020-08-14 18:54:05 +020063802020/08/14 : 2.3-dev3
6381 - SCRIPTS: git-show-backports: make -m most only show the left branch
6382 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
6383 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
6384 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
6385 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
6386 - CLEANUP: dns: typo in reported error message
6387 - BUG/MAJOR: dns: disabled servers through SRV records never recover
6388 - BUG/MINOR: spoa-server: fix size_t format printing
6389 - DOC: spoa-server: fix false friends `actually`
6390 - BUG/MINOR: ssl: fix memory leak at OCSP loading
6391 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
6392 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
6393 - MINOR: arg: Add an argument type to keep a reference on opaque data
6394 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
6395 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
6396 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
6397 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
6398 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
6399 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
6400 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
6401 - MEDIUM: lua: Don't filter exported fetches and converters
6402 - MINOR: lua: Add support for userlist as fetches and converters arguments
6403 - MINOR: lua: Add support for regex as fetches and converters arguments
6404 - MINOR: arg: Use chunk_destroy() to release string arguments
6405 - BUG/MINOR: snapshots: leak of snapshots on deinit()
6406 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
6407 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
6408 - CLEANUP: fix all duplicated semicolons
6409 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
6410 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
6411 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
6412 - BUILD: makefile: don't disable -Wstringop-overflow anymore
6413 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
6414 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
6415 - BUG/MEDIUM: ssl: never generates the chain from the verify store
6416 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
6417 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
6418 - CLEANUP: ssl: remove poorly readable nested ternary
6419
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020064202020/07/31 : 2.3-dev2
6421 - DOC: ssl: req_ssl_sni needs implicit TLS
6422 - BUG/MEDIUM: arg: empty args list must be dropped
6423 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
6424 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
6425 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
6426 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
6427 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
6428 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
6429 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
6430 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
6431 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
6432 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
6433 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
6434 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
6435 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
6436 - BUILD: tools: fix build with static only toolchains
6437 - DOC: Use gender neutral language
6438 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
6439 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
6440 - BUG/MAJOR: dns: don't treat Authority records as an error
6441 - CI : travis-ci : prepare for using stock OpenSSL
6442 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
6443 - MEDIUM: lua: Add support for the Lua 5.4
6444 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
6445 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
6446 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
6447 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
6448 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
6449 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
6450 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
6451 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
6452 - MINOR: connection: Preinstall the mux for non-ssl connect
6453 - MINOR: stream-int: Be sure to have a mux to do sends and receives
6454 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
6455 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
6456 - CI: travis-ci: use better name for Coverity scan job
6457 - CI: travis-ci: use proper linking flags for SLZ build
6458 - BUG/MEDIUM: backend: always attach the transport before installing the mux
6459 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
6460 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
6461 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
6462 - MINOR: mux-h1: do not try to receive on backend before sending a request
6463 - CLEANUP: assorted typo fixes in the code and comments
6464 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
6465
Willy Tarreaue732cbd2020-07-17 15:13:19 +020064662020/07/17 : 2.3-dev1
6467 - MINOR: config: make strict limits enabled by default
6468 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
6469 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
6470 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
6471 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
6472 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
6473 - BUG/MINOR: haproxy: Free srule->file during deinit
6474 - BUG/MINOR: haproxy: Free srule->expr during deinit
6475 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
6476 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
6477 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
6478 - CLEANUP: haproxy: Free post_deinit_list in deinit()
6479 - CLEANUP: haproxy: Free server_deinit_list in deinit()
6480 - CLEANUP: haproxy: Free post_server_check_list in deinit()
6481 - CLEANUP: Add static void vars_deinit()
6482 - CLEANUP: Add static void hlua_deinit()
6483 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
6484 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
6485 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
6486 - MINOR: tcp: Support TCP keepalive parameters customization
6487 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
6488 - MINOR: lists: rename some MT_LIST operations to clarify them
6489 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
6490 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
6491 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
6492 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
6493 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
6494 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
6495 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
6496 - MINOR: connection: Set the SNI on server connections before installing the mux
6497 - MINOR: connection: Set new connection as private on reuse never
6498 - MINOR: connection: Add a wrapper to mark a connection as private
6499 - MEDIUM: connection: Add private connections synchronously in session server list
6500 - MINOR: connection: Use a dedicated function to look for a session's connection
6501 - MINOR: connection: Set the conncetion target during its initialisation
6502 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
6503 - MINOR: server: Factorize code to deal with reuse of server idle connections
6504 - MINOR: server: Factorize code to deal with connections removed from an idle list
6505 - CLEANUP: connection: remove unused field idle_time from the connection struct
6506 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
6507 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
6508 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
6509 - MINOR: backend: Add sample fetches to get the server's weight
6510 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
6511 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
6512 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
6513 - BUG/MINOR: backend: fix potential null deref on srv_conn
6514 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
6515 - MEDIUM: udp: adds minimal proto udp support for message listeners.
6516 - MEDIUM: log/sink: re-work and merge of build message API.
6517 - MINOR: log: adds syslog udp message handler and parsing.
6518 - MEDIUM: log: adds log forwarding section.
6519 - MINOR: log: adds counters on received syslog messages.
6520 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
6521 - BUG/MEDIUM: server: resolve state file handle leak on reload
6522 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
6523 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
6524 - BUILD: config: address build warning on raspbian+rpi4
6525 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
6526 - BUILD: config: fix again bugs gcc warnings on calloc
6527
Willy Tarreau33205c22020-07-07 16:35:28 +020065282020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02006529 - [RELEASE] Released version 2.3-dev0
6530 - MINOR: version: back to development, update status message
6531
65322020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02006533 - exact copy of 2.2.0
6534
Willy Tarreau3a00c912020-07-07 16:33:14 +020065352020/07/07 : 2.2.0
6536 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
6537 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
6538 - BUILD: tools: make resolve_sym_name() return a const
6539 - CLEANUP: auth: fix useless self-include of auth-t.h
6540 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
6541 - CLEANUP: assorted typo fixes in the code and comments
6542 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
6543 - DOC: fix tune.ssl.keylog sample fetches array
6544 - BUG/MINOR: ssl: check conn in keylog sample fetch
6545 - DOC: configuration: various typo fixes
6546 - MINOR: log: Remove unused case statement during the log-format string parsing
6547 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
6548 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
6549 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
6550 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
6551 - MINOR: mux-h1: Improve traces about the splicing
6552 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
6553 - BUG/MEDIUM: connection: Don't consider new private connections as available
6554 - BUG/MINOR: connection: See new connection as available only on reuse always
6555 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
6556 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
6557 - DOC: update INSTALL with new compiler versions
6558 - DOC: minor update to coding style file
6559 - MINOR: version: mention that it's an LTS release now
6560
Willy Tarreau62f11a52020-07-04 07:10:24 +020065612020/07/04 : 2.2-dev12
6562 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
6563 - MINOR: cli: make "show sess" stop at the last known session
6564 - CLEANUP: buffers: remove unused buffer_wq_lock lock
6565 - BUG/MEDIUM: buffers: always allocate from the local cache first
6566 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
6567 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
6568 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
6569 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
6570 - REORG: buffer: rename buffer.c to dynbuf.c
6571 - REORG: includes: create tinfo.h for the thread_info struct
6572 - CLEANUP: pool: only include the type files from types
6573 - MINOR: pools: move the LRU cache heads to thread_info
6574 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
6575 - MINOR: stats: add 3 new output values for the per-server idle conn state
6576 - MINOR: activity: add per-thread statistics on FD takeover
6577 - BUG/MINOR: server: start cleaning idle connections from various points
6578 - MEDIUM: server: improve estimate of the need for idle connections
6579 - MINOR: stats: add the estimated need of concurrent connections per server
6580 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
6581 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
6582 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
6583 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
6584 - BUG/MINOR: server: always count one idle slot for current thread
6585 - MEDIUM: server: use the two thresholds for the connection release algorithm
6586 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
6587 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
6588 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
6589 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
6590 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
6591 - MINOR: pools: increase MAX_BASE_POOLS to 64
6592 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
6593 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
6594 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
6595 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
6596 - BUG/MINOR: proxy: always initialize the trash in show servers state
6597 - MINOR: cli/proxy: add a new "show servers conn" command
6598 - MINOR: server: skip servers with no idle conns earlier
6599 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
6600 - MEDIUM: server: add a new pool-low-conn server setting
6601 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
6602 - MINOR: backend: don't always takeover from the same threads
6603 - MINOR: sched: make sched->task_list_size atomic
6604 - MEDIUM: sched: create a new TASK_KILLED task flag
6605 - MEDIUM: sched: implement task_kill() to kill a task
6606 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
6607 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
6608 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
6609 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
6610 - CLEANUP: connections: rename the toremove_lock to takeover_lock
6611 - MEDIUM: connections: Don't use a lock when moving connections to remove.
6612 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
6613 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
6614 - MINOR: config: add a new tune.idle-pool.shared global setting.
6615 - MINOR: 51d: silence a warning about null pointer dereference
6616 - MINOR: debug: add a new "debug dev memstats" command
6617 - MINOR: log-format: allow to preserve spacing in log format strings
6618 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
6619 - BUG/MAJOR: sched: make sure task_kill() always queues the task
6620 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
6621 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
6622 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
6623 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
6624 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
6625 - BUG/MINOR: log: missing timezone on iso dates.
6626 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
6627 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
6628 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
6629 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
6630 - BUG/MINOR: http_act: don't check capture id in backend (2)
6631 - BUILD: makefile: disable threads by default on OpenBSD
6632 - BUILD: peers: fix build warning with gcc 4.2.1
6633 - CI: cirrus-ci: exclude slow reg-tests
6634
Willy Tarreau4462af82020-06-26 22:01:04 +020066352020/06/26 : 2.2-dev11
6636 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
6637 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
6638 - BUG/MINOR: spoe: correction of setting bits for analyzer
6639 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
6640 - MINOR: cfgparse: Warn on truncated lines / files
6641 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
6642 - MINOR: debug: add a new DEBUG_FD build option
6643 - BUG/MINOR: tasks: make sure never to exceed max_processed
6644 - MINOR: task: add a new pointer to current tasklet queue
6645 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
6646 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
6647 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
6648 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
6649 - MINOR: ssl: free bind_conf_node in crtlist_free()
6650 - MINOR: ssl: free the crtlist and the ckch during the deinit()
6651 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
6652 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
6653 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
6654 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
6655 - MINOR: tasks: make current_queue an index instead of a pointer
6656 - MINOR: tasks: add a mask of the queues with active tasklets
6657 - MINOR: tasks: pass the queue index to run_task_from_list()
6658 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
6659 - MEDIUM: tasks: add a tune.sched.low-latency option
6660 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
6661 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
6662 - MINOR: tools: make parse_line() always terminate the args list
6663 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
6664 - MINOR: cfgparse: sanitize the output a little bit
6665 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
6666 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
6667 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
6668 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
6669 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
6670 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
6671 - MINOR: spoe: Don't systematically create new applets if processing rate is low
6672 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
6673 - BUILD: fix ssl_sample.c when building against BoringSSL
6674 - CI: travis-ci: switch BoringSSL builds to ninja
6675 - CI: extend spellchecker whitelist
6676 - DOC: assorted typo fixes in the documentation
6677 - CLEANUP: assorted typo fixes in the code and comments
6678 - MINOR: http: Add support for http 413 status
6679 - REGTEST: ssl: tests the ssl_f_* sample fetches
6680 - REGTEST: ssl: add some ssl_c_* sample fetches test
6681 - DOC: ssl: update the documentation of "commit ssl cert"
6682 - BUG/MINOR: cfgparse: correctly deal with empty lines
6683 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
6684
Willy Tarreaudc0936c2020-06-19 21:43:26 +020066852020/06/19 : 2.2-dev10
6686 - BUILD: include: add sys/types before netinet/tcp.h
6687 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
6688 - BUILD: Remove nowarn for warnings that do not trigger
6689 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
6690 - BUILD: Re-enable -Wimplicit-fallthrough
6691 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
6692 - BUILD: thread: add parenthesis around values of locking macros
6693 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
6694 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
6695 - CI: travis-ci: use "-O1" for clang builds
6696 - MINOR: haproxy: Add void deinit_and_exit(int)
6697 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
6698 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
6699 - BUILD: compression: make gcc 10 happy with free_zlib()
6700 - BUILD: atomic: add string.h for memcpy() on ARM64
6701 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
6702 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
6703 - BUILD: haproxy: mark deinit_and_exit() as noreturn
6704 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
6705 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
6706 - MINOR: tools: add a new configurable line parse, parse_line()
6707 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
6708 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
6709 - MINOR: http: do not close connections anymore after internal responses
6710 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
6711 - BUG/MINOR: spoe: add missing key length check before checking key names
6712 - MINOR: version: put the compiler version output into version.c not haproxy.c
6713 - MINOR: compiler: always define __has_feature()
6714 - MINOR: version: report the presence of the compiler's address sanitizer
6715 - BUILD: Fix build by including haproxy/global.h
6716 - BUG/MAJOR: connection: always disable ready events once reported
6717 - CLEANUP: activity: remove unused counter fd_lock
6718 - DOC: fd: make it clear that some fields ordering must absolutely be respected
6719 - MINOR: activity: report the number of times poll() reports I/O
6720 - MINOR: activity: rename confusing poll_* fields in the output
6721 - MINOR: fd: Fix a typo in a coment.
6722 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
6723 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
6724 - MINOR: activity: group the per-loop counters at the top
6725 - MINOR: activity: rename the "stream" field to "stream_calls"
6726 - MEDIUM: fd: refine the fd_takeover() migration lock
6727 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
6728 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
6729 - MINOR: peers: do not use localpeer as an array anymore
6730 - MEDIUM: peers: add the "localpeer" global option
6731 - MEDIUM: fd: add experimental support for edge-triggered polling
6732 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
6733 - MINOR: haproxy: process signals before runnable tasks
6734 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
6735 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
6736 - BUG/MINOR: cli: allow space escaping on the CLI
6737 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
6738 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
6739 - REGTEST: http-rules: test spaces in ACLs
6740 - REGTEST: http-rules: test spaces in ACLs with master CLI
6741 - BUG/MAJOR: init: properly compute the default global.maxpipes value
6742 - MEDIUM: map: make the "clear map" operation yield
6743 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
6744 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
6745 - BUG/MINOR: systemd: Wait for network to be online
6746 - DOC: configuration: Unindent non-code sentences in the protobuf example
6747 - DOC: configuration: http-check send was missing from matrix
6748
Willy Tarreau1385c882020-06-11 10:22:10 +020067492020/06/11 : 2.2-dev9
6750 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
6751 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
6752 - MINOR: checks: Remove dead code from process_chk_conn()
6753 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
6754 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
6755 - MINOR: lua: Use vars_unset_by_name_ifexist()
6756 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
6757 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
6758 - MINOR: lua: Make `set_var()` and `unset_var()` return success
6759 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
6760 - MEDIUM: ring: new section ring to declare custom ring buffers.
6761 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
6762 - REGTESTS: Require the version 2.2 to execute lua/set_var
6763 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
6764 - MINOR: checks: Remove useless tests on the connection and conn-stream
6765 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
6766 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
6767 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
6768 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
6769 - MINOR: pools: compute an estimate of each pool's average needed objects
6770 - MEDIUM: pools: directly free objects when pools are too much crowded
6771 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
6772 - MINOR: http-ana: Make the function http_reply_to_htx() public
6773 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
6774 - MINOR: http-rules: Use an action function to eval http-request auth rules
6775 - CLEANUP: http: Remove unused HTTP message templates
6776 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
6777 - MINOR: checks: I/O callback function only rely on the data layer wake callback
6778 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
6779 - BUG/MEDIUM: logs: fix trailing zeros on log message.
6780 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
6781 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
6782 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
6783 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
6784 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
6785 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
6786 - MINOR: ring: re-work ring attach generic API.
6787 - BUG/MINOR: error on unknown statement in ring section.
6788 - MEDIUM: ring: add server statement to forward messages from a ring
6789 - MEDIUM: ring: add new srv statement to support octet counting forward
6790 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
6791 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
6792 - BUILD: sink: address build warning on 32-bit architectures
6793 - BUG/MINOR: peers: fix internal/network key type mapping.
6794 - CLEANUP: regex: remove outdated support for regex actions
6795 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
6796 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
6797 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
6798 - DOC: add a line about comments in crt-list
6799 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
6800 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
6801 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
6802 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
6803 - BUG/MINOR: init: -x can have a parameter starting with a dash
6804 - BUG/MINOR: init: -S can have a parameter starting with a dash
6805 - BUG/MEDIUM: mworker: fix the reload with an -- option
6806 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
6807 - BUG/MINOR: mworker: fix a memleak when execvp() failed
6808 - MINOR: sample: Add secure_memcmp converter
6809 - REORG: ebtree: move the C files from ebtree/ to src/
6810 - REORG: ebtree: move the include files from ebtree to include/import/
6811 - REORG: ebtree: clean up remains of the ebtree/ directory
6812 - REORG: include: create new file haproxy/api-t.h
6813 - REORG: include: create new file haproxy/api.h
6814 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
6815 - CLEANUP: include: remove common/config.h
6816 - CLEANUP: include: remove unused template.h
6817 - REORG: include: move MIN/MAX from tools.h to compat.h
6818 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
6819 - CLEANUP: include: remove unused common/tools.h
6820 - REORG: include: move the base files from common/ to haproxy/
6821 - REORG: include: move version.h to haproxy/
6822 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
6823 - REORG: include: move openssl-compat.h from common/ to haproxy/
6824 - REORG: include: move ist.h from common/ to import/
6825 - REORG: include: move the BUG_ON() code to haproxy/bug.h
6826 - REORG: include: move debug.h from common/ to haproxy/
6827 - CLEANUP: debug: drop unused function p_malloc()
6828 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
6829 - REORG: include: move istbuf.h to haproxy/
6830 - REORG: include: split mini-clist into haproxy/list and list-t.h
6831 - REORG: threads: extract atomic ops from hathreads.h
6832 - CLEANUP: threads: remove a few needless includes of hathreads.h
6833 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
6834 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
6835 - REORG: include: move time.h from common/ to haproxy/
6836 - REORG: include: move integer manipulation functions from standard.h to intops.h
6837 - CLEANUP: include: remove excessive includes of common/standard.h
6838 - REORG: include: move freq_ctr to haproxy/
6839 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
6840 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
6841 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
6842 - MINOR: memory: don't let __pool_get_first() pick from the cache
6843 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
6844 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
6845 - MEDIUM: memory: make local pools independent on lockless pools
6846 - REORG: include: move common/memory.h to haproxy/pool.h
6847 - REORG: include: move common/chunk.h to haproxy/chunk.h
6848 - REORG: include: move activity to haproxy/
6849 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
6850 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
6851 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
6852 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
6853 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
6854 - REORG: include: move common/ticks.h to haproxy/ticks.h
6855 - REORG: include: split common/http.h into haproxy/http{,-t}.h
6856 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
6857 - REORG: include: move common/h1.h to haproxy/h1.h
6858 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
6859 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
6860 - REORG: include: move common/h2.h to haproxy/h2.h
6861 - REORG: include: move common/fcgi.h to haproxy/
6862 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
6863 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
6864 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
6865 - REORG: include: move shctx to haproxy/shctx{,-t}.h
6866 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
6867 - REORG: include: move fd.h to haproxy/fd{,-t}.h
6868 - REORG: include: move ring to haproxy/ring{,-t}.h
6869 - REORG: include: move sink.h to haproxy/sink{,-t}.h
6870 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
6871 - CLEANUP: include: remove empty raw_sock.h
6872 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
6873 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
6874 - REORG: include: move compression.h to haproxy/compression{,-t}.h
6875 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
6876 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
6877 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
6878 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
6879 - REORG: include: move action.h to haproxy/action{,-t}.h
6880 - REORG: include: move arg.h to haproxy/arg{,-t}.h
6881 - REORG: include: move auth.h to haproxy/auth{,-t}.h
6882 - REORG: include: move dns.h to haproxy/dns{,-t}.h
6883 - REORG: include: move flt_http_comp.h to haproxy/
6884 - REORG: include: move counters.h to haproxy/counters-t.h
6885 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
6886 - REORG: include: move capture.h to haproxy/capture{,-t}.h
6887 - REORG: include: move frontend.h to haproxy/frontend.h
6888 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
6889 - REORG: include: move http_rules.h to haproxy/http_rules.h
6890 - CLEANUP: include: remove unused mux_pt.h
6891 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
6892 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
6893 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
6894 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
6895 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
6896 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
6897 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
6898 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
6899 - REORG: include: move listener.h to haproxy/listener{,-t}.h
6900 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
6901 - REORG: include: move map to haproxy/map{,-t}.h
6902 - REORG: include: move payload.h to haproxy/payload.h
6903 - REORG: include: move sample.h to haproxy/sample{,-t}.h
6904 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
6905 - REORG: include: move vars.h to haproxy/vars{,-t}.h
6906 - REORG: include: split global.h into haproxy/global{,-t}.h
6907 - REORG: include: move task.h to haproxy/task{,-t}.h
6908 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
6909 - REORG: include: move signal.h to haproxy/signal{,-t}.h
6910 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
6911 - REORG: include: move connection.h to haproxy/connection{,-t}.h
6912 - REORG: include: move checks.h to haproxy/check{,-t}.h
6913 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
6914 - REORG: include: move peers.h to haproxy/peers{,-t}.h
6915 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
6916 - REORG: include: move session.h to haproxy/session{,-t}.h
6917 - REORG: include: move trace.h to haproxy/trace{,-t}.h
6918 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
6919 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
6920 - REORG: move applet.h to haproxy/applet{,-t}.h
6921 - REORG: include: move stats.h to haproxy/stats{,-t}.h
6922 - REORG: include: move cli.h to haproxy/cli{,-t}.h
6923 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
6924 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
6925 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
6926 - REORG: include: move channel.h to haproxy/channel{,-t}.h
6927 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
6928 - REORG: include: move filters.h to haproxy/filters{,-t}.h
6929 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
6930 - REORG: include: move log.h to haproxy/log{,-t}.h
6931 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
6932 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
6933 - REORG: include: move backend.h to haproxy/backend{,-t}.h
6934 - REORG: include: move queue.h to haproxy/queue{,-t}.h
6935 - REORG: include: move server.h to haproxy/server{,-t}.h
6936 - REORG: include: move stream.h to haproxy/stream{,-t}.h
6937 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
6938 - CLEANUP: hpack: export debug functions and move inlines to .h
6939 - REORG: check: move the e-mail alerting code to mailers.c
6940 - REORG: check: move tcpchecks away from check.c
6941 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
6942 - REORG: check: extract the external checks from check.{c,h}
6943 - CLEANUP: include: don't include stddef.h directly
6944 - CLEANUP: include: don't include proxy-t.h in global-t.h
6945 - CLEANUP: include: move sample_data out of sample-t.h
6946 - REORG: include: move the error reporting functions to from log.h to errors.h
6947 - BUILD: reorder objects in the Makefile for faster builds
6948 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
6949 - CLEANUP: include: make atomic.h part of the base API
6950 - REORG: include: move MAX_THREADS to defaults.h
6951 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
6952 - CLEANUP: include: tree-wide alphabetical sort of include files
6953 - REORG: include: make list-t.h part of the base API
6954 - REORG: dgram: rename proto_udp to dgram
6955
Willy Tarreau73b943b2020-05-22 16:19:04 +020069562020/05/22 : 2.2-dev8
6957 - MINOR: checks: Improve report of unexpected errors for expect rules
6958 - MEDIUM: checks: Add matching on log-format string for expect rules
6959 - DOC: Fix req.body and co documentation to be accurate
6960 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
6961 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
6962 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
6963 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
6964 - MINOR: checks/sample: Remove unnecessary tests on the sample session
6965 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
6966 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
6967 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
6968 - MINOR: checks: Support log-format string to set the body for HTTP send rules
6969 - DOC: Be more explicit about configurable check ok/error/timeout status
6970 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
6971 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
6972 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
6973 - REGTESTS: make the http-check-send test require version 2.2
6974 - BUG/MINOR: http-ana: fix NTLM response parsing again
6975 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
6976 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
6977 - MINOR: cfgparse: Improve error message for invalid \x sequences
6978 - CI: travis-ci: enable arm64 builds again
6979 - MEDIUM: ssl: increase default-dh-param to 2048
6980 - CI: travis-ci: skip pcre2 on arm64 build
6981 - CI: travis-ci: extend the build time for SSL to 60 minutes
6982 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
6983 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
6984 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
6985 - CLEANUP: remove THREAD_LOCAL from config.h
6986 - CI: travis-ci: upgrade LibreSSL versions
6987 - DOC: assorted typo fixes in the documentation
6988 - CI: extend spellchecker whitelist
6989 - CLEANUP: assorted typo fixes in the code and comments
6990 - MAJOR: contrib: porting spoa_server to support python3
6991 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
6992 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
6993 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
6994 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
6995 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
6996 - MINOR: sample: Add digest and hmac converters
6997 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
6998 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
6999 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
7000 - BUG/MINOR: pollers: remove uneeded free in global init
7001 - CLEANUP: select: enhance readability in init
7002 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
7003 - MINOR: soft-stop: let the first stopper only signal other threads
7004 - BUILD: select: only declare existing local labels to appease clang
7005 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
7006 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
7007 - DOC: retry-on can only be used with mode http
7008 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
7009 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
7010 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
7011 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
7012 - REORG: ssl: move macros and structure definitions to ssl_sock.h
7013 - CLEANUP: ssl: remove the shsess_* macros
7014 - REORG: move the crt-list structures in their own .h
7015 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
7016 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
7017 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
7018 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
7019 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
7020 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
7021 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
7022 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
7023 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
7024 - MINOR: ssl: remove static keyword in some SSL utility functions
7025 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
7026 - REORG: ssl: move sample fetches to src/ssl_sample.c
7027 - REORG: ssl: move utility functions to src/ssl_utils.c
7028 - DOC: ssl: update MAINTAINERS file
7029 - CI: travis-ci: switch arm64 builds to use openssl from distro
7030 - MINOR: stats: Prepare for more accurate moving averages
7031 - MINOR: stats: Expose native cum_req metric for a server
7032 - MEDIUM: stats: Enable more accurate moving average calculation for stats
7033 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
7034 - BUILD: ssl: include errno.h in ssl_crtlist.c
7035 - CLEANUP: acl: remove unused assignment
7036 - DOC/MINOR: halog: Add long help info for ic flag
7037 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
7038 - DOC: SPOE is no longer experimental
7039 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
7040 - MINOR: config: Don't dump keywords if argument is NULL
7041 - MEDIUM: checks: Make post-41 the default mode for mysql checks
7042 - BUG/MINOR: logs: prevent double line returns in some events.
7043 - MEDIUM: sink: build header in sink_write for log formats
7044 - MEDIUM: logs: buffer targets now rely on new sink_write
7045 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
7046 - MEDIUM: hpack: use a pool for the hpack table
7047 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
7048 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
7049 - MINOR: applet: adopt the wait list entry from the CLI
7050 - MINOR: ring: make the applet code not depend on the CLI
7051 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
7052 - CI: travis-ci: fix libslz download URL
7053 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
7054 - CLEANUP: http_ana: Remove unused TXN flags
7055 - BUG/MINOR: http-rules: Mark http return rules as final
7056 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
7057 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
7058 - MINOR: http-rules: Use http_reply structure for http return rules
7059 - MINOR: http-htx: Use a dedicated function to release http_reply objects
7060 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
7061 - MINOR: http-htx: Use a dedicated function to check http reply validity
7062 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
7063 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
7064 - MINOR: http-htx: Store default error messages in a global http reply array
7065 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
7066 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
7067 - MINOR: proxy: Add references on http replies for proxy error messages
7068 - MINOR: http-htx: Use http reply from the http-errors section
7069 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
7070 - MEDIUM: http-ana: Use http replies for HTTP error messages
7071 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
7072 - MINOR: htx: Add a function to copy a buffer in an HTX message
7073 - CLEANUP: channel: Remove channel_htx_copy_msg() function
7074 - MINOR: http-ana: Add a function to write an http reply in an HTX message
7075 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
7076 - DOC: Fix "errorfile" description in the configuration manual
7077 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
7078 - BUILD: hpack: make sure the hpack table can still be built standalone
7079 - CONTRIB: hpack: make use of the simplified standalone HPACK API
7080 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
7081
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020070822020/05/05 : 2.2-dev7
7083 - MINOR: version: Show uname output in display_version()
7084 - CI: run weekly OpenSSL "no-deprecated" builds
7085 - CLEANUP: log: fix comment of parse_logformat_string()
7086 - DOC: Improve documentation on http-request set-src
7087 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
7088 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
7089 - MINOR: ssl: add ssl-skip-self-issued-ca global option
7090 - BUG/MINOR: ssl: default settings for ssl server options are not used
7091 - MINOR: config: add a global directive to set default SSL curves
7092 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
7093 - DOC: internals: update the SSL architecture schema
7094 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
7095 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
7096 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
7097 - DOC: option logasap does not depend on mode
7098 - MEDIUM: memory: make pool_gc() run under thread isolation
7099 - MINOR: contrib: make the peers wireshark dissector a plugin
7100 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
7101 - BUG/MINOR: check: Update server address and port to execute an external check
7102 - MINOR: mini-clist: Add functions to iterate backward on a list
7103 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
7104 - MINOR: server: respect warning and alert semantic
7105 - BUG/MINOR: checks: Respect the no-check-ssl option
7106 - BUG/MEDIUM: server/checks: Init server check during config validity check
7107 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
7108 - BUG/MINOR: checks: chained expect will not properly wait for enough data
7109 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
7110 - MINOR: checks: Use an enum to describe the tcp-check rule type
7111 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
7112 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
7113 - MINOR: checks: simplify tcp expect config parser
7114 - MINOR: checks: add min-recv tcp-check expect option
7115 - MINOR: checks: add linger option to tcp connect
7116 - MINOR: checks: define a tcp expect type
7117 - MEDIUM: checks: rewrite tcp-check expect block
7118 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
7119 - MINOR: checks: add rbinary expect match type
7120 - MINOR: checks: Simplify functions to get step id and comment
7121 - MEDIUM: checks: capture groups in expect regexes
7122 - MINOR: checks: Don't use a static tcp rule list head
7123 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
7124 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
7125 - MINOR: checks: Set the tcp-check rule index during parsing
7126 - MINOR: checks: define tcp-check send type
7127 - MINOR: checks: define a tcp-check connect type
7128 - MEDIUM: checks: Add implicit tcp-check connect rule
7129 - MAJOR: checks: Refactor and simplify the tcp-check loop
7130 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
7131 - MINOR: checks/vars: Add a check scope for variables
7132 - MEDIUM: checks: Parse custom action rules in tcp-checks
7133 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
7134 - MINOR: checks: Add the sni option for tcp-check connect rules
7135 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
7136 - MINOR: checks: Add the alpn option for tcp-check connect rules
7137 - MINOR: ssl: Export a generic function to parse an alpn string
7138 - MINOR: checks: Add the default option for tcp-check connect rules
7139 - MINOR: checks: Add the addr option for tcp-check connect rule
7140 - MEDIUM: checks: Support expression to set the port
7141 - MEDIUM: checks: Support log-format strings for tcp-check send rules
7142 - MINOR: log: Don't depends on a stream to process samples in log-format string
7143 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
7144 - MEDIUM: checks: Add a shared list of tcp-check rules
7145 - MINOR: sample: add htonl converter
7146 - MINOR: sample: add cut_crlf converter
7147 - MINOR: sample: add ltrim converter
7148 - MINOR: sample: add rtrim converter
7149 - MINOR: checks: Use a name for the healthcheck status enum
7150 - MINOR: checks: Add option to tcp-check expect rules to customize error status
7151 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
7152 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
7153 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
7154 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
7155 - MINOR: checks: Relax the default option for tcp-check connect rules
7156 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
7157 - MINOR: checks: Export the tcpcheck_eval_ret enum
7158 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
7159 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
7160 - MEDIUM: checks: Implement redis check using tcp-check rules
7161 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
7162 - MEDIUM: checks: Implement smtp check using tcp-check rules
7163 - MEDIUM: checks: Implement postgres check using tcp-check rules
7164 - MEDIUM: checks: Implement MySQL check using tcp-check rules
7165 - MEDIUM: checks: Implement LDAP check using tcp-check rules
7166 - MEDIUM: checks: Implement SPOP check using tcp-check rules
7167 - MINOR: server/checks: Move parsing of agent keywords in checks.c
7168 - MINOR: server/checks: Move parsing of server check keywords in checks.c
7169 - MEDIUM: checks: Implement agent check using tcp-check rules
7170 - REGTEST: Adapt regtests about checks to recent changes
7171 - MINOR: Produce tcp-check info message for pure tcp-check rules only
7172 - MINOR: checks: Add an option to set success status of tcp-check expect rules
7173 - MINOR: checks: Improve log message of tcp-checks on success
7174 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
7175 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
7176 - MINOR: proxy/checks: Register a keyword to parse http-check rules
7177 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
7178 - MINOR: proxy/checks: Register a keyword to parse external-check rules
7179 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
7180 - MINOR: checks: Use an indirect string to represent the expect matching string
7181 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
7182 - MINOR: standard: Add my_memspn and my_memcspn
7183 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
7184 - MAJOR: checks: Implement HTTP check using tcp-check rules
7185 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
7186 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
7187 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
7188 - MINOR: checks/obj_type: Add a new object type for checks
7189 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
7190 - MINOR: checks: Use the check as origin when a session is created
7191 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
7192 - MINOR: connection: Add a function to install a mux for a health-check
7193 - MAJOR: checks: Use the best mux depending on the protocol for health checks
7194 - MEDIUM: checks: Implement default TCP check using tcp-check rules
7195 - MINOR: checks: Remove unused code about pure TCP checks
7196 - CLEANUP: checks: Reorg checks.c file to be more readable
7197 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
7198 - MINOR: ist: Add a function to retrieve the ist pointer
7199 - MINOR: checks: Use ist API as far as possible
7200 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
7201 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
7202 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
7203 - REGTEST: Add scripts to test based tcp-check health-checks
7204 - Revert "MEDIUM: checks: capture groups in expect regexes"
7205 - DOC: Add documentation about comments for tcp-check and http-check directives
7206 - DOC: Fix the tcp-check and http-check directives layout
7207 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
7208 - MINOR: checks: Support mux protocol definition for tcp and http health checks
7209 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
7210 - MINOR: checks: Support list of status codes on http-check expect rules
7211 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
7212 - REGTEST: Add a script to validate agent checks
7213 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
7214 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
7215 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
7216 - BUG/MINOR: checks/server: use_ssl member must be signed
7217 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
7218 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
7219 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
7220 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
7221 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
7222 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
7223 - BUG/MINOR: checks: Remove wrong variable redeclaration
7224 - BUG/MINOR: checks: Properly handle truncated mysql server messages
7225 - CLEANUP: checks: Remove unused code when ldap server message is parsed
7226 - MINOR: checks: Make the use of the check's server more explicit on connect
7227 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
7228 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
7229 - BUG/MINOR: checks: Don't lose warning on proxy capability
7230 - MINOR: log: Add "Tu" timer
7231 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
7232 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
7233 - REGTEST: ssl: test the client certificate authentication
7234 - DOC: give a more accurate description of what check does
7235 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
7236 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
7237 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
7238 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
7239 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
7240 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
7241 - MINOR: http-htx: Export functions to update message authority and host
7242 - MINOR: checks: Don't support multiple host header for http-check send rule
7243 - MINOR: checks: Skip some headers for http-check send rules
7244 - MINOR: checks: Keep the Host header and the request uri synchronized
7245 - CLEANUP: checks: Fix checks includes
7246 - DOC: Fix send rules in the http-check connect example
7247 - DOC: Add more info about request formatting in http-check send description
7248 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
7249 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
7250 - REGTEST: ssl: improve the "set ssl cert" test
7251 - CLEANUP: ssl: silence a build warning when threads are disabled
7252 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
7253 - MINOR: threads: export the POSIX thread ID in panic dumps
7254 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
7255 - BUG/MEDIUM: shctx: really check the lock's value while waiting
7256 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
7257 - MINOR: stream: report the list of active filters on stream crashes
7258 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
7259 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
7260 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
7261 - BUG/MEDIUM: connections: force connections cleanup on server changes
7262 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
7263 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
7264 - CLEANUP: connections: align function declaration
7265 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
7266 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
7267 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
7268 - MINOR: checks: Add support of payload-based sample fetches
7269 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
7270 - MINOR: checks: Add support of server side ssl sample fetches
7271 - MINOR: checks: Add support of HTTP response sample fetches
7272 - MINOR: http-htx: Support different methods to look for header names
7273 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
7274 - BUG/MINOR: checks: Support multiple HTTP expect rules
7275 - REGTEST: checks: Fix sync condition for agent-check
7276 - MEDIUM: checks: Support matching on headers for http-check expect rules
7277 - MINOR: lua: allow changing port with set_addr
7278 - BUG/MINOR: da: Fix HTX message prefetch
7279 - BUG/MINOR: wurfl: Fix HTX message prefetch
7280 - BUG/MINOR: 51d: Fix HTX message prefetch
7281 - MINOR: ist: add istadv() function
7282 - MINOR: ist: add istissame() function
7283 - MINOR: istbuf: add ist2buf() function
7284 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
7285 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
7286 - DOC: update intro.txt for 2.2
7287 - DOC: intro: add a contacts section
7288
Willy Tarreaud0089302020-04-17 14:19:38 +020072892020/04/17 : 2.2-dev6
7290 - BUG/MINOR: ssl: memory leak when find_chain is NULL
7291 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
7292 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
7293 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
7294 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
7295 - BUG/MINOR: peers: Use after free of "peers" section.
7296 - CI: github actions: add weekly h2spec test
7297 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
7298 - MINOR: build: Fix build in mux_h1
7299 - CLEANUP: remove obsolete comments
7300 - BUG/MEDIUM: dns: improper parsing of aditional records
7301 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
7302 - MINOR: listener: add so_name sample fetch
7303 - MEDIUM: stream: support use-server rules with dynamic names
7304 - MINOR: servers: Add a counter for the number of currently used connections.
7305 - MEDIUM: connections: Revamp the way idle connections are killed
7306 - MINOR: cli: add a general purpose pointer in the CLI struct
7307 - MINOR: ssl: add a list of bind_conf in struct crtlist
7308 - REORG: ssl: move SETCERT enum to ssl_sock.h
7309 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
7310 - REORG: ssl: move some functions above crtlist_load_cert_dir()
7311 - MINOR: ssl: use crtlist_free() upon error in directory loading
7312 - MINOR: ssl: add a list of crtlist_entry in ckch_store
7313 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
7314 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
7315 - MEDIUM: ssl/cli: 'add ssl crt-list' command
7316 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
7317 - BUG/MINOR: ssl: entry->ckch_inst not initialized
7318 - REGTEST: ssl/cli: change test type to devel
7319 - REGTEST: make the PROXY TLV validation depend on version 2.2
7320 - CLEANUP: assorted typo fixes in the code and comments
7321 - BUG/MINOR: stats: Fix color of draining servers on stats page
7322 - DOC: internals: Fix spelling errors in filters.txt
7323 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
7324 - REGTEST: make the unique-id test depend on version 2.0
7325 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
7326 - MINOR: ssl: split the line parsing of the crt-list
7327 - MINOR: ssl/cli: support filters and options in add ssl crt-list
7328 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
7329 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
7330 - REGTEST: ssl: pollute the crt-list file
7331 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
7332 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
7333 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
7334 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
7335 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
7336 - CLEANUP: assorted typo fixes in the code and comments
7337 - DOC: management: add the new crt-list CLI commands
7338 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
7339 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
7340 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
7341 - CI: use better SSL library definition
7342 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
7343 - CI: travis-ci: upgrade openssl to 1.1.1f
7344 - MINOR: ssl: improve the errors when a crt can't be open
7345 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
7346 - CI: adopt openssl download script to download all versions
7347 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
7348 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
7349 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
7350 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
7351 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
7352 - CLEANUP: ssl: use the refcount for the SSL_CTX'
7353 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
7354 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
7355 - CLEANUP: ssl: remove a commentary in struct ckch_inst
7356 - MINOR: ssl: initialize all list in ckch_inst_new()
7357 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
7358 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
7359 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
7360 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
7361 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
7362 - REORG: ssl: move some free/new functions
7363 - MINOR: ssl: crtlist_entry_{new, free}
7364 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
7365 - MINOR: ssl: don't alloc ssl_conf if no option found
7366 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
7367 - BUG/MINOR: peers: Incomplete peers sections should be validated.
7368 - MINOR: init: report in "haproxy -c" whether there were warnings or not
7369 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
7370 - MINOR: init: report the compiler version in haproxy -vv
7371 - CLEANUP: assorted typo fixes in the code and comments
7372 - MINOR: init: report the haproxy version and executable path once on errors
7373 - DOC: Make how "option redispatch" works more explicit
7374 - BUILD: Makefile: add linux-musl to TARGET
7375 - CLEANUP: assorted typo fixes in the code and comments
7376 - CLEANUP: http: Fixed small typo in parse_http_return
7377 - DOC: hashing: update link to hashing functions
7378
Willy Tarreau3328f182020-03-23 09:43:45 +010073792020/03/23 : 2.2-dev5
7380 - CLEANUP: ssl: is_default is a bit in ckch_inst
7381 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
7382 - DOC: ssl: clarify security implications of TLS tickets
7383 - CLEANUP: remove support for Linux i686 vsyscalls
7384 - CLEANUP: drop support for USE_MY_ACCEPT4
7385 - CLEANUP: remove support for USE_MY_EPOLL
7386 - CLEANUP: remove support for USE_MY_SPLICE
7387 - CLEANUP: remove the now unused common/syscall.h
7388 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
7389 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
7390 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
7391 - CLEANUP: ssl: separate the directory loading in a new function
7392 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
7393 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
7394 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
7395 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
7396 - BUG/MAJOR: list: fix invalid element address calculation
7397 - BUILD: stream-int: fix a few includes dependencies
7398 - MINOR: mt_lists: Appease gcc.
7399 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
7400 - MINOR: servers: Kill priv_conns.
7401 - MINOR: lists: fix indentation.
7402 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
7403 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
7404 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
7405 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
7406 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
7407 - BUG/MINOR: haproxy/threads: try to make all threads leave together
7408 - Revert "BUILD: travis-ci: enable s390x builds"
7409 - BUILD: travis-ci: enable regular s390x builds
7410 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
7411 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
7412 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
7413 - CLEANUP: connection: Add blank line after declarations in PP handling
7414 - CLEANUP: assorted typo fixes in the code and comments
7415 - CI: add spellcheck github action
7416 - DOC: correct typo in alert message about rspirep
7417 - CI: travis: switch linux builds to clang-9
7418 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
7419 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
7420 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
7421 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
7422 - CLEANUP: connection: Stop directly setting an ist's .ptr
7423 - CI: travis: revert to clang-7 for BoringSSL tests
7424 - BUILD: on ARM, must be linked to libatomic.
7425 - BUILD: makefile: fix regex syntax in ARM platform detection
7426 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
7427 - REORG: ssl: move ssl_sock_load_cert()
7428 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
7429 - MEDIUM: ssl: allow crt-list caching
7430 - MINOR: ssl: directories are loaded like crt-list
7431 - BUG/MINOR: ssl: can't open directories anymore
7432 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
7433 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
7434 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
7435 - MINOR: ssl/cli: show/dump ssl crt-list
7436 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
7437 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
7438 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
7439 - MINOR: tasks: Provide the tasklet to the callback.
7440 - BUG/MINOR: ssl: memleak of struct crtlist_entry
7441 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
7442 - BUILD: makefile: fix expression again to detect ARM platform
7443 - CI: travis: re-enable ASAN on clang
7444 - CI: travis: proper group output redirection together with travis_wait
7445 - DOC: assorted typo fixes in the documentation
7446 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
7447 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
7448 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
7449 - MINOR: ssl/cli: 'new ssl cert' command
7450 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
7451 - MEDIUM: sessions: Don't be responsible for connections anymore.
7452 - MEDIUM: servers: Split the connections into idle, safe, and available.
7453 - MINOR: fd: Implement fd_takeover().
7454 - MINOR: connections: Add a new mux method, "takeover".
7455 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
7456 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
7457 - MEDIUM: connections: Attempt to get idle connections from other threads.
7458 - MEDIUM: mux_h1: Implement the takeover() method.
7459 - MEDIUM: mux_h2: Implement the takeover() method.
7460 - MEDIUM: mux_fcgi: Implement the takeover() method.
7461 - MEDIUM: connections: Kill connections even if we are reusing one.
7462 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
7463 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
7464 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
7465 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
7466 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
7467 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
7468 - CI: run travis-ci builds on push only, skip pull requests
7469 - CI: temporarily disable unstable travis arm64 builds
7470 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
7471 - BUG/MINOR: connections: Make sure we free the connection on failure.
7472 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
7473 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
7474 - BUG/MINOR: connections: Set idle_time before adding to idle list.
7475 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
7476 - REGTEST: increase timeouts on the seamless-reload test
7477 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
7478 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
7479
Willy Tarreau5a753bd2020-03-09 14:57:20 +010074802020/03/09 : 2.2-dev4
7481 - MEDIUM: buffer: remove the buffer_wq lock
7482 - MINOR: ssl: move find certificate chain code to its own function
7483 - MINOR: ssl: resolve issuers chain later
7484 - MINOR: ssl: resolve ocsp_issuer later
7485 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
7486 - BUG/MINOR: h2: reject again empty :path pseudo-headers
7487 - MINOR: wdt: always clear sigev_value to make valgrind happy
7488 - MINOR: epoll: always initialize all of epoll_event to please valgrind
7489 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
7490 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
7491 - BUILD: cirrus-ci: suppress OS version check when installing packages
7492 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
7493 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
7494 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
7495 - MINOR: fd: merge the read and write error bits into RW error
7496 - BUG/MINOR: dns: ignore trailing dot
7497 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
7498 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
7499 - MINOR: mux-h1: Remove useless case-insensitive comparisons
7500 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
7501 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
7502 - MEDIUM: connection: don't stop receiving events in the FD handler
7503 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
7504 - BUG/MINOR: arg: don't reject missing optional args
7505 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
7506 - MINOR: debug: report the task handler's pointer relative to main
7507 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
7508 - MINOR: haproxy: export main to ease access from debugger
7509 - MINOR: haproxy: export run_poll_loop
7510 - MINOR: task: export run_tasks_from_list
7511 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
7512 - MINOR: tools: add new function dump_addr_and_bytes()
7513 - MINOR: tools: add resolve_sym_name() to resolve function pointers
7514 - MINOR: debug: use resolve_sym_name() to dump task handlers
7515 - MINOR: cli: make "show fd" rely on resolve_sym_name()
7516 - MEDIUM: debug: add support for dumping backtraces of stuck threads
7517 - MINOR: debug: call backtrace() once upon startup
7518 - MINOR: ssl: add "ca-verify-file" directive
7519 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
7520 - BUILD: Makefile: include librt before libpthread
7521 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
7522 - MINOR: wdt: do not depend on USE_THREAD
7523 - MINOR: debug: report the number of entries in the backtrace
7524 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
7525 - MINOR: debug: use our own backtrace function on clang+x86_64
7526 - MINOR: debug: dump the whole trace if we can't spot the starting point
7527 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
7528 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
7529 - CLEANUP: contrib/spoa_example: Fix several typos
7530 - BUILD: makefile: do not modify the build options during make reg-tests
7531 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
7532 - MEDIUM: stream-int: make sure to try to immediately validate the connection
7533 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
7534 - MEDIUM: connection: only call ->wake() for connect() without I/O
7535 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
7536 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
7537 - REGTEST: Add unique-id reg-test
7538 - MINOR: stream: Add stream_generate_unique_id function
7539 - MINOR: stream: Use stream_generate_unique_id
7540 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
7541 - MINOR: ssl/cli: support crt-list filters
7542 - MINOR: ssl: reach a ckch_store from a sni_ctx
7543 - DOC: fix incorrect indentation of http_auth_*
7544 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
7545 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
7546 - MINOR: ist: Add `IST_NULL` macro
7547 - MINOR: ist: Add `int isttest(const struct ist)`
7548 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
7549 - CLEANUP: Use `isttest()` and `istfree()`
7550 - MINOR: ist: Add `struct ist istdup(const struct ist)`
7551 - MINOR: proxy: Make `header_unique_id` a `struct ist`
7552 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
7553 - OPTIM: startup: fast unique_id allocation for acl.
7554 - DOC: configuration.txt: fix various typos
7555 - DOC: assorted typo fixes in the documentation and Makefile
7556 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
7557 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
7558 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
7559 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
7560 - MINOR: htx: Add a function to return a block at a specific offset
7561 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
7562 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
7563 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
7564 - BUG/MINOR: filters: Forward everything if no data filters are called
7565 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
7566 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
7567 - BUG/MINOR: http-ana: Reset request analysers on a response side error
7568 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
7569 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
7570 - MINOR: lua: Add function to know if a channel is a response one
7571 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
7572 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
7573 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
7574 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
7575 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
7576 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
7577 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
7578 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
7579 - BUG/MINOR: http-rules: Fix a typo in the reject action function
7580 - MINOR: cache/filters: Initialize the cache filter when stream is created
7581 - MINOR: compression/filters: Initialize the comp filter when stream is created
7582 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
7583 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
7584 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
7585 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
7586 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
7587 - BUILD: ssl: include mini-clist.h
7588 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
7589 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
7590 - BUILD: listener: types/listener.h must not include standard.h
7591 - BUG/MEDIUM: random: initialize the random pool a bit better
7592 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
7593 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
7594 - BUILD: cirrus-ci: get rid of unstable freebsd images
7595 - MINOR: tools: add 64-bit rotate operators
7596 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
7597 - MINOR: backend: use a single call to ha_random32() for the random LB algo
7598 - BUG/MINOR: checks/threads: use ha_random() and not rand()
7599 - MINOR: sample: make all bits random on the rand() sample fetch
7600 - MINOR: tools: add a generic function to generate UUIDs
7601 - DOC: fix typo about no-tls-tickets
7602 - DOC: improve description of no-tls-tickets
7603 - DOC: assorted typo fixes in the documentation
7604 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
7605
Willy Tarreau32bf97f2020-02-25 18:14:02 +010076062020/02/25 : 2.2-dev3
7607 - SCRIPTS: announce-release: place the send command in the mail's header
7608 - SCRIPTS: announce-release: allow the user to force to overwrite old files
7609 - SCRIPTS: backport: fix the master branch detection
7610 - BUG/MINOR: http-act: Set stream error flag before returning an error
7611 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
7612 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
7613 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
7614 - DOC: schematic of the SSL certificates architecture
7615 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
7616 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
7617 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
7618 - BUILD: cirrus-ci: workaround "pkg install" bug
7619 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
7620 - BUG/MINOR: connection: correctly retry I/O on signals
7621 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
7622 - BUILD: http_act: cast file sizes when reporting file size error
7623 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
7624 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
7625 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
7626 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
7627 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
7628 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
7629 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
7630 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
7631 - SCRIPTS: make announce-release executable again
7632 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
7633 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
7634 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
7635 - CLEANUP: ssl: remove unused functions in openssl-compat.h
7636 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
7637 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
7638 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
7639 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
7640 - MEDIUM: arg: make make_arg_list() stop after its own arguments
7641 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
7642 - MEDIUM: arg: make make_arg_list() support quotes in arguments
7643 - MINOR: sample: make sample_parse_expr() able to return an end pointer
7644 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
7645 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
7646 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
7647 - BUILD: enable ERR=1 in github cygwin builds
7648 - BUG/MINOR: arg: fix again incorrect argument length check
7649 - MINOR: sample: regsub now supports backreferences
7650 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
7651 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
7652 - MINOR: filters: Forward data only if the last filter forwards something
7653 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
7654 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
7655 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
7656 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
7657 - MINOR: ssl: add "issuers-chain-path" directive.
7658 - REGTESTS: use "command -v" instead of "which"
7659 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
7660 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
7661 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
7662 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
7663 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
7664 - MINOR: checks: do not call conn_xprt_stop_send() anymore
7665 - CLEANUP: epoll: place the struct epoll_event in the stack
7666 - MEDIUM: connection: remove the intermediary polling state from the connection
7667 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
7668 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
7669 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
7670 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
7671 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
7672 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
7673 - MINOR: ist: add an iststop() function
7674 - BUG/MINOR: http: http-request replace-path duplicates the query string
7675 - CLEANUP: sample: use iststop instead of a for loop
7676 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
7677 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
7678 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
7679 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
7680 - BUILD: fix recent build failure on unaligned archs
7681 - MINOR: ssl: load the key from a dedicated file
7682 - BUG/MINOR: ssl: load .key in a directory only after PEM
7683 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
7684 - CLEANUP: conn: Do not pass a pointer to likely
7685 - CLEANUP: net_helper: Do not negate the result of unlikely
7686 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
7687 - CLEANUP: cfgparse: Fix type of second calloc() parameter
7688 - BUILD: ssl: only pass unsigned chars to isspace()
7689 - BUILD: general: always pass unsigned chars to is* functions
7690 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
7691 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
7692 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
7693 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
7694 - CLEANUP: stick-tables: use read_u32() to display a node's key
7695 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
7696 - MINOR: pattern: fix all remaining strict aliasing issues
7697 - CLEANUP: lua: fix aliasing issues in the address matching code
7698 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
7699 - BUILD: makefile: re-enable strict aliasing
7700 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
7701 - MINOR: compiler: add new alignment macros
7702 - BUILD: ebtree: improve architecture-specific alignment
7703 - MINOR: config: mark global.debug as deprecated
7704 - BUILD: travis-ci: enable s390x builds
7705 - MINOR: ssl/cli: 'show ssl cert' displays the chain
7706 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
7707 - MINOR: ssl/cli: reorder 'show ssl cert' output
7708 - CLEANUP: ssl: move issuer_chain tree and definition
7709 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
7710
Willy Tarreau4c47d912020-02-07 04:12:19 +010077112020/02/07 : 2.2-dev2
7712 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
7713 - MEDIUM: cli: Allow multiple filter entries for "show table"
7714 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
7715 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
7716 - BUILD: stick-table: fix build errors introduced by last stick-table change
7717 - BUG/MINOR: cli: Missing arg offset for filter data values.
7718 - MEDIUM: streams: Always create a conn_stream in connect_server().
7719 - MEDIUM: connections: Get ride of the xprt_done callback.
7720 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
7721 - BUILD: CI: move cygwin builds to Github Actions
7722 - MINOR: cli: Report location of errors or any extra data for "show table"
7723 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
7724 - CLEANUP: backend: remove useless test for inexistent connection
7725 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
7726 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
7727 - BUG/MINOR: ssl: increment issuer refcount if in chain
7728 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
7729 - BUG/MINOR: ssl: typo in previous patch
7730 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
7731 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
7732 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
7733 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
7734 - MINOR: stream-int: always report received shutdowns
7735 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
7736 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
7737 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
7738 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
7739 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
7740 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
7741 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
7742 - BUG/MINOR: stktable: report the current proxy name in error messages
7743 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
7744 - MINOR: lua: Add hlua_prepend_path function
7745 - MINOR: lua: Add lua-prepend-path configuration option
7746 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
7747 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
7748 - BUG/MINOR: http-ana: Increment the backend counters on the backend
7749 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
7750 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
7751 - REGTESTS: make the set_ssl_cert test require version 2.2
7752 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
7753 - MINOR: ssl: Remove dead code.
7754 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
7755 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
7756 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
7757 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
7758 - BUILD: CI: disable slow regtests on Travis
7759 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
7760 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
7761 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
7762 - BUG/MINOR: dns: allow 63 char in hostname
7763 - MINOR: proxy: clarify number of connections log when stopping
7764 - DOC: word converter ignores delimiters at the start or end of input string
7765 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
7766 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
7767 - MEDIUM: pipe/thread: reduce the locking overhead
7768 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
7769 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
7770 - MINOR: tasks: move the list walking code to its own function
7771 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
7772 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
7773 - OPTIM: task: refine task classes default CPU bandwidth ratios
7774 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
7775 - MINOR: task: permanently flag tasklets waking themselves up
7776 - MINOR: task: make sched->current also reflect tasklets
7777 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
7778 - OPTIM: task: readjust CPU bandwidth distribution since last update
7779 - MINOR: task: don't set TASK_RUNNING on tasklets
7780 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
7781 - MINOR: memory: Only init the pool spinlock once.
7782 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
7783 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
7784 - MINOR: ssl: ssl-load-extra-files configure loading of files
7785 - SCRIPTS: add a new "backport" script to simplify long series of backports
7786 - BUG/MINOR: ssl: we may only ignore the first 64 errors
7787 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
7788 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
7789 - CLEANUP: hpack: remove a redundant test in the decoder
7790 - CLEANUP: peers: Remove unused static function `free_dcache`
7791 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
7792 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
7793 - CONTRIB: debug: add the possibility to decode the value as certain types only
7794 - CONTRIB: debug: support reporting multiple values at once
7795 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
7796 - MINOR: global: Set default tune.maxrewrite value during global structure init
7797 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
7798 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
7799 - MINOR: htx: Add a function to append an HTX message to another one
7800 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
7801 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
7802 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
7803 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
7804 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
7805 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
7806 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
7807 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
7808 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
7809 - MINOR: http-ana: Add a function for forward internal responses
7810 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
7811 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
7812 - MEDIUM: http-rules: Add the return action to HTTP rules
7813 - MEDIUM: http-rules: Support extra headers for HTTP return actions
7814 - CLEANUP: lua: Remove consistency check for sample fetches and actions
7815 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
7816 - MINOR: lua: Get the action return code on the stack when an action finishes
7817 - MINOR: lua: Create the global 'act' object to register all action return codes
7818 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
7819 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
7820 - REGTESTS: Add reg tests for the HTTP return action
7821 - REGTESTS: Add a reg test for http-after-response rulesets
7822 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
7823 - MINOR: acl: Warn when an ACL is named 'or'
7824 - CONTRIB: debug: also support reading values from stdin
7825 - SCRIPTS: backport: use short revs and resolve the initial commit
7826 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
7827
Willy Tarreau71f95fa2020-01-22 10:34:58 +010078282020/01/22 : 2.2-dev1
7829 - DOC: this is development again
7830 - MINOR: version: this is development again, update the status
7831 - SCRIPTS: update create-release to fix the changelog on new branches
7832 - CLEANUP: ssl: Clean up error handling
7833 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
7834 - BUG/MINOR: h1: Don't test the host header during response parsing
7835 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
7836 - DOC: Clarify behavior of server maxconn in HTTP mode
7837 - MINOR: ssl: deduplicate ca-file
7838 - MINOR: ssl: compute ca-list from deduplicate ca-file
7839 - MINOR: ssl: deduplicate crl-file
7840 - CLEANUP: dns: resolution can never be null
7841 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
7842 - DOC: ssl/cli: set/commit/abort ssl cert
7843 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
7844 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
7845 - BUG/MINOR: stats: Fix HTML output for the frontends heading
7846 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
7847 - DOC: clarify matching strings on binary fetches
7848 - DOC: Fix ordered list in summary
7849 - DOC: move the "group" keyword at the right place
7850 - MEDIUM: init: prevent process and thread creation at runtime
7851 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
7852 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
7853 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
7854 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
7855 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
7856 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
7857 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
7858 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
7859 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
7860 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
7861 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
7862 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
7863 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
7864 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
7865 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
7866 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
7867 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
7868 - BUG/MINOR: listener: also clear the error flag on a paused listener
7869 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
7870 - MINOR: listener: make the wait paths cleaner and more reliable
7871 - MINOR: listener: split dequeue_all_listener() in two
7872 - REORG: listener: move the global listener queue code to listener.c
7873 - DOC: document the listener state transitions
7874 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
7875 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
7876 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
7877 - DOC: listeners: add a few missing transitions
7878 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
7879 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
7880 - DOC: proxies: HAProxy only supports 3 connection modes
7881 - DOC: remove references to the outdated architecture.txt
7882 - BUG/MINOR: log: fix minor resource leaks on logformat error path
7883 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
7884 - BUG/MINOR: listener: do not immediately resume on transient error
7885 - BUG/MINOR: server: make "agent-addr" work on default-server line
7886 - BUG/MINOR: listener: fix off-by-one in state name check
7887 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
7888 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
7889 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
7890 - REGTEST: Add an HTX reg-test to check an edge case
7891 - DOC: clarify the fact that replace-uri works on a full URI
7892 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
7893 - BUG/MINOR: sample: always check converters' arguments
7894 - MINOR: sample: Validate the number of bits for the sha2 converter
7895 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
7896 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
7897 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
7898 - MINOR: debug: support logging to various sinks
7899 - MINOR: http: add a new "replace-path" action
7900 - REGTEST: ssl: test the "set ssl cert" CLI command
7901 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
7902 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
7903 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
7904 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
7905 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
7906 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
7907 - REGTEST: make the "set ssl cert" require version 2.1
7908 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
7909 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
7910 - BUG/MINOR: state-file: do not store duplicates in the global tree
7911 - BUG/MINOR: state-file: do not leak memory on parse errors
7912 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
7913 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
7914 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
7915 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
7916 - BUILD: travis-ci: reenable address sanitizer for clang builds
7917 - BUG/MINOR: checks: refine which errno values are really errors.
7918 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
7919 - CLEANUP: connection: conn->xprt is never NULL
7920 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
7921 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
7922 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
7923 - MINOR: connection: check for connection validation earlier
7924 - MINOR: connection: remove the double test on xprt_done_cb()
7925 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
7926 - MINOR: poller: do not call the IO handler if the FD is not active
7927 - OPTIM: epoll: always poll for recv if neither active nor ready
7928 - OPTIM: polling: do not create update entries for FD removal
7929 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
7930 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
7931 - BUILD: CI: modernize cirrus-ci
7932 - MINOR: config: disable busy polling on old processes
7933 - MINOR: ssl: Remove unused variable "need_out".
7934 - BUG/MINOR: h1: Report the right error position when a header value is invalid
7935 - BUG/MINOR: proxy: Fix input data copy when an error is captured
7936 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
7937 - BUG/MINOR: channel: inject output data at the end of output
7938 - BUG/MEDIUM: session: do not report a failure when rejecting a session
7939 - MEDIUM: dns: implement synchronous send
7940 - MINOR: raw_sock: make sure to disable polling once everything is sent
7941 - MINOR: http: Add 410 to http-request deny
7942 - MINOR: http: Add 404 to http-request deny
7943 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
7944 - BUILD: cirrus-ci: choose proper openssl package name
7945 - BUG/MAJOR: listener: do not schedule a task-less proxy
7946 - CLEANUP: server: remove unused err section in server_finalize_init
7947 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
7948 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
7949 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
7950 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
7951 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
7952 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
7953 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
7954 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
7955 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
7956 - REGTEST: mcli/mcli_start_progs: start 2 programs
7957 - BUG/MEDIUM: mworker: remain in mworker mode during reload
7958 - DOC: clarify crt-base usage
7959 - CLEANUP: compression: remove unused deinit_comp_ctx section
7960 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
7961 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
7962 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
7963 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
7964 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
7965 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
7966 - CLEANUP: cli: deduplicate the code in _getsocks
7967 - BUG/MINOR: stream: don't mistake match rules for store-request rules
7968 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
7969 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
7970 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
7971 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
7972 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
7973 - BUILD: pattern: include errno.h
7974 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
7975 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
7976 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
7977 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
7978 - REORG: stream/backend: move backend-specific stuff to backend.c
7979 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
7980 - MEDIUM: connection: merge the send_wait and recv_wait entries
7981 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
7982 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
7983 - MEDIUM: mux-h1: merge recv_wait and send_wait
7984 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
7985 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
7986 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
7987 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
7988 - DOC: Fix copy and paste mistake in http-response replace-value doc
7989 - BUG/MINOR: cache: Fix leak of cache name in error path
7990 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
7991 - BUG/MINOR: 51d: Fix bug when HTX is enabled
7992 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
7993 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
7994 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
7995 - DOC: Add a section to document the internal sample fetches
7996 - MINOR: mux-h1: Inherit send flags from the upper layer
7997 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
7998 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
7999 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
8000 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
8001 - MEDIUM: http-rules: Register an action keyword for all http rules
8002 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
8003 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
8004 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
8005 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
8006 - MINOR: counters: Add a counter to report internal processing errors
8007 - MEDIUM: http-ana: Properly handle internal processing errors
8008 - MINOR: http-rules: Add a rule result to report internal error
8009 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
8010 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
8011 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
8012 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
8013 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
8014 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
8015 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
8016 - MINOR: counters: Review conditions to increment counters from analysers
8017 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
8018 - MINOR: http-rules: Handle all message rewrites the same way
8019 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
8020 - MEDIUM: http-rules: Enable the strict rewriting mode by default
8021 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
8022 - MINOR: actions: Add a function pointer to release args used by actions
8023 - MINOR: actions: Regroup some info about HTTP rules in the same struct
8024 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
8025 - MINOR: actions: Rename the act_flag enum into act_opt
8026 - MINOR: actions: Add flags to configure the action behaviour
8027 - MINOR: actions: Use an integer to set the action type
8028 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
8029 - MINOR: http-rules: Make replace-header and replace-value custom actions
8030 - MINOR: http-rules: Make set-header and add-header custom actions
8031 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
8032 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
8033 - MEDIUM: http-rules: Make early-hint custom actions
8034 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
8035 - MINOR: tcp-rules: Make tcp-request capture a custom action
8036 - MINOR: http-rules: Add release functions for existing HTTP actions
8037 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
8038 - MINOR: tcp-rules: Add release functions for existing TCP actions
8039 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
8040 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
8041 - MINOR: http-htx: Add functions to create HTX redirect message
8042 - MINOR: config: Use dedicated function to parse proxy's errorfiles
8043 - MINOR: config: Use dedicated function to parse proxy's errorloc
8044 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
8045 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
8046 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
8047 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
8048 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
8049 - MINOR: http-rules: Support an optional status on deny rules for http reponses
8050 - MINOR: http-rules: Use same function to parse request and response deny actions
8051 - MINOR: http-ana: Add an error message in the txn and send it when defined
8052 - MEDIUM: http-rules: Support an optional error message in http deny rules
8053 - REGTEST: Add a strict rewriting mode reg test
8054 - REGEST: Add reg tests about error files
8055 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
8056 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
8057 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
8058 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
8059 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
8060 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
8061 - BUILD: CI: introduce ARM64 builds
8062 - BUILD: ssl: more elegant anti-replay feature presence check
8063 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
8064 - MEDIUM: dns: use Additional records from SRV responses
8065 - CLEANUP: Consistently `unsigned int` for bitfields
8066 - CLEANUP: pattern: remove the pat_time definition
8067 - BUG/MINOR: http_act: don't check capture id in backend
8068 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
8069
Willy Tarreau2e077f82019-11-25 20:36:16 +010080702019/11/25 : 2.2-dev0
8071 - exact copy of 2.1.0
8072
Willy Tarreaue54b43a2019-11-25 19:47:40 +010080732019/11/25 : 2.1.0
8074 - BUG/MINOR: init: fix set-dumpable when using uid/gid
8075 - MINOR: init: avoid code duplication while setting identify
8076 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
8077 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
8078 - MINOR: peers: Alway show the table info for disconnected peers.
8079 - MINOR: peers: Add TX/RX heartbeat counters.
8080 - MINOR: peers: Add debugging information to "show peers".
8081 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
8082 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
8083 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
8084 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
8085 - BUILD/MINOR: ssl: fix compiler warning about useless statement
8086 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
8087 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
8088 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
8089 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
8090 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
8091 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
8092 - DOC: Update http-buffer-request description to remove the part about chunks
8093 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
8094 - DOC: internal: document the init calls
8095 - MEDIUM: dns: Add resolve-opts "ignore-weight"
8096 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
8097 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
8098 - MINOR: ssl/cli: display warning during 'commit ssl cert'
8099 - MINOR: version: report the version status in "haproxy -v"
8100 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
8101 - DOC: Add documentation about the use-service action
8102 - MINOR: ssl: fix possible null dereference in error handling
8103 - BUG/MINOR: ssl: fix curve setup with LibreSSL
8104 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
8105 - CLEANUP: ssl: check if a transaction exists once before setting it
8106 - BUG/MINOR: cli: fix out of bounds in -S parser
8107 - MINOR: ist: add ist_find_ctl()
8108 - BUG/MAJOR: h2: reject header values containing invalid chars
8109 - BUG/MAJOR: h2: make header field name filtering stronger
8110 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
8111 - MINOR: h2: add a function to report H2 error codes as strings
8112 - MINOR: mux-h2/trace: report the connection and/or stream error code
8113 - SCRIPTS: create-release: show the correct origin name in suggested commands
8114 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
8115 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
8116 - BUILD: reorder the objects in the makefile
8117 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
8118 - MINOR: version: indicate that this version is stable
8119
Willy Tarreau84681322019-11-15 18:49:37 +010081202019/11/15 : 2.1-dev5
8121 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
8122 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
8123 - BUG/MINOR: ssl/cli: fix an error when a file is not found
8124 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
8125 - DOC: fix date and http_date keywords syntax
8126 - MINOR: peers: Add "log" directive to "peers" section.
8127 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
8128 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
8129 - MINOR: flt_trace: Rename macros to print trace messages
8130 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
8131 - MEDIUM: stream/trace: Register a new trace source with its events
8132 - MINOR: doc: http-reuse connection pool fix
8133 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
8134 - MINOR: http-ana: Remove the unused function http_reset_txn()
8135 - BUG/MINOR: action: do-resolve now use cached response
8136 - BUG: dns: timeout resolve not applied for valid resolutions
8137 - DOC: management: fix typo on "cache_lookups" stats output
8138 - BUG/MINOR: stream: init variables when the list is empty
8139 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
8140 - BUG/MINOR: queue/threads: make the queue unlinking atomic
8141 - BUG/MEDIUM: Make sure we leave the session list in session_free().
8142 - CLEANUP: session: slightly simplify idle connection cleanup logic
8143 - MINOR: memory: also poison the area on freeing
8144 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
8145 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
8146 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
8147 - BUILD: contrib/da: remove an "unused" warning
8148 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
8149 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
8150 - MINOR: freq_ctr: Make the sliding window sums thread-safe
8151 - MINOR: stream: Remove the lock on the proxy to update time stats
8152 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
8153 - MINOR: stats: Report max times in addition of the averages for sessions
8154 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
8155 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
8156 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
8157 - DOC: Add missing stats fields in the management manual
8158 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
8159 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
8160 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
8161 - MINOR: sink: Set the default max length for a message to BUFSIZE
8162 - MINOR: ring: make the parse function automatically set the handler/release
8163 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
8164 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
8165
Willy Tarreau1753cb52019-11-03 15:43:10 +010081662019/11/03 : 2.1-dev4
8167 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
8168 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
8169 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
8170 - DOC: remove obsolete section about header manipulation
8171 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
8172 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
8173 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
8174 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
8175 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
8176 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
8177 - BUILD/MINOR: ssl: shut up a build warning about format truncation
8178 - BUILD: do not disable -Wformat-truncation anymore
8179 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
8180 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
8181 - MINOR: mux: Add a new method to get informations about a mux.
8182 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
8183 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
8184 - MINOR: doc: fix busy-polling performance reference
8185 - MINOR: config: allow no set-dumpable config option
8186 - MINOR: init: always fail when setrlimit fails
8187 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
8188 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
8189 - REGTEST: vtest can now enable mcli with its own flag
8190 - BUG/MINOR: config: Update cookie domain warn to RFC6265
8191 - MINOR: sample: add us/ms support to date/http_date
8192 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
8193 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
8194 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
8195 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
8196 - BUG/MINOR: stats: properly check the path and not the whole URI
8197 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
8198 - BUG/MINOR: ssl: ckch->chain must be initialized
8199 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
8200 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
8201 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
8202 - MINOR: backend: Add srv_name sample fetche
8203 - DOC: Add GitHub issue config.yml
8204
Willy Tarreauc70df532019-10-25 15:48:53 +020082052019/10/25 : 2.1-dev3
8206 - MINOR: mux-h2/trace: missing conn pointer in demux full message
8207 - MINOR: mux-h2: add a per-connection list of blocked streams
8208 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
8209 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
8210 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
8211 - BUG/MINOR: peers: crash on reload without local peer.
8212 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
8213 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
8214 - MINOR: htx: Adapt htx_dump() to be used from traces
8215 - MINOR: mux-h1/trace: register a new trace source with its events
8216 - MINOR: proxy: Store http-send-name-header in lower case
8217 - MINOR: http: Remove headers matching the name of http-send-name-header option
8218 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
8219 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
8220 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
8221 - MINOR: fcgi: Add function to get the string representation of a record type
8222 - MINOR: mux-fcgi/trace: Register a new trace source with its events
8223 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
8224 - DOC: clarify some points around http-send-name-header's behavior
8225 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
8226 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
8227 - DOC: fix typo in Prometheus exporter doc
8228 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
8229 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
8230 - MINOR: http: Add a function to get the authority into a URI
8231 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
8232 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
8233 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
8234 - MEDIUM: h2: make the request parser rebuild a complete URI
8235 - MINOR: h2: report in the HTX flags when the request has an authority
8236 - MEDIUM: mux-h2: do not map Host to :authority on output
8237 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
8238 - MINOR: stats: mention in the help message support for "json" and "typed"
8239 - MINOR: stats: get rid of the ST_CONVDONE flag
8240 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
8241 - MINOR: stats: always merge the uri_auth flags into the appctx flags
8242 - MINOR: stats: set the appctx flags when initializing the applet only
8243 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
8244 - MINOR: stats: make stats_dump_fields_json() directly take flags
8245 - MINOR: stats: uniformize the calling convention of the dump functions
8246 - MINOR: stats: support the "desc" output format modifier for info and stat
8247 - MINOR: stats: prepare to add a description with each stat/info field
8248 - MINOR: stats: make "show stat" and "show info"
8249 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
8250 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
8251 - BUILD: stats: fix missing '=' sign in array declaration
8252 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
8253 - MINOR: list: add new macro MT_LIST_BEHEAD
8254 - MEDIUM: task: Split the tasklet list into two lists.
8255 - MINOR: h2: Document traps to be avoided on multithread.
8256 - MINOR: lists: Try to use local variables instead of macro arguments.
8257 - MINOR: lists: Fix alignement of \ when relevant.
8258 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
8259 - MINOR: ssl: crt-list do ckchn_lookup
8260 - REORG: ssl: rename ckch_node to ckch_store
8261 - REORG: ssl: move structures to ssl_sock.h
8262 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
8263 - MINOR: ssl: initialize explicitly the sni_ctx trees
8264 - BUG/MINOR: ssl: abort on sni allocation failure
8265 - BUG/MINOR: ssl: free the sni_keytype nodes
8266 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
8267 - MEDIUM: ssl: introduce the ckch instance structure
8268 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
8269 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
8270 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
8271 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
8272 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
8273 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
8274 - MINOR: ssl: load the sctl in/from the ckch
8275 - MINOR: ssl: load the ocsp in/from the ckch
8276 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
8277 - BUG/MINOR: ssl: fix build without SSL
8278 - BUG/MINOR: ssl: fix build without multi-cert bundles
8279 - BUILD: ssl: wrong #ifdef for SSL engines code
8280 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
8281 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
8282 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
8283 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
8284 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
8285 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
8286 - BUG/MINOR: mux-h1: Capture ignored parsing errors
8287 - MINOR: h1: Reject requests with different occurrences of the header host
8288 - MINOR: h1: Reject requests if the authority does not match the header host
8289 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
8290 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
8291 - BUG/MINOR: WURFL: fix send_log() function arguments
8292 - BUG/MINOR: ssl: fix error messages for OCSP loading
8293 - BUG/MINOR: ssl: can't load ocsp files
8294 - MINOR: version: make the version strings variables, not constants
8295 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
8296 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
8297 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
8298 - BUILD: travis-ci: limit build to branches "master" and "next"
8299 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
8300 - BUILD/SMALL: threads: enable threads on osx
8301 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
8302 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
8303 - BUG/MINOR: cache: also cache absolute URIs
8304 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
8305 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
8306 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
8307 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
8308 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
8309 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
8310 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
8311 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
8312 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
8313 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
8314 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
8315 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
8316 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
8317 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
8318 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
8319 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
8320 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
8321 - CLEANUP: bind: handle warning label on bind keywords parsing.
8322 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
8323 - BUG/MINOR: mworker/cli: reload fail with inherited FD
8324 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
8325 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
8326 - BUG/MINOR: cache: alloc shctx after check config
8327 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
8328 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
8329 - REGTESTS: make seamless-reload depend on 1.9 and above
8330 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
8331 - BUG/MINOR: dns: allow srv record weight set to 0
8332 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
8333 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
8334 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
8335 - BUG/MINOR: mux-h2: do not emit logs on backend connections
8336 - CLEANUP: ssl: remove old TODO commentary
8337 - CLEANUP: ssl: fix SNI/CKCH lock labels
8338 - MINOR: ssl: OCSP functions can load from file or buffer
8339 - MINOR: ssl: load sctl from buf OR from a file
8340 - MINOR: ssl: load issuer from file or from buffer
8341 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
8342 - BUG/MINOR: ssl/cli: fix looking up for a bundle
8343 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
8344 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
8345 - MINOR: ssl: copy a ckch from src to dst
8346 - MINOR: ssl: new functions duplicate and free a ckch_store
8347 - MINOR: ssl/cli: assignate a new ckch_store
8348 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
8349 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
8350 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
8351 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
8352 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
8353 - MINOR: tcp: avoid confusion in time parsing init
8354 - MINOR: debug: add a new "debug dev stream" command
8355 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
8356 - REORG: move CLI access level definitions to cli.h
8357 - MINOR: cli: add an expert mode to hide dangerous commands
8358 - MINOR: debug: make most debug CLI commands accessible in expert mode
8359 - MINOR: stats/debug: maintain a counter of debug commands issued
8360 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
8361
Willy Tarreaucb8f03f2019-10-01 18:13:09 +020083622019/10/01 : 2.1-dev2
8363 - DOC: management: document reuse and connect counters in the CSV format
8364 - DOC: management: document cache_hits and cache_lookups in the CSV format
8365 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
8366 - MINOR: applet: make appctx use their own pool
8367 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
8368 - BUG/MEDIUM: http/htx: unbreak option http_proxy
8369 - BUG/MINOR: backend: do not try to install a mux when the connection failed
8370 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
8371 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
8372 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
8373 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
8374 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
8375 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
8376 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
8377 - MINOR: proto_htx: Add the function htx_return_srv_error()
8378 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
8379 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
8380 - DOC: htx: Update comments in HTX files
8381 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
8382 - MINOR: htx: Deduce the number of used blocks from tail and head values
8383 - MINOR: htx: Use an array of char to store HTX blocks
8384 - MINOR: htx: Slightly update htx_dump() to report better messages
8385 - DOC: htx: Add internal documentation about the HTX
8386 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
8387 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
8388 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
8389 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
8390 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
8391 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
8392 - MINOR: config: Remove tests on the option 'http-use-htx'
8393 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
8394 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
8395 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
8396 - MINOR: cache: Remove tests on the option 'http-use-htx'
8397 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
8398 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
8399 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
8400 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
8401 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
8402 - MINOR: http_act: Remove code relying on the legacy HTTP mode
8403 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
8404 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
8405 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
8406 - MINOR: stats: Remove code relying on the legacy HTTP mode
8407 - MAJOR: filters: Remove code relying on the legacy HTTP mode
8408 - MINOR: stream: Remove code relying on the legacy HTTP mode
8409 - MAJOR: http: Remove the HTTP legacy code
8410 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
8411 - MINOR: proto_http: Remove unused http txn flags
8412 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
8413 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
8414 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
8415 - CLEANUP: proto_http: Remove unecessary includes and comments
8416 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
8417 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
8418 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
8419 - MINOR: proxy: Remove support of the option 'http-tunnel'
8420 - DOC: config: Update as a result of the legacy HTTP removal
8421 - MEDIUM: config: Remove parsing of req* and rsp* directives
8422 - MINOR: proxy: Remove the unused list of block rules
8423 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
8424 - DOC: config: Remove unsupported req* and rsp* keywords
8425 - MINOR: global: Preset tune.max_http_hdr to its default value
8426 - MINOR: http: Don't store raw HTTP errors in chunks anymore
8427 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
8428 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
8429 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
8430 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
8431 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
8432 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
8433 - MINOR: connection: add conn_get_src() and conn_get_dst()
8434 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
8435 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
8436 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
8437 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
8438 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
8439 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
8440 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
8441 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
8442 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
8443 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
8444 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
8445 - MINOR: connection: add new src and dst fields
8446 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
8447 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
8448 - MINOR: lua: switch to conn->dst for a connection's target address
8449 - MINOR: peers: use conn->dst for the peer's target address
8450 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
8451 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
8452 - MINOR: proxy: switch to conn->src in error snapshots
8453 - MINOR: session: use conn->src instead of conn->addr.from
8454 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
8455 - MINOR: unix: use conn->dst for the target address in ->connect()
8456 - MINOR: sockpair: use conn->dst for the target address in ->connect()
8457 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
8458 - MINOR: checks: replace conn->addr.to with conn->dst
8459 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
8460 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
8461 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
8462 - MINOR: connection: create a new pool for struct sockaddr_storage
8463 - MEDIUM: connection: make sure all address producers allocate their address
8464 - MAJOR: connection: remove the addr field
8465 - MINOR: connection: don't use clear_addr() anymore, just release the address
8466 - MINOR: stream: add a new target_addr entry in the stream structure
8467 - MAJOR: stream: store the target address into s->target_addr
8468 - MINOR: peers: now remove the remote connection setup code
8469 - MEDIUM: lua: do not allocate the remote connection anymore
8470 - MEDIUM: backend: always release any existing prior connection in connect_server()
8471 - MEDIUM: backend: remove impossible cases from connect_server()
8472 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
8473 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
8474 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
8475 - BUG/MINOR: http_htx: Support empty errorfiles
8476 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
8477 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
8478 - BUG/MINOR: proxy: always lock stop_proxy()
8479 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
8480 - BUILD: threads: add the definition of PROTO_LOCK
8481 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
8482 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
8483 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
8484 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
8485 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
8486 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
8487 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
8488 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
8489 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
8490 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
8491 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
8492 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
8493 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
8494 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
8495 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
8496 - MEDIUM: ssl: split the loading of the certificates
8497 - MEDIUM: ssl: lookup and store in a ckch_node tree
8498 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
8499 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
8500 - MINOR: ssl: use STACK_OF for chain certs
8501 - MINOR: ssl: add extra chain compatibility
8502 - MINOR: ssl: check private key consistency in loading
8503 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
8504 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
8505 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
8506 - MAJOR: fd: Get rid of the fd cache.
8507 - MEDIUM: pollers: Remember the state for read and write for each threads.
8508 - MEDIUM: mux-h2: don't try to read more than needed
8509 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
8510 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
8511 - BUG/MINOR: debug: fix a small race in the thread dumping code
8512 - MINOR: wdt: also consider that waiting in the thread dumper is normal
8513 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
8514 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
8515 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
8516 - BUG/MINOR: ssl: fix ressource leaks on error
8517 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
8518 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
8519 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
8520 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
8521 - BUG/MINOR: stream-int: also update analysers timeouts on activity
8522 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
8523 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
8524 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
8525 - DOC: Add 'Question.md' issue template, discouraging asking questions
8526 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
8527 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
8528 - BUILD: travis-ci: enable daily Coverity scan
8529 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
8530 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
8531 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
8532 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
8533 - BUG/MINOR: mux-h2: always send stream window update before connection's
8534 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
8535 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
8536 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
8537 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
8538 - MINOR: cache: add method to cache hash
8539 - MINOR: cache: allow caching of OPTIONS request
8540 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
8541 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
8542 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
8543 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
8544 - CLEANUP: buffer: replace b_drop() with b_free()
8545 - CLEANUP: task: move the cpu_time field to the task-only part
8546 - MINOR: cli: add two new states to print messages on the CLI
8547 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
8548 - CLEANUP: cli: replace all occurrences of manual handling of return messages
8549 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
8550 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
8551 - BUG/MINOR: lua: fix setting netfilter mark
8552 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
8553 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
8554 - BUG/MINOR: stats: Wait the body before processing POST requests
8555 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
8556 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
8557 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
8558 - MINOR: debug: indicate the applet name when the task is task_run_applet()
8559 - MINOR: tools: add append_prefixed_str()
8560 - MINOR: lua: export applet and task handlers
8561 - MEDIUM: debug: make the thread dump code show Lua backtraces
8562 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
8563 - MINOR: list: add LIST_SPLICE() to merge one list into another
8564 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
8565 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
8566 - MINOR: sink: create definitions a minimal code for event sinks
8567 - MINOR: sink: add a support for file descriptors
8568 - MINOR: trace: start to create a new trace subsystem
8569 - MINOR: trace: add allocation of buffer-sized trace buffers
8570 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
8571 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
8572 - MINOR: trace/cli: add "show trace" to report trace state and statistics
8573 - MINOR: trace: implement a very basic trace() function
8574 - MINOR: trace: add the file name and line number in the prefix
8575 - MINOR: trace: make trace() now also take a level in argument
8576 - MINOR: trace: implement a call to a decode function
8577 - MINOR: trace: add per-level macros to produce traces
8578 - MINOR: trace: add a definition of typed arguments to trace()
8579 - MINOR: trace: make sure to always stop the locking when stopping or pausing
8580 - MINOR: trace: add the possibility to lock on some arguments
8581 - MINOR: trace: parse the "lock" argument to trace
8582 - MINOR: trace: retrieve useful pointers and enforce lock-on
8583 - DOC: management: document the "trace" and "show trace" commands
8584 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
8585 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
8586 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
8587 - DOC: fixed typo in management.txt
8588 - BUG/MINOR: mworker: disable SIGPROF on re-exec
8589 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
8590 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
8591 - MINOR: backend: Add srv_queue converter
8592 - MINOR: sink: set the fd-type sinks to non-blocking
8593 - MINOR: tools: add a function varint_bytes() to report the size of a varint
8594 - MINOR: buffer: add functions to read/write varints from/to buffers
8595 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
8596 - MINOR: sink: now call the generic fd write function
8597 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
8598 - MINOR: ring: add a ring_write() function
8599 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
8600 - MINOR: sink: add support for ring buffers
8601 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
8602 - MINOR: sink: now report the number of dropped events on output
8603 - MINOR: trace: support a default callback for the source
8604 - MINOR: trace: extend the source location to 13 chars
8605 - MINOR: trace: show thread number and source name in the trace
8606 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
8607 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
8608 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
8609 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
8610 - MINOR: trace: change the "payload" level to "data" and move it
8611 - MINOR: trace: prepend the function name for developer level traces
8612 - MINOR: trace: also report the trace level in the output
8613 - MINOR: trace: change the detail_level to per-source verbosity
8614 - MINOR: mux-h2/trace: register a new trace source with its events
8615 - MINOR: mux-h2/trace: add the default decoding callback
8616 - MEDIUM: mux-h2/trace: add lots of traces all over the code
8617 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
8618 - MINOR: mux-h2/trace: add a new verbosity level "clean"
8619 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
8620 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
8621 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
8622 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
8623 - CLEANUP: mux-h2/trace: lower-case event names
8624 - MINOR: trace: extend default event names to 12 chars
8625 - BUG/MINOR: ring: fix the way watchers are counted
8626 - MINOR: cli: extend the CLI context with a list and two offsets
8627 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
8628 - MEDIUM: ring: implement a wait mode for watchers
8629 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
8630 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
8631 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
8632 - CLEANUP: fd: remove leftovers of the fdcache
8633 - MINOR: fd: add a new "initialized" bit in the fdtab struct
8634 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
8635 - MEDIUM: log: use the new generic fd_write_frag_line() function
8636 - MINOR: log: add a target type instead of hacking the address family
8637 - MEDIUM: log: add support for logging to a ring buffer
8638 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
8639 - MINOR: build: add linux-glibc-legacy build TARGET
8640 - BUG/MEDIUM: peers: local peer socket not bound.
8641 - BUILD: connection: silence gcc warning with extra parentheses
8642 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
8643 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
8644 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
8645 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
8646 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
8647 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
8648 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
8649 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
8650 - MEDIUM: fd: remove the FD_EV_POLLED status bit
8651 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
8652 - MINOR: fd: make updt_fd_polling() a normal function
8653 - CONTRIB: debug: add new program "poll" to test poll() events
8654 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
8655 - BUG/MINOR: checks: start sending the request right after connect()
8656 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
8657 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
8658 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
8659 - BUILD: CI: add basic CentOS 6 cirrus build
8660 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
8661 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
8662 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
8663 - MEDIUM: fd: mark the FD as ready when it's inserted
8664 - MINOR: fd: add two new calls fd_cond_{recv,send}()
8665 - MEDIUM: connection: enable reading only once the connection is confirmed
8666 - MINOR: fd: add two flags ERR and SHUT to describe FD states
8667 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
8668 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
8669 - MINOR: stats: report the number of idle connections for each server
8670 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
8671 - BUILD/MINOR: auth: enabling for osx
8672 - BUG/MINOR: listener: Fix a possible null pointer dereference
8673 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
8674 - MINOR: stats: Add JSON export from the stats page
8675 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
8676 - MINOR: sample: Add UUID-fetch
8677 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
8678 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
8679 - BUG/MINOR: backend: Fix a possible null pointer dereference
8680 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
8681 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
8682 - BUILD: CI: temporarily disable ASAN
8683 - MINOR: htx: Add a flag on HTX message to report processing errors
8684 - MINOR: mux-h1: Report a processing error during output processing
8685 - MINOR: http-ana: Handle HTX errors first during message analysis
8686 - MINOR: http-ana: Remove err_state field from http_msg
8687 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
8688 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
8689 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
8690 - MINOR: istbuf: Add the function b_isteqi()
8691 - MINOR: log: Provide a function to emit a log for an application
8692 - MINOR: http: Add function to parse value of the header Status
8693 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
8694 - MINOR: h1-htx: Use the same function to copy message payload in all cases
8695 - MINOR: muxes/htx: Ignore pseudo header during message formatting
8696 - MINOR: fcgi: Add code related to FCGI protocol
8697 - MEDIUM: fcgi-app: Add FCGI application and filter
8698 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
8699 - MINOR: doc: Add documentation about the FastCGI support
8700 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
8701 - BUILD: CI: install golang-1.13 when building BoringSSL
8702 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
8703 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
8704 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
8705 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
8706 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
8707 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
8708 - MEDIUM: list: Separate "locked" list from regular list.
8709 - MINOR: mt_lists: Add new macroes.
8710 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
8711 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
8712 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
8713 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
8714 - TESTS: Add a stress-test for mt_lists.
8715 - BUILD: travis-ci: add PCRE2, SLZ build
8716 - BUG/MINOR: build: fix event ports (Solaris)
8717 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
8718 - OPTIM: listeners: use tasklets for the multi-queue rings
8719 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
8720 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
8721 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
8722 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
8723 - CLEANUP: task: remove impossible test
8724 - CLEANUP: task: cache the task_per_thread pointer
8725 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
8726 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
8727 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
8728 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
8729 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
8730 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
8731 - MINOR: h2/trace: report the frame type when known
8732 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
8733 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
8734 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
8735 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
8736 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
8737 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
8738 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
8739 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
8740 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
8741 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
8742 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
8743 - BUG/MEDIUM: spoe: Use a different engine-id per process
8744 - MINOR: spoe: Improve generation of the engine-id
8745 - MINOR: spoe: Support the async mode with several threads
8746 - MINOR: http: Add server name header from HTTP multiplexers
8747 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
8748 - MINOR: stats: Add the support of float fields in stats
8749 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
8750 - DOC: Fix documentation about the cli command to get resolver stats
8751 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
8752 - BUG/MINOR: stats: Add a missing break in a switch statement
8753 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
8754 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
8755 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
8756 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
8757 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
8758 - DOC: replace utf-8 quotes by ascii ones
8759 - BUG/MEDIUM: fd: HUP is an error only when write is active
8760 - BUG/MINOR: action: do-resolve does not yield on requests with body
8761 - Revert "MINOR: cache: allow caching of OPTIONS request"
8762
Willy Tarreaudb514072019-07-16 19:15:28 +020087632019/07/16 : 2.1-dev1
8764 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
8765 - DOC: this is a development branch again.
8766 - MEDIUM: Make 'block' directive fatal
8767 - MEDIUM: Make 'redispatch' directive fatal
8768 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
8769 - MEDIUM: Remove 'option independant-streams'
8770 - MINOR: sample: Add sha2([<bits>]) converter
8771 - MEDIUM: server: server-state global file stored in a tree
8772 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
8773 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
8774 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
8775 - MINOR: htx: Add the function htx_change_blk_value_len()
8776 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
8777 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
8778 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
8779 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
8780 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
8781 - BUILD: mworker: silence two printf format warnings around getpid()
8782 - BUILD: makefile: use :space: instead of digits to count commits
8783 - BUILD: makefile: adjust the sed expression of "make help" for solaris
8784 - BUILD: makefile: do not rely on shell substitutions to determine git version
8785 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
8786 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
8787 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
8788 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
8789 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
8790 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
8791 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
8792 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
8793 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
8794 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
8795 - BUG/MINOR: log: Detect missing sampling ranges in config
8796 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
8797 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
8798 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
8799 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
8800 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
8801 - BUG/MINOR: mworker/cli: don't output a \n before the response
8802 - BUG/MEDIUM: checks: unblock signals in external checks
8803 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
8804 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
8805 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
8806 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
8807 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
8808 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
8809 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
8810 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
8811 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
8812 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
8813 - BUG/MEDIUM: servers: Authorize tfo in default-server.
8814 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
8815 - MINOR: server: Add "no-tfo" option.
8816 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
8817 - MINOR: action: Add the return code ACT_RET_DONE for actions
8818 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
8819 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
8820 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
8821 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
8822 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
8823 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
8824 - DOC: contrib: spoa_server Add some hints for building spoa_server
8825 - DOC: Fix typo in intro.txt
8826 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
8827 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
8828 - MINOR: pools: release the pool's lock during the malloc/free calls
8829 - MINOR: pools: always pre-initialize allocated memory outside of the lock
8830 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
8831 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
8832 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
8833 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
8834 - BUG/MEDIUM: da: cast the chunk to string.
8835 - DOC: Fix typos and grammer in configuration.txt
8836 - CLEANUP: proto_tcp: Remove useless header inclusions.
8837 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
8838 - MINOR: task: introduce work lists
8839 - BUG/MAJOR: listener: fix thread safety in resume_listener()
8840 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
8841 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
8842 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
8843 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
8844 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
8845 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
8846 - MEDIUM: mworker-prog: Add user/group options to program section
8847 - REGTESTS: checks: tcp-check connect to multiple ports
8848 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
8849
Willy Tarreau9dc6b972019-06-16 21:49:47 +020088502019/06/16 : 2.1-dev0
8851 - exact copy of 2.0.0
8852
Willy Tarreauba236302019-06-16 20:00:26 +020088532019/06/16 : 2.0.0
8854 - MINOR: fd: Don't use atomic operations when it's not needed.
8855 - DOC: mworker-prog: documentation for the program section
8856 - MINOR: http: add a new "http-request replace-uri" action
8857 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
8858 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
8859 - MINOR: mworker: change formatting in uptime field of "show proc"
8860 - MINOR: mworker: add the HAProxy version in "show proc"
8861 - MINOR: doc: Remove -Ds option in man page
8862 - MINOR: doc: add master-worker in the man page
8863 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
8864 - BUILD: Silence gcc warning about unused return value
8865 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
8866 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
8867 - MINOR: doc: update the manpage and usage message about -S
8868 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
8869 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
8870 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
8871 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
8872 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
8873 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
8874 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
8875 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
8876 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
8877 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
8878 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
8879 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
8880 - MINOR: h2: Set flags about the request's scheme on the start-line
8881 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
8882 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
8883 - MEDIUM: server: server-state only rely on server name
8884 - CLEANUP: connection: rename the wait_event.task field to .tasklet
8885 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
8886 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
8887 - DOC: add some environment variables in section 2.3
8888 - BUILD: makefile: clarify the "help" output and list options
8889 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
8890 - BUG: tasks: fix bug introduced by latest scheduler cleanup
8891 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
8892 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
8893 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
8894 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
8895 - BUILD: makefile: further clarify the "help" output and list targets
8896 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
8897 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
8898 - DOC: update few references to the linux* targets and change them to linux-glibc
8899 - BUILD: makefile: detect and reject recently removed linux targets
8900 - BUILD: makefile: enable linux namespaces by default on linux
8901 - BUILD: makefile: enable TFO on linux platforms
8902 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
8903 - DOC: small updates to the CONTRIBUTING file
8904 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
8905 - CLEANUP: removed obsolete examples an move a few to better places
8906 - DOC: Fix typos in CONTRIBUTING
8907 - DOC: update the outdated ROADMAP file
8908 - DOC: create a BRANCHES file to explain the life cycle
8909 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
8910 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
8911 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
8912 - BUILD: tools: work around an internal compiler bug in gcc-3.4
8913 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
8914 - BUILD: makefile: enable USE_RT on Solaris
8915 - BUILD: makefile: do not use echo -n
8916 - DOC: mention a few common build errors in the INSTALL file
8917
Willy Tarreauca3551f2019-06-11 19:28:00 +020089182019/06/11 : 2.0-dev7
8919 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
8920 - MINOR: tools: add new bitmap manipulation functions
8921 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
8922 - MINOR: chunks: Make sure trash_size is only set once.
8923 - Revert "MINOR: chunks: Make sure trash_size is only set once."
8924 - MINOR: threads: serialize threads initialization
8925 - MINOR peers: data structure simplifications for server names dictionary cache.
8926 - DOC: peers: Update for dictionary cache entries for peers protocol.
8927 - MINOR: dict: Store the length of the dictionary entries.
8928 - MINOR: peers: A bit of optimization when encoding cached server names.
8929 - MINOR: peers: Optimization for dictionary cache lookup.
8930 - MEDIUM: tools: improve time format error detection
8931 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
8932 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
8933 - MINOR: threads: avoid clearing harmless twice in thread_release()
8934 - MEDIUM: threads: add thread_sync_release() to synchronize steps
8935 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
8936 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
8937 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
8938 - MEDIUM: init/threads: don't use spinlocks during the init phase
8939 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
8940 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
8941 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
8942 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
8943 - MINOR: htx: Add the function htx_move_blk_before()
8944 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
8945 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
8946 - MINOR: http: turn default error files to HTTP/1.1
8947 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
8948 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
8949 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
8950 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
8951 - MINOR: contrib/spoa_server: Add random IP score
8952 - DOC/MINOR: contrib/spoa_server: Fix typo in README
8953
Willy Tarreaub57f1092019-06-07 06:12:59 +020089542019/06/07 : 2.0-dev6
8955 - BUG/MEDIUM: connection: fix multiple handshake polling issues
8956 - MINOR: connection: also stop receiving after a SOCKS4 response
8957 - MINOR: mux-h1: don't try to recv() before the connection is ready
8958 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
8959 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
8960 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
8961 - CONTRIB: debug: add 4 missing connection/conn_stream flags
8962 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
8963 - MINOR: server: increase the default pool-purge-delay to 5 seconds
8964 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
8965 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
8966 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
8967 - BUILD: task: fix a build warning when threads are disabled
8968 - CLEANUP: peers: Remove tabs characters.
8969 - CLEANUP: peers: Replace hard-coded values by macros.
8970 - BUG/MINOR: peers: Wrong stick-table update message building.
8971 - MINOR: dict: Add dictionary new data structure.
8972 - MINOR: peers: Add a LRU cache implementation for dictionaries.
8973 - MINOR: stick-table: Add "server_name" new data type.
8974 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
8975 - MINOR: proxy: Add a "server by name" tree to proxy.
8976 - MINOR: server: Add a dictionary for server names.
8977 - MINOR: stream: Stickiness server lookup by name.
8978 - MINOR: peers: Make peers protocol support new "server_name" data type.
8979 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
8980 - REGTEST: Add a basic server by name stickiness reg test.
8981 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
8982 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
8983 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
8984 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
8985 - BUILD: travis-ci improvements
8986 - MINOR: SSL: add client/server random sample fetches
8987 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
8988 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
8989 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
8990 - MEDIUM: mux-h1: refactor output processing
8991 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
8992 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
8993 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
8994 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
8995 - MEDIUM: htx: Add the parsing of trailers of chunked messages
8996 - MINOR: htx: Don't use end-of-data blocks anymore
8997 - BUG/MINOR: mux-h1: Don't send more data than expected
8998 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
8999 - BUG/MINOR: peers: Wrong "server_name" decoding.
9000 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
9001 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
9002 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
9003 - MEDIUM: ssl: Handle subscribe by itself.
9004 - MINOR: ssl: Make ssl_sock_handshake() static.
9005 - MINOR: connections: Add a new xprt method, remove_xprt.
9006 - MINOR: connections: Add a new xprt method, add_xprt().
9007 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
9008 - MEDIUM: connections: Remove CONN_FL_SOCK*
9009 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
9010 - BUG/MINOR: peers: Wrong server name parsing.
9011 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
9012 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
9013 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
9014 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
9015 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
9016 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
9017 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
9018 - MEDIUM: stream: re-arrange the connection setup status reporting
9019 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
9020 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
9021 - MEDIUM: stream: rearrange the events to remove the loop
9022 - MEDIUM: stream: only loop on flags relevant to the analysers
9023 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
9024 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
9025 - BUILD: peers: fix a build warning about an incorrect intiialization
9026 - BUG/MINOR: time: make sure only one thread sets global_now at boot
9027 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
9028
Willy Tarreauabc874e2019-06-02 12:06:08 +020090292019/06/02 : 2.0-dev5
9030 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
9031 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
9032 - BUILD: watchdog: condition it to USE_RT
9033 - MINOR: raw_sock: report global traffic statistics
9034 - MINOR: stats: report the global output bit rate in human readable form
9035 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
9036 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
9037 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
9038 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
9039 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
9040 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
9041 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
9042 - DOC: fix typos
9043 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
9044 - OPTIM: freq-ctr: don't take the date lock for most updates
9045 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
9046 - CLEANUP: debug: remove the TRACE() macro
9047 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
9048 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
9049 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
9050 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
9051 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
9052 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
9053 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
9054 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
9055 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
9056 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
9057 - BUILD: ssl: fix latest LibreSSL reg-test error
9058 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
9059 - MINOR: cli/activity: add 3 general purpose counters in development mode
9060 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
9061 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
9062 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
9063 - MEDIUM: config: now alert when two servers have the same name
9064 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
9065 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
9066 - MINOR: htx: Store the head position instead of the wrap one
9067 - MINOR: htx: Store start-line block's position instead of address of its payload
9068 - MINOR: htx: Add functions to get the first block of an HTX message
9069 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
9070 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
9071 - CLEANUP: htx: Remove unused function htx_get_stline()
9072 - MINOR: http/htx: Use sl_pos directly to replace the start-line
9073 - MEDIUM: http/htx: Perform analysis relatively to the first block
9074 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
9075 - MINOR: htx: Add function htx_get_max_blksz()
9076 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
9077 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
9078 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
9079 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
9080 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
9081 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
9082 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
9083 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
9084 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
9085 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
9086 - MEDIUM: htx: 1xx messages are now part of the final reponses
9087 - MINOR: channel/htx: Add function to forward headers of an HTX message
9088 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
9089 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
9090 - MEDIUM: htx: Store the first block position instead of the start-line one
9091 - MINOR: stats/htx: don't use the first block position but the head one
9092 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
9093 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
9094 - MEDIUM: filters/htx: Filter body relatively to the first block
9095 - MINOR: htx: Optimize htx_drain() when all data are drained
9096 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
9097 - MINOR: htx: remove the unused function htx_find_blk()
9098 - MINOR: htx: Remove support of pseudo headers because it is unused
9099 - BUG/MEDIUM: http: fix "http-request reject" when not final
9100 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
9101 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
9102 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
9103 - MINOR: htx: make htx_add_data() return the transmitted byte count
9104 - MEDIUM: htx: make htx_add_data() never defragment the buffer
9105 - MINOR: activity: write totals on the "show activity" output
9106 - MINOR: activity: report totals and average separately
9107 - MEDIUM: poller: separate the wait time from the wake events
9108 - MINOR: activity: report the number of failed pool/buffer allocations
9109 - MEDIUM: buffers: relax the buffer lock a little bit
9110 - MINOR: task: turn the WQ lock to an RW_LOCK
9111 - MEDIUM: task: don't grab the WR lock just to check the WQ
9112 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
9113 - MEDIUM: sessions: Introduce session flags.
9114 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
9115 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
9116 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
9117 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
9118 - MEDIUM: tasks: Get rid of active_tasks_mask.
9119 - MEDIUM: connection: Upstream SOCKS4 proxy support
9120 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
9121 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
9122
Willy Tarreau56740692019-05-22 20:48:33 +020091232019/05/22 : 2.0-dev4
9124 - BUILD: enable freebsd builds on cirrus-ci
9125 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
9126 - MEDIUM: Make 'option forceclose' actually warn
9127 - MEDIUM: Make 'resolution_pool_size' directive fatal
9128 - DOC: management: place "show activity" at the right place
9129 - MINOR: cli/activity: show the dumping thread ID starting at 1
9130 - MINOR: task: export global_task_mask
9131 - MINOR: cli/debug: add a thread dump function
9132 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
9133 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
9134 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
9135 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
9136 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
9137 - BUG/MINOR: debug: don't check the call date on tasklets
9138 - MINOR: thread: implement ha_thread_relax()
9139 - MINOR: task: put barriers after each write to curr_task
9140 - MINOR: task: always reset curr_task when freeing a task or tasklet
9141 - MINOR: stream: detach the stream from its own task on stream_free()
9142 - MEDIUM: debug/threads: implement an advanced thread dump system
9143 - REGTEST: extend the check duration on tls_health_checks and mark it slow
9144 - DOC: fix "successful" typo
9145 - MINOR: init: setenv HAPROXY_CFGFILES
9146 - MINOR: threads/init: synchronize the threads startup
9147 - MEDIUM: init/mworker: make the pipe register function a regular initcall
9148 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
9149 - CLEANUP: threads: remove the now unused START_LOCK label
9150 - MINOR: init/threads: make the global threads an array of structs
9151 - MINOR: threads: add each thread's clockid into the global thread_info
9152 - CLEANUP: stream: remove an obsolete debugging test
9153 - MINOR: tools: add dump_hex()
9154 - MINOR: debug: implement ha_panic()
9155 - MINOR: debug/cli: add some debugging commands for developers
9156 - MINOR: tools: provide a may_access() function and make dump_hex() use it
9157 - MINOR: debug: make ha_panic() report threads starting at 1
9158 - REORG: compat: move some integer limit definitions from standard.h to compat.h
9159 - REORG: threads: move the struct thread_info from global.h to hathreads.h
9160 - MINOR: compat: make sure to always define clockid_t
9161 - MINOR: threads: always place the clockid in the struct thread_info
9162 - MINOR: threads: add a thread-local thread_info pointer "ti"
9163 - MINOR: time: move the cpu, mono, and idle time to thread_info
9164 - MINOR: time: add a function to retrieve another thread's cputime
9165 - MINOR: debug: report each thread's cpu usage in "show thread"
9166 - BUILD: threads: only assign the clock_id when supported
9167 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
9168 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
9169 - MAJOR: polling: add event ports support (Solaris)
9170 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
9171 - CLEANUP: time: refine the test on _POSIX_TIMERS
9172 - MINOR: compat: define a new empty type empty_t for non-implemented fields
9173 - CLEANUP: time: switch clockid_t to empty_t when not available
9174 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
9175 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
9176 - MINOR: debug: switch to SIGURG for thread dumps
9177 - CLEANUP: threads: really move thread_info to hathreads.c
9178 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
9179 - CLEANUP: debug: always report harmless/want_rdv even without threads
9180 - MINOR: threads: implement ha_tkill() and ha_tkillall()
9181 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
9182 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
9183 - MINOR: debug: dump streams when an applet, iocb or stream is known
9184 - MINOR: threads: add a "stuck" flag to the thread_info struct
9185 - MINOR: threads: add a timer_t per thread in thread_info
9186 - MAJOR: watchdog: implement a thread lockup detection mechanism
9187 - MINOR: stream: remove the cpu time detection from process_stream()
9188 - MINOR: connection: report the mux names in "haproxy -vv"
9189 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
9190 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
9191 - MINOR: WURFL: call header_retireve_callback() in dummy library
9192 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
9193 - MINOR: WURFL: shows log messages during module initialization
9194 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
9195 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
9196 - MEDIUM: WURFL: HTX awareness.
9197 - MINOR: WURFL: module version bump to 2.0
9198 - MINOR: WURFL: do not emit warnings when not configured
9199 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
9200 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
9201 - BUILD: travis: add sanitizers to travis-ci builds
9202 - BUILD: time: remove the test on _POSIX_C_SOURCE
9203 - CLEANUP: build: rename some build macros to use the USE_* ones
9204 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
9205 - BUG/MEDIUM: dns: make the port numbers unsigned
9206 - MEDIUM: config: deprecate the antique req* and rsp* commands
9207
Willy Tarreaua257a9b2019-05-15 16:51:48 +020092082019/05/15 : 2.0-dev3
9209 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
9210 - CLEANUP: peers: remove useless annoying tabulations.
9211 - CLEANUP: peers: replace timeout constants by macros.
9212 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
9213 - DOC: The option httplog is no longer valid in a backend.
9214 - DOC: peers: Peers protocol documentation update.
9215 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
9216 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
9217 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
9218 - BUILD: Makefile: remove outdated support for dlmalloc
9219 - BUILD: Makefile: consider a variable's origin and not its value for the options list
9220 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
9221 - BUILD: Makefile: shorten default settings declaration
9222 - BUILD: Makefile: clean up the target declarations
9223 - BUILD: report the whole feature set with their status in haproxy -vv
9224 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
9225 - REGTEST: script: make the script use the new features list
9226 - REGTEST: script: remove platform-specific assigments of OPTIONS
9227 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
9228 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
9229 - BUILD/MINOR: listener: Silent a few signedness warnings.
9230 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
9231 - BUG/MEDIUM: mworker: don't free the wrong child when not found
9232 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
9233 - BUG/MAJOR: checks: segfault during tcpcheck_main
9234 - BUILD: makefile: work around an old bug in GNU make-3.80
9235 - BUILD: makefile: work around another bug in make 3.80
9236 - BUILD: http: properly mark some struct as extern
9237 - BUILD: chunk: properly declare pool_head_trash as extern
9238 - BUILD: cache: avoid a build warning with some compilers/linkers
9239 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
9240 - MINOR: tools: add an unsetenv() implementation
9241 - BUILD: re-implement an initcall variant without using executable sections
9242 - BUILD: use inttypes.h instead of stdint.h
9243 - BUILD: connection: fix naming of ip_v field
9244 - BUILD: makefile: fix build of IPv6 header on aix51
9245 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
9246 - BUILD: define unsetenv on AIX 5.1
9247 - BUILD: Makefile: disable shared cache on AIX 5.1
9248 - MINOR: ssl: Add aes_gcm_dec converter
9249 - REORG: mworker: move serializing functions to mworker.c
9250 - REORG: mworker: move signals functions to mworker.c
9251 - REORG: mworker: move IPC functions to mworker.c
9252 - REORG: mworker: move signal handlers and related functions
9253 - REORG: mworker: move mworker_cleanlisteners to mworker.c
9254 - MINOR: mworker: calloc mworker_proc structures
9255 - MINOR: mworker: don't use children variable anymore
9256 - MINOR: cli: export cli_parse_default() definition in cli.h
9257 - REORG: mworker/cli: move CLI functions to mworker.c
9258 - MEDIUM: mworker-prog: implement program for master-worker
9259 - MINOR: mworker/cli: show programs in 'show proc'
9260 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
9261 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
9262 - MINOR: cli: export HAPROXY_CLI environment variable
9263 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
9264 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
9265 - REGTEST: http-capture/h00000: Relax a regex matching the log message
9266 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
9267 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
9268 - REGTEST: log/b00000: Be sure the client always hits its timeout
9269 - REGTEST: lua/b00003: Relax the regex matching the log message
9270 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
9271 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
9272 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
9273 - BUG/MEDIUM: htx: fix random premature abort of data transfers
9274 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
9275 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
9276 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
9277 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
9278 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
9279 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
9280 - MINOR: skip get_gmtime where tm is unused
9281 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
9282 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
9283 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
9284 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
9285 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
9286 - BUG/MINOR: listener: renice the accept ring processing task
9287 - MINOR: cli/listener: report the number of accepts on "show activity"
9288 - MINOR: cli/activity: report the accept queue sizes in "show activity"
9289 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
9290 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
9291 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
9292 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
9293 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
9294 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
9295 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
9296 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
9297 - MINOR: mux-h1: Simplify handling of 1xx responses
9298 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
9299 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
9300 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
9301 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
9302 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
9303 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
9304 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
9305 - MINOR: stream: Set a flag when the stream uses the HTX
9306 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
9307 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
9308 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
9309 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
9310 - MEDIUM: muxes: Add an optional input buffer during mux initialization
9311 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
9312 - MEDIUM: muxes: Be prepared to don't own connection during the release
9313 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
9314 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
9315 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
9316 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
9317 - MAJOR: htx: Enable the HTX mode by default for all proxies
9318 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
9319 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
9320 - CLEANUP: task: do not export rq_next anymore
9321 - MEDIUM: tasks: improve fairness between the local and global queues
9322 - MEDIUM: tasks: only base the nice offset on the run queue depth
9323 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
9324 - BUG/MEDIUM: map: Fix memory leak in the map converter
9325 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
9326 - BUILD: task/thread: fix single-threaded build of task.c
9327 - BUILD: cli/threads: fix build in single-threaded mode
9328 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
9329 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
9330 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
9331 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
9332 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
9333 - BUILD: address a few cases of "static <type> inline foo()"
9334 - BUILD: do not specify "const" on functions returning structs or scalars
9335 - BUILD: htx: fix a used uninitialized warning on is_cookie2
9336 - MINOR: peers: Add a new command to the CLI for peers.
9337 - DOC: update for "show peers" CLI command.
9338 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
9339 - MEDIUM: mworker: store the leaving state of a process
9340 - MEDIUM: mworker-prog: implements 'option start-on-reload'
9341 - CLEANUP: mworker: remove the type field in mworker_proc
9342 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
9343 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
9344 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
9345 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
9346 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
9347 - BUG/MINOR: mworker: mworker_kill should apply on every children
9348 - BUG/MINOR: mworker: don't exit with an ambiguous value
9349 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
9350 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
9351 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
9352 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
9353 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
9354 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
9355 - MINOR: mux-h1: Handle read0 during TCP splicing
9356 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
9357 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
9358 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
9359 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
9360 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
9361 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
9362 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
9363 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
9364 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
9365 - BUG/MEDIUM: applets: Don't use task_in_rq().
9366 - BUG/MAJOR: task: make sure never to delete a queued task
9367 - MINOR: task/thread: factor out a wake-up condition
9368 - CLEANUP: task: remain consistent when using the task's handler
9369 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
9370 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
9371 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
9372 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
9373 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
9374 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
9375 - BUG/MINOR: mworker: disable busy polling in the master process
9376 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
9377 - MEDIUM: ssl: Give ssl_sock its own context.
9378 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
9379 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
9380 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
9381 - MEDIUM: ssl: provide our own BIO.
9382 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
9383 - MINOR: peers: adds counters on show peers about tasks calls.
9384 - MEDIUM: enable travis-ci builds
9385 - MINOR: fd: Add a counter of used fds.
9386 - MEDIUM: connections: Add a way to control the number of idling connections.
9387 - BUG/MEDIUM: maps: only try to parse the default value when it's present
9388 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
9389 - REGTEST: Missing REQUIRE_VERSION declarations.
9390 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
9391 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
9392 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
9393 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
9394 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
9395 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
9396 - MINOR: gcc: Fix a silly gcc warning in connect_server()
9397 - MINOR: ssl/cli: async fd io-handlers printable on show fd
9398 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
9399 - BUILD: add USE_WURFL to the list of known build options
9400 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
9401 - BUILD: wurfl: build fix for 1.9/2.0 code base
9402 - CLEANUP: wurfl: removed deprecated methods
9403 - DOC: wurfl: added point of contact in MAINTAINERS file
9404 - MINOR: wurfl: enabled multithreading mode
9405 - MINOR: contrib: dummy wurfl library
9406 - MINOR: dns: dns_requester structures are now in a memory pool
9407 - MINOR: dns: move callback affection in dns_link_resolution()
9408 - MINOR: obj_type: new object type for struct stream
9409 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
9410 - MINOR: log: Extract some code to send syslog messages.
9411 - REGTEST: replace LEVEL option by a more human readable one.
9412 - REGTEST: rename the reg test files.
9413 - REGTEST: adapt some reg tests after renaming.
9414 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
9415 - BUG/MAJOR: stream: Missing DNS context initializations.
9416 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
9417 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
9418 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
9419 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
9420 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
9421 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
9422 - CLEANUP: task: report calls as unsigned in show sess
9423 - MINOR: tasks/activity: report the context switch and task wakeup rates
9424 - MINOR: stream: measure and report a stream's call rate in "show sess"
9425 - MINOR: applet: measure and report an appctx's call rate in "show sess"
9426 - BUILD: extend Travis CI config to support more platforms
9427 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
9428 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
9429 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
9430 - BUILD: travis: remove the "allow_failures" entry
9431 - BUG/MINOR: activity: always initialize the profiling variable
9432 - MINOR: activity: make the profiling status per thread and not global
9433 - MINOR: activity: enable automatic profiling turn on/off
9434 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
9435 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
9436 - MINOR: connection: make the debugging helper functions safer
9437 - MINOR: stream/debug: make a stream dump and crash function
9438 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
9439 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
9440 - MEDIUM: streams: measure processing time and abort when detecting bugs
9441 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
9442 - MEDIUM: da: HTX mode support.
9443 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
9444 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
9445 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
9446 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
9447 - DOC: contrib/modsecurity: Typos and fix the reject example
9448 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
9449 - MINOR: log: Add "sample" new keyword to "log" lines.
9450 - MINOR: log: Enable the log sampling and load-balancing feature.
9451 - DOC: log: Document the sampling and load-balancing logging feature.
9452 - REGTEST: Add a new reg test for log load-balancing feature.
9453 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
9454 - REGTEST: Make this reg test be Linux specific.
9455 - CLEANUP: task: move the task_per_thread definition to task.h
9456 - MINOR: activity: report context switch counts instead of rates
9457 - MINOR: threads: Implement HA_ATOMIC_LOAD().
9458 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
9459 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
9460 - MINOR: config: Test validity of tune.maxaccept during the config parsing
9461 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
9462 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
9463 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
9464 - BUG/MINOR: haproxy: fix rule->file memory leak
9465 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
9466 - BUG/MINOR: checks: free memory allocated for tasklets
9467 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
9468 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
9469 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
9470 - MINOR: threads: flatten the per-thread cpu-map
9471 - MINOR: init/threads: remove the useless tids[] array
9472 - MINOR: init/threads: make the threads array global
9473 - BUG/MEDIUM: ssl: Use the early_data API the right way.
9474 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
9475 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
9476 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
9477 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
9478 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
9479 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
9480 - BUG/MINOR: logs/threads: properly split the log area upon startup
9481 - BUILD: extend travis-ci matrix
9482 - CLEANUP: Remove appsession documentation
9483 - DOC: Fix typo in keyword matrix
9484 - BUILD: remove "build_libressl" duplicate declaration
9485 - BUILD: travis-ci: get back to osx without openssl support
9486 - BUILD: enable several LibreSSL hacks, including
9487 - BUILD: temporarily mark LibreSSL builds as allowed to fail
9488 - BUILD: travis: TMPDIR replacement.
9489 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
9490 - MINOR: doc: Document allow-0rtt on the server line.
9491 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
9492 - MEDIUM: proto: Change the prototype of the connect() method.
9493 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
9494 - MINOR: config: Extract the code of "stick-table" line parsing.
9495 - BUILD/MINOR: stick-table: Compilation fix.
9496 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
9497 - MINOR: stick-tables: Add peers process binding computing.
9498 - MINOR: stick-table: Add prefixes to stick-table names.
9499 - MINOR: peers: Do not emit global stick-table names.
9500 - DOC: Update for "table" lines in "peers" section.
9501 - REGTEST: Add reg tests for "table" lines in "peers" sections.
9502 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
9503 - REGTEST: make the tls_health_checks test much faster
9504 - REGTEST: make the "table in peers" test require v2.0
9505 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
9506 - BUG/MEDIUM: h2/htx: always fail on too large trailers
9507 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
9508 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
9509 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
9510 - REGTEST: Flag some slow reg tests.
9511 - REGTEST: Reg tests file renaming.
9512 - REGTEST: Wrong renaming for one reg test.
9513 - REGTEST: Wrong assumption in IP:port logging test.
9514 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
9515 - MINOR: systemd: Use the variables from /etc/default/haproxy
9516 - MINOR: systemd: Make use of master socket in systemd unit
9517 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
9518 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
9519 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
9520 - CLEANUP: task: remove unneeded tests before task_destroy()
9521 - MINOR: mworker: support a configurable maximum number of reloads
9522 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
9523 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
9524 - BUG/MINOR: mux-h1: Fix the parsing of trailers
9525 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
9526 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
9527 - MINOR: htx: Don't try to append a trailer block with the previous one
9528 - MINOR: htx: Remove support for unused OOB HTX blocks
9529 - BUILD: travis-ci bugfixes and improvements
9530 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
9531 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
9532 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
9533 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
9534 - BUILD: ssl: make libressl use its own version numbers
9535 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
9536 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
9537 - BUILD: ssl: fix libressl build again after aes-gcm-enc
9538 - REORG: ssl: move openssl-compat from proto to common
9539 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
9540 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
9541 - CLEANUP: ssl: make inclusion of openssl headers safe
9542 - BUILD: add BoringSSL to travis-ci build matrix
9543 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
9544 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
9545 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
9546 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
9547 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
9548 - MEDIUM: streams: Add a new http action, disable-l7-retry.
9549 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
9550 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
9551 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
9552 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
9553 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
9554 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
9555 - BUILD: threads: fix again the __ha_cas_dw() definition
9556 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
9557 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
9558 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
9559 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
9560 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
9561 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
9562 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
9563 - BUG/MAJOR: ssl: segfault upon an heartbeat request
9564 - MINOR: spoa-server: Clone the v1.7 spoa-example project
9565 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
9566 - MINOR: spoa-server: Externalise debug functions
9567 - MINOR: spoe-server: rename "worker" functions
9568 - MINOR: spoa-server: Replace the thread init system by processes
9569 - MINOR: spoa-server: With debug mode, start only one process
9570 - MINOR: spoa-server: Allow registering external processes
9571 - MINOR: spoa-server: Allow registering message processors
9572 - MINOR: spoa-server: Load files
9573 - MINOR: spoa-server: Prepare responses
9574 - MINOR: spoa-server: Execute registered callbacks
9575 - MINOR: spoa-server: Add Lua processing
9576 - MINOR: spoa-server: Add python
9577 - MINOR/DOC: spoe-server: Add documentation
9578 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
9579 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
9580 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
9581 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
9582 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
9583 - CLEANUP: connection: remove the handle field from the wait_event struct
9584 - BUG/MINOR: log: Wrong log format initialization.
9585 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
9586 - BUG/MINOR: mworker: use after free when the PID not assigned
9587 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
9588 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
9589 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
9590 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
9591 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
9592 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
9593 - MINOR: mux-h2: add macros to check multiple stream states at once
9594 - MINOR: mux-h2: stop relying on CS_FL_REOS
9595 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
9596 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
9597 - MINOR: debug: add a new BUG_ON macro
9598 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
9599 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
9600 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
9601 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
9602
Willy Tarreau6e893b92019-03-26 05:40:51 +010096032019/03/26 : 2.0-dev2
9604 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
9605 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
9606 - MINOR: lists: Implement locked variations.
9607 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
9608 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
9609 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
9610 - MINOR: cfgparse: Add a cast to make gcc happier.
9611 - BUG/MEDIUM: standard: Wrong reallocation size.
9612 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
9613 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
9614 - MAJOR: config: disable support for nbproc and nbthread in parallel
9615 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
9616 - MAJOR: listener: do not hold the listener lock in listener_accept()
9617 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
9618 - MINOR: tools: implement functions to look up the nth bit set in a mask
9619 - MINOR: listener: pre-compute some thread counts per bind_conf
9620 - MINOR: listener: implement multi-queue accept for threads
9621 - MAJOR: listener: use the multi-queue for multi-thread listeners
9622 - MINOR: activity: add accept queue counters for pushed and overflows
9623 - MINOR: config: add global tune.listener.multi-queue setting
9624 - MAJOR: threads: enable one thread per CPU by default
9625 - DOC: update management.txt to reflect that threads are used by default
9626 - BUG/MINOR: config: don't over-count the global maxsock value
9627 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
9628 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
9629 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
9630 - MINOR: list: make the delete and pop operations idempotent
9631 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
9632 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
9633 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
9634 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
9635 - MINOR: listener: introduce listener_backlog() to report the backlog value
9636 - MINOR: listener: do not needlessly set l->maxconn
9637 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
9638 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
9639 - MINOR: peers: Add a message for heartbeat.
9640 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
9641 - BUG/MINOR: init: never lower rlim_fd_max
9642 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
9643 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
9644 - MINOR: init: make the maxpipe computation more accurate
9645 - MINOR: init: move some maxsock updates earlier
9646 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
9647 - REGTEST: fix a spurious "nbthread 4" in the connection test
9648 - DOC: update the text related to the global maxconn value
9649 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
9650 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
9651 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
9652 - MINOR: htx: unconditionally handle parsing errors in requests or responses
9653 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
9654 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
9655 - MINOR: sample: Code factorization "ungrpc" converter.
9656 - MINOR: sample: Rework gRPC converter code.
9657 - CLEANUP: wurfl: remove dead, broken and unmaintained code
9658 - MINOR: config: relax the range checks on cpu-map
9659 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
9660 - MINOR: sample: Extract some protocol buffers specific code.
9661 - DOC: Remove tabs and fixed punctuation.
9662 - MINOR: sample: Add a protocol buffers specific converter.
9663 - REGTEST: Peers reg tests.
9664 - REGTEST: Enable reg tests with HEAD HTTP method usage.
9665 - MINOR: lists: add a LIST_DEL_INIT() macro
9666 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
9667 - MINOR: listener: improve incoming traffic distribution
9668 - MINOR: tools: implement my_flsl()
9669 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
9670 - CLEANUP: listener: remove old thread bit mapping
9671 - MINOR: listener: move thr_idx from the bind_conf to the listener
9672 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
9673 - BUG/MAJOR: config: Wrong maxconn adjustment.
9674 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
9675 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
9676 - MINOR: fd: Remove debugging code.
9677 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
9678 - MINOR: threads: Implement __ha_barrier_atomic*.
9679 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
9680 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
9681 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
9682 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
9683 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
9684 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
9685 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
9686 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
9687 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
9688 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
9689 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
9690 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
9691 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
9692 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
9693 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
9694 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
9695 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
9696 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
9697 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
9698 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
9699 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
9700 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
9701 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
9702 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
9703 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
9704 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
9705 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
9706 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
9707 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
9708 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
9709 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
9710 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
9711 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
9712 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
9713 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
9714 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
9715 - MEDIUM: list: Remove useless barriers.
9716 - MEDIUM: list: Use _HA_ATOMIC_*
9717 - MEDIUM: connections: Use _HA_ATOMIC_*
9718 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
9719 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
9720 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
9721 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
9722 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
9723 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
9724 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
9725 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
9726 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
9727 - MINOR: stats: Move stuff about the stats status codes in stats files
9728 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
9729 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
9730 - BUILD: listener: shut up a build warning when threads are disabled
9731 - BUILD: Makefile: allow the reg-tests target to be verbose
9732 - BUILD: Makefile: resolve LEVEL before calling run-regtests
9733 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
9734 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
9735 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
9736 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
9737 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
9738 - MINOR: muxes: Report the Last read with a dedicated flag
9739 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
9740 - BUILD: tools: fix a build warning on some 32-bit archs
9741 - MINOR: init: report the list of optionally available services
9742 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
9743 - BUG/MINOR: cache: Fully consume large requests in the cache applet
9744 - BUG/MINOR: stats: Fully consume large requests in the stats applet
9745 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
9746 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
9747 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
9748 - MINOR: stats/cache: Handle the header Expect when applets are registered
9749 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
9750 - CLEANUP: cache: don't export http_cache_applet anymore
9751 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
9752 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
9753 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
9754 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
9755 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
9756 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
9757 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
9758 - CLEANUP: mux-h2: add some comments to help understand the code
9759 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
9760 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
9761 - BUG/MEDIUM: h2: Try to be fair when sending data.
9762 - BUG/MINOR: proto-http: Don't forward request body anymore on error
9763 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
9764 - MINOR: connection: and new flag to mark end of input (EOI)
9765 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
9766 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
9767 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
9768 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
9769 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
9770 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
9771 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
9772 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
9773 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
9774 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
9775 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
9776 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
9777 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
9778 - CONTRIB: debug: report the CS and CF's EOI flags
9779 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
9780
Willy Tarreau6c1b6672019-02-26 16:43:49 +010097812019/02/26 : 2.0-dev1
9782 - MINOR: mux-h2: only increase the connection window with the first update
9783 - REGTESTS: remove the expected window updates from H2 handshakes
9784 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
9785 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
9786 - MEDIUM: mux-h2: remove padlen during headers phase
9787 - MINOR: h2: add a bit-based frame type representation
9788 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
9789 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
9790 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
9791 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
9792 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
9793 - MINOR: buffers: add a new b_move() function
9794 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
9795 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
9796 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
9797 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
9798 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
9799 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
9800 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
9801 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
9802 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
9803 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
9804 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
9805 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
9806 - MEDIUM: servers: Be smarter when switching connections.
9807 - MEDIUM: sessions: Keep track of which connections are idle.
9808 - MINOR: payload: add sample fetch for TLS ALPN
9809 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
9810 - MINOR: channel: Add the function channel_add_input
9811 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
9812 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
9813 - BUG/MAJOR: htx: Return the good block address after a defrag
9814 - MINOR: lb: allow redispatch when using consistent hash
9815 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
9816 - BUG/MEDIUM: mux-h2: always restart reading if data are available
9817 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
9818 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
9819 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
9820 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
9821 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
9822 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
9823 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
9824 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
9825 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
9826 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
9827 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
9828 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
9829 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
9830 - MINOR: mux-h2: remove a misleading and impossible test
9831 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
9832 - MINOR: mux-h2: check for too many streams only for idle streams
9833 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
9834 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
9835 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
9836 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
9837 - MINOR: htx: add a new function to add a block without filling it
9838 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
9839 - MEDIUM: mux-h2: pass trailers to HTX
9840 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
9841 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
9842 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
9843 - MINOR: h1: make the H1 headers block parser able to parse headers only
9844 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
9845 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
9846 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
9847 - MINOR: mux-h1: Add the subscription events in "show fd" command
9848 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
9849 - BUG/MINOR: cache/htx: Be sure to count partial trailers
9850 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
9851 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
9852 - MINOR: connections: Remove a stall comment.
9853 - BUG/MEDIUM: cli: make "show sess" really thread-safe
9854 - BUILD: add a new file "version.c" to carry version updates
9855 - MINOR: stream/htx: add the HTX flags output in "show sess all"
9856 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
9857 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
9858 - BUG/MINOR: lua: bad args are returned for Lua actions
9859 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
9860 - MINOR: htx: Add an helper function to get the max space usable for a block
9861 - MINOR: channel/htx: Add HTX version for some helper functions
9862 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
9863 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
9864 - DOC: regtest: make it clearer what the purpose of the "broken" series is
9865 - REGTEST: mailers: add new test for 'mailers' section
9866 - REGTEST: Add a reg test for health-checks over SSL/TLS.
9867 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
9868 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
9869 - BUG/MINOR: compression: Disable it if another one is already in progress
9870 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
9871 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
9872 - REGTEST: Add some informatoin to test results.
9873 - MINOR: htx: Add a function to truncate all blocks after a specific offset
9874 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
9875 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
9876 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
9877 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
9878 - DOC: http-request cache-use / http-response cache-store expects cache name
9879 - REGTEST: "capture (request|response)" regtest.
9880 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
9881 - REGTEST: filters: add compression test
9882 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
9883 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
9884 - DOC: Be a bit more explicit about allow-0rtt security implications.
9885 - MINOR: mux-h1: make the mux_h1_ops struct static
9886 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
9887 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
9888 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
9889 - REGTESTS: test case for map_regm commit 271022150d
9890 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
9891 - REGTESTS: Basic tests for using maps to redirect requests / select backend
9892 - DOC: REGTESTS README varnishtest -Dno-htx= define.
9893 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
9894 - MINOR: checks: Store the proxy in checks.
9895 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
9896 - REGTEST: Switch to vtest.
9897 - REGTEST: Adapt reg test doc files to vtest.
9898 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
9899 - BUG/MINOR: base64: dec func ignores padding for output size checking
9900 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
9901 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
9902 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
9903 - BUG/MINOR: backend: balance uri specific options were lost across defaults
9904 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
9905 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
9906 - MINOR: backend: make headers and RDP cookie also use arg_str/len
9907 - MINOR: backend: add new fields in lbprm to store more LB options
9908 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
9909 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
9910 - MINOR: backend: move hash_balance_factor out of chash
9911 - MEDIUM: backend: move all LB algo parameters into an union
9912 - MINOR: backend: make the random algorithm support a number of draws
9913 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
9914 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
9915 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
9916 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
9917 - DOC: add a missing space in the documentation for bc_http_major
9918 - REGTEST: checks basic stats webpage functionality
9919 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
9920 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
9921 - DOC: add github issue templates
9922 - MINOR: cfgparse: Extract some code to be re-used.
9923 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
9924 - CLEANUP: cfgparse: Code reindentation.
9925 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
9926 - MINOR: cfgparse: Rework peers frontend init.
9927 - MINOR: cfgparse: Simplication.
9928 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
9929 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
9930 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
9931 - DOC: peers: SSL/TLS documentation for "peers"
9932 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
9933 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
9934 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
9935 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
9936 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
9937 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
9938 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
9939 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
9940 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
9941 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
9942 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
9943 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
9944 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
9945 - MINOR: h2: declare new sets of frame types
9946 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
9947 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
9948 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
9949 - BUG/MINOR: hpack: return a compression error on invalid table size updates
9950 - MINOR: server: make sure pool-max-conn is >= -1
9951 - BUG/MINOR: stream: take care of synchronous errors when trying to send
9952 - CLEANUP: server: fix indentation mess on idle connections
9953 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
9954 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
9955 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
9956 - MINOR: server: add a max-reuse parameter
9957 - MINOR: mux-h2: always consider a server's max-reuse parameter
9958 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
9959 - MINOR: stream: don't wait before retrying after a failed connection reuse
9960 - MEDIUM: h2: always parse and deduplicate the content-length header
9961 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
9962 - CLEANUP: h2: Remove debug printf in mux_h2.c
9963 - MINOR: cfgparse: make the process/thread parser support a maximum value
9964 - MINOR: threads: make MAX_THREADS configurable at build time
9965 - DOC: nbthread is no longer experimental.
9966 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
9967 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
9968 - BUG/MINOR: spoe: corrected fragmentation string size
9969 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
9970 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
9971 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
9972 - SCRIPTS: add the issue tracker URL to the announce script
9973 - MINOR: peers: Extract some code to be reused.
9974 - CLEANUP: peers: Indentation fixes.
9975 - MINOR: peers: send code factorization.
9976 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
9977 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
9978 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
9979 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
9980 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
9981 - CLEANUP: peers: Be more generic.
9982 - MINOR: peers: move error handling to reduce the size of the I/O handler.
9983 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
9984 - MINOR: peers: move send code to reduce the size of the I/O handler.
9985 - CLEANUP: peers: Remove useless statements.
9986 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
9987 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
9988 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
9989 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
9990 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
9991 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
9992 - CLEANUP: mux-h2: remove two useless but misleading assignments
9993 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
9994 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
9995 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
9996 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
9997 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
9998 - BUG/MEDIUM: peers: Handle mux creation failure.
9999 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
10000 - BUG/MEDIUM: compression: Rewrite strong ETags
10001 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
10002 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
10003 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
10004 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
10005 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
10006 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
10007 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
10008 - MINOR: h2: add a generic frame checker
10009 - MEDIUM: mux-h2: check the frame validity before considering the stream state
10010 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
10011 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
10012 - DOC: compression: Update the reasons for disabled compression
10013 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
10014 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
10015 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
10016 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
10017 - BUG/MEDIUM: peers: Peer addresses parsing broken.
10018 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
10019 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
10020 - BUG/MINOR: stream: don't close the front connection when facing a backend error
10021 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
10022 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
10023 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
10024 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
10025 - BUG/MINOR: server: fix logic flaw in idle connection list management
10026 - MINOR: mux-h2: max-concurrent-streams should be unsigned
10027 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
10028 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
10029 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
10030 - MINOR: xref: Add missing barriers.
10031 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
10032 - MINOR: debug: Add an option that causes random allocation failures.
10033 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
10034 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
10035 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
10036 - BUG/MINOR: backend: check srv_conn before dereferencing it
10037 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
10038 - BUG/MEDIUM: mux-h2: always set :authority on request output
10039 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
10040 - BUG/MINOR: threads: fix the process range of thread masks
10041 - BUG/MINOR: config: fix bind line thread mask validation
10042 - CLEANUP: threads: fix misleading comment about all_threads_mask
10043 - CLEANUP: threads: use nbits to calculate the thread mask
10044 - OPTIM: listener: optimize cache-line packing for struct listener
10045 - MINOR: tools: improve the popcount() operation
10046 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
10047 - MINOR: global: add proc_mask() and thread_mask()
10048 - MINOR: config: simplify bind_proc processing using proc_mask()
10049 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
10050 - BUG/MINOR: compression: properly report compression stats in HTX mode
10051 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
10052 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
10053 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
10054 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
10055 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
10056 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
10057 - DOC: ssl: Stop documenting ciphers example to use
10058 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
10059 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
10060 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
10061 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
10062 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
10063 - MINOR: config: make MAX_PROCS configurable at build time
10064 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
10065 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
10066 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
10067 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
10068 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
10069 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
10070 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
10071 - BUG/MAJOR: stream: avoid double free on unique_id
10072 - BUILD/MINOR: stream: avoid a build warning with threads disabled
10073 - BUILD/MINOR: tools: fix build warning in the date conversion functions
10074 - BUILD/MINOR: peers: remove an impossible null test in intencode()
10075 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
10076 - BUG/MEDIUM: peers: Missing peer initializations.
10077 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
10078 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
10079 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
10080 - BUILD/MEDIUM: initcall: Fix build on MacOS.
10081 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
10082 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
10083 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
10084 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
10085 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
10086 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
10087 - MINOR: mux-h2: Set HTX extra value when possible
10088 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
10089 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
10090 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
10091 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
10092 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
10093 - MINOR: fd: add a new my_closefrom() function to close all FDs
10094 - MINOR: checks: use my_closefrom() to close all FDs
10095 - MINOR: fd: implement an optimised my_closefrom() function
10096 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
10097 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
10098 - BUG/MAJOR: listener: Make sure the listener exist before using it.
10099 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
10100 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
10101 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
10102 - MINOR: htx: Add function to drain data from an HTX message
10103 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
10104 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
10105 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
10106 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
10107 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
10108 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
10109 - BUG/MEDIUM: h2: advertise to servers that we don't support push
10110 - MINOR: standard: Add a function to parse uints (dotted notation).
10111 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
10112 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
10113 - MINOR: sample: Add two sample converters for protocol buffers.
10114 - DOC: sample: Add gRPC related documentation.
10115
Willy Tarreaufba74ea2018-12-22 11:19:45 +0100101162018/12/22 : 2.0-dev0
10117 - BUG/MAJOR: connections: Close the connection before freeing it.
10118 - REGTEST: Require the option LUA to run lua tests
10119 - REGTEST: script: Process script arguments before everything else
10120 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
10121 - REGTEST: script: Add the option --clean to remove previous log direcotries
10122 - REGTEST: script: Add the option --debug to show logs on standard ouput
10123 - REGTEST: script: Add the option --keep-logs to keep all log directories
10124 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
10125 - REGTEST: script: Print only errors in the results report
10126 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
10127 - REGTEST: Make reg-tests target support argument.
10128 - REGTEST: Fix a typo about barrier type.
10129 - REGTEST: Be less Linux specific with a syslog regex.
10130 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
10131 - REGTEST: Exclude freebsd target for some reg tests.
10132 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
10133 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
10134 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
10135 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
10136 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
10137 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
10138 - MEDIUM: mux_h1: Implement h1_show_fd.
10139 - REGTEST: script: Add support of alternatives in requited options list
10140 - REGTEST: Add a basic test for the compression
10141 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
10142 - REGTEST: A basic test for "http-buffer-request"
10143 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
10144 - MINOR: ssl: Add ssl_sock_set_alpn().
10145 - MEDIUM: checks: Add check-alpn.
10146 - wip
10147
Willy Tarreau82230502018-12-19 19:13:17 +0100101482018/12/19 : 1.9.0
10149 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
10150 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
10151 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
10152 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
10153 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
10154 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
10155 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
10156 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
10157 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
10158 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
10159 - MINOR: cli/stream: add the conn_stream in "show sess" output
10160 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
10161 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
10162 - MINOR: objtype: report a few missing types in names and base pointers
10163 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
10164 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
10165 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
10166 - BUG/MINOR: mux-h1: report the correct frontend in error captures
10167 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
10168 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
10169 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
10170 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
10171 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
10172 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
10173 - MINOR: compression: Remove the thread_local variable buf_output
10174 - CLEANUP: connection: rename subscription events values and event field
10175 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
10176 - MINOR: connection: remove an unwelcome dependency on struct stream
10177 - CLEANUP: stream-int: consistently call the si/stream_int functions
10178 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
10179 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
10180 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
10181 - MEDIUM: stream-int: always consider all CS errors on the send side
10182 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
10183 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
10184 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
10185 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
10186 - MINOR: connection: add cs_set_error() to set the error bits
10187 - CLEANUP: mux-h2: make use of cs_set_error()
10188 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
10189 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
10190 - MINOR: cli/show_fd: report that a connection is back or not
10191 - SCRIPTS: add the slack channel URL to the announce script
10192 - CLEANUP: remove my name and address from the copyright banner
10193 - DOC: mention in the readme that 1.9 is a stable version now
10194
Willy Tarreau2a7d6502018-12-16 22:35:06 +0100101952018/12/16 : 1.9-dev11
10196 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
10197 - REGTEST/MINOR: remove double body specification for server txresp
10198 - BUG/MEDIUM: connections: Remove error flags when retrying.
10199 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
10200 - REGTEST/MINOR: remove health-check that can make the test fail
10201 - DOC: clarify that check-sni needs an argument.
10202 - DOC: refer to check-sni in the documentation of sni
10203 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
10204 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
10205 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
10206 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
10207 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
10208 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
10209 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
10210 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
10211 - MINOR: hpack: simplify the len to bytes conversion
10212 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
10213 - MINOR: hpack: optimize header encoding for short names
10214 - CONTRIB: hpack: add a compressed stream generator for the encoder
10215 - MEDIUM: hpack: make it possible to encode any static header name
10216 - MINOR: hpack: move the length computation and encoding functions to .h
10217 - MINOR: hpack: provide a function to encode a short indexed header
10218 - MINOR: hpack: provide a function to encode a long indexed header
10219 - MINOR: hpack: provide new functions to encode the ":status" header
10220 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
10221 - MINOR: hpack: provide a function to encode an HTTP method
10222 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
10223 - MINOR: hpack: provide a function to encode an HTTP scheme
10224 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
10225 - MINOR: hpack: provide a function to encode an HTTP path
10226 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
10227 - REGTEST: add the HTTP rules test involving HTX processing
10228 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
10229 - MEDIUM: cli: rework the CLI proxy parser
10230 - MINOR: cli: parse prompt command in the CLI proxy
10231 - MINOR: cli: implements 'quit' in the CLI proxy
10232 - BUG/MINOR: cli: wait for payload data even without prompt
10233 - MEDIUM: cli: handle payload in CLI proxy
10234 - MINOR: cli: use pcli_flags for prompt activation
10235 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
10236 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
10237 - MINOR: cache: Register the cache as a data filter only if response is cacheable
10238 - MEDIUM: cache/htx: Add the HTX support into the cache
10239 - MINOR: cache: Improve and simplify the cache configuration check
10240 - MINOR: filters: Export the name of known filters
10241 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
10242 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
10243 - REORG: htx: merge types+proto into common/htx.h
10244 - REORG: http: create http_msg.c to place there some legacy HTTP parts
10245 - REORG: h1: move legacy http functions to http_msg.c
10246 - REORG: h1: move the h1_state definition to proto_http
10247 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
10248 - REORG: h1: merge types+proto into common/h1.h
10249 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
10250 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
10251 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
10252 - BUG/MINOR: mux-h2: refrain from muxing during the preface
10253 - BUG/MINOR: mux-h2: advertise a larger connection window size
10254 - DOC: master CLI documentation in management.txt
10255 - MINOR: mux-h2: avoid copying large blocks into full buffers
10256 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
10257 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
10258 - MINOR: cli: change 'show proc' output of old processes
10259 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
10260 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
10261 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
10262 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
10263 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
10264 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
10265 - REGTEST: the cache regtest requires haproxy 1.9
10266 - MEDIUM: cli: store CLI level in the appctx
10267 - MEDIUM: cli: show and change CLI permissions
10268 - CLEANUP: cli: use dedicated define instead of appctx ones
10269 - MEDIUM: cli: handle CLI level from the master CLI
10270 - BUG/MEDIUM: cli: handle correctly prefix and payload
10271 - BUILD: Makefile: Implements the help target
10272 - REGTESTS: adjust the http-rules regtest to support window updates
10273 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
10274 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
10275 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
10276 - MEDIUM: mux: Add an optional "reset" method.
10277 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
10278 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
10279 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
10280 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
10281 - MEDIUM: htx: Try to take a connection over if it has no owner.
10282 - REGTEST: Reg testing improvements.
10283 - REGTEST: Add a first test for health-checks.
10284 - REGTEST: Reg test for "check" health-check option.
10285 - REGTEST: level 1 health-check test 2.
10286 - REGTEST: Add miscellaneous reg tests for health-checks.
10287 - REGTEST: add a few HTTP messaging tests
10288 - MINOR: lb: make the leastconn algorithm more accurate
10289 - REGTEST: fix missing space in checks/s00001
10290 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
10291 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
10292 - MINOR: connection: realign empty buffers in muxes, not transport layers
10293 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
10294 - MINOR: backend: count the number of connect and reuse per server and per backend
10295 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
10296 - MINOR: tools: increase the number of ITOA strings to 16
10297 - MINOR: cache: report the number of cache lookups and cache hits
10298 - MEDIUM: tasks: check the global task mask instead of the thread number
10299 - MINOR: mworker: set all_threads_mask and pid_bit to 1
10300 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
10301 - BUG/MINOR: stats: Parse post data for HTX streams
10302 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
10303 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
10304 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
10305 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
10306 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
10307 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
10308 - MINOR: lua: Remove useless check on the messages state in HTTP functions
10309 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
10310 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
10311 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
10312 - MINOR: cli: implements 'reload' on master CLI
10313 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
10314 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
10315 - BUG/MAJOR: backend: only update server's counters when the server exists
10316 - MINOR: tools: preset the port of fd-based "sockets" to zero
10317 - BUG/MINOR: log: fix logging to both FD and IP
10318 - REGTEST: Add a reg test for HTTP cookies.
10319 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
10320 - BUILD: thread: properly report multi-thread support
10321 - BUG/MINOR: logs: leave startup-logs global and not per-thread
10322 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
10323 - BUG/MAJOR: compression/cache: Make it really works with these both filters
10324 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
10325 - MEDIUM: proxy: Set http-reuse safe as default.
10326 - MEDIUM: servers: Add a command to limit the number of idling connections.
10327 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
10328 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
10329 - MEDIUM: mux: provide the session to the init() and attach() method.
10330 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
10331 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
10332 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
10333 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
10334 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
10335 - MINOR: pools: Cast to volatile int * instead of int *.
10336 - MINOR: debug: make the ABORT_NOW macro use a volatile int
10337 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
10338 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
10339 - DOC: clarify the agent-check status line syntax
10340 - BUG/MAJOR: hpack: fix length check for short names encoding
10341 - DOC: split the README into README + INSTALL
10342
Willy Tarreau72e92272018-12-08 16:20:55 +0100103432018/12/08 : 1.9-dev10
10344 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
10345 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
10346 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
10347 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
10348 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
10349 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
10350 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
10351 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
10352 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
10353 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
10354 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
10355 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
10356 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
10357 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
10358 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
10359 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
10360 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
10361 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
10362 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
10363 - BUG/MEDIUM: h1: Correctly report used data with no len.
10364 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
10365 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
10366 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
10367 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
10368 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
10369 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
10370 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
10371 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
10372 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
10373 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
10374 - MEDIUM: channel/htx: Add functions for forward HTX data
10375 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
10376 - CLEANUP: htx: Fix indentation here and there in HTX files
10377 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
10378 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
10379 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
10380 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
10381 - BUG/MEDIUM: mworker: stop every tasks in the master
10382 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
10383 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
10384 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
10385 - MINOR: stream-int: add a new blocking condition on the remote connection
10386 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
10387 - BUG/MEDIUM: lua: block on remote connection establishment
10388 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
10389 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
10390 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
10391 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
10392 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
10393 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
10394 - REGTEST: Move LUA reg test 4 to level 1.
10395 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
10396 - MEDIUM: ist: always turn header names to lower case
10397 - MINOR: h2: don't turn HTX header names to lower case anymore
10398 - MEDIUM: ist: use local conversion arrays to case conversion
10399 - MINOR: htx: switch to case sensitive search of lower case header names
10400 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
10401 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
10402 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
10403 - REGTEST: add a basic test for HTTP rules manipulating headers
10404 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
10405 - MINOR: sample: add bc_http_major
10406 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
10407 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
10408 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
10409 - MINOR: compiler: add a new macro ALREADY_CHECKED()
10410 - BUILD: h2: mark the start line already checked to avoid warnings
10411 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
10412
Willy Tarreauda7e3be2018-12-02 19:31:37 +0100104132018/12/02 : 1.9-dev9
10414 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
10415 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
10416 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
10417 - MINOR: compression: always create the compression pool
10418 - BUG/MEDIUM: mworker: fix FD leak upon reload
10419 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
10420 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
10421 - MINOR: initcall: introduce a way to register init functions to call at boot
10422 - MINOR: init: process all initcalls in order at boot time
10423 - MEDIUM: init: convert all trivial registration calls to initcalls
10424 - MINOR: thread: provide a set of lock initialisers
10425 - MINOR: threads: add new macros to declare self-initializing locks
10426 - MEDIUM: init: use self-initializing spinlocks and rwlocks
10427 - MINOR: initcall: apply initcall to all register_build_opts() calls
10428 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
10429 - MINOR: initcall: use initcalls for section parsers
10430 - MINOR: memory: add a callback function to create a pool
10431 - MEDIUM: init: use initcall for all fixed size pool creations
10432 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
10433 - MEDIUM: initcall: use initcalls for a few initialization functions
10434 - MEDIUM: memory: make the pool cache an array and not a thread_local
10435 - MINOR: ssl: free ctx when libssl doesn't support NPN
10436 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
10437 - MINOR: h2: make struct h2_ops static
10438 - BUG/MEDIUM: mworker: avoid leak of client socket
10439 - REORG: mworker: declare master variable in global.h
10440 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
10441 - CLEANUP: http: Fix typo in init_http's comment
10442 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
10443 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
10444 - REGTEST/MINOR: script: add run-regtests.sh script
10445 - REGTEST: Add a basic test for the cache.
10446 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
10447 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
10448 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
10449 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
10450 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
10451 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
10452 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
10453 - REGTEST: Fix several issues.
10454 - REGTEST: lua: check socket functionality from a lua-task
10455 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
10456 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
10457 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
10458 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
10459 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
10460 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
10461 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
10462 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
10463 - MAJOR: sessions: Store multiple outgoing connections in the session.
10464 - MEDIUM: session: Steal owner-less connections on end of transaction.
10465 - MEDIUM: server: Be smarter about deciding to reuse the last server.
10466 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
10467 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
10468 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
10469 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
10470 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
10471 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
10472 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
10473 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
10474 - BUG/MINOR: connection: report mux modes when HTX is supported
10475 - MINOR: htx: add a function to cut the beginning of a DATA block
10476 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
10477 - MINOR: mux-h1: Implement get_cs_info() callback
10478 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
10479 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
10480 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
10481 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
10482 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
10483 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
10484 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
10485 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
10486 - MINOR: htx: Add function to add an HTX block just before another one
10487 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
10488 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
10489 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
10490 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
10491 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
10492 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
10493 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
10494 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
10495 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
10496 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
10497 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
10498 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
10499 - MINOR: proto_htx: Send valid HTX message to send 30x responses
10500 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
10501 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
10502 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
10503 - MINOR: mux-h1: Capture bad H1 messages
10504 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
10505 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
10506 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
10507 - MEDIUM: compression: Adapt to be compatible with the HTX representation
10508 - MINOR: h2: implement H2->HTX request header frame transcoding
10509 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
10510 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
10511 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
10512 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
10513 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
10514 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
10515 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
10516 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
10517 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
10518 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
10519 - MINOR: listener: the mux_proto entry in the bind_conf is const
10520 - MINOR: connection: create conn_get_best_mux_entry()
10521 - MINOR: server: the mux_proto entry in the server is const
10522 - MINOR: config: make sure to associate the proper mux to bind and servers
10523 - MINOR: hpack: add ":path" to the list of common header fields
10524 - MINOR: h2: add new functions to produce an HTX message from an H2 response
10525 - MINOR: mux-h2: mention that the mux is compatible with both sides
10526 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
10527 - MEDIUM: mux-h2: start to create the outgoing mux
10528 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
10529 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
10530 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
10531 - MEDIUM: mux-h2: Implement h2_attach().
10532 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
10533 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
10534 - MINOR: connection: Fix a comment.
10535 - MINOR: mux: add a "max_streams" method.
10536 - MEDIUM: servers: Add a way to keep idle connections alive.
10537 - CLEANUP: fix typos in the htx subsystem
10538 - CLEANUP: Fix typo in the chunk headers file
10539 - CLEANUP: Fix typos in the h1 subsystem
10540 - CLEANUP: Fix typos in the h2 subsystem
10541 - CLEANUP: Fix a typo in the mini-clist header
10542 - CLEANUP: Fix a typo in the proto_htx subsystem
10543 - CLEANUP: Fix typos in the proto_tcp subsystem
10544 - CLEANUP: Fix a typo in the signal subsystem
10545 - CLEANUP: Fix a typo in the session subsystem
10546 - CLEANUP: Fix a typo in the queue subsystem
10547 - CLEANUP: Fix typos in the shctx subsystem
10548 - CLEANUP: Fix typos in the socket pair protocol subsystem
10549 - CLEANUP: Fix typos in the map management functions
10550 - CLEANUP: Fix typo in the fwrr subsystem
10551 - CLEANUP: Fix typos in the cli subsystem
10552 - CLEANUP: Fix typo in the 51d subsystem
10553 - CLEANUP: Fix a typo in the base64 subsystem
10554 - CLEANUP: Fix a typo in the connection subsystem
10555 - CLEANUP: Fix a typo in the protocol header file
10556 - CLEANUP: Fix a typo in the checks header file
10557 - CLEANUP: Fix typos in the file descriptor subsystem
10558 - CLEANUP: Fix a typo in the listener subsystem
10559 - BUG/MINOR: lb-map: fix unprotected update to server's score
10560 - BUILD: threads: fix minor build warnings when threads are disabled
10561
Willy Tarreau0b936ad2018-11-25 09:16:46 +0100105622018/11/25 : 1.9-dev8
10563 - REORG: config: extract the global section parser into cfgparse-global
10564 - REORG: config: extract the proxy parser into cfgparse-listen.c
10565 - BUILD: update the list of supported targets and compilers in makefile and readme
10566 - BUILD: reorder the objects in the makefile
10567 - BUILD: Makefile: make "V=1" show some of the commands that are executed
10568 - BUILD: Makefile: add the quiet mode to a few more targets
10569 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
10570 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
10571 - MINOR: cli: format `show proc` to be more readable
10572 - MINOR: cli: displays uptime in `show proc`
10573 - MINOR: cli: show master information in 'show proc'
10574 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
10575 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
10576 - BUG/MINOR: mux-h1: Enable keep-alive on server side
10577 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
10578 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
10579 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
10580 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
10581 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
10582 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
10583 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
10584 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
10585 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
10586 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
10587 - MEDIUM: mworker: wait mode use standard init code path
10588 - MINOR: log: introduce ha_notice()
10589 - MINOR: mworker: use ha_notice to announce a new worker
10590 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
10591 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
10592 - MEDIUM: signal: signal_unregister() removes every handlers
10593 - BUG/MEDIUM: mworker: unregister the signals of main()
10594 - MINOR: cli: add a few missing includes in proto/cli.h
10595 - REORG: time/activity: move activity measurements to activity.{c,h}
10596 - MINOR: activity: report the average loop time in "show activity"
10597 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
10598 - MEDIUM: tasks: collect per-task CPU time and latency
10599 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
10600 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
10601 - BUG/MINOR: cli: Fix memory leak
10602 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
10603 - MINOR: poller: move the call of tv_update_date() back to the pollers
10604 - MINOR: polling: add an option to support busy polling
10605 - MINOR: server: Add "alpn" and "npn" keywords.
10606 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
10607 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
10608 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
10609 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
10610 - REGTEST: add the option to test only a specific set of files
10611 - REGTEST: add a test for connections to a "dispatch" address
10612 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
10613 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
10614 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
10615 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
10616 - MEDIUM: servers: Store the connection in the SI until we have a mux.
10617 - BUG/MEDIUM: h2: wake the processing task up after demuxing
10618 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
10619
Willy Tarreau5c0e41b2018-11-18 22:33:00 +0100106202018/11/18 : 1.9-dev7
10621 - BUILD: cache: fix a build warning regarding too large an integer for the age
10622 - CLEANUP: fix typos in the comments of the Makefile
10623 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
10624 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
10625 - CLEANUP: fix typos in comments for contrib/spoa_example
10626 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
10627 - DOC: Fix typos in README and CONTRIBUTING
10628 - MINOR: log: slightly improve error message syntax on log failure
10629 - DOC: logs: the format directive was missing from the second log part
10630 - MINOR: log: report the number of dropped logs in the stats
10631 - MEDIUM: log: add support for logging to existing file descriptors
10632 - MEDIUM: log: support a new "short" format
10633 - MEDIUM: log: add a new "raw" format
10634 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
10635 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
10636 - MINOR: namespaces: don't build namespace.c if disabled
10637 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
10638 - MINOR: http: Add new "early-hint" http-request action.
10639 - MINOR: http: Make new "early-hint" http-request action really be parsed.
10640 - MINOR: http: Implement "early-hint" http request rules.
10641 - MINOR: doc: Add information about "early-hint" http-request action.
10642 - DOC: early-hints: fix truncated line.
10643 - MINOR: mworker: only close std{in,out,err} in daemon mode
10644 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
10645 - BUG/MEDIUM: Make sure stksess is properly aligned.
10646 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
10647 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
10648 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
10649 - CONTRIB: debug: fix build related to conn_stream flags change
10650 - REGTEST: fix scripts 1 and 3 to accept development version
10651 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
10652 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
10653 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
10654 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
10655 - MEDIUM: jobs: support unstoppable jobs for soft stop
10656 - MEDIUM: listeners: support unstoppable listener
10657 - MEDIUM: cli: worker socketpair is unstoppable
10658 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
10659 - MINOR: stream: move the conn_stream specific calls to the stream-int
10660 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
10661 - CLEANUP: h2: minimum documentation for recent API changes
10662 - MINOR: mux: implement a get_first_cs() method
10663 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
10664 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
10665 - MINOR: stream-int: expand the flags to 32-bit
10666 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
10667 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
10668 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
10669 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
10670 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
10671 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
10672 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
10673 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
10674 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
10675 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
10676 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
10677 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
10678 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
10679 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
10680 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
10681 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
10682 - MEDIUM: connections: Wait until the connection is established to try to recv.
10683 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
10684 - MINOR: mux: Add a new "avail_streams" method.
10685 - MINOR: mux: Add a destroy() method.
10686 - MINOR: sessions: Start to store the outgoing connection in sessions.
10687 - MAJOR: connections: Detach connections from streams.
10688 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
10689 - MINOR: htx: Add proto_htx.c file
10690 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
10691 - MINOR: http: Add standalone functions to parse a start-line or a header
10692 - MINOR: http: Call http_send_name_header with the stream instead of the txn
10693 - MINOR: conn_stream: Add a flag to notify the SI some data were received
10694 - MINOR: http: Add macros to check if a stream uses the HTX representation
10695 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
10696 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
10697 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
10698 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
10699 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
10700 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
10701 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
10702 - MINOR: proto_htx: Add some functions to handle HTX messages
10703 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
10704 - MINOR: http_htx: Add functions to replace part of the start-line
10705 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
10706 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
10707 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
10708 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
10709 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
10710 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
10711 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
10712 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
10713 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
10714 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
10715 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
10716 - MINOR: proto_htx: Add functions htx_send_name_header
10717 - MINOR: proto_htx: Add functions htx_perform_server_redirect
10718 - MINOR: proto_htx: Add functions to handle the stats applet
10719 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
10720 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
10721 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
10722 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
10723 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
10724 - MINOR: http_fetch: Add smp_prefetch_htx
10725 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
10726 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
10727 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
10728 - MINOR: stream: Don't reset sov value with HTX messages
10729 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
10730 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
10731 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
10732 - CLEANUP: Fix some typos in the haproxy subsystem
10733 - CLEANUP: Fix typos in the dns subsystem
10734 - CLEANUP: Fix typos in the pattern subsystem
10735 - CLEANUP: fix 2 typos in the xxhash subsystem
10736 - CLEANUP: fix a few typos in the comments of the server subsystem
10737 - CLEANUP: fix a misspell in tests/filltab25.c
10738 - CLEANUP: fix a typo found in the stream subsystem
10739 - CLEANUP: fix typos in comments in ebtree
10740 - CLEANUP: fix typos in reg-tests
10741 - CLEANUP: fix typos in the comments of the vars subsystem
10742 - CLEANUP: fix typos in the hlua_fcn subsystem
10743 - CLEANUP: fix typos in the proto_http subsystem
10744 - CLEANUP: fix typos in the proxy subsystem
10745 - CLEANUP: fix typos in the ssl_sock subsystem
10746 - DOC: Fix typos in different subsections of the documentation
10747 - DOC: fix a few typos in the documentation
10748 - MINOR: Fix an error message thrown when we run out of memory
10749 - MINOR: Fix typos in error messages in the proxy subsystem
10750 - MINOR: fix typos in the examples files
10751 - CLEANUP: Fix a typo in the stats subsystem
10752 - CLEANUP: Fix typos in the acl subsystem
10753 - CLEANUP: Fix typos in the cache subsystem
10754 - CLEANUP: Fix typos in the cfgparse subsystem
10755 - CLEANUP: Fix typos in the filters subsystem
10756 - CLEANUP: Fix typos in the http subsystem
10757 - CLEANUP: Fix typos in the log subsystem
10758 - CLEANUP: Fix typos in the peers subsystem
10759 - CLEANUP: Fix typos in the regex subsystem
10760 - CLEANUP: Fix typos in the sample subsystem
10761 - CLEANUP: Fix typos in the spoe subsystem
10762 - CLEANUP: Fix typos in the standard subsystem
10763 - CLEANUP: Fix typos in the stick_table subsystem
10764 - CLEANUP: Fix typos in the task subsystem
10765 - MINOR: Fix typo in error message in the standard subsystem
10766 - CLEANUP: fix typos in the comments of hlua
10767 - MINOR: Fix typo in the error 500 output of hlua
10768 - MINOR: Fix a typo in a warning message in the spoe subsystem
10769
Willy Tarreau96079492018-11-11 10:43:39 +0100107702018/11/11 : 1.9-dev6
10771 - BUG/MEDIUM: tools: fix direction of my_ffsl()
10772 - BUG/MINOR: cli: forward the whole command on master CLI
10773 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
10774 - MINOR: compat: automatically detect support for crypt_r()
10775 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
10776 - DOC: split the http-request actions in their own section
10777 - DOC: split the http-response actions in their own section
10778 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
10779 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
10780 - MINOR: stats: report the number of active jobs and listeners in "show info"
10781 - MINOR: stats: report the number of active peers in "show info"
10782 - MINOR: stats: report the number of currently connected peers
10783 - MINOR: cli: show the number of reload in 'show proc'
10784 - MINOR: cli: can't connect to the target CLI
10785 - MEDIUM: mworker: does not create the CLI proxy when no listener
10786 - MINOR: mworker: displays more information when leaving
10787 - MEDIUM: mworker: exit with the incriminated exit code
10788 - MINOR: mworker: displays a message when a worker is forked
10789 - MEDIUM: mworker: leave when the master die
10790 - CLEANUP: stream-int: retro-document si_cs_io_cb()
10791 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
10792 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
10793 - BUG/MEDIUM: cli: crash when trying to access a worker
10794 - DOC: restore note about "independant" typo
10795 - MEDIUM: stream: implement stream_buf_available()
10796 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
10797 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
10798 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
10799 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
10800 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
10801 - MINOR: stream-int: make it clear that si_ops cannot be null
10802 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
10803 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
10804 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
10805 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
10806 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
10807 - MINOR: stream-int: replace si_update() with si_update_both()
10808 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
10809 - CLEANUP: stream-int: remove the now unused si->update() function
10810 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
10811 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
10812 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
10813
Willy Tarreaubddf2922018-10-28 20:39:31 +0100108142018/10/28 : 1.9-dev5
10815 - BUILD: Makefile: add the new ERR variable to force -Werror
10816 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
10817 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
10818 - CLEANUP: http: Remove the unused function http_find_header
10819 - MINOR: h1: Export some functions parsing the value of some HTTP headers
10820 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
10821 - MINOR: proxy: add a new option "http-use-htx"
10822 - BUG/MEDIUM: pools: fix the minimum allocation size
10823 - MINOR: shctx: Shared objects block by block allocation.
10824 - MINOR: cache: Larger HTTP objects caching.
10825 - MINOR: shctx: Add a maximum object size parameter.
10826 - MINOR: cache: Add "max-object-size" option.
10827 - DOC: Update about the cache support for big objects.
10828 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
10829 - BUG/MINOR: cache: Wrong usage of shctx_init().
10830 - BUG/MINOR: ssl: Wrong usage of shctx_init().
10831 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
10832 - MINOR: shctx: Change max. object size type to unsigned int.
10833 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
10834 - CLEANUP: tools: fix misleading comment above function LIM2A
10835 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
10836 - BUG/MINOR: only mark connections private if NTLM is detected
10837 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
10838 - MINOR: stream: don't prune variables if the list is empty
10839 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
10840 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
10841 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
10842 - MEDIUM: stream: don't try to send first in process_stream()
10843 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
10844 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
10845 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
10846 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
10847 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
10848 - MINOR: mworker: number of reload in the life of a worker
10849 - MEDIUM: mworker: each worker socketpair is a CLI listener
10850 - REORG: mworker: move struct mworker_proc to global.h
10851 - MINOR: server: export new_server() function
10852 - MEDIUM: mworker: move proc_list gen before proxies startup
10853 - MEDIUM: mworker: add proc_list in global.h
10854 - MEDIUM: mworker: proxy for the master CLI
10855 - MEDIUM: mworker: create CLI listeners from argv[]
10856 - MEDIUM: cli: disable some keywords in the master
10857 - MEDIUM: mworker: find the server ptr using a CLI prefix
10858 - MEDIUM: cli: 'show proc' displays processus
10859 - MEDIUM: cli: implement 'mode cli' proxy analyzers
10860 - MINOR: cli: displays sockpair@ in "show cli sockets"
10861 - MEDIUM: cli: enable "show cli sockets" for the master
10862 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
10863 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
10864 - MEDIUM: mworker: stop the master proxy in the workers
10865 - MEDIUM: channel: reorder the channel analyzers for the cli
10866 - MEDIUM: cli: write a prompt for the CLI proxy of the master
10867 - MINOR: cli: helper to write an response message and close
10868 - MINOR: cache: Add "Age" header.
10869 - REGTEST: make the IP+port logging test more reliable
10870 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
10871 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
10872 - BUG/MINOR: backend: assign the wait list after the error check
10873
Willy Tarreau01fbe742018-10-21 20:28:30 +0200108742018/10/21 : 1.9-dev4
10875 - BUILD: Allow configuration of pcre-config path
10876 - DOC: clarify force-private-cache is an option
10877 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
10878 - REORG: http: move the code to different files
10879 - REORG: http: move HTTP rules parsing to http_rules.c
10880 - CLEANUP: http: remove some leftovers from recent cleanups
10881 - BUILD: Makefile: add a "make opts" target to simply show the build options
10882 - BUILD: Makefile: speed up compiler options detection
10883 - BUG/MINOR: backend: check that the mux installed properly
10884 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
10885 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
10886 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
10887 - MINOR: ssl: cleanup old openssl API call
10888 - MINOR: ssl: generate-certificates for BoringSSL
10889 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
10890 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
10891 - CLEANUP: haproxy: Remove unused variable
10892 - CLEANUP: h1: Fix debug warnings for h1 headers
10893 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
10894 - MEDIUM: task: perform a single tree lookup per run queue batch
10895 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
10896 - BUG/MINOR: threads: move declaration of capabilities to config.h
10897 - OPTIM: tools: optimize my_ffsl() for x86_64
10898 - BUG/MINOR: h2: null-deref
10899 - BUG/MINOR: checks: queues null-deref
10900 - MINOR: connections: Introduce an unsubscribe method.
10901 - MEDIUM: connections: Change struct wait_list to wait_event.
10902 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
10903 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
10904 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
10905 - MINOR: http: Move comment about some HTTP macros in the right header file
10906 - MINOR: stats: Add missing include
10907 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
10908 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
10909 - MEDIUM: http: Ignore http-tunnel option on backend
10910 - MINOR: http: Use same flag for httpclose and forceclose options
10911 - MINOR: h1: Add EOH marker during headers parsing
10912 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
10913 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
10914 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
10915 - MINOR: log: make sess_log() support sess=NULL
10916 - MINOR: chunk: add chunk_cpy() and chunk_cat()
10917 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
10918 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
10919 - MINOR: h2: don't try to send data before preface
10920 - MINOR: h2: unify the mux init function
10921 - MINOR: h2: retrieve the front proxy from the caller instead of the session
10922 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
10923 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
10924 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
10925 - BUG/MEDIUM: stream: don't crash on out-of-memory
10926 - BUILD: compiler: add a new statement "__unreachable()"
10927 - BUILD: lua: silence some compiler warnings about potential null derefs
10928 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
10929 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
10930 - BUILD: stick-table: make sure not to fail on task_new() during initialization
10931 - BUILD: peers: check allocation error during peers_init_sync()
10932 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
10933 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
10934 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
10935 - MAJOR: tasks: create per-thread wait queues
10936 - OPTIM: tasks: group all tree roots per cache line
10937 - DOC: Fix a few typos
10938 - MINOR: pools: allocate most memory pools from an array
10939 - MINOR: pools: split pool_free() in the lockfree variant
10940 - MEDIUM: pools: implement a thread-local cache for pool entries
10941 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
10942 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
10943 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
10944 - MINOR: lua: all functions calling lua_yieldk() may return
10945 - BUILD: lua: silence some compiler warnings after WILL_LJMP
10946 - BUILD: Makefile: silence an option conflict warning with clang
10947 - MINOR: server: Use memcpy() instead of strncpy().
10948 - CLEANUP: state-file: make the path concatenation code a bit more consistent
10949 - MINOR: build: Disable -Wstringop-overflow.
10950 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
10951 - MINOR: peers: use defines instead of enums to appease clang.
10952 - DOC: fix reference to map files in MAINTAINERS
10953 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
10954 - MINOR: poller: move time and date computation out of the pollers
10955 - BUILD: memory: fix pointer declaration for atomic CAS
10956 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
10957 - MINOR: time: add now_mono_time() and now_cpu_time()
10958 - MEDIUM: time: measure the time stolen by other threads
10959 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
10960 - BUILD: compiler: rename __unreachable() to my_unreachable()
10961 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
10962 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
10963 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
10964 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
10965 - BUG/MEDIUM: stream: Make sure polling is right on retry.
10966 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
10967 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
10968 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
10969 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
10970 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
10971 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
10972
Willy Tarreau27010f02018-09-29 20:17:33 +0200109732018/09/29 : 1.9-dev3
10974 - BUG/MINOR: h1: don't consider the status for each header
10975 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
10976 - MINOR: h1: parse the Connection header field
10977 - DOC: Fix typos in lua documentation
10978 - MINOR: h1: Add H1_MF_XFER_LEN flag
10979 - MINOR: http: add http_hdr_del() to remove a header from a list
10980 - MINOR: h1: add headers to the list after controls, not before
10981 - MEDIUM: h1: better handle transfer-encoding vs content-length
10982 - MEDIUM: h1: deduplicate the content-length header
10983 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
10984 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
10985 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
10986 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
10987 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
10988 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
10989 - MINOR: stream-int: make si_appctx() never fail
10990 - BUILD: ssl_sock: remove build warnings on potential null-derefs
10991 - BUILD: stats: remove build warnings on potential null-derefs
10992 - BUILD: stream: address null-deref build warnings at -Wextra
10993 - BUILD: http: address a couple of null-deref warnings at -Wextra
10994 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
10995 - BUILD: dns: fix null-deref build warning at -Wextra
10996 - BUILD: checks: silence a null-deref build warning at -Wextra
10997 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
10998 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
10999 - BUILD: sockpair: silence a build warning at -Wextra
11000 - BUILD: build with -Wextra and sort out certain warnings
11001 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
11002 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
11003 - DOC: Update configuration doc about the maximum number of stick counters.
11004 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
11005 - MINOR: h2/stream_interface: Reintroduce te wake() method.
11006 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
11007 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
11008 - MEDIUM: lua: Add stick table support for Lua.
11009
Willy Tarreau253006d2018-09-12 18:59:48 +0200110102018/09/12 : 1.9-dev2
11011 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
11012 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
11013 - BUG/MEDIUM: servers: check the queues once enabling a server
11014 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
11015 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
11016 - CLEANUP: backend: Move mux install to call it at only one place
11017 - MINOR: conn_stream: add an tx buffer to the conn_stream
11018 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
11019 - MINOR: backend: Try to find the best mux for outgoing connections
11020 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
11021 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
11022 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
11023 - MINOR: mux: Print the list of existing mux protocols during HA startup
11024 - MEDIUM: checks: use the new rendez-vous point to spread check result
11025 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
11026 - MINOR: threads: remove the previous synchronization point
11027 - MAJOR: server: make server state changes synchronous again
11028 - CLEANUP: server: remove the update list and the update lock
11029 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
11030 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
11031 - MINOR: mux: Change get_mux_proto to get an ist as parameter
11032 - MINOR: mux: Improve the message with the list of existing mux protocols
11033 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
11034 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
11035 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
11036 - BUG/MEDIUM: connection/mux: take care of serverless proxies
11037 - MINOR: queue: make sure the pendconn is released before logging
11038 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
11039 - MINOR: queue: store the queue index in the stream when enqueuing
11040 - MINOR: queue: replace the linked list with a tree
11041 - MEDIUM: add set-priority-class and set-priority-offset
11042 - MEDIUM: queue: adjust position based on priority-class and priority-offset
11043 - DOC: update the roadmap about priority queues
11044 - BUG/MINOR: ssl: empty connections reported as errors.
11045 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
11046 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
11047 - MINOR: connections: Get rid of txbuf.
11048 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
11049 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
11050 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
11051 - MINOR: stream_interface: Give stream_interface its own wait_list.
11052 - MINOR: mux_h2: Don't use h2_send() as a callback.
11053 - MINOR: checks: Add event_srv_chk_io().
11054 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
11055 - BUG/MEDIUM: sessions: Don't use t->state.
11056 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
11057 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
11058 - BUG/MINOR: map: fix map_regm with backref
11059 - DOC: dns: explain set server ... fqdn requires resolver
11060 - DOC: add documentation for prio_class and prio_offset sample fetches.
11061 - DOC: ssl: Use consistent naming for TLS protocols
11062 - DOC: update the layering design notes
11063 - MINOR: tasks: Don't special-case when nbthreads == 1
11064 - MINOR: fd cache: And the thread_mask with all_threads_mask.
11065 - BUG/MEDIUM: lua: socket timeouts are not applied
11066 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
11067 - BUG/MEDIUM: server: update our local state before propagating changes
11068 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
11069 - DOC: server/threads: document which functions need to be called with/without locks
11070 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
11071 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
11072 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
11073 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
11074 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
11075 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
11076 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
11077 - BUG/MEDIUM: connection: don't forget to always delete the list's head
11078 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
11079 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
11080 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
11081 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
11082 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
11083 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
11084 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
11085 - BUG/MEDIUM: connection: don't store recv() result into trash.data
11086 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
11087 - MINOR: chunk: remove impossible tests on negative chunk->data
11088 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
11089 - DOC: Fix spelling error in configuration doc
11090 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
11091 - REGTEST/MINOR: Add a new class of regression testing files.
11092 - BUG/MEDIUM: unix: provide a ->drain() function
11093 - MINOR: connection: make conn_sock_drain() work for all socket families
11094 - BUG/MINOR: lua: Bad HTTP client request duration.
11095 - REGEST/MINOR: Add reg testing files.
11096 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
11097 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
11098 - BUG/MEDIUM: lua: reset lua transaction between http requests
11099 - MINOR: add be_conn_free sample fetch
11100 - MINOR: Add srv_conn_free sample fetch
11101 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
11102 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
11103 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
11104 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
11105 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
11106 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
11107 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
11108 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
11109 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
11110 - MINOR: tools: make date2str_log() take some consts
11111 - MINOR: thread: implement HA_ATOMIC_XADD()
11112 - BUG/MINOR: stream: use atomic increments for the request counter
11113 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
11114 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
11115 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
11116 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
11117 - MINOR: log: make the backend fall back to the frontend when there's no stream
11118 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
11119 - MINOR: log: don't unconditionally pick log info from s->logs
11120 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
11121 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
11122 - MINOR: log: do not dereference a null stream to access captures
11123 - MINOR: log: be sure not to dereference a null stream for a target
11124 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
11125 - MINOR: log: use NULL for the unique_id if there is no stream
11126 - MINOR: log: keep a copy of s->flags early to avoid a dereference
11127 - MINOR: log: use zero as the request counter if there is no stream
11128 - MEDIUM: log: make sess_build_logline() support being called with no stream
11129 - MINOR: log: provide a function to emit a log for a session
11130 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
11131 - BUG/MINOR: h1: fix buffer shift after realignment
11132 - MINOR: connection: make the initialization more consistent
11133 - MINOR: connection: add new function conn_get_proxy()
11134 - MINOR: connection: add new function conn_is_back()
11135 - MINOR: log: One const should be enough.
11136 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
11137 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
11138 - MINOR: snapshot: restart on the event ID and not the stream ID
11139 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
11140 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
11141 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
11142 - MINOR: proxy: add a new generic proxy_capture_error()
11143 - MINOR: http: make the HTTP error capture rely on the generic proxy code
11144 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
11145 - REORG: cli: move the "show errors" handler from http to proxy
11146 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
11147 - MEDIUM: snapshots: dynamically allocate the snapshots
11148 - MEDIUM: snapshot: merge the captured data after the descriptor
11149 - MEDIUM: mworker: remove register/unregister signal functions
11150 - MEDIUM: mworker: use the haproxy poll loop
11151 - BUG/MINOR: mworker: no need to stop peers for each proxy
11152 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
11153 - MEDIUM: mworker: block SIGCHLD until the master is ready
11154 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
11155 - MEDIUM: startup: unify signal init between daemon and mworker mode
11156 - MINOR: mworker: don't deinit the poller fd when in wait mode
11157 - MEDIUM: mworker: master wait mode use its own initialization
11158 - MEDIUM: mworker: replace the master pipe by socketpairs
11159 - MINOR: mworker: keep and clean the listeners
11160 - MEDIUM: threads: close the thread-waker pipe during deinit
11161 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
11162 - REORG: http: move the HTTP semantics definitions to http.h/http.c
11163 - REORG: http: move http_get_path() to http.c
11164 - REORG: http: move error codes production and processing to http.c
11165 - REORG: http: move the log encoding tables to log.c
11166 - REORG: http: move some header value processing functions to http.c
11167 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
11168 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
11169 - MEDIUM: protocol: sockpair protocol
11170 - TESTS: add a python wrapper for sockpair@
11171 - BUG/MINOR: server: Crash when setting FQDN via CLI.
11172 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
11173 - BUILD: fix build without thread
11174 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
11175 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
11176 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
11177 - MEDIUM: connections: Get rid of the recv() method.
11178 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
11179 - MEDIUM: h2: always subscribe to receive if allowed.
11180 - MEDIUM: h2: Don't use a wake() method anymore.
11181 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
11182 - MINOR: connections: Add a "handle" field to wait_list.
11183 - MEDIUM: mux_h2: Revamp the send path when blocking.
11184 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
11185 - MINOR: checks: Give checks their own wait_list.
11186 - MINOR: conn_streams: Remove wait_list from conn_streams.
11187 - REORG: h1: create a new h1m_state
11188 - MINOR: h1: add the restart offsets into struct h1m
11189 - MINOR: h1: remove the unused states from h1m_state
11190 - MINOR: h1: provide a distinct init() function for request and response
11191 - MINOR: h1: add a message flag to indicate that a message carries a response
11192 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
11193 - MINOR: h1: properly pre-initialize err_pos to -2
11194 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
11195 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
11196 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
11197 - MEDIUM: h1: make the parser support a pointer to a start line
11198 - MEDIUM: h1: let the caller pass the initial parser's state
11199 - MINOR: h1: make the message parser support a null <hdr> argument
11200 - MEDIUM: h1: support partial message parsing
11201 - MEDIUM: h1: remove the useless H1_MSG_BODY state
11202 - MINOR: h2: store the HTTP status into the H2S, not the H1M
11203 - MINOR: h1: remove the HTTP status from the H1M struct
11204 - MEDIUM: h1: implement the request parser as well
11205 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
11206 - MINOR: connection: pass the proxy when creating a connection
11207 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
11208 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
11209 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
11210
Willy Tarreau65e94d12018-08-02 18:12:50 +0200112112018/08/02 : 1.9-dev1
11212 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
11213 - DOC: cache: update sections and fix some typos
11214 - BUILD/MINOR: deviceatlas: enable thread support
11215 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
11216 - BUG/MEDIUM: ssl: don't allocate shctx several time
11217 - BUG/MEDIUM: cache: bad computation of the remaining size
11218 - BUILD: checks: don't include server.h
11219 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
11220 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
11221 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
11222 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
11223 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
11224 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
11225 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
11226 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
11227 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
11228 - MINOR: config: report when "monitor fail" rules are misplaced
11229 - BUG/MINOR: mworker: fix validity check for the pipe FDs
11230 - BUG/MINOR: mworker: detach from tty when in daemon mode
11231 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
11232 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
11233 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
11234 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
11235 - BUG/MINOR: hpack: fix debugging output of pseudo header names
11236 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
11237 - BUG/MINOR: hpack: reject invalid header index
11238 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
11239 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
11240 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
11241 - BUG/MINOR: h2: try to abort closed streams as soon as possible
11242 - BUG/MINOR: h2: ":path" must not be empty
11243 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
11244 - BUG/MINOR: h2: the TE header if present may only contain trailers
11245 - BUG/MEDIUM: h2: enforce the per-connection stream limit
11246 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
11247 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
11248 - BUG/MINOR: h2: properly check PRIORITY frames
11249 - BUG/MINOR: h2: reject response pseudo-headers from requests
11250 - BUG/MEDIUM: h2: remove connection-specific headers from request
11251 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
11252 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
11253 - BUG/MINOR: action: Don't check http capture rules when no id is defined
11254 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
11255 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
11256 - BUG/MEDIUM: mworker: also close peers sockets in the master
11257 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
11258 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
11259 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
11260 - BUG/MEDIUM: h2: fix handling of end of stream again
11261 - MINOR: mworker: Update messages referencing exit-on-failure
11262 - MINOR: mworker: Improve wording in `void mworker_wait()`
11263 - CONTRIB: halog: Add help text for -s switch in halog program
11264 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
11265 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
11266 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
11267 - DOC: notifications: add precisions about thread usage
11268 - BUG/MEDIUM: lua/notification: memory leak
11269 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
11270 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
11271 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
11272 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
11273 - BUG/MEDIUM: h2: work around a connection API limitation
11274 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
11275 - MINOR: h2: store the demux padding length in the h2c struct
11276 - BUG/MEDIUM: h2: support uploading partial DATA frames
11277 - MINOR: h2: don't demand that a DATA frame is complete before processing it
11278 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
11279 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
11280 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
11281 - BUG/MEDIUM: h2: fix stream limit enforcement
11282 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
11283 - MINOR: sample: add len converter
11284 - BUG: MAJOR: lb_map: server map calculation broken
11285 - BUG: MINOR: http: don't check http-request capture id when len is provided
11286 - MINOR: sample: rename the "len" converter to "length"
11287 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
11288 - DOC/MINOR: intro: typo, wording, formatting fixes
11289 - MINOR: netscaler: respect syntax
11290 - MINOR: netscaler: remove the use of cip_magic only used once
11291 - MINOR: netscaler: rename cip_len to clarify its uage
11292 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
11293 - BUG/MAJOR: netscaler: address truncated CIP header detection
11294 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
11295 - MEDIUM: netscaler: do not analyze original IP packet size
11296 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
11297 - MINOR: spoe: add force-set-var option in spoe-agent configuration
11298 - CONTRIB: iprange: Fix compiler warning in iprange.c
11299 - CONTRIB: halog: Fix compiler warnings in halog.c
11300 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
11301 - MINOR: mux: add flags to describe a mux's capabilities
11302 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
11303 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
11304 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
11305 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
11306 - MINOR: http: adjust the list of supposedly cacheable methods
11307 - MINOR: http: update the list of cacheable status codes as per RFC7231
11308 - MINOR: http: start to compute the transaction's cacheability from the request
11309 - BUG/MINOR: http: do not ignore cache-control: public
11310 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
11311 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
11312 - MINOR: http: add a function to check request's cache-control header field
11313 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
11314 - BUG/MEDIUM: cache: replace old object on store
11315 - BUG/MEDIUM: cache: respect the request cache-control header
11316 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
11317 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
11318 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
11319 - BUG/MEDIUM: h2: properly handle and report some stream errors
11320 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
11321 - DOC/MINOR: configuration: typo, formatting fixes
11322 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
11323 - BUG/MEDIUM: mworker: don't close stdio several time
11324 - MINOR: don't close stdio anymore
11325 - BUG/MEDIUM: http: don't automatically forward request close
11326 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
11327 - MINOR: h2: add a function to report pseudo-header names
11328 - DEBUG: hpack: make hpack_dht_dump() expose the output file
11329 - DEBUG: hpack: add more traces to the hpack decoder
11330 - CONTRIB: hpack: add an hpack decoder
11331 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
11332 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
11333 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
11334 - CLEANUP: rbtree: remove
11335 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
11336 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
11337 - DOC: lua: Fix typos in comments of hlua_socket_receive
11338 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
11339 - BUG/MINOR: lua: Fix return value of Socket.settimeout
11340 - MINOR: dns: Handle SRV record weight correctly.
11341 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
11342 - MINOR: hathreads: add support for gcc < 4.7
11343 - BUILD/MINOR: ancient gcc versions atomic fix
11344 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
11345 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
11346 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
11347 - DOC: clarify the scope of ssl_fc_is_resumed
11348 - CONTRIB: debug: fix a few flags definitions
11349 - BUG/MINOR: poll: too large size allocation for FD events
11350 - MINOR: sample: add date_us sample
11351 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
11352 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
11353 - MINOR: global/threads: move cpu_map at the end of the global struct
11354 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
11355 - MINOR: global: add some global activity counters to help debugging
11356 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
11357 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
11358 - BUG/MEDIUM: fd: maintain a per-thread update mask
11359 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
11360 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
11361 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
11362 - BUG/MEDIUM: threads/mworker: fix a race on startup
11363 - BUG/MINOR: mworker: only write to pidfile if it exists
11364 - MINOR: threads: Fix build when we're not compiling with threads.
11365 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
11366 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
11367 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
11368 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
11369 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
11370 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
11371 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
11372 - CLEANUP: sample: Fix comment encoding of sample.c
11373 - CLEANUP: sample: Fix outdated comment about sample casts functions
11374 - BUG/MINOR: sample: Fix output type of c_ipv62ip
11375 - CLEANUP: Fix typo in ARGT_MSK6 comment
11376 - CLEANUP: standard: Use len2mask4 in str2mask
11377 - MINOR: standard: Add str2mask6 function
11378 - MINOR: config: Add support for ARGT_MSK6
11379 - MEDIUM: sample: Add IPv6 support to the ipmask converter
11380 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
11381 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
11382 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
11383 - MINOR: fd: don't report maxfd in alert messages
11384 - MEDIUM: polling: start to move maxfd computation to the pollers
11385 - CLEANUP: fd/threads: remove the now unused fdtab_lock
11386 - MINOR: poll: more accurately compute the new maxfd in the loop
11387 - CLEANUP: fd: remove the unused "new" field
11388 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
11389 - MEDIUM: select: make use of hap_fd_* functions
11390 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
11391 - MEDIUM: select: don't use the old FD state anymore
11392 - MEDIUM: poll: don't use the old FD state anymore
11393 - MINOR: fd: pass the iocb and owner to fd_insert()
11394 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
11395 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
11396 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
11397 - DOC: don't suggest using http-server-close
11398 - MINOR: introduce proxy-v2-options for send-proxy-v2
11399 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
11400 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
11401 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
11402 - MINOR: spoe: Always link a SPOE context with the applet processing it
11403 - MINOR: spoe: Replace sending_rate by a frequency counter
11404 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
11405 - MEDIUM: spoe: Use an ebtree to manage idle applets
11406 - MINOR: spoa_example: Count the number of frames processed by each worker
11407 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
11408 - MINOR: init: make stdout unbuffered
11409 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
11410 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
11411 - MINOR: compiler: introduce offsetoff().
11412 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
11413 - MINOR: threads: add test and set/reset operations
11414 - MINOR: pools/threads: Implement lockless memory pools.
11415 - MAJOR: fd/threads: Make the fdcache mostly lockless.
11416 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
11417 - MAJOR: fd: compute the new fd polling state out of the fd lock
11418 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
11419 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
11420 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
11421 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
11422 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
11423 - MEDIUM: fd: make updt_fd_polling() use atomics
11424 - MEDIUM: poller: use atomic ops to update the fdtab mask
11425 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
11426 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
11427 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
11428 - MINOR: fd: reorder fd_add_to_fd_list()
11429 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
11430 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
11431 - MINOR: init: emit warning when -sf/-sd cannot parse argument
11432 - BUILD: fd/threads: fix breakage build breakage without threads
11433 - DOC: Describe routing impact of using interface keyword on bind lines
11434 - DOC: Mention -Ws in the list of available options
11435 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
11436 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
11437 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
11438 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
11439 - BUILD/MINOR: memory: stdint is needed for uintptr_t
11440 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
11441 - DOC: lua: new prototype for function "register_action()"
11442 - DOC: cfgparse: Warn on option (tcp|http)log in backend
11443 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
11444 - MINOR: sample: add a new "concat" converter
11445 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
11446 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
11447 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
11448 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
11449 - CLEANUP: cfgparse: Remove unused label end
11450 - CLEANUP: spoe: Remove unused label retry
11451 - CLEANUP: h2: Remove unused labels from mux_h2.c
11452 - CLEANUP: pools: Remove unused end label in memory.h
11453 - CLEANUP: standard: Fix typo in IPv6 mask example
11454 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
11455 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
11456 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
11457 - MINOR: stats: display the number of threads in the statistics.
11458 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
11459 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
11460 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
11461 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
11462 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
11463 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
11464 - MINOR: ssl: extract full pkey info in load_certificate
11465 - MINOR: ssl: add ssl_sock_get_pkey_algo function
11466 - MINOR: ssl: add ssl_sock_get_cert_sig function
11467 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
11468 - MINOR: connection: add proxy-v2-options authority
11469 - MINOR: systemd: Add section for SystemD sandboxing to unit file
11470 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
11471 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
11472 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
11473 - MINOR: h2: provide and use h2s_detach() and h2s_free()
11474 - MEDIUM: h2: use a single buffer allocator
11475 - MINOR/BUILD: fix Lua build on Mac OS X
11476 - BUILD/MINOR: fix Lua build on Mac OS X (again)
11477 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
11478 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
11479 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
11480 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
11481 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
11482 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
11483 - CLEANUP: ssl: Remove a duplicated #include
11484 - CLEANUP: cli: Remove a leftover debug message
11485 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
11486 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
11487 - BUG/MINOR: force-persist and ignore-persist only apply to backends
11488 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
11489 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
11490 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
11491 - TESTS: Add a testcase for multi-port + multi-server listener issue
11492 - CLEANUP: dns: remove duplicate code in src/dns.c
11493 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
11494 - BUG/MINOR: cli: Ensure all command outputs end with a LF
11495 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
11496 - BUILD: ssl: Fix build with OpenSSL without NPN capability
11497 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
11498 - BUG/MINOR: lua: return bad error messages
11499 - CLEANUP: lua/syntax: lua is a name and not an acronym
11500 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
11501 - BUG/MINOR: tcp-check: use the server's service port as a fallback
11502 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
11503 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
11504 - BUILD/BUG: enable -fno-strict-overflow by default
11505 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
11506 - DOC: log: more than 2 log servers are allowed
11507 - MINOR: hash: add new function hash_crc32c
11508 - MINOR: proxy-v2-options: add crc32c
11509 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
11510 - REORG: compact "struct server"
11511 - MINOR: samples: add crc32c converter
11512 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
11513 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
11514 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
11515 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
11516 - BUG/MINOR: lua: the function returns anything
11517 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
11518 - CLEANUP: lua: typo fix in comments
11519 - BUILD/MINOR: fix build when USE_THREAD is not defined
11520 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
11521 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
11522 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
11523 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
11524 - BUILD/MINOR: cli: fix a build warning introduced by last commit
11525 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
11526 - MINOR: h2: always call h2s_detach() in h2_detach()
11527 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
11528 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
11529 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
11530 - BUILD/MINOR: threads: always export thread_sync_io_handler()
11531 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
11532 - MINOR: h2: implement a basic "show_fd" function
11533 - MINOR: cli: report cache indexes in "show fd"
11534 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
11535 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
11536 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
11537 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
11538 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
11539 - BUG/MINOR: cache: fix "show cache" output
11540 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
11541 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
11542 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
11543 - BUG/MINOR: spoe: Register the variable to set when an error occurred
11544 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
11545 - MINOR: spoe: Add metrics in to know time spent in the SPOE
11546 - MINOR: spoe: Add options to store processing times in variables
11547 - MINOR: log: move 'log' keyword parsing in dedicated function
11548 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
11549 - MINOR: spoe: Add loggers dedicated to the SPOE agent
11550 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
11551 - MINOR: spoe: use agent's logger to log SPOE messages
11552 - MINOR: spoe: Add counters to log info about SPOE agents
11553 - BUG/MAJOR: cache: always initialize newly created objects
11554 - MINOR: servers: Support alphanumeric characters for the server templates names
11555 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
11556 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
11557 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
11558 - MINOR: proxy: Add fe_defbe fetcher
11559 - MINOR: config: Warn if resolvers has no nameservers
11560 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
11561 - MINOR: cli: Ensure the CLI always outputs an error when it should
11562 - MEDIUM: sample: Extend functionality for field/word converters
11563 - MINOR: export localpeer as an environment variable
11564 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
11565 - BUILD: sample: avoid build warning in sample.c
11566 - BUG/CRITICAL: h2: fix incorrect frame length check
11567 - DOC: lua: update the links to the config and Lua API
11568 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
11569 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
11570 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
11571 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
11572 - MINOR: h2: detect presence of CONNECT and/or content-length
11573 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
11574 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
11575 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
11576 - MEDIUM: cli: Add payload support
11577 - MINOR: map: Add payload support to "add map"
11578 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
11579 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
11580 - MINOR: sample: Add strcmp sample converter
11581 - MINOR: http: Add support for 421 Misdirected Request
11582 - BUG/MINOR: config: disable http-reuse on TCP proxies
11583 - MINOR: ssl: disable SSL sample fetches when unsupported
11584 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
11585 - BUG/MINOR: checks: Fix check->health computation for flapping servers
11586 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
11587 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
11588 - MINOR: backend: implement random-based load balancing
11589 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
11590 - MINOR: lua: Add server name & puid to LUA Server class.
11591 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
11592 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
11593 - BUG/MEDIUM: task: Don't free a task that is about to be run.
11594 - MINOR: fd: Make the lockless fd list work with multiple lists.
11595 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
11596 - MINOR: pollers: move polled_mask outside of struct fdtab.
11597 - BUG/MINOR: lua: schedule socket task upon lua connect()
11598 - BUG/MINOR: lua: ensure large proxy IDs can be represented
11599 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
11600 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
11601 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
11602 - BUG/MEDIUM: ssl: properly protect SSL cert generation
11603 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
11604 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
11605 - BUG/MEDIUM: spoe: Flags are not encoded in network order
11606 - CLEANUP: spoe: Remove unused variables the agent structure
11607 - DOC: spoe: fix a typo
11608 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
11609 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
11610 - DOC: add some description of the pending rework of the buffer structure
11611 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
11612 - MINOR: lua: Improve error message
11613 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
11614 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
11615 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
11616 - BUG/BUILD: threads: unbreak build without threads
11617 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
11618 - BUG/MEDIUM: lua/socket: Length required read doesn't work
11619 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
11620 - MAJOR: tasks: Create a per-thread runqueue.
11621 - MAJOR: tasks: Introduce tasklets.
11622 - MINOR: tasks: Make the number of tasks to run at once configurable.
11623 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
11624 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
11625 - MINOR: http: Log warning if (add|set)-header fails
11626 - DOC: management: add the new wrew stats column
11627 - MINOR: stats: also report the failed header rewrites warnings on the stats page
11628 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
11629 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
11630 - MINOR: task: Also consider the task list size when getting global tasks.
11631 - MINOR: dns: Implement `parse-resolv-conf` directive
11632 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
11633 - MINOR: task/notification: Is notifications registered ?
11634 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
11635 - BUG/MAJOR: lua: Dead lock with sockets
11636 - BUG/MEDIUM: lua/socket: Notification error
11637 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
11638 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
11639 - DOC: contrib/modsecurity: few typo fixes
11640 - DOC: SPOE.txt: fix a typo
11641 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
11642 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
11643 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
11644 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
11645 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
11646 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
11647 - MINOR: task: Fix a compiler warning by adding a cast.
11648 - MINOR: stats: also report the nice and number of calls for applets
11649 - MINOR: applet: assign the same nice value to a new appctx as its owner task
11650 - MINOR: task: Fix compiler warning.
11651 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
11652 - MINOR: tasks: Don't define rqueue if we're building without threads.
11653 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
11654 - MINOR: lua: Increase debug information
11655 - BUG/MEDIUM: threads: handle signal queue only in thread 0
11656 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
11657 - BUG/MINOR: signals: ha_sigmask macro for multithreading
11658 - BUG/MAJOR: map: fix a segfault when using http-request set-map
11659 - DOC: regression testing: Add a short starting guide.
11660 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
11661 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
11662 - BUG/MINOR: lua: Segfaults with wrong usage of types.
11663 - BUG/MAJOR: ssl: Random crash with cipherlist capture
11664 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
11665 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
11666 - MINOR: tests: First regression testing file.
11667 - MINOR: reg-tests: Add reg-tests/README file.
11668 - MINOR: reg-tests: Add a few regression testing files.
11669 - DOC: Add new REGTEST tag info about reg testing.
11670 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
11671 - MINOR: Some spelling cleanup in the comments.
11672 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
11673 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
11674 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
11675 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
11676 - REGTEST/MINOR: Add levels to reg-tests target.
11677 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
11678 - BUG/BUILD: threads: unbreak build without threads
11679 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
11680 - MINOR: stick-tables: make stktable_release() do nothing on NULL
11681 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
11682 - MINOR: startup: change session/process group settings
11683 - MINOR: systemd: consider exit status 143 as successful
11684 - REGTEST/MINOR: Wrong URI syntax.
11685 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
11686 - CLEANUP: dns: inacurate comment about prefered IP score
11687 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
11688 - MINOR: dns: new DNS options to allow/prevent IP address duplication
11689 - REGTEST/MINOR: Unexpected curl URL globling.
11690 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
11691 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
11692 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
11693 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
11694 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
11695 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
11696 - MINOR: tasklet: Set process to NULL.
11697 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
11698 - MINOR: buffer: switch buffer sizes and offsets to size_t
11699 - MINOR: buffer: add a few basic functions for the new API
11700 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
11701 - MINOR: buffer: Add b_set_data().
11702 - MINOR: buffer: introduce b_realign_if_empty()
11703 - MINOR: compression: pass the channel to http_compression_buffer_end()
11704 - MINOR: channel: add a few basic functions for the new buffer API
11705 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
11706 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
11707 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
11708 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
11709 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
11710 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
11711 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
11712 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
11713 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
11714 - MINOR: buffer: remove bi_ptr()
11715 - MINOR: buffer: remove bo_ptr()
11716 - MINOR: buffer: remove bo_end()
11717 - MINOR: buffer: remove bi_end()
11718 - MINOR: buffer: remove bo_contig_data()
11719 - MINOR: buffer: merge b{i,o}_contig_space()
11720 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
11721 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
11722 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
11723 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
11724 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
11725 - MINOR: h2: clarify the fact that the send functions are unsigned
11726 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
11727 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
11728 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
11729 - MINOR: h1: make h1_measure_trailers() use an offset and a count
11730 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
11731 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
11732 - MINOR: buffer: get rid of b_end() and b_to_end()
11733 - MINOR: buffer: make b_getblk_nc() take const pointers
11734 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
11735 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
11736 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
11737 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
11738 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
11739 - MINOR: connection: add a flags argument to rcv_buf()
11740 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
11741 - MINOR: buffer: get rid of b_ptr() and convert its last users
11742 - MINOR: buffer: use b_room() to determine available space in a buffer
11743 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
11744 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
11745 - MINOR: buffer: make bo_putchar() use b_tail()
11746 - MINOR: buffer: replace buffer_full() with channel_full()
11747 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
11748 - MINOR: buffer: replace buffer_pending() with ci_data()
11749 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
11750 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
11751 - MINOR: buffer: use b_orig() to replace most references to b->data
11752 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
11753 - MINOR: channel: remove almost all references to buf->i and buf->o
11754 - MINOR: channel: Add co_set_data().
11755 - MEDIUM: channel: adapt to the new buffer API
11756 - MINOR: checks: adapt to the new buffer API
11757 - MEDIUM: h2: update to the new buffer API
11758 - MINOR: buffer: remove unused bo_add()
11759 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
11760 - MINOR: stats: adapt to the new buffers API
11761 - MINOR: cli: use the new buffer API
11762 - MINOR: cache: use the new buffer API
11763 - MINOR: stream-int: use the new buffer API
11764 - MINOR: stream: use wrappers instead of directly manipulating buffers
11765 - MINOR: backend: use new buffer API
11766 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
11767 - MINOR: filters: convert to the new buffer API
11768 - MINOR: payload: convert to the new buffer API
11769 - MEDIUM: h1: port to new buffer API.
11770 - MINOR: flt_trace: adapt to the new buffer API
11771 - MEDIUM: compression: start to move to the new buffer API
11772 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
11773 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
11774 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
11775 - MAJOR: start to change buffer API
11776 - MINOR: buffer: remove the check for output on b_del()
11777 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
11778 - MINOR: buffer: rename the "data" field to "area"
11779 - MEDIUM: buffers: move "output" from struct buffer to struct channel
11780 - MINOR: buffer: replace bi_fast_delete() with b_del()
11781 - MINOR: buffer: replace b{i,o}_put* with b_put*
11782 - MINOR: buffer: add a new file for ist + buffer manipulation functions
11783 - MINOR: checks: use b_putist() instead of b_putstr()
11784 - MINOR: buffers: remove b_putstr()
11785 - CLEANUP: buffer: minor cleanups to buffer.h
11786 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
11787 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
11788 - MINOR: buffer: rename the data length member to '->data'
11789 - MAJOR: buffer: finalize buffer detachment
11790 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
11791 - MAJOR: chunks: replace struct chunk with struct buffer
11792 - DOC: buffers: document the new buffers API
11793 - DOC: buffers: remove obsolete docs about buffers
11794 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
11795 - MINOR: connections/mux: Add a new "subscribe" method.
11796 - MEDIUM: connections/mux: Revamp the send direction.
11797 - MINOR: connection: simplify subscription by adding a registration function
11798 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
11799 - BUG/MINOR: build: Fix compilation with debug mode enabled
11800 - BUILD: Generate sha256 checksums in publish-release
11801 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
11802 - MINOR: debug: Add checks for conn_stream flags
11803 - MINOR: ist: Add the function isteqi
11804 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
11805 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
11806 - MINOR: buffers: simplify b_contig_space()
11807 - MINOR: buffers: split b_putblk() into __b_putblk()
11808 - MINOR: buffers: add b_xfer() to transfer data between buffers
11809 - DOC: add some design notes about the new layering model
11810 - MINOR: conn_stream: add a new CS_FL_REOS flag
11811 - MINOR: conn_stream: add an rx buffer to the conn_stream
11812 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
11813 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
11814 - MINOR: h2: make each H2 stream support an intermediary input buffer
11815 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
11816 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
11817 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
11818 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
11819 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
11820 - MEDIUM: h2: perform a single call to the data layer in demux()
11821 - MEDIUM: h2: don't call data_cb->recv() anymore
11822 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
11823 - MEDIUM: h2: use the default conn_stream's receive function
11824 - DOC: add more design feedback on the new layering model
11825 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
11826 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
11827 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
11828 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
11829 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
11830 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
11831 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
11832 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
11833 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
11834 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
11835 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
11836 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
11837 - MINOR: queue: centralize dequeuing code a bit better
11838 - MEDIUM: queue: make pendconn_free() work on the stream instead
11839 - DOC: queue: document the expected locking model for the server's queue
11840 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
11841 - MINOR: queue: use a distinct variable for the assigned server and the queue
11842 - MINOR: queue: implement pendconn queue locking functions
11843 - MEDIUM: queue: get rid of the pendconn lock
11844 - MINOR: tasks: Make active_tasks_mask volatile.
11845 - MINOR: tasks: Make global_tasks_mask volatile.
11846 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
11847 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
11848 - BUG/MEDIUM: threads/sync: use sched_yield when available
11849 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
11850 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
11851 - BUG/MINOR: config: stick-table is not supported in defaults section
11852 - BUILD/MINOR: threads: unbreak build with threads disabled
11853 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
11854 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
11855 - MINOR: threads: move "nbthread" parsing to hathreads.c
11856 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
11857 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
11858 - BUILD/MINOR: compiler: fix offsetof() on older compilers
11859 - SCRIPTS: git-show-backports: add missing quotes to "echo"
11860 - MINOR: threads: add more consistency between certain variables in no-thread case
11861 - MEDIUM: hathreads: implement a more flexible rendez-vous point
11862 - BUG/MEDIUM: cli: make "show fd" thread-safe
11863
Willy Tarreaub3066502017-11-26 19:50:17 +0100118642017/11/26 : 1.9-dev0
11865
Willy Tarreau0b787922017-11-26 19:25:23 +0100118662017/11/26 : 1.8.0
11867 - BUG/MEDIUM: stream: don't automatically forward connect nor close
11868 - BUG/MAJOR: stream: ensure analysers are always called upon close
11869 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
11870 - MEDIUM: mworker: Add systemd `Type=notify` support
11871 - BUG/MEDIUM: cache: free callback to remove from tree
11872 - CLEANUP: cache: remove unused struct
11873 - MEDIUM: cache: enable the HTTP analysers
11874 - CLEANUP: cache: remove wrong comment
11875 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
11876 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
11877 - MINOR: threads/atomic: implement pl_mb() in asm on x86
11878 - MINOR: threads/atomic: implement pl_bts() on non-x86
11879 - MINOR: threads/build: atomic: replace the few inlines with macros
11880 - BUILD: threads/plock: fix a build issue on Clang without optimization
11881 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
11882 - BUILD: compiler: add a new type modifier __maybe_unused
11883 - BUILD: h2: mark some inlined functions "unused"
11884 - BUILD: server: check->desc always exists
11885 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
11886 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
11887 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
11888 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
11889 - BUG/MINOR: systemd: ignore daemon mode
11890 - CONTRIB: spoa_example: allow to compile outside HAProxy.
11891 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
11892 - CONTRIB: spoa_example: remove last dependencies on type "sample"
11893 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
11894 - CLEANUP: cache: reorder includes
11895 - MEDIUM: shctx: use unsigned int for len and block_count
11896 - MEDIUM: cache: "show cache" on the cli
11897 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
11898 - BUG/MEDIUM: cache: refcount forbids to free the objects
11899 - BUG/MEDIUM: cache fix cli_kws structure
11900 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
11901 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
11902 - MINOR: ssl: Don't disable early data handling if we could not write.
11903 - MINOR: pools: prepare functions to override malloc/free in pools
11904 - MINOR: pools: implement DEBUG_UAF to detect use after free
11905 - BUG/MEDIUM: threads/time: fix time drift correction
11906 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
11907 - MINOR: sample: Add "thread" sample fetch
11908 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
11909 - BUG/MINOR: stream: fix tv_request calculation for applets
11910 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
11911 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
11912 - MINOR: ssl: Handle reading early data after writing better.
11913 - MINOR: mux: Make sure every string is woken up after the handshake.
11914 - MEDIUM: cache: store sha1 for hashing the cache key
11915 - MINOR: http: implement the "http-request reject" rule
11916 - MINOR: h2: send RST_STREAM before GOAWAY on reject
11917 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
11918 - MINOR: h2: make use of client-fin timeout after GOAWAY
11919 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
11920 - MINOR: ssl: Handle early data with BoringSSL
11921 - BUG/MEDIUM: stream: always release the stream-interface on abort
11922 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
11923 - MINOR: cache: move the refcount decrease in the applet release
11924 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
11925 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
11926 - MINOR: config: Slightly change how parse_process_number works
11927 - MINOR: config: Export parse_process_number and use it wherever it's applicable
11928 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
11929 - MINOR: config: Add auto-increment feature for cpu-map
11930 - MINOR: config: Support partial ranges in cpu-map directive
11931 - MINOR:: config: Remove thread-map directive
11932 - MINOR: config: Add the threads support in cpu-map directive
11933 - MINOR: config: Add threads support for "process" option on "bind" lines
11934 - MEDIUM: listener: Bind listeners on a thread subset if specified
11935 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
11936 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
11937 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
11938 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
11939 - DOC: update the roadmap file with the latest changes merged in 1.8
11940 - DOC: fix mangled version in peers protocol documentation
11941 - DOC: add initial peers protovol v2.0 documentation.
11942 - DOC: mention William as maintainer of the cache and master-worker
11943 - DOC: add Christopher and Emeric as maintainers of the threads
11944 - MINOR: cache: replace a fprint() by an abort()
11945 - MEDIUM: cache: max-age configuration keyword
11946 - DOC: explain HTTP2 timeout behavior
11947 - DOC: cache: configuration and management
11948 - MAJOR: mworker: exits the master on failure
11949 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
11950 - MINOR: task: keep a pointer to the currently running task
11951 - MINOR: task: align the rq and wq locks
11952 - MINOR: fd: cache-align fdtab and fdcache locks
11953 - MINOR: buffers: cache-align buffer_wq_lock
11954 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
11955 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
11956 - CLEANUP: checks: remove 16 bytes of holes in struct check
11957 - CLEANUP: cache: more efficiently pack the struct cache
11958 - CLEANUP: fd: place the lock at the beginning of struct fdtab
11959 - CLEANUP: pools: align pools on a cache line
11960 - DOC: config: add a few bits about how to configure HTTP/2
11961 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
11962 - BUILD: Makefile: reorder object files by size
11963
Willy Tarreaucfe14662017-11-19 09:55:29 +0100119642017/11/19 : 1.8-rc4
11965 - BUG/MEDIUM: cache: does not cache if no Content-Length
11966 - BUILD: thread/pipe: fix build without threads
11967 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
11968 - MINOR: debug/flags: Add missing flags
11969 - MINOR: threads: Use __decl_hathreads to declare locks
11970 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
11971 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
11972 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
11973 - MINOR: ebtree/scope: add a function to find next node from a parent
11974 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
11975 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
11976 - BUG/MEDIUM: cache: use msg->sov to forward header
11977 - MINOR: cache: forward data with headers
11978 - MINOR: cache: disable cache if shctx_row_data_append fail
11979 - BUG/MINOR: threads: tid_bit must be a unsigned long
11980 - CLEANUP: tasks: Remove useless double test on rq_next
11981 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
11982 - MINOR: tools: add a function to dump a scope-aware tree to a file
11983 - MINOR: tools: improve the DOT dump of the ebtree
11984 - MINOR: tools: emphasize the node being worked on in the tree dump
11985 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
11986 - DOC: peers: Add a first version of peers protocol v2.1.
11987 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
11988 - MINOR: mworker: display an accurate error when the reexec fail
11989 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
11990 - BUG/MEDIUM: mworker: does not deinit anymore
11991 - BUG/MEDIUM: mworker: does not close inherited FD
11992 - MINOR: tests: add a python wrapper to test inherited fd
11993 - BUG/MINOR: Allocate the log buffers before the proxies startup
11994 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
11995 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
11996 - MINOR: applets: Use a bitfield to track applets activity per-thread
11997 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
11998 - MEDIUM: applets: Don't process more than 200 active applets at once
11999 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
12000 - MINOR: SSL: Store the ASN1 representation of client sessions.
12001 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
12002 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
12003
Willy Tarreau34650d52017-11-11 09:06:48 +0100120042017/11/11 : 1.8-rc3
12005 - BUILD: use MAXPATHLEN instead of NAME_MAX.
12006 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
12007 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
12008 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
12009 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
12010 - CLEANUP: checks: remove return statements in locked functions
12011 - BUG/MINOR: cli: add severity in "set server addr" parser
12012 - CLEANUP: server: get rid of return statements in the CLI parser
12013 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
12014 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
12015 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
12016 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
12017 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
12018 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
12019 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
12020 - BUG/MEDIUM: threads: don't try to free build option message on exit
12021 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
12022 - MINOR: add master-worker in the warning about nbproc
12023 - MINOR: mworker: allow pidfile in mworker + foreground
12024 - MINOR: mworker: write parent pid in the pidfile
12025 - MINOR: mworker: do not store child pid anymore in the pidfile
12026 - MINOR: ebtree: implement the scope-aware functions for eb32
12027 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
12028 - MINOR: ebtree: update the eb32sc parent node's scope on delete
12029 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
12030 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
12031 - MAJOR: task: make use of the scope-aware ebtree functions
12032 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
12033 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
12034 - MINOR: threads: use faster locks for the spin locks
12035 - MINOR: tasks: only visit filled task slots after processing them
12036 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
12037 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
12038 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
12039 - DOC: Add note about encrypted password CPU usage
12040 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
12041 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
12042 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
12043 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
12044 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
12045 - BUG/MEDIUM: h2: fix some wrong error codes on connections
12046 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
12047 - BUILD: enable USE_THREAD for Solaris build.
12048 - BUG/MEDIUM: h2: don't close the connection is there are data left
12049 - MINOR: h2: don't re-enable the connection's task when we're closing
12050 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
12051 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
12052 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
12053 - BUG/MINOR: h2: don't send GOAWAY on failed response
12054 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
12055 - BUG/MINOR: comp: fix compilation warning compiling without compression.
12056 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
12057 - BUG/MAJOR: threads/tasks: fix the scheduler again
12058 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
12059 - MINOR: ssl: Handle session resumption with TLS 1.3
12060 - MINOR: ssl: Spell 0x10101000L correctly.
12061 - MINOR: ssl: Handle sending early data to server.
12062 - BUILD: ssl: fix build of backend without ssl
12063 - BUILD: shctx: do not depend on openssl anymore
12064 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
12065 - BUG/MEDIUM: h2: reject non-3-digit status codes
12066 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
12067 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
12068 - BUG/MEDIUM: h2: split the function to send RST_STREAM
12069 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
12070 - MINOR: tools: don't use unlikely() in hex2i()
12071 - BUG/MEDIUM: h2: support orphaned streams
12072 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
12073 - CLEANUP: mux: remove the unused "release()" function
12074 - MINOR: cli: make "show fd" report the fd's thread mask
12075 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
12076 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
12077 - MEDIUM: http: always reject the "PRI" method
12078
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +0100120792017/11/03 : 1.8-rc2
12080 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
12081 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
12082 - MINOR: mux: Only define pipe functions on linux.
12083 - MINOR: cache: Remove useless test for nonzero.
12084 - MINOR: cache: Don't confuse act_return and act_parse_ret.
12085 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
12086 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
12087 - BUG/MAJOR: fix deadlock on healthchecks.
12088 - BUG/MINOR: thread: fix a typo in the debug code
12089 - BUILD: shctx: allow to be built without openssl
12090 - BUG/MEDIUM: cache: don't try to resolve wrong filters
12091 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
12092 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
12093 - BUG/MINOR: stdarg.h inclusion
12094 - BUG/MINOR: dns: fix missing lock protection on server.
12095 - BUG/MINOR: lua: fix missing lock protection on server.
12096 - BUILD: enable USE_THREAD for OpenBSD build.
12097 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
12098 - MINOR: thread: report multi-thread support in haproxy -vv
12099
Willy Tarreau901f75c2017-10-31 23:18:29 +0100121002017/10/31 : 1.8-rc1
12101 - BUG/MEDIUM: server: Allocate tmptrash before using it.
12102 - CONTRIB: trace: add the possibility to place trace calls in the code
12103 - CONTRIB: trace: try to display the function's return value on exit
12104 - CONTRIB: trace: report the base name only for file names
12105 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
12106 - MINOR: ssl: build with recent BoringSSL library
12107 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
12108 - BUG/MINOR: cli: restore "set ssl tls-key" command
12109 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
12110 - IMPORT: sha1: import SHA1 functions
12111 - MINOR: sample: add the sha1 converter
12112 - MINOR: sample: add the hex2i converter
12113 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
12114 - MINOR: ssl: don't abort after sending 16kB
12115 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
12116 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
12117 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
12118 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
12119 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
12120 - BUG/MINOR: checks: Don't forget to release the connection on error case.
12121 - MINOR: buffer: add the buffer input manipulation functions
12122 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
12123 - MEDIUM: cfgparse: post section callback
12124 - MEDIUM: cfgparse: post parsing registration
12125 - MINOR: lua: add uuid to the Class Proxy
12126 - MINOR: hlua: Add regex class
12127 - MINOR: http: Mark the 425 code as "Too Early".
12128 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
12129 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
12130 - MINOR: ssl: generated certificate is missing in switchctx early callback
12131 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
12132 - BUILD: Makefile: disable -Wunused-label
12133 - MINOR: ssl/proto_http: Add keywords to take care of early data.
12134 - BUG/MINOR: lua: const attribute of a string is overridden
12135 - MINOR: ssl: Don't abuse ssl_options.
12136 - MINOR: update proxy-protocol-v2 #define
12137 - MINOR: merge ssl_sock_get calls for log and ppv2
12138 - MINOR: add ALPN information to send-proxy-v2
12139 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
12140 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
12141 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
12142 - REORG: shctx: move lock functions and struct
12143 - MEDIUM: shctx: allow the use of multiple shctx
12144 - REORG: shctx: move ssl functions to ssl_sock.c
12145 - MEDIUM: shctx: separate ssl and shctx
12146 - MINOR: shctx: rename lock functions
12147 - MINOR: h1: store the status code in the H1 message
12148 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
12149 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
12150 - MINOR: action: Add trk_idx inline function
12151 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
12152 - MINOR: action: Add a function pointer in act_rule struct to check its validity
12153 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
12154 - MINOR: action: Add a functions to check http capture rules
12155 - MINOR: action: Factorize checks on rules calling check_ptr if defined
12156 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
12157 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
12158 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
12159 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
12160 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
12161 - MINOR: spoe: Move message encoding in its own function
12162 - MINOR: spoe: Add a type to qualify the message list during encoding
12163 - MINOR: spoe: Add a generic function to encode a list of SPOE message
12164 - MEDIUM: spoe/rules: Process "send-spoe-group" action
12165 - BUG/MINOR: dns: Fix CLI keyword declaration
12166 - MAJOR: dns: Refactor the DNS code
12167 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
12168 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
12169 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
12170 - MINOR: standard: Add memvprintf function
12171 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
12172 - MINOR: cli: Add "show startup-logs" command
12173 - MINOR: startup: Extend the scope the MODE_STARTING flag
12174 - MINOR: threads: Prepare makefile to link with pthread
12175 - MINOR: threads: Add THREAD_LOCAL macro
12176 - MINOR: threads: Add atomic-ops and plock includes in import dir
12177 - MEDIUM: threads: Add hathreads header file
12178 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
12179 - MINOR: threads: Add nbthread parameter
12180 - MEDIUM: threads: Adds a set of functions to handle sync-point
12181 - MAJOR: threads: Start threads to experiment multithreading
12182 - MINOR: threads: Define the sync-point inside run_poll_loop
12183 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
12184 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
12185 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
12186 - MEDIUM: threads/logs: Make logs thread-safe
12187 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
12188 - MAJOR: threads/fd: Make fd stuffs thread-safe
12189 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
12190 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
12191 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
12192 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
12193 - WIP: SQUASH WITH SYNC POINT
12194 - MAJOR: threads/task: handle multithread on task scheduler
12195 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
12196 - MEDIUM: threads/listeners: Make listeners thread-safe
12197 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
12198 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
12199 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
12200 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
12201 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
12202 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
12203 - MINOR: threads/sample: Change temp_smp into a thread local variable
12204 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
12205 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
12206 - MAJOR: threads/applet: Handle multithreading for applets
12207 - MAJOR: threads/peers: Make peers thread safe
12208 - MAJOR: threads/buffer: Make buffer wait queue thread safe
12209 - MEDIUM: threads/stream: Make streams list thread safe
12210 - MAJOR: threads/ssl: Make SSL part thread-safe
12211 - MEDIUM: threads/queue: Make queues thread-safe
12212 - MAJOR: threads/map: Make acls/maps thread safe
12213 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
12214 - MEDIUM: thread/vars: Make vars thread-safe
12215 - MEDIUM: threads/filters: Add init/deinit callback per thread
12216 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
12217 - MEDIUM: threads/compression: Make HTTP compression thread-safe
12218 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
12219 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
12220 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
12221 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
12222 - MEDIUM: threads/xref: Convert xref function to a thread safe model
12223 - MEDIUM: threads/tasks: Add lock around notifications
12224 - MEDIUM: thread/spoe: Make the SPOE thread-safe
12225 - MEDIUM: thread/dns: Make DNS thread-safe
12226 - MINOR: threads: Add thread-map config parameter in the global section
12227 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
12228 - MINOR: threads/checks: Set the task process_mask when a check is executed
12229 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
12230 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
12231 - MINOR: threads: Don't start when device a detection module is used
12232 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
12233 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
12234 - MAJOR: threads: Offically enable the threads support in HAProxy
12235 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
12236 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
12237 - BUILD: stick-tables: silence an uninitialized variable warning
12238 - BUG/MINOR: dns: Fix SRV records with the new thread code.
12239 - MINOR: ssl: Remove the global allow-0rtt option.
12240 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
12241 - CLEANUP: threads: rename process_mask to thread_mask
12242 - MINOR: h1: add a function to measure the trailers length
12243 - MINOR: threads: add a portable barrier for threads and non-threads
12244 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
12245 - BUG/MEDIUM: threads: Initialize the sync-point
12246 - MEDIUM: connection: start to introduce a mux layer between xprt and data
12247 - MINOR: connection: implement alpn registration of muxes
12248 - MINOR: mux: register the pass-through mux for any ALPN string
12249 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
12250 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
12251 - MINOR: connection: introduce conn_stream
12252 - MINOR: mux: add more methods to mux_ops
12253 - MINOR: connection: introduce the conn_stream manipulation functions
12254 - MINOR: mux_pt: implement remaining mux_ops methods
12255 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
12256 - MINOR: connection: make conn_stream users also check for per-stream error flag
12257 - MINOR: conn_stream: new shutr/w status flags
12258 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
12259 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
12260 - MINOR: connection: add cs_close() to close a conn_stream
12261 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
12262 - MEDIUM: connection: replace conn_full_close() with cs_close()
12263 - MEDIUM: connection: make mux->detach() release the connection
12264 - MEDIUM: stream: do not forcefully close the client connection anymore
12265 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
12266 - MEDIUM: connection: add a destroy callback
12267 - MINOR: session: release the listener with the session, not the stream
12268 - MEDIUM: session: make use of the connection's destroy callback
12269 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
12270 - MINOR: hpack: implement the HPACK Huffman table decoder
12271 - MINOR: hpack: implement the header tables management
12272 - MINOR: hpack: implement the decoder
12273 - MEDIUM: hpack: implement basic hpack encoding
12274 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
12275 - MINOR: h2: create a very minimalistic h2 mux
12276 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
12277 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
12278 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
12279 - MINOR: h2: create the h2c struct and allocate its pool
12280 - MINOR: h2: create the h2s struct and the associated pool
12281 - MINOR: h2: handle two extra stream states for errors
12282 - MINOR: h2: add a frame header descriptor for incoming frames
12283 - MEDIUM: h2: allocate and release the h2c context on connection init/end
12284 - MEDIUM: h2: implement basic recv/send/wake functions
12285 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
12286 - MEDIUM: h2: implement the mux buffer allocator
12287 - MINOR: h2: add the connection and stream flags listing the causes for blocking
12288 - MINOR: h2: add function h2s_id() to report a stream's ID
12289 - MINOR: h2: small function to know when the mux is busy
12290 - MINOR: h2: new function h2c_error to mark an error on the connection
12291 - MINOR: h2: new function h2s_error() to mark an error on a stream
12292 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
12293 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
12294 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
12295 - MINOR: h2: add stream lookup function based on the stream ID
12296 - MINOR: h2: create dummy idle and closed streams
12297 - MINOR: h2: add the function to create a new stream
12298 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
12299 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
12300 - MINOR: h2: also terminate the connection on shutr
12301 - MEDIUM: h2: properly consider all conditions for end of connection
12302 - MEDIUM: h2: wake the connection up for send on pending streams
12303 - MEDIUM: h2: start to implement the frames processing loop
12304 - MINOR: h2: add a function to send a GOAWAY error frame
12305 - MINOR: h2: match the H2 connection preface on init
12306 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
12307 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
12308 - MEDIUM: h2: process streams pending for sending
12309 - MINOR: h2: send a real SETTINGS frame based on the configuration
12310 - MEDIUM: h2: detect the presence of the first settings frame
12311 - MINOR: h2: create a stream parser for the demuxer
12312 - MINOR: h2: implement PING frames
12313 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
12314 - MINOR: h2: lookup the stream during demuxing
12315 - MEDIUM: h2: honor WINDOW_UPDATE frames
12316 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
12317 - MINOR: h2: handle CONTINUATION frames
12318 - MEDIUM: h2: partial implementation of h2_detach()
12319 - MEDIUM: h2: unblock a connection when its current stream detaches
12320 - MEDIUM: h2: basic processing of HEADERS frame
12321 - MEDIUM: h2: don't use trash to decode headers!
12322 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
12323 - MEDIUM: h2: send the H1 response body as DATA frames
12324 - MEDIUM: h2: skip the response trailers if any
12325 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
12326 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
12327 - MEDIUM: h2: handle request body in DATA frames
12328 - MINOR: h2: handle RST_STREAM frames
12329 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
12330 - MINOR: h2: use a common function to signal some and all streams.
12331 - MEDIUM: h2: handle GOAWAY frames
12332 - MINOR: h2: centralize the check for the idle streams
12333 - MINOR: h2: centralize the check for the half-closed(remote) streams
12334 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
12335 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
12336 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
12337 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
12338 - MEDIUM: h2: apply a timeout to h2 connections
12339 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
12340 - MEDIUM: shctx: forbid shctx to read more than expected
12341 - MEDIUM: cache: configuration parsing and initialization
12342 - MEDIUM: cache: store objects in cache
12343 - MEDIUM: cache: deliver objects from cache
12344
Willy Tarreauf08137c2017-10-22 10:13:45 +0200123452017/10/22 : 1.8-dev3
12346 - REORG: ssl: move defines and methodVersions table upper
12347 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
12348 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
12349 - MEDIUM: ssl: disable SSLv3 per default for bind
12350 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
12351 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
12352 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
12353 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
12354 - BUG/MEDIUM: build without openssl broken
12355 - BUG/MINOR: warning: need_resend may be used uninitialized
12356 - BUG/MEDIUM: misplaced exit and wrong exit code
12357 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
12358 - BUILD: scripts: make publish-release support bare repositories
12359 - BUILD: scripts: add an automatic mode for publish-release
12360 - BUILD: scripts: add a "quiet" mode to publish-release
12361 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
12362 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
12363 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
12364 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
12365 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
12366 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
12367 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
12368 - BUG/MAJOR: server: Segfault after parsing server state file.
12369 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
12370 - scripts: create-release pass -n to tail
12371 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
12372 - BUG/MEDIUM: fix segfault when no argument to -x option
12373 - MINOR: warning on multiple -x
12374 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
12375 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
12376 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
12377 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
12378 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
12379 - DOC: fix references to the section about the unix socket
12380 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
12381 - MAJOR: task: task scheduler rework.
12382 - MINOR: task/stream: tasks related to a stream must be init by the caller.
12383 - MINOR: queue: Change pendconn_get_next_strm into private function
12384 - MINOR: backends: Change get_server_sh/get_server_uh into private function
12385 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
12386 - MEDIUM: stream: make stream_new() always set the target and analysers
12387 - MINOR: frontend: initialize HTTP layer after the debugging code
12388 - MINOR: connection: add a .get_alpn() method to xprt_ops
12389 - MINOR: ssl: add a get_alpn() method to ssl_sock
12390 - MINOR: frontend: retrieve the ALPN name when available
12391 - MINOR: frontend: report the connection's ALPN in the debug output
12392 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
12393 - MINOR: connection: send data before receiving
12394 - MAJOR: applet: applet scheduler rework.
12395 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
12396 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
12397 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
12398 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
12399 - MINOR: compression: Use a memory pool to allocate compression states
12400 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
12401 - DOC: fix references to the section about time format.
12402 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
12403 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
12404 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
12405 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
12406 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
12407 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
12408 - MINOR: peers: Add additional information to stick-table definition messages.
12409 - BUG/MINOR: http: properly handle all 1xx informational responses
12410 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
12411 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
12412 - CLEANUP: hdr_idx: make some function arguments const where possible
12413 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
12414 - BUG/MINOR: lua: In error case, the safe mode is not removed
12415 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
12416 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
12417 - BUG/MEDIUM: lua: bad memory access
12418 - BUG/MINOR: Lua: variable already initialized
12419 - DOC: update CONTRIBUTING regarding optional parts and message format
12420 - DOC: update the list of OpenSSL versions in the README
12421 - BUG/MINOR: http: Set the response error state in http_sync_res_state
12422 - MINOR: http: Reorder/rewrite checks in http_resync_states
12423 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
12424 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
12425 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
12426 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
12427 - BUG/MINOR: contrib/modsecurity: BSD build fix
12428 - BUG/MINOR: contrib/mod_defender: build fix
12429 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
12430 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
12431 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
12432 - MINOR: tools: add a portable timegm() alternative
12433 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
12434 - DOC: Updated 51Degrees git URL to point to a stable version.
12435 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
12436 - MINOR: memory: remove macros
12437 - BUG/MINOR: lua: Fix Server.get_addr() port values
12438 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
12439 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
12440 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
12441 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
12442 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
12443 - MINOR: task: always preinitialize the task's timeout in task_init()
12444 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
12445 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
12446 - MINOR: lua: Add proxy as member of proxy object.
12447 - DOC: lua: Proxy class doc update
12448 - MINOR: lua: Add lists of frontends and backends
12449 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
12450 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
12451 - MINOR: ssl: add a new error codes for wrong server certificates
12452 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
12453 - MINOR: ssl: add "no-ca-names" parameter for bind
12454 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
12455 - DOC: fix alphabetical order of "show commands" in management.txt
12456 - MINOR: listener: add a function to return a listener's state as a string
12457 - MINOR: cli: add a new "show fd" command
12458 - BUG/MEDIUM: ssl: Fix regression about certificates generation
12459 - MINOR: Add server port field to server state file.
12460 - MINOR: ssl: allow to start without certificate if strict-sni is set
12461 - MINOR: dns: Cache previous DNS answers.
12462 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
12463 - Add a few functions to do unaligned access.
12464 - MINOR: dns: Handle SRV records.
12465 - MINOR: check: Fix checks when using SRV records.
12466 - MINOR: doc: Document SRV label usage.
12467 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
12468 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
12469 - BUILD/MINOR: build without openssl still broken
12470 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
12471 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
12472 - MINOR: init: Fix CPU affinity setting on FreeBSD.
12473 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
12474 - MINOR: dns: update record dname matching for SRV query types
12475 - MINOR: dns: update dns response buffer reading pointer due to SRV record
12476 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
12477 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
12478 - MINOR: dns: ability to use a SRV resolution for multiple backends
12479 - MINOR: dns: enable caching of responses for server set by a SRV record
12480 - MINOR: dns: new dns record type (RTYPE) for OPT
12481 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
12482 - MINOR: dns: default "hold obsolete" timeout set to 0
12483 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
12484 - MINOR: session: add a streams field to the session struct
12485 - MINOR: stream: link the stream to its session
12486 - MEDIUM: session: do not free a session until no stream references it
12487 - MINOR: ist: implement very simple indirect strings
12488 - TESTS: ist: add a test file for the functions
12489 - MINOR: http: export some of the HTTP parser macros
12490 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
12491 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
12492 - MINOR: dns: Maximum DNS udp payload set to 8192
12493 - MINOR: dns: automatic reduction of DNS accpeted payload size
12494 - MINOR: dns: make SRV record processing more verbose
12495 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
12496 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
12497 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
12498 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
12499 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
12500 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
12501 - MINOR: lua: properly process the contents of the content-length field
12502 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
12503 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
12504 - OPTIM: lua: don't add "Connection: close" on the response
12505 - REORG/MEDIUM: connection: introduce the notion of connection handle
12506 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
12507 - MEDIUM: connection: get rid of data->init() which was not for data
12508 - MEDIUM: stream: make stream_new() allocate its own task
12509 - CLEANUP: listener: remove the unused handler field
12510 - MEDIUM: session: add a pointer to a struct task in the session
12511 - MINOR: stream: provide a new stream creation function for connections
12512 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
12513 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
12514 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
12515 - DOC: add CLI info on privilege levels
12516 - DOC: Refer to Mozilla TLS info / config generator
12517 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
12518 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
12519 - DOC: Add note about "* " prefix in CSV stats
12520 - CLEANUP: memory: Remove unused function pool_destroy
12521 - MINOR: listeners: Change listener_full and limit_listener into private functions
12522 - MINOR: listeners: Change enable_listener and disable_listener into private functions
12523 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
12524 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
12525 - MINOR: backends: Make get_server_* functions explicitly static
12526 - MINOR: applet: Check applets_active_queue before processing applets queue
12527 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
12528 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
12529 - MINOR: logs: Use dedicated function to init/deinit log buffers
12530 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
12531 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
12532 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
12533 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
12534 - MINOR: fd: Add fd_active function
12535 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
12536 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
12537 - MINOR: freq_ctr: Return the new value after an update
12538 - MEDIUM: check: server states and weight propagation re-work
12539 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
12540 - MINOR: fd: Add fd_update_events function
12541 - MINOR: polling: Use fd_update_events to update events seen for a fd
12542 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
12543 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
12544 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
12545 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
12546 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
12547 - MINOR: xref: Add a new xref system
12548 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
12549 - MINOR: tasks: Move Lua notification from Lua to tasks
12550 - MINOR: net_helper: Inline functions meant to be inlined.
12551 - MINOR: cli: add socket commands and config to prepend informational messages with severity
12552 - MINOR: add severity information to cli feedback messages
12553 - BUILD: Makefile: add a function to detect support by the compiler of certain options
12554 - BUILD: Makefile: shut certain gcc/clang stupid warnings
12555 - BUILD: Makefile: improve detection of support for compiler warnings
12556 - MINOR: peers: don't reference the incoming listener on outgoing connections
12557 - MINOR: frontend: don't retrieve ALPN on the critical path
12558 - MINOR: protocols: always pass a "port" argument to the listener creation
12559 - MINOR: protocols: register the ->add function and stop calling them directly
12560 - MINOR: unix: remove the now unused proto_uxst.h file
12561 - MINOR: listeners: new function create_listeners
12562 - MINOR: listeners: make listeners count consistent with reality
12563 - MEDIUM: session: take care of incrementing/decrementing jobs
12564 - MINOR: listener: new function listener_release
12565 - MINOR: session: small cleanup of conn_complete_session()
12566 - MEDIUM: session: factor out duplicated code for conn_complete_session
12567 - MEDIUM: session: count the frontend's connections at a single place
12568 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
12569 - BUG/MINOR: compression: Check response headers before http-response rules eval
12570 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
12571 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
12572 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
12573 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
12574 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
12575 - MINOR: tools: make my_htonll() more efficient on x86_64
12576 - MINOR: buffer: add b_del() to delete a number of characters
12577 - MINOR: buffer: add b_end() and b_to_end()
12578 - MINOR: net_helper: add functions to read from vectors
12579 - MINOR: net_helper: add write functions
12580 - MINOR: net_helper: add 64-bit read/write functions
12581 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
12582 - MINOR: ist: add a macro to ease const array initialization
12583 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
12584 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
12585 - BUG/MINOR: log: fixing small memory leak in error code path.
12586 - BUG/MINOR: contrib/halog: fixing small memory leak
12587 - BUG/MEDIUM: tcp/http: set-dst-port action broken
12588 - CLEANUUP: checks: don't set conn->handle.fd to -1
12589 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
12590 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
12591 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
12592 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
12593 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
12594 - CLEANUP: checks: remove misleading comments and statuses for external process
12595 - CLEANUP: checks: don't report report the fork() error twice
12596 - CLEANUP: checks: do not allocate a connection for process checks
12597 - TESTS: checks: add a simple test config for external checks
12598 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
12599 - TESTS: checks: add a simple test config for tcp-checks
12600 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
12601 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
12602 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
12603 - MEDIUM: checks: do not allocate a permanent connection anymore
12604 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
12605 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
12606 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
12607 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
12608 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
12609 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
12610 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
12611 - MINOR: session: remove the list of streams from struct session
12612 - DOC: fix some typos
12613 - MINOR: server: add the srv_queue() sample fetch method
12614 - MINOR: payload: add new sample fetch functions to process distcc protocol
12615 - MAJOR: servers: propagate server status changes asynchronously.
12616 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
12617 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
12618 - MINOR: server: Handle weight increase in consistent hash.
12619 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
12620 - BUG/MINOR: tools: fix my_htonll() on x86_64
12621 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
12622 - BUG/MAJOR: lua: scheduled task is freezing.
12623 - MINOR: buffer: add bo_del() to delete a number of characters from output
12624 - MINOR: buffer: add a function to match against string patterns
12625 - MINOR: buffer: add two functions to inject data into buffers
12626 - MINOR: buffer: add buffer_space_wraps()
12627 - REORG: channel: finally rename the last bi_* / bo_* functions
12628 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
12629 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
12630 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
12631 - MINOR: ist: add ist0() to add a trailing zero to a string.
12632 - BUG/MEDIUM: log: check result details truncated.
12633 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
12634 - REORG: http: move some very http1-specific parts to h1.{c,h}
12635 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
12636 - REORG: http: move the HTTP/1 header block parser to h1.c
12637 - MEDIUM: http: make the chunk size parser only depend on the buffer
12638 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
12639 - MINOR: h1: add struct h1m for basic HTTP/1 messages
12640 - MINOR: http: add very simple header management based on double strings
12641 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
12642 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
12643 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
12644 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
12645 - MINOR: connection: add conn_stop_tracking() to disable tracking
12646 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
12647 - MINOR: unix: use conn_full_close() instead of conn_force_close()
12648 - MINOR: checks: use conn_full_close() instead of conn_force_close()
12649 - MINOR: session: use conn_full_close() instead of conn_force_close()
12650 - MINOR: stream: use conn_full_close() instead of conn_force_close()
12651 - MINOR: stream: use conn_full_close() instead of conn_force_close()
12652 - MINOR: backend: use conn_full_close() instead of conn_force_close()
12653 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
12654 - MINOR: connection: remove conn_force_close()
12655 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
12656
Willy Tarreauf57a29a2017-06-02 15:59:51 +0200126572017/06/02 : 1.8-dev2
12658 - CLEANUP: server: moving netinet/tcp.h inclusion
12659 - DOC: changed "block"(deprecated) examples to http-request deny
12660 - DOC: add few comments to examples.
12661 - DOC: update sample code for PROXY protocol
12662 - DOC: mention lighttpd 1.4.46 implements PROXY
12663 - MINOR server: Restrict dynamic cookie check to the same proxy.
12664 - DOC: stick-table is available in frontend sections
12665 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
12666 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
12667 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
12668 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
12669 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
12670 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
12671 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
12672 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
12673 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
12674 - BUG/MEDIUM: servers: unbreak server weight propagation
12675 - MINOR: lua: ensure the memory allocator is used all the time
12676 - MINOR: cli: Add a command to send listening sockets.
12677 - MINOR: global: Add an option to get the old listening sockets.
12678 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
12679 - MINOR: doc: document the -x flag
12680 - MINOR: proxy: Don't close FDs if not our proxy.
12681 - MINOR: socket transfer: Set a timeout on the socket.
12682 - MINOR: systemd wrapper: add support for passing the -x option.
12683 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
12684 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
12685 - CLEANUP: logs: typo: simgle => single
12686 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
12687 - MEDIUM: config: don't check config validity when there are fatal errors
12688 - BUG/MAJOR: Use -fwrapv.
12689 - BUG/MINOR: server: don't use "proxy" when px is really meant.
12690 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
12691 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
12692 - MINOR: server: Extract the code responsible of copying default-server settings.
12693 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
12694 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
12695 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
12696 - DOC: Add documentation for new "server-template" keyword.
12697 - DOC: add layer 4 links/cross reference to "block" keyword.
12698 - DOC: errloc/errorloc302/errorloc303 missing status codes.
12699 - BUG/MEDIUM: lua: memory leak
12700 - CLEANUP: lua: remove test
12701 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
12702 - BUG/MINOR: change header-declared function to static inline
12703 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
12704 - MINOR: Add binary encoding request header sample fetch
12705 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
12706 - MINOR: Add ModSecurity wrapper as contrib
12707 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
12708 - DOC: update RFC references
12709 - CONTRIB: tcploop: add action "X" to execute a command
12710 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
12711 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
12712 - BUG/MINOR: checks: don't send proxy protocol with agent checks
12713 - MINOR: ssl: add prefer-client-ciphers
12714 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
12715 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
12716 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
12717 - MINOR: ssl: support TLSv1.3 for bind and server
12718 - MINOR: ssl: show methods supported by openssl
12719 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
12720 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
12721 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
12722 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
12723 - MINOR: sample: Add b64dec sample converter
12724 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
12725 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
12726 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
12727 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
12728 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
12729 - MAJOR: ssl: add openssl async mode support
12730 - MEDIUM: ssl: handle multiple async engines
12731 - MINOR: boringssl: basic support for OCSP Stapling
12732 - MEDIUM: mworker: replace systemd mode by master worker mode
12733 - MEDIUM: mworker: handle reload and signals
12734 - MEDIUM: mworker: wait mode on reload failure
12735 - MEDIUM: mworker: try to guess the next stats socket to use with -x
12736 - MEDIUM: mworker: exit-on-failure option
12737 - MEDIUM: mworker: workers exit when the master leaves
12738 - DOC: add documentation for the master-worker mode
12739 - MEDIUM: systemd: Type=forking in unit file
12740 - MAJOR: systemd-wrapper: get rid of the wrapper
12741 - MINOR: log: Add logurilen tunable.
12742 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
12743 - MINOR: dns: smallest DNS fqdn size
12744 - MINOR: dns: functions to manage memory for a DNS resolution structure
12745 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
12746 - REORG: dns: dns_option structure, storage of hostname_dn
12747 - MINOR: dns: new snr_check_ip_callback function
12748 - MAJOR: dns: save a copy of the DNS response in struct resolution
12749 - MINOR: dns: implement a LRU cache for DNS resolutions
12750 - MINOR: dns: make 'ancount' field to match the number of saved records
12751 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
12752 - MAJOR/REORG: dns: DNS resolution task and requester queues
12753 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
12754 - MINOR: Add Mod Defender integration as contrib
12755 - CLEANUP: str2mask return code comment: non-zero -> zero.
12756 - MINOR: tools: make debug_hexdump() use a const char for the string
12757 - MINOR: tools: make debug_hexdump() take a string prefix
12758 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
12759
Willy Tarreau7b677262017-04-03 09:27:49 +0200127602017/04/03 : 1.8-dev1
12761 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
12762 - BUG/MINOR: stats: make field_str() return an empty string on NULL
12763 - DOC: Spelling fixes
12764 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
12765 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
12766 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
12767 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
12768 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
12769 - BUG/MAJOR: stream: fix session abort on resource shortage
12770 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
12771 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
12772 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
12773 - DOC: Fix map table's format
12774 - DOC: Added 51Degrees conv and fetch functions to documentation.
12775 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
12776 - DOC: mention that req_tot is for both frontends and backends
12777 - BUG/MEDIUM: variables: some variable name can hide another ones
12778 - MINOR: lua: Allow argument for actions
12779 - BUILD: rearrange target files by build time
12780 - CLEANUP: hlua: just indent functions
12781 - MINOR: lua: give HAProxy variable access to the applets
12782 - BUG/MINOR: stats: fix be/sessions/max output in html stats
12783 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
12784 - DOC: lua: Documentation about some entry missing
12785 - DOC: lua: Add documentation about variable manipulation from applet
12786 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
12787 - DOC: Add undocumented argument of the trace filter
12788 - DOC: Fix some typo in SPOE documentation
12789 - MINOR: cli: Remove useless call to bi_putchk
12790 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
12791 - MINOR: applet: Count number of (active) applets
12792 - MINOR: task: Rename run_queue and run_queue_cur counters
12793 - BUG/MEDIUM: stream: Save unprocessed events for a stream
12794 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
12795 - BUILD/MEDIUM: Fixing the build using LibreSSL
12796 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
12797 - SCRIPTS: git-show-backports: fix a harmless typo
12798 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
12799 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
12800 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
12801 - CLEANUP: applet/table: add an "action" entry in ->table context
12802 - CLEANUP: applet: remove the now unused appctx->private field
12803 - DOC: lua: documentation about time parser functions
12804 - DOC: lua: improve links
12805 - DOC: lua: section declared twice
12806 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
12807 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
12808 - BUG/MINOR: cli: "show cli sockets" would always report process 64
12809 - CLEANUP: lua: rename one of the lua appctx union
12810 - BUG/MINOR: lua/cli: bad error message
12811 - MEDIUM: lua: use memory pool for hlua struct in applets
12812 - MINOR: lua/signals: Remove Lua part from signals.
12813 - DOC: cli: show cli sockets
12814 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
12815 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
12816 - CLEANUP: applet: group all CLI contexts together
12817 - CLEANUP: stats: move a misplaced stats context initialization
12818 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
12819 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
12820 - MINOR: appctx/cli: remove the env entry from the appctx union
12821 - MINOR: appctx/cli: remove the "be" entry from the appctx union
12822 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
12823 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
12824 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
12825 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
12826 - MINOR/DOC: lua: just precise one thing
12827 - DOC: fix small typo in fe_id (backend instead of frontend)
12828 - BUG/MINOR: Fix the sending function in Lua's cosocket
12829 - BUG/MINOR: lua: memory leak executing tasks
12830 - BUG/MINOR: lua: bad return code
12831 - BUG/MINOR: lua: memleak when Lua/cli fails
12832 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
12833 - CLEANUP: haproxy: statify unexported functions
12834 - MINOR: haproxy: add a registration for build options
12835 - CLEANUP: wurfl: use the build options list to report it
12836 - CLEANUP: 51d: use the build options list to report it
12837 - CLEANUP: da: use the build options list to report it
12838 - CLEANUP: namespaces: use the build options list to report it
12839 - CLEANUP: tcp: use the build options list to report transparent modes
12840 - CLEANUP: lua: use the build options list to report it
12841 - CLEANUP: regex: use the build options list to report the regex type
12842 - CLEANUP: ssl: use the build options list to report the SSL details
12843 - CLEANUP: compression: use the build options list to report the algos
12844 - CLEANUP: auth: use the build options list to report its support
12845 - MINOR: haproxy: add a registration for post-check functions
12846 - CLEANUP: checks: make use of the post-init registration to start checks
12847 - CLEANUP: filters: use the function registration to initialize all proxies
12848 - CLEANUP: wurfl: make use of the late init registration
12849 - CLEANUP: 51d: make use of the late init registration
12850 - CLEANUP: da: make use of the late init registration code
12851 - MINOR: haproxy: add a registration for post-deinit functions
12852 - CLEANUP: wurfl: register the deinit function via the dedicated list
12853 - CLEANUP: 51d: register the deinitialization function
12854 - CLEANUP: da: register the deinitialization function
12855 - CLEANUP: wurfl: move global settings out of the global section
12856 - CLEANUP: 51d: move global settings out of the global section
12857 - CLEANUP: da: move global settings out of the global section
12858 - MINOR: cfgparse: add two new functions to check arguments count
12859 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
12860 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
12861 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
12862 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
12863 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
12864 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
12865 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
12866 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
12867 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
12868 - MINOR: tcp-rules: check that the listener exists before updating its counters
12869 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
12870 - MINOR: listener: move the transport layer pointer to the bind_conf
12871 - MEDIUM: move listener->frontend to bind_conf->frontend
12872 - MEDIUM: ssl: remote the proxy argument from most functions
12873 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
12874 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
12875 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
12876 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
12877 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
12878 - MINOR: connection: add a minimal transport layer registration system
12879 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
12880 - CLEANUP: connection: unexport raw_sock and ssl_sock
12881 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
12882 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
12883 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
12884 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
12885 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
12886 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
12887 - BUG/MINOR: systemd: potential zombie processes
12888 - DOC: Add timings events schemas
12889 - BUILD: lua: build failed on FreeBSD.
12890 - MINOR: samples: add xx-hash functions
12891 - MEDIUM: regex: pcre2 support
12892 - BUG/MINOR: option prefer-last-server must be ignored in some case
12893 - MINOR: stats: Support "select all" for backend actions
12894 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
12895 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
12896 - BUG/MINOR: http: report real parser state in error captures
12897 - BUILD: scripts: automatically update the branch in version.h when releasing
12898 - MINOR: tools: add a generic hexdump function for debugging
12899 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
12900 - MINOR: http: custom status reason.
12901 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
12902 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
12903 - BUG/MINOR: tools: fix off-by-one in port size check
12904 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
12905 - MEDIUM: server: split the address and the port into two different fields
12906 - MINOR: tools: make str2sa_range() return the port in a separate argument
12907 - MINOR: server: take the destination port from the port field, not the addr
12908 - MEDIUM: server: disable protocol validations when the server doesn't resolve
12909 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
12910 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
12911 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
12912 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
12913 - MINOR: proto_http.c 502 error txt typo.
12914 - DOC: add deprecation notice to "block"
12915 - MINOR: compression: fix -vv output without zlib/slz
12916 - BUG/MINOR: Reset errno variable before calling strtol(3)
12917 - MINOR: ssl: don't show prefer-server-ciphers output
12918 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
12919 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
12920 - MAJOR: ssl: bind configuration per certificat
12921 - MINOR: ssl: add curve suite for ECDHE negotiation
12922 - MINOR: checks: Add agent-addr config directive
12923 - MINOR: cli: Add possiblity to change agent config via CLI/socket
12924 - MINOR: doc: Add docs for agent-addr configuration variable
12925 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
12926 - BUILD: ssl: fix to build (again) with boringssl
12927 - BUILD: ssl: fix build on OpenSSL 1.0.0
12928 - BUILD: ssl: silence a warning reported for ERR_remove_state()
12929 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
12930 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
12931 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
12932 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
12933 - MINOR: server: extend the flags to 32 bits
12934 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
12935 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
12936 - BUG/MAJOR: dns: restart sockets after fork()
12937 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
12938 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
12939 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
12940 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
12941 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
12942 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
12943 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
12944 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
12945 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
12946 - MINOR: http: don't close when redirect location doesn't start with "/"
12947 - MEDIUM: boringssl: support native multi-cert selection without bundling
12948 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
12949 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
12950 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
12951 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
12952 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
12953 - MEDIUM: ssl: remove ssl-options from crt-list
12954 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
12955 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
12956 - MINOR: ssl: improved cipherlist captures
12957 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
12958 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
12959 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
12960 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
12961 - MINOR: spoe: Remove SPOE details from the appctx structure
12962 - MINOR: spoe: Add status code in error variable instead of hardcoded value
12963 - MINOR: spoe: Send a log message when an error occurred during event processing
12964 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
12965 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
12966 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
12967 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
12968 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
12969 - MAJOR: spoe: refactor the filter to clean up the code
12970 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
12971 - REORG: spoe: Move struct and enum definitions in dedicated header file
12972 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
12973 - MINOR: spoe: Improve implementation of the payload fragmentation
12974 - MINOR: spoe: Add support of negation for options in SPOE configuration file
12975 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
12976 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
12977 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
12978 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
12979 - DOC: spoe: Update SPOE documentation to reflect recent changes
12980 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
12981 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
12982 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
12983 - BUG/MINOR: Fix "get map <map> <value>" CLI command
12984 - MINOR: Add nbsrv sample converter
12985 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
12986 - MINOR: Add hostname sample fetch
12987 - CLEANUP: Remove comment that's no longer valid
12988 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
12989 - MINOR: http-request tarpit deny_status.
12990 - CLEANUP: http: make http_server_error() not set the status anymore
12991 - MEDIUM: stats: Add JSON output option to show (info|stat)
12992 - MEDIUM: stats: Add show json schema
12993 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
12994 - MINOR: server: Add dynamic session cookies.
12995 - MINOR: cli: Let configure the dynamic cookies from the cli.
12996 - BUG/MINOR: checks: attempt clean shutw for SSL check
12997 - CONTRIB: tcploop: make it build on FreeBSD
12998 - CONTRIB: tcploop: fix time format to silence build warnings
12999 - CONTRIB: tcploop: report action 'K' (kill) in usage message
13000 - CONTRIB: tcploop: fix connect's address length
13001 - CONTRIB: tcploop: use the trash instead of NULL for recv()
13002 - BUG/MEDIUM: listener: do not try to rebind another process' socket
13003 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
13004 - CLEANUP: config: Typo in comment.
13005 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
13006 - TESTS: add a test configuration to stress handshake combinations
13007 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
13008 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
13009 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
13010 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
13011 - BUG: payload: fix payload not retrieving arbitrary lengths
13012 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
13013 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
13014 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
13015 - MINOR: doc: 2.4. Examples should be 2.5. Examples
13016 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
13017 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
13018 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
13019 - OPTIM: poll: enable support for POLLRDHUP
13020 - MINOR: kqueue: exclusively rely on the kqueue returned status
13021 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
13022 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
13023 - DOC/MINOR: Fix typos in proxy protocol doc
13024 - DOC: Protocol doc: add checksum, TLV type ranges
13025 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
13026 - DOC: Protocol doc: add noop TLV
13027 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
13028 - MINOR: dns: improve DNS response parsing to use as many available records as possible
13029 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
13030 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
13031 - MINOR: server: Make 'default-server' support 'backup' keyword.
13032 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
13033 - CLEANUP: server: code alignement.
13034 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
13035 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
13036 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
13037 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
13038 - CLEANUP: server: code alignement.
13039 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
13040 - MINOR: server: Make 'default-server' support 'ssl' keyword.
13041 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
13042 - CLEANUP: server: code alignement.
13043 - MINOR: server: Make 'default-server' support 'verify' keyword.
13044 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
13045 - MINOR: server: Make 'default-server' support 'check' keyword.
13046 - MINOR: server: Make 'default-server' support 'track' setting.
13047 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
13048 - MINOR: server: Make 'default-server' support 'redir' keyword.
13049 - MINOR: server: Make 'default-server' support 'observe' keyword.
13050 - MINOR: server: Make 'default-server' support 'cookie' keyword.
13051 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
13052 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
13053 - MINOR: server: Make 'default-server' support 'namespace' keyword.
13054 - MINOR: server: Make 'default-server' support 'source' keyword.
13055 - MINOR: server: Make 'default-server' support 'sni' keyword.
13056 - MINOR: server: Make 'default-server' support 'addr' keyword.
13057 - MINOR: server: Make 'default-server' support 'disabled' keyword.
13058 - MINOR: server: Add 'no-agent-check' server keyword.
13059 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
13060 - MINOR: doc: fix use-server example (imap vs mail)
13061 - BUG/MEDIUM: tcp: don't require privileges to bind to device
13062 - BUILD: make the release script use shortlog for the final changelog
13063 - BUILD: scripts: fix typo in announce-release error message
13064 - CLEANUP: time: curr_sec_ms doesn't need to be exported
13065 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
13066 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
13067 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
13068 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
13069 - CLEANUP: http: Remove channel_congested function
13070 - CLEANUP: buffers: Remove buffer_bounce_realign function
13071 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
13072 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
13073 - MINOR: http: Add debug messages when HTTP body analyzers are called
13074 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
13075 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
13076 - DOC: fix parenthesis and add missing "Example" tags
13077 - DOC: update the contributing file
13078 - DOC: log-format/tcplog/httplog update
13079 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
13080
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100130812016/11/25 : 1.8-dev0
13082
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100130832016/11/25 : 1.7.0
13084 - SCRIPTS: make publish-release also copy the new SPOE doc
13085 - BUILD: http: include types/sample.h in proto_http.h
13086 - BUILD: debug/flags: remove test for SF_COMP_READY
13087 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
13088 - MINOR: lua: add function which return true if the channel is full.
13089 - MINOR: lua: add ip addresses and network manipulation function
13090 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
13091 - CONTRIB: tcploop: implement fork()
13092 - CONTRIB: tcploop: implement logging when called with -v
13093 - CONTRIB: tcploop: update the usage output
13094 - CONTRIB: tcploop: support sending plain strings
13095 - CONTRIB: tcploop: don't report failed send() or recv()
13096 - CONTRIB: tcploop: add basic loops via a jump instruction
13097 - BUG/MEDIUM: channel: bad unlikely macro
13098 - CLEANUP: lua: move comment
13099 - CLEANUP: lua: control executed twice
13100 - BUG/MEDIUM: ssl: Store certificate filename in a variable
13101 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
13102 - CLEANUP: ssl: Remove goto after return dead code
13103 - CLEANUP: ssl: Fix bind keywords name in comments
13104 - DOC: ssl: Use correct wording for ca-sign-pass
13105 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
13106 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
13107 - MINOR: cli: add private pointer and release function
13108 - MEDIUM: lua: Add cli handler for Lua
13109 - BUG/MEDIUM: connection: check the control layer before stopping polling
13110 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
13111 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
13112 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
13113 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
13114 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
13115 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
13116 - MINOR: spoe: Remove useless 'timeout ack' option
13117 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
13118 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
13119 - MINOR: spoe: Add "option set-on-error" statement
13120 - MINOR: stats: correct documentation of process ID for typed output
13121 - BUILD: contrib: fix ip6range build on Centos 7
13122 - BUILD: fix build on Solaris 10/11
13123 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
13124 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
13125 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
13126 - MINOR: connection: add a few functions to report the data and xprt layers' names
13127 - MINOR: connection: add names for transport and data layers
13128 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
13129 - REORG: cli: split dumpstats.h in stats.h and cli.h
13130 - REORG: cli: move ssl CLI functions to ssl_sock.c
13131 - REORG: cli: move map and acl code to map.c
13132 - REORG: cli: move show stat resolvers to dns.c
13133 - MINOR: cli: create new function cli_has_level() to validate permissions
13134 - MINOR: server: create new function cli_find_server() to find a server
13135 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
13136 - REORG: cli: move 'set server' to server.c
13137 - REORG: cli: move 'show pools' to memory.c
13138 - REORG: cli: move 'show servers' to proxy.c
13139 - REORG: cli: move 'show sess' to stream.c
13140 - REORG: cli: move 'show backend' to proxy.c
13141 - REORG: cli: move get/set weight to server.c
13142 - REORG: cli: move "show stat" to stats.c
13143 - REORG: cli: move "show info" to stats.c
13144 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
13145 - REORG: cli: move table dump/clear/set to stick_table.c
13146 - REORG: cli: move "show errors" out of cli.c
13147 - REORG: cli: make "show env" also use the generic keyword registration
13148 - REORG: cli: move "set timeout" to its own handler
13149 - REORG: cli: move "clear counters" to stats.c
13150 - REORG: cli: move "set maxconn global" to its own handler
13151 - REORG: cli: move "set maxconn server" to server.c
13152 - REORG: cli: move "set maxconn frontend" to proxy.c
13153 - REORG: cli: move "shutdown sessions server" to stream.c
13154 - REORG: cli: move "shutdown session" to stream.c
13155 - REORG: cli: move "shutdown frontend" to proxy.c
13156 - REORG: cli: move "{enable|disable} frontend" to proxy.c
13157 - REORG: cli: move "{enable|disable} server" to server.c
13158 - REORG: cli: move "{enable|disable} health" to server.c
13159 - REORG: cli: move "{enable|disable} agent" to server.c
13160 - REORG: cli: move the "set rate-limit" functions to their own parser
13161 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
13162 - CLEANUP: cli: simplify the request parser a little bit
13163 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
13164 - BUILD: server: remove a build warning introduced by latest series
13165 - BUG/MINOR: log-format: uncatched memory allocation functions
13166 - CLEANUP: log-format: useless file and line in json converter
13167 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
13168 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
13169 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
13170 - CLEANUP: log-format: remove unused arguments
13171 - MEDIUM: log-format: strict parsing and enable fail
13172 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
13173 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
13174 - BUILD: vars: remove a build warning on vars.c
13175 - MINOR: lua: add utility function for check boolean argument
13176 - MINOR: lua: Add tokenize function.
13177 - BUG/MINOR: conf: calloc untested
13178 - MINOR: http/conf: store the use_backend configuration file and line for logs
13179 - MEDIUM: log-format: Use standard HAProxy log system to report errors
13180 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
13181 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
13182 - MINOR: cli: make "show stat" support a proxy name
13183 - MINOR: cli: make "show errors" support a proxy name
13184 - MINOR: cli: make "show errors" capable of dumping only request or response
13185 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
13186 - CLEANUP: counters: move from 3 types to 2 types
13187 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
13188 - REORG: tcp-rules: move tcp rules processing to their own file
13189 - REORG: stkctr: move all the stick counters processing to stick-tables.c
13190 - DOC: update the roadmap file with the latest changes
13191
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100131922016/11/09 : 1.7-dev6
13193 - DOC: fix the entry for hash-balance-factor config option
13194 - DOC: Fix typo in description of `-st` parameter in man page
13195 - CLEANUP: cfgparse: Very minor spelling correction
13196 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
13197 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
13198 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
13199 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
13200 - MINOR: peers: remove the pointer to the stream
13201 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
13202 - DOC: stats: provide state details for show servers state
13203 - MEDIUM: tools: make str2ip2() preserve existing ports
13204 - CLEANUP: tools: make ipcpy() preserve the original port
13205 - OPTIM: http: move all http character classs tables into a single one
13206 - OPTIM: http: improve parsing performance of long header lines
13207 - OPTIM: http: improve parsing performance of long URIs
13208 - OPTIM: http: optimize lookup of comma and quote in header values
13209 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
13210 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
13211 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
13212 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
13213 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
13214 - DOC: move the device detection modules documentation to their own files
13215 - CLEANUP: wurfl: reduce exposure in the rest of the code
13216 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
13217 - MINOR: stream: make option contstats usable again
13218 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
13219 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
13220 - MAJOR: server: postpone address resolution
13221 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
13222 - MINOR: server: indicate in the logs when RMAINT is cleared
13223 - MINOR: stats: indicate it when a server is down due to resolution
13224 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
13225 - MINOR: dns: implement extra 'hold' timers.
13226 - MAJOR: dns: runtime resolution can change server admin state
13227 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
13228 - MEDIUM: server: add a new init-addr server line setting
13229 - MEDIUM: server: make use of init-addr
13230 - MINOR: server: implement init-addr none
13231 - MEDIUM: server: make libc resolution failure non-fatal
13232 - MINOR: server: add support for explicit numeric address in init-addr
13233 - DOC: add some documentation for the "init-addr" server keyword
13234 - MINOR: init: add -dr to ignore server address resolution failures
13235 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
13236 - BUG: vars: Fix 'set-var' converter because of a typo
13237 - CLEANUP: remove last references to 'ruleset' section
13238 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
13239 - MINOR: filters: Update filters documentation accordingly to recent changes
13240 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
13241 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
13242 - MINOR: flt_trace: Add hexdump option to dump forwarded data
13243 - MINOR: cfgparse: Add functions to backup and restore registered sections
13244 - MINOR: cfgparse: Parse scope lines and save the last one parsed
13245 - REORG: sample: move code to release a sample expression in sample.c
13246 - MINOR: vars: Allow '.' in variable names
13247 - MINOR: vars: Add vars_set_by_name_ifexist function
13248 - MEDIUM: vars: Add a per-process scope for variables
13249 - MINOR: vars: Add 'unset-var' action/converter
13250 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
13251 - MINOR: spoe: add random ip-reputation service as SPOA example
13252 - MINOR: spoe/checks: Add support for SPOP health checks
13253 - DOC: update ROADMAP file
13254
Willy Tarreau608efa12016-10-25 22:22:00 +0200132552016/10/25 : 1.7-dev5
13256 - MINOR: cfgparse: few memory leaks fixes.
13257 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
13258 - CLEANUP: logs: remove unused log format field definitions
13259 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
13260 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
13261 - CLEANUP: proto_http: Removing useless variable assignation
13262 - CLEANUP: dumpstats: Removing useless variables allocation
13263 - CLEANUP: dns: Removing usless variable & assignation
13264 - BUG/MINOR: payload: fix SSLv2 version parser
13265 - MINOR: cli: allow the semi-colon to be escaped on the CLI
13266 - MINOR: cli: change a server health check port through the stats socket
13267 - BUG/MINOR: Fix OSX compilation errors
13268 - MAJOR: check: find out which port to use for health check at run time
13269 - MINOR: server: introduction of 3 new server flags
13270 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
13271 - MINOR: cli: ability to change a server's port
13272 - CLEANUP/MINOR dns: comment do not follow up code update
13273 - MINOR: chunk: new strncat function
13274 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
13275 - MINOR: dns: new MAX values
13276 - MINOR: dns: new macro to compute DNS header size
13277 - MINOR: dns: new DNS structures to store received packets
13278 - MEDIUM: dns: new DNS response parser
13279 - MINOR: dns: query type change when last record is a CNAME
13280 - MINOR: dns: proper domain name validation when receiving DNS response
13281 - MINOR: dns: comments in types/dns.h about structures endianness
13282 - BUG/MINOR: displayed PCRE version is running release
13283 - MINOR: show Built with PCRE version
13284 - MINOR: show Running on zlib version
13285 - MEDIUM: make SO_REUSEPORT configurable
13286 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
13287 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
13288 - BUG/MINOR: stats: report the correct conn_time in backend's html output
13289 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
13290 - MINOR: Add fe_req_rate sample fetch
13291 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
13292 - MEDIUM: cli: register CLI keywords with cli_register_kw()
13293 - BUILD: Make use of accept4() on OpenBSD.
13294 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
13295 - DOC: fix missed entry for "set-{src,dst}{,-port}"
13296 - BUG/MINOR: vars: use sess and not s->sess in action_store()
13297 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
13298 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
13299 - MINOR: stats: output dcon
13300 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
13301 - MINOR: counters: add new fields for denied_sess
13302 - MEDIUM: tcp: add registration and processing of TCP L5 rules
13303 - MINOR: stats: emit dses
13304 - DOC: document tcp-request session
13305 - MINOR: ssl: add debug traces
13306 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
13307 - BUG/MINOR: ssl: Check malloc return code
13308 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
13309 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
13310 - BUG/MINOR: systemd: always restore signals before execve()
13311 - BUG/MINOR: systemd: check return value of calloc()
13312 - MINOR: systemd: report it when execve() fails
13313 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
13314 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
13315 - MINOR: backend: add hash-balance-factor option for hash-type consistent
13316 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
13317 - MEDIUM: server: Implement bounded-load hash algorithm
13318 - SCRIPTS: make git-show-backports also dump a "git show" command
13319 - MINOR: build: Allow linking to device-atlas library file
13320 - MINOR: stats: Escape equals sign on socket dump
13321
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200133222016/08/14 : 1.7-dev4
13323 - MINOR: add list_append_word function
13324 - MEDIUM: init: use list_append_word in haproxy.c
13325 - MEDIUM: init: allow directory as argument of -f
13326 - CLEANUP: config: detect double registration of a config section
13327 - MINOR: log: add the %Td log-format specifier
13328 - MEDIUM: filters: Move HTTP headers filtering in its own callback
13329 - MINOR: filters: Simplify calls to analyzers using 2 new macros
13330 - MEDIUM: filters: Add pre and post analyzer callbacks
13331 - DOC: filters: Update the filters documentation accordingly to recent changes
13332 - BUG/MEDIUM: init: don't use environment locale
13333 - SCRIPTS: teach git-show-backports how to report upstream commits
13334 - SCRIPTS: make git-show-backports capable of limiting its history
13335 - BUG/MAJOR: fix listening IP address storage for frontends
13336 - BUG/MINOR: fix listening IP address storage for frontends (cont)
13337 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
13338 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
13339 - BUG/MEDIUM: stick-tables: fix breakage in table converters
13340 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
13341 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
13342 - BUILD: fix build on Solaris 11
13343 - BUG/MEDIUM: config: fix multiple declaration of section parsers
13344 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
13345 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
13346 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
13347 - DOC: update doc about tls-tickets-keys dump
13348 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
13349 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
13350 - MEDIUM: tcp/http: add 'set-src-port' action
13351 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
13352 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
13353 - BUILD/MEDIUM: rebuild everything when an include file is changed
13354 - BUILD/MEDIUM: force a full rebuild if some build options change
13355 - BUG/MEDIUM: lua: converters doesn't work
13356 - BUG/MINOR: http: add-header: header name copied twice
13357 - BUG/MEDIUM: http: add-header: buffer overwritten
13358 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
13359 - MINOR: stream: export the function 'smp_create_src_stkctr'
13360 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
13361 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
13362 - BUG/MINOR: http: url32+src should use the big endian version of url32
13363 - BUG/MINOR: http: url32+src should check cli_conn before using it
13364 - DOC: http: add documentation for url32 and url32+src
13365 - BUG/MINOR: fix http-response set-log-level parsing error
13366 - MINOR: systemd: Use variable for config and pidfile paths
13367 - MINOR: systemd: Perform sanity check on config before reload
13368 - MEDIUM: ssl: support SNI filters with multicerts
13369 - MINOR: ssl: crt-list parsing factor
13370 - BUILD: ssl: fix typo causing a build failure in the multicert patch
13371 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
13372 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
13373 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
13374 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
13375 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
13376 - BUG/MAJOR: external-checks: use asynchronous signal delivery
13377 - BUG/MINOR: external-checks: do not unblock undesired signals
13378 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
13379 - BUG/MEDIUM: filters: Fix data filtering when data are modified
13380 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
13381 - BUG/MINOR: srv-state: fix incorrect output of state file
13382 - BUG/MINOR: ssl: close ssl key file on error
13383 - BUG/MINOR: http: fix misleading error message for response captures
13384 - BUG/BUILD: don't automatically run "make" on "make install"
13385 - DOC: add missing doc for http-request deny [deny_status <status>]
13386 - CLEANUP: dumpstats: u64 field is an unsigned type.
13387 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
13388 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
13389 - MINOR: new function my_realloc2 = realloc + free upon failure
13390 - CLEANUP: fixed some usages of realloc leading to memory leak
13391 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
13392 - CLEANUP: connection: using internal struct to hold source and dest port.
13393 - DOC: spelling fixes
13394 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
13395 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
13396 - BUG/MINOR: Fix endiness issue in DNS header creation code
13397 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
13398 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
13399 - MEDIUM: http: implement http-response track-sc* directive
13400 - BUG/MINOR: peers: Fix peers data decoding issue
13401 - BUG/MINOR: peers: don't count track-sc multiple times on errors
13402 - MINOR: standard: add function "escape_string"
13403 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
13404 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
13405 - DOC: lua: remove old functions
13406 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
13407 - DOC: fix json converter example and error message
13408 - BUG/MEDIUM: stream-int: completely detach connection on connect error
13409 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
13410 - BUILD: make proto_tcp.c compatible with musl library
13411 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
13412 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
13413 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
13414 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
13415 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
13416 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
13417 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
13418 - MINOR: sample: use smp_make_rw() in upper/lower converters
13419 - MINOR: tcp: add dst_is_local and src_is_local
13420 - BUG/MINOR: peers: some updates are pushed twice after a resync.
13421 - BUILD: protocol: fix some build errors on OpenBSD
13422 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
13423 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
13424 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
13425 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
13426 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
13427 - BUILD: compression: remove a warning when no compression lib is used
13428 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
13429 - MINOR: tcp: add further tcp info fetchers
13430 - BUG/MINOR: peers: empty chunks after a resync.
13431 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
13432 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
13433 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
13434 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
13435
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200134362016/05/10 : 1.7-dev3
13437 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
13438 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
13439 - BUILD: namespaces: fix a potential build warning in namespaces.c
13440 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
13441 - DOC: add encoding to json converter example
13442 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
13443 - DOC: Clarify tunes.vars.xxx-max-size settings
13444 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
13445 - CLEANUP: connection: fix double negation on memcmp()
13446 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
13447 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
13448 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
13449 - BUG/MINOR: lua: can't load external libraries
13450 - BUG/MINOR: prevent the dump of uninitialized vars
13451 - CLEANUP: map: it seems that the map were planed to be chained
13452 - MINOR: lua: move class registration facilities
13453 - MINOR: lua: remove some useless checks
13454 - CLEANUP: lua: Remove two same functions
13455 - MINOR: lua: refactor the Lua object registration
13456 - MINOR: lua: precise message when a critical error is catched
13457 - MINOR: lua: post initialization
13458 - MINOR: lua: Add internal function which strip spaces
13459 - MINOR: lua: convert field to lua type
13460 - DOC: "addr" parameter applies to both health and agent checks
13461 - DOC: timeout client: pointers to timeout http-request
13462 - DOC: typo on stick-store response
13463 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
13464 - DOC: typo: ACL subdir match
13465 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
13466 - DOC: regsub: parser limitation about the inability to use closing square brackets
13467 - DOC: typo: req.uri is now replaced by capture.req.uri
13468 - DOC: name set-gpt0 mismatch with the expected keyword
13469 - MINOR: http: sample fetch which returns unique-id
13470 - MINOR: dumpstats: extract stats fields enum and names
13471 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
13472 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
13473 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
13474 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
13475 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
13476 - MINOR: lua: dump general info
13477 - MINOR: lua: add class proxy
13478 - MINOR: lua: add class server
13479 - MINOR: lua: add class listener
13480 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
13481 - MEDIUM: proxy: use dynamic allocation for error dumps
13482 - CLEANUP: remove unneeded casts
13483 - CLEANUP: uniformize last argument of malloc/calloc
13484 - DOC: fix "needed" typo
13485 - BUG/MINOR: dumpstats: fix write to global chunk
13486 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
13487 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
13488 - CLEANUP: proto_http: few corrections for gcc warnings.
13489 - BUG/MINOR: DNS: resolution structure change
13490 - BUG/MINOR : allow to log cookie for tarpit and denied request
13491 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
13492 - OPTIM/MINOR: session: abort if possible before connecting to the backend
13493 - DOC: http: rename the unique-id sample and add the documentation
13494 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
13495 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
13496 - BUG/MINOR: server: risk of over reading the pref_net array.
13497 - BUG/MINOR: cfgparse: couple of small memory leaks.
13498 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
13499 - DOC: fix discrepancy in the example for http-request redirect
13500 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
13501 - CLEANUP: .gitignore cleanup
13502 - DOC: Clarify IPv4 address / mask notation rules
13503 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
13504 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
13505 - BUG/MINOR: listener: stop unbound listeners on startup
13506 - BUG/MINOR: fix maxaccept computation according to the frontend process range
13507 - TESTS: add blocksig.c to run tests with all signals blocked
13508 - MEDIUM: unblock signals on startup.
13509 - MINOR: filters: Print the list of existing filters during HA startup
13510 - MINOR: filters: Typo in an error message
13511 - MINOR: filters: Filters must define the callbacks struct during config parsing
13512 - DOC: filters: Add filters documentation
13513 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
13514 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
13515 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
13516 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
13517 - MINOR: Add ability for agent-check to set server maxconn
13518 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
13519 - MINOR: filters: add opaque data
13520 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
13521 - MINOR: lua: migrate the argument mask to 64 bits type.
13522 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
13523 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
13524 - BUG/MEDIUM: http: fix incorrect reporting of server errors
13525 - MINOR: channel: add new function channel_congested()
13526 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
13527 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
13528 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
13529 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
13530 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
13531 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
13532 - MINOR: stats: fix typo in help messages
13533 - MINOR: stats: show stat resolvers missing in the help message
13534 - BUG/MINOR: dns: fix DNS header definition
13535 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
13536 - CLEANUP: don't ignore scripts in .gitignore
13537 - BUILD: add a few release and backport scripts in scripts/
13538
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100135392016/03/14 : 1.7-dev2
13540 - DOC: lua: fix lua API
13541 - DOC: mailers: typo in 'hostname' description
13542 - DOC: compression: missing mention of libslz for compression algorithm
13543 - BUILD/MINOR: regex: missing header
13544 - BUG/MINOR: stream: bad return code
13545 - DOC: lua: fix somme errors and add implicit types
13546 - MINOR: lua: add set/get priv for applets
13547 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
13548 - BUG/MINOR: http: Be sure to process all the data received from a server
13549 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
13550 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
13551 - DOC: ssl: fixed some formatting errors in crt tag
13552 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
13553 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
13554 - MINOR: chunk: make chunk_initstr() take a const string
13555 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
13556 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
13557 - MINOR: lru: new function to delete <nb> least recently used keys
13558 - DOC: add Ben Shillito as the maintainer of 51d
13559 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
13560 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
13561 - BUG/MINOR: 51d: Releases workset back to pool.
13562 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
13563 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
13564 - MINOR: rename master process name in -Ds (systemd mode)
13565 - DOC: fix a few spelling mistakes
13566 - DOC: fix "workaround" spelling
13567 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
13568 - MINOR: fix the return type for dns_response_get_query_id() function
13569 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
13570 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
13571 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
13572 - BUG/MEDIUM: servers state: server port is used uninitialized
13573 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
13574 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
13575 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
13576 - MEDIUM: pools: add a new flag to avoid rounding pool size up
13577 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
13578 - BUG/MINOR: stream: don't force retries if the server is DOWN
13579 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
13580 - MINOR: unix: don't mention free ports on EAGAIN
13581 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
13582 - MINOR: stats: send content-length with the redirect to allow keep-alive
13583 - BUG: stream_interface: Reuse connection even if the output channel is empty
13584 - DOC: remove old tunnel mode assumptions
13585 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
13586 - BUG/MEDIUM: http-reuse: do not share private connections across backends
13587 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
13588 - BUG/MINOR: stats: fix missing comma in stats on agent drain
13589 - MAJOR: filters: Add filters support
13590 - MINOR: filters: Do not reset stream analyzers if the client is gone
13591 - REORG: filters: Prepare creation of the HTTP compression filter
13592 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
13593 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
13594 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
13595 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
13596 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
13597 - MINOR: filters: Add stream_filters structure to hide filters info
13598 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
13599 - MINOR: filters: Remove unused or useless stuff and do small optimizations
13600 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
13601 - MINOR: filters/http: Slightly update the parsing of chunks
13602 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
13603 - MINOR: filters: Add an filter example
13604 - MINOR: filters: Extract proxy stuff from the struct filter
13605 - MINOR: map: Add regex matching replacement
13606 - BUG/MINOR: lua: unsafe initialization
13607 - DOC: lua: fix somme errors
13608 - MINOR: lua: file dedicated to unsafe functions
13609 - MINOR: lua: add "now" time function
13610 - MINOR: standard: add RFC HTTP date parser
13611 - MINOR: lua: Add date functions
13612 - MINOR: lua: move common function
13613 - MINOR: lua: merge function
13614 - MINOR: lua: Add concat class
13615 - MINOR: standard: add function "escape_chunk"
13616 - MEDIUM: log: add a new log format flag "E"
13617 - DOC: add server name at rate-limit sessions example
13618 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
13619 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
13620 - DOC: LUA: fix some typos and syntax errors
13621 - MINOR: cli: add a new "show env" command
13622 - MEDIUM: config: allow to manipulate environment variables in the global section
13623 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
13624 - MINOR: mailers: increase default timeout to 10 seconds
13625 - MINOR: mailers: use <CRLF> for all line endings
13626 - BUG/MAJOR: lua: segfault using Concat object
13627 - DOC: lua: copyrights
13628 - MINOR: common: mask conversion
13629 - MEDIUM: dns: extract options
13630 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
13631 - MINOR: mailers: make it possible to configure the connection timeout
13632 - BUG/MAJOR: lua: applets can't sleep.
13633 - BUG/MINOR: server: some prototypes are renamed
13634 - BUG/MINOR: lua: Useless copy
13635 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
13636 - BUG/MINOR: server: fix the format of the warning on address change
13637 - CLEANUP: server: add "const" to some message strings
13638 - MINOR: server: generalize the "updater" source
13639 - BUG/MEDIUM: chunks: always reject negative-length chunks
13640 - BUG/MINOR: systemd: ensure we don't miss signals
13641 - BUG/MINOR: systemd: report the correct signal in debug message output
13642 - BUG/MINOR: systemd: propagate the correct signal to haproxy
13643 - MINOR: systemd: ensure a reload doesn't mask a stop
13644 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
13645 - CLEANUP: stats: Avoid computation with uninitialized bits.
13646 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
13647 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
13648 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
13649 - BUG/MAJOR: samples: check smp->strm before using it
13650 - MINOR: sample: add a new helper to initialize the owner of a sample
13651 - MINOR: sample: always set a new sample's owner before evaluating it
13652 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
13653 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
13654 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
13655 - MINOR: stats: create fields types suitable for all CSV output data
13656 - MINOR: stats: add all the "show info" fields in a table
13657 - MEDIUM: stats: fill all the show info elements prior to displaying them
13658 - MINOR: stats: add a function to emit fields into a chunk
13659 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
13660 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
13661 - MINOR: stats: add a declaration of all stats fields
13662 - MINOR: stats: don't hard-code the CSV fields list anymore
13663 - MINOR: stats: create stats fields storage and CSV dump function
13664 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
13665 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
13666 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
13667 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
13668 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
13669 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
13670 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
13671 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
13672 - MEDIUM: stats: move the server state coloring logic to the server dump function
13673 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
13674 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
13675 - MINOR: stats: make CSV report server check status only when enabled
13676 - MINOR: stats: only report backend's down time if it has servers
13677 - MINOR: stats: prepend '*' in front of the check status when in progress
13678 - MINOR: stats: make HTML stats dump rely on the table for the check status
13679 - MINOR: stats: add agent_status, agent_code, agent_duration to output
13680 - MINOR: stats: add check_desc and agent_desc to the output fields
13681 - MINOR: stats: add check and agent's health values in the output
13682 - MEDIUM: stats: make the HTML server state dump use the CSV states
13683 - MEDIUM: stats: only report observe errors when observe is set
13684 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
13685 - MEDIUM: stats: report server's address in the CSV output
13686 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
13687 - MEDIUM: stats: compute the color code only in the HTML form
13688 - MEDIUM: stats: report the listeners' address in the CSV output
13689 - MEDIUM: stats: make it possible to report the WAITING state for listeners
13690 - REORG: stats: dump the frontend's HTML stats via a generic function
13691 - REORG: stats: dump the socket stats via the generic function
13692 - REORG: stats: dump the server stats via the generic function
13693 - REORG: stats: dump the backend stats via the generic function
13694 - MEDIUM: stats: add a new "mode" column to report the proxy mode
13695 - MINOR: stats: report the load balancing algorithm in CSV output
13696 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
13697 - MINOR: stats: report number of intercepted requests for frontend and backends
13698 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
13699 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
13700 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
13701 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
13702 - MINOR: stats: add functions to emit typed fields into a chunk
13703 - MEDIUM: stats: support "show info typed" on the CLI
13704 - MEDIUM: stats: implement a typed output format for stats
13705 - DOC: document the "show info typed" and "show stat typed" output formats
13706 - MINOR: cfgparse: warn when uid parameter is not a number
13707 - MINOR: cfgparse: warn when gid parameter is not a number
13708 - BUG/MINOR: standard: Avoid free of non-allocated pointer
13709 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
13710 - CLEANUP: http: fix a build warning introduced by a recent fix
13711 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
13712
Willy Tarreaucb928252015-12-20 23:33:18 +0100137132015/12/20 : 1.7-dev1
13714 - DOC: specify that stats socket doc (section 9.2) is in management
13715 - BUILD: install only relevant and existing documentation
13716 - CLEANUP: don't ignore debian/ directory if present
13717 - BUG/MINOR: dns: parsing error of some DNS response
13718 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
13719 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
13720 - MEDIUM: dns: Don't use the ANY query type
13721 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
13722 - DOC: fix a typo for a "deviceatlas" keyword
13723 - FIX: small typo in an example using the "Referer" header
13724 - MINOR: cli: ability to set per-server maxconn
13725 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
13726 - DEBUG/MEDIUM: memory: optionally protect free data in pools
13727 - DEBUG/MEDIUM: memory: add optional control pool memory operations
13728 - MEDIUM: memory: add accounting for failed allocations
13729 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
13730 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
13731 - BUG/MINOR: dns: unable to parse CNAMEs response
13732 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
13733 - DOC: deviceatlas: more example use cases.
13734 - MINOR: config: allow IPv6 bracketed literals
13735 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
13736 - BUILD: add Haiku as supported target.
13737 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
13738 - DOC: typo on capture.res.hdr and capture.req.hdr
13739 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
13740 - CLEANUP: use direction names in place of numeric values
13741 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
13742 - MINOR: check: add agent-send server parameter
13743 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
13744 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
13745 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
13746 - BUILD: freebsd: double declaration
13747 - BUG/MEDIUM: lua: clean output buffer
13748 - BUILD: check for libressl to be able to build against it
13749 - DOC: lua-api/index.rst small example fixes, spelling correction.
13750 - DOC: lua: architecture and first steps
13751 - DOC: relation between timeout http-request and option http-buffer-request
13752 - BUILD: Make deviceatlas require PCRE
13753 - BUG: http: do not abort keep-alive connections on server timeout
13754 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
13755 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
13756 - BUILD/MINOR: http: proto_http.h needs sample.h
13757 - BUG/MEDIUM: http: don't enable auto-close on the response side
13758 - BUG/MEDIUM: stream: fix half-closed timeout handling
13759 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
13760 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
13761 - BUG/MEDIUM: sample: urlp can't match an empty value
13762 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
13763 - CLEANUP: proxy: calloc call inverted arguments
13764 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
13765 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
13766 - DOC: Edited 51Degrees section of README/
13767 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
13768 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
13769 - BUG/MINOR: checks: typo in an email-alert error message
13770 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
13771 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
13772 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
13773 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
13774 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
13775 - MINOR: ssl: Added cert_key_and_chain struct
13776 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
13777 - MINOR: ssl: Added multi cert support for crt-list config keyword
13778 - MEDIUM: ssl: Added multi cert support for loading crt directories
13779 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
13780 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
13781 - MINOR: config: make tune.recv_enough configurable
13782 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
13783 - DOC: ssl: Adding docs for Multi-Cert bundling
13784 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
13785 - BUG/MEDIUM: peers: old stick table updates could be repushed.
13786 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
13787 - REORG/MINOR: lua: convert boolean "int" to bitfield
13788 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
13789 - BUG/MINOR: lua: Lua applets must not use http_txn
13790 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
13791 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
13792 - CLEANUP: lua: bad error messages
13793 - CONTRIB: initiate a debugging suite to make debugging easier
13794
Willy Tarreau991b4782015-10-13 21:48:10 +0200137952015/10/13 : 1.7-dev0
13796 - exact copy of 1.6.0
13797
Willy Tarreau844028b2015-10-13 18:52:22 +0200137982015/10/13 : 1.6.0
13799 - BUG/MINOR: Handle interactive mode in cli handler
13800 - DOC: global section missing parameters
13801 - DOC: backend section missing parameters
13802 - DOC: stats paramaters available in frontend
13803 - MINOR: lru: do not allocate useless memory in lru64_lookup
13804 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
13805 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
13806 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
13807 - MINOR: ssl: Read the file used to generate certificates in any order
13808 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
13809 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
13810 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
13811 - BUILD: Fix the build on OSX (htonll/ntohll)
13812 - BUILD: enable build on Linux/s390x
13813 - BUG/MEDIUM: lua: direction test failed
13814 - MINOR: lua: fix a spelling error in some error messages
13815 - CLEANUP: cli: ensure we can never double-free error messages
13816 - BUG/MEDIUM: lua: force server-close mode on Lua services
13817 - MEDIUM: init: support more command line arguments after pid list
13818 - MEDIUM: init: support a list of files on the command line
13819 - MINOR: debug: enable memory poisonning to use byte 0
13820 - BUILD: ssl: fix build error introduced by recent commit
13821 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
13822 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
13823 - DOC: mention the "namespace" options for bind and server lines
13824 - DOC: add the "management" documentation
13825 - DOC: move the stats socket documentation from config to management
13826 - MINOR: examples: update haproxy.spec to mention new docs
13827 - DOC: mention management.txt in README
13828 - DOC: remove haproxy-{en,fr}.txt
13829 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
13830 - MINOR: init: report use of libslz instead of "no compression"
13831 - CLEANUP: examples: remove some obsolete and confusing files
13832 - CLEANUP: examples: remove obsolete configuration file samples
13833 - CLEANUP: examples: fix the example file content-sw-sample.cfg
13834 - CLEANUP: examples: update sample file option-http_proxy.cfg
13835 - CLEANUP: examples: update sample file ssl.cfg
13836 - CLEANUP: tests: move a test file from examples/ to tests/
13837 - CLEANUP: examples: shut up warnings in transparent proxy example
13838 - CLEANUP: tests: removed completely obsolete test files
13839 - DOC: update ROADMAP to remove what was done in 1.6
13840 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
13841
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200138422015/10/06 : 1.6-dev7
13843 - MINOR: cli: Dump all resolvers stats if no resolver section is given
13844 - BUG: config: external-check command validation is checking for incorrect arguments.
13845 - DOC: documentation format cleanups
13846 - DOC: lua: few typos.
13847 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
13848 - BUG/MEDIUM: logs: segfault writing to log from Lua
13849 - DOC: fix lua use-service example
13850 - MINOR: payload: add support for tls session ticket ext
13851 - MINOR: lua: remove the run flag
13852 - MEDIUM: lua: change the timeout execution
13853 - MINOR: lua: rename the tune.lua.applet-timeout
13854 - DOC: lua: update Lua doc
13855 - DOC: lua: update doc according with the last Lua changes
13856 - MINOR: http/tcp: fill the avalaible actions
13857 - DOC: reorder misplaced res.ssl_hello_type in the doc
13858 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
13859 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
13860 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
13861 - BUILD: server: fix build warnings introduced by load-server-state
13862 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
13863
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200138642015/09/28 : 1.6-dev6
13865 - BUG/MAJOR: can't enable a server through the stat socket
13866 - MINOR: server: Macro definition for server-state
13867 - MINOR: cli: new stats socket command: show servers state
13868 - DOC: stats socket command: show servers state
13869 - MINOR: config: new global directive server-state-base
13870 - DOC: global directive server-state-base
13871 - MINOR: config: new global section directive: server-state-file
13872 - DOC: new global directive: server-state-file
13873 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
13874 - DOC: load-server-state-from-file
13875 - MINOR: init: server state loaded from file
13876 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
13877 - MINOR: cli: new stats socket command: show backend
13878 - DOC: servers state seamless reload example
13879 - BUG: dns: can't connect UDP socket on FreeBSD
13880 - MINOR: cfgparse: New function cfg_unregister_sections()
13881 - MINOR: chunk: New function free_trash_buffers()
13882 - BUG/MEDIUM: main: Freeing a bunch of static pointers
13883 - MINOR: proto_http: Externalisation of previously internal functions
13884 - MINOR: global: Few new struct fields for da module
13885 - MAJOR: da: Update of the DeviceAtlas API module
13886 - DOC: DeviceAtlas new keywords
13887 - DOC: README: DeviceAtlas sample configuration updates
13888 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
13889 - MEDIUM: log: use a separate buffer for the header and for the message
13890 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
13891 - MEDIUM: logs: add support for RFC5424 header format per logger
13892 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
13893 - DOC: mention support for the RFC5424 syslog message format
13894 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
13895 - MEDIUM: logs: pass the trailing "\n" as an iovec
13896 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
13897 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
13898 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
13899 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
13900 - MINOR: global: Added new fields for 51Degrees device detection
13901 - DOC: Added more explanation for 51Degrees V3.2
13902 - BUILD: Changed 51Degrees option to support V3.2
13903 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
13904 - MINOR: 51d: Improved string handling for LRU cache
13905 - DOC: add references to rise/fall for the fastinter explanation
13906 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
13907 - BUG/MAJOR: lua: potential unexpected aborts()
13908 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
13909 - MINOR: action: add private configuration
13910 - MINOR: action: add reference to the original keywork matched for the called parser.
13911 - MINOR: lua: change actions registration
13912 - MEDIUM: proto_http: smp_prefetch_http initialize txn
13913 - MINOR: channel: rename function chn_sess to chn_strm
13914 - CLEANUP: lua: align defines
13915 - MINOR: http: export http_get_path() function
13916 - MINOR: http: export the get_reason() function
13917 - MINOR: http: export function http_msg_analyzer()
13918 - MINOR: http: split initialization
13919 - MINOR: lua: reset pointer after use
13920 - MINOR: lua: identify userdata objects
13921 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
13922 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
13923 - CLEANUP: lua: use calloc in place of malloc
13924 - BUG/MEDIUM: lua: longjmp function must be unregistered
13925 - BUG/MEDIUM: lua: forces a garbage collection
13926 - BUG/MEDIUM: lua: wakeup task on bad conditions
13927 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
13928 - MINOR: lua: extend socket address to support non-IP families
13929 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
13930 - BUG/MEDIUM: lua: socket destroy before reading pending data
13931 - MEDIUM: lua: change the GC policy
13932 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
13933 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
13934 - MINOR: applet: add init function
13935 - MINOR: applet: add an execution timeout
13936 - MINOR: stream/applet: add use-service action
13937 - MINOR: lua: add AppletTCP class and service
13938 - MINOR: lua: add AppletHTTP class and service
13939 - DOC: lua: some documentation update
13940 - DOC: add the documentation about internal circular lists
13941 - DOC: add a CONTRIBUTING file
13942 - DOC: add a MAINTAINERS file
13943 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
13944 - DOC: update coding-style to reference checkpatch.pl
13945 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
13946 - BUG/MINOR: args: add name for ARGT_VAR
13947 - DOC: add more entries to MAINTAINERS
13948 - DOC: add more entries to MAINTAINERS
13949 - CLEANUP: stream-int: remove obsolete function si_applet_call()
13950 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
13951 - BUG/MEDIUM: http: do not dereference strm_li(stream)
13952 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
13953 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
13954 - MINOR: stream-int: use si_release_endpoint() to close idle conns
13955 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
13956 - BUG/MEDIUM: acl: always accept match "found"
13957 - MINOR: applet: rename applet_runq to applet_active_queue
13958 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
13959 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
13960 - MINOR: stream-int: implement a new stream_int_update() function
13961 - MEDIUM: stream-int: factor out the stream update functions
13962 - MEDIUM: stream-int: call stream_int_update() from si_update()
13963 - MINOR: stream-int: export stream_int_update_*
13964 - MINOR: stream-int: move the applet_pause call out of the stream updates
13965 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
13966 - MINOR: stream-int: implement the stream_int_notify() function
13967 - MEDIUM: stream-int: use the same stream notification function for applets and conns
13968 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
13969 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
13970 - BUG/MEDIUM: applet: fix reporting of broken write situation
13971 - BUG/MINOR: stats: do not call cli_release_handler 3 times
13972 - BUG/MEDIUM: cli: properly handle closed output
13973 - MINOR: cli: do not call the release handler on internal error.
13974 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
13975 - DEBUG: add p_malloc() to return a poisonned memory area
13976 - CLEANUP: lua: remove unneeded memset(0) after calloc()
13977 - MINOR: lua: use the proper applet wakeup mechanism
13978 - BUG/MEDIUM: lua: better fix for the protocol check
13979 - BUG/MEDIUM: lua: properly set the target on the connection
13980 - MEDIUM: actions: pass a new "flags" argument to custom actions
13981 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
13982 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
13983 - MEDIUM: lua: only allow actions to yield if not in a final call
13984 - DOC: clarify how to make use of abstract sockets in socat
13985 - CLEANUP: config: make the errorloc/errorfile messages less confusing
13986 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
13987 - BUG/MINOR: config: check that tune.bufsize is always positive
13988 - MEDIUM: config: set tune.maxrewrite to 1024 by default
13989 - DOC: add David Carlier as maintainer of da.c
13990 - DOC: fix some broken unexpected unicode chars in the Lua doc.
13991 - BUG/MEDIUM: proxy: ignore stopped peers
13992 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
13993 - MEDIUM: init: completely deallocate unused peers
13994 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
13995 - DOC: remove outdated actions lists on tcp-request/response
13996 - MEDIUM: tcp: add new tcp action "silent-drop"
13997 - DOC: add URLs to optional libraries in the README
13998
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200139992015/09/14 : 1.6-dev5
14000 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
14001 - BUG/MEDIUM: dns: DNS resolution doesn't start
14002 - BUG/MAJOR: dns: dns client resolution infinite loop
14003 - MINOR: dns: coding style update
14004 - MINOR: dns: new bitmasks to use against DNS flags
14005 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
14006 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
14007 - MEDIUM: dns: handling of truncated response
14008 - MINOR: DNS client query type failover management
14009 - MINOR: dns: no expected DNS record type found
14010 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
14011 - BUG/MINOR: DNS request retry counter used for retry only
14012 - DOC: DNS documentation updated
14013 - MEDIUM: actions: remove ACTION_STOP
14014 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
14015 - BUG/MINOR: lua: last log character truncated.
14016 - CLEANUP: typo: bad indent
14017 - CLEANUP: actions: missplaced includes
14018 - MINOR: build: missing header
14019 - CLEANUP: lua: Merge log functions
14020 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
14021 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
14022 - BUG/MAJOR: http: don't call http_send_name_header() after an error
14023 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
14024 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
14025 - BUG/MEDIUM: dns: use the correct server hostname when resolving
14026
Willy Tarreau61d301f2015-08-30 00:17:17 +0200140272015/08/30 : 1.6-dev4
14028 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
14029 - DOC: typo in 'redirect', 302 code meaning
14030 - DOC: typos in tcp-check expect examples
14031 - DOC: resolve-prefer default value and default-server update
14032 - MINOR: DNS counters: increment valid counter
14033 - BUG/MEDIUM: DNS resolution response parsing broken
14034 - MINOR: server: add new SRV_ADMF_CMAINT flag
14035 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
14036 - BUG/MEDIUM: dns: wrong first time DNS resolution
14037 - BUG/MEDIUM: lua: Lua tasks fail to start.
14038 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
14039 - DOC/MINOR: fix OpenBSD versions where haproxy works
14040 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
14041 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
14042 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
14043 - BUILD: ssl: Allow building against libssl without SSLv3.
14044 - DOC: clarify some points about SSL and the proxy protocol
14045 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
14046 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
14047 - DOC: match several lua configuration option names to those implemented in code
14048 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
14049 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
14050 - MINOR: stream: initialize the current_rule field to NULL on stream init
14051 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
14052 - CLEANUP: proto_http: remove useless initialisation
14053 - CLEANUP: http/tcp actions: remove the scope member
14054 - BUG/MINOR: proto_tcp: custom action continue is ignored
14055 - MINOR: proto_tcp: add session in the action prototype
14056 - MINOR: vars: reduce the code size of some wrappers
14057 - MINOR: Move http method enum from proto_http to sample
14058 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
14059 - MINOR: sample/proto_tcp: export "smp_fetch_src"
14060 - MEDIUM: cli: rely on the map's output type instead of the sample type
14061 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
14062 - BUG/MEDIUM: vars: segfault during the configuration parsing
14063 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
14064 - BUG/MEDIUM: lua: bad error processing
14065 - MINOR: samples: rename a struct from sample_storage to sample_data
14066 - MINOR: samples: rename some struct member from "smp" to "data"
14067 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
14068 - MINOR: samples: extract the anonymous union and create the union sample_value
14069 - MINOR: samples: rename union from "data" to "u"
14070 - MEDIUM: 51degrees: Adapt the 51Degrees library
14071 - MINOR: samples: data assignation simplification
14072 - MEDIUM: pattern/map: Maps can returns various types
14073 - MINOR: map: The map can return IPv4 and IPv6
14074 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
14075 - MINOR: actions: Remove the data opaque pointer
14076 - MINOR: lua: use the hlua_rule type in place of opaque type
14077 - MINOR: vars: use the vars types as argument in place of opaque type
14078 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
14079 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
14080 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
14081 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
14082 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
14083 - MEDIUM: capture: Move the capture configuration storage in the union
14084 - MINOR: actions: add "from" information
14085 - MINOR: actions: remove the mark indicating the last entry in enum
14086 - MINOR: actions: Declare all the embedded actions in the same header file
14087 - MINOR: actions: change actions names
14088 - MEDIUM: actions: Add standard return code for the action API
14089 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
14090 - MINOR: proto_tcp: proto_tcp.h is now useles
14091 - MINOR: actions: mutualise the action keyword lookup
14092 - MEDIUM: actions: Normalize the return code of the configuration parsers
14093 - MINOR: actions: Remove wrappers
14094 - MAJOR: stick-tables: use sample types in place of dedicated types
14095 - MEDIUM: stick-tables: use the sample type names
14096 - MAJOR: stick-tables: remove key storage from the key struct
14097 - MEDIUM: stick-tables: Add GPT0 in the stick tables
14098 - MINOR: stick-tables: Add GPT0 access
14099 - MINOR: stick-tables: Add GPC0 actions
14100 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
14101 - DOC: ssl: missing LF
14102 - MINOR: lua: add core.done() function
14103 - DOC: fix function name
14104 - BUG/MINOR: lua: in some case a sample may remain undefined
14105 - DOC: fix "http_action_set_req_line()" comments
14106 - MINOR: http: Action for manipulating the returned status code.
14107 - MEDIUM: lua: turns txn:close into txn:done
14108 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
14109 - BUILD: link with libdl if needed for Lua support
14110 - CLEANUP: backend: factor out objt_server() in connect_server()
14111 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
14112 - MEDIUM: stream-int: simplify si_alloc_conn()
14113 - MINOR: stream-int: add new function si_detach_endpoint()
14114 - MINOR: server: add a list of private idle connections
14115 - MINOR: connection: add a new list member in the connection struct
14116 - MEDIUM: stream-int: queue idle connections at the server
14117 - MINOR: stream-int: make si_idle_conn() only accept valid connections
14118 - MINOR: server: add a list of already used idle connections
14119 - MINOR: connection: add a new flag CO_FL_PRIVATE
14120 - MINOR: config: add new setting "http-reuse"
14121 - MAJOR: backend: initial work towards connection reuse
14122 - MAJOR: backend: improve the connection reuse mechanism
14123 - MEDIUM: backend: implement "http-reuse safe"
14124 - MINOR: server: add a list of safe, already reused idle connections
14125 - MEDIUM: backend: add the "http-reuse aggressive" strategy
14126 - DOC: document the new http-reuse directive
14127 - DOC: internals: document next steps for HTTP connection reuse
14128 - DOC: mention that %ms is left-padded with zeroes.
14129 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
14130 - MAJOR: http: remove references to appsession
14131 - CLEANUP: config: remove appsession initialization
14132 - CLEANUP: appsession: remove appsession.c and sessionhash.c
14133 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
14134 - CLEANUP: proxy: remove last references to appsession
14135 - CLEANUP: appsession: remove the last include files
14136 - DOC: remove documentation about appsession
14137 - CLEANUP: .gitignore: ignore more test files
14138 - CLEANUP: .gitignore: finally ignore everything but what is known.
14139 - MEDIUM: config: emit a warning on a frontend without listener
14140 - DOC: add doc/internals/entities-v2.txt
14141 - DOC: add doc/linux-syn-cookies.txt
14142 - DOC: add design thoughts on HTTP/2
14143 - DOC: add some thoughts on connection sharing for HTTP/2
14144 - DOC: add design thoughts on dynamic buffer allocation
14145 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
14146 - DOC: add new file intro.txt
14147 - MAJOR: tproxy: remove support for cttproxy
14148 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
14149 - DOC: lua: replace txn:close with txn:done in lua-api
14150 - DOC: intro: minor updates and fixes
14151 - DOC: intro: fix too long line.
14152 - DOC: fix example of http-request using ssl_fc_session_id
14153 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
14154 - CLEANUP: lua: fix some indent issues
14155 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
14156 - DOC: lua: mention than txn:close was renamed txn:done.
14157
Willy Tarreau50bdda62015-07-22 17:32:56 +0200141582015/07/22 : 1.6-dev3
14159 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
14160 - MEDIUM: http: Add new 'set-src' option to http-request
14161 - DOC usesrc root privileges requirments
14162 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
14163 - MINOR: proxy: bit field for proxy_find_best_match diff status
14164 - MINOR: server: new server flag: SRV_F_FORCED_ID
14165 - MINOR: server: server_find functions: id, name, best_match
14166 - DOC: dns: fix chapters syntax
14167 - BUILD/MINOR: tools: rename popcount to my_popcountl
14168 - BUILD: add netbsd TARGET
14169 - MEDIUM: 51Degrees code refactoring and cleanup
14170 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
14171 - DOC: add notes about the "51degrees-cache-size" parameter
14172 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
14173 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
14174 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
14175 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
14176 - BUG/MINOR: lua: type error in the arguments wrapper
14177 - CLEANUP: vars: remove unused struct
14178 - BUG/MINOR: http/sample: gmtime/localtime can fail
14179 - MINOR: standard: add 64 bits conversion functions
14180 - MAJOR: sample: converts uint and sint in 64 bits signed integer
14181 - MAJOR: arg: converts uint and sint in sint
14182 - MEDIUM: sample: switch to saturated arithmetic
14183 - MINOR: vars: returns variable content
14184 - MEDIUM: vars/sample: operators can use variables as parameter
14185 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
14186 - BUILD/MINOR: lua: fix a harmless build warning
14187 - BUILD/MINOR: stats: fix build warning due to condition always true
14188 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
14189 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
14190 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
14191 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
14192 - MINOR: vars: make the accounting not depend on the stream
14193 - MEDIUM: vars: move the session variables to the session, not the stream
14194 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
14195 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
14196 - BUG/MAJOR: tcp: tcp rulesets were still broken
14197 - MINOR: stats: improve compression stats reporting
14198 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
14199 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
14200 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
14201 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
14202 - MINOR: args: add new context for servers
14203 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
14204 - MINOR: ssl: provide ia function to set the SNI extension on a connection
14205 - MEDIUM: ssl: add sni support on the server lines
14206 - CLEANUP: stream: remove a useless call to si_detach()
14207 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
14208 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
14209 - MINOR: stream-int: only use si_release_endpoint() to release a connection
14210 - MINOR: standard: provide htonll() and ntohll()
14211 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
14212 - BUG/MAJOR: dns: fix the length of the string to be copied
14213
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200142142015/06/17 : 1.6-dev2
14215 - BUG/MINOR: ssl: Display correct filename in error message
14216 - MEDIUM: logs: Add HTTP request-line log format directives
14217 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
14218 - BUG/MINOR: check: fix tcpcheck error message
14219 - MINOR: use an int instead of calling tcpcheck_get_step_id
14220 - MINOR: tcpcheck_rule structure update
14221 - MINOR: include comment in tcpcheck error log
14222 - DOC: tcpcheck comment documentation
14223 - MEDIUM: server: add support for changing a server's address
14224 - MEDIUM: server: change server ip address from stats socket
14225 - MEDIUM: protocol: add minimalist UDP protocol client
14226 - MEDIUM: dns: implement a DNS resolver
14227 - MAJOR: server: add DNS-based server name resolution
14228 - DOC: server name resolution + proto DNS
14229 - MINOR: dns: add DNS statistics
14230 - MEDIUM: http: configurable http result codes for http-request deny
14231 - BUILD: Compile clean when debug options defined
14232 - MINOR: lru: Add the possibility to free data when an item is removed
14233 - MINOR: lru: Add lru64_lookup function
14234 - MEDIUM: ssl: Add options to forge SSL certificates
14235 - MINOR: ssl: Export functions to manipulate generated certificates
14236 - MEDIUM: config: add DeviceAtlas global keywords
14237 - MEDIUM: global: add the DeviceAtlas required elements to struct global
14238 - MEDIUM: sample: add the da-csv converter
14239 - MEDIUM: init: DeviceAtlas initialization
14240 - BUILD: Makefile: add options to build with DeviceAtlas
14241 - DOC: README: explain how to build with DeviceAtlas
14242 - BUG/MEDIUM: http: fix the url_param fetch
14243 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
14244 - MAJOR: peers: peers protocol version 2.0
14245 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
14246 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
14247 - MEDIUM: peers: support of any stick-table data-types for sync
14248 - BUG/MAJOR: sample: regression on sample cast to stick table types.
14249 - CLEANUP: deinit: remove codes for cleaning p->block_rules
14250 - DOC: Fix L4TOUT typo in documentation
14251 - DOC: set-log-level in Logging section preamble
14252 - BUG/MEDIUM: compat: fix segfault on FreeBSD
14253 - MEDIUM: check: include server address and port in the send-state header
14254 - MEDIUM: backend: Allow redispatch on retry intervals
14255 - MINOR: Add TLS ticket keys reference and use it in the listener struct
14256 - MEDIUM: Add support for updating TLS ticket keys via socket
14257 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
14258 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
14259 - DOC: Update doc about weight, act and bck fields in the statistics
14260 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
14261 - MINOR: ssl: add a destructor to free allocated SSL ressources
14262 - MEDIUM: ssl: add the possibility to use a global DH parameters file
14263 - MEDIUM: ssl: replace standards DH groups with custom ones
14264 - MEDIUM: stats: Add enum srv_stats_state
14265 - MEDIUM: stats: Separate server state and colour in stats
14266 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
14267 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
14268 - MEDIUM: Lower priority of email alerts for log-health-checks messages
14269 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
14270 - MEDIUM: Document when email-alerts are sent
14271 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
14272 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
14273 - BUG/MINOR: utf8: remove compilator warning
14274 - MEDIUM: map: uses HAProxy facilities to store default value
14275 - BUG/MINOR: lua: error in detection of mandatory arguments
14276 - BUG/MINOR: lua: set current proxy as default value if it is possible
14277 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
14278 - BUG/MEDIUM: lua: undetected infinite loop
14279 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
14280 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
14281 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
14282 - BUILD: lua: it miss the '-ldl' directive
14283 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
14284 - MINOR: http: split the function http_action_set_req_line() in two parts
14285 - MINOR: http: split http_transform_header() function in two parts.
14286 - MINOR: http: export function inet_set_tos()
14287 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
14288 - MINOR: lua: create and register HTTP class
14289 - DOC: lua: fix some typos
14290 - MINOR: lua: add log functions
14291 - BUG/MINOR: lua: Fix SSL initialisation
14292 - DOC: lua: some fixes
14293 - MINOR: lua: (req|res)_get_headers return more than one header value
14294 - MINOR: lua: map system integration in Lua
14295 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
14296 - MINOR: sample: add url_dec converter
14297 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
14298 - MEDIUM: sample change the prototype of sample-fetches and converters functions
14299 - MINOR: sample: fill the struct sample with the options.
14300 - MEDIUM: sample: change the prototype of sample-fetches functions
14301 - MINOR: http: split the url_param in two parts
14302 - CLEANUP: http: bad indentation
14303 - MINOR: http: add body_param fetch
14304 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
14305 - DOC: http: req.body_param documentation
14306 - MINOR: proxy: custom capture declaration
14307 - MINOR: capture: add two "capture" converters
14308 - MEDIUM: capture: Allow capture with slot identifier
14309 - MINOR: http: add array of generic pointers in http_res_rules
14310 - MEDIUM: capture: adds http-response capture
14311 - MINOR: common: escape CSV strings
14312 - MEDIUM: stats: escape some strings in the CSV dump
14313 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
14314 - MINOR: lua: Lua tcp action are not final action
14315 - DOC: lua: schematics about lua socket organization
14316 - BUG/MINOR: debug: display (null) in place of "meth"
14317 - DOC: mention the "lua action" in documentation
14318 - MINOR: standard: add function that converts signed int to a string
14319 - BUG/MINOR: sample: wrong conversion of signed values
14320 - MEDIUM: sample: Add type any
14321 - MINOR: debug: add a special converter which display its input sample content.
14322 - MINOR: tcp: increase the opaque data array
14323 - MINOR: tcp/http/conf: extends the keyword registration options
14324 - MINOR: build: fix build dependency
14325 - MEDIUM: vars: adds support of variables
14326 - MINOR: vars: adds get and set functions
14327 - MINOR: lua: Variable access
14328 - MINOR: samples: add samples which returns constants
14329 - BUG/MINOR: vars/compil: fix some warnings
14330 - BUILD: add 51degrees options to makefile.
14331 - MINOR: global: add several 51Degrees members to global
14332 - MINOR: config: add 51Degrees config parsing.
14333 - MINOR: init: add 51Degrees initialisation code
14334 - MEDIUM: sample: add fiftyone_degrees converter.
14335 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
14336 - MEDIUM: sample: add trie support to 51Degrees
14337 - DOC: add 51Degrees notes to configuration.txt.
14338 - DOC: add build indications for 51Degrees to README.
14339 - MEDIUM: cfgparse: introduce weak and strong quoting
14340 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
14341 - MINOR: cfgparse: remove line size limitation
14342 - MEDIUM: cfgparse: expand environment variables
14343 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
14344 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
14345 - CLEANUP: cfgparse: remove reference to 'ruleset' section
14346 - MEDIUM: cfgparse: check section maximum number of arguments
14347 - MEDIUM: cfgparse: max arguments check in the global section
14348 - MEDIUM: cfgparse: check max arguments in the proxies sections
14349 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
14350 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
14351 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
14352 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
14353 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
14354 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
14355 - MINOR: connection: implement conn_sock_send()
14356 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
14357 - MEDIUM: connection: make conn_drain() perform more controls
14358 - REORG: connection: move conn_drain() to connection.c and rename it
14359 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
14360 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
14361 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
14362 - BUG/MEDIUM: peers: correctly configure the client timeout
14363 - MINOR: peers: centralize configuration of the peers frontend
14364 - MINOR: proxy: store the default target into the frontend's configuration
14365 - MEDIUM: stats: use frontend_accept() as the accept function
14366 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
14367 - CLEANUP: listeners: remove unused timeout
14368 - MEDIUM: listener: store the default target per listener
14369 - BUILD: fix automatic inclusion of libdl.
14370 - MEDIUM: lua: implement a simple memory allocator
14371 - MEDIUM: compression: postpone buffer adjustments after compression
14372 - MEDIUM: compression: don't send leading zeroes with chunk size
14373 - BUG/MINOR: compression: consider the expansion factor in init
14374 - MINOR: http: check the algo name "identity" instead of the function pointer
14375 - CLEANUP: compression: statify all algo-specific functions
14376 - MEDIUM: compression: add a distinction between UA- and config- algorithms
14377 - MEDIUM: compression: add new "raw-deflate" compression algorithm
14378 - MEDIUM: compression: split deflate_flush() into flush and finish
14379 - CLEANUP: compression: remove unused reset functions
14380 - MAJOR: compression: integrate support for libslz
14381 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
14382 - BUG/MAJOR: http: null-terminate the http actions keywords list
14383 - CLEANUP: lua: remove the unused hlua_sleep memory pool
14384 - BUG/MAJOR: lua: use correct object size when initializing a new converter
14385 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
14386 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
14387 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
14388 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
14389 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
14390 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
14391 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
14392 - REORG/MAJOR: session: rename the "session" entity to "stream"
14393 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
14394 - MINOR: session: start to reintroduce struct session
14395 - MEDIUM: stream: allocate the session when a stream is created
14396 - MEDIUM: stream: move the listener's pointer to the session
14397 - MEDIUM: stream: move the frontend's pointer to the session
14398 - MINOR: session: add a pointer to the session's origin
14399 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
14400 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
14401 - MEDIUM: http: move header captures from http_txn to struct stream
14402 - MINOR: http: create a dedicated pool for http_txn
14403 - MAJOR: http: move http_txn out of struct stream
14404 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
14405 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
14406 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
14407 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
14408 - MAJOR: sample: pass a pointer to the session to each sample fetch function
14409 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
14410 - CLEANUP: stream: don't set ->target to the incoming connection anymore
14411 - MINOR: stream: move session initialization before the stream's
14412 - MINOR: session: store the session's accept date
14413 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
14414 - MINOR: session: implement session_free() and use it everywhere
14415 - MINOR: session: add stick counters to the struct session
14416 - REORG: stktable: move the stkctr_* functions from stream to sticktable
14417 - MEDIUM: streams: support looking up stkctr in the session
14418 - MEDIUM: session: update the session's stick counters upon session_free()
14419 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
14420 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
14421 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
14422 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
14423 - MAJOR: stream: don't initialize the stream anymore in stream_accept
14424 - MEDIUM: session: remove the task pointer from the session
14425 - REORG: session: move the session parts out of stream.c
14426 - MINOR: stream-int: make appctx_new() take the applet in argument
14427 - MEDIUM: peers: move the appctx initialization earlier
14428 - MINOR: session: introduce session_new()
14429 - MINOR: session: make use of session_new() when creating a new session
14430 - MINOR: peers: make use of session_new() when creating a new session
14431 - MEDIUM: peers: initialize the task before the stream
14432 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
14433 - CLEANUP: stream.c: do not re-attach the connection to the stream
14434 - MEDIUM: stream: isolate connection-specific initialization code
14435 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
14436 - MEDIUM: peers: make use of stream_accept_session()
14437 - MEDIUM: frontend: make ->accept only return +/-1
14438 - MEDIUM: stream: return the stream upon accept()
14439 - MEDIUM: frontend: move some stream initialisation to stream_new()
14440 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
14441 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
14442 - MEDIUM: frontend: move some remaining stream settings to stream_new()
14443 - CLEANUP: frontend: remove one useless local variable
14444 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
14445 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
14446 - MINOR: lua: minor cleanup in hlua_socket_new()
14447 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
14448 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
14449 - CLEANUP: stream-int: swap stream-int and appctx declarations
14450 - CLEANUP: namespaces: fix protection against multiple inclusions
14451 - MINOR: session: maintain the session count stats in the session, not the stream
14452 - MEDIUM: session: adjust the connection flags before stream_new()
14453 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
14454 - CLEANUP: poll: move the conditions for waiting out of the poll functions
14455 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
14456 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
14457 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
14458 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
14459 - DOC: update the entities diagrams
14460 - BUG/MEDIUM: http: properly retrieve the front connection
14461 - MINOR: applet: add a new "owner" pointer in the appctx
14462 - MEDIUM: applet: make the applet not depend on a stream interface anymore
14463 - REORG: applet: move the applet definitions out of stream_interface
14464 - CLEANUP: applet: rename struct si_applet to applet
14465 - REORG: stream-int: create si_applet_ops dedicated to applets
14466 - MEDIUM: applet: add basic support for an applet run queue
14467 - MEDIUM: applet: implement a run queue for active appctx
14468 - MEDIUM: stream-int: add a new function si_applet_done()
14469 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
14470 - MAJOR: stream: use a regular ->update for all stream interfaces
14471 - MEDIUM: dumpstats: don't unregister the applet anymore
14472 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
14473 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
14474 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
14475 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
14476 - MEDIUM: stream-int: pause the appctx if the task is woken up
14477 - BUG/MAJOR: tcp: only call registered actions when they're registered
14478 - BUG/MEDIUM: peers: fix applet scheduling
14479 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
14480 - MINOR: tools: provide an rdtsc() function for time comparisons
14481 - IMPORT: lru: import simple ebtree-based LRU functions
14482 - IMPORT: hash: import xxhash-r39
14483 - MEDIUM: pattern: add a revision to all pattern expressions
14484 - MAJOR: pattern: add LRU-based cache on pattern matching
14485 - BUG/MEDIUM: http: remove content-length from chunked messages
14486 - DOC: http: update the comments about the rules for determining transfer-length
14487 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
14488 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
14489 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
14490 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
14491 - MEDIUM: http: disable support for HTTP/0.9 by default
14492 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
14493 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
14494 - MEDIUM: init: don't stop proxies in parent process when exiting
14495 - MINOR: stick-table: don't attach to peers in stopped state
14496 - MEDIUM: config: initialize stick-tables after peers, not before
14497 - MEDIUM: peers: add the ability to disable a peers section
14498 - MINOR: peers: store the pointer to the signal handler
14499 - MEDIUM: peers: unregister peers that were never started
14500 - MEDIUM: config: propagate the table's process list to the peers sections
14501 - MEDIUM: init: stop any peers section not bound to the correct process
14502 - MEDIUM: config: validate that peers sections are bound to exactly one process
14503 - MAJOR: peers: allow peers section to be used with nbproc > 1
14504 - DOC: relax the peers restriction to single-process
14505 - DOC: document option http-ignore-probes
14506 - DOC: fix the comments about the meaning of msg->sol in HTTP
14507 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
14508 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
14509 - MEDIUM: stream: move HTTP request body analyser before process_common
14510 - MEDIUM: http: add a new option http-buffer-request
14511 - MEDIUM: http: provide 3 fetches for the body
14512 - DOC: update the doc on the proxy protocol
14513 - BUILD: pattern: fix build warnings introduced in the LRU cache
14514 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
14515 - CLEANUP: config: fix misleading information in error message.
14516 - MINOR: config: report the number of processes using a peers section in the error case
14517 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
14518 - MEDIUM: http: add new "capture" action for http-request
14519 - BUG/MEDIUM: http: fix the http-request capture parser
14520 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
14521 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
14522 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
14523 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
14524 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
14525 - CLEANUP: checks: simplify the loop processing of tcp-checks
14526 - BUG/MAJOR: checks: always check for end of list before proceeding
14527 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
14528 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
14529 - MEDIUM: http: make url_param iterate over multiple occurrences
14530 - BUG/MEDIUM: peers: apply a random reconnection timeout
14531 - MEDIUM: config: reject invalid config with name duplicates
14532 - MEDIUM: config: reject conflicts in table names
14533 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
14534 - MINOR: proxy: simply ignore duplicates in proxy name lookups
14535 - MINOR: config: don't open-code proxy name lookups
14536 - MEDIUM: config: clarify the conflicting modes detection for backend rules
14537 - CLEANUP: proxy: remove now unused function findproxy_mode()
14538 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
14539 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
14540 - MINOR: proxy: add a new function proxy_find_by_id()
14541 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
14542 - MEDIUM: proxy: add a new proxy_find_best_match() function
14543 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
14544 - MINOR: http: prepare support for parsing redirect actions on responses
14545 - MEDIUM: http: implement http-response redirect rules
14546 - MEDIUM: http: no need to close the request on redirect if data was parsed
14547 - BUG/MEDIUM: http: fix body processing for the stats applet
14548 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
14549 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
14550 - CLEANUP: da: move the converter registration to da.c
14551 - CLEANUP: da: register the config keywords in da.c
14552 - CLEANUP: adjust the envelope name in da.h to reflect the file name
14553 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
14554 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
14555 - BUILD: fix build warning when not using 51degrees
14556 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
14557 - BUILD: ssl: fix recent build breakage on older SSL libs
14558
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100145592015/03/11 : 1.6-dev1
14560 - CLEANUP: extract temporary $CFG to eliminate duplication
14561 - CLEANUP: extract temporary $BIN to eliminate duplication
14562 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
14563 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
14564 - CLEANUP: extract quiet_check() to avoid duplication
14565 - BUG/MINOR: don't start haproxy on reload
14566 - DOC: Address issue where documentation is excluded due to a gitignore rule.
14567 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
14568 - BUILD: fix "make install" to support spaces in the install dirs
14569 - BUG/MINOR: config: http-request replace-header arg typo
14570 - BUG: config: error in http-response replace-header number of arguments
14571 - DOC: missing track-sc* in http-request rules
14572 - BUILD: lua: missing ifdef related to SSL when enabling LUA
14573 - BUG/MEDIUM: regex: fix pcre_study error handling
14574 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
14575 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
14576 - MEDIUM: Improve signal handling in systemd wrapper.
14577 - DOC: fix typo in Unix Socket commands
14578 - BUG/MEDIUM: checks: external checks can't change server status to UP
14579 - BUG/MEDIUM: checks: segfault with external checks in a backend section
14580 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
14581 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
14582 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
14583 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
14584 - BUG/MINOR: log: fix request flags when keep-alive is enabled
14585 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
14586 - MINOR: checks: allow external checks in backend sections
14587 - MEDIUM: checks: provide environment variables to the external checks
14588 - MINOR: checks: update dynamic environment variables in external checks
14589 - DOC: checks: environment variables used by "external-check command"
14590 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
14591 - MINOR: ssl: load certificates in alphabetical order
14592 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
14593 - MINOR: lua: typo in an error message
14594 - MINOR: report the Lua version in -vv
14595 - MINOR: lua: add a compilation error message when compiled with an incompatible version
14596 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
14597 - BUILD: try to automatically detect the Lua library name
14598 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
14599 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
14600 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
14601 - MEDIUM: connection: add new bit in Proxy Protocol V2
14602 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
14603 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
14604 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
14605 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
14606 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
14607 - MINOR: ssl: add statement to force some ssl options in global.
14608 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
14609 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
14610 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
14611 - MINOR: samples: adds the bytes converter.
14612 - MINOR: samples: adds the field converter.
14613 - MINOR: samples: add the word converter.
14614 - BUG/MINOR: server: move the directive #endif to the end of file
14615 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
14616 - DOC: fix a few typos
14617 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
14618 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
14619 - BUG/MINOR: parse: refer curproxy instead of proxy
14620 - BUG/MINOR: parse: check the validity of size string in a more strict way
14621 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
14622 - DOC: expand the docs for the provided stats.
14623 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
14624 - MEDIUM: ssl: Certificate Transparency support
14625 - MEDIUM: stats: proxied stats admin forms fix
14626 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
14627 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
14628 - MAJOR: namespace: add Linux network namespace support
14629 - MINOR: systemd: Check configuration before start
14630 - BUILD: ssl: handle boringssl in openssl version detection
14631 - BUILD: ssl: disable OCSP when using boringssl
14632 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
14633 - MINOR: ssl: don't use boringssl's cipher_list
14634 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
14635 - MINOR: stats: fix minor typo in HTML page
14636 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
14637 - MEDIUM: Add support for configurable TLS ticket keys
14638 - DOC: Document the new tls-ticket-keys bind keyword
14639 - DOC: clearly state that the "show sess" output format is not fixed
14640 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
14641 - DOC: httplog does not support 'no'
14642 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
14643 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
14644 - BUG/MEDIUM: Consistently use 'check' in process_chk
14645 - MEDIUM: Add external check
14646 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
14647 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
14648 - MEDIUM: Remove connect_chk
14649 - MEDIUM: Refactor init_check and move to checks.c
14650 - MEDIUM: Add free_check() helper
14651 - MEDIUM: Move proto and addr fields struct check
14652 - MEDIUM: Attach tcpcheck_rules to check
14653 - MEDIUM: Add parsing of mailers section
14654 - MEDIUM: Allow configuration of email alerts
14655 - MEDIUM: Support sending email alerts
14656 - DOC: Document email alerts
14657 - MINOR: Remove trailing '.' from email alert messages
14658 - MEDIUM: Allow suppression of email alerts by log level
14659 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
14660 - MINOR: deinit: fix memory leak
14661 - MINOR: http: export the function 'smp_fetch_base32'
14662 - BUG/MEDIUM: http: tarpit timeout is reset
14663 - MINOR: sample: add "json" converter
14664 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
14665 - MINOR: map/acl/dumpstats: remove the "Done." message
14666 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
14667 - BUG/MINOR: pattern: error message missing
14668 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
14669 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
14670 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
14671 - MEDIUM: task: call session analyzers if the task is woken by a message.
14672 - MEDIUM: protocol: automatically pick the proto associated to the connection.
14673 - MEDIUM: channel: wake up any request analyzer on response activity
14674 - MINOR: converters: add a "void *private" argument to converters
14675 - MINOR: converters: give the session pointer as converter argument
14676 - MINOR: sample: add private argument to the struct sample_fetch
14677 - MINOR: global: export function and permits to not resolve DNS names
14678 - MINOR: sample: add function for browsing samples.
14679 - MINOR: global: export many symbols.
14680 - MINOR: includes: fix a lot of missing or useless includes
14681 - MEDIUM: tcp: add register keyword system.
14682 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
14683 - MEDIUM: http: change the code returned by the response processing rule functions
14684 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
14685 - MINOR: channel: functions to get data from a buffer without copy
14686 - MEDIUM: lua: lua integration in the build and init system.
14687 - MINOR: lua: add ease functions
14688 - MINOR: lua: add runtime execution context
14689 - MEDIUM: lua: "com" signals
14690 - MINOR: lua: add the configuration directive "lua-load"
14691 - MINOR: lua: core: create "core" class and object
14692 - MINOR: lua: post initialisation bindings
14693 - MEDIUM: lua: add coroutine as tasks.
14694 - MINOR: lua: add sample and args type converters
14695 - MINOR: lua: txn: create class TXN associated with the transaction.
14696 - MINOR: lua: add shared context in the lua stack
14697 - MINOR: lua: txn: import existing sample-fetches in the class TXN
14698 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
14699 - MINOR: lua: register and execute sample-fetches in LUA
14700 - MINOR: lua: register and execute converters in LUA
14701 - MINOR: lua: add bindings for tcp and http actions
14702 - MINOR: lua: core: add sleep functions
14703 - MEDIUM: lua: socket: add "socket" class for TCP I/O
14704 - MINOR: lua: core: pattern and acl manipulation
14705 - MINOR: lua: channel: add "channel" class
14706 - MINOR: lua: txn: object "txn" provides two objects "channel"
14707 - MINOR: lua: core: can set the nice of the current task
14708 - MINOR: lua: core: can yield an execution stack
14709 - MINOR: lua: txn: add binding for closing the client connection.
14710 - MEDIUM: lua: Lua initialisation "on demand"
14711 - BUG/MAJOR: lua: send function fails and return bad bytes
14712 - MINOR: remove unused declaration.
14713 - MINOR: lua: remove some #define
14714 - MINOR: lua: use bitfield and macro in place of integer and enum
14715 - MINOR: lua: set skeleton for Lua execution expiration
14716 - MEDIUM: lua: each yielding function returns a wake up time.
14717 - MINOR: lua: adds "forced yield" flag
14718 - MEDIUM: lua: interrupt the Lua execution for running other process
14719 - MEDIUM: lua: change the sleep function core
14720 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
14721 - DOC: lua: Lua configuration documentation
14722 - MINOR: lua: add the struct session in the lua channel struct
14723 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
14724 - BUG/MEDIUM: lua: reset flags before resuming execution
14725 - BUG/MEDIUM: lua: fix infinite loop about channel
14726 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
14727 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
14728 - MEDIUM: lua: use the Lua-5.3 version of the library
14729 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
14730 - BUG/MEDIUM: lua: can't handle the response bytes
14731 - BUG/MEDIUM: lua: segfault with buffer_replace2
14732 - BUG/MINOR: lua: check buffers before initializing socket
14733 - BUG/MINOR: log: segfault if there are no proxy reference
14734 - BUG/MEDIUM: lua: sockets don't have buffer to write data
14735 - BUG/MEDIUM: lua: cannot connect socket
14736 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
14737 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
14738 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
14739 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
14740 - MINOR: replace the Core object by a simple model.
14741 - MEDIUM: lua: change the objects configuration
14742 - MEDIUM: lua: create a namespace for the fetches
14743 - MINOR: converters: add function to browse converters
14744 - MINOR: lua: wrapper for converters
14745 - MINOR: lua: replace function (req|get)_channel by a variable
14746 - MINOR: lua: fetches and converters can return an empty string in place of nil
14747 - DOC: lua api
14748 - BUG/MEDIUM: sample: fix random number upper-bound
14749 - BUG/MINOR: stats:Fix incorrect printf type.
14750 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
14751 - BUG/MINOR: logs: properly initialize and count log sockets
14752 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
14753 - BUG/MINOR: counters: do not untrack counters before logging
14754 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
14755 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
14756 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
14757 - BUILD: remove TODO from the spec file and add README
14758 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
14759 - MEDIUM: log: support a user-configurable max log line length
14760 - DOC: provide an example of how to use ssl_c_sha1
14761 - BUILD: checks: external checker needs signal.h
14762 - BUILD: checks: kill a minor warning on Solaris in external checks
14763 - BUILD: http: fix isdigit & isspace warnings on Solaris
14764 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
14765 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
14766 - MEDIUM: listener: implement a per-protocol pause() function
14767 - MEDIUM: listener: support rebinding during resume()
14768 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
14769 - DOC: explicitly mention the limits of abstract namespace sockets
14770 - DOC: minor fix on {sc,src}_kbytes_{in,out}
14771 - DOC: fix alphabetical sort of converters
14772 - MEDIUM: stick-table: implement lookup from a sample fetch
14773 - MEDIUM: stick-table: add new converters to fetch table data
14774 - MINOR: samples: add two converters for the date format
14775 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
14776 - DOC: remove references to CPU=native in the README
14777 - DOC: mention that "compression offload" is ignored in defaults section
14778 - DOC: mention that Squid correctly responds 400 to PPv2 header
14779 - BUILD: fix dependencies between config and compat.h
14780 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
14781 - MEDIUM: stick-table: make it easier to register extra data types
14782 - BUG/MINOR: http: base32+src should use the big endian version of base32
14783 - MINOR: sample: allow IP address to cast to binary
14784 - MINOR: sample: add new converters to hash input
14785 - MINOR: sample: allow integers to cast to binary
14786 - BUILD: report commit ID in git versions as well
14787 - CLEANUP: session: move the stick counters declarations to stick_table.h
14788 - MEDIUM: http: add the track-sc* actions to http-request rules
14789 - BUG/MEDIUM: connection: fix proxy v2 header again!
14790 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
14791 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
14792 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
14793 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
14794 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
14795 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
14796 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
14797 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
14798 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
14799 - MEDIUM: http: enable header manipulation for 101 responses
14800 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
14801 - MEDIUM: config: properly propagate process binding between proxies
14802 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
14803 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
14804 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
14805 - MEDIUM: config: report it when tcp-request rules are misplaced
14806 - DOC: indicate in the doc that track-sc* can wait if data are missing
14807 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
14808 - MEDIUM: systemd-wrapper: support multiple executable versions and names
14809 - BUG/MEDIUM: remove debugging code from systemd-wrapper
14810 - BUG/MEDIUM: http: adjust close mode when switching to backend
14811 - BUG/MINOR: config: don't propagate process binding on fatal errors.
14812 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
14813 - BUG/MINOR: tcp-check: report the correct failed step in the status
14814 - DOC: indicate that weight zero is reported as DRAIN
14815 - BUG/MEDIUM: config: avoid skipping disabled proxies
14816 - BUG/MINOR: config: do not accept more track-sc than configured
14817 - BUG/MEDIUM: backend: fix URI hash when a query string is present
14818 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
14819 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
14820 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
14821 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
14822 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
14823 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
14824 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
14825 - MEDIUM: ssl: add support for smaller SSL records
14826 - MINOR: session: release a few other pools when stopping
14827 - MINOR: task: release the task pool when stopping
14828 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
14829 - BUG/MAJOR: frontend: initialize capture pointers earlier
14830 - BUG/MINOR: stats: correctly set the request/response analysers
14831 - MAJOR: polling: centralize calls to I/O callbacks
14832 - DOC: fix typo in the body parser documentation for msg.sov
14833 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
14834 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
14835 - DEBUG: pools: apply poisonning on every allocated pool
14836 - BUG/MAJOR: sessions: unlink session from list on out of memory
14837 - BUG/MEDIUM: patterns: previous fix was incomplete
14838 - BUG/MEDIUM: payload: ensure that a request channel is available
14839 - BUG/MINOR: tcp-check: don't condition data polling on check type
14840 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
14841 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
14842 - BUG/MINOR: config: fix typo in condition when propagating process binding
14843 - BUG/MEDIUM: config: do not propagate processes between stopped processes
14844 - BUG/MAJOR: stream-int: properly check the memory allocation return
14845 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
14846 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
14847 - BUG/MEDIUM: compression: correctly report zlib_mem
14848 - CLEANUP: lists: remove dead code
14849 - CLEANUP: memory: remove dead code
14850 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
14851 - MINOR: memory: cut pool allocator in 3 layers
14852 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
14853 - MINOR: stream-int: retrieve session pointer from stream-int
14854 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
14855 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
14856 - MINOR: buffer: move buffer initialization after channel initialization
14857 - MINOR: buffer: only use b_free to release buffers
14858 - MEDIUM: buffer: always assign a dummy empty buffer to channels
14859 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
14860 - MEDIUM: channel: do not report full when buf_empty is present on a channel
14861 - MINOR: session: group buffer allocations together
14862 - MINOR: buffer: implement b_alloc_fast()
14863 - MEDIUM: buffer: implement b_alloc_margin()
14864 - MEDIUM: session: implement a basic atomic buffer allocator
14865 - MAJOR: session: implement a wait-queue for sessions who need a buffer
14866 - MAJOR: session: only allocate buffers when needed
14867 - MINOR: stats: report a "waiting" flags for sessions
14868 - MAJOR: session: only wake up as many sessions as available buffers permit
14869 - MINOR: config: implement global setting tune.buffers.reserve
14870 - MINOR: config: implement global setting tune.buffers.limit
14871 - MEDIUM: channel: implement a zero-copy buffer transfer
14872 - MEDIUM: stream-int: support splicing from applets
14873 - OPTIM: stream-int: try to send pending spliced data
14874 - CLEANUP: session: remove session_from_task()
14875 - DOC: add missing entry for log-format and clarify the text
14876 - MINOR: logs: add a new per-proxy "log-tag" directive
14877 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
14878 - MINOR: config: extend the default max hostname length to 64 and beyond
14879 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
14880 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
14881 - MINOR: channel: add channel_in_transit()
14882 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
14883 - MEDIUM: channel: make bi_avail() use channel_in_transit()
14884 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
14885 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
14886 - MINOR: channel: rename channel_full() to !channel_may_recv()
14887 - MINOR: channel: rename buffer_reserved() to channel_reserved()
14888 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
14889 - MINOR: channel: rename bi_avail() to channel_recv_max()
14890 - MINOR: channel: rename bi_erase() to channel_truncate()
14891 - BUG/MAJOR: log: don't try to emit a log if no logger is set
14892 - MINOR: tools: add new round_2dig() function to round integers
14893 - MINOR: global: always export some SSL-specific metrics
14894 - MINOR: global: report information about the cost of SSL connections
14895 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
14896 - MINOR: http: add a new fetch "query" to extract the request's query string
14897 - MINOR: hash: add new function hash_crc32
14898 - MINOR: samples: provide a "crc32" converter
14899 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
14900 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
14901 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
14902 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
14903 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
14904 - MINOR: args: add type-specific flags for each arg in a list
14905 - MINOR: args: implement a new arg type for regex : ARGT_REG
14906 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
14907 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
14908 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
14909 - MEDIUM: http: implement http-request set-{method,path,query,uri}
14910 - DOC: fix missing closing brackend on regsub
14911 - MEDIUM: samples: provide basic arithmetic and bitwise operators
14912 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
14913 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
14914 - BUG/MINOR: http: abort request processing on filter failure
14915 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
14916 - MINOR: ssl/server: add the "no-ssl-reuse" server option
14917 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
14918 - MINOR: http: add a new function to iterate over each header line
14919 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
14920 - MEDIUM: task: always ensure that the run queue is consistent
14921 - BUILD: Makefile: add -Wdeclaration-after-statement
14922 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
14923 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
14924 - MEDIUM: protocol: use a family array to index the protocol handlers
14925 - BUILD: lua: cleanup many mixed occurrences declarations & code
14926 - BUG/MEDIUM: task: fix recently introduced scheduler skew
14927 - BUG/MINOR: lua: report the correct function name in an error message
14928 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
14929 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
14930 - MINOR: lua: convert IP addresses to type string
14931 - CLEANUP: lua: use the same function names in C and Lua
14932 - REORG/MAJOR: move session's req and resp channels back into the session
14933 - CLEANUP: remove now unused channel pool
14934 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
14935 - MEDIUM: stream-int: add a flag indicating which side the SI is on
14936 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
14937 - MEDIUM: stream-interface: remove now unused pointers to channels
14938 - MEDIUM: stream-int: make si_sess() use the stream int's side
14939 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
14940 - MEDIUM: stream-int: remove any reference to the owner
14941 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
14942 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
14943 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
14944 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
14945 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
14946 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
14947 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
14948 - CLEANUP: session: use local variables to access channels / stream ints
14949 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
14950 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
14951 - CLEANUP: stream-int: limit usage of si_ic/si_oc
14952 - CLEANUP: lua: limit usage of si_ic/si_oc
14953 - MINOR: channel: add chn_sess() helper to retrieve session from channel
14954 - MEDIUM: session: simplify receive buffer allocator to only use the channel
14955 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
14956 - CLEANUP: lua: remove the session pointer from hlua_channel
14957 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
14958 - MEDIUM: lua: remove struct hlua_channel
14959 - MEDIUM: lua: remove hlua_sample_fetch
14960
Willy Tarreau15480d72014-06-19 21:10:58 +0200149612014/06/19 : 1.6-dev0
14962 - exact copy of 1.5.0
14963
Willy Tarreau9229f122014-06-19 21:01:06 +0200149642014/06/19 : 1.5.0
14965 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
14966 - MEDIUM: ssl: basic OCSP stapling support.
14967 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
14968 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
14969 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
14970 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
14971 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
14972 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
14973 - MEDIUM: Break out check establishment into connect_chk()
14974 - MEDIUM: Add port_to_str helper
14975 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
14976 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
14977 - MINOR: regex: fix a little configuration memory leak.
14978 - MINOR: regex: Create JIT compatible function that return match strings
14979 - MEDIUM: regex: replace all standard regex function by own functions
14980 - MEDIUM: regex: Remove null terminated strings.
14981 - MINOR: regex: Use native PCRE API.
14982 - MINOR: missing regex.h include
14983 - DOC: Add Exim as Proxy Protocol implementer.
14984 - BUILD: don't use type "uint" which is not portable
14985 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
14986 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
14987 - CLEANUP: http: don't clear CF_READ_NOEXP twice
14988 - DOC: fix proxy protocol v2 decoder example
14989 - DOC: fix remaining occurrences of "pattern extraction"
14990 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
14991 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
14992 - MINOR: sample: improve sample_fetch_string() to report partial contents
14993 - MINOR: capture: extend the captures to support non-header keys
14994 - MINOR: tcp: prepare support for the "capture" action
14995 - MEDIUM: tcp: add a new tcp-request capture directive
14996 - MEDIUM: session: allow shorter retry delay if timeout connect is small
14997 - MEDIUM: session: don't apply the retry delay when redispatching
14998 - MEDIUM: session: redispatch earlier when possible
14999 - MINOR: config: warn when tcp-check rules are used without option tcp-check
15000 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
15001 - DOC: proxy protocol example parser was still wrong
15002 - DOC: minor updates to the proxy protocol doc
15003 - CLEANUP: connection: merge proxy proto v2 header and address block
15004 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
15005 - MINOR: tools: add new functions to quote-encode strings
15006 - DOC: clarify the CSV format
15007 - MEDIUM: stats: report the last check and last agent's output on the CSV status
15008 - MINOR: freq_ctr: introduce a new averaging method
15009 - MEDIUM: session: maintain per-backend and per-server time statistics
15010 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
15011 - BUG/MINOR: http: fix typos in previous patch
15012 - DOC: remove the ultra-obsolete TODO file
15013 - DOC: update roadmap
15014 - DOC: minor updates to the README
15015 - DOC: mention the maxconn limitations with the select poller
15016 - DOC: commit a few old design thoughts files
15017
Willy Tarreau2e858402014-05-28 17:50:53 +0200150182014/05/28 : 1.5-dev26
15019 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
15020 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
15021 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
15022 - MINOR: fix a few memory usage errors
15023 - CONTRIB: halog: Filter input lines by date and time through timestamp
15024 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
15025 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
15026 - MINOR: acl: set "str" as default match for strings
15027 - DOC: Add some precisions about acl default matching method
15028 - MEDIUM: acl: strenghten the option parser to report invalid options
15029 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
15030 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
15031 - MINOR: stats: improve alignment of color codes to save one line of header
15032 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
15033 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
15034 - MINOR: server: use functions to detect state changes and to update them
15035 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
15036 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
15037 - BUG/MAJOR: config: don't free valid regex memory
15038 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
15039 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
15040 - MEDIUM: proxy: make timeout parser a bit stricter
15041 - REORG/MEDIUM: server: split server state and flags in two different variables
15042 - REORG/MEDIUM: server: move the maintenance bits out of the server state
15043 - MAJOR: server: use states instead of flags to store the server state
15044 - REORG: checks: put the functions in the appropriate files !
15045 - MEDIUM: server: properly support and propagate the maintenance status
15046 - MEDIUM: server: allow multi-level server tracking
15047 - CLEANUP: checks: rename the server_status_printf function
15048 - MEDIUM: checks: simplify server up/down/nolb transitions
15049 - MAJOR: checks: move health checks changes to set_server_check_status()
15050 - MINOR: server: make the status reporting function support a reason
15051 - MINOR: checks: simplify health check reporting functions
15052 - MINOR: server: implement srv_set_stopped()
15053 - MINOR: server: implement srv_set_running()
15054 - MINOR: server: implement srv_set_stopping()
15055 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
15056 - MEDIUM: checks: simplify success notification using srv_set_running()
15057 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
15058 - MEDIUM: stats: report a server's own state instead of the tracked one's
15059 - MINOR: server: make use of srv_is_usable() instead of checking eweight
15060 - MAJOR: checks: add support for a new "drain" administrative mode
15061 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
15062 - MEDIUM: stats: introduce new actions to simplify admin status management
15063 - MINOR: cli: introduce a new "set server" command
15064 - MINOR: stats: report a distinct output for DOWN caused by agent
15065 - MINOR: checks: support specific check reporting for the agent
15066 - MINOR: checks: support a neutral check result
15067 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
15068 - MEDIUM: cli: add support for enabling/disabling health checks.
15069 - MEDIUM: stats: report down caused by agent prior to reporting up
15070 - MAJOR: agent: rework the response processing and support additional actions
15071 - MINOR: stats: improve the stats web page to support more actions
15072 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
15073 - DOC: document the workarouds for Google Chrome's bogus pre-connect
15074 - MINOR: stats: report SSL key computations per second
15075 - MINOR: stats: add counters for SSL cache lookups and misses
15076
Willy Tarreaua3393952014-05-10 15:16:43 +0200150772014/05/10 : 1.5-dev25
15078 - MEDIUM: connection: Implement and extented PROXY Protocol V2
15079 - MINOR: ssl: clean unused ACLs declarations
15080 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
15081 - MINOR: ssl: merge client's and frontend's certificate functions.
15082 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
15083 - MINOR: ssl: adds sample converter base64 for binary type.
15084 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
15085 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
15086 - MAJOR: ssl: Change default locks on ssl session cache.
15087 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
15088 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
15089 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
15090 - BUG/MEDIUM: patterns: last fix was still not enough
15091 - MINOR: http: export the smp_fetch_cookie function
15092 - MINOR: http: generic pointer to rule argument
15093 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
15094 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
15095 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
15096 - BUG/MINOR: http: log 407 in case of proxy auth
15097 - MINOR: http: rely on the message body parser to send 100-continue
15098 - MEDIUM: http: move reqadd after execution of http_request redirect
15099 - MEDIUM: http: jump to dedicated labels after http-request processing
15100 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
15101 - BUG/MINOR: http: block rules forgot to increment the session's request counter
15102 - MEDIUM: http: move Connection header processing earlier
15103 - MEDIUM: http: remove even more of the spaghetti in the request path
15104 - MINOR: http: silently support the "block" action for http-request
15105 - CLEANUP: proxy: rename "block_cond" to "block_rules"
15106 - MEDIUM: http: emulate "block" rules using "http-request" rules
15107 - MINOR: http: remove the now unused loop over "block" rules
15108 - MEDIUM: http: factorize the "auth" action of http-request and stats
15109 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
15110 - MINOR: config: add minimum support for emitting warnings only once
15111 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
15112 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
15113 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
15114 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
15115 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
15116 - BUILD: config: remove a warning with clang
15117 - BUG/MAJOR: http: connection setup may stall on balance url_param
15118 - BUG/MEDIUM: http/session: disable client-side expiration only after body
15119 - BUG/MEDIUM: http: correctly report request body timeouts
15120 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
15121 - MEDIUM: listener: make the accept function more robust against pauses
15122 - BUILD: syscalls: remove improper inline statement in front of syscalls
15123 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
15124 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
15125 - DOC: add some explanation on the shared cache build options in the readme.
15126 - MEDIUM: proxy: only adjust the backend's bind-process when already set
15127 - MEDIUM: config: limit nbproc to the machine's word size
15128 - MEDIUM: config: check the bind-process settings according to nbproc
15129 - MEDIUM: listener: parse the new "process" bind keyword
15130 - MEDIUM: listener: inherit the process mask from the proxy
15131 - MAJOR: listener: only start listeners bound to the same processes
15132 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
15133 - CLEANUP: config: set the maxaccept value for peers listeners earlier
15134 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
15135 - BUG/MINOR: checks: correctly configure the address family and protocol
15136 - MINOR: tools: split is_addr() and is_inet_addr()
15137 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
15138 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
15139 - MEDIUM: checks: only complain about the missing port when the check uses TCP
15140 - MEDIUM: unix: implement support for Linux abstract namespace sockets
15141 - DOC: map_beg was missing from the table of map_* converters
15142 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
15143 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
15144 - BUILD: remove the obsolete BSD and OSX makefiles
15145 - MEDIUM: unix: avoid a double connect probe when no data are sent
15146 - DOC: stop referencing the slow git repository in the README
15147 - BUILD: only build the systemd wrapper on Linux 2.6 and above
15148 - DOC: update roadmap with completed tasks
15149 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
15150
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200151512014/04/26 : 1.5-dev24
15152 - MINOR: pattern: find element in a reference
15153 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
15154 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
15155 - DOC: Full section dedicated to the converters
15156 - MEDIUM: http: register http-request and http-response keywords
15157 - BUG/MINOR: compression: correctly report incoming byte count
15158 - BUG/MINOR: http: don't report server aborts as client aborts
15159 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
15160 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
15161 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
15162 - BUG/MAJOR: http: fix timeouts during data forwarding
15163 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
15164 - MEDIUM: http: move skipping of 100-continue earlier
15165 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
15166 - CLEANUP: general: get rid of all old occurrences of "session *t"
15167 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
15168 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
15169 - MEDIUM: http: enable analysers to have keep-alive on stats
15170 - REORG: http: move HTTP Connection response header parsing earlier
15171 - MINOR: stats: always emit HTTP/1.1 in responses
15172 - MINOR: http: add capture.req.ver and capture.res.ver
15173 - MINOR: checks: add a new global max-spread-checks directive
15174 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
15175 - MINOR: http: implement the max-keep-alive-queue setting
15176 - DOC: fix alphabetic order of tcp-check
15177 - MINOR: connection: add a new error code for SSL with heartbeat
15178 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
15179 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
15180 - BUILD: http: remove a warning on strndup
15181 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
15182 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
15183 - MINOR: ssl: finally catch the heartbeats missing the padding
15184
Willy Tarreau8317b282014-04-23 01:49:41 +0200151852014/04/23 : 1.5-dev23
15186 - BUG/MINOR: reject malformed HTTP/0.9 requests
15187 - MINOR: systemd wrapper: re-execute on SIGUSR2
15188 - MINOR: systemd wrapper: improve logging
15189 - MINOR: systemd wrapper: propagate exit status
15190 - BUG/MINOR: tcpcheck connect wrong behavior
15191 - MEDIUM: proxy: support use_backend with dynamic names
15192 - MINOR: stats: Enhancement to stats page to provide information of last session time.
15193 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
15194 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
15195 - DOC: fix fetching samples syntax
15196 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
15197 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
15198 - DOC: fix typo
15199 - CLEANUP: code style: use tabs to indent codes instead of spaces
15200 - DOC: fix a few config typos.
15201 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
15202 - DOC: lowercase format string in unique-id
15203 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
15204 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
15205 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
15206 - BUG/MINOR: build: handle whitespaces in wc -l output
15207 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
15208 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
15209 - BUG/MEDIUM: map: The map parser includes blank lines.
15210 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
15211 - MINOR: standard: add function "encode_chunk"
15212 - BUG/MINOR: http: fix encoding of samples used in http headers
15213 - MINOR: sample: add hex converter
15214 - MEDIUM: sample: change the behavior of the bin2str cast
15215 - MAJOR: auth: Change the internal authentication system.
15216 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
15217 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
15218 - MEDIUM: pattern: Change the prototype of the function pattern_register().
15219 - CONTRIB: ip6range: add a network IPv6 range to mask converter
15220 - MINOR: pattern: separe list element from the data part.
15221 - MEDIUM: pattern: add indexation function.
15222 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
15223 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
15224 - MINOR: sample: dont call the sample cast function "c_none"
15225 - MINOR: standard: Add function for converting cidr to network mask.
15226 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
15227 - MEDIUM: sample/http_proto: Add new type called method
15228 - MINOR: dumpstats: Group map inline help
15229 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
15230 - MINOR: dumpstats: change map inline sentences
15231 - MINOR: dumpstats: change the "get map" display management
15232 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
15233 - MEDIUM: pattern: The match function browse itself the list or the tree.
15234 - MEDIUM: pattern: Index IPv6 addresses in a tree.
15235 - MEDIUM: pattern: add delete functions
15236 - MEDIUM: pattern: add prune function
15237 - MEDIUM: pattern: add sample lookup function.
15238 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
15239 - MINOR: map/pattern: The sample parser is stored in the pattern
15240 - MAJOR: pattern/map: Extends the map edition system in the patterns
15241 - MEDIUM: pattern: merge same pattern
15242 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
15243 - MINOR: pattern: Each pattern is identified by unique id.
15244 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
15245 - MINOR: pattern: The function "pattern_register()" is no longer used.
15246 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
15247 - MINOR: pattern: store configuration reference for each acl or map pattern.
15248 - MINOR: pattern: Each pattern expression element store the reference struct.
15249 - MINOR: dumpstats: display the reference for th key/pattern and value.
15250 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
15251 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
15252 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
15253 - MINOR: pattern/map/acl: Centralization of the file parsers
15254 - MINOR: pattern: Check if the file reference is not used with acl and map
15255 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
15256 - MEDIUM: dumpstats: Display error message during add of values.
15257 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
15258 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
15259 - MINOR: cli: Block the usage of the command "acl add" in many cases.
15260 - MINOR: doc: Update the documentation about the map and acl
15261 - MINOR: pattern: index duplicates
15262 - MINOR: configuration: File and line propagation
15263 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
15264 - MINOR: standard: Disable ip resolution during the runtime
15265 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
15266 - MINOR: pattern: forbid dns resolutions
15267 - DOC: document "get map" / "get acl" on the CLI
15268 - MEDIUM: acl: Change the acl register struct
15269 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
15270 - DOC: pattern: pattern organisation schematics
15271 - MINOR: pattern/cli: Update used terms in documentation and cli
15272 - MINOR: cli: remove information about acl or map owner.
15273 - MINOR: session: don't always assume there's a listener
15274 - MINOR: pattern: Add function to prune and reload pattern list.
15275 - MINOR: standard: Add ipv6 support in the function url2sa().
15276 - MEDIUM: config: Dynamic sections.
15277 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
15278 - MINOR: http: Add the "language" converter to for use with accept-language
15279 - BUG/MINOR: log: Don't dump empty unique-id
15280 - BUG/MAJOR: session: fix a possible crash with src_tracked
15281 - DOC: Update "language" documentation
15282 - MINOR: http: add the function "del-header" to the directives http-request and http-response
15283 - DOC: add some information on capture.(req|res).hdr
15284 - MINOR: http: capture.req.method and capture.req.uri
15285 - MINOR: http: optimize capture.req.method and capture.req.uri
15286 - MINOR: session: clean up the connection free code
15287 - BUG/MEDIUM: checks: immediately report a connection success
15288 - MEDIUM: connection: don't use real send() flags in snd_buf()
15289 - OPTIM: ssl: implement dynamic record size adjustment
15290 - MINOR: stats: report exact last session time in backend too
15291 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
15292 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
15293 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
15294 - MINOR: channel: add the date of last read in the channel
15295 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
15296 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
15297 - MINOR: config: make the stream interface idle timer user-configurable
15298 - MINOR: config: add global directives to set default SSL ciphers
15299 - MINOR: sample: add a rand() sample fetch to return a sample.
15300 - BUG/MEDIUM: config: immediately abort if peers section has no name
15301 - BUG/MINOR: ssl: fix syntax in config error message
15302 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
15303 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
15304 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
15305 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
15306 - MEDIUM: acl: fix pattern type for payload / payload_lv
15307 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
15308 - BUG/MEDIUM: compression: fix the output type of the compressor name
15309 - BUG/MEDIUM: http: don't start to forward request data before the connect
15310 - MINOR: http: release compression context only in http_end_txn()
15311 - MINOR: protect ebimtree/ebistree against multiple inclusions
15312 - MEDIUM: proxy: create a tree to store proxies by name
15313 - MEDIUM: proxy: make findproxy() use trees to look up proxies
15314 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
15315 - MEDIUM: stick-table: lookup table names using trees.
15316 - MEDIUM: config: faster lookup for duplicated proxy name
15317 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
15318 - MINOR: sample: move smp_to_type to sample.c
15319 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
15320 - REORG: cfgparse: move server keyword parsing to server.c
15321 - BUILD: adjust makefile for AIX 5.1
15322 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
15323 - CLEANUP: pattern: move array definitions to proto/ and not types/
15324 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
15325 - BUILD: ssl: previous patch failed
15326 - BUILD/MEDIUM: standard: get rid of the last strcpy()
15327 - BUILD/MEDIUM: standard: get rid of sprintf()
15328 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
15329 - BUILD/MEDIUM: checks: get rid of sprintf()
15330 - BUILD/MEDIUM: http: remove calls to sprintf()
15331 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
15332 - BUILD/MINOR: ssl: remove one call to sprintf()
15333 - MEDIUM: http: don't reject anymore message bodies not containing the url param
15334 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
15335 - CLEANUP: http: rename http_process_request_body()
15336 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
15337 - MINOR: http: make msg->eol carry the last CRLF length
15338 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
15339 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
15340 - MAJOR: http: don't update msg->sov anymore while processing the body
15341 - MINOR: http: add a small helper to compute the amount of body bytes present
15342 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
15343 - MINOR: http: add a small helper to compute how far to rewind to find URI
15344 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
15345 - MAJOR: http: reset msg->sov after headers are forwarded
15346 - MEDIUM: http: forward headers again while waiting for connection to complete
15347 - BUG/MINOR: http: deinitialize compression after a parsing error
15348 - BUG/MINOR: http: deinitialize compression after a compression error
15349 - MEDIUM: http: headers must be forwarded even if data was already inspected
15350 - MAJOR: http: re-enable compression on chunked encoding
15351 - MAJOR: http/compression: fix chunked-encoded response processing
15352 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
15353 - MEDIUM: http: start to centralize the forwarding code
15354 - MINOR: http: further cleanups of response forwarding function
15355 - MEDIUM: http: only allocate the temporary compression buffer when needed
15356 - MAJOR: http: centralize data forwarding in the request path
15357 - CLEANUP: http: document the response forwarding states
15358 - CLEANUP: http: remove all calls to http_silent_debug()
15359 - DOC: internal: add some reminders about HTTP parsing and pointer states
15360 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
15361 - BUG/MINOR: stats: last session was not always set
15362 - DOC: add pointer to the Cyril's HTML doc in the README
15363 - MEDIUM: config: relax use_backend check to make the condition optional
15364 - MEDIUM: config: report misplaced http-request rules
15365 - MEDIUM: config: report misplaced use-server rules
15366 - DOC: update roadmap with what was done.
15367
Willy Tarreau1a34d572014-02-03 00:41:29 +0100153682014/02/03 : 1.5-dev22
15369 - MEDIUM: tcp-check new feature: connect
15370 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
15371 - MINOR: ssl: handshake optim for long certificate chains.
15372 - BUG/MINOR: pattern: pattern comparison executed twice
15373 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
15374 - BUG/MEDIUM: pattern: Segfault in binary parser
15375 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
15376 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
15377 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
15378 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
15379 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
15380 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
15381 - MINOR: doc: Bad cli function name.
15382 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
15383 - BUILD: last release inadvertently prepended a "+" in front of the date
15384 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
15385 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
15386 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
15387 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
15388 - MINOR: http: try to stick to same server after status 401/407
15389 - BUG/MINOR: http: always disable compression on HTTP/1.0
15390 - OPTIM: poll: restore polling after a poll/stop/want sequence
15391 - OPTIM: http: don't stop polling for read on the client side after a request
15392 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
15393 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
15394 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
15395 - BUG/MINOR: stream-int: do not clear the owner upon unregister
15396 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
15397 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
15398 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
15399 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
15400 - OPTIM: session: set the READ_DONTWAIT flag when connecting
15401 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
15402 - MINOR: session: factor out the connect time measurement
15403 - MEDIUM: session: prepare to support earlier transitions to the established state
15404 - MEDIUM: stream-int: make si_connect() return an established state when possible
15405 - MINOR: checks: use an inline function for health_adjust()
15406 - OPTIM: session: put unlikely() around the freewheeling code
15407 - MEDIUM: config: report a warning when multiple servers have the same name
15408 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
15409 - BUILD/MINOR: listener: remove a glibc warning on accept4()
15410 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
15411 - BUILD: listener: fix recent accept4() again
15412 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
15413 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
15414 - MEDIUM: listener: fix polling management in the accept loop
15415 - MINOR: protocol: improve the proto->drain() API
15416 - MINOR: connection: add a new conn_drain() function
15417 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
15418 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
15419 - MINOR: connection: add more error codes to report connection errors
15420 - MEDIUM: tcp: report connection error at the connection level
15421 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
15422 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
15423 - DOC: fix misleading information about SIGQUIT
15424 - BUG/MAJOR: fix freezes during compression
15425 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
15426 - BUILD: fix VERDATE exclusion regex
15427 - CLEANUP: polling: rename "spec_e" to "state"
15428 - DOC: add a diagram showing polling state transitions
15429 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
15430 - REORG: polling: rename "fd_spec" to "fd_cache"
15431 - REORG: polling: rename the cache allocation functions
15432 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
15433 - MAJOR: polling: rework the whole polling system
15434 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
15435 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
15436 - MEDIUM: connection: add check for readiness in I/O handlers
15437 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
15438 - MINOR: stream-interface: no need to call fd_stop_both() on error
15439 - MEDIUM: connection: no need to recheck FD state
15440 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
15441 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
15442 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
15443 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
15444 - MEDIUM: polling: centralize polled events processing
15445 - MINOR: polling: create function fd_compute_new_polled_status()
15446 - MINOR: cli: add more information to the "show info" output
15447 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
15448 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
15449 - REORG: stats: move the stats socket states to dumpstats.c
15450 - MINOR: cli: add the new "show pools" command
15451 - BUG/MEDIUM: counters: flush content counters after each request
15452 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
15453 - MINOR: tools: add very basic support for composite pointers
15454 - MEDIUM: counters: stop relying on session flags at all
15455 - BUG/MINOR: cli: fix missing break in command line parser
15456 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
15457 - MAJOR: http: update connection mode configuration
15458 - MEDIUM: http: make keep-alive + httpclose be passive mode
15459 - MAJOR: http: switch to keep-alive mode by default
15460 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
15461 - BUG/MEDIUM: listener: improve detection of non-working accept4()
15462 - BUILD: listener: add fcntl.h and unistd.h
15463 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
15464
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100154652013/12/17 : 1.5-dev21
15466 - MINOR: stats: don't use a monospace font to report numbers
15467 - MINOR: session: remove debugging code
15468 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
15469 - MEDIUM: http: make option http_proxy automatically rewrite the URL
15470 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
15471 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
15472 - BUG/MEDIUM: checks: servers must not start in slowstart mode
15473 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
15474 - MEDIUM: stream-int: implement a very simplistic idle connection manager
15475 - DOC: update the ROADMAP file
15476
Willy Tarreau11f64d62013-12-16 02:32:37 +0100154772013/12/16 : 1.5-dev20
15478 - DOC: add missing options to the manpage
15479 - DOC: add manpage references to all system calls
15480 - DOC: update manpage reference to haproxy-en.txt
15481 - DOC: remove -s and -l options from the manpage
15482 - DOC: missing information for the "description" keyword
15483 - DOC: missing http-send-name-header keyword in keyword table
15484 - MINOR: tools: function my_memmem() to lookup binary contents
15485 - MEDIUM: checks: add send/expect tcp based check
15486 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
15487 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
15488 - DOC: Documentation for hashing function, with test results.
15489 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
15490 - BUILD: ssl: compilation issue with openssl v0.9.6.
15491 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
15492 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
15493 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
15494 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
15495 - CLEANUP: session: remove event_accept() which was not used anymore
15496 - BUG/MINOR: deinit: free fdinfo while doing cleanup
15497 - DOC: minor typo fix in documentation
15498 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
15499 - BUG/MINOR: use the same check condition for server as other algorithms
15500 - DOC: fix typo in comments
15501 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
15502 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
15503 - MINOR: buffer: align the last output line of buffer_dump()
15504 - MINOR: buffer: align the last output line if there are less than 8 characters left
15505 - DOC: stick-table: modify the description
15506 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
15507 - CLEANUP: code style: use tabs to indent codes
15508 - DOC: checkcache: block responses with cacheable cookies
15509 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
15510 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
15511 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
15512 - LOW: systemd-wrapper: Write debug information to stdout
15513 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
15514 - MEDIUM: http: add IPv6 support for "set-tos"
15515 - DOC: ssl: update build instructions to use new SSL_* variables
15516 - BUILD/MINOR: systemd: fix compiler warning about unused result
15517 - url32+src - like base32+src but whole url including parameters
15518 - BUG/MINOR: fix forcing fastinter in "on-error"
15519 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
15520 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
15521 - MEDIUM: Split up struct server's check element
15522 - MEDIUM: Move result element to struct check
15523 - MEDIUM: Paramatise functions over the check of a server
15524 - MEDIUM: cfgparse: Factor out check initialisation
15525 - MEDIUM: Add state to struct check
15526 - MEDIUM: Move health element to struct check
15527 - MEDIUM: Add helper for task creation for checks
15528 - MEDIUM: Add helper function for failed checks
15529 - MEDIUM: Log agent fail, stopped or down as info
15530 - MEDIUM: Remove option lb-agent-chk
15531 - MEDIUM: checks: Add supplementary agent checks
15532 - MEDIUM: Do not mark a server as down if the agent is unavailable
15533 - MEDIUM: Set rise and fall of agent checks to 1
15534 - MEDIUM: Add enable and disable agent unix socket commands
15535 - MEDIUM: Add DRAIN state and report it on the stats page
15536 - BUILD/MINOR: missing header file
15537 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
15538 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
15539 - MINOR: http: some exported functions were not in the header file
15540 - MINOR: http: change url_decode to return the size of the decoded string.
15541 - BUILD/MINOR: missing header file
15542 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
15543 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
15544 - MINOR: sample: export the generic sample conversion parser
15545 - MINOR: sample: export sample_casts
15546 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
15547 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
15548 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
15549 - MINOR: tools: Add a function to convert buffer to an ipv6 address
15550 - MINOR: acl: export acl arrays
15551 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
15552 - MINOR: acl: Extract the pattern matching function
15553 - MINOR: sample: Define new struct sample_storage
15554 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
15555 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
15556 - MEDIUM: pattern: create pattern expression
15557 - MEDIUM: pattern: rename "acl" prefix to "pat"
15558 - MEDIUM: sample: let the cast functions set their output type
15559 - MINOR: sample: add a private field to the struct sample_conv
15560 - MINOR: map: Define map types
15561 - MEDIUM: sample: add the "map" converter
15562 - MEDIUM: http: The redirect strings follows the log format rules.
15563 - BUG/MINOR: acl: acl parser does not recognize empty converter list
15564 - BUG/MINOR: map: The map list was declared in the map.h file
15565 - MINOR: map: Cleanup the initialisation of map descriptors.
15566 - MEDIUM: map: merge identical maps
15567 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
15568 - BUG/MEDIUM: map: Bad map file parser
15569 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
15570 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
15571 - MINOR: map: export map_get_reference() function
15572 - MINOR: pattern: Each pattern sets the expected input type
15573 - MEDIUM: acl: Last patch change the output type
15574 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
15575 - MINOR: standard: The function parse_binary() can use preallocated buffer
15576 - MINOR: regex: Change the struct containing regex
15577 - MINOR: regex: Copy the original regex expression into string.
15578 - MINOR: pattern: add support for compiling patterns for lookups
15579 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
15580 - MINOR: map: export parse output sample functions
15581 - MINOR: pattern: add function to lookup a specific entry in pattern list
15582 - MINOR: pattern/map: Each pattern must free the associated sample
15583 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
15584 - MEDIUM: map: dynamic manipulation of maps
15585 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
15586 - BUG/MINOR: log: junk at the end of syslog packet
15587 - MINOR: Makefile: provide cscope rule
15588 - DOC: compression: chunk are not compressed anymore
15589 - MEDIUM: session: disable lingering on the server when the client aborts
15590 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
15591 - DOC: remove the comment saying that SSL certs are not checked on the server side
15592 - BUG: counters: third counter was not stored if others unset
15593 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
15594 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
15595 - BUG/MAJOR: http: sample prefetch code was not properly migrated
15596 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
15597 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
15598 - OPTIM: splicing: use splice() for the last block when relevant
15599 - MEDIUM: sample: handle comma-delimited converter list
15600 - MINOR: sample: fix sample_process handling of unstable data
15601 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
15602 - MINOR: sample: add a new "date" fetch to return the current date
15603 - MINOR: samples: add the http_date([<offset>]) sample converter.
15604 - DOC: minor improvements to the part on the stats socket.
15605 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
15606 - MINOR: payload: split smp_fetch_rdp_cookie()
15607 - MINOR: counters: factor out smp_fetch_sc*_tracked
15608 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
15609 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
15610 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
15611 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
15612 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
15613 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
15614 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
15615 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
15616 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
15617 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
15618 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
15619 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
15620 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
15621 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
15622 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
15623 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
15624 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
15625 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
15626 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
15627 - MINOR: session: make the number of stick counter entries more configurable
15628 - MEDIUM: counters: support passing the counter number as a fetch argument
15629 - MEDIUM: counters: support looking up a key in an alternate table
15630 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
15631 - MINOR: cli: make it possible to enter multiple values at once with "set table"
15632 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
15633 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
15634 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
15635 - MINOR: config: warn when a server with no specific port uses rdp-cookie
15636 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
15637 - DOC: add a mention about the limited chunk size
15638 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
15639 - MEDIUM: stick-tables: flush old entries upon soft-stop
15640 - MINOR: tcp: add new "close" action for tcp-response
15641 - MINOR: payload: provide the "res.len" fetch method
15642 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
15643 - MINOR: http: compute response time before processing headers
15644 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
15645 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
15646 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
15647 - BUG/MEDIUM: session: risk of crash on out of memory conditions
15648 - BUG/MINOR: peers: set the accept date in outgoing connections
15649 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
15650 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
15651 - MINOR: acl: add a warning when an ACL keyword is used without any value
15652 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
15653 - BUG/MINOR: acl: remove patterns from the tree before freeing them
15654 - MEDIUM: backend: add support for the wt6 hash
15655 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
15656 - OPTIM/MINOR: mark the source address as already known on accept()
15657 - BUG/MINOR: stats: don't count tarpitted connections twice
15658 - CLEANUP: http: homogenize processing of denied req counter
15659 - CLEANUP: http: merge error handling for req* and http-request *
15660 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
15661 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
15662 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
15663 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
15664 - MINOR: stats: report correct throttling percentage for servers in slowstart
15665 - OPTIM: connection: fold the error handling with handshake handling
15666 - MINOR: peers: accept to learn strings of different lengths
15667 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
15668 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
15669 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
15670 - BUG/MINOR: connection: fix typo in error message report
15671 - BUG/MINOR: backend: fix target address retrieval in transparent mode
15672 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
15673 - BUG/MINOR: log: fix log-format parsing errors
15674 - DOC: add some information about how to apply converters to samples
15675 - MINOR: acl/pattern: use types different from int to clarify who does what.
15676 - MINOR: pattern: import acl_find_match_name() into pattern.h
15677 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
15678 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
15679 - BUG/MINOR: http: usual deinit stuff in last commit
15680 - BUILD: log: silent a warning about isblank() with latest patches
15681 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
15682 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
15683 - BUG/MINOR: checks: don't consider errno and use conn->err_code
15684 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
15685 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
15686 - BUG/MINOR: tcp: check that no error is pending during a connect probe
15687 - BUG/MINOR: connection: check EINTR when sending a PROXY header
15688 - MEDIUM: connection: set the socket shutdown flags on socket errors
15689 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
15690 - MINOR: connection: clear errno prior to checking for errors
15691 - BUG/MINOR: checks: do not trust errno in write event before any syscall
15692 - MEDIUM: checks: centralize error reporting
15693 - OPTIM: checks: don't poll on recv when using plain TCP connects
15694 - OPTIM: checks: avoid setting SO_LINGER twice
15695 - MINOR: tools: add a generic binary hex string parser
15696 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
15697 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
15698 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
15699 - BUG/MINOR: acl: fix sample expression error reporting
15700 - BUG/MINOR: checks: tcp-check actions are enums, not flags
15701 - MEDIUM: checks: make tcp-check perform multiple send() at once
15702 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
15703 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
15704 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
15705 - CLEANUP: stream_interface: remove unused field err_loc
15706 - MEDIUM: stats: don't use conn->xprt_st anymore
15707 - MINOR: session: add a simple function to retrieve a session from a task
15708 - MEDIUM: stats: don't use conn->xprt_ctx anymore
15709 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
15710 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
15711 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
15712 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
15713 - MAJOR: stats: move the HTTP stats handling to its applet
15714 - MEDIUM: stats: move request argument processing to the final step
15715 - MEDIUM: session: detect applets from the session by using s->target
15716 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
15717 - MAJOR: session: pass applet return traffic through the response analysers
15718 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
15719 - MINOR: stream-int: make the shutr/shutw functions void
15720 - MINOR: obj: provide a safe and an unsafe access to pointed objects
15721 - MINOR: connection: add a field to store an object type
15722 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
15723 - MEDIUM: stream interface: move the peers' ptr into the applet context
15724 - MINOR: stream-interface: move the applet context to its own struct
15725 - MINOR: obj: introduce a new type appctx
15726 - MINOR: stream-int: rename ->applet to ->appctx
15727 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
15728 - MINOR: stream-int: add a new pointer to the end point
15729 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
15730 - MAJOR: stream interface: remove the ->release function pointer
15731 - MEDIUM: stream-int: make ->end point to the connection or the appctx
15732 - CLEANUP: stream-int: remove obsolete si_ctrl function
15733 - MAJOR: stream-int: stop using si->conn and use si->end instead
15734 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
15735 - MEDIUM: session: attach incoming connection to target on embryonic sessions
15736 - MINOR: connection: add conn_init() to (re)initialize a connection
15737 - MINOR: checks: call conn_init() to properly initialize the connection.
15738 - MINOR: peers: make use of conn_init() to initialize the connection
15739 - MINOR: session: use conn_init() to initialize the connections
15740 - MINOR: http: use conn_init() to reinitialize the server connection
15741 - MEDIUM: connection: replace conn_prepare with conn_assign
15742 - MINOR: get rid of si_takeover_conn()
15743 - MINOR: connection: add conn_new() / conn_free()
15744 - MAJOR: connection: add two new flags to indicate readiness of control/transport
15745 - MINOR: stream-interface: introduce si_reset() and si_set_state()
15746 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
15747 - MINOR: connection: replace conn_assign with conn_attach
15748 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
15749 - MAJOR: stream interface: dynamically allocate the outgoing connection
15750 - MEDIUM: connection: move the send_proxy offset to the connection
15751 - MINOR: connection: check for send_proxy during the connect(), not the SI
15752 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
15753 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
15754 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
15755 - MAJOR: stream-interface: dynamically allocate the applet context
15756 - MEDIUM: session: automatically register the applet designated by the target
15757 - MEDIUM: stats: delay appctx initialization
15758 - CLEANUP: peers: use less confusing state/status code names
15759 - MEDIUM: peers: delay appctx initialization
15760 - MINOR: stats: provide some appctx information in "show sess all"
15761 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
15762 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
15763 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
15764 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
15765 - DIET/MINOR: session: reduce the struct session size by 8 bytes
15766 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
15767 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
15768 - MINOR: http: switch the http state to an enum
15769 - MINOR: http: use an enum for the auth method in http_auth_data
15770 - DIET/MINOR: task: reduce struct task size by 8 bytes
15771 - MINOR: stream_interface: add reporting of ressouce allocation errors
15772 - MINOR: session: report lack of resources using the new stream-interface's error code
15773 - BUILD: simplify the date and version retrieval in the makefile
15774 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
15775 - BUILD: use format tags in VERDATE and SUBVERS files
15776 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
15777 - CLEANUP: check: server port is unsigned
15778 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
15779 - MINOR: tools: buf2ip6 must not modify output on failure
15780 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
15781 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
15782 - MINOR: arg: improve wording on error reporting
15783 - BUG/MEDIUM: sample: simplify and fix the argument parsing
15784 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
15785 - MEDIUM: acl: fix the initialization order of the ACL expression
15786 - CLEANUP: acl: remove useless blind copy-paste from sample converters
15787 - TESTS: add regression tests for ACL and sample expression parsers
15788 - BUILD: time: adapt the type of TV_ETERNITY to the local system
15789 - MINOR: chunks: allocate the trash chunks before parsing the config
15790 - BUILD: definitely silence some stupid GCC warnings
15791 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
15792 - MINOR: checks: improve handling of the servers tracking chain
15793 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
15794 - MINOR: checks: use an enum instead of flags to report a check result
15795 - MINOR: checks: rename the state flags
15796 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
15797 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
15798 - MINOR: checks: fix agent check interval computation
15799 - MINOR: checks: add a PAUSED state for the checks
15800 - MINOR: checks: create the agent tasks even when no check is configured
15801 - MINOR: checks: add a flag to indicate what check is an agent
15802 - MEDIUM: checks: enable agent checks even if health checks are disabled
15803 - BUG/MEDIUM: checks: ensure we can enable a server after boot
15804 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
15805 - BUG/MAJOR: session: repair tcp-request connection rules
15806 - BUILD: fix SUBVERS extraction in the Makefile
15807 - BUILD: pattern: silence a warning about uninitialized value
15808 - BUILD: log: fix build warning on Solaris
15809 - BUILD: dumpstats: fix build error on Solaris
15810 - DOC: move option pgsql-check to the correct place
15811 - DOC: move option tcp-check to the proper place
15812 - MINOR: connection: add simple functions to report connection readiness
15813 - MEDIUM: connection: centralize handling of nolinger in fd management
15814 - OPTIM: http: set CF_READ_DONTWAIT on response message
15815 - OPTIM: http: do not re-enable reading on client side while closing the server side
15816 - MINOR: config: add option http-keep-alive
15817 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
15818 - MAJOR: stream-int: handle the connection reuse in si_connect()
15819 - MAJOR: http: add the keep-alive transition on the server side
15820 - MAJOR: backend: enable connection reuse
15821 - MINOR: http: add option prefer-last-server
15822 - MEDIUM: http: do not report connection errors for second and further requests
15823
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200158242013/06/17 : 1.5-dev19
15825 - MINOR: stats: remove the autofocus on the scope input field
15826 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
15827 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
15828 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
15829 - MEDIUM: ssl: improve crt-list format to support negation
15830 - BUG: ssl: fix crt-list for clients not supporting SNI
15831 - MINOR: stats: show soft-stopped servers in different color
15832 - BUG/MINOR: config: "source" does not work in defaults section
15833 - BUG: regex: fix pcre compile error when using JIT
15834 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
15835 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
15836 - MINOR: show PCRE version and JIT status in -vv
15837 - BUG/MINOR: jit: don't rely on USE flag to detect support
15838 - DOC: readme: add suggestion to link against static openssl
15839 - DOC: examples: provide simplified ssl configuration
15840 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
15841 - MINOR: tproxy: add support for FreeBSD
15842 - MINOR: tproxy: add support for OpenBSD
15843 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
15844 - CLEANUP: fix minor typo in error message.
15845 - CLEANUP: fix missing include <string.h> in proto/listener.h
15846 - CLEANUP: protect checks.h from multiple inclusions
15847 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
15848 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
15849 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
15850 - BUG/MEDIUM: splicing is broken since 1.5-dev12
15851 - BUG/MAJOR: acl: add implicit arguments to the resolve list
15852 - BUG/MINOR: tcp: fix error reporting for TCP rules
15853 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
15854 - MINOR: stick-table: allow to allocate an entry without filling it
15855 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
15856 - MINOR: session: only call http_send_name_header() when changing the server
15857 - MINOR: tcp: report the erroneous word in tcp-request track*
15858 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
15859 - BUG/MEDIUM: log: fix regression on log-format handling
15860 - MEDIUM: log: report file name, line number, and directive name with log-format errors
15861 - BUG/MINOR: cli: "clear table" did not work anymore without a key
15862 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
15863 - BUG/MAJOR: http: compression still has defects on chunked responses
15864 - BUG/MINOR: stats: fix confirmation links on the stats interface
15865 - BUG/MINOR: stats: the status bar does not appear anymore after a change
15866 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
15867 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
15868 - BUG/MINOR: fix unterminated ACL array in compression
15869 - BUILD: last fix broke non-linux platforms
15870 - MINOR: init: indicate the SSL runtime version on -vv.
15871 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
15872 - BUILD: stdbool is not portable (again)
15873 - DOC: readme: add a small reminder about restrictions to respect in the code
15874 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
15875 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
15876 - DOC: fix wrong copy-paste in the rspdel example
15877 - MINOR: counters: make it easier to extend the amount of tracked counters
15878 - MEDIUM: counters: add support for tracking a third counter
15879 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
15880 - BUG/MAJOR: http: always ensure response buffer has some room for a response
15881 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
15882 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
15883 - MINOR: log: add a new flag 'L' for locally processed requests
15884 - MINOR: http: add full-length header fetch methods
15885 - MEDIUM: protocol: implement a "drain" function in protocol layers
15886 - MEDIUM: http: add a new "http-response" ruleset
15887 - MEDIUM: http: add the "set-nice" action to http-request and http-response
15888 - MEDIUM: log: add a log level override value in struct session
15889 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
15890 - MEDIUM: http: add support for "set-tos" in http-request/http-response
15891 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
15892 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
15893 - MEDIUM: acl: automatically detect the type of certain fetches
15894 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
15895 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
15896 - DOC: major reorg of ACL + sample fetch
15897 - CLEANUP: http: remove the bogus urlp_ip ACL match
15898 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
15899 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
15900 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
15901 - DOC: update ROADMAP file
15902 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
15903 - MEDIUM: stats: add proxy name filtering on the statistic page
15904
Willy Tarreau289dd922013-04-03 02:26:31 +0200159052013/04/03 : 1.5-dev18
15906 - DOCS: Add explanation of intermediate certs to crt paramater
15907 - DOC: typo and minor fixes in compression paragraph
15908 - MINOR: config: http-request configuration error message misses new keywords
15909 - DOC: minor typo fix in documentation
15910 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
15911 - MEDIUM: ssl: add bind-option "strict-sni"
15912 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
15913 - MEDIUM: regex: Use PCRE JIT in acl
15914 - DOC: simplify bind option "interface" explanation
15915 - DOC: tfo: bump required kernel to linux-3.7
15916 - BUILD: add explicit support for TFO with USE_TFO
15917 - MEDIUM: New cli option -Ds for systemd compatibility
15918 - MEDIUM: add haproxy-systemd-wrapper
15919 - MEDIUM: add systemd service
15920 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
15921 - BUG/MEDIUM: remove supplementary groups when changing gid
15922 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
15923 - BUG/MINOR: Correct logic in cut_crlf()
15924 - CLEANUP: checks: Make desc argument to set_server_check_status const
15925 - CLEANUP: dumpstats: Make cli_release_handler() static
15926 - MEDIUM: server: Break out set weight processing code
15927 - MEDIUM: server: Allow relative weights greater than 100%
15928 - MEDIUM: server: Tighten up parsing of weight string
15929 - MEDIUM: checks: Add agent health check
15930 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
15931 - BUG/MINOR: time: frequency counters are not totally accurate
15932 - BUG/MINOR: http: don't process abortonclose when request was sent
15933 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
15934 - BUG/MEDIUM: checks: ignore late resets after valid responses
15935 - DOC: fix bogus recommendation on usage of gpc0 counter
15936 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
15937 - MINOR: signal: don't block SIGPROF by default
15938 - OPTIM: epoll: make use of EPOLLRDHUP
15939 - OPTIM: splice: detect shutdowns and avoid splice() == 0
15940 - OPTIM: splice: assume by default that splice is working correctly
15941 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
15942 - BUG/MEDIUM: peers: only the last peers section was used by tables
15943 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
15944 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
15945 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
15946 - BUG/MINOR: config: free peer's address when exiting upon parsing error
15947 - BUG/MINOR: config: check the proper variable when parsing log minlvl
15948 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
15949 - BUG/MINOR: cli: show sess should always validate s->listener
15950 - BUG/MINOR: log: improper NULL return check on utoa_pad()
15951 - CLEANUP: http: remove a useless null check
15952 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
15953 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
15954 - BUG/MEDIUM: tools: off-by-one in quote_arg()
15955 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
15956 - BUG/MINOR: unix: remove the 'level' field from the ux struct
15957 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
15958 - CLEANUP: config: slowstart is never negative
15959 - CLEANUP: config: maxcompcpuusage is never negative
15960 - BUG/MEDIUM: log: emit '-' for empty fields again
15961 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
15962 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
15963 - BUILD: improve the makefile's support for libpcre
15964 - MEDIUM: halog: add support for counting per source address (-ic)
15965 - MEDIUM: tools: make str2sa_range support all address syntaxes
15966 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
15967 - MEDIUM: config: use str2sa_range() to parse server addresses
15968 - MEDIUM: config: use str2sa_range() to parse peers addresses
15969 - MINOR: tests: add a config file to ease address parsing tests.
15970 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
15971 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
15972 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
15973 - MINOR: config: report missing peers section name
15974 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
15975 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
15976 - MINOR: tools: prepare str2sa_range() to return an error message
15977 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
15978 - MINOR: tools: prepare str2sa_range() to accept a prefix
15979 - MEDIUM: tools: make str2sa_range() parse unix addresses too
15980 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
15981 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
15982 - MEDIUM: config: use str2sa_range() to parse log addresses
15983 - CLEANUP: tools: remove str2sun() which is not used anymore.
15984 - MEDIUM: config: add complete support for str2sa_range() in dispatch
15985 - MEDIUM: config: add complete support for str2sa_range() in server addr
15986 - MEDIUM: config: add complete support for str2sa_range() in 'server'
15987 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
15988 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
15989 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
15990 - CLEANUP: config: do not use multiple errmsg at once
15991 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
15992 - MAJOR: listener: support inheriting a listening fd from the parent
15993 - MAJOR: tools: support environment variables in addresses
15994 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
15995 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
15996 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
15997 - DOC: mention the new HTTP 307 and 308 redirect statues
15998 - MEDIUM: poll: do not use FD_* macros anymore
15999 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
16000 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
16001 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
16002 - BUILD: fix usual isdigit() warning on solaris
16003 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
16004 - OPTIM: buffer: remove one jump in buffer_count()
16005 - OPTIM: http: improve branching in chunk size parser
16006 - OPTIM: http: optimize the response forward state machine
16007 - BUILD: enable poll() by default in the makefile
16008 - BUILD: add explicit support for Mac OS/X
16009 - BUG/MAJOR: http: use a static storage for sample fetch context
16010 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
16011 - BUG/MAJOR: http: fix regression introduced by commit a890d072
16012 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
16013 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
16014 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
16015 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
16016 - MINOR: log: indicate it when some unreliable sample fetches are logged
16017 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
16018 - MINOR: backend: rename sample fetch functions and declare the sample keywords
16019 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
16020 - MINOR: listener: rename sample fetch functions and declare the sample keywords
16021 - MEDIUM: http: unify acl and sample fetch functions
16022 - MINOR: session: rename sample fetch functions and declare the sample keywords
16023 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
16024 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
16025 - MAJOR: acl: remove fetch argument validation from the ACL struct
16026 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
16027 - MINOR: payload: add new direction-explicit sample fetches
16028 - CLEANUP: acl: remove ACL hooks which were never used
16029 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
16030 - MINOR: sample: provide a function to report the name of a sample check point
16031 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
16032 - CLEANUP: acl: remove unused references to ACL_USE_*
16033 - MINOR: http: replace acl_parse_ver with acl_parse_str
16034 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
16035 - MAJOR: acl: add option -m to change the pattern matching method
16036 - MINOR: acl: remove the use_count in acl keywords
16037 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
16038 - MEDIUM: acl: support using sample fetches directly in ACLs
16039 - MEDIUM: http: remove val_usr() to validate user_lists
16040 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
16041 - MINOR: ssl: add support for the "alpn" bind keyword
16042 - MINOR: http: status code 303 is HTTP/1.1 only
16043 - MEDIUM: http: implement redirect 307 and 308
16044 - MINOR: http: status 301 should not be marked non-cacheable
16045
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100160462012/12/28 : 1.5-dev17
16047 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
16048 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
16049 - BUG/MINOR: stats: last fix was still wrong
16050 - BUG/MINOR: stats: http-request rules still don't cope with stats
16051 - BUG/MINOR: http: http-request add-header emits a corrupted header
16052 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
16053 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
16054 - BUILD: log: unused variable svid
16055 - CLEANUP: http: rename the misleading http_check_access_rule
16056 - MINOR: http: move redirect rule processing to its own function
16057 - REORG: config: move the http redirect rule parser to proto_http.c
16058 - MEDIUM: http: add support for "http-request redirect" rules
16059 - MEDIUM: http: add support for "http-request tarpit" rule
16060
Willy Tarreau69eda352012-12-24 16:48:14 +0100160612012/12/24 : 1.5-dev16
16062 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
16063 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
16064 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
16065 - MINOR: contrib: make the iprange tool grep for addresses
16066 - CLEANUP: polling: gcc doesn't always optimize constants away
16067 - OPTIM: poll: optimize fd management functions for low register count CPUs
16068 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
16069 - OPTIM: epoll: use a temp variable for intermediary flag computations
16070 - OPTIM: epoll: current fd does not count as a new one
16071 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
16072 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
16073 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
16074 - BUG/MINOR: stream_interface: don't return when the fd is already set
16075 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
16076 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
16077 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
16078 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
16079 - BUG/MINOR: http: don't abort client connection on premature responses
16080 - BUILD: no need to clean up when making git-tar
16081 - MINOR: log: add a tag for amount of bytes uploaded from client to server
16082 - BUG/MEDIUM: log: fix possible segfault during config parsing
16083 - MEDIUM: log: change a few log tokens to make them easier to remember
16084 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
16085 - MEDIUM: log-format: make the format parser more robust and more extensible
16086 - MINOR: sample: support cast from bool to string
16087 - MINOR: samples: add a function to fetch and convert any sample to a string
16088 - MINOR: log: add lf_text_len
16089 - MEDIUM: log: add the ability to include samples in logs
16090 - REORG: stats: massive code reorg and cleanup
16091 - REORG: stats: move the HTTP header injection to proto_http
16092 - REORG: stats: functions are now HTTP/CLI agnostic
16093 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
16094 - MINOR: chunks: centralize the trash chunk allocation
16095 - MEDIUM: stats: use hover boxes instead of title to report details
16096 - MEDIUM: stats: use multi-line tips to display detailed counters
16097 - MINOR: tools: simplify the use of the int to ascii macros
16098 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
16099 - MINOR: http: prepare to support more http-request actions
16100 - MINOR: log: make parse_logformat_string() take a const char *
16101 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
16102
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100161032012/12/12 : 1.5-dev15
16104 - DOC: add a few precisions on compression
16105 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
16106 - BUG/MINOR: ssl: One free session in cache remains unused.
16107 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
16108 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
16109 - MINOR: acl: add fetch for server session rate
16110 - BUG/MINOR: compression: Content-Type is case insensitive
16111 - MINOR: compression: disable on multipart or status != 200
16112 - BUG/MINOR: http: don't report client aborts as server errors
16113 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
16114 - MINOR: http: factor out the content-type checks
16115 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
16116 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
16117 - BUG/MINOR: http: disable compression when message has no body
16118 - MINOR: compression: make the stats a bit more robust
16119 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
16120 - MINOR: connection: don't remove failed handshake flags
16121 - MEDIUM: connection: add an error code in connections
16122 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
16123 - MEDIUM: connection: add error reporting for the PROXY protocol header
16124 - MEDIUM: connection: add error reporting for the SSL
16125 - DOC: document the connection error format in logs
16126 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
16127 - BUILD: stdbool is not portable
16128 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
16129 - BUG/MAJOR: raw_sock: must check error code on hangup
16130 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
16131 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
16132 - MINOR: stats: add a few more information on session dump
16133 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
16134 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
16135 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
16136 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
16137 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
16138 - CLEANUP: proto_tcp: use the same code to bind servers and backends
16139 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
16140 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
16141 - MEDIUM: proto_tcp: add support for tracking L7 information
16142 - MEDIUM: counters: add sc1_trackers/sc2_trackers
16143 - MINOR: http: add the "base32" pattern fetch function
16144 - MINOR: http: add the "base32+src" fetch method.
16145 - CLEANUP: session: use an array for the stick counters
16146 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
16147 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
16148 - BUG/MAJOR: connection: always recompute polling status upon I/O
16149 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
16150 - MINOR: config: improve error checking on TCP stick-table tracking
16151 - DOC: add some clarifications to the readme
16152
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100161532012/11/26 : 1.5-dev14
16154 - DOC: fix minor typos
16155 - BUG/MEDIUM: compression: does not forward trailers
16156 - MINOR: buffer_dump with ASCII
16157 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
16158 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
16159 - BUG/MINOR: checks: don't mark the FD as closed before transport close
16160 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
16161 - MINOR: cli: report the msg state in full text in "show sess $PTR"
16162 - CLEANUP: checks: rename some server check flags
16163 - MAJOR: checks: rework completely bogus state machine
16164 - BUG/MINOR: checks: slightly clean the state machine up
16165 - MEDIUM: checks: avoid waking the application up for pure TCP checks
16166 - MEDIUM: checks: close the socket as soon as we have a response
16167 - BUG/MAJOR: checks: close FD on all timeouts
16168 - MINOR: checks: fix recv polling after connect()
16169 - MEDIUM: connection: provide a common conn_full_close() function
16170 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
16171 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
16172 - MINOR: listeners: make the accept loop more robust when maxaccept==0
16173 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
16174 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
16175 - BUG/MINOR: stats: fix inversion of the report of a check in progress
16176 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
16177 - BUG/MEDIUM: connection: always disable polling upon error
16178 - MINOR: connection: abort earlier when errors are detected
16179 - BUG/MEDIUM: checks: report handshake failures
16180 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
16181 - MINOR: tcp: add support for the "v6only" bind option
16182 - MINOR: stats: also report the computed compression savings in html stats
16183 - MINOR: stats: report the total number of compressed responses per front/back
16184 - MINOR: tcp: add support for the "v4v6" bind option
16185 - DOC: stats: document the comp_rsp stats column
16186 - BUILD: buffer: fix another isprint() warning on solaris
16187 - MINOR: cli: add support for the "show sess all" command
16188 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
16189 - MINOR: cli: improve output format for show sess $ptr
16190
Willy Tarreauad15d122012-11-22 01:11:33 +0100161912012/11/22 : 1.5-dev13
16192 - BUILD: fix build issue without USE_OPENSSL
16193 - BUILD: fix compilation error with DEBUG_FULL
16194 - DOC: ssl: remove prefer-server-ciphers documentation
16195 - DOC: ssl: surround keywords with quotes
16196 - DOC: fix minor typo on http-send-name-header
16197 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
16198 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
16199 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
16200 - BUILD: report zlib support in haproxy -vv
16201 - DOC: compression: add some details and clean up the formatting
16202 - DOC: Change is_ssl acl to ssl_fc acl in example
16203 - DOC: make it clear what the HTTP request size is
16204 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
16205 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
16206 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
16207 - DOC: ssl: add 'ecdhe' statement on 'bind'
16208 - MEDIUM: ssl: add client certificate authentication support
16209 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
16210 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
16211 - DOC: ssl: add fetch and ACL 'client_cert'
16212 - MINOR: ssl: add ignore verify errors options
16213 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
16214 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
16215 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
16216 - MINOR: ssl: add fetches and ACLs to return verify errors
16217 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
16218 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
16219 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
16220 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
16221 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
16222 - MEDIUM: config: authorize frontend and listen without bind.
16223 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
16224 - DOC: ssl: add 'no-tls-tickets' statement documentation.
16225 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
16226 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
16227 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
16228 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
16229 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
16230 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
16231 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
16232 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
16233 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
16234 - MINOR: ssl: use bit fields to store ssl options instead of one int each
16235 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
16236 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
16237 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
16238 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
16239 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
16240 - MEDIUM: ssl: reject ssl server keywords in default-server statement
16241 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
16242 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
16243 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
16244 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
16245 - MINOR: acl: add parse and match primitives to use binary type on ACLs
16246 - MINOR: sample: export 'sample_get_trash_chunk(void)'
16247 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
16248 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
16249 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
16250 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
16251 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
16252 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
16253 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
16254 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
16255 - MINOR: ssl: add 'crt' statement on server.
16256 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
16257 - BUG/MEDIUM: ssl: review polling on reneg.
16258 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
16259 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
16260 - MINOR: build: allow packagers to specify the ssl cache size
16261 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
16262 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
16263 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
16264 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
16265 - DOC: duplicate ssl_sni section
16266 - MEDIUM: HTTP compression (zlib library support)
16267 - CLEANUP: use struct comp_ctx instead of union
16268 - BUILD: remove dependency to zlib.h
16269 - MINOR: compression: memlevel and windowsize
16270 - MEDIUM: use pool for zlib
16271 - MINOR: compression: try init in cfgparse.c
16272 - MINOR: compression: init before deleting headers
16273 - MEDIUM: compression: limit RAM usage
16274 - MINOR: compression: tune.comp.maxlevel
16275 - MINOR: compression: maximum compression rate limit
16276 - MINOR: log-format: check number of arguments in cfgparse.c
16277 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
16278 - BUG/MINOR: compression: deinit zlib only when required
16279 - MEDIUM: compression: don't compress when no data
16280 - MEDIUM: compression: use pool for comp_ctx
16281 - MINOR: compression: rate limit in 'show info'
16282 - MINOR: compression: report zlib memory usage
16283 - BUG/MINOR: compression: dynamic level increase
16284 - DOC: compression: unsupported cases.
16285 - MINOR: compression: CPU usage limit
16286 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
16287 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
16288 - MINOR: config: add a function to indent error messages
16289 - REORG: split "protocols" files into protocol and listener
16290 - MEDIUM: config: replace ssl_conf by bind_conf
16291 - CLEANUP: listener: remove unused conf->file and conf->line
16292 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
16293 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
16294 - MEDIUM: move bind SSL parsing to ssl_sock
16295 - MINOR: config: improve error reporting for "bind" lines
16296 - MEDIUM: config: move the common "bind" settings to listener.c
16297 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
16298 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
16299 - MINOR: listener: add a scope field in the bind keyword lists
16300 - MINOR: config: pass the file and line to config keyword parsers
16301 - MINOR: stats: fill the file and line numbers in the stats frontend
16302 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
16303 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
16304 - REORG: listener: move unix perms from the listener to the bind_conf
16305 - BUG: backend: balance hdr was broken since 1.5-dev11
16306 - MINOR: standard: make memprintf() support a NULL destination
16307 - MINOR: config: make str2listener() use memprintf() to report errors.
16308 - MEDIUM: stats: remove the stats_sock struct from the global struct
16309 - MINOR: ssl: set the listeners' data layer to ssl during parsing
16310 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
16311 - DOC: move bind options to their own section
16312 - DOC: stats: refer to "bind" section for "stats socket" settings
16313 - DOC: fix index to reference bind and server options
16314 - BUG: http: do not print garbage on invalid requests in debug mode
16315 - BUG/MINOR: config: check the proper pointer to report unknown protocol
16316 - CLEANUP: connection: offer conn_prepare() to set up a connection
16317 - CLEANUP: config: fix typo inteface => interface
16318 - BUG: stats: fix regression introduced by commit 4348fad1
16319 - MINOR: cli: allow to set frontend maxconn to zero
16320 - BUG/MAJOR: http: chunk parser was broken with buffer changes
16321 - MEDIUM: monitor: simplify handling of monitor-net and mode health
16322 - MINOR: connection: add a pointer to the connection owner
16323 - MEDIUM: connection: make use of the owner instead of container_of
16324 - BUG/MINOR: ssl: report the L4 connection as established when possible
16325 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
16326 - BUG/MINOR: config: use a copy of the file name in proxy configurations
16327 - BUG/MEDIUM: listener: don't pause protocols that do not support it
16328 - MEDIUM: proxy: add the global frontend to the list of normal proxies
16329 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
16330 - MINOR: signal: really ignore signals configured with no handler
16331 - MINOR: buffers: add a few functions to write chars, strings and blocks
16332 - MINOR: raw_sock: always report asynchronous connection errors
16333 - MEDIUM: raw_sock: improve connection error reporting
16334 - REORG: connection: rename the data layer the "transport layer"
16335 - REORG: connection: rename app_cb "data"
16336 - MINOR: connection: provide a generic data layer wakeup callback
16337 - MINOR: connection: split conn_prepare() in two functions
16338 - MINOR: connection: add an init callback to the data_cb struct
16339 - MEDIUM: session: use a specific data_cb for embryonic sessions
16340 - MEDIUM: connection: use a generic data-layer init() callback
16341 - MEDIUM: connection: reorganize connection flags
16342 - MEDIUM: connection: only call the data->wake callback on activity
16343 - MEDIUM: connection: make it possible for data->wake to return an error
16344 - MEDIUM: session: register a data->wake callback to process errors
16345 - MEDIUM: connection: don't call the data->init callback upon error
16346 - MEDIUM: connection: it's not the data layer's role to validate the connection
16347 - MEDIUM: connection: automatically disable polling on error
16348 - REORG: connection: move the PROXY protocol management to connection.c
16349 - MEDIUM: connection: add a new local send-proxy transport callback
16350 - MAJOR: checks: make use of the connection layer to send checks
16351 - REORG: server: move the check-specific parts into a check subsection
16352 - MEDIUM: checks: use real buffers to store requests and responses
16353 - MEDIUM: check: add the ctrl and transport layers in the server check structure
16354 - MAJOR: checks: completely use the connection transport layer
16355 - MEDIUM: checks: add the "check-ssl" server option
16356 - MEDIUM: checks: enable the PROXY protocol with health checks
16357 - CLEANUP: checks: remove minor warnings for assigned but not used variables
16358 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
16359 - BUG: connection: fix regression from commit 9e272bf9
16360 - CLEANUP: cttproxy: remove a warning on undeclared close()
16361 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
16362 - MEDIUM: listener: add support for linux's accept4() syscall
16363 - MINOR: halog: sort output by cookie code
16364 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
16365 - BUG/MINOR: halog: fix help message for -ut/-uto
16366 - MINOR: halog: add a parameter to limit output line count
16367 - BUILD: accept4: move the socketcall declaration outside of accept4()
16368 - MINOR: server: add minimal infrastructure to parse keywords
16369 - MINOR: standard: make indent_msg() support empty messages
16370 - MEDIUM: server: check for registered keywords when parsing unknown keywords
16371 - MEDIUM: server: move parsing of keyword "id" to server.c
16372 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
16373 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
16374 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
16375 - MEDIUM: connection: always unset the transport layer upon close
16376 - BUG/MINOR: session: fix some leftover from debug code
16377 - BUG/MEDIUM: session: enable the conn_session_update() callback
16378 - MEDIUM: connection: add a flag to hold the transport layer
16379 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
16380 - MINOR: log: make lf_text use a const char *
16381 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
16382 - REORG: http: rename msg->buf to msg->chn since it's a channel
16383 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
16384 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
16385 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
16386 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
16387 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
16388 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
16389 - OPTIM: channel: reorganize struct members to improve cache efficiency
16390 - CLEANUP: session: remove term_trace which is not used anymore
16391 - OPTIM: session: reorder struct session fields
16392 - OPTIM: connection: pack the struct target
16393 - DOC: document relations between internal entities
16394 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
16395 - BUILD: ssl: fix shctx build on older compilers
16396 - MEDIUM: ssl: add support for the "npn" bind keyword
16397 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
16398 - MINOR: chunk: provide string compare functions
16399 - MINOR: sample: accept fetch keywords without parenthesis
16400 - MEDIUM: sample: pass an empty list instead of a null for fetch args
16401 - MINOR: ssl: improve socket behaviour upon handshake abort.
16402 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
16403 - MEDIUM: listener: provide a fallback for accept4() when not supported
16404 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
16405 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
16406 - OPTIM: channel: inline channel_forward's fast path
16407 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
16408 - OPTIM: tools: inline hex2i()
16409 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
16410 - MINOR: compression: automatically disable compression for older browsers
16411 - MINOR: compression: optimize memLevel to improve byte rate
16412 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
16413 - BUILD: fix coexistence of openssl and zlib
16414 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
16415 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
16416 - MINOR: tools: add a clear_addr() function to unset an address
16417 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
16418 - CLEANUP: remove trashlen
16419 - MAJOR: session: detach the connections from the stream interfaces
16420 - DOC: update document describing relations between internal entities
16421 - BUILD: make it possible to specify ZLIB path
16422 - MINOR: compression: add an offload option to remove the Accept-Encoding header
16423 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
16424 - CLEANUP: completely remove trashlen
16425 - MINOR: chunk: add a function to reset a chunk
16426 - CLEANUP: replace chunk_printf() with chunk_appendf()
16427 - MEDIUM: make the trash be a chunk instead of a char *
16428 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
16429 - MEDIUM: stick-table: allocate the table key of size buffer size
16430 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
16431 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
16432 - OPTIM: session: don't process the whole session when only timers need a refresh
16433 - BUG/MINOR: session: mark the handshake as complete earlier
16434 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
16435 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
16436 - MAJOR: sepoll: make the poller totally event-driven
16437 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
16438 - BUILD: compression: remove a build warning
16439 - MEDIUM: fd: don't unset fdtab[].updated upon delete
16440 - REORG: fd: move the speculative I/O management from ev_sepoll
16441 - REORG: fd: move the fd state management from ev_sepoll
16442 - REORG: fd: centralize the processing of speculative events
16443 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
16444 - BUILD: stream_interface: remove si_fd() and its references
16445 - BUILD: compression: enable build in BSD and OSX Makefiles
16446 - MAJOR: ev_select: make the poller support speculative events
16447 - MAJOR: ev_poll: make the poller support speculative events
16448 - MAJOR: ev_kqueue: make the poller support speculative events
16449 - MAJOR: polling: replace epoll with sepoll and remove sepoll
16450 - MAJOR: polling: remove unused callbacks from the poller struct
16451 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
16452 - CLEANUP: channel: remove any reference of the hijackers
16453 - CLEANUP: stream_interface: remove the external task type target
16454 - MAJOR: connection: replace struct target with a pointer to an enum
16455 - BUG: connection: fix typo in previous commit
16456 - BUG: polling: don't skip polled events in the spec list
16457 - MINOR: splice: disable it when the system returns EBADF
16458 - MINOR: build: allow packagers to specify the default maxzlibmem
16459 - BUG: halog: fix broken output limitation
16460 - BUG: proxy: fix server name lookup in get_backend_server()
16461 - BUG: compression: do not always increment the round counter on allocation failure
16462 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
16463 - MINOR: global: don't prevent nbproc from being redefined
16464 - MINOR: config: support process ranges for "bind-process"
16465 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
16466 - MINOR: ssl: rename and document the tune.ssl.cachesize option
16467 - DOC: update the PROXY protocol spec to support v2
16468 - MINOR: standard: add a simple popcount function
16469 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
16470 - BUG: compression: properly disable compression when content-type does not match
16471 - MINOR: cli: report connection status in "show sess xxx"
16472 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
16473 - BUILD: cli: fix build when SSL is enabled
16474 - MINOR: cli: report the fd state in "show sess xxx"
16475 - MINOR: cli: report an error message on missing argument to compression rate
16476 - MINOR: http: add some debugging functions to pretty-print msg state names
16477 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
16478 - DOC: documentation on http header capture is wrong
16479 - MINOR: http: allow the cookie capture size to be changed
16480 - DOC: http header capture has not been limited in size for a long time
16481 - DOC: update readme with build methods for BSD
16482 - BUILD: silence a warning on Solaris about usage of isdigit()
16483 - MINOR: stats: report HTTP compression stats per frontend and per backend
16484 - MINOR: log: add '%Tl' to log-format
16485 - MINOR: samples: update the url_param fetch to match parameters in the path
16486
Willy Tarreau16216822012-09-10 09:46:55 +0200164872012/09/10 : 1.5-dev12
16488 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
16489 - MEDIUM: ssl: add support for prefer-server-ciphers option
16490 - MINOR: IPv6 support for transparent proxy
16491 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
16492 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
16493 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
16494 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
16495 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
16496 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
16497 - MEDIUM: ssl: protect against client-initiated renegociation
16498 - BUILD: add optional support for SSL via the USE_OPENSSL flag
16499 - MEDIUM: ssl: add shared memory session cache implementation.
16500 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
16501 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
16502 - MEDIUM: ssl: add support for SNI and wildcard certificates
16503 - DOC: Typos cleanup
16504 - DOC: fix name for "option independant-streams"
16505 - DOC: specify the default value for maxconn in the context of a proxy
16506 - BUG/MINOR: to_log erased with unique-id-format
16507 - LICENSE: add licence exception for OpenSSL
16508 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
16509 - BUILD: add an AIX 5.2 (and later) target.
16510 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
16511 - MINOR: halog: use the more recent dual-mode fgets2 implementation
16512 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
16513 - CLEANUP: halog: make clean should also remove .o files
16514 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
16515 - OPTIM: halog: improve cold-cache behaviour when loading a file
16516 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
16517 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
16518 - MEDIUM: pattern: add the "base" sample fetch method
16519 - OPTIM: i386: make use of kernel-mode-linux when available
16520 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
16521 - BUG/MINOR: polling: some events were not set in various pollers
16522 - MINOR: http: add the urlp_val ACL match
16523 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
16524 - MINOR: stats/cli: add plans to support more stick-table actions
16525 - MEDIUM: stats/cli: add support for "set table key" to enter values
16526 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
16527 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
16528 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
16529 - REORG/MINOR: connection: move declaration to its own include file
16530 - REORG/MINOR: checks: put a struct connection into the server
16531 - MINOR: connection: add flags to the connection struct
16532 - MAJOR: get rid of fdtab[].state and use connection->flags instead
16533 - MINOR: fd: add a new I/O handler to fdtab
16534 - MEDIUM: polling: prepare to call the iocb() function when defined.
16535 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
16536 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
16537 - MINOR: connection: add a handler for fd-based connections
16538 - MAJOR: connection: replace direct I/O callbacks with the connection callback
16539 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
16540 - MEDIUM: connection: remove the FD_POLL_* flags only once
16541 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
16542 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
16543 - CLEANUP: remove the now unused fdtab direct I/O callbacks
16544 - MAJOR: remove the stream interface and task management code from sock_*
16545 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
16546 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
16547 - MAJOR: connection: add a new CO_FL_CONNECTED flag
16548 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
16549 - MAJOR: connection: call data layer handshakes from the handler
16550 - MEDIUM: fd: remove the EV_FD_COND_* primitives
16551 - MINOR: sock_raw: move calls to si_data_close upper
16552 - REORG: connection: replace si_data_close() with conn_data_close()
16553 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
16554 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
16555 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
16556 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
16557 - MEDIUM: connection: add definitions for dual polling mechanisms
16558 - MEDIUM: connection: make use of the new polling functions
16559 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
16560 - MEDIUM: checks: don't use FD_WAIT_* anymore
16561 - MINOR: fd: get rid of FD_WAIT_*
16562 - MEDIUM: stream_interface: offer a generic function for connection updates
16563 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
16564 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
16565 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
16566 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
16567 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
16568 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
16569 - REORG/MAJOR: extract "struct buffer" from "struct channel"
16570 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
16571 - REORG: sock_raw: rename the files raw_sock*
16572 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
16573 - MAJOR: raw_sock: temporarily disable splicing
16574 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
16575 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
16576 - MAJOR: connection: split the send call into connection and stream interface
16577 - MAJOR: stream-interface: restore splicing mechanism
16578 - MAJOR: stream-interface: make conn_notify_si() more robust
16579 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
16580 - MAJOR: stream-interface: don't commit polling changes in every callback
16581 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
16582 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
16583 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
16584 - REORG: buffers: split buffers into chunk,buffer,channel
16585 - MAJOR: channel: remove the BF_OUT_EMPTY flag
16586 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
16587 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
16588 - MINOR: buffer: provide a new buffer_full() function
16589 - MAJOR: channel: stop relying on BF_FULL to take action
16590 - MAJOR: channel: remove the BF_FULL flag
16591 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
16592 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
16593 - CLEANUP: channel: use "channel" instead of "buffer" in function names
16594 - REORG: connection: move the target pointer from si to connection
16595 - MAJOR: connection: move the addr field from the stream_interface
16596 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
16597 - MEDIUM: proto_tcp: remove any dependence on stream_interface
16598 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
16599 - MEDIUM: connection: add an ->init function to data layer
16600 - MAJOR: session: introduce embryonic sessions
16601 - MAJOR: connection: make the PROXY decoder a handshake handler
16602 - CLEANUP: frontend: remove the old proxy protocol decoder
16603 - MAJOR: connection: rearrange the polling flags.
16604 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
16605 - MEDIUM: connection: complete the polling cleanups
16606 - MEDIUM: connection: avoid calling handshakes when polling is required
16607 - MAJOR: stream_interface: continue to update data polling flags during handshakes
16608 - CLEANUP: fd: remove fdtab->flags
16609 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
16610 - CLEANUP: includes: fix includes for a number of users of fd.h
16611 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
16612 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
16613 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
16614 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
16615 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
16616 - BUILD: ssl: fix shctx build on RHEL with futex
16617 - BUILD: include sys/socket.h to fix build failure on FreeBSD
16618 - BUILD: fix build error without SSL (ssl_cert)
16619 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
16620 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
16621 - MEDIUM: config: support per-listener backlog and maxconn
16622 - MINOR: session: do not send an HTTP/500 error on SSL sockets
16623 - MEDIUM: config: implement maxsslconn in the global section
16624 - BUG: tcp: close socket fd upon connect error
16625 - MEDIUM: connection: improve error handling around the data layer
16626 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
16627 - BUILD: shut a gcc warning introduced by commit 269ab31
16628 - MEDIUM: config: centralize handling of SSL config per bind line
16629 - BUILD: makefile: report USE_OPENSSL status in build options
16630 - BUILD: report openssl build settings in haproxy -vv
16631 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
16632 - DOC: add a special acknowledgement for the stud project
16633 - DOC: add missing SSL options for servers and listeners
16634 - BUILD: automatically add -lcrypto for SSL
16635 - DOC: add some info about openssl build in the README
16636
Willy Tarreau02c7c142012-06-04 00:43:45 +0200166372012/06/04 : 1.5-dev11
16638 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
16639 - BUG/MAJOR: trash must always be the size of a buffer
16640 - DOC: fix minor regex example issue and improve doc on stats
16641 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
16642 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
16643 - MINOR: checks: add on-marked-up option
16644 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
16645 - MEDIUM: stream_interface: remove the si->init
16646 - MINOR: buffers: add a rewind function
16647 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
16648 - MAJOR: http: stop using msg->sol outside the parsers
16649 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
16650 - MEDIUM: http: get rid of msg->som which is not used anymore
16651 - MEDIUM: http: msg->sov and msg->sol will never wrap
16652 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
16653 - BUG/MINOR: stop connect timeout when connect succeeds
16654 - REORG: move the send-proxy code to tcp_connect_write()
16655 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
16656 - MINOR: stream_interface: introduce a new "struct connection" type
16657 - REORG/MINOR: stream_interface: move si->fd to struct connection
16658 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
16659 - MINOR: stream_interface: add a data channel close function
16660 - MEDIUM: stream_interface: call si_data_close() before releasing the si
16661 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
16662 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
16663 - MINOR: add a new function call tracer for debugging purposes
16664 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
16665 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
16666 - BUG/MEDIUM: register peer sync handler in the proper order
16667 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
16668 - BUG/MINOR: fix option httplog validation with TCP frontends
16669 - BUG/MINOR: log: don't report logformat errors in backends
16670 - REORG/MINOR: use dedicated proxy flags for the cookie handling
16671 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
16672 - MINOR: http: add support for "httponly" and "secure" cookie attributes
16673 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
16674 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
16675 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
16676 - MEDIUM: stats: add the ability to kill sessions from the admin interface
16677 - BUILD: add support for linux kernels >= 2.6.28
16678
Willy Tarreauffb89472012-05-14 07:26:56 +0200166792012/05/14 : 1.5-dev10
16680 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
16681 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
16682 - CLEANUP: auth: make the code build again with DEBUG_AUTH
16683 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
16684 - REORG: use the name sock_raw instead of stream_sock
16685 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
16686 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
16687 - CLEANUP: sock_raw: remove last references to stream_sock
16688 - CLEANUP: stream_interface: stop exporting socket layer functions
16689 - MINOR: stream_interface: add an init callback to sock_ops
16690 - MEDIUM: stream_interface: derive the socket operations from the target
16691 - MAJOR: fd: remove the need for the socket layer to recheck the connection
16692 - MINOR: session: call the socket layer init function when a session establishes
16693 - MEDIUM: session: add support for tunnel timeouts
16694 - MINOR: standard: add a new debug macro : fddebug()
16695 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
16696 - OPTIM: proto_http: don't enable quick-ack on empty buffers
16697 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
16698 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
16699
Willy Tarreaua0564f32012-05-08 21:56:27 +0200167002012/05/08 : 1.5-dev9
16701 - MINOR: Add release callback to si_applet
16702 - CLEANUP: Fix some minor typos
16703 - MINOR: Add TO/FROM_SET flags to struct stream_interface
16704 - CLEANUP: Fix some minor whitespace issues
16705 - MINOR: stats admin: allow unordered parameters in POST requests
16706 - CLEANUP: fix typo in findserver() log message
16707 - MINOR: stats admin: use the backend id instead of its name in the form
16708 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
16709 - DOC: cleanup indentation, alignment, columns and chapters
16710 - DOC: fix some keywords arguments documentation
16711 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
16712 - BUG/MAJOR: log: possible segfault with logformat
16713 - MEDIUM: log: split of log_format generation
16714 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
16715 - MEDIUM: log: Unique ID
16716 - MINOR: log: log-format: usable without httplog and tcplog
16717 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
16718 - MINOR: contrib/iprange: add a network IP range to mask converter
16719 - MEDIUM: session: implement the "use-server" directive
16720 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
16721 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
16722 - MEDIUM: http: add cookie and scookie ACLs
16723 - CLEANUP: lb_first: add reference to a paper describing the original idea
16724 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
16725 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
16726 - BUILD: http: make extract_cookie_value() return an int not size_t
16727 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
16728 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
16729 - MINOR: standard: add a memprintf() function to build formatted error messages
16730 - CLEANUP: remove a few warning about unchecked return values in debug code
16731 - MEDIUM: move message-related flags from transaction to message
16732 - DOC: add a diagram to explain how circular buffers work
16733 - MAJOR: buffer rework: replace ->send_max with ->o
16734 - MAJOR: buffer: replace buf->l with buf->{o+i}
16735 - MINOR: buffers: provide simple pointer normalization functions
16736 - MINOR: buffers: remove unused function buffer_contig_data()
16737 - MAJOR: buffers: replace buf->w with buf->p - buf->o
16738 - MAJOR: buffers: replace buf->r with buf->p + buf->i
16739 - MAJOR: http: move buffer->lr to http_msg->next
16740 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
16741 - CLEANUP: http: remove unused http_msg->col
16742 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
16743 - MEDIUM: http: add a pointer to the buffer in http_msg
16744 - MAJOR: http: make http_msg->sol relative to buffer's origin
16745 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
16746 - MEDIUM: http: remove buffer arg in a few header manipulation functions
16747 - MEDIUM: http: remove buffer arg in http_capture_bad_message
16748 - MEDIUM: http: remove buffer arg in http_msg_analyzer
16749 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
16750 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
16751 - MEDIUM: http: remove buffer arg in chunk parsing functions
16752 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
16753 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
16754 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
16755 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
16756 - MEDIUM: buffers: rename a number of buffer management functions
16757 - MEDIUM: http: add a prefetch function for ACL pattern fetch
16758 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
16759 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
16760 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
16761 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
16762 - MEDIUM: add a new typed argument list parsing framework
16763 - MAJOR: acl: make use of the new argument parsing framework
16764 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
16765 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
16766 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
16767 - MAJOR: acl: ensure that implicit table and proxies are valid
16768 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
16769 - MEDIUM: pattern: replace type pattern_arg with type arg
16770 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
16771 - MEDIUM: pattern: use the standard arg parser
16772 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
16773 - MEDIUM: pattern: report the precise argument parsing error when known.
16774 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
16775 - MINOR: pattern: add a new 'sample' type to store fetched data
16776 - MEDIUM: pattern: add new sample types to replace pattern types
16777 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
16778 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
16779 - MEDIUM: acl: get rid of the SET_RES flags
16780 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
16781 - MINOR: pattern: replace struct pattern with struct sample
16782 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
16783 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
16784 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
16785 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
16786 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
16787 - MEDIUM: acl/pattern: use the same direction scheme
16788 - MEDIUM: acl/pattern: start merging common sample fetch functions
16789 - MEDIUM: pattern: ensure that sample types always cast into other types.
16790 - MEDIUM: acl/pattern: factor out the src/dst address fetches
16791 - MEDIUM: acl: implement payload and payload_lv
16792 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
16793 - MINOR: stick_table: centralize the handling of empty keys
16794 - MINOR: pattern: centralize handling of unstable data in pattern_process()
16795 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
16796 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
16797 - MINOR: acl: add a val_args field to keywords
16798 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
16799 - MEDIUM: http: merge acl and pattern header fetch functions
16800 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
16801 - MEDIUM: acl: report parsing errors to the caller
16802 - MINOR: arg: improve error reporting on invalid arguments
16803 - MINOR: acl: report errors encountered when loading patterns from files
16804 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
16805 - REORG: use the name "sample" instead of "pattern" to designate extracted data
16806 - REORG: rename "pattern" files
16807 - MINOR: acl: add types to ACL patterns
16808 - MINOR: standard: add an IPv6 parsing function (str62net)
16809 - MEDIUM: acl: support IPv6 address matching
16810 - REORG: stream_interface: create a struct sock_ops to hold socket operations
16811 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
16812 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
16813 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
16814 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
16815 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
16816 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
16817 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
16818 - MEDIUM: http: improve error capture reports
16819 - MINOR: acl: add the cook_val() match to match a cookie against an integer
16820 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
16821 - MEDIUM: memory: add the ability to poison memory at run time
16822 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
16823 - MINOR: cfgparse: use a common errmsg pointer for all parsers
16824 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
16825 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
16826 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
16827
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200168282012/03/26 : 1.5-dev8
16829 - MINOR: patch for minor typo (ressources/resources)
16830 - MEDIUM: http: add support for sending the server's name in the outgoing request
16831 - DOC: mention that default checks are TCP connections
16832 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
16833 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
16834 - CLEANUP: Fix HCHK spelling errors
16835 - BUG/MINOR: fix typo in processing of http-send-name-header
16836 - MEDIUM: log: Use linked lists for loggers
16837 - BUILD: fix declaration inside a scope block
16838 - REORG: log: split send_log function
16839 - MINOR: config: Parse the string of the log-format config keyword
16840 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
16841 - MINOR: Date and time fonctions that don't use snprintf
16842 - MEDIUM: log: make http_sess_log use log_format
16843 - DOC: log-format documentation
16844 - MEDIUM: log: use log_format for mode tcplog
16845 - MEDIUM: log-format: backend source address %Bi %Bp
16846 - BUG/MINOR: log-format: fix %o flag
16847 - BUG/MEDIUM: bad length in log_format and __send_log
16848 - MINOR: logformat %st is signed
16849 - BUILD/MINOR: fix the source URL in the spec file
16850 - DOC: acl is http_first_req, not http_req_first
16851 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
16852 - MINOR: acl: add new matches for header/path/url length
16853 - BUILD: halog: make halog build on solaris
16854 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
16855 - MINOR: remove the client/server side distinction in SI addresses
16856 - MINOR: halog: add support for matching queued requests
16857 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
16858 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
16859 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
16860 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
16861 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
16862 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
16863 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
16864 - CLEANUP: rename possibly confusing struct field "tracked"
16865 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
16866 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
16867 - MEDIUM: buffers: add some new primitives and rework existing ones
16868 - BUG: buffers: don't return a negative value on buffer_total_space_res()
16869 - MINOR: buffers: make buffer_pointer() support negative pointers too
16870 - CLEANUP: kill buffer_replace() and use an inline instead
16871 - BUG: tcp: option nolinger does not work on backends
16872 - CLEANUP: ebtree: remove a few annoying signedness warnings
16873 - CLEANUP: ebtree: clarify licence and update to 6.0.6
16874 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
16875 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
16876 - BUG: ebtree: ebst_lookup() could return the wrong entry
16877 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
16878 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
16879 - MINOR: acl: add support for TLS server name matching using SNI
16880 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
16881 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
16882 - MINOR: pattern: export the global temporary pattern
16883 - CLEANUP: patterns: get rid of pattern_data_setstring()
16884 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
16885 - MINOR: acl: include pattern.h to make pattern migration more transparent
16886 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
16887 - MEDIUM: acl: use temp_pattern to store any integer-type information
16888 - MEDIUM: acl: use temp_pattern to store any address-type information
16889 - CLEANUP: acl: integer part of acl_test is not used anymore
16890 - MEDIUM: acl: use temp_pattern to store any string-type information
16891 - CLEANUP: acl: remove last data fields from the acl_test struct
16892 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
16893 - MEDIUM: patterns: the hdr() pattern is now of type string
16894 - DOC: add minimal documentation on how ACLs work internally
16895 - DOC: add a coding-style file
16896 - OPTIM: halog: keep a fast path for the lines-count only
16897 - CLEANUP: silence a warning when building on sparc
16898 - BUG: http: tighten the list of allowed characters in a URI
16899 - MEDIUM: http: block non-ASCII characters in URIs by default
16900 - DOC: add some documentation from RFC3986 about URI format
16901 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
16902 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
16903 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
16904 - MINOR: halog: add some help on the command line
16905 - BUILD: fix build error on FreeBSD
16906 - BUG: fix double free in peers config error path
16907 - MEDIUM: improve config check return codes
16908 - BUILD: make it possible to look for pcre in the default system paths
16909 - MINOR: config: emit a warning when 'default_backend' masks servers
16910 - MINOR: backend: rework the LC definition to support other connection-based algos
16911 - MEDIUM: backend: add the 'first' balancing algorithm
16912 - BUG: fix httplog trailing LF
16913 - MEDIUM: increase chunk-size limit to 2GB-1
16914 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
16915 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
16916 - BUG: checks: fix server maintenance exit sequence
16917 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
16918 - DOC: enumerate valid status codes for "observe layer7"
16919 - MINOR: buffer: switch a number of buffer args to const
16920 - CLEANUP: silence signedness warning in acl.c
16921 - BUG: stream_sock: si->release was not called upon shutw()
16922 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
16923 - BUG/CRITICAL: log: fix risk of crash in development snapshot
16924 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
16925 - MINOR: config: disable header captures in TCP mode and complain
16926
Willy Tarreau60612eb2011-09-10 23:43:11 +0200169272011/09/10 : 1.5-dev7
16928 - [BUG] fix binary stick-tables
16929 - [MINOR] http: *_dom matching header functions now also split on ":"
16930 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
16931 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
16932 - [MINOR] check: add redis check support
16933 - [DOC] small fixes to clearly distinguish between keyword and variables
16934 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
16935 - [DOC] Minor spelling fixes and grammatical enhancements
16936 - [CLEANUP] dumpstats: make symbols static where possible
16937 - [MINOR] Break out dumping table
16938 - [MINOR] Break out processing of clear table
16939 - [MINOR] Allow listing of stick table by key
16940 - [MINOR] Break out all stick table socat command parsing
16941 - [MINOR] More flexible clearing of stick table
16942 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
16943 - [MINOR] Allow showing and clearing by key of integer stick tables
16944 - [MINOR] Allow showing and clearing by key of string stick tables
16945 - [CLEANUP] Remove assigned but unused variables
16946 - [CLEANUP] peers.h: fix declarations
16947 - [CLEANUP] session.c: Make functions static where possible
16948 - [MINOR] Add active connection list to server
16949 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
16950 - [MINOR] Add down termination condition
16951 - [MINOR] Make appsess{,ion}_refresh static
16952 - [MINOR] Add rdp_cookie pattern fetch function
16953 - [CLEANUP] Remove unnecessary casts
16954 - [MINOR] Add non-stick server option
16955 - [MINOR] Consistently use error in tcp_parse_tcp_req()
16956 - [MINOR] Consistently free expr on error in cfg_parse_listen()
16957 - [MINOR] Free rdp_cookie_name on denint()
16958 - [MINOR] Free tcp rules on denint()
16959 - [MINOR] Free stick table pool on denint()
16960 - [MINOR] Free stick rules on denint()
16961 - [MEDIUM] Fix stick-table replication on soft-restart
16962 - [MEDIUM] Correct ipmask() logic
16963 - [MINOR] Correct type in table dump examples
16964 - [MINOR] Fix build error in stream_int_register_handler()
16965 - [MINOR] Use DPRINTF in assign_server()
16966 - [BUG] checks: http-check expect could fail a check on multi-packet responses
16967 - [DOC] fix minor typo in the "dispatch" doc
16968 - [BUG] proto_tcp: fix address binding on remote source
16969 - [MINOR] http: don't report the "haproxy" word on the monitoring response
16970 - [REORG] http: move HTTP error codes back to proto_http.h
16971 - [MINOR] http: make the "HTTP 200" status code configurable.
16972 - [MINOR] http: partially revert the chunking optimization for now
16973 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
16974 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
16975 - [MEDIUM] http: add support for "http-no-delay"
16976 - [OPTIM] http: optimize chunking again in non-interactive mode
16977 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
16978 - [OPTIM] stream_sock: don't use splice on too small payloads
16979 - [MINOR] config: make it possible to specify a cookie even without a server
16980 - [BUG] stats: support url-encoded forms
16981 - [MINOR] config: automatically compute a default fullconn value
16982 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
16983 - [DOC] add missing entry or stick store-response
16984 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
16985 - [BUG] halog: correctly handle truncated last line
16986 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
16987 - [MINOR] halog: add support for HTTP log matching (-H)
16988 - [MINOR] halog: gain back performance before SKIP_CHAR fix
16989 - [OPTIM] halog: cache some common fields positions
16990 - [OPTIM] halog: check once for correct line format and reuse the pointer
16991 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
16992 - [OPTIM] halog: remove support for tab delimiters in input data
16993 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
16994 - [MINOR] session: try to emit a 500 response on memory allocation errors
16995 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
16996 - [BUG] stream_sock: disable listener when system resources are exhausted
16997 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
16998 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
16999 - [MINOR] listeners: add listen_full() to mark a listener full
17000 - [MINOR] listeners: add support for queueing resource limited listeners
17001 - [MEDIUM] listeners: put listeners in queue upon resource shortage
17002 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
17003 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
17004 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
17005 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
17006 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
17007 - [MINOR] proxy: make session rate-limit more accurate
17008 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
17009 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
17010 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
17011 - [MINOR] task: new function task_schedule() to schedule a wake up
17012 - [MAJOR] proxy: finally get rid of maintain_proxies()
17013 - [BUG] proxy: stats frontend and peers were missing many initializers
17014 - [MEDIUM] listeners: add a global listener management task
17015 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
17016 - [DOC] fix typos, "#" is a sharp, not a dash
17017 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
17018 - [MEDIUM] checks: group health checks methods by values and save option bits
17019 - [MINOR] session-counters: add the ability to clear the counters
17020 - [BUG] check: http-check expect + regex would crash in defaults section
17021 - [MEDIUM] http: make x-forwarded-for addition conditional
17022 - [REORG] build: move syscall redefinition to specific places
17023 - [CLEANUP] update the year in the copyright banner
17024 - [BUG] possible crash in 'show table' on stats socket
17025 - [BUG] checks: use the correct destination port for sending checks
17026 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
17027 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
17028 - [DOC] fixed a few "sensible" -> "sensitive" errors
17029 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
17030 - [BUG] http: trailing white spaces must also be trimmed after headers
17031 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
17032 - [MINOR] http: take a capture of too large requests and responses
17033 - [MINOR] http: take a capture of truncated responses
17034 - [MINOR] http: take a capture of bad content-lengths.
17035 - [DOC] add a few old and uncommitted docs
17036 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
17037 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
17038 - [MINOR] halog: support backslash-escaped quotes
17039 - [CLEANUP] remove dirty left-over of a debugging message
17040 - [MEDIUM] stats: disable complex socket reservation for stats socket
17041 - [CLEANUP] remove a useless test in manage_global_listener_queue()
17042 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
17043 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
17044 - [MINOR] stats: report the current and max global connection rates
17045 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
17046 - [BUG] peers: don't pre-allocate 65000 connections to each peer
17047 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
17048 - [BUG] peers: the peer frontend must not emit any log
17049 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
17050 - [BUG] peers: don't keep a peers section which has a NULL frontend
17051 - [BUG] peers: ensure the peers are resumed if they were paused
17052 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
17053 - [MEDIUM] session: make session_shutdown() an independant function
17054 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
17055 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
17056 - [MEDIUM] stats: offer the possibility to kill sessions by server
17057 - [MINOR] halog: do not consider byte 0x8A as end of line
17058 - [MINOR] frontend: ensure debug message length is always initialized
17059 - [OPTIM] halog: make fgets parse more bytes by blocks
17060 - [OPTIM] halog: add assembly version of the field lookup code
17061 - [MEDIUM] poll: add a measurement of idle vs work time
17062 - [CLEANUP] startup: report only the basename in the usage message
17063 - [MINOR] startup: add an option to change to a new directory
17064 - [OPTIM] task: don't scan the run queue if we know it's empty
17065 - [BUILD] stats: stdint is not present on solaris
17066 - [DOC] update the README file to reflect new naming rules for patches
17067 - [MINOR] stats: report the number of requests intercepted by the frontend
17068 - [DOC] update ROADMAP file
17069
Willy Tarreau04df1122011-04-08 00:56:41 +0200170702011/04/08 : 1.5-dev6
17071 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
17072 - [BUG] TCP source tracking was broken with IPv6 changes
17073 - [BUG] stick-tables did not work when converting IPv6 to IPv4
17074 - [CRITICAL] fix risk of crash when dealing with space in response cookies
17075
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200170762011/03/29 : 1.5-dev5
17077 - [BUG] standard: is_addr return value for IPv4 was inverted
17078 - [MINOR] update comment about IPv6 support for server
17079 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
17080 - [DOC] update IPv6 support for bind
17081 - [DOC] document IPv6 support for server
17082 - [DOC] fix a minor typo
17083 - [MEDIUM] IPv6 support for syslog
17084 - [DOC] document IPv6 support for syslog
17085 - [MEDIUM] IPv6 support for stick-tables
17086 - [DOC] document IPv6 support for stick-tables
17087 - [DOC] update ROADMAP file
17088 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
17089 - [MINOR] frontend: add a make_proxy_line function
17090 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
17091 - [MEDIUM] server: add support for the "send-proxy" option
17092 - [DOC] update the spec on the proxy protocol
17093 - [BUILD] proto_tcp: fix build issue with CTTPROXY
17094 - [DOC] update ROADMAP file
17095 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
17096 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
17097 - [BUILD] add the USE_GETADDRINFO build option
17098 - [TESTS] provide a test case for various address formats
17099 - [BUG] session: conn_retries was not always initialized
17100 - [BUG] log: retrieve the target from the session, not the SI
17101 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
17102 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
17103 - [BUG] http: fix content-length handling on 32-bit platforms
17104 - [OPTIM] buffers: uninline buffer_forward()
17105 - [BUG] stream_sock: fix handling for server side PROXY protocol
17106 - [MINOR] acl: add support for table_cnt and table_avl matches
17107 - [DOC] update ROADMAP file
17108
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100171092011/03/13 : 1.5-dev4
17110 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
17111 - [MINOR] unix sockets : inherits the backlog size from the listener
17112 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
17113 - [DOC] fix a minor typo
17114 - [DOC] fix ignore-persist documentation
17115 - [MINOR] add warnings on features not compatible with multi-process mode
17116 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
17117 - [MINOR] stats: add support for several packets in stats admin
17118 - [BUG] stats: admin commands must check the proxy state
17119 - [BUG] stats: admin web interface must check the proxy state
17120 - [MINOR] http: add pattern extraction method to stick on query string parameter
17121 - [MEDIUM] add internal support for IPv6 server addresses
17122 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
17123 - [MINOR] log: add support for passing the forwarded hostname
17124 - [MINOR] log: ability to override the syslog tag
17125 - [MINOR] checks: add PostgreSQL health check
17126 - [DOC] update ROADMAP file
17127 - [BUILD] pattern: use 'int' instead of 'int32_t'
17128 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
17129 - [BUG] debug: report the correct poller list in verbose mode
17130 - [BUG] capture: do not capture a cookie if there is no memory left
17131 - [BUG] appsession: fix possible double free in case of out of memory
17132 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
17133 - [BUG] http: correctly update the header list when removing two consecutive headers
17134 - [BUILD] add the CPU=native and ARCH=32/64 build options
17135 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
17136 - [CLEANUP] hash: move the avalanche hash code globally available
17137 - [MEDIUM] hash: add support for an 'avalanche' hash-type
17138 - [DOC] update roadmap file
17139 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
17140 - [OPTIM] http: don't send each chunk in a separate packet
17141 - [DOC] fix minor typos reported recently in the peers section
17142 - [DOC] fix another typo in the doc
17143 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
17144 - [BUG] http chunking: don't report a parsing error on connection errors
17145 - [BUG] stream_interface: truncate buffers when sending error messages
17146 - [MINOR] http: support wrapping messages in error captures
17147 - [MINOR] http: capture incorrectly chunked message bodies
17148 - [MINOR] stats: add global event ID and count
17149 - [BUG] http: analyser optimizations broke pipelining
17150 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
17151 - [BUG] http: fix incorrect error reporting during data transfers
17152 - [CRITICAL] session: correctly leave turn-around and queue states on abort
17153 - [BUG] session: release slot before processing pending connections
17154 - [MINOR] tcp: add support for dynamic MSS setting
17155 - [BUG] stick-table: correctly terminate string keys during lookups
17156 - [BUG] acl: fix handling of empty lines in pattern files
17157 - [BUG] stick-table: use the private buffer when padding strings
17158 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
17159 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
17160 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
17161 - [REVERT] undo the stick-table string key lookup fixes
17162 - [MINOR] http: improve url_param pattern extraction to ignore empty values
17163 - [BUILD] frontend: shut a warning with TCP_MAXSEG
17164 - [BUG] http: update the header list's tail when removing the last header
17165 - [DOC] fix minor typo in the proxy protocol doc
17166 - [DOC] fix typos (http-request instead of http-check)
17167 - [BUG] http: use correct ACL pointer when evaluating authentication
17168 - [BUG] cfgparse: correctly count one socket per port in ranges
17169 - [BUG] startup: set the rlimits before binding ports, not after.
17170 - [BUG] acl: srv_id must return no match when the server is NULL
17171 - [MINOR] acl: add ability to check for internal response-only parameters
17172 - [MINOR] acl: srv_id is only valid in responses
17173 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
17174 - [BUG] acl: fd leak when reading patterns from file
17175 - [DOC] fix minor typo in "usesrc"
17176 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
17177 - [BUG] http: fix computation of message body length after forwarding has started
17178 - [BUG] http: balance url_param did not work with first parameters on POST
17179 - [TESTS] update the url_param regression test to test check_post too
17180 - [DOC] update ROADMAP
17181 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
17182 - [BUG] config: don't crash on empty pattern files.
17183 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
17184 - [REORG] stream_interface: move the st0, st1 and private members to the applet
17185 - [REORG] stream_interface: split the struct members in 3 parts
17186 - [REORG] session: move client and server address to the stream interface
17187 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
17188 - [MEDIUM] stream_interface: store the target pointer and type
17189 - [CLEANUP] stream_interface: remove the applet.handler pointer
17190 - [MEDIUM] log: take the logged server name from the stream interface
17191 - [CLEANUP] session: remove data_source from struct session
17192 - [CLEANUP] stats: make all dump functions only rely on the stream interface
17193 - [REORG] session: move the data_ctx struct to the stream interface's applet
17194 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
17195 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
17196 - [MINOR] session: add a pointer to the new target into the session
17197 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
17198 - [CLEANUP] stream_interface: use inline functions to manipulate targets
17199 - [MAJOR] session: remove the ->srv pointer from struct session
17200 - [MEDIUM] stats: split frontend and backend stats
17201 - [MEDIUM] http: always evaluate http-request rules before stats http-request
17202 - [REORG] http: move the http-request rules to proto_http
17203 - [BUG] http: stats were not incremented on http-request deny
17204 - [MINOR] checks: report it if checks fail due to socket creation error
17205
Willy Tarreau442e8342010-11-11 23:29:35 +0100172062010/11/11 : 1.5-dev3
17207 - [DOC] fix http-request documentation
17208 - [MEDIUM] enable/disable servers from the stats web interface
17209 - [MEDIUM] stats: add an admin level
17210 - [DOC] stats: document the "stats admin" statement
17211 - [MINOR] startup: print the proxy socket which caused an error
17212 - [CLEANUP] Remove unneeded chars allocation
17213 - [MINOR] config: detect options not supported due to compilation options
17214 - [MINOR] Add pattern's fetchs payload and payload_lv
17215 - [MINOR] frontend: improve accept-proxy header parsing
17216 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
17217 - [MEDIUM] Enhance message errors management on binds
17218 - [MINOR] Manage unix socket source field on logs
17219 - [MINOR] Manage unix socket source field on session dump on sock stats
17220 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
17221 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
17222 - [MINOR] Manage socket type unix for some logs
17223 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
17224 - [MINOR] Support listener's sockets unix on http logs.
17225 - [MEDIUM] Add supports of bind on unix sockets.
17226 - [BUG] stick table purge failure if size less than 255
17227 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
17228 - [MEDIUM] Implement tcp inspect response rules
17229 - [DOC] tcp-response content and inspect
17230 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
17231 - [DOC] acls rep_ssl_hello and req_ssl_hello
17232 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
17233 - [DOC] new type binary in stick-table
17234 - [DOC] stick store-response and new patterns payload and payload_lv
17235 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
17236 - [MEDIUM] Create updates tree on stick table to manage sync.
17237 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
17238 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
17239 - [MEDIUM] Manage soft stop on peers proxy
17240 - [DOC] add documentation for peers section
17241 - [MINOR] checks: add support for LDAPv3 health checks
17242 - [MINOR] add better support to "mysql-check"
17243 - [BUG] Restore info about available active/backup servers
17244 - [CONTRIB] Update haproxy.pl
17245 - [CONTRIB] Update Cacti Tempates
17246 - [CONTRIB] add templates for Cacti.
17247 - [BUG] http: don't consider commas as a header delimitor within quotes
17248 - [MINOR] support a global jobs counter
17249 - [DOC] add a summary about cookie incompatibilities between specs and browsers
17250 - [DOC] fix description of cookie "insert" and "indirect" modes
17251 - [MEDIUM] http: fix space handling in the request cookie parser
17252 - [MEDIUM] http: fix space handling in the response cookie parser
17253 - [DOC] fix typo in the queue() definition (backend, not frontend)
17254 - [BUG] deinit: unbind listeners before freeing them
17255 - [BUG] stream_interface: only call si->release when both dirs are closed
17256 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
17257 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
17258 - [MINOR] halog: add '-tc' to sort by termination codes
17259 - [MINOR] halog: skip non-traffic logs for -st and -tc
17260 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
17261 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
17262 - [DOC] bind option is "defer-accept", not "defer_accept"
17263 - [DOC] missing index entry for http-check send-state
17264 - [DOC] tcp-request inspect-delay is for backends too
17265 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
17266 - [BUG] stream_sock: try to flush any extra pending request data after a POST
17267 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
17268 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
17269 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
17270 - [MEDIUM] checks: add support for HTTP contents lookup
17271 - [TESTS] add test-check-expect to test various http-check methods
17272 - [MINOR] global: add "tune.chksize" to change the default check buffer size
17273 - [MINOR] cookie: add options "maxidle" and "maxlife"
17274 - [MEDIUM] cookie: support client cookies with some contents appended to their value
17275 - [MINOR] http: make some room in the transaction flags to extend cookies
17276 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
17277 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
17278 - [MINOR] add encode/decode function for 30-bit integers from/to base64
17279 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
17280 - [MEDIUM] cookie: set the date in the cookie if needed
17281 - [DOC] document the cookie maxidle and maxlife parameters
17282 - [BUG] checks: don't log backend down for all zero-weight servers
17283 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
17284 - [BUG] config: report correct keywords for "observe"
17285 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
17286 - [MINOR] acl: add the http_req_first match
17287 - [DOC] fix typos about bind-process syntax
17288 - [BUG] cookie: correctly unset default cookie parameters
17289 - [MINOR] cookie: add support for the "preserve" option
17290 - [BUG] ebtree: fix duplicate strings insertion
17291 - [CONTRIB] halog: report per-url counts, errors and times
17292 - [CONTRIB] halog: minor speed improvement in timer parser
17293 - [MINOR] buffers: add a new request analyser flag for PROXY mode
17294 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
17295 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
17296 - [MINOR] standard: change arg type from const char* to char*
17297 - [MINOR] frontend: add a new analyser to parse a proxied connection
17298 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
17299 - [DOC] add the proxy protocol's specifications
17300 - [DOC] document the 'accept-proxy' bind option
17301 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
17302 - [DOC] add references to unix socket handling
17303 - [MINOR] move MAXPATHLEN definition to compat.h
17304 - [MEDIUM] unix sockets: cleanup the error reporting path
17305 - [BUG] session: don't stop forwarding of data upon last packet
17306 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
17307 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
17308 - [BUG] accept: don't close twice upon error
17309 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
17310 - [OPTIM] stream_sock: don't clear FDs that are already cleared
17311 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
17312
Willy Tarreau37242fa2010-08-28 19:21:00 +0200173132010/08/28 : 1.5-dev2
17314 - [MINOR] startup: release unused structs after forking
17315 - [MINOR] startup: don't wait for nothing when no old pid remains
17316 - [CLEANUP] reference product branch 1.5
17317 - [MEDIUM] signals: add support for registering functions and tasks
17318 - [MEDIUM] signals: support redistribution of signal zero when stopping
17319 - [BUG] http: don't set auto_close if more data are expected
17320
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200173212010/08/25 : 1.5-dev1
17322 - [BUG] stats: session rate limit gets garbaged in the stats
17323 - [DOC] mention 'option http-server-close' effect in Tq section
17324 - [DOC] summarize and highlight persistent connections behaviour
17325 - [DOC] add configuration samples
17326 - [BUG] http: dispatch and http_proxy modes were broken for a long time
17327 - [BUG] http: the transaction must be initialized even in TCP mode
17328 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
17329 - [BUG] consistent hash: balance on all servers, not only 2 !
17330 - [CONTRIB] halog: report per-server status codes, errors and response times
17331 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
17332 - [BUG] client: always ensure to zero rep->analysers
17333 - [BUG] session: clear BF_READ_ATTACHED before next I/O
17334 - [BUG] http: automatically close response if req is aborted
17335 - [BUG] proxy: connection rate limiting was eating lots of CPU
17336 - [BUG] http: report correct flags in case of client aborts during body
17337 - [TESTS] refine non-regression tests and add 4 new tests
17338 - [BUG] debug: wrong pointer was used to report a status line
17339 - [BUG] debug: correctly report truncated messages
17340 - [DOC] document the "dispatch" keyword
17341 - [BUG] stick_table: fix possible memory leak in case of connection error
17342 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
17343 - [MINOR] accept: count the incoming connection earlier
17344 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
17345 - [CLEANUP] client: move some ACLs away to their respective locations
17346 - [CLEANUP] rename client -> frontend
17347 - [MEDIUM] separate protocol-level accept() from the frontend's
17348 - [MINOR] proxy: add a list to hold future layer 4 rules
17349 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
17350 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
17351 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
17352 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
17353 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
17354 - [CLEANUP] buffer->cto is not used anymore
17355 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
17356 - [MEDIUM] session: initialize server-side timeouts after connect()
17357 - [MEDIUM] backend: initialize the server stream_interface upon connect()
17358 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
17359 - [MEDIUM] session: move the conn_retries attribute to the stream interface
17360 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
17361 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
17362 - [MAJOR] frontend: reorder the session initialization upon accept
17363 - [MINOR] proxy: add an accept() callback for the application layer
17364 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
17365 - [MEDIUM] stats: rely on the standard session_accept() function
17366 - [MINOR] buffer: refine the flags that may wake an analyser up.
17367 - [MINOR] stream_sock: don't dereference a non-existing frontend
17368 - [MINOR] session: differenciate between accepted connections and received connections
17369 - [MEDIUM] frontend: count the incoming connection earlier
17370 - [MINOR] frontend: count denied TCP requests separately
17371 - [CLEANUP] stick_table: add/clarify some comments
17372 - [BUILD] memory: add a few missing parenthesis to the pool management macros
17373 - [MINOR] stick_table: add support for variable-sized data
17374 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
17375 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
17376 - [MEDIUM] stick_table: add room for extra data types
17377 - [MINOR] stick_table: add support for "conn_cum" data type.
17378 - [MEDIUM] stick_table: don't overwrite data when storing an entry
17379 - [MINOR] config: initialize stick tables after all the parsing
17380 - [MINOR] stick_table: provide functions to return stksess data from a type
17381 - [MEDIUM] stick_table: move the server ID to a generic data type
17382 - [MINOR] stick_table: enable it for frontends too
17383 - [MINOR] stick_table: export the stick_table_key
17384 - [MINOR] tcp: add per-source connection rate limiting
17385 - [MEDIUM] stick_table: separate storage and update of session entries
17386 - [MEDIUM] stick-tables: add a reference counter to each entry
17387 - [MINOR] session: add a pointer to the tracked counters for the source
17388 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
17389 - [BUG] config: report the correct proxy type in tcp-request errors
17390 - [MINOR] config: provide a function to quote args in a more friendly way
17391 - [BUG] stick_table: the fix for the memory leak caused a regression
17392 - [MEDIUM] backend: support servers on 0.0.0.0
17393 - [BUG] stick-table: correctly refresh expiration timers
17394 - [MEDIUM] stream-interface: add a ->release callback
17395 - [MINOR] proxy: add a "parent" member to the structure
17396 - [MEDIUM] session: make it possible to call an I/O handler on both SI
17397 - [MINOR] tools: add a fast div64_32 function
17398 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
17399 - [MINOR] errors: provide new status codes for config parsing functions
17400 - [BUG] http: denied requests must not be counted as denied resps in listeners
17401 - [MINOR] tools: add a get_std_op() function to parse operators
17402 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
17403 - [MAJOR] stream_sock: better wakeup conditions on read()
17404 - [BUG] session: analysers must be checked when SI state changes
17405 - [MINOR] http: reset analysers to listener's, not frontend's
17406 - [MEDIUM] session: support "tcp-request content" rules in backends
17407 - [BUILD] always match official tags when doing git-tar
17408 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
17409 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
17410 - [MINOR] tcp: src_count acl does not have a permanent result
17411 - [MAJOR] session: add track-counters to track counters related to the session
17412 - [MINOR] stick-table: provide a table lookup function
17413 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
17414 - [MEDIUM] session: move counter ACL fetches from proto_tcp
17415 - [MEDIUM] session: add concurrent connections counter
17416 - [MEDIUM] session: add data in and out volume counters
17417 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
17418 - [MEDIUM] session-counters: automatically update tracked connection count
17419 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
17420 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
17421 - [MEDIUM] session: add a counter on the cumulated number of sessions
17422 - [MINOR] config: support a comma-separated list of store data types in stick-table
17423 - [MEDIUM] stick-tables: add support for arguments to data_types
17424 - [MEDIUM] stick-tables: add stored data argument type checking
17425 - [MEDIUM] session counters: add conn_rate and sess_rate counters
17426 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
17427 - [MINOR] stktable: add a stktable_update_key() function
17428 - [MINOR] session-counters: add a general purpose counter (gpc0)
17429 - [MEDIUM] session-counters: add HTTP req/err tracking
17430 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
17431 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
17432 - [CLEANUP] stick-table: declare stktable_data_types as extern
17433 - [MEDIUM] stick-table: make use of generic types for stored data
17434 - [MINOR] stats: correctly report errors on "show table" and "clear table"
17435 - [MEDIUM] stats: add the ability to dump table entries matching criteria
17436 - [DOC] configuration: document all the new tracked counters
17437 - [DOC] stats: document "show table" and "clear table"
17438 - [MAJOR] session-counters: split FE and BE track counters
17439 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
17440 - [MEDIUM] session counters: automatically remove expired entries.
17441 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
17442 - [MEDIUM] session-counters: make it possible to count connections from frontend
17443 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
17444 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
17445 - [CLEANUP] stats: use stksess_kill() to remove table entries
17446 - [DOC] update the references to session counters and to tcp-request connection
17447 - [DOC] cleanup: split a few long lines
17448 - [MEDIUM] http: forward client's close when abortonclose is set
17449 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
17450 - [BUG] stats: global stats timeout may be specified before stats socket.
17451 - [BUG] conf: add tcp-request content rules to the correct list
17452
Willy Tarreau21475e32010-05-23 08:46:08 +0200174532010/05/23 : 1.5-dev0
17454 - exact copy of 1.4.6
17455
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200174562010/05/16 : 1.4.6
17457 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
17458 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
17459 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
17460 - [DOC] add a few precisions about the use of RDP cookies
17461
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200174622010/05/13 : 1.4.5
17463 - [DOC] report minimum kernel version for tproxy in the Makefile
17464 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
17465 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
17466 - [DOC] fix ignore-persist/force-persist documentation
17467 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
17468 - [DOC] doc/configuration.txt: fix typos
17469 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
17470 - [MINOR] fix possible crash in debug mode with invalid responses
17471 - [MINOR] halog: add support for statisticts on status codes
17472 - [OPTIM] halog: use a faster zero test in fgets()
17473 - [OPTIM] halog: minor speedup by using unlikely()
17474 - [OPTIM] halog: speed up fgets2-64 by about 10%
17475 - [DOC] refresh the README file and merge the CONTRIB file into it
17476 - [MINOR] acl: support loading values from files
17477 - [MEDIUM] ebtree: upgrade to version 6.0
17478 - [MINOR] acl trees: add flags and union members to store values in trees
17479 - [MEDIUM] acl: add ability to insert patterns in trees
17480 - [MEDIUM] acl: add tree-based lookups of exact strings
17481 - [MEDIUM] acl: add tree-based lookups of networks
17482 - [MINOR] acl: ignore empty lines and comments in pattern files
17483 - [MINOR] stick-tables: add support for "stick on hdr"
17484
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200174852010/04/07 : 1.4.4
17486 - [BUG] appsession should match the whole cookie name
17487 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
17488 - [MEDIUM] backend: move the transparent proxy address selection to backend
17489 - [MINOR] add very fast IP parsing functions
17490 - [MINOR] add new tproxy flags for dynamic source address binding
17491 - [MEDIUM] add ability to connect to a server from an IP found in a header
17492 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
17493 - [MINOR] http: make it possible to pretend keep-alive when doing close
17494 - [MINOR] config: report "default-server" instead of "(null)" in error messages
17495
Willy Tarreau75934a12010-03-30 09:50:08 +0200174962010/03/30 : 1.4.3
17497 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
17498 - [MEDIUM] session: better fix for connection to servers with closed input
17499 - [DOC] indicate in the doc how to bind to port ranges
17500 - [BUG] backend: L7 hashing must not be performed on incomplete requests
17501 - [TESTS] add a simple program to test connection resets
17502 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
17503 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
17504 - [MINOR] config: allow "slowstart 0s"
17505 - [BUILD] 'make tags' did not consider files ending in '.c'
17506 - [MINOR] checks: add the ability to disable a server in the config
17507
Willy Tarreauda618cb2010-03-17 23:41:57 +0100175082010/03/17 : 1.4.2
17509 - [CLEANUP] product branch update
17510 - [DOC] Some more documentation cleanups
17511 - [BUG] clf logs segfault when capturing a non existant header
17512 - [OPTIM] config: only allocate check buffer when checks are enabled
17513 - [MEDIUM] checks: support multi-packet health check responses
17514 - [CLEANUP] session: remove duplicate test
17515 - [BUG] http: don't wait for response data to leave buffer is client has left
17516 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
17517 - [MINOR] stats: don't send empty lines in "show errors"
17518 - [MINOR] stats: make the data dump function reusable for other purposes
17519 - [MINOR] stats socket: add show sess <id> to dump details about a session
17520 - [BUG] stats: connection reset counters must be plain ascii, not HTML
17521 - [BUG] url_param hash may return a down server
17522 - [MINOR] force null-termination of hostname
17523 - [MEDIUM] connect to servers even when the input has already been closed
17524 - [BUG] don't merge anonymous ACLs !
17525 - [BUG] config: fix endless loop when parsing "on-error"
17526 - [MINOR] http: don't mark a server as failed when it returns 501/505
17527 - [OPTIM] checks: try to detect the end of response without polling again
17528 - [BUG] checks: don't report an error when recv() returns an error after data
17529 - [BUG] checks: don't abort when second poll returns an error
17530 - [MINOR] checks: make shutdown() silently fail
17531 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
17532 - [BUG] init: unconditionally catch SIGPIPE
17533 - [BUG] checks: don't wait for a close to start parsing the response
17534
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100175352010/03/04 : 1.4.1
17536 - [BUG] Clear-cookie path issue
17537 - [DOC] fix typo on stickiness rules
17538 - [BUILD] fix BSD and OSX makefiles for missing files
17539 - [BUILD] includes order breaks OpenBSD build
17540 - [BUILD] fix some build warnings on Solaris with is* macros
17541 - [BUG] logs: don't report "last data" when we have just closed after an error
17542 - [BUG] logs: don't report "proxy request" when server closes early
17543 - [BUILD] fix platform-dependant build issues related to crypt()
17544 - [STATS] count transfer aborts caused by client and by server
17545 - [STATS] frontend requests were not accounted for failed requests
17546 - [MINOR] report total number of processed connections when stopping a proxy
17547 - [DOC] be more clear about the limitation to one single monitor-net entry
17548
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100175492010/02/26 : 1.4.0
17550 - [MINOR] stats: report maint state for tracking servers too
17551 - [DOC] fix summary to add pattern extraction
17552 - [DOC] Documentation cleanups
17553 - [BUG] cfgparse memory leak and missing free calls in deinit()
17554 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
17555 - [EXAMPLES] add auth.cfg
17556 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
17557 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
17558 - [BUILD] auth: don't use unnamed unions
17559 - [BUG] config: report unresolvable host names as errors
17560 - [BUILD] fix build breakage with DEBUG_FULL
17561 - [DOC] fix a typo about timeout check and clarify the explanation.
17562 - [MEDIUM] http: don't use trash to realign large buffers
17563 - [STATS] report HTTP requests (total and rate) in frontends
17564 - [STATS] separate frontend and backend HTTP stats
17565 - [MEDIUM] http: revert to use a swap buffer for realignment
17566 - [MINOR] stats: report the request rate in frontends as cell titles
17567 - [MINOR] stats: mark areas with an underline when tooltips are available
17568 - [DOC] reorder some entries to maintain the alphabetical order
17569 - [DOC] cleanup of the keyword matrix
17570
Willy Tarreaub05613d2010-02-02 10:18:28 +0100175712010/02/02 : 1.4-rc1
17572 - [MEDIUM] add a maintenance mode to servers
17573 - [MINOR] http-auth: last fix was wrong
17574 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
17575 - [MINOR] Base64 decode
17576 - [MINOR] generic auth support with groups and encrypted passwords
17577 - [MINOR] add ACL_TEST_F_NULL_MATCH
17578 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
17579 - [MINOR] acl: add http_auth and http_auth_group
17580 - [MAJOR] use the new auth framework for http stats
17581 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
17582 - [STATS] make it possible to change a CLI connection timeout
17583 - [BUG] patterns: copy-paste typo in type conversion arguments
17584 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
17585 - [MINOR] standard: str2mask: string to netmask converter
17586 - [MINOR] pattern: add support for argument parsers for converters
17587 - [MINOR] pattern: add the "ipmask()" converting function
17588 - [MINOR] config: off-by-one in "stick-table" after list of converters
17589 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
17590 - [BUG] restore accidentely removed line in last patch !
17591 - [MINOR] checks: make the HTTP check code add the CRLF itself
17592 - [MINOR] checks: add the server's status in the checks
17593 - [BUILD] halog: make without arch-specific optimizations
17594 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
17595 - [MINOR] http: disable keep-alive when process is going down
17596 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
17597 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
17598 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
17599 - [MINOR] prepare req_*/rsp_* to receive a condition
17600 - [CLEANUP] config: specify correct const char types to warnif_* functions
17601 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
17602 - [MEDIUM] http: make the request filter loop check for optional conditions
17603 - [MEDIUM] http: add support for conditional request filter execution
17604 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
17605 - [MEDIUM] http: add support for conditional request header addition
17606 - [MEDIUM] http: add support for conditional response header rewriting
17607 - [DOC] add some missing ACLs about response header matching
17608 - [MEDIUM] http: add support for proxy authentication
17609 - [MINOR] http-auth: make the 'unless' keyword work as expected
17610 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
17611 - [MEDIUM] add support for anonymous ACLs
17612 - [MEDIUM] http: switch to tunnel mode after status 101 responses
17613 - [MEDIUM] http: stricter processing of the CONNECT method
17614 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
17615 - [MINOR] config: fix too large ssl-hello-check message.
17616 - [BUG] fix error response in case of server error
17617
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100176182010/01/25 : 1.4-dev8
17619 - [CLEANUP] Keep in sync "defaults" support between documentation and code
17620 - [MEDIUM] http: add support for Proxy-Connection header
17621 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
17622 - [MINOR] http: remove a copy-paste typo in transaction cleaning
17623 - [BUG] http: trim any excess buffer data when recycling a connection
17624
Willy Tarreau6939b552010-01-25 01:54:37 +0100176252010/01/25 : 1.4-dev7
17626 - [BUG] appsession: possible memory leak in case of out of memory condition
17627 - [MINOR] config: don't accept 'appsession' in defaults section
17628 - [MINOR] Add function to parse a size in configuration
17629 - [MEDIUM] Add stick table (persistence) management functions and types
17630 - [MEDIUM] Add pattern fetch management types and functions
17631 - [MEDIUM] Add src dst and dport pattern fetches.
17632 - [MEDIUM] Add stick table configuration and init.
17633 - [MEDIUM] Add stick and store rules analysers.
17634 - [MINOR] add option "mysql-check" to use MySQL health checks
17635 - [BUG] health checks: fix requeued message
17636 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
17637 - [BUG] checks: fix newline termination
17638 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
17639 - [BUG] appsession's sessid must be reset at end of transaction
17640 - [BUILD] appsession did not build anymore under gcc-2.95
17641 - [BUG] server redirection used an uninitialized string.
17642 - [MEDIUM] http: fix handling of message pointers
17643 - [MINOR] http: fix double slash prefix with server redirect
17644 - [MINOR] http redirect: add the ability to append a '/' to the URL
17645 - [BUG] stream_interface: fix retnclose and remove cond_close
17646 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
17647 - [MINOR] http: move appsession 'sessid' from session to http_txn
17648 - [OPTIM] reorder http_txn to optimize cache lines placement
17649 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
17650 - [MINOR] http: add a separate "http-keep-alive" timeout
17651 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
17652 - [DOC] fix various too large lines
17653 - [DOC] remove several trailing spaces
17654 - [DOC] add the doc about stickiness
17655 - [BUILD] remove a warning in standard.h on AIX
17656 - [BUG] checks: chars are unsigned on AIX, check was always true
17657 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
17658 - [BUG] check: we must not check for error before reading a response
17659 - [BUG] buffers: remove remains of wrong obsolete length check
17660 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
17661 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
17662 - [MEDIUM] http: don't switch to tunnel mode upon close
17663 - [DOC] add documentation about connection header processing
17664 - [MINOR] http: add http_remove_header2() to remove a header value.
17665 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
17666 - [MAJOR] http: rework request Connection header handling
17667 - [MAJOR] http: rework response Connection header handling
17668 - [MINOR] add the ability to force kernel socket buffer size.
17669 - [BUG] http_server_error() must not purge a previous pending response
17670 - [OPTIM] http: don't delay response if next request is incomplete
17671 - [MINOR] add the "force-persist" statement to force persistence on down servers
17672 - [MINOR] http: logs must report persistent connections to down servers
17673 - [BUG] buffer_replace2 must never change the ->w entry
17674
Willy Tarreau11f8f542010-01-08 07:49:44 +0100176752010/01/08 : 1.4-dev6
17676 - [BUILD] warning in stream_interface.h
17677 - [BUILD] warning ultoa_r returns char *
17678 - [MINOR] hana: only report stats if it is enabled
17679 - [MINOR] stats: add "a link" & "a href" for sockets
17680 - [MINOR]: stats: add show-legends to report additional informations
17681 - [MEDIUM] default-server support
17682 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
17683 - [MINOR] stats: add href to tracked server
17684 - [BUG] stats: show UP/DOWN status also in tracking servers
17685 - [DOC] Restore ability to search a keyword at the beginning of a line
17686 - [BUG] stats: cookie should be reported under backend not under proxy
17687 - [BUG] cfgparser/stats: fix error message
17688 - [BUG] http: disable auto-closing during chunk analysis
17689 - [BUG] http: fix hopefully last closing issue on data forwarding
17690 - [DEBUG] add an http_silent_debug function to debug HTTP states
17691 - [MAJOR] http: fix again the forward analysers
17692 - [BUG] http_process_res_common() must not skip the forward analyser
17693 - [BUG] http: some possible missed close remain in the forward chain
17694 - [BUG] http: redirect needed to be updated after recent changes
17695 - [BUG] http: don't set no-linger on response in case of forced close
17696 - [MEDIUM] http: restore the original behaviour of option httpclose
17697 - [TESTS] add a file to test various connection modes
17698 - [BUG] http: check options before the connection header
17699 - [MAJOR] session: fix the order by which the analysers are run
17700 - [MEDIUM] session: also consider request analysers added during response
17701 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
17702 - [BUG] http: memory leak with captures when using keep-alive
17703 - [BUG] http: fix for capture memory leak was incorrect
17704 - [MINOR] http redirect: use proper call to return last response
17705 - [MEDIUM] http: wait for some flush of the response buffer before a new request
17706 - [MEDIUM] session: limit the number of analyser loops
17707
Willy Tarreau1f445892010-01-03 23:23:36 +0100177082010/01/03 : 1.4-dev5
17709 - [MINOR] server tracking: don't care about the tracked server's mode
17710 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
17711 - [MEDIUM] appsession: add the "request-learn" option
17712 - [BUG] Configuration parser bug when escaping characters
17713 - [MINOR] CSS & HTML fun
17714 - [MINOR] Collect & provide http response codes received from servers
17715 - [BUG] Fix silly typo: hspr_other -> hrsp_other
17716 - [MINOR] Add "a name" to stats page
17717 - [MINOR] add additional "a href"s to stats page
17718 - [MINOR] Collect & provide http response codes for frontends, fix backends
17719 - [DOC] some small spell fixes and unifications
17720 - [MEDIUM] Decrease server health based on http responses / events, version 3
17721 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
17722 - [BUG] config: fix erroneous check on cookie domain names, again
17723 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
17724 - [DOC] trivial fix for man page
17725 - [MINOR] config: report all supported options for the "bind" keyword
17726 - [MINOR] tcp: add support for the defer_accept bind option
17727 - [MINOR] unix socket: report the socket path in case of bind error
17728 - [CONTRIB] halog: support searching by response time
17729 - [DOC] add a reminder about obsolete documents
17730 - [DOC] point to 1.4 doc, not 1.3
17731 - [DOC] option tcp-smart-connect was missing from index
17732 - [MINOR] http: detect connection: close earlier
17733 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
17734 - [OPTIM] move some rarely used fields out of fdtab
17735 - [MEDIUM] fd: merge fd_list into fdtab
17736 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
17737 - [MINOR] http: add new transaction flags for keep-alive and content-length
17738 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
17739 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
17740 - [MINOR] http request: simplify the test of no-data
17741 - [MEDIUM] http request: simplify POST length detection
17742 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
17743 - [MAJOR] http: create the analyser which waits for a response
17744 - [MINOR] http: pre-set the persistent flags in the transaction
17745 - [MEDIUM] http response: check body length and set transaction flags
17746 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
17747 - [MINOR] http: remove the last call to stream_int_return
17748 - [IMPORT] import ebtree v5.0 into directory ebtree/
17749 - [MEDIUM] build: switch ebtree users to use new ebtree version
17750 - [CLEANUP] ebtree: remove old unused files
17751 - [BUG] definitely fix regparm issues between haproxy core and ebtree
17752 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
17753 - [BUILD] missing #ifndef in ebmbtree.h
17754 - [BUILD] missing #ifndef in ebsttree.h
17755 - [MINOR] tools: add hex2i() function to convert hex char to int
17756 - [MINOR] http: create new MSG_BODY sub-states
17757 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
17758 - [DOC] option is "defer-accept", not "defer_accept"
17759 - [MINOR] http: keep pointer to beginning of data
17760 - [BUG] x-original-to: name was not set in default instance
17761 - [MINOR] http: detect tunnel mode and set it in the session
17762 - [BUG] config: fix error message when config file is not found
17763 - [BUG] config: fix wrong handling of too large argument count
17764 - [BUG] config: disable 'option httplog' on TCP proxies
17765 - [BUG] config: fix erroneous check on cookie domain names
17766 - [BUG] config: cookie domain was ignored in defaults sections
17767 - [MINOR] config: support passing multiple "domain" statements to cookies
17768 - [MINOR] ebtree: add functions to lookup non-null terminated strings
17769 - [MINOR] config: don't report error on all subsequent files on failure
17770 - [BUG] second fix for the printf format warning
17771 - [BUG] check_post: limit analysis to the buffer length
17772 - [MEDIUM] http: process request body in a specific analyser
17773 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
17774 - [MAJOR] http: completely process the "connection" header
17775 - [MINOR] http: only consider chunk encoding with HTTP/1.1
17776 - [MAJOR] buffers: automatically compute the maximum buffer length
17777 - [MINOR] http: move the http transaction init/cleanup code to proto_http
17778 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
17779 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
17780 - [MEDIUM] http: rework chunk-size parser
17781 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
17782 - [MINOR] buffers: add buffer_ignore() to skip some bytes
17783 - [BUG] http: offsets are relative to the buffer, not to ->som
17784 - [MEDIUM] http: automatically re-aling request buffer
17785 - [BUG] http: body parsing must consider the start of message
17786 - [MINOR] new function stream_int_cond_close()
17787 - [MAJOR] http: implement body parser
17788 - [BUG] http: typos on several unlikely() around header insertion
17789 - [BUG] stream_sock: wrong max computation on recv
17790 - [MEDIUM] http: rework the buffer alignment logic
17791 - [BUG] buffers: wrong size calculation for displaced data
17792 - [MINOR] stream_sock: prepare for closing when all pending data are sent
17793 - [MEDIUM] http: add two more states for the closing period
17794 - [MEDIUM] http: properly handle "option forceclose"
17795 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
17796 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
17797 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
17798 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
17799 - [MINOR] config: option forceclose is valid in frontends too
17800 - [BUILD] halog: insufficient include path in makefile
17801 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
17802 - [MEDIUM] http: make the parsers able to wait for a buffer flush
17803 - [MAJOR] http: add support for option http-server-close
17804 - [BUG] http: ensure we abort data transfer on write error
17805 - [BUG] last fix was overzealous and disabled server-close
17806 - [BUG] http: fix erroneous trailers size computation
17807 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
17808 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
17809 - [BUG] http: redirects were broken by chunk changes
17810 - [BUG] http: the request URI pointer is relative to the buffer
17811 - [OPTIM] http: don't immediately enable reading on request
17812 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
17813 - [BUG] http: take care of errors, timeouts and aborts during the data phase
17814 - [MINOR] http: don't wait for sending requests to the server
17815 - [MINOR] http: make the conditional redirect support keep-alive
17816 - [BUG] http: fix cookie parser to support spaces and commas in values
17817 - [MINOR] config: some options were missing for "redirect"
17818 - [MINOR] redirect: add support for unconditional rules
17819 - [MINOR] config: centralize proxy struct initialization
17820 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
17821 - [MEDIUM] config: remove the limitation of 10 config files
17822 - [CLEANUP] http: remove a remaining impossible condition
17823 - [OPTIM] http: optimize a bit the construct of the forward loops
17824
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200178252009/10/12 : 1.4-dev4
17826 - [DOC] add missing rate_lim and rate_max
17827 - [MAJOR] struct chunk rework
17828 - [MEDIUM] Health check reporting code rework + health logging, v3
17829 - [BUG] check if rise/fall has an argument and it is > 0
17830 - [MINOR] health checks logging unification
17831 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
17832 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
17833 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
17834 - [MINOR] Introduce include/types/counters.h
17835 - [CLEANUP] Move counters to dedicated structures
17836 - [MINOR] Add "clear counters" to clear statistics counters
17837 - [MEDIUM] Collect & provide separate statistics for sockets, v2
17838 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
17839 - [MINOR] acl: don't report valid acls as potential mistakes
17840 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
17841 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
17842 - [MINOR] Capture & display more data from health checks, v2
17843 - [BUG] task.c: don't assing last_timer to node-less entries
17844 - [BUG] http stats: large outputs sometimes got some parts chopped off
17845 - [MINOR] backend: export some functions to recount servers
17846 - [MINOR] backend: uninline some LB functions
17847 - [MINOR] include time.h from freq_ctr.h as is uses "now".
17848 - [CLEANUP] backend: move LB algos to individual files
17849 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
17850 - [CLEANUP] proxy: move last lb-specific bits to their respective files
17851 - [MINOR] backend: separate declarations of LB algos from their lookup method
17852 - [MINOR] backend: reorganize the LB algorithm selection
17853 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
17854 - [MINOR] report list of supported pollers with -vv
17855 - [DOC] log-health-checks is an option, not a directive
17856 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
17857 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
17858 - [MINOR] stats: strip CR and LF from the input command line
17859 - [BUG] don't refresh timeouts late after detected activity
17860 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
17861 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
17862 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
17863 - [MEDIUM] stats: don't use s->ana_state anymore
17864 - [MINOR] remove now obsolete ana_state from the session struct
17865 - [MEDIUM] stats: make HTTP stats use an I/O handler
17866 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
17867 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
17868 - [MINOR] config: reference file and line with any listener/proxy/server declaration
17869 - [MINOR] config: report places of duplicate names or IDs
17870 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
17871 - [MINOR] tools: add a new get_next_id() function
17872 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
17873 - [OPTIM] counters: move some max numbers to the counters struct
17874 - [BUG] counters: fix segfault on missing counters for a listener
17875 - [MEDIUM] backend: implement consistent hashing variation
17876 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
17877 - [MINOR] stats: use 'clear counters all' to clear all values
17878 - [MEDIUM] add access restrictions to the stats socket
17879 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
17880 - [MINOR] proxy: provide function to retrieve backend/server pointers
17881 - [MINOR] add the "initial weight" to the server struct.
17882 - [MEDIUM] stats: add the "get weight" command to report a server's weight
17883 - [MEDIUM] stats: add the "set weight" command
17884 - [BUILD] add a 'make tags' target
17885 - [MINOR] stats: add support for numeric IDs in set weight/get weight
17886 - [MINOR] stats: use a dedicated state to output static data
17887 - [OPTIM] stats: check free space before trying to print
17888
Willy Tarreau9f389e02009-09-24 00:12:50 +0200178892009/09/24 : 1.4-dev3
17890 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
17891 - [MEDIUM] Collect & show information about last health check, v3
17892 - [MINOR] export the hostname variable so that all the code can access it
17893 - [MINOR] stats: add a new node-name setting
17894 - [MEDIUM] remove old experimental tcpsplice option
17895 - [BUILD] fix build for systems without SOL_TCP
17896 - [MEDIUM] move connection establishment from backend to the SI.
17897 - [MEDIUM] make the global stats socket part of a frontend
17898 - [MEDIUM] session: account per-listener connections
17899 - [MINOR] session: switch to established state if no connect function
17900 - [MEDIUM] make the unix stats sockets use the generic session handler
17901 - [CLEANUP] unix: remove uxst_process_session()
17902 - [CLEANUP] move remaining stats sockets code to dumpstats
17903 - [MINOR] move the initial task's nice value to the listener
17904 - [MINOR] cleanup set_session_backend by using pre-computed analysers
17905 - [MINOR] set s->srv_error according to the analysers
17906 - [MEDIUM] set rep->analysers from fe and be analysers
17907 - [MEDIUM] replace BUFSIZE with buf->size in computations
17908 - [MEDIUM] make it possible to change the buffer size in the configuration
17909 - [MEDIUM] report error on buffer writes larger than buffer size
17910 - [MEDIUM] stream_interface: add and use ->update function to resync
17911 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
17912 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
17913 - [BUG] tarpit did not work anymore
17914 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
17915 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
17916 - [MINOR] buffers: provide more functions to handle buffer data
17917 - [MEDIUM] buffers: provide new buffer_feed*() function
17918 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
17919 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
17920 - [BUG] buffer_forward() would not correctly consider data already scheduled
17921 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
17922 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
17923 - [MAJOR] http: add support for HTTP 1xx informational responses
17924 - [MINOR] buffers: inline buffer_si_putchar()
17925 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
17926 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
17927 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
17928 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
17929 - [MEDIUM] add support for infinite forwarding
17930 - [BUILD] stream_interface: fix conflicting declaration
17931 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
17932 - [BUG] variable buffer size ignored at initialization time
17933 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
17934 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
17935 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
17936 - [MINOR] stream_interface: add iohandler callback
17937 - [MINOR] stream_interface: add functions to support running as internal/external tasks
17938 - [MEDIUM] session: call iohandler for embedded tasks (applets)
17939 - [MINOR] add a ->private member to the stream_interface
17940 - [MEDIUM] stats: prepare the connection for closing before dumping
17941 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
17942
Willy Tarreau68dcd252009-08-09 22:57:09 +0200179432009/08/09 : 1.4-dev2
17944 - [BUG] task: fix possible crash when some timeouts are not configured
17945 - [BUG] log: option tcplog would log to global if no logger was defined
17946
Willy Tarreaub03d2982009-07-29 22:38:32 +0200179472009/07/29 : 1.4-dev1
17948 - [MINOR] acl: add support for matching of RDP cookies
17949 - [MEDIUM] add support for RDP cookie load-balancing
17950 - [MEDIUM] add support for RDP cookie persistence
17951 - [MINOR] add a new CLF log format
17952 - [MINOR] startup: don't imply -q with -D
17953 - [BUG] ensure that we correctly re-start old process in case of error
17954 - [MEDIUM] add support for binding to source port ranges during connect
17955 - [MINOR] config: track "no option"/"option" changes
17956 - [MINOR] config: support resetting options do default values
17957 - [MEDIUM] implement option tcp-smart-accept at the frontend
17958 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
17959 - [MEDIUM] implement tcp-smart-connect option at the backend
17960 - [MEDIUM] add support for TCP MSS adjustment for listeners
17961 - [MEDIUM] support setting a server weight to zero
17962 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
17963 - [MAJOR] session: don't clear buffer status flags anymore
17964 - [MAJOR] session: only check for timeouts when they have just occurred.
17965 - [MAJOR] session: simplify buffer error handling
17966 - [MEDIUM] config: split parser and checker in two functions
17967 - [MEDIUM] config: support loading multiple configuration files
17968 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
17969 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
17970 - [MEDIUM] splice: set the capability on each stream_interface
17971 - [BUG] http: redirect rules were processed too early
17972 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
17973 - [MEDIUM] http: split request waiter from request processor
17974 - [MEDIUM] session: tell analysers what bit they were called for
17975 - [MAJOR] http: complete splitting of the remaining stages
17976 - [MINOR] report in the proxies the requirements for ACLs
17977 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
17978 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
17979 - [MINOR] prepare callers of session_set_backend to handle errors
17980 - [BUG] default ACLs did not properly set the ->requires flag
17981 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
17982 - [MINOR] ensure we can jump from swiching rules to http without data
17983 - [MINOR] http: take http request timeout from the backend
17984 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
17985 - [BUILD] report commit date and not author's date as build date
17986 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
17987 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
17988 - [BUG] stream_sock: don't stop reading when the poller reports an error
17989 - [BUG] config: tcp-request content only accepts "if" or "unless"
17990 - [BUG] task: fix possible timer drift after update
17991 - [MINOR] apply tcp-smart-connect option for the checks too
17992 - [MINOR] stats: better displaying in MSIE
17993 - [MINOR] config: improve error reporting in global section
17994 - [MINOR] config: improve error reporting in listen sections
17995 - [MINOR] config: the "capture" keyword is not allowed in backends
17996 - [MINOR] config: improve error reporting when checking configuration
17997 - [BUILD] fix a minor build warning on AIX
17998 - [BUILD] use "git cmd" instead of "git-cmd"
17999 - [CLEANUP] report 2009 not 2008 in the copyright banner.
18000 - [MINOR] print usage on the stats sockets upon invalid commands
18001 - [MINOR] acl: detect and report potential mistakes in ACLs
18002 - [BUILD] fix incorrect printf arg count with tcp_splice
18003 - [BUG] fix random pauses on last segment of a series
18004 - [BUILD] add support for build under Cygwin
18005
Willy Tarreau79158882009-06-09 11:59:08 +0200180062009/06/09 : 1.4-dev0
18007 - exact copy of 1.3.18
18008
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200180092009/05/10 : 1.3.18
18010 - [MEDIUM] add support for "balance hdr(name)"
18011 - [CLEANUP] give a little bit more information in error message
18012 - [MINOR] add X-Original-To: header
18013 - [BUG] x-original-to: fix missing initialization to default value
18014 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
18015 - [MINOR] improve reporting of misplaced acl/reqxxx rules
18016 - [MEDIUM] http: add options to ignore invalid header names
18017 - [MEDIUM] http: capture invalid requests/responses even if accepted
18018 - [BUILD] add format(printf) to printf-like functions
18019 - [MINOR] fix several printf formats and missing arguments
18020 - [BUG] stats: total and lbtot are unsigned
18021 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
18022 - [CLEANUP] remove unused make option from haproxy.spec
18023 - [BUILD] make it possible to pass alternative arch at build time
18024 - [MINOR] switch all stat counters to 64-bit
18025 - [MEDIUM] ensure we don't recursively call pool_gc2()
18026 - [CRITICAL] uninitialized response field can sometimes cause crashes
18027 - [BUG] fix wrong pointer arithmetics in HTTP message captures
18028 - [MINOR] rhel init script : support the reload operation
18029 - [MINOR] add basic signal handling functions
18030 - [BUILD] add signal.o to all makefiles
18031 - [MEDIUM] call signal_process_queue from run_poll_loop
18032 - [MEDIUM] pollers: don't wait if a signal is pending
18033 - [MEDIUM] convert all signals to asynchronous signals
18034 - [BUG] O(1) pollers should check their FD before closing it
18035 - [MINOR] don't close stdio fds twice
18036 - [MINOR] add options dontlog-normal and log-separate-errors
18037 - [DOC] minor fixes and rearrangements
18038 - [BUG] fix parser crash on unconditional tcp content rules
18039 - [DOC] rearrange the configuration manual and add a summary
18040 - [MINOR] standard: provide a new 'my_strndup' function
18041 - [MINOR] implement per-logger log level limitation
18042 - [MINOR] compute the max of sessions/s on fe/be/srv
18043 - [MINOR] stats: report max sessions/s and limit in CSV export
18044 - [MINOR] stats: report max sessions/s and limit in HTML stats
18045 - [MINOR] stats/html: use the arial font before helvetica
18046
Willy Tarreauf459b422009-03-29 15:26:57 +0200180472009/03/29 : 1.3.17
18048 - Update specfile to build for v2.6 kernel.
18049 - [BUG] reset the stream_interface connect timeout upon connect or error
18050 - [BUG] reject unix accepts when connection limit is reached
18051 - [MINOR] show sess: report number of calls to each task
18052 - [BUG] don't call epoll_ctl() on closed sockets
18053 - [BUG] stream_sock: disable I/O on fds reporting an error
18054 - [MINOR] sepoll: don't count two events on the same FD.
18055 - [MINOR] show sess: report a lot more information about sessions
18056 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
18057 - [BUG] don't set an expiration date directly from now_ms
18058 - [MINOR] implement ulltoh() to write HTML-formatted numbers
18059 - [MINOR] stats/html: group digits by 3 to clarify numbers
18060 - [BUILD] remove haproxy-small.spec
18061 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
18062
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100180632009/03/22 : 1.3.16
18064 - [BUILD] Fixed Makefile for linking pcre
18065 - [CONTRIB] selinux policy for haproxy
18066 - [MINOR] show errors: encode backslash as well as non-ascii characters
18067 - [MINOR] cfgparse: some cleanups in the consistency checks
18068 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
18069 - [MINOR] tcp-inspect: permit the use of no-delay inspection
18070 - [MEDIUM] reverse internal proxy declaration order to match configuration
18071 - [CLEANUP] config: catch and report some possibly wrong rule ordering
18072 - [BUG] connect timeout is in the stream interface, not the buffer
18073 - [BUG] session: errors were not reported in termination flags in TCP mode
18074 - [MINOR] tcp_request: let the caller take care of errors and timeouts
18075 - [CLEANUP] http: remove some commented out obsolete code in process_response
18076 - [MINOR] update ebtree to version 4.1
18077 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
18078 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
18079 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
18080 - [MINOR] sched: permit a task to stay up between calls
18081 - [MINOR] task: keep a task count and clean up task creators
18082 - [MINOR] stats: report number of tasks (active and running)
18083 - [BUG] server check intervals must not be null
18084 - [OPTIM] stream_sock: don't retry to read after a large read
18085 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
18086 - [MEDIUM] session: don't resync FSMs on non-interesting changes
18087 - [BUG] check for global.maxconn before doing accept()
18088 - [OPTIM] sepoll: do not re-check whole list upon accepts
18089
Willy Tarreau8185ced2009-03-09 22:45:53 +0100180902009/03/09 : 1.3.16-rc2
18091 - [BUG] stream_sock: write timeout must be updated when forwarding !
18092
Willy Tarreauff63b432009-03-09 01:03:42 +0100180932009/03/09 : 1.3.16-rc1
18094 - appsessions: cleanup DEBUG_HASH and initialize request_counter
18095 - [MINOR] acl: add new keyword "connslots"
18096 - [MINOR] cfgparse: fix off-by 2 in error message size
18097 - [BUILD] fix build with gcc 4.3
18098 - [BUILD] fix MANDIR default location to match documentation
18099 - [TESTS] add a debug patch to help trigger the stats bug
18100 - [BUG] Flush buffers also where there are exactly 0 bytes left
18101 - [MINOR] Allow to specify a domain for a cookie
18102 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
18103 - [MEDIUM] Fix memory freeing at exit
18104 - [MEDIUM] Fix memory freeing at exit, part 2
18105 - [BUG] Fix listen & more of 2 couples <ip>:<port>
18106 - [DOC] remove buggy comment for use_backend
18107 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
18108 - [MEDIUM] add support for URI hash depth and length limits
18109 - [MINOR] permit renaming of x-forwarded-for header
18110 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
18111 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
18112 - [MEDIUM] upgrade to ebtree v4.0
18113 - [DOC] update the README file with new build options
18114 - [MEDIUM] reduce risk of event starvation in ev_sepoll
18115 - [MEDIUM] detect streaming buffers and tag them as such
18116 - [MEDIUM] add support for conditional HTTP redirection
18117 - [BUILD] make install should depend on haproxy not "all"
18118 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
18119 - [BUG] event pollers must not wait if a task exists in the run queue
18120 - [BUG] queue management: wake oldest request in queues
18121 - [BUG] log: reported queue position was offed-by-one
18122 - [BUG] fix the dequeuing logic to ensure that all requests get served
18123 - [DOC] documentation for the "retries" parameter was missing.
18124 - [MEDIUM] implement a monotonic internal clock
18125 - [MEDIUM] further improve monotonic clock by check forward jumps
18126 - [OPTIM] add branch prediction hints in list manipulations
18127 - [MAJOR] replace ultree with ebtree in wait-queues
18128 - [BUG] we could segfault during exit while freeing uri_auths
18129 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
18130 - [MINOR] introduce now_ms, the current date in milliseconds
18131 - [BUG] disable buffer read timeout when reading stats
18132 - [MEDIUM] rework the wait queue mechanism
18133 - [BUILD] change declaration of base64tab to fix build with Intel C++
18134 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
18135 - [MAJOR] use an ebtree instead of a list for the run queue
18136 - [MEDIUM] introduce task->nice and boot access to statistics
18137 - [OPTIM] task_queue: assume most consecutive timers are equal
18138 - [BUILD] silent a warning in unlikely() with gcc 4.x
18139 - [MAJOR] convert all expiration timers from timeval to ticks
18140 - [BUG] use_backend would not correctly consider "unless"
18141 - [TESTS] added test-acl.cfg to test some ACL combinations
18142 - [MEDIUM] add support for configuration keyword registration
18143 - [MEDIUM] modularize the global "stats" keyword configuration parser
18144 - [MINOR] cfgparse: add support for warnings in external functions
18145 - [MEDIUM] modularize the "timeout" keyword configuration parser
18146 - [MAJOR] implement tcp request content inspection
18147 - [MINOR] acl: add a new parsing function: parse_dotted_ver
18148 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
18149 - [CLEANUP] remove unused include/types/client.h
18150 - [CLEANUP] remove many #include <types/xxx> from C files
18151 - [CLEANUP] remove dependency on obsolete INTBITS macro
18152 - [DOC] document the new "tcp-request" keyword and associated ACLs
18153 - [MINOR] acl: add REQ_CONTENT to the list of default acls
18154 - [MEDIUM] acl: permit fetch() functions to set the result themselves
18155 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
18156 - [MINOR] acl: add the "wait_end" acl verb
18157 - [MEDIUM] acl: enforce ACL type checking
18158 - [MEDIUM] acl: set types on all currently known ACL verbs
18159 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
18160 - [CLEANUP] remove 65 useless NULL checks before free
18161 - [MEDIUM] memory: update pool_free2() to support NULL pointers
18162 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
18163 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
18164 - [MEDIUM] process_srv: don't rely at all on client state
18165 - [MEDIUM] process_cli: don't rely at all on server state
18166 - [BUG] fix segfault with url_param + check_post
18167 - [BUG] server timeout was not considered in some circumstances
18168 - [BUG] client timeout incorrectly rearmed while waiting for server
18169 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
18170 - [MAJOR] get rid of SV_STANALYZE (step 2)
18171 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
18172 - [MAJOR] completely separate HTTP and TCP states on the request path
18173 - [BUG] fix recently introduced loop when client closes early
18174 - [MAJOR] get rid of the SV_STHEADERS state
18175 - [MAJOR] better separation of response processing and server state
18176 - [MAJOR] clearly separate HTTP response processing from TCP server state
18177 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
18178 - [MINOR] term_trace: add better instrumentations to trace the code
18179 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
18180 - [BUG] process_response must not enable the read FD
18181 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
18182 - [BUG] process_response: do not touch srv_state
18183 - [BUG] maintain_proxies must not disable backends
18184 - [CLEANUP] get rid of BF_SHUT*_PENDING
18185 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
18186 - [MAJOR] process_session: rely only on buffer flags
18187 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
18188 - [MEDIUM] centralize buffer timeout checks at the top of process_session
18189 - [MINOR] ensure the termination flags are set by process_xxx
18190 - [MEDIUM] session: move the analysis bit field to the buffer
18191 - [OPTIM] process_cli/process_srv: reduce the number of tests
18192 - [BUG] regparm is broken on gcc < 3
18193 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
18194 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
18195 - [BUG] process_cli/process_srv: don't call shutdown when already done
18196 - [BUG] process_request: HTTP body analysis must return zero if missing data
18197 - [TESTS] test-fsm: 22 regression tests for state machines
18198 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
18199 - [BUG] fix harmless but wrong fd insertion sequence
18200 - [MEDIUM] make it possible for analysers to follow the whole session
18201 - [MAJOR] rework of the server FSM
18202 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
18203 - [MEDIUM] massive cleanup of process_srv()
18204 - [MEDIUM] second level of code cleanup for process_srv_data
18205 - [MEDIUM] third cleanup and optimization of process_srv_data()
18206 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
18207 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
18208 - [MAJOR] make the client side use stream_sock_process_data()
18209 - [MEDIUM] split stream_sock_process_data
18210 - [OPTIM] stream_sock_read must check for null-reads more often
18211 - [MINOR] only call flow analysers when their read side is connected.
18212 - [MEDIUM] reintroduce BF_HIJACK with produce_content
18213 - [MINOR] re-arrange buffer flags and rename some of them
18214 - [MINOR] do not check for BF_SHUTR when computing write timeout
18215 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
18216 - [OPTIM] reduce the number of calls to task_wakeup()
18217 - [OPTIM] force inlining of large functions with gcc >= 3
18218 - [MEDIUM] indicate a reason for a task wakeup
18219 - [MINOR] change type of fdtab[]->owner to void*
18220 - [MAJOR] make stream sockets aware of the stream interface
18221 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
18222 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
18223 - [MEDIUM] process_session: make use of the new buffer flags
18224 - [CLEANUP] process_session: move debug outputs out of the critical loop
18225 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
18226 - [OPTIM] add compiler hints in tick_is_expired()
18227 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
18228 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
18229 - [MINOR] add an expiration flag to the stream_sock_interface
18230 - [MAJOR] migrate the connection logic to stream interface
18231 - [MAJOR] add a connection error state to the stream_interface
18232 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
18233 - [MEDIUM] continue layering cleanups.
18234 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
18235 - [MEDIUM] remove stream_sock_update_data()
18236 - [MINOR] maintain a global session list in order to ease debugging
18237 - [BUG] shutw must imply close during a connect
18238 - [MEDIUM] process shutw during connection attempt
18239 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
18240 - [MAJOR] complete layer4/7 separation
18241 - [CLEANUP] move the session-related functions to session.c
18242 - [MINOR] call session->do_log() for logging
18243 - [MINOR] replace the ambiguous client_return function by stream_int_return
18244 - [MINOR] replace client_retnclose() with stream_int_retnclose()
18245 - [MINOR] replace srv_close_with_err() with http_server_error()
18246 - [MEDIUM] make the http server error function a pointer in the session
18247 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
18248 - [MINOR] stream_sock_data_finish() should not expose fd
18249 - [MEDIUM] extract TCP request processing from HTTP
18250 - [MEDIUM] extract the HTTP tarpit code from process_request().
18251 - [MEDIUM] move the HTTP request body analyser out of process_request().
18252 - [MEDIUM] rename process_request to http_process_request
18253 - [BUG] fix forgotten server session counter
18254 - [MINOR] declare process_session in session.h, not proto_http.h
18255 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
18256 - [MINOR] add an analyser code for UNIX stats request
18257 - [MINOR] pre-set analyser flags on the listener at registration time
18258 - [BUG] do not forward close from cons to prod with analysers
18259 - [MEDIUM] ensure that sock->shutw() also closes read for init states
18260 - [MINOR] add an analyser state in struct session
18261 - [MAJOR] make unix sockets work again with stats
18262 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
18263 - [MINOR] move the listener reference from fd to session
18264 - [MEDIUM] reference the current hijack function in the buffer itself
18265 - [MINOR] slightly rebalance stats_dump_{raw,http}
18266 - [MINOR] add a new back-reference type : struct bref
18267 - [MINOR] add back-references to sessions for later use by a dumper.
18268 - [MEDIUM] add support for "show sess" in unix stats socket
18269 - [BUG] do not release the connection slot during a retry
18270 - [BUG] dynamic connection throttling could return a max of zero conns
18271 - [BUG] do not try to pause backends during reload
18272 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
18273 - [BUG] acl-related keywords are not allowed in defaults sections
18274 - [BUG] cookie capture is declared in the frontend but checked on the backend
18275 - [BUG] critical errors should be reported even in daemon mode
18276 - [MINOR] redirect: add support for the "drop-query" option
18277 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
18278 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
18279 - [BUG] do not dequeue requests on a dead server
18280 - [BUG] do not dequeue the backend's pending connections on a dead server
18281 - [MINOR] stats: indicate if a task is running in "show sess"
18282 - [BUG] check timeout must not be changed if timeout.check is not set
18283 - [BUG] "option transparent" is for backend, not frontend !
18284 - [MINOR] transfer errors were not reported anymore in data phase
18285 - [MEDIUM] add a send limit to a buffer
18286 - [MEDIUM] don't report buffer timeout when there is I/O activity
18287 - [MEDIUM] indicate when we don't care about read timeout
18288 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
18289 - [MEDIUM] enable inter-stream_interface wakeup calls
18290 - [MAJOR] implement autonomous inter-socket forwarding
18291 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
18292 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
18293 - [MEDIUM] i/o: rework ->to_forward and ->send_max
18294 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
18295 - [OPTIM] buffer: replace rlim by max_len
18296 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
18297 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
18298 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
18299 - [MEDIUM] split stream_sock_write() into callback and core functions
18300 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
18301 - [MINOR] stream_sock: fix a few wrong empty calculations
18302 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
18303 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
18304 - [MEDIUM] splice: add configuration options and set global.maxpipes
18305 - [MINOR] introduce structures required to support Linux kernel splicing
18306 - [MEDIUM] add definitions for Linux kernel splicing
18307 - [MAJOR] complete support for linux 2.6 kernel splicing
18308 - [BUG] reserve some pipes for backends with splice enabled
18309 - [MEDIUM] splice: add hints to support older buggy kernels
18310 - [MEDIUM] introduce pipe pools
18311 - [MEDIUM] splice: make use of pipe pools
18312 - [STATS] report pipe usage in the statistics
18313 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
18314 - [BUILD] fix snapshot date extraction with negative timezones
18315 - [MEDIUM] move global tuning options to the global structure
18316 - [MEDIUM] splice: add the global "nosplice" option
18317 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
18318 - [BUG] we must not exit if protocol binding only returns a warning
18319 - [MINOR] add support for bind interface name
18320 - [BUG] inform the user when root is expected but not set
18321 - [MEDIUM] add support for source interface binding
18322 - [MEDIUM] add support for source interface binding at the server level
18323 - [MEDIUM] implement bind-process to limit service presence by process
18324 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
18325 - [DOC] filled the logging section of the configuration manual
18326 - [DOC] document HTTP status codes
18327 - [DOC] document a few missing info about errorfile
18328 - [BUG] fix random memory corruption using "show sess"
18329 - [BUG] fix unix socket processing of interrupted output
18330 - [DOC] add diagrams of queuing and future ACL design
18331 - [BUILD] proto_http did not build on gcc-2.95
18332 - [BUG] the "source" keyword must first clear optional settings
18333 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
18334 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
18335 - [MEDIUM] store a complete dump of request and response errors in proxies
18336 - [MEDIUM] implement error dump on unix socket with "show errors"
18337 - [DOC] document "show errors"
18338 - [MINOR] errors dump must use user-visible date, not internal date.
18339 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
18340 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
18341 - [MEDIUM] measure and report session rate on frontend, backends and servers
18342 - [BUG] the "connslots" keyword was matched as "connlots"
18343 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
18344 - [MEDIUM] implement "rate-limit sessions" for the frontend
18345 - [BUG] interface binding: length must include the trailing zero
18346 - [BUG] typo in timeout error reporting : report *res and not *err
18347 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
18348 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
18349 - [BUG] switch server-side stream interface to close in case of abort
18350 - [CLEANUP] remove last references to term_trace
18351 - [OPTIM] freq_ctr: do not rotate the counters when reading
18352 - [BUG] disable any analysers for monitoring requests
18353 - [BUG] rate-limit in defaults section was ignored
18354 - [BUG] task: fix handling of duplicate keys
18355 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
18356 - [OPTIM] displace tasks in the wait queue only if absolutely needed
18357 - [MEDIUM] minor update to the task api: let the scheduler queue itself
18358 - [BUG] event_accept() must always wake the task up, even in health mode
18359 - [CLEANUP] task: distinguish between clock ticks and timers
18360 - [OPTIM] task: reduce the number of calls to task_queue()
18361 - [OPTIM] do not re-check req buffer when only response has changed
18362 - [CLEANUP] don't enable kernel splicing when socket is closed
18363 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
18364 - [MINOR] buffers: implement buffer_flush()
18365 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
18366 - [BUILD] build fixes for Solaris
18367 - [BUILD] proto_http did not build on gcc-2.95 (again)
18368 - [CONTRIB] halog: fast log parser for haproxy
18369 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
18370
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200183712008/04/19 : 1.3.15
18372 - [BUILD] Added support for 'make install'
18373 - [BUILD] Added 'install-man' make target for installing the man page
18374 - [BUILD] Added 'install-bin' make target
18375 - [BUILD] Added 'install-doc' make target
18376 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
18377 - [BUILD] Changed 'install' target to install the binaries first
18378 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
18379 - [MEDIUM]: Inversion for options
18380 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
18381 - [BUG]: Restore clearing t->logs.bytes
18382 - [MEDIUM]: rework checks handling
18383 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
18384 - [MEDIUM] Implement "track [<backend>/]<server>"
18385 - [MINOR] Implement persistent id for proxies and servers
18386 - [BUG] Don't increment server connections too much + fix retries
18387 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
18388 - [MAJOR] proto_uxst rework -> SNMP support
18389 - [BUG] appsession lookup in URL does not work
18390 - [BUG] transparent proxy address was ignored in backend
18391 - [BUG] hot reconfiguration failed because of a wrong error check
18392 - [DOC] big update to the configuration manual
18393 - [DOC] large update to the configuration manual
18394 - [DOC] document more options
18395 - [BUILD] major rework of the GNU Makefile
18396 - [STATS] add support for "show info" on the unix socket
18397 - [DOC] document options forwardfor to logasap
18398 - [MINOR] add support for the "backlog" parameter
18399 - [OPTIM] introduce global parameter "tune.maxaccept"
18400 - [MEDIUM] introduce "timeout http-request" in frontends
18401 - [MINOR] tarpit timeout is also allowed in backends
18402 - [BUG] increment server connections for each connect()
18403 - [MEDIUM] add a turn-around state of one second after a connection failure
18404 - [BUG] fix typo in redispatched connection
18405 - [DOC] document options nolinger to ssl-hello-chk
18406 - [DOC] added documentation for "option tcplog" to "use_backend"
18407 - [BUG] connect_server: server might not exist when sending error report
18408 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
18409 - [MEDIUM] add non-local bind to connect() on Linux
18410 - [MINOR] add transparent proxy support for balabit's Tproxy v4
18411 - [BUG] use backend's source and not server's source with tproxy
18412 - [BUG] fix overlapping server flags
18413 - [MEDIUM] fix server health checks source address selection
18414 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
18415 - [DOC] added "server", "source" and "stats" keywords
18416 - [DOC] all server parameters have been documented
18417 - [DOC] document all req* and rsp* keywords.
18418 - [DOC] added documentation about HTTP header manipulations
18419 - [BUG] log response byte count, not request
18420 - [BUILD] code did not build in full debug mode
18421 - [BUG] fix truncated responses with sepoll
18422 - [MINOR] use s->frt_addr as the server's address in transparent proxy
18423 - [MINOR] fix configuration hint about timeouts
18424 - [DOC] minor cleanup of the doc and notice to contributors
18425 - [MINOR] report correct section type for unknown keywords.
18426 - [BUILD] update MacOS Makefile to build on newer versions
18427 - [DOC] fix erroneous "useallbackups" option in the doc
18428 - [DOC] applied small fixes from early readers
18429 - [MINOR] add configuration support for "redir" server keyword
18430 - [MEDIUM] completely implement the server redirection method
18431 - [TESTS] add a test case for the server redirection mechanism
18432 - [DOC] add a configuration entry for "server ... redir <prefix>"
18433 - [BUILD] backend.c and checks.c did not build without tproxy !
18434 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
18435 - [BUILD] backend.c and checks.c did not build without tproxy !
18436 - [OPTIM] used unsigned ints for HTTP state and message offsets
18437 - [OPTIM] GCC4's builtin_expect() is suboptimal
18438 - [BUG] failed conns were sometimes incremented in the frontend!
18439 - [BUG] timeout.check was not pre-set to eternity
18440 - [TESTS] add test-pollers.cfg to easily report pollers in use
18441 - [BUG] do not apply timeout.connect in checks if unset
18442 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
18443 - [MINOR] silent gcc for a wrong warning
18444 - [CLEANUP] update .gitignore to ignore more temporary files
18445 - [CLEANUP] report dlmalloc's source path only if explictly specified
18446 - [BUG] str2sun could leak a small buffer in case of error during parsing
18447 - [BUG] option allbackups was not working anymore in roundrobin mode
18448 - [MAJOR] implementation of the "leastconn" load balancing algorithm
18449 - [BUILD] ensure that users don't build without setting the target anymore.
18450 - [DOC] document the leastconn LB algo
18451 - [MEDIUM] fix stats socket limitation to 16 kB
18452 - [DOC] fix unescaped space in httpchk example.
18453 - [BUG] fix double-decrement of server connections
18454 - [TESTS] add a test case for port mapping
18455 - [TESTS] add a benchmark for integer hashing
18456 - [TESTS] add new methods in ip-hash test file
18457 - [MAJOR] implement parameter hashing for POST requests
18458
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100184592007/12/06 : 1.3.14
18460 - New option http_proxy (Alexandre Cassen)
18461 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
18462 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
18463 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
18464 - use backends only with use_backend directive (Krzysztof Oledzki)
18465 - Handle long lines properly (Krzysztof Oledzki)
18466 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
18467 - continous statistics (Krzysztof Oledzki)
18468 - add support for logging via a UNIX socket (Robert Tsai)
18469 - fix error checking in strl2ic/strl2uic()
18470 - fix calls to localtime()
18471 - provide easier-to-use ultoa_* functions
18472 - provide easy-to-use limit_r and LIM2A* macros
18473 - add a simple test for the status page
18474 - move error codes to common/errors.h
18475 - silent warning about LIST_* being redefined on OpenBSD
18476 - add socket address length to the protocols
18477 - group PR_O_BALANCE_* bits into a checkable value
18478 - externalize the "balance" option parser to backend.c
18479 - introduce the "url_param" balance method
18480 - make default_backend work in TCP mode too
18481 - disable warning about localtime_r on Solaris
18482 - adjust error messages about conflicting proxies
18483 - avoid calling some layer7 functions if not needed
18484 - simplify error path in event_accept()
18485 - add an options field to the listeners
18486 - added a new state to listeners
18487 - unbind_listener() must use fd_delete() and not close()
18488 - add a generic unbind_listener() primitive
18489 - add a generic delete_listener() primitive
18490 - add a generic unbind_all_listeners() primitive
18491 - create proto_tcp and move initialization of proxy listeners
18492 - stats: report numerical process ID, proxy ID and server ID
18493 - relative_pid was not initialized
18494 - missing header names in raw stats output
18495 - fix missing parenthesis in check_response_for_cacheability
18496 - small optimization on session_process_counters()
18497 - merge ebtree version 3.0
18498 - make ebtree headers multiple-include compatible
18499 - ebtree: include config.h for REGPRM*
18500 - differentiate between generic LB params and map-specific ones
18501 - add a weight divisor to the struct proxy
18502 - implement the Fast Weighted Round Robin (FWRR) algo
18503 - include filltab25.c to experiment on FWRR for dynamic weights
18504 - merge test-fwrr.cfg to validate dynamic weights
18505 - move the load balancing algorithm to be->lbprm.algo
18506 - change server check result to a bit field
18507 - implement "http-check disable-on-404" for graceful shutdown
18508 - secure the calling conditions of ->set_server_status_{up,down}
18509 - report disabled servers as "NOLB" when they are still UP
18510 - document the "http-check disable-on-404" option
18511 - http-check disable-on-404 is not limited to HTTP mode
18512 - add a test file for disable-on-404
18513 - use distinct bits per load-balancing algorithm type
18514 - implement the slowstart parameter for servers
18515 - document the server's slowstart parameter
18516 - stats: report the server warm up status in a "throttle" column
18517 - fix 2 minor issues on AIX
18518 - add the "nbsrv" ACL verb
18519 - add the "fail" condition to monitor requests
18520 - remove a warning from gcc due to htons() in standard.c
18521 - fwrr: ensure that we never overflow in placements
18522 - store the build options to report with -vv
18523 - fix the status return of the init script (R.I. Pienaar)
18524 - stats: real time monitoring script for unix socket (Prizee)
18525 - document "nbsrv" and "monitor fail"
18526 - restrict the set of allowed characters for identifiers
18527 - implement a time parsing function
18528 - add support for time units in the configuration
18529 - add a bit of documentation about timers
18530 - introduce separation between contimeout, and tarpit + queue
18531 - introduce the "timeout" keyword
18532 - grouped all timeouts in one structure
18533 - slowstart is in ms, not seconds
18534 - slowstart: ensure we don't start with a null weight
18535 - report the number of times each server was selected
18536 - fix build on AIX due to recent log changes
18537 - fix build on Solaris due to recent log changes
18538
Willy Tarreaue855f422007-10-18 22:38:22 +0200185392007/10/18 : 1.3.13
18540 - replace the code under O'Reilly license (Arnaud Cornet)
18541 - add a small man page (Arnaud Cornet)
18542 - stats: report haproxy's version by default (Krzysztof Oledzki)
18543 - stats: count server retries and redispatches (Krzysztof Oledzki)
18544 - core: added easy support for Doug Lea's malloc (dlmalloc)
18545 - core: fade out memory usage when stopping proxies
18546 - core: moved the sockaddr pointer to the fdtab structure
18547 - core: add generic protocol support
18548 - core: implement client-side support for PF_UNIX sockets
18549 - stats: implement the CSV output
18550 - stats: add a link to the CSV export HTML page
18551 - stats: implement the statistics output on a unix socket
18552 - config: introduce the "stats" keyword in global section
18553 - build: centralize version and date into one file for each
18554 - tests: added a new hash algorithm
18555
185562007/10/18 : 1.3.12.3
18557 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
18558 - fix double-free during clean exit (Krzysztof Oledzki)
18559 - prevent the system from sending an RST when closing health-checks
18560 (Krzysztof Oledzki)
18561 - do not add a cache-control header when on non-cacheable responses
18562 (Krzysztof Oledzki)
18563 - spread health checks even more (Krzysztof Oledzki)
18564 - stats: scope "." must match the backend and not the frontend
18565 - fixed call to chroot() during startup
18566 - fix wrong timeout computation in event_accept()
18567 - remove condition for exit() under fork() failure
18568
185692007/09/20 : 1.3.12.2
18570 - fix configuration sanity checks for TCP listeners
18571 - set the log socket receive window to zero bytes
18572 - pre-initialize timeouts to infinity, not zero
18573 - fix the SIGHUP message not to alert on server-less proxies
18574 - timeouts and retries could be ignored when switching backend
18575 - added a file to check that "retries" works.
18576 - O'Reilly has clarified its license
18577
185782007/09/05 : 1.3.12.1
18579 - spec I/O: fix allocations of spec entries for an FD
18580 - ensure we never overflow in chunk_printf()
18581 - improve behaviour with large number of servers per proxy
18582 - add support for "stats refresh <interval>"
18583 - stats page: added links for 'refresh' and 'hide down'
18584 - fix backend's weight in the stats page.
18585 - the "stats" keyword is not allowed in a pure frontend.
18586 - provide a test configuration file for stats and checks
18587
Willy Tarreaub21152b2007-06-17 23:41:40 +0200185882007/06/17 : 1.3.12
18589 - fix segfault at exit when using captures
18590 - bug: negation in ACL conds was not cleared between terms
18591 - errorfile: use a local file to feed error messages
18592 - acl: support '-i' to ignore case when matching
18593 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
18594 - acl: support maching on 'path' component
18595 - acl: implement matching on header values
18596 - acl: distinguish between request and response headers
18597 - acl: permit to return any header when no name specified
18598 - acl: provide default ACLs
18599 - added the 'use_backend' keyword for full content-switching
18600 - acl: specify the direction during fetches
18601 - acl: provide the argument length for fetch functions
18602 - acl: provide a reference to the expr to fetch()
18603 - improve memory freeing upon exit
18604 - str2net() must not change the const char *
18605 - shut warnings 'is*' macros from ctype.h on solaris
18606
Willy Tarreaua3503e02007-06-03 17:27:07 +0200186072007/06/03 : 1.3.11.4
18608 - do not re-arm read timeout in SHUTR state !
18609 - optimize I/O by detecting system starvation
18610 - the epoll FD must not be shared between processes
18611 - limit the number of events returned by *poll*
18612
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200186132007/05/14 : 1.3.11.3
18614 - pre-initialize timeouts with tv_eternity during parsing
18615
Willy Tarreaufc273c22007-05-14 03:42:47 +0200186162007/05/14 : 1.3.11.2
18617 - fixed broken health-checks since switch to timeval
18618
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200186192007/05/14 : 1.3.11.1
18620 - fixed ev_kqueue which was forgotten during the switch to timeval
18621 - allowed null timeouts for past events in select
18622
Willy Tarreau544eb402007-05-14 02:42:33 +0200186232007/05/14 : 1.3.11
18624 - fixed ev_sepoll again by rewriting the state machine
18625 - switched all timeouts to timevals instead of milliseconds
18626 - improved memory management using mempools v2.
18627 - several minor optimizations
18628
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200186292007/05/09 : 1.3.10.2
18630 - fixed build on OpenBSD (missing types.h)
18631
Willy Tarreau13398d32007-05-09 22:58:28 +0200186322007/05/09 : 1.3.10.1
18633 - fixed sepoll transition matrix (two states were missing)
18634
Willy Tarreau61beedf2007-05-09 01:44:58 +0200186352007/05/08 : 1.3.10
18636 - several fixes in ev_sepoll
18637 - fixed some expiration dates on some tasks
18638 - fixed a bug in connection establishment detection due to speculative I/O
18639 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
18640 - implemented URI hashing algorithm (Guillaume Dallaire)
18641 - implemented SMTP health checks (Peter van Dijk)
18642 - replaced the rbtree with ul2tree from old scheduler project
18643 - new framework for generic ACL support
18644 - added the 'acl' and 'block' keywords to the config language
18645 - added several ACL criteria and matches (IP, port, URI, ...)
18646 - cleaned up and better modularization for some time functions
18647 - fixed list macros
18648 - fixed useless memory allocation in str2net()
18649 - store the original destination address in the session
18650
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200186512007/04/15 : 1.3.9
18652 - modularized the polling mechanisms and use function pointers instead
18653 of macros at many places
18654 - implemented support for FreeBSD's kqueue() polling mechanism
18655 - fixed a warning on OpenBSD : MIN/MAX redefined
18656 - change socket registration order at startup to accomodate kqueue.
18657 - several makefile cleanups to support old shells
18658 - fix build with limits.h once for all
18659 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
18660 - fdtab now holds the results of polling
18661 - implemented support for speculative I/O processing with epoll()
18662 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
18663 - auto-registering of pollers at load time
18664
Willy Tarreau42c76592007-04-03 20:30:13 +0200186652007/04/03 : 1.3.8.2
18666 - rewriting either the status line or request line could crash the
18667 process due to a pointer which ought to be reset before parsing.
18668 - rewriting the status line in the response did not work, it caused
18669 a 502 Bad Gateway due to an erroneous state during parsing
18670
Willy Tarreauef6d7612007-04-01 11:06:22 +0200186712007/04/01 : 1.3.8.1
18672 - fix reqadd when no option httpclose is used.
18673 - removed now unused fiprm and beprm from proxies
18674 - split logs into two versions : TCP and HTTP
18675 - added some docs about http headers storage and acls
18676 - added a VIM script for syntax color highlighting (Bruno Michel)
18677
Willy Tarreaud661cc02007-03-26 00:24:56 +0200186782007/03/25 : 1.3.8
18679 - fixed several bugs which might have caused a crash with bad configs
18680 - several optimizations in header processing
18681 - many progresses towards transaction-based processing
18682 - option forwardfor may be used in frontends
18683 - completed HTTP response processing
18684 - some code refactoring between request and response processing
18685 - new HTTP header manipulation functions
18686 - optimizations on the recv() patch to reduce CPU usage under very
18687 high data rates.
18688 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
18689 - username/groupname support from Marcus Rueckert
18690 - added the "except" keyword to the "forwardfor" option (Bryan German)
18691 - support for health-checks on other addresses (Fabrice Dulaunoy)
18692 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
18693 - do not insert "Connection: close" in HTTP/1.0 messages
18694
Willy Tarreau9cabf702007-01-26 23:49:01 +0100186952007/01/26 : 1.3.7
18696 - fix critical bug introduced with 1.3.6 : an empty request header
18697 may lead to a crash due to missing pointer assignment
18698 - hdr_idx might be left uninitialized in debug mode
18699 - fixed build on FreeBSD due to missing fd_set declaration
18700
Willy Tarreaue7a24382007-01-22 08:57:44 +0100187012007/01/22 : 1.3.6.1
18702 - change in the header chaining broke cookies and authentication
18703
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100187042007/01/22 : 1.3.6
18705 - stats now support the HEAD method too
18706 - extracted http request from the session
18707 - huge rework of the HTTP parser which is now a 28-state FSM.
18708 - linux-style likely/unlikely macros for optimization hints
18709 - do not create a server socket when there's no server
18710 - imported lots of docs
18711
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100187122007/01/07 : 1.3.5
18713 - stats: swap color sets for active and backup servers
18714 - try to guess server check port when unset
18715 - added complete support and doc for TCP Splicing
18716 - replace the wait-queue linked list with an rbtree.
18717 - a few bugfixes and cleanups
18718
Willy Tarreau85270da2007-01-02 00:59:39 +0100187192007/01/02 : 1.3.4
18720 - support for cttproxy on the server side to present the client
18721 address to the server.
18722 - added support for SO_REUSEPORT on Linux (needs kernel patch)
18723 - new RFC2616-compliant HTTP request parser with header indexing
18724 - split proxies in frontends, rulesets and backends
18725 - implemented the 'req[i]setbe' to select a backend depending
18726 on the contents
18727 - added the 'default_backend' keyword to select a default BE.
18728 - new stats page featuring FEs and BEs + bytes in both dirs
18729 - improved log format to indicate the backend and the time in ms.
18730 - lots of cleanups
18731
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200187322006/10/15 : 1.3.3
18733 - fix broken redispatch option in case the connection has already
18734 been marked "in progress" (ie: nearly always).
18735 - support regparm on x86 to speed up some often called functions
18736 - removed a few useless calls to gettimeofday() in log functions.
18737 - lots of 'const char*' cleanups
18738 - turn every FD_* into functions which are faster on recent CPUs
18739
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200187402006/09/03 : 1.3.2
18741 - started the changes towards I/O completion callbacks. stream_sock* have
18742 replaced event_*.
18743 - added the new "reqtarpit" and "reqitarpit" protection features
18744
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200187452006/07/09 : 1.3.1 (1.2.15)
18746 - now, haproxy warns about missing timeout during startup to try to
18747 eliminate all those buggy configurations.
18748 - added "Content-Type: text/html" in responses wherever appropriate, as
18749 suggested by Cameron Simpson.
18750 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
18751 test server's health
18752 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
18753 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
18754 at once.
18755
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200187562006/06/29 : 1.3.0
18757 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020018758 difference is expected at all.
18759 - fixed a bug by which neither stats nor error messages could be returned if
18760 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020018761
willy tarreau7e6328d2006-05-21 23:26:20 +0200187622006/05/21 : 1.2.14
18763 - new HTML status report with the 'stats' keyword.
18764 - added the 'abortonclose' option to better resist traffic surges
18765 - implemented dynamic traffic regulation with the 'minconn' option
18766 - show request time on denied requests
18767 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
18768 - now a proxy instance is allowed to run without servers, which is
18769 useful to dedicate one instance to stats
18770 - added lots of error counters
18771 - a missing parenthesis preventd matching of cacheable cookies
18772 - a missing parenthesis in poll_loop() might have caused missed events.
18773
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200187742006/05/14 : 1.2.13.1
18775 - an uninitialized field in the struct session could cause a crash when
18776 the session was freed. This has been encountered on Solaris only.
18777 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
18778 be nice to them by performing a soft stop if pause fails.
18779
willy tarreauc3a2e072006-05-13 18:51:38 +0200187802006/05/13 : 1.2.13
18781 - 'maxconn' server parameter to do per-server session limitation
18782 - queueing to support non-blocking session limitation
18783 - fixed removal of cookies for cookie-less servers such as backup servers
18784 - two separate wait queues for expirable and non-expirable tasks provide
18785 better performance with lots of sessions.
18786 - some code cleanups and performance improvements
18787 - made state dumps a bit more verbose
18788 - fixed missing checks for NULL srv in dispatch mode
18789 - load balancing on backup servers was not possible in source hash mode.
18790 - two session flags shared the same bit, but fortunately they were not
18791 compatible.
18792
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200187932006/04/15 : 1.2.12
18794 Very few changes preparing for more important changes to support per-server
18795 session limitations and queueing :
18796 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
18797 - added the 'weight' parameter to the servers, limited to 1..256. It applies
18798 to roundrobin and source hash.
18799 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
18800
willy tarreaue0dd2692006-03-30 16:27:34 +0200188012006/03/30 : 1.2.11.1
18802 - under some conditions, it might have been possible that when the
18803 last dead server became available, it would not have been used
18804 till another one would have changed state. Could not be reproduced
18805 at all, however seems possible from the code.
18806
willy tarreaud2058dc2006-03-25 20:35:41 +0100188072006/03/25 : 1.2.11
18808 - added the '-db' command-line option to disable backgrounding.
18809 - added the -sf/-st command-line arguments which are used to specify
18810 a list of pids to send a FINISH or TERMINATE signal upon startup.
18811 They will also be asked to release their port if a bind fails.
18812 - reworked the startup mechanism to allow the sending of a signal to a list
18813 of old pids if a socket cannot be bound, with a retry for a limited amount
18814 of time (1 second by default).
18815 - added the ability to enforce limits on memory usage.
18816 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
18817 - re-architectured the server round-robin mechanism to ease integration of
18818 other algorithms. It now relies on the number of active and backup servers.
18819 - added a counter for the number of active and backup servers, and report
18820 these numbers upon SIGHUP or state change.
18821
willy tarreaubfad5742006-03-23 14:19:11 +0100188222006/03/23 : 1.2.10.1
18823 - while fixing the backup server round-robin "feature", a new bug was
18824 introduced which could miss some backup servers.
18825 - the displayed proxy name was wrong when dumping upon SIGHUP.
18826
willy tarreauaaff30e2006-03-19 21:30:41 +0100188272006/03/19 : 1.2.10
18828 - assert.h is needed when DEBUG is defined.
18829 - ENORMOUS long standing bug affecting the epoll polling system :
18830 event_data is a union, not a structure !
18831 - Make fd management more robust and easier to debug. Also some
18832 micro-optimisations.
18833 - Limit the number of consecutive accept() in multi-process mode.
18834 This produces a more evenly distributed load across the processes and
18835 slightly improves performance by reducing bottlenecks.
18836 - Make health-checks be more regular, and faster to retry after a timeout.
18837 - Fixed some messages to ease parsing of alerts.
18838 - provided a patch to enable epoll on RHEL3 kernels.
18839 - Separated OpenBSD build from the main Makefile into a new one.
18840
willy tarreau50be0172006-03-15 19:41:19 +0100188412006/03/15 : 1.2.9
18842 - haproxy could not be stopped after being paused, it had to be woken up
18843 first. This has been fixed.
18844 - the 'ulimit-n' parameter is now optional and by default computed from
18845 maxconn + the number of listeners + the number of health-checks.
18846 - it is now possible to specify a maximum number of connections at build
18847 time with the SYSTEM_MAXCONN define. The value set in the configuration
18848 file will then be limited to this value, and only the command-line '-n'
18849 option will be able to bypass it. It will prevent against accidental
18850 high memory usage on small systems.
18851 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
18852 versions did not detect a line beginning with a space as the continuation
18853 of previous header. It is now correct.
18854 - health checks sent to servers configured with identical intervals were
18855 sent in perfect synchronisation because the initial time was the same
18856 for all. This could induce high load peaks when fragile servers were
18857 hosting tens of instances for the same application. Now the load is
18858 spread evenly across the smallest interval amongst a listener.
18859 - a new 'forceclose' option was added to make the proxy close the outgoing
18860 channel to the server once it has sent all its headers and the server
18861 starts responding. This helps some servers which don't close upon the
18862 'Connection: close' header. It implies 'option httpclose'.
18863 - there was a bug in the way the backup servers were handled. They were
18864 erroneously load-balanced while the doc said the opposite. Since
18865 load-balanced backup servers is one of the features some people have
18866 been asking for, the problem was fixed to reflect the documented
18867 behaviour and a new option 'allbackups' was introduced to provide the
18868 feature to those who need it.
18869 - a never ending connect() could lead to a fast select() loop if its
18870 timeout times the number of retransmits exceeded the server read or write
18871 timeout, because the later was used to compute select()'s timeout while
18872 the connection timeout was not reached.
18873 - now we initialize the libc's localtime structures very early so that even
18874 under OOM conditions, we can still send dated error messages without
18875 segfaulting.
18876 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
18877 descriptors are closed.
18878
willy tarreau065f1c02006-01-29 22:10:07 +0100188792006/01/29 : 1.2.8
18880 - fixed a nasty bug affecting poll/epoll which could return unmodified data
18881 from the server to the client, and sometimes lead to memory corruption
18882 crashing the process.
18883 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
18884
188852005/12/18 : 1.2.7.1
18886 - the "retries" option was ignored because connect() could not return an
18887 error if the connection failed before the timeout.
18888 - TCP health-checks could not detect a connection refused in poll/epoll
18889 mode.
18890
willy tarreaua56eca72005-12-18 01:34:42 +0100188912005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010018892 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
18893 least on Solaris, this caused the libc's regex primitives to be used instead
18894 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010018895 - delayed the quiet mode during startup so that most of the startup alerts can
18896 be displayed even in quiet mode.
18897 - display an alert when a listener has no address, invalid or no port, or when
18898 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010018899 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010018900
willy tarreaub952e1d2005-12-18 01:31:20 +0100189012005/10/09 : 1.2.7rc (1.1.33rc)
18902 - second batch of socklen_t changes.
18903 - clean-ups from Cameron Simpson.
18904 - because tv_remain() does not know about eternity, using no timeout can
18905 make select() spin around a null time-out. Bug reported by Cameron Simpson.
18906 - client read timeout was not properly set to eternity initialized after an
18907 accept() if it was not set in the config. It remained undetected so long
18908 because eternity is 0 and newly allocated pages are zeroed by the system.
18909 - do not call get_original_dst() when not in transparent mode.
18910 - implemented a workaround for a bug in certain epoll() implementations on
18911 linux-2.4 kernels (epoll-lt <= 0.21).
18912 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
18913
willy tarreauc5f73ed2005-12-18 01:26:38 +0100189142005/08/07 : 1.2.6
18915 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
18916
189172005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010018918 - added the number of active sessions (proxy/process) in the logs
18919
189202005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010018921 - the time-out fix introduced in 1.1.25 caused a corner case where it was
18922 possible for a client to keep a connection maintained regardless of the
18923 timeout if the server closed the connection during the HEADER phase,
18924 while the client ignored the close request while doing nothing in the
18925 other direction. This has been fixed now by ensuring that read timeouts
18926 are re-armed when switching to any SHUTW state.
18927
189282005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
18929 - enhanced error reporting in the logs. Now the proxy will precisely detect
18930 various error conditions related to the system and/or process limits, and
18931 generate LOG_EMERG logs indicating that a resource has been exhausted.
18932 - logs will contain two new characters for the error cause : 'R' indicates
18933 a resource exhausted, and 'I' indicates an internal error, though this
18934 one should never happen.
18935 - server connection timeouts can now be reported in the logs (sC), as well
18936 as connections refused because of maxconn limitations (PC).
18937
189382005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
18939 - new global configuration keyword "ulimit-n" may be used to raise the FD
18940 limit to usable values.
18941 - a warning is now displayed on startup if the FD limit is lower than the
18942 configured maximum number of sockets.
18943
189442005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
18945 - new configuration keyword "monitor-net" makes it possible to be monitored
18946 by external devices which connect to the proxy without being logged nor
18947 forwarded to any server. Particularly useful on generic TCPv4 relays.
18948
willy tarreau5dffb602005-12-18 01:15:23 +0100189492005/06/21 : 1.2.5.2
18950 - fixed build on PPC where chars are unsigned by default
18951
willy tarreau08dedbe2005-12-18 01:13:48 +0100189522005/05/02 : 1.2.5.1
18953 - dirty hack to fix a bug introduced with epoll : if we close an FD and
18954 immediately reassign it to another session through a connect(), the
18955 Prev{Read,Write}Events are not updated, which causes trouble detecting
18956 changes, thus leading to many timeouts at high loads.
18957
willy tarreau64a3cc32005-12-18 01:13:11 +0100189582005/04/30 : 1.2.5 (1.1.31)
18959 - changed the runtime argument to disable epoll() to '-de'
18960 - changed the runtime argument to disable poll() to '-dp'
18961 - added global options 'nopoll' and 'noepoll' to do the same at the
18962 configuration level.
18963 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
18964 support epoll().
18965 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
18966 - conditionned signals redirection to #ifdef DEBUG_MEMORY
18967
willy tarreau1c2ad212005-12-18 01:11:29 +0100189682005/04/26 : 1.2.5-pre4
18969 - made epoll() support a compile-time option : ENABLE_EPOLL
18970 - provided a very little libc replacement for a possibly missing epoll()
18971 implementation which can be enabled by -DUSE_MY_EPOLL
18972 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
18973 The equivalent runtime argument becomes '-P'. A few tests show that it
18974 performs like select() with many fds, but slightly slower (certainly
18975 because of the higher amount of memory involved).
18976 - separated the 3 polling methods and the tasks scheduler into 4 distinct
18977 functions which makes the code a lot more modular.
18978 - moved some event tables to private static declarations inside the poller
18979 functions.
18980 - the poller functions can now initialize themselves, run, and cleanup.
18981 - changed the runtime argument to enable epoll() to '-E'.
18982 - removed buggy epoll_ctl() code in the client_retnclose() function. This
18983 function was never meant to remove anything.
18984 - fixed a typo which caused glibc to yell about a double free on exit.
18985 - removed error checking after epoll_ctl(DEL) because we can never know if
18986 the fd is still active or already closed.
18987 - added a few entries in the makefile
18988
willy tarreauad90a0c2005-12-18 01:09:15 +0100189892005/04/25 : 1.2.5-pre3
18990 - experimental epoll() support (use temporary '-e' argument)
18991
189922005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010018993 - implemented the HTTP 303 code for error redirection. This forces the
18994 browser to fetch the given URI with a GET request. The new keyword for
18995 this is 'errorloc303', and a new 'errorloc302' keyword has been created
18996 to make them easily distinguishable.
18997 - added more controls in the parser for valid use of '\x' sequence.
18998 - few fixes from Alex & Klaus
18999
willy tarreauad90a0c2005-12-18 01:09:15 +0100190002005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010019001 - fixed a few errors in the documentation
19002
190032005/02/13
19004 - do not pre-initialize unused file-descriptors before select() anymore.
19005
willy tarreau12350152005-12-18 01:03:27 +0100190062005/01/22 : 1.2.4
19007 - merged Alexander Lazic's and Klaus Wagner's work on application
19008 cookie-based persistence. Since this is the first merge, this version is
19009 not intended for general use and reports are more than welcome. Some
19010 documentation is really needed though.
19011
willy tarreau0174f312005-12-18 01:02:42 +0100190122005/01/22 : 1.2.3 (1.1.30)
19013 - add an architecture guide to the documentation
19014 - released without any changes
19015
190162004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
19017 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
19018 compatible with Apache. This limit can be configured in the makefile now.
19019 Thanks to Eric Fehr for the checks.
19020 - added a per-server "source" option which now makes it possible to bind to
19021 a different source for each (potentially identical) server.
19022 - changed cookie-based server selection slightly to allow several servers to
19023 share a same cookie, thus making it possible to associate backup servers to
19024 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
19025 - added the cookie 'prefix' mode which makes it possible to use persistence
19026 with thin clients which support only one cookie. The server name is prefixed
19027 before the application cookie, and restore back.
19028 - fixed the order of servers within an instance to match documentation. Now
19029 the servers are *really* used in the order of their declaration. This is
19030 particularly important when multiple backup servers are in use.
19031
willy tarreau4302f492005-12-18 01:00:37 +0100190322004/10/18 : 1.2.2 (1.1.29)
19033 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
19034 option was enabled without the 'tcplog' option.
19035 - encode_string() would use hdr_encode_map instead of the map argument.
19036
190372004/08/10 : (1.1.29-pre2)
19038 - the logged request is now encoded with '#XX' for unprintable characters
19039 - new keywords 'capture request header' and 'capture response header' enable
19040 logging of arbitrary HTTP headers in requests and responses
19041 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
19042
willy tarreau982249e2005-12-18 00:57:06 +0100190432004/06/06 : 1.2.1 (1.1.28)
19044 - added the '-V' command line option to verbosely report errors even though
19045 the -q or 'quiet' options are specified. This is useful with '-c'.
19046 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010019047
willy tarreau982249e2005-12-18 00:57:06 +0100190482004/06/05 :
19049 - added the "logasap" option which produces a log without waiting for the data
19050 to be transferred from the server to the client.
19051 - added the "httpclose" option which removes any "connection:" header and adds
19052 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010019053 - added the 'checkcache' option which blocks cacheable responses containing
19054 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010019055 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
19056 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010019057
190582004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010019059 - send an EMERG log when no server is available for a given proxy
19060 - added the '-c' command line option to syntactically check the
19061 configuration file without starting the service.
19062
willy tarreau8a86dbf2005-12-18 00:45:59 +0100190632003/11/09 : 1.2.0
19064 - the same as 1.1.27 + IPv6 support on the client side
19065
willy tarreaufe2c5c12005-12-17 14:14:34 +0100190662003/10/27 : 1.1.27
19067 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
19068 bug : the code still assumed that HTTP requests were the same size as the
19069 original ones (22 bytes), and failed if they were not.
19070 - added support for pidfiles.
19071
willy tarreauc58fc692005-12-17 14:13:08 +0100190722003/10/22 : 1.1.26
19073 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
19074 broke almost all compatibility with POST requests, because the proxy
19075 stopped to read anything from the client as soon as it got all of its
19076 headers.
19077
willy tarreauc1cae632005-12-17 14:12:23 +0100190782003/10/15 : 1.1.25
19079 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
19080 generic TCP proxies, or lighter logs for HTTP proxies.
19081 - fixed a time-out condition wrongly reported as client time-out in data
19082 phase if the client timeout was lower than the connect timeout times the
19083 number of retries.
19084
willy tarreau197e8ec2005-12-17 14:10:59 +0100190852003/09/21 : 1.1.24
19086 - if a client sent a full request then shut its write connection down, then
19087 the request was aborted. This case was detected only when using haproxy
19088 both as health-check client and as a server.
19089 - if 'option httpchk' is used in a 'health' mode server, then responses will
19090 change from 'OK' to 'HTTP/1.0 200 OK'.
19091 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
19092 server response followed by a close could be ignored, and the server seen
19093 as failed.
19094
willy tarreaueedaa9f2005-12-17 14:08:03 +0100190952003/09/19 : 1.1.23
19096 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
19097 'default' sections to keep previous parameters, and not initialize logs
19098 correctly.
19099 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
19100 relying on 'dispatch' mode to segfault at the first connection.
19101 - 'option httpchk' now supports method, HTTP version and a few headers.
19102 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
19103 'defaults' section
19104
191052003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010019106 - 'listen' now supports optionnal address:port-range lists
19107 - 'bind' introduced to add new listen addresses
19108 - fixed a bug which caused a session to be kept established on a server till
19109 it timed out if the client closed during the DATA phase.
19110 - the port part of each server address can now be empty to make the proxy
19111 connect to the server on the same port it was connected to, be an absolute
19112 unsigned number to reflect a single port (as in older versions), or an
19113 explicitly signed number (+N/-N) to indicate that this offset must be
19114 applied to the port the proxy was connected to, when connecting to the
19115 server.
19116 - the 'port' server option allows the user to specify a different
19117 health-check port than the service one. It is mandatory when only relative
19118 ports have been specified and check is required. By default, the checks are
19119 sent to the service port.
19120 - new 'defaults' section which is rather similar to 'listen' except that all
19121 values are only used as default values for future 'listen' sections, until
19122 a new 'defaults' resets them. At the moment, server options, regexes,
19123 cookie names and captures cannot be set in the 'defaults' section.
19124
willy tarreau2f6ba652005-12-17 13:57:42 +0100191252003/05/06 : 1.1.21
19126 - changed the debug output format so that it now includes the session unique
19127 ID followed by the instance name at the beginning of each line.
19128 - in debug mode, accept now shows the client's IP and port.
19129 - added one 3 small debugging scripts to search and pretty print debug output
19130 - changed the default health check request to "OPTIONS /" instead of
19131 "OPTIONS *" since not all servers implement the later one.
19132 - "option httpchk" now accepts an optional parameter allowing the user to
19133 specify and URI other than '/' during health-checks.
19134
willy tarreaub1ff9db2005-12-17 13:51:03 +0100191352003/04/21 : 1.1.20
19136 - fixed two problems with time-outs, one where a server would be logged as
19137 timed out during transfer that take longer to complete than the fixed
19138 time-out, and one where clients were logged as timed-out during the data
19139 phase because they didn't have anything to send. This sometimes caused
19140 slow client connections to close too early while in fact there was no
19141 problem. The proper fix would be to have a per-fd time-out with
19142 conditions depending on the state of the HTTP FSM.
19143
willy tarreau906b2682005-12-17 13:49:52 +0100191442003/04/16 : 1.1.19
19145 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
19146 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
19147 cookie persistence because it uses "cookie:". Two memcmp() have been
19148 replaced with strncasecmp().
19149
willy tarreau036e1ce2005-12-17 13:46:33 +0100191502003/04/02 : 1.1.18
19151 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
19152 REGEX=pcre on the make command line.
19153 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
19154 - when explicit source address binding is required, it is now also used for
19155 health-checks.
19156 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
19157 itself.
19158 - factored several strings to reduce binary size by about 2 kB.
19159 - replaced setreuid() and setregid() with more standard setuid() and setgid().
19160 - added 4 status flags to the log line indicating who ended the connection
19161 first, the sessions state, the validity of the cookie, and action taken on
19162 the set-cookie header.
19163
191642002/10/18 : 1.1.17
19165 - add the notion of "backup" servers, which are used only when all other
19166 servers are down.
19167 - make Set-Cookie return "" instead of "(null)" when the server has no
19168 cookie assigned (useful for backup servers).
19169 - "log" now supports an optionnal level name (info, notice, err ...) above
19170 which nothing is sent.
19171 - replaced some strncmp() with memcmp() for better efficiency.
19172 - added "capture cookie" option which logs client and/or server cookies
19173 - cleaned up/down messages and dump servers states upon SIGHUP
19174 - added a redirection feature for errors : "errorloc <errnum> <url>"
19175 - now we won't insist on connecting to a dead server, even with a cookie,
19176 unless option "persist" is specified.
19177 - added HTTP/408 response for client request time-out and HTTP/50[234] for
19178 server reply time-out or errors.
19179
191802002/09/01 : 1.1.16
19181 - implement HTTP health checks when option "httpchk" is specified.
19182
191832002/08/07 : 1.1.15
19184 - replaced setpgid()/setpgrp() with setsid() for better portability, because
19185 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
19186
191872002/07/20 : 1.1.14
19188 - added "postonly" cookie mode
19189
191902002/07/15 : 1.1.13
19191 - tv_diff used inverted parameters which led to negative times !
19192
191932002/07/13 : 1.1.12
19194 - fixed stats monitoring, and optimized some tv_* for most common cases.
19195 - replaced temporary 'newhdr' with 'trash' to reduce stack size
19196 - made HTTP errors more HTML-fiendly.
19197 - renamed strlcpy() to strlcpy2() because of a slightly difference between
19198 their behaviour (return value), to avoid confusion.
19199 - restricted HTTP messages to HTTP proxies only
19200 - added a 502 message when the connection has been refused by the server,
19201 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
19202 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
19203 inserting a cookie, because some caches (apache) don't understand it.
19204 - fixed processing of server headers when client is in SHUTR state
19205
192062002/07/04 :
19207 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
19208 setpgid()
19209
192102002/06/04 : 1.1.11
19211 - fixed multi-cookie handling in client request to allow clean deletion
19212 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010019213 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010019214 - added a "nocache" option to "cookie" to specify that we explicitly want
19215 to add a "cache-control" header when we add a cookie.
19216 It is also possible to add an "Expires: <old-date>" to keep compatibility
19217 with old/broken caches.
19218
192192002/05/10 : 1.1.10
19220 - if a cookie is used in insert+indirect mode, it's desirable that the
19221 the servers don't see it. It was not possible to remove it correctly
19222 with regexps, so now it's removed automatically.
19223
192242002/04/19 : 1.1.9
19225 - don't use snprintf()'s return value as an end of message since it may
19226 be larger. This caused bus errors and segfaults in internal libc's
19227 getenv() during localtime() in send_log().
19228 - removed dead insecure send_syslog() function and all references to it.
19229 - fixed warnings on Solaris due to buggy implementation of isXXXX().
19230
192312002/04/18 : 1.1.8
19232 - option "dontlognull"
19233 - fixed "double space" bug in config parser
19234 - fixed an uninitialized server field in case of dispatch
19235 with no existing server which could cause a segfault during
19236 logging.
19237 - the pid logged was always the father's, which was wrong for daemons.
19238 - fixed wrong level "LOG_INFO" for message "proxy started".
19239
192402002/04/13 :
19241 - http logging is now complete :
19242 - ip:port, date, proxy, server
19243 - req_time, conn_time, hdr_time, tot_time
19244 - status, size, request
19245 - source address
19246
192472002/04/12 : 1.1.7
19248 - added option forwardfor
19249 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
19250 - added "log global" in "listen" section.
19251
192522002/04/09 :
19253 - added a new "global" section :
19254 - logs
19255 - debug, quiet, daemon modes
19256 - uid, gid, chroot, nbproc, maxconn
19257
192582002/04/08 : 1.1.6
19259 - regex are now chained and not limited anymore.
19260 - unavailable server now returns HTTP/502.
19261 - increased per-line args limit to 40
19262 - added reqallow/reqdeny to block some request on matches
19263 - added HTTP 400/403 responses
19264
192652002/04/03 : 1.1.5
19266 - connection logging displayed incorrect source address.
19267 - added proxy start/stop and server up/down log events.
19268 - replaced log message short buffers with larger trash.
19269 - enlarged buffer to 8 kB and replace buffer to 4 kB.
19270
192712002/03/25 : 1.1.4
19272 - made rise/fall/interval time configurable
19273
192742002/03/22 : 1.1.3
19275 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
19276 which could lead to loops.
19277
192782002/03/21 : 1.1.2
19279 - fixed a bug in buffer management where we could have a loop
19280 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
19281 => implemented an adjustable buffer limit.
19282 - fixed a bug : expiration of tasks in wait queue timeout is used again,
19283 and running tasks are skipped.
19284 - added some debug lines for accept events.
19285 - send warnings for servers up/down.
19286
192872002/03/12 : 1.1.1
19288 - fixed a bug in total failure handling
19289 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
19290
192912002/03/10 : 1.1.0
19292 - fixed a few timeout bugs
19293 - rearranged the task scheduler subsystem to improve performance,
19294 add new tasks, and make it easier to later port to librt ;
19295 - allow multiple accept() for one select() wake up ;
19296 - implemented internal load balancing with basic health-check ;
19297 - cookie insertion and header add/replace/delete, with better strings
19298 support.
19299
193002002/03/08
19301 - reworked buffer handling to fix a few rewrite bugs, and
19302 improve overall performance.
19303 - implement the "purge" option to delete server cookies in direct mode.
19304
193052002/03/07
19306 - fixed some error cases where the maxfd was not decreased.
19307
193082002/02/26
19309 - now supports transparent proxying, at least on linux 2.4.
19310
193112002/02/12
19312 - soft stop works again (fixed select timeout computation).
19313 - it seems that TCP proxies sometimes cannot timeout.
19314 - added a "quiet" mode.
19315 - enforce file descriptor limitation on socket() and accept().
19316
193172001/12/30 : release of version 1.0.2 : fixed a bug in header processing
193182001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
193192001/12/16 : release of version 1.0.0.
193202001/12/16 : added syslog capability for each accepted connection.
193212001/11/19 : corrected premature end of files and occasional SIGPIPE.
193222001/10/31 : added health-check type servers (mode health) which replies OK then closes.
193232001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
19324 with or without cookies (use keyword http for this).
193252001/09/01 : added client/server header replacing with regexps.
19326 eg:
19327 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
19328 srvexp ^Server:\ .* Server:\ Apache
193292000/11/29 : first fully working release with complete FSMs and timeouts.
193302000/11/28 : major rewrite
193312000/11/26 : first write