blob: 6a5cd84ae2eb0d5b0025fedf7cd26b30219afe9a [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Willy Tarreauf9de4e92022-06-24 22:09:05 +020042022/06/24 : 2.7-dev1
5 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a cert entry fails
6 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a CA/CRL entry fails
7 - BUG/MEDIUM: ssl_ckch: Don't delete a cert entry if it is being modified
8 - BUG/MEDIUM: ssl_ckch: Don't delete CA/CRL entry if it is being modified
9 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a cert entry
10 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a CA/CRL entry
11 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl cert' to handle full buffer cases
12 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl ca-file' to handle full buffer cases
13 - BUG/MEDIUM: ssl/crt-list: Rework 'add ssl crt-list' to handle full buffer cases
14 - BUG/MEDIUM: httpclient: Don't remove HTX header blocks before duplicating them
15 - BUG/MEDIUM: httpclient: Rework CLI I/O handler to handle full buffer cases
16 - MEDIUM: httpclient: Don't close CLI applet at the end of a response
17 - MEDIUM: http-ana: Always report rewrite failures as PRXCOND in logs
18 - CLEANUP: Re-apply xalloc_size.cocci (2)
19 - REGTESTS: abortonclose: Add a barrier to not mix up log messages
20 - REGTESTS: http_request_buffer: Increase client timeout to wait "slow" clients
21 - CLEANUP: ssl_ckch: Use corresponding enum for commit_cacrlfile_ctx.cafile_type
22 - MINOR: ssl_ckch: Simplify I/O handler to commit changes on CA/CRL entry
23 - BUG/MINOR: ssl_ckch: Use right type for old entry in show_crlfile_ctx
24 - BUG/MINOR: ssl_ckch: Dump CRL transaction only once if show command yield
25 - BUG/MINOR: ssl_ckch: Dump CA transaction only once if show command yield
26 - BUG/MINOR: ssl_ckch: Dump cert transaction only once if show command yield
27 - BUG/MINOR: ssl_ckch: Init right field when parsing "commit ssl crl-file" cmd
28 - CLEANUP: ssl_ckch: Remove unused field in commit_cacrlfile_ctx structure
29 - MINOR: ssl_ckch: Simplify structure used to commit changes on CA/CRL entries
30 - MINOR: ssl_ckch: Remove service context for "set ssl cert" command
31 - MINOR: ssl_ckch: Remove service context for "set ssl ca-file" command
32 - MINOR: ssl_ckch: Remove service context for "set ssl crl-file" command
33 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cert I/O handler
34 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cafile I/O handler
35 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_crlfile I/O handler
36 - BUILD: ssl_ckch: Fix build error about a possible uninitialized value
37 - BUG/MINOR: ssl_ckch: Fix another possible uninitialized value
38 - REGTESTS: http_abortonclose: Extend supported versions
39 - REGTESTS: restrict_req_hdr_names: Extend supported versions
40 - MINOR: connection: support HTTP/3.0 for smp_*_http_major fetch
41 - MINOR: h3: add h3c pointer into h3s instance
42 - MINOR: mux-quic: simplify decode_qcs API
43 - MINOR: mux-quic/h3: adjust demuxing function return values
44 - BUG/MINOR: h3: fix return value on decode_qcs on error
45 - BUILD: quic: fix anonymous union for gcc-4.4
46 - BUILD: compiler: implement unreachable for older compilers too
47 - DEV: tcploop: reorder options in the usage message
48 - DEV: tcploop: make the current address the default address
49 - DEV: tcploop: make it possible to change the target address of a connect()
50 - DEV: tcploop: factor out the socket creation
51 - DEV: tcploop: permit port 0 to ease handling of default options
52 - DEV: tcploop: add a new "bind" command to bind to ip/port.
53 - DEV: tcploop: add minimal UDP support
54 - BUG/MINOR: trace: Test server existence for health-checks to get proxy
55 - BUG/MINOR: checks: Properly handle email alerts in trace messages
56 - BUG/MEDIUM: mailers: Set the object type for check attached to an email alert
57 - REGTESTS: healthcheckmail: Update the test to be functionnal again
58 - REGTESTS: healthcheckmail: Relax health-check failure condition
59 - BUG/MINOR: h3: fix incorrect BUG_ON assert on SETTINGS parsing
60 - MEDIUM: mux-h2: try to coalesce outgoing WINDOW_UPDATE frames
61 - OPTIM: mux-h2: increase h2_settings_initial_window_size default to 64k
62 - BUG/MINOR: h3: fix frame type definition
63 - BUG/MEDIUM: h3: fix SETTINGS parsing
64 - BUG/MINOR: cli/stats: add missing trailing LF after JSON outputs
65 - BUG/MINOR: server: do not enable DNS resolution on disabled proxies
66 - BUG/MINOR: cli/stats: add missing trailing LF after "show info json"
67 - DOC: design: update the notes on thread groups
68 - BUG/MEDIUM: mux-quic: fix flow control connection Tx level
69 - MINOR: mux-quic: complete BUG_ON on TX flow-control enforcing
70 - BUG/MINOR: mux-quic: fix memleak on frames rejected by transport
71 - BUG/MINOR: tcp-rules: Make action call final on read error and delay expiration
72 - CLEANUP: check: Remove useless tests on check's stream-connector
73 - BUG/MEDIUM: stconn: Don't wakeup applet for send if it won't consume data
74 - BUG/MEDIUM: cli: Notify cli applet won't consume data during request processing
75 - BUG/MEDIUM: mux-quic: fix segfault on flow-control frame cleanup
76 - MINOR: task: move profiling bit to per-thread
77 - CLEANUP: quic: use task_new_on() for single-threaded tasks
78 - MINOR: tinfo: remove the global thread ID bit (tid_bit)
79 - CLEANUP: hlua: check for at least 2 threads on a task
80 - MINOR: thread: get rid of MAX_THREADS_MASK
81 - OPTIM: task: do not consult shared WQ when we're already full
82 - DOC: design: update the task vs thread affinity requirements
83 - MINOR: qpack: add comments and remove a useless trace
84 - MINOR: qpack: reduce dependencies on other modules
85 - BUG/MINOR: qpack: support header litteral name decoding
86 - MINOR: qpack: add ABORT_NOW on unimplemented decoding
87 - BUG/MINOR: h3/qpack: deal with too many headers
88 - MINOR: qpack: improve decoding function
89 - MINOR: qpack: implement standalone decoder tool
90 - BUG/BUILD: h3: fix wrong label name
91 - BUG/MINOR: quic: Stop hardcoding Retry packet Version field
92 - MINOR: quic: Add several nonce and key definitions for Retry tag
93 - BUG/MINOR: quic: Wrong PTO calculation
94 - MINOR: quic: Parse long packet version from qc_parse_hd_form()
95 - CLEANUP: quid: QUIC draft-28 no more supported
96 - MEDIUM: quic: Add QUIC v2 draft support
97 - MINOR: quic: Released QUIC TLS extension for QUIC v2 draft
98 - MEDIUM: quic: Compatible version negotiation implementation (draft-08)
99 - CLEANUP: quic: Remove any reference to boringssl
100 - BUG/MINOR: task: fix thread assignment in tasklet_kill()
101 - BUG/MEDIUM: stream: Properly handle destructive client connection upgrades
102 - MINOR: stream: Rely on stconn flags to abort stream destructive upgrade
103 - CLEANUP: stconn: Don't expect to have no sedesc on detach
104 - BUG/MINOR: log: Properly test connection retries to fix dontlog-normal option
105 - MINOR: hlua: don't dump empty entries in hlua_traceback()
106 - MINOR: hlua: add a new hlua_show_current_location() function
107 - MEDIUM: debug: add a tainted flag when a shared library is loaded
108 - MEDIUM: debug: detect redefinition of symbols upon dlopen()
109 - BUILD: quic: Wrong HKDF label constant variable initializations
110 - BUG/MINOR: quic: Unexpected half open connection counter wrapping
111 - BUG/MINOR: quic_stats: Duplicate "quic_streams_data_blocked_bidi" field name
112 - BUG/MINOR: quic: purge conn Rx packet list on release
113 - BUG/MINOR: quic: free rejected Rx packets
114 - BUG/MINOR: qpack: abort on dynamic index field line decoding
115 - BUG/MEDIUM: ssl/cli: crash when crt inserted into a crt-list
116 - REGTESTS: ssl: add the same cert for client/server
117 - BUG/MINOR: quic: Acknowledgement must be forced during handshake
118 - MINOR: quic: Dump version_information transport parameter
119 - BUG/MEDIUM: mworker: use default maxconn in wait mode
120 - MINOR: intops: add a function to return a valid bit position from a mask
121 - TESTS: add a unit test for one_among_mask()
122 - BUILD: ssl_ckch: fix "maybe-uninitialized" build error on gcc-9.4 + ARM
123 - BUG/MINOR: ssl: Do not look for key in extra files if already in pem
124 - BUG/MINOR: quic: Missing acknowledgments for trailing packets
125 - BUG/MINOR: http-ana: Set method to HTTP_METH_OTHER when an HTTP txn is created
126 - BUG/MINOR: http-fetch: Use integer value when possible in "method" sample fetch
127 - MINOR: freq_ctr: Add a function to get events excess over the current period
128 - BUG/MINOR: stream: only free the req/res captures when set
129 - CLEANUP: pool/tree-wide: remove suffix "_pool" from certain pool names
130 - MEDIUM: debug: improve DEBUG_MEM_STATS to also report pool alloc/free
131 - BUG/MINOR: quic: Wrong reuse of fulfilled dgram RX buffer
132 - BUG/MAJOR: quic: Big RX dgrams leak when fulfilling a buffer
133 - BUG/MAJOR: quic: Big RX dgrams leak with POST requests
134 - BUILD: quic+h3: 32-bit compilation errors fixes
135 - MEDIUM: bwlim: Add support of bandwith limitation at the stream level
136
Willy Tarreau29698e32022-05-31 17:05:27 +02001372022/05/31 : 2.7-dev0
138 - MINOR: version: it's development again
139
Willy Tarreaua1efc042022-05-31 16:58:21 +02001402022/05/31 : 2.6.0
141 - DOC: Fix formatting in configuration.txt to fix dconv
142 - CLEANUP: tcpcheck: Remove useless test on the stream-connector in tcpcheck_main
143 - CLEANUP: muxes: Consider stream's sd as defined in .show_fd callback functions
144 - MINOR: quic: Ignore out of packet padding.
145 - CLEANUP: quic: Useless QUIC_CONN_TX_BUF_SZ definition
146 - CLEANUP: quic: No more used handshake output buffer
147 - MINOR: quic: QUIC transport parameters split.
148 - MINOR: quic: Transport parameters dump
149 - DOC: quic: Update documentation for QUIC Retry
150 - MINOR: quic: Tunable "max_idle_timeout" transport parameter
151 - MINOR: quic: Tunable "initial_max_streams_bidi" transport parameter
152 - MINOR: quic: Clarifications about transport parameters value
153 - MINOIR: quic_stats: add QUIC connection errors counters
154 - BUG/MINOR: quic: Largest RX packet numbers mixing
155 - MINOR: quic_stats: Add transport new counters (lost, stateless reset, drop)
156 - DOC: quic: Documentation update for QUIC
157 - MINOR: quic: Connection TX buffer setting renaming.
158 - MINOR: h3: Add a statistics module for h3
159 - MINOR: quic: Send STOP_SENDING frames if mux is released
160 - MINOR: quic: Do not drop packets with RESET_STREAM frames
161 - BUG/MINOR: qpack: fix buffer API usage on prefix integer encoding
162 - BUG/MINOR: qpack: support bigger prefix-integer encoding
163 - BUG/MINOR: h3: do not report bug on unknown method
164 - SCRIPTS: add make-releases-json to recreate a releases.json file in download dirs
165 - SCRIPTS: make publish-release try to launch make-releases-json
166 - MINOR: htx: add an unchecked version of htx_get_head_blk()
167 - BUILD: htx: use the unchecked version of htx_get_head_blk() where needed
168 - BUILD: quic: use inttypes.h instead of stdint.h
169 - DOC: internal: remove totally outdated diagrams
170 - DOC: remove the outdated ROADMAP file
171 - DOC: add maintainers for QUIC and HTTP/3
172 - MINOR: h3: define h3 trace module
173 - MINOR: h3: add traces on frame recv
174 - MINOR: h3: add traces on frame send
175 - MINOR: h3: add traces on h3s init/end
176 - EXAMPLES: remove completely outdated acl-content-sw.cfg
177 - BUILD: makefile: reorder objects by build time
178 - DOC: fix a few spelling mistakes in the docs
179 - BUG/MEDIUM: peers/cli: fix "show peers" crash
180 - CLEANUP: peers/cli: stop misusing the appctx local variable
181 - CLEANUP: peers/cli: make peers_dump_peer() take an appctx instead of an stconn
182 - BUG/MINOR: peers: set the proxy's name to the peers section name
183 - MINOR: server: indicate when no address was expected for a server
184 - BUG/MINOR: peers: detect and warn on init_addr/resolvers/check/agent-check
185 - DOC: peers: indicate that some server settings are not usable
186 - DOC: peers: clarify when entry expiration date is renewed.
187 - DOC: peers: fix port number and addresses on new peers section format
188 - DOC: gpc/gpt: add commments of gpc/gpt array definitions on stick tables.
189 - DOC: install: update supported OpenSSL versions in the INSTALL doc
190 - MINOR: ncbuf: adjust ncb_data with NCBUF_NULL
191 - BUG/MINOR: h3: fix frame demuxing
192 - BUG/MEDIUM: h3: fix H3_EXCESSIVE_LOAD when receiving H3 frame header only
193 - BUG/MINOR: quic: Fix QUIC_EV_CONN_PRSAFRM event traces
194 - CLEANUP: quic: remove useless check on local UNI stream reception
195 - BUG/MINOR: qpack: do not consider empty enc/dec stream as error
196 - DOC: intro: adjust the numbering of paragrams to keep the output ordered
197 - MINOR: version: mention that it's LTS now.
198
Willy Tarreau0edb9972022-05-27 19:49:31 +02001992022/05/27 : 2.6-dev12
200 - CLEANUP: tools: Clean up non-QUIC error message handling in str2sa_range()
201 - BUG/MEDIUM: tools: Fix `inet_ntop` usage in sa2str
202 - CLEANUP: tools: Crash if inet_ntop fails due to ENOSPC in sa2str
203 - BUG/MEDIUM: mux-quic: adjust buggy proxy closing support
204 - Revert "MINOR: quic: activate QUIC traces at compilation"
205 - Revert "MINOR: mux-quic: activate qmux traces on stdout via macro"
206 - CLEANUP: init: address a coverity warning about possible multiply overflow
207 - BUG/MEDIUM: http: Properly reject non-HTTP/1.x protocols
208 - MEDIUM: h1: enlarge the scope of accepted version chars with accept-invalid-http-request
209 - BUG/MEDIUM: resolvers: Don't defer resolutions release in deinit function
210 - BUG/MEDIUM: peers: fix segfault using multiple bind on peers sections
211 - BUG/MEDIUM: peers: prevent unitialized multiple listeners on peers section
212 - BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping
213 - MINOR: h3: mark ncbuf as const on h3_b_dup
214 - MINOR: mux-quic: do not alloc quic_stream_desc for uni remote stream
215 - MINOR: mux-quic: delay cs_endpoint allocation
216 - MINOR: mux-quic: add traces in qc_recv()
217 - MINOR: mux-quic: adjust return value of decode_qcs
218 - CLEANUP: h3: rename struct h3 -> h3c
219 - CLEANUP: h3: rename uni stream type constants
220 - BUG/MINOR: h3: prevent overflow when parsing SETTINGS
221 - MINOR: h3: refactor h3_control_send()
222 - MINOR: quic: support CONNECTION_CLOSE_APP emission
223 - MINOR: mux-quic: disable read on CONNECTION_CLOSE emission
224 - MINOR: h3: reject too big frames
225 - MINOR: mux-quic: emit STREAM_STATE_ERROR in qcc_recv
226 - BUG/MINOR: mux-quic: refactor uni streams TX/send H3 SETTINGS
227 - MINOR: h3/qpack: use qcs as type in decode callbacks
228 - MINOR: h3: define stream type
229 - MINOR: h3: refactor uni streams initialization
230 - MINOR: h3: check if frame is valid for stream type
231 - MINOR: h3: define non-h3 generic parsing function
232 - MEDIUM: quic: refactor uni streams RX
233 - CLEANUP: h3: remove h3 uni tasklet
234 - MINOR: h3: abort read on unknown uni stream
235 - MINOR: h3: refactor SETTINGS parsing/error reporting
236 - Revert "BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping"
237 - DOC: configuration: add a warning for @system-ca on bind
238 - CLEANUP: init: address another coverity warning about a possible multiply overflow
239 - BUG/MINOR: ssl/lua: use correctly cert_ext in CertCache.set()
240 - BUG/MEDIUM: sample: Fix adjusting size in word converter
241 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+ (2)
242 - CLEANUP: conn_stream: remove unneeded exclusion of RX_WAIT_EP from RXBLK_ANY
243 - CLEANUP: conn_stream: rename the cs_endpoint's context to "conn"
244 - MINOR: conn_stream: add new sets of functions to set/get endpoint flags
245 - DEV: coccinelle: add cs_endp_flags.cocci
246 - CLEANUP: conn_stream: apply cs_endp_flags.cocci tree-wide
247 - DEV: coccinelle: add endp_flags.cocci
248 - CLEANUP: conn_stream: apply endp_flags.cocci tree-wide
249 - CLEANUP: conn_stream: rename the stream endpoint flags CS_EP_* to SE_FL_*
250 - CLEANUP: conn_stream: rename the cs_endpoint's target to "se"
251 - CLEANUP: conn_stream: rename cs_endpoint to sedesc (stream endpoint descriptor)
252 - CLEANUP: applet: rename the sedesc pointer from "endp" to "sedesc"
253 - CLEANUP: conn_stream: rename the conn_stream's endp to sedesc
254 - CLEANUP: conn_stream: rename cs_app_* to sc_app_*
255 - CLEANUP: conn_stream: tree-wide rename to stconn (stream connector)
256 - CLEANUP: mux-h1: add and use h1s_sc() to retrieve the stream connector
257 - CLEANUP: mux-h2: add and use h2s_sc() to retrieve the stream connector
258 - CLEANUP: mux-fcgi: add and use fcgi_strm_sc() to retrieve the stream connector
259 - CLEANUP: mux-pt: add and use pt_sc() to retrieve the stream connector
260 - CLEANUP: stdesc: rename the stream connector ->cs field to ->sc
261 - CLEANUP: stream: rename "csf" and "csb" to "scf" and "scb"
262 - CLEANUP: stconn: tree-wide rename stream connector flags CS_FL_* to SC_FL_*
263 - CLEANUP: stconn: tree-wide rename stconn states CS_ST/SB_* to SC_ST/SB_*
264 - MINOR: check: export wake_srv_chk()
265 - MINOR: conn_stream: test the various ops functions before calling them
266 - MEDIUM: stconn: merge the app_ops and the data_cb fields
267 - MINOR: applet: add new wrappers to put chk/blk/str/chr to channel from appctx
268 - CLEANUP: applet: use applet_put*() everywhere possible
269 - CLEANUP: stconn: rename cs_{i,o}{b,c} to sc_{i,o}{b,c}
270 - CLEANUP: stconn: rename cs_{check,strm,strm_task} to sc_strm_*
271 - CLEANUP: stconn: rename cs_conn() to sc_conn()
272 - CLEANUP: stconn: rename cs_mux() to sc_mux_strm()
273 - CLEANUP: stconn: rename cs_conn_mux() to sc_mux_ops()
274 - CLEANUP: stconn: rename cs_appctx() to sc_appctx()
275 - CLEANUP: stconn: rename __cs_endp_target() to __sc_endp()
276 - CLEANUP: stconn: rename cs_get_data_name() to sc_get_data_name()
277 - CLEANUP: stconn: rename cs_conn_*() to sc_conn_*()
278 - CLEANUP: stconn: rename cs_conn_get_first() to conn_get_first_sc()
279 - CLEANUP: stconn: rename cs_ep_set_error() to se_fl_set_error()
280 - CLEANUP: stconn: make a few functions take a const argument
281 - CLEANUP: stconn: use a single function to know if SC may send to SE
282 - MINOR: stconn: consider CF_SHUTW for sc_is_send_allowed()
283 - MINOR: stconn: remove calls to cs_done_get()
284 - MEDIUM: stconn: always rely on CF_SHUTR in addition to cs_rx_blocked()
285 - MEDIUM: stconn: remove SE_FL_RXBLK_SHUT
286 - MINOR: stconn: rename SE_FL_RXBLK_CONN to SE_FL_APPLET_NEED_CONN
287 - MEDIUM: stconn: take SE_FL_APPLET_NEED_CONN out of the RXBLK_ANY flags
288 - CLEANUP: stconn: rename cs_rx_room_{blk,rdy} to sc_{need,have}_room()
289 - CLEANUP: stconn: rename cs_rx_chan_{blk,rdy} to sc_{wont,will}_read()
290 - CLEANUP: stconn: rename cs_rx_buff_{blk,rdy} to sc_{need,have}_buff()
291 - MINOR: stconn: start to rename cs_rx_endp_{more,done}() to se_have_{no_,}more_data()
292 - MINOR: stconn: add sc_is_recv_allowed() to check for ability to receive
293 - CLEANUP: stconn: rename SE_FL_RX_WAIT_EP to SE_FL_HAVE_NO_DATA
294 - MEDIUM: stconn: move the RXBLK flags to the stream connector
295 - CLEANUP: stconn: rename SE_FL_WANT_GET to SE_FL_WILL_CONSUME
296 - CLEANUP: stconn: remove cs_tx_blocked() and cs_tx_endp_ready()
297 - CLEANUP: stconn: rename cs_{want,stop}_get() to se_{will,wont}_consume()
298 - CLEANUP: stconn: rename cs_cant_get() to se_need_more_data()
299 - CLEANUP: stconn: rename cs_{new,create,free,destroy}_* to sc_*
300 - CLEANUP: stconn: rename remaining management functions from cs_* to sc_*
301 - CLEANUP: stconn: rename cs{,_get}_{src,dst} to sc_*
302 - CLEANUP: stconn: rename cs_{shut,chk}* to sc_*
303 - CLEANUP: stconn: rename final state manipulation functions from cs_* to sc_*
304 - CLEANUP: quic: drop the name "conn_stream" from the pool variable names
305 - REORG: rename cs_utils.h to sc_strm.h
306 - REORG: stconn: rename conn_stream.{c,h} to stconn.{c,h}
307 - CLEANUP: muxes: rename "get_first_cs" to "get_first_sc"
308 - DEV: flags: use "sc" for stream conns instead of "cs"
309 - CLEANUP: check: rename all occurrences of stconn "cs" to "sc"
310 - CLEANUP: connection: rename all occurrences of stconn "cs" to "sc"
311 - CLEANUP: stconn: rename all occurrences of stconn "cs" to "sc"
312 - CLEANUP: quic/h3: rename all occurrences of stconn "cs" to "sc"
313 - CLEANUP: stream: rename all occurrences of stconn "cs" to "sc"
314 - CLEANUP: promex: rename all occurrences of stconn "cs" to "sc"
315 - CLEANUP: stats: rename all occurrences of stconn "cs" to "sc"
316 - CLEANUP: cli: rename all occurrences of stconn "cs" to "sc"
317 - CLEANUP: applet: rename all occurrences of stconn "cs" to "sc"
318 - CLEANUP: cache: rename all occurrences of stconn "cs" to "sc"
319 - CLEANUP: dns: rename all occurrences of stconn "cs" to "sc"
320 - CLEANUP: spoe: rename all occurrences of stconn "cs" to "sc"
321 - CLEANUP: hlua: rename all occurrences of stconn "cs" to "sc"
322 - CLEANUP: log-forward: rename all occurrences of stconn "cs" to "sc"
323 - CLEANUP: http-client: rename all occurrences of stconn "cs" to "sc"
324 - CLEANUP: mux-fcgi: rename all occurrences of stconn "cs" to "sc"
325 - CLEANUP: mux-h1: rename all occurrences of stconn "cs" to "sc"
326 - CLEANUP: mux-h2: rename all occurrences of stconn "cs" to "sc"
327 - CLEANUP: mux-pt: rename all occurrences of stconn "cs" to "sc"
328 - CLEANUP: peers: rename all occurrences of stconn "cs" to "sc"
329 - CLEANUP: sink: rename all occurrences of stconn "cs" to "sc"
330 - CLEANUP: sslsock: remove only occurrence of local variable "cs"
331 - CLEANUP: applet: rename appctx_cs() to appctx_sc()
332 - CLEANUP: stream: rename stream_upgrade_from_cs() to stream_upgrade_from_sc()
333 - CLEANUP: obj_type: rename OBJ_TYPE_CS to OBJ_TYPE_SC
334 - CLEANUP: stconn: replace a few remaining occurrences of CS in comments or traces
335 - DOC: internal: update the muxes doc to mention the stconn
336 - CLEANUP: mux-quic: rename the "endp" field to "sd"
337 - CLEANUP: mux-h1: rename the "endp" field to "sd"
338 - CLEANUP: mux-h2: rename the "endp" field to "sd"
339 - CLEANUP: mux-fcgi: rename the "endp" field to "sd"
340 - CLEANUP: mux-pt: rename the "endp" field to "sd"
341 - CLEANUP: stconn: rename a few "endp" arguments and variables to "sd"
342 - MINOR: stconn: turn SE_FL_WILL_CONSUME to SE_FL_WONT_CONSUME
343 - CLEANUP: stream: remove unneeded test on appctx during initialization
344 - CLEANUP: stconn: remove the new unneeded SE_FL_APP_MASK
345 - DEV: flags: fix "siet" shortcut name
346 - DEV: flags: rename the "endp" shortcut to "sd" for "stream descriptor"
347 - DEV: flags: reorder a few SC/SE flags
348 - DOC: internal: add a description of the stream connectors and descriptors
349
Willy Tarreau137c8fd2022-05-20 23:31:51 +02003502022/05/20 : 2.6-dev11
351 - CI: determine actual LibreSSL version dynamically
352 - BUG/MEDIUM: ncbuf: fix null buffer usage
353 - MINOR: ncbuf: fix warnings for testing build
354 - MEDIUM: http-ana: Add a proxy option to restrict chars in request header names
355 - MEDIUM: ssl: Delay random generator initialization after config parsing
356 - MINOR: ssl: Add 'ssl-propquery' global option
357 - MINOR: ssl: Add 'ssl-provider' global option
358 - CLEANUP: Add missing header to ssl_utils.c
359 - CLEANUP: Add missing header to hlua_fcn.c
360 - CLEANUP: Remove unused function hlua_get_top_error_string
361 - BUILD: fix build warning on solaris based systems with __maybe_unused.
362 - MINOR: tools: add get_exec_path implementation for solaris based systems.
363 - BUG/MINOR: ssl: Fix crash when no private key is found in pem
364 - CLEANUP: conn-stream: Remove cs_applet_shut declaration from header file
365 - MINOR: applet: Prepare appctx to own the session on frontend side
366 - MINOR: applet: Let the frontend appctx release the session
367 - MINOR: applet: Change return value for .init callback function
368 - MINOR: stream: Export stream_free()
369 - MINOR: applet: Add appctx_init() helper fnuction
370 - MINOR: applet: Add a function to finalize frontend appctx startup
371 - MINOR: applet: Add function to release appctx on error during init stage
372 - MEDIUM: dns: Refactor dns appctx creation
373 - MEDIUM: spoe: Refactor SPOE appctx creation
374 - MEDIUM: lua: Refactor cosocket appctx creation
375 - MEDIUM: httpclient: Refactor http-client appctx creation
376 - MINOR: sink: Add a ref to sink in the sink_forward_target structure
377 - MEDIUM: sink: Refactor sink forwarder appctx creation
378 - MINOR: peers: Add a ref to peers section in the peer structure
379 - MEDIUM: peers: Refactor peer appctx creation
380 - MINOR: applet: Add API to start applet on a thread subset
381 - MEDIUM: applet: Add support for async appctx startup on a thread subset
382 - MINOR: peers: Track number of applets run by thread
383 - MEDIUM: peers: Balance applets across threads
384 - MINOR: conn-stream/applet: Stop setting appctx as the endpoint context
385 - CLEANUP: proxy: Remove dead code when parsing "http-restrict-req-hdr-names" option
386 - REGTESTS: abortonclose: Fix some race conditions
387 - MINOR: ssl: Add 'ssl-provider-path' global option
388 - CLEANUP: http_ana: Make use of the return value of stream_generate_unique_id()
389 - BUG/MINOR: spoe: Fix error handling in spoe_init_appctx()
390 - CLEANUP: peers: Remove unreachable code in peer_session_create()
391 - CLEANUP: httpclient: Remove useless test on ss_dst in httpclient_applet_init()
392 - BUG/MEDIUM: quic: fix Rx buffering
393 - OPTIM: quic: realign empty Rx buffer
394 - BUG/MINOR: ncbuf: fix ncb_is_empty()
395 - MINOR: ncbuf: refactor ncb_advance()
396 - BUG/MINOR: mux-quic: update session's idle delay before stream creation
397 - MINOR: h3: do not wait a complete frame for demuxing
398 - MINOR: h3: flag demux as full on HTX full
399 - MEDIUM: mux-quic: implement recv on io-cb
400 - MINOR: mux-quic: remove qcc_decode_qcs() call in XPRT
401 - MINOR: mux-quic: reorganize flow-control frames emission
402 - MINOR: mux-quic: implement MAX_STREAM_DATA emission
403 - MINOR: mux-quic: implement MAX_DATA emission
404 - BUG/MINOR: mux-quic: support nul buffer with qc_free_ncbuf()
405 - MINOR: mux-quic: free RX buf if empty
406 - BUG/MEDIUM: config: Reset outline buffer size on realloc error in readcfgfile()
407 - BUG/MINOR: check: Reinit the buffer wait list at the end of a check
408 - MEDIUM: check: No longer shutdown the connection in .wake callback function
409 - REORG: check: Rename and export I/O callback function
410 - MEDIUM: check: Use the CS to handle subscriptions for read/write events
411 - BUG/MINOR: quic: break for error on sendto
412 - MINOR: quic: abort on unlisted errno on sendto()
413 - MINOR: quic: detect EBADF on sendto()
414 - BUG/MEDIUM: quic: fix initialization for local/remote TPs
415 - CLEANUP: quic: adjust comment/coding style for TPs init
416 - BUG/MINOR: cfgparse: abort earlier in case of allocation error
417 - MINOR: quic: Dump initial derived secrets
418 - MINOR: quic_tls: Add quic_tls_derive_retry_token_secret()
419 - MINOR: quic_tls: Add quic_tls_decrypt2() implementation
420 - MINOR: quic: Retry implementation
421 - MINOR: cfgparse: Update for "cluster-secret" keyword for QUIC Retry
422 - MINOR: quic: Move quic_lstnr_dgram_dispatch() out of xprt_quic.c
423 - BUILD: stats: Missing headers inclusions from stats.h
424 - MINOR: quic_stats: Add a new stats module for QUIC
425 - MINOR: quic: Attach proxy QUIC stats counters to the QUIC connection
426 - BUG/MINOR: quic: Fix potential memory leak during QUIC connection allocations
427 - MINOR: quic: QUIC stats counters handling
428 - MINOR: quic: Add tune.quic.retry-threshold keyword
429 - MINOR: quic: Dynamic Retry implementation
430 - MINOR: quic/mux-quic: define CONNECTION_CLOSE send API
431 - MINOR: mux-quic: emit FLOW_CONTROL_ERROR
432 - MINOR: mux-quic: emit STREAM_LIMIT_ERROR
433 - MINOR: mux-quic: close connection on error if different data at offset
434 - BUG/MINOR: peers: fix error reporting of "bind" lines
435 - CLEANUP: config: improve address parser error report for unmatched protocols
436 - CLEANUP: config: provide cleare hints about unsupported QUIC addresses
437 - MINOR: protocol: replace ctrl_type with xprt_type and clarify it
438 - MINOR: listener: provide a function to process all of a bind_conf's arguments
439 - MINOR: config: use the new bind_parse_args_list() to parse a "bind" line
440 - CLEANUP: listener: add a comment about what the BC_SSL_O_* flags are for
441 - MINOR: listener: add a new "options" entry in bind_conf
442 - CLEANUP: listener: replace all uses of bind_conf->is_ssl with BC_O_USE_SSL
443 - CLEANUP: listener: replace bind_conf->generate_cers with BC_O_GENERATE_CERTS
444 - CLEANUP: listener: replace bind_conf->quic_force_retry with BC_O_QUIC_FORCE_RETRY
445 - CLEANUP: listener: store stream vs dgram at the bind_conf level
446 - MINOR: listener: detect stream vs dgram conflict during parsing
447 - MINOR: listener: set the QUIC xprt layer immediately after parsing the args
448 - MINOR: listener/ssl: set the SSL xprt layer only once the whole config is known
449 - MINOR: connection: add flag MX_FL_FRAMED to mark muxes relying on framed xprt
450 - MINOR: config: detect and report mux and transport incompatibilities
451 - MINOR: listener: automatically select a QUIC mux with a QUIC transport
452 - MINOR: listener: automatically enable SSL if a QUIC transport is found
453 - BUG/MINOR: quic: Fixe a typo in qc_idle_timer_task()
454 - BUG/MINOR: quic: Missing <conn_opening> stats counter decrementation
455 - BUILD/MINOR: cpuset fix build for FreeBSD 13.1
456 - CI: determine actual OpenSSL version dynamically
457
Willy Tarreau37033252022-05-14 16:05:50 +02004582022/05/14 : 2.6-dev10
459 - MINOR: ssl: ignore dotfiles when loading a dir w/ ca-file
460 - MEDIUM: ssl: ignore dotfiles when loading a dir w/ crt
461 - BUG/MINOR: ssl: Fix typos in crl-file related CLI commands
462 - MINOR: compiler: add a new macro to set an attribute on an enum when possible
463 - BUILD: stats: conditionally mark obsolete stats states as deprecated
464 - BUILD: ssl: work around bogus warning in gcc 12's -Wformat-truncation
465 - BUILD: debug: work around gcc-12 excessive -Warray-bounds warnings
466 - BUILD: listener: shut report of possible null-deref in listener_accept()
467 - BUG/MEDIUM: ssl: fix the gcc-12 broken fix :-(
468 - DOC: install: update gcc version requirements
469 - BUILD: makefile: add -Wfatal-errors to the default flags
470 - BUG/MINOR: server: Make SRV_STATE_LINE_MAXLEN value from 512 to 2kB (2000 bytes).
471 - BUG/MAJOR: dns: multi-thread concurrency issue on UDP socket
472 - BUG/MINOR: mux-h2: mark the stream as open before processing it not after
473 - MINOR: mux-h2: report a trace event when failing to create a new stream
474 - DOC: configuration: add the httpclient keywords to the global keywords index
475 - MINOR: quic: Add a debug counter for sendto() errors
476 - BUG/MINOR: quic: Dropped peer transport parameters
477 - BUG/MINOR: quic: Wrong unit for ack delay for incoming ACK frames
478 - MINOR: quic: Congestion controller event trace fix (loss)
479 - MINOR: quic: Add correct ack delay values to ACK frames
480 - MINOR: config: Add "cluster-secret" new global keyword
481 - MINOR: quic-tls: Add quic_hkdf_extract_and_expand() for HKDF
482 - MINOR: quic: new_quic_cid() code moving
483 - MINOR: quic: Initialize stateless reset tokens with HKDF secrets
484 - MINOR: qc_new_conn() rework for stateless reset
485 - MINOR: quic: Stateless reset token copy to transport parameters
486 - MINOR: quic: Send stateless reset tokens
487 - MINOR: quic: Short packets always embed a trailing AEAD TAG
488 - CLEANUP: quic: wrong use of eb*entry() macro
489 - CLEANUP: quic: Useless use of pointer for quic_hkdf_extract()
490 - CLEANUP: quic_tls: QUIC_TLS_IV_LEN defined two times
491 - MINOR: ncbuf: define non-contiguous buffer
492 - MINOR: ncbuf: complete API and define block interal abstraction
493 - MINOR: ncbuf: optimize storage for the last gap
494 - MINOR: ncbuf: implement insertion
495 - MINOR: ncbuf: define various insertion modes
496 - MINOR: ncbuf: implement advance
497 - MINOR: ncbuf: write unit tests
498 - BUG/MEDIUM: lua: fix argument handling in data removal functions
499 - DOC/MINOR: fix typos in the lua-api document
500 - BUG/MEDIUM: wdt: don't trigger the watchdog when p is unitialized
501 - MINOR: mux-h1: Add global option accpet payload for any HTTP/1.0 requests
502 - CLEANUP: mux-h1: Fix comments and error messages for global options
503 - MINOR: conn_stream: make cs_set_error() work on the endpoint instead
504 - CLEANUP: mux-h1: always take the endp from the h1s not the cs
505 - CLEANUP: mux-h2: always take the endp from the h2s not the cs
506 - CLEANUP: mux-pt: always take the endp from the context not the cs
507 - CLEANUP: mux-fcgi: always take the endp from the fstrm not the cs
508 - CLEANUP: mux-quic: always take the endp from the qcs not the cs
509 - CLEANUP: applet: use the appctx's endp instead of cs->endp
510 - MINOR: conn_stream: add a pointer back to the cs from the endpoint
511 - MINOR: mux-h1: remove the now unneeded h1s->cs
512 - MINOR: mux-h2: make sure any h2s always has an endpoint
513 - MINOR: mux-h2: remove the now unneeded conn_stream from the h2s
514 - MINOR: mux-fcgi: make sure any stream always has an endpoint
515 - MINOR: mux-fcgi: remove the now unneeded conn_stream from the fcgi_strm
516 - MINOR: mux-quic: remove the now unneeded conn_stream from the qcs
517 - MINOR: mux-pt: remove the now unneeded conn_stream from the context
518 - CLEANUP: muxes: make mux->attach/detach take a conn_stream endpoint
519 - MINOR: applet: replace cs_applet_shut() with appctx_shut()
520 - MINOR: applet: add appctx_strm() and appctx_cs() to access common fields
521 - CLEANUP: applet: remove the unneeded appctx->owner
522 - CLEANUP: conn_stream: merge cs_new_from_{mux,applet} into cs_new_from_endp()
523 - MINOR: ext-check: indicate the transport and protocol of a server
524 - BUG/MEDIUM: mux-quic: fix a thinko in the latest cs/endpoint cleanup
525 - MINOR: tools: improve error message accuracy in str2sa_range
526 - MINOR: config: make sure never to mix dgram and stream protocols on a bind line
527 - BUG/MINOR: ncbuf: fix coverity warning on uninit sz_data
528 - MINOR: xprt_quic: adjust flow-control according to bufsize
529 - MEDIUM: mux-quic/h3/hq-interop: use ncbuf for bidir streams
530 - MEDIUM: mux-quic/h3/qpack: use ncbuf for uni streams
531 - CLEANUP: mux-quic: remove unused fields for Rx
532 - CLEANUP: quic: remove unused quic_rx_strm_frm
533
Willy Tarreaue9797962022-05-08 11:44:15 +02005342022/05/08 : 2.6-dev9
535 - MINOR: mux-quic: support full request channel buffer
536 - BUG/MINOR: h3: fix parsing of unknown frame type with null length
537 - CLEANUP: backend: make alloc_{bind,dst}_address() idempotent
538 - MEDIUM: stream: remove the confusing SF_ADDR_SET flag
539 - MINOR: conn_stream: remove the now unused CS_FL_ADDR_*_SET flags
540 - CLEANUP: protocol: make sure the connect_* functions always receive a dst
541 - MINOR: connection: get rid of the CO_FL_ADDR_*_SET flags
542 - MINOR: session: get rid of the now unused SESS_FL_ADDR_*_SET flags
543 - CLEANUP: mux: Useless xprt_quic-t.h inclusion
544 - MINOR: quic: Make the quic_conn be aware of the number of streams
545 - BUG/MINOR: quic: Dropped retransmitted STREAM frames
546 - BUG/MINOR: mux_quic: Dropped packet upon retransmission for closed streams
547 - MEDIUM: httpclient: remove url2sa to use a more flexible parser
548 - MEDIUM: httpclient: http-request rules for resolving
549 - MEDIUM: httpclient: allow address and port change for resolving
550 - CLEANUP: httpclient: remove the comment about resolving
551 - MINOR: httpclient: handle unix and other socket types in dst
552 - MINOR: httpclient: rename dash by dot in global option
553 - MINOR: init: exit() after pre-check upon error
554 - MINOR: httpclient: cleanup the error handling in init
555 - MEDIUM: httpclient: hard-error when SSL is configured
556 - MINOR: httpclient: allow to configure the ca-file
557 - MINOR: httpclient: configure the resolvers section to use
558 - MINOR: httpclient: allow ipv4 or ipv6 preference for resolving
559 - DOC: configuration: httpclient global option
560 - MINOR: conn-stream: Add mask from flags set by endpoint or app layer
561 - BUG/MEDIUM: conn-stream: Only keep app layer flags of the endpoint on reset
562 - BUG/MEDIUM: mux-fcgi: Be sure to never set EOM flag on an empty HTX message
563 - BUG/MEDIUM: mux-h1: Be able to handle trailers when C-L header was specified
564 - DOC: config: Update doc for PR/PH session states to warn about rewrite failures
565 - MINOR: resolvers: cleanup alert/warning in parse-resolve-conf
566 - MINOR: resolvers: move the resolv.conf parser in parse_resolv_conf()
567 - MINOR: resolvers: resolvers_new() create a resolvers with default values
568 - BUILD: debug: unify the definition of ha_backtrace_to_stderr()
569 - BUG/MINOR: tcp/http: release the expr of set-{src,dst}[-port]
570 - MEDIUM: resolvers: create a "default" resolvers section at startup
571 - DOC: resolvers: default resolvers section
572 - BUG/MINOR: startup: usage() when no -cc arguments
573 - BUG/MEDIUM: resolvers: make "show resolvers" properly yield
574 - BUG/MEDIUM: cli: make "show cli sockets" really yield
575 - BUG/MINOR: proxy/cli: don't enumerate internal proxies on "show backend"
576 - BUG/MINOR: map/cli: protect the backref list during "show map" errors
577 - BUG/MINOR: map/cli: make sure patterns don't vanish under "show map"'s init
578 - BUG/MINOR: ssl/cli: fix "show ssl ca-file/crl-file" not to mix cli+ssl contexts
579 - BUG/MINOR: ssl/cli: fix "show ssl ca-file <name>" not to mix cli+ssl contexts
580 - BUG/MINOR: ssl/cli: fix "show ssl crl-file" not to mix cli+ssl contexts
581 - BUG/MINOR: ssl/cli: fix "show ssl cert" not to mix cli+ssl contexts
582 - CLEANUP: ssl/cli: do not loop on unknown states in "add ssl crt-list" handler
583 - MINOR: applet: reserve some generic storage in the applet's context
584 - CLEANUP: applet: make appctx_new() initialize the whole appctx
585 - CLEANUP: stream/cli: take the "show sess" context definition out of the appctx
586 - CLEANUP: stream/cli: stop using appctx->st2 for the dump state
587 - CLEANUP: stream/cli: remove the unneeded init state from "show sess"
588 - CLEANUP: stream/cli: remove the unneeded STATE_FIN state from "show sess"
589 - CLEANUP: stream/cli: remove the now unneeded dump state from "show sess"
590 - CLEANUP: proxy/cli: take the "show errors" context definition out of the appctx
591 - CLEANUP: stick-table/cli: take the "show table" context definition out of the appctx
592 - CLEANUP: stick-table/cli: stop using appctx->st2 for the dump state
593 - CLEANUP: stick-table/cli: remove the unneeded STATE_INIT for "show table"
594 - CLEANUP: map/cli: take the "show map" context definition out of the appctx
595 - CLEANUP: map/cli: stop using cli.i0/i1 to store the generation numbers
596 - CLEANUP: map/cli: stop using appctx->st2 for the dump state
597 - CLEANUP: map/cli: always detach the backref from the list after "show map"
598 - CLEANUP: peers/cli: take the "show peers" context definition out of the appctx
599 - CLEANUP: peers/cli: stop using appctx->st2 for the dump state
600 - CLEANUP: peers/cli: remove unneeded state STATE_INIT
601 - CLEANUP: cli: initialize the whole appctx->ctx, not just the stats part
602 - CLEANUP: promex: make the applet use its own context
603 - CLEANUP: promex: stop using appctx->st2
604 - CLEANUP: stats/cli: take the "show stat" context definition out of the appctx
605 - CLEANUP: stats/cli: stop using appctx->st2
606 - CLEANUP: hlua/cli: take the hlua_cli context definition out of the appctx
607 - CLEANUP: ssl/cli: use a local context for "show cafile"
608 - CLEANUP: ssl/cli: use a local context for "show crlfile"
609 - CLEANUP: ssl/cli: use a local context for "show ssl cert"
610 - CLEANUP: ssl/cli: use a local context for "commit ssl cert"
611 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl cert"
612 - CLEANUP: ssl/cli: use a local context for "set ssl cert"
613 - CLEANUP: ssl/cli: use a local context for "set ssl cafile"
614 - CLEANUP: ssl/cli: use a local context for "set ssl crlfile"
615 - CLEANUP: ssl/cli: use a local context for "commit ssl {ca|crl}file"
616 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl ca/crl"
617 - CLEANUP: ssl/cli: stop using ctx.cli.i0/i1/p0 for "show tls-keys"
618 - CLEANUP: ssl/cli: add a new "dump_entries" field to "show_keys_ref"
619 - CLEANUP: ssl/cli: make "show tlskeys" not use appctx->st2 anymore
620 - CLEANUP: ssl/cli: make "show ssl ocsp-response" not use cli.p0 anymore
621 - CLEANUP: ssl/cli: make "{show|dump} ssl crtlist" use its own context
622 - CLEANUP: ssl/cli: make "add ssl crtlist" use its own context
623 - CLEANUP: ssl/cli: make "add ssl crtlist" not use st2 anymore
624 - CLEANUP: dns: stop abusing the sink forwarder's context
625 - CLEANUP: sink: use the generic context to store the forwarder's context
626 - CLEANUP: activity/cli: make "show profiling" not use ctx.cli anymore
627 - CLEANUP: debug/cli: make "debug dev fd" not use ctx.cli anymore
628 - CLEANUP: debug/cli: make "debug dev memstats" not use ctx.cli anymore
629 - CLEANUP: ring: pass the ring watch flags to ring_attach_cli(), not in ctx.cli
630 - CLEANUP: ring/cli: use a locally-defined context instead of using ctx.cli
631 - CLEANUP: resolvers/cli: make "show resolvers" use a locally-defined context
632 - CLEANUP: resolvers/cli: remove the unneeded appctx->st2 from "show resolvers"
633 - CLEANUP: cache/cli: make use of a locally defined context for "show cache"
634 - CLEANUP: proxy/cli: make use of a locally defined context for "show servers"
635 - CLEANUP: proxy/cli: get rid of appctx->st2 in "show servers"
636 - CLEANUP: proxy/cli: make "show backend" only use the generic context
637 - CLEANUP: cli: make "show fd" use its own context
638 - CLEANUP: cli: make "show env" use its own context
639 - CLEANUP: cli: simplify the "show cli sockets" I/O handler
640 - CLEANUP: cli: make "show cli sockets" use its own context
641 - CLEANUP: httpclient/cli: use a locally-defined context instead of ctx.cli
642 - CLEANUP: httpclient: do not use the appctx.ctx anymore
643 - CLEANUP: peers: do not use appctx.ctx anymore
644 - CLEANUP: spoe: do not use appctx.ctx anymore
645 - BUILD: applet: mark the CLI's generic variables as deprecated
646 - BUILD: applet: mark the appctx's st2 variable as deprecated
647 - CLEANUP: cache: take the context out of appctx.ctx
648 - MEDIUM: lua: move the cosocket storage outside of appctx.ctx
649 - MINOR: lua: move the tcp service storage outside of appctx.ctx
650 - MINOR: lua: move the http service context out of appctx.ctx
651 - CLEANUP: cli: move the status print context into its own context
652 - CLEANUP: stats: rename the stats state values an mark the old ones deprecated
653 - DOC: internal: document the new cleaner approach to the appctx
654 - MINOR: tcp: socket translate TCP_KEEPIDLE for macOs equivalent
655 - DOC: fix typo "ant" for "and" in INSTALL
656 - CI: dynamically determine actual version of h2spec
657
Willy Tarreau026fef92022-04-30 14:17:51 +02006582022/04/30 : 2.6-dev8
659 - BUG/MINOR: quic: fix use-after-free with trace on ACK consume
660 - BUG/MINOR: rules: Forbid captures in defaults section if used by a backend
661 - BUG/MEDIUM: rules: Be able to use captures defined in defaults section
662 - BUG/MINOR: rules: Fix check_capture() function to use the right rule arguments
663 - BUG/MINOR: http-act: make release_http_redir() more robust
664 - BUG/MINOR: sample: add missing use_backend/use-server contexts in smp_resolve_args
665 - MINOR: sample: don't needlessly call c_none() in sample_fetch_as_type()
666 - MINOR: sample: make the bool type cast to bin
667 - MEDIUM: backend: add new "balance hash <expr>" algorithm
668 - MINOR: init: add global setting "fd-hard-limit" to bound system limits
669 - BUILD: pollers: use an initcall to register the pollers
670 - BUILD: xprt: use an initcall to register the transport layers
671 - BUILD: thread: use initcall instead of a constructor
672 - BUILD: http: remove the two unused constructors in rules and ana
673 - CLEANUP: compression: move the default setting of maxzlibmem to defaults
674 - MINOR: tree-wide: always consider EWOULDBLOCK in addition to EAGAIN
675 - BUG/MINOR: connection: "connection:close" header added despite 'close-spread-time'
676 - MINOR: fd: add functions to set O_NONBLOCK and FD_CLOEXEC
677 - CLEANUP: tree-wide: use fd_set_nonblock() and fd_set_cloexec()
678 - CLEANUP: tree-wide: remove 25 occurrences of unneeded fcntl.h
679 - REGTESTS: fix the race conditions in be2dec.vtc ad field.vtc
680 - REGTESTS: webstats: remove unused stats socket in /tmp
681 - MEDIUM: httpclient: disable SSL when the ca-file couldn't be loaded
682 - BUG/MINOR: httpclient/lua: error when the httpclient_start() fails
683 - BUG/MINOR: ssl: free the cafile entries on deinit
684 - BUG/MINOR: ssl: memory leak when trying to load a directory with ca-file
685 - MEDIUM: httpclient: re-enable the verify by default
686 - BUG/MEDIUM: ssl/cli: fix yielding in show_cafile_detail
687 - BUILD: compiler: properly distinguish weak and global symbols
688 - MINOR: connection: Add way to disable active connection closing during soft-stop
689 - BUG/MEDIUM: http-ana: Fix memleak in redirect rules with ignore-empty option
690 - CLEANUP: Destroy `http_err_chunks` members during deinit
691 - BUG/MINOR: resolvers: Fix memory leak in resolvers_deinit()
692 - MINOR: Call deinit_and_exit(0) for `haproxy -vv`
693 - BUILD: fd: disguise the fd_set_nonblock/cloexec result
694 - BUG/MINOR: pools: make sure to also destroy shared pools in pool_destroy_all()
695 - MINOR: ssl: add a new global option "tune.ssl.hard-maxrecord"
696 - CLEANUP: errors: also call deinit_errors_buffers() on deinit()
697 - CLEANUP: chunks: release trash also in deinit
698 - CLEANUP: deinit: release the pre-check callbacks
699 - CLEANUP: deinit: release the config postparsers
700 - CLEANUP: listeners/deinit: release accept queue tasklets on deinit
701 - CLEANUP: connections/deinit: destroy the idle_conns tasks
702 - BUG/MINOR: mux-quic: fix build in release mode
703 - MINOR: mux-quic: adjust comment on emission function
704 - MINOR: mux-quic: remove unused bogus qcc_get_stream()
705 - BUG/MINOR: mux-quic: fix leak if cs alloc failure
706 - MINOR: mux-quic: count local flow-control stream limit on reception
707 - BUG/MINOR: h3: fix incomplete POST requests
708 - BUG/MEDIUM: h3: fix use-after-free on mux Rx buffer wrapping
709 - MINOR: mux-quic: partially copy Rx frame if almost full buf
710 - MINOR: h3: change frame demuxing API
711 - MINOR: mux-quic: add a app-layer context in qcs
712 - MINOR: h3: implement h3 stream context
713 - MINOR: h3: support DATA demux if buffer full
714 - MINOR: quic: decode as much STREAM as possible
715 - MINOR: quic: Improve qc_prep_pkts() flexibility
716 - MINOR: quic: Prepare quic_frame struct duplication
717 - MINOR: quic: Do not retransmit frames from coalesced packets
718 - MINOR: quic: Add traces about TX frame memory releasing
719 - MINOR: quic: process_timer() rework
720 - MEDIUM: quic: New functions for probing rework
721 - MEDIUM: quic: Retransmission functions rework
722 - MEDIUM: quic: qc_requeue_nacked_pkt_tx_frms() rework
723 - MINOR: quic: old data distinction for qc_send_app_pkt()
724 - MINOR: quic: Mark packets as probing with old data
725 - MEDIUM: quic: Mark copies of acknowledged frames as acknowledged
726 - MEDIUM: quic: Enable the new datagram probing process
727 - MINOR: quic: Do not send ACK frames when probing
728 - BUG/MINOR: quic: Wrong returned status by qc_build_frms()
729 - BUG/MINOR: quic: Avoid sending useless PADDING frame
730 - BUG/MINOR: quic: Traces fix about remaining frames upon packet build failure
731 - MINOR: quic: Wake up the mux to probe with new data
732 - BUG/MEDIUM: quic: Possible crash on STREAM frame loss
733 - BUG/MINOR: quic: Missing Initial packet length check
734 - CLEANUP: quic: Rely on the packet length set by qc_lstnr_pkt_rcv()
735 - MINOR: quic: Drop 0-RTT packets if not allowed
736 - BUG/MINOR: httpclient/ssl: use the correct verify constant
737 - BUG/MEDIUM: conn-stream: Don't erase endpoint flags on reset
738 - BUG/MEDIUM: httpclient: Fix loop consuming HTX blocks from the response channel
739 - BUG/MINOR: httpclient: Count metadata in size to transfer via htx_xfer_blks()
740 - MINOR: httpclient: Don't use co_set_data() to decrement output
741 - BUG/MINOR: conn_stream: do not confirm a connection from the frontend path
742 - MEDIUM: quic: do not ACK packet with STREAM if MUX not present
743 - MEDIUM: quic: do not ack packet with invalid STREAM
744 - MINOR: quic: Drop 0-RTT packets without secrets
745 - CLEANUP: quic: Remaining fprintf() debug trace
746 - MINOR: quic: moving code for QUIC loss detection
747 - BUG/MINOR: quic: Missing time threshold multiplifier for loss delay computation
748 - CI: github actions: update LibreSSL to 3.5.2
749 - SCRIPTS: announce-release: add URL of dev packages
750
Willy Tarreau3e69fcc2022-04-23 04:38:36 +02007512022/04/23 : 2.6-dev7
752 - BUILD: calltrace: fix wrong include when building with TRACE=1
753 - MINOR: ssl: Use DH parameters defined in RFC7919 instead of hard coded ones
754 - MEDIUM: ssl: Disable DHE ciphers by default
755 - BUILD: ssl: Fix compilation with OpenSSL 1.0.2
756 - MINOR: mux-quic: split xfer and STREAM frames build
757 - REORG: quic: use a dedicated module for qc_stream_desc
758 - MINOR: quic-stream: use distinct tree nodes for quic stream and qcs
759 - MINOR: quic-stream: add qc field
760 - MEDIUM: quic: implement multi-buffered Tx streams
761 - MINOR: quic-stream: refactor ack management
762 - MINOR: quic: limit total stream buffers per connection
763 - MINOR: mux-quic: implement immediate send retry
764 - MINOR: cfg-quic: define tune.quic.conn-buf-limit
765 - MINOR: ssl: Add 'show ssl providers' cli command and providers list in -vv option
766 - REGTESTS: ssl: Update error messages that changed with OpenSSLv3.1.0-dev
767 - BUG/MEDIUM: quic: Possible crash with released mux
768 - BUG/MINOR: mux-quic: unsubscribe on release
769 - BUG/MINOR: mux-quic: handle null timeout
770 - BUG/MEDIUM: logs: fix http-client's log srv initialization
771 - BUG/MINOR: mux-quic: remove dead code in qcs_xfer_data()
772 - DEV: stream: Fix conn-streams dump in full stream message
773 - CLEANUP: conn-stream: Rename cs_conn_close() and cs_conn_drain_and_close()
774 - CLEANUP: conn-stream: Rename cs_applet_release()
775 - MINOR: conn-stream: Rely on endpoint shutdown flags to shutdown an applet
776 - BUG/MINOR: cache: Disable cache if applet creation fails
777 - BUG/MINOR: backend: Don't allow to change backend applet
778 - BUG/MEDIUM: conn-stream: Set back CS to RDY state when the appctx is created
779 - MINOR: stream: Don't needlessly detach server endpoint on early client abort
780 - MINOR: conn-stream: Make cs_detach_* private and use cs_destroy() from outside
781 - MINOR: init: add the pre-check callback
782 - MEDIUM: httpclient: change the init sequence
783 - MEDIUM: httpclient/ssl: verify required
784 - MINOR: httpclient/mworker: disable in the master process
785 - MEDIUM: httpclient/ssl: verify is configurable and disabled by default
786 - BUG/MAJOR: connection: Never remove connection from idle lists outside the lock
787 - BUG/MEDIUM: mux-quic: fix stalled POST requets
788 - BUG/MINOR: mux-quic: fix POST with abortonclose
789 - MINOR: task: add a new task_instant_wakeup() function
790 - MEDIUM: queue: use tasklet_instant_wakeup() to wake tasks
791 - DOC: remove my name from the config doc
792
Willy Tarreaua8b10652022-04-16 12:15:47 +02007932022/04/16 : 2.6-dev6
794 - CLEANUP: connection: reduce the with of the mux dump output
795 - CI: Update to actions/checkout@v3
796 - CI: Update to actions/cache@v3
797 - DOC: adjust QUIC instruction in INSTALL
798 - BUG/MINOR: stats: define the description' background color in dark color scheme
799 - BUILD: ssl: add USE_ENGINE and disable the openssl engine by default
800 - BUILD: makefile: pass USE_ENGINE to cflags
801 - BUILD: xprt-quic: replace ERR_func_error_string() with ERR_peek_error_func()
802 - DOC: install: document the fact that SSL engines are not enabled by default
803 - CI: github actions: disable -Wno-deprecated
804 - BUILD: makefile: silence unbearable OpenSSL deprecation warnings
805 - MINOR: sock: check configured limits at the sock layer, not the listener's
806 - MINOR: connection: add a new flag CO_FL_FDLESS on fd-less connections
807 - MINOR: connection: add conn_fd() to retrieve the FD only when it exists
808 - MINOR: stream: only dump connections' FDs when they are valid
809 - MINOR: connection: use conn_fd() when displaying connection errors
810 - MINOR: connection: skip FD-based syscalls for FD-less connections
811 - MEDIUM: connection: panic when calling FD-specific functions on FD-less conns
812 - MINOR: mux-quic: properly set the flags and name fields
813 - MINOR: connection: rearrange conn_get_src/dst to be a bit more extensible
814 - MINOR: protocol: add get_src() and get_dst() at the protocol level
815 - MINOR: quic-sock: provide a pair of get_src/get_dst functions
816 - MEDIUM: ssl: improve retrieval of ssl_sock_ctx and SSL detection
817 - MEDIUM: ssl: stop using conn->xprt_ctx to access the ssl_sock_ctx
818 - MEDIUM: xprt-quic: implement get_ssl_sock_ctx()
819 - MEDIUM: quic: move conn->qc into conn->handle
820 - BUILD: ssl: fix build warning with previous changes to ssl_sock_ctx
821 - BUILD: ssl: add an unchecked version of __conn_get_ssl_sock_ctx()
822 - MINOR: ssl: refine the error testing for fc_err and fc_err_str
823 - BUG/MINOR: sock: do not double-close the accepted socket on the error path
824 - CI: cirrus: switch to FreeBSD-13.0
825 - MINOR: log: add '~' to frontend when the transport layer provides SSL
826 - BUILD/DEBUG: lru: fix printf format in debug code
827 - BUILD: peers: adjust some printf format to silence cppcheck
828 - BUILD/DEBUG: hpack-tbl: fix format string in standalone debug code
829 - BUILD/DEBUG: hpack: use unsigned int in printf format in debug code
830 - BUILD: halog: fix some incorrect signs in printf formats for integers
831 - BUG/MINOR: h3: fix build with DEBUG_H3
832 - BUG/MINOR: mux-h2: do not send GOAWAY if SETTINGS were not sent
833 - BUG/MINOR: cache: do not display expired entries in "show cache"
834 - BUG/MINOR: mux-h1: Don't release unallocated CS on error path
835 - MINOR: applet: Make .init callback more generic
836 - MINOR: conn-stream: Add flags to set the type of the endpoint
837 - MEDIUM: applet: Set the appctx owner during allocation
838 - MAJOR: conn-stream: Invert conn-stream endpoint and its context
839 - REORG: Initialize the conn-stream by hand in cs_init()
840 - MEDIUM: conn-stream: Add an endpoint structure in the conn-stream
841 - MINOR: conn-stream: Move some CS flags to the endpoint
842 - MEDIUM: conn-stream: Be able to pass endpoint to create a conn-stream
843 - MEDIUM: conn-stream: Pre-allocate endpoint to create CS from muxes and applets
844 - REORG: applet: Uninline appctx_new function
845 - MAJOR: conn-stream: Share endpoint struct between the CS and the mux/applet
846 - MEDIUM: conn-stream: Move remaning flags from CS to endpoint
847 - MINOR: mux-pt: Rely on the endpoint instead of the conn-stream when possible
848 - MINOR: conn-stream: Add ISBACK conn-stream flag
849 - MINOR: conn-stream: Add header file with util functions related to conn-streams
850 - MEDIUM: tree-wide: Use CS util functions instead of SI ones
851 - MINOR: stream-int/txn: Move buffer for L7 retries in the HTTP transaction
852 - CLEANUP: http-ana: Remove http_alloc_txn() function
853 - MINOR: stream-int/stream: Move conn_retries counter in the stream
854 - MINOR: stream: Simplify retries counter calculation
855 - MEDIUM: stream-int/conn-stream: Move src/dst addresses in the conn-stream
856 - MINOR: stream-int/conn-stream: Move half-close timeout in the conn-stream
857 - MEDIUM: stream-int/stream: Use connect expiration instead of SI expiration
858 - MINOR: stream-int/conn-stream: Report error to the CS instead of the SI
859 - MEDIUM: conn-stream: Use endpoint error instead of conn-stream error
860 - MINOR: channel: Use conn-streams as channel producer and consumer
861 - MINOR: stream-int: Remove SI_FL_KILL_CON to rely on conn-stream endpoint only
862 - MINOR: mux-h2/mux-fcgi: Fully rely on CS_EP_KILL_CONN
863 - MINOR: stream-int: Remove SI_FL_NOLINGER/NOHALF to rely on CS flags instead
864 - MINOR: stream-int: Remove SI_FL_DONT_WAKE to rely on CS flags instead
865 - MINOR: stream-int: Remove SI_FL_INDEP_STR to rely on CS flags instead
866 - MINOR: stream-int: Remove SI_FL_SRC_ADDR to rely on stream flags instead
867 - CLEANUP: stream-int: Remove unused SI_FL_CLEAN_ABRT flag
868 - MINOR: stream: Only save previous connection state for the server side
869 - MEDIUM: stream-int: Move SI err_type in the stream
870 - MEDIUM: stream-int/conn-stream: Move stream-interface state in the conn-stream
871 - MINOR: stream-int/stream: Move si_retnclose() in the stream scope
872 - MINOR: stream-int/backend: Move si_connect() in the backend scope
873 - MINOR: stream-int/conn-stream: Move si_conn_ready() in the conn-stream scope
874 - MINOR: conn-stream/connection: Move SHR/SHW modes in the connection scope
875 - MEDIUM: conn-stream: Be prepared to fail to attach a cs to a mux
876 - MEDIUM: stream-int/conn-stream: Handle I/O subscriptions in the conn-stream
877 - MINOR: conn-stream: Rename CS functions dedicated to connections
878 - MINOR: stream-int/conn-stream: Move si_shut* and si_chk* in conn-stream scope
879 - MEDIUM: stream-int/conn-stream: Move si_ops in the conn-stream scope
880 - MINOR: applet: Use the CS to register and release applets instead of SI
881 - MINOR: connection: unconst mux's get_fist_cs() callback function
882 - MINOR: stream-int/connection: Move conn_si_send_proxy() in the connection scope
883 - REORG: stream-int: Export si_cs_recv(), si_cs_send() and si_cs_process()
884 - REORG: stream-int: Move si_is_conn_error() in the header file
885 - REORG: conn-stream: Move cs_shut* and cs_chk* in cs_utils
886 - REORG: conn-stream: Move cs_app_ops in conn_stream.c
887 - MINOR: stream-int-conn-stream: Move si_update_* in conn-stream scope
888 - MINOR: stream-int/stream: Move si_update_both in stream scope
889 - MEDIUM: conn-stream/applet: Add a data callback for applets
890 - MINOR: stream-int/conn-stream: Move stream_int_read0() in the conn-stream scope
891 - MINOR: stream-int/conn-stream: Move stream_int_notify() in the conn-stream scope
892 - MINOR: stream-int/conn-stream: Move si_cs_io_cb() in the conn-stream scope
893 - MINOR: stream-int/conn-stream: Move si_sync_recv/send() in conn-stream scope
894 - MINOR: conn-stream: Move si_conn_cb in the conn-stream scope
895 - MINOR: stream-int/conn-stream Move si_is_conn_error() in the conn-stream scope
896 - MINOR: stream-int/conn-stream: Move si_alloc_ibuf() in the conn-stream scope
897 - CLEANUP: stream-int: Remove unused SI functions
898 - MEDIUM: stream-int/conn-stream: Move blocking flags from SI to CS
899 - MEDIUM: stream-int/conn-stream: Move I/O functions to conn-stream
900 - REORG: stream-int/conn-stream: Move remaining functions to conn-stream
901 - MINOR: stream: Use conn-stream to report server error
902 - MINOR: http-ana: Use CS to perform L7 retries
903 - MEDIUM: stream: Don't use the stream-int anymore in process_stream()
904 - MINOR: conn-stream: Remove the stream-interface from the conn-stream
905 - DEV: flags: No longer dump SI flags
906 - CLEANUP: tree-wide: Remove any ref to stream-interfaces
907 - CLEANUP: conn-stream: Don't export internal functions
908 - DOC: conn-stream: Add comments on functions of the new CS api
909 - MEDIUM: check: Use a new conn-stream for each health-check run
910 - CLEANUP: muxes: Remove MX_FL_CLEAN_ABRT flag
911 - MINOR: conn-stream: Use a dedicated function to conditionally remove a CS
912 - CLEANUP: conn-stream: rename cs_register_applet() to cs_applet_create()
913 - MINOR: muxes: Improve show_fd callbacks to dump endpoint flags
914 - MINOR: mux-h1: Rely on the endpoint instead of the conn-stream when possible
915 - BUG/MINOR: quic: Avoid starting the mux if no ALPN sent by the client
916 - BUILD: debug: mark the __start_mem_stats/__stop_mem_stats symbols as weak
917 - BUILD: initcall: mark the __start_i_* symbols as weak, not global
918 - BUG/MINOR: mux-h2: do not use timeout http-keep-alive on backend side
919 - BUG/MINOR: mux-h2: use timeout http-request as a fallback for http-keep-alive
920 - MINOR: muxes: Don't expect to have a mux without connection in destroy callback
921 - MINOR: muxes: Don't handle proto upgrade for muxes not supporting it
922 - MINOR: muxes: Don't expect to call release function with no mux defined
923 - MINOR: conn-stream: Use unsafe functions to get conn/appctx in cs_detach_endp
924 - BUG/MEDIUM: mux-h1: Don't request more room on partial trailers
925 - BUILD: http-client: Avoid dead code when compiled without SSL support
926 - BUG/MINOR: mux-quic: prevent a crash in session_free on mux.destroy
927 - BUG/MINOR: quic-sock: do not double free session on conn init failure
928 - BUG/MINOR: quic: fix return value for error in start
929 - MINOR: quic: emit CONNECTION_CLOSE on app init error
930 - BUILD: sched: workaround crazy and dangerous warning in Clang 14
931 - BUILD: compiler: use a more portable set of asm(".weak") statements
932 - BUG/MEDIUM: stream: do not abort connection setup too early
933 - CLEANUP: extcheck: do not needlessly preset the server's address/port
934 - MINOR: extcheck: fill in the server's UNIX socket address when known
935 - BUG/MEDIUM: connection: Don't crush context pointer location if it is a CS
936 - BUG/MEDIUM: quic: properly clean frames on stream free
937 - BUG/MEDIUM: fcgi-app: Use http_msg flags to know if C-L header can be added
938 - BUG/MEDIUM: compression: Don't forget to update htx_sl and http_msg flags
939 - MINOR: tcp_sample: clarifying samples support per os, for further expansion.
940 - MINOR: tcp_sample: extend support for get_tcp_info to macOs.
941 - SCRIPTS: announce-release: update the doc's URL
942 - DOC: lua: update a few doc URLs
943 - SCRIPTS: announce-release: add shortened links to pending issues
944
Willy Tarreaud3b4cd12022-04-09 11:31:40 +02009452022/04/09 : 2.6-dev5
946 - DOC: reflect H2 timeout changes
947 - BUG/MEDIUM: mux-fcgi: Properly handle return value of headers/trailers parsing
948 - BUG/MEDIUM: mux-h1: Properly detect full buffer cases during message parsing
949 - BUG/MINOR: log: Initialize the list element when allocating a new log server
950 - BUG/MINOR: samples: add missing context names for sample fetch functions
951 - MINOR: management: add some basic keyword dump infrastructure
952 - MINOR: config: add a function to dump all known config keywords
953 - MINOR: filters: extend flt_dump_kws() to dump to stdout
954 - MINOR: services: extend list_services() to dump to stdout
955 - MINOR: cli: add a new keyword dump function
956 - MINOR: acl: add a function to dump the list of known ACL keywords
957 - MINOR: samples: add a function to list register sample fetch keywords
958 - MINOR: sample: list registered sample converter functions
959 - MINOR: tools: add strordered() to check whether strings are ordered
960 - MINOR: action: add a function to dump the list of actions for a ruleset
961 - MINOR: config: alphanumerically sort config keywords output
962 - MINOR: sample: alphanumerically sort sample & conv keyword dumps
963 - MINOR: acl: alphanumerically sort the ACL dump
964 - MINOR: cli: alphanumerically sort the dump of supported commands
965 - MINOR: filters: alphabetically sort the list of filter names
966 - MINOR: services: alphabetically sort service names
967 - MEDIUM: httpclient/lua: be stricter with httpclient parameters
968 - MINOR: ssl: split the cert commit io handler
969 - MINOR: ssl: move the cert_exts and the CERT_TYPE enum
970 - MINOR: ssl: simplify the certificate extensions array
971 - MINOR: ssl: export ckch_inst_rebuild()
972 - MINOR: ssl: add "crt" in the cert_exts array
973 - MINOR: ssl/lua: CertCache.set() allows to update an SSL certificate file
974 - BUILD: ssl/lua: CacheCert needs OpenSSL
975 - DOC: lua: CertCache class documentation
976 - BUG/MEDIUM: quic: do not use qcs from quic_stream on ACK parsing
977 - MINOR: mux-quic: return qcs instance from qcc_get_qcs
978 - MINOR: mux-quic: reorganize qcs free
979 - MINOR: mux-quic: define release app-ops
980 - BUG/MINOR: h3: release resources on close
981 - BUG/MINOR: mux-quic: ensure to free all qcs on MUX release
982 - CLEANUP: quic: complete comment on qcs_try_to_consume
983 - MINOR: quic: implement stream descriptor for transport layer
984 - MEDIUM: quic: move transport fields from qcs to qc_conn_stream
985 - MEDIUM: mux-quic: remove qcs tree node
986 - BUG/MINOR: cli/stream: fix "shutdown session" to iterate over all threads
987 - DOC: management: add missing dot in 9.4.1
988 - BUG/MAJOR: mux_pt: always report the connection error to the conn_stream
989 - DOC: remove double blanks in configuration.txt
990 - CI: github actions: update OpenSSL to 3.0.2
991 - BUG/MEDIUM: quic: Possible crash in ha_quic_set_encryption_secrets()
992 - CLEANUP: quic: Remove all atomic operations on quic_conn struct
993 - CLEANUP: quic: Remove all atomic operations on packet number spaces
994 - MEDIUM: quic: Send ACK frames asap
995 - BUG/MINOR: quic: Missing probing packets when coalescing
996 - BUG/MINOR: quic: Discard Initial packet number space only one time
997 - MINOR: quic: Do not display any timer value from process_timer()
998 - BUG/MINOR: quic: Do not probe from an already probing packet number space
999 - BUG/MINOR: quic: Non duplicated frames upon fast retransmission
1000 - BUG/MINOR: quic: Too much prepared retransmissions due to anti-amplification
1001 - MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
1002 - MINOR: quic: Add traces about list of frames
1003 - BUG/MINOR: h3: Missing wait event struct field initialization
1004 - BUG/MINOR: quic: QUIC TLS secrets memory leak
1005 - BUG/MINOR: quic: Missing ACK range deallocations
1006 - BUG/MINOR: quic: Missing TX packet deallocations
1007 - CLEANUP: hpack: be careful about integer promotion from uint8_t
1008 - OPTIM: hpack: read 32 bits at once when possible.
1009 - MEDIUM: ssl: allow loading of a directory with the ca-file directive
1010 - BUG/MINOR: ssl: continue upon error when opening a directory w/ ca-file
1011 - MINOR: ssl: ca-file @system-ca loads the system trusted CA
1012 - DOC: configuration: add the ca-file changes
1013 - MINOR: sample: converter: Add add_item convertor
1014 - BUG/MINOR: ssl: handle X509_get_default_cert_dir() returning NULL
1015 - BUG/MINOR: ssl/cli: Remove empty lines from CLI output
1016 - MINOR: httpclient: enable request buffering
1017 - MEDIUM: httpclient: enable l7-retry
1018 - BUG/MINOR: httpclient: end callback in applet release
1019 - MINOR: quic: Add draining connection state.
1020 - MINOR: quic: Add closing connection state
1021 - BUG/MEDIUM: quic: ensure quic-conn survives to the MUX
1022 - CLEANUP: quic: use static qualifer on quic_close
1023 - CLEANUP: mux-quic: remove unused QC_CF_CC_RECV
1024 - BUG/MINOR: fix memleak on quic-conn streams cleaning
1025 - MINOR: mux-quic: factorize conn-stream attach
1026 - MINOR: mux-quic: adjust timeout to accelerate closing
1027 - MINOR: mux-quic: define is_active app-ops
1028 - MINOR: mux-quic: centralize send operations in qc_send
1029 - MEDIUM: mux-quic: report CO_FL_ERROR on send
1030 - MEDIUM: mux-quic: report errors on conn-streams
1031 - MEDIUM: quic: report closing state for the MUX
1032 - BUG/MINOR: fcgi-app: Don't add C-L header on response to HEAD requests
1033 - BUG/MEDIUM: stats: Be sure to never set EOM flag on an empty HTX message
1034 - BUG/MEDIUM: hlua: Don't set EOM flag on an empty HTX message in HTTP applet
1035 - BUG/MEDIUM: promex: Be sure to never set EOM flag on an empty HTX message
1036 - BUG/MEDIUM: mux-h1: Set outgoing message to DONE when payload length is reached
1037 - BUG/MINOR: http_client: Don't add input data on an empty request buffer
1038 - BUG/MEDIUM: http-conv: Fix url_enc() to not crush const samples
1039 - BUG/MEDIUM: http-act: Don't replace URI if path is not found or invalid
1040 - CLEANUP: mux-quic: remove uneeded TODO in qc_detach
1041 - BUG/MEDIUM: mux-quic: properly release conn-stream on detach
1042 - BUG/MINOR: quic: set the source not the destination address on accept()
1043 - BUG/MEDIUM: quic: Possible crash from quic_free_arngs()
1044 - MINOR: quic_tls: Add reusable cipher contexts to QUIC TLS contexts
1045 - MINOR: quic_tls: Stop hardcoding cipher IV lengths
1046 - CLEANUP: quic: Do not set any cipher/group from ssl_quic_initial_ctx()
1047 - MINOR: quic: Add short packet key phase bit values to traces
1048 - MINOR: quic_tls: Make key update use of reusable cipher contexts
1049 - BUG/MINOR: opentracing: setting the return value in function flt_ot_var_set()
1050 - BUG/BUILD: opentracing: fixed OT_DEFINE variable setting
1051 - EXAMPLES: opentracing: refined shell scripts for testing filter performance
1052 - DOC: opentracing: corrected comments in function descriptions
1053 - CLEANUP: opentracing: removed unused function flt_ot_var_unset()
1054 - CLEANUP: opentracing: removed unused function flt_ot_var_get()
1055 - Revert "MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'"
1056 - MINOR: opentracing: only takes the variables lock on shared entries
1057 - CLEANUP: opentracing: added flt_ot_smp_init() function
1058 - CLEANUP: opentracing: added variable to store variable length
1059 - MINOR: opentracing: improved normalization of context variable names
1060 - DEBUG: opentracing: show return values of all functions in the debug output
1061 - CLEANUP: opentracing: added FLT_OT_PARSE_INVALID_enum enum
1062 - DEBUG: opentracing: display the contents of the err variable after setting
1063 - MAJOR: opentracing: reenable usage of vars to transmit opentracing context
1064 - Revert "BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time"
1065 - MEDIUM: global: Add a "close-spread-time" option to spread soft-stop on time window
1066
Willy Tarreau0541c2b2022-03-26 08:31:33 +010010672022/03/26 : 2.6-dev4
1068 - BUG/MEDIUM: httpclient: don't consume data before it was analyzed
1069 - CLEANUP: htx: remove unused co_htx_remove_blk()
1070 - BUG/MINOR: httpclient: consume partly the blocks when necessary
1071 - BUG/MINOR: httpclient: remove the UNUSED block when parsing headers
1072 - BUG/MEDIUM: httpclient: must manipulate head, not first
1073 - REGTESTS: fix the race conditions in be2hex.vtc
1074 - BUG/MEDIUM: quic: Blocked STREAM when retransmitted
1075 - BUG/MAJOR: quic: Possible crash with full congestion control window
1076 - BUG/MINOR: httpclient/lua: stuck when closing without data
1077 - BUG/MEDIUM: applet: Don't call .release callback function twice
1078 - BUG/MEDIUM: cli/debug: Properly get the stream-int in all debug I/O handlers
1079 - BUG/MEDIUM: sink: Properly get the stream-int in appctx callback functions
1080 - DEV: udp: switch parser to getopt() instead of positional arguments
1081 - DEV: udp: add support for random packet corruption
1082 - MINOR: server: export server_parse_sni_expr() function
1083 - BUG/MINOR: httpclient: send the SNI using the host header
1084 - BUILD: httpclient: fix build without SSL
1085 - BUG/MINOR: server/ssl: free the SNI sample expression
1086 - BUG/MINOR: logs: fix logsrv leaks on clean exit
1087 - MINOR: actions: add new function free_act_rule() to free a single rule
1088 - BUG/MINOR: tcp-rules: completely free incorrect TCP rules on error
1089 - BUG/MINOR: http-rules: completely free incorrect TCP rules on error
1090 - BUG/MINOR: httpclient: only check co_data() instead of HTTP_MSG_DATA
1091 - BUG/MINOR: httpclient: process the response when received before the end of the request
1092 - BUG/MINOR: httpclient: CF_SHUTW_NOW should be tested with channel_is_empty()
1093 - CI: github actions: switch to LibreSSL-3.5.1
1094 - BUG/MEDIUM: mux-h1: only turn CO_FL_ERROR to CS_FL_ERROR with empty ibuf
1095 - BUG/MEDIUM: stream-int: do not rely on the connection error once established
1096 - BUG/MEDIUM: trace: avoid race condition when retrieving session from conn->owner
1097 - MEDIUM: mux-h2: slightly relax timeout management rules
1098 - BUG/MEDIUM: mux-h2: make use of http-request and keep-alive timeouts
1099 - BUG/MINOR: rules: Initialize the list element when allocating a new rule
1100 - BUG/MINOR: http-rules: Don't free new rule on allocation failure
1101 - DEV: coccinelle: Fix incorrect replacement in ist.cocci
1102 - CLEANUP: Reapply ist.cocci with `--include-headers-for-types --recursive-includes`
1103 - DEV: coccinelle: Add a new pattern to ist.cocci
1104 - CLEANUP: Reapply ist.cocci
1105 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+
1106 - MINOR: quic: Code factorization (TX buffer reuse)
1107 - CLEANUP: quic: "largest_acked_pn" pktns struc member moving
1108 - MEDIUM: quic: Limit the number of ACK ranges
1109 - MEDIUM: quic: Rework of the TX packets memory handling
1110 - BUG/MINOR: quic: Possible crash in parse_retry_token()
1111 - BUG/MINOR: quic: Possible leak in quic_build_post_handshake_frames()
1112 - BUG/MINOR: quic: Unsent frame because of qc_build_frms()
1113 - BUG/MINOR: mux-quic: Access to empty frame list from qc_send_frames()
1114 - BUG/MINOR: mux-quic: Missing I/O handler events initialization
1115 - BUG/MINOR: quic: Missing TX packet initializations
1116 - BUG/MINOR: quic: 1RTT packets ignored after mux was released
1117 - BUG/MINOR: quic: Incorrect peer address validation
1118 - BUG/MINOR: quic: Non initialized variable in quic_build_post_handshake_frames()
1119 - BUG/MINOR: quic: Wrong TX packet related counters handling
1120 - MEDIUM: mqtt: support mqtt_is_valid and mqtt_field_value converters for MQTTv3.1
1121 - DOC: config: Explictly add supported MQTT versions
1122 - MINOR: quic: Add traces about stream TX buffer consumption
1123 - MINOR: quic: Add traces in qc_set_timer() (scheduling)
1124 - CLEANUP: mux-quic: change comment style to not mess with git conflict
1125 - CLEANUP: mux-quic: adjust comment for coding-style
1126 - MINOR: mux-quic: complete trace when stream is not found
1127 - MINOR: mux-quic: add comments for send functions
1128 - MINOR: mux-quic: use shorter name for flow-control fields
1129 - MEDIUM: mux-quic: respect peer bidirectional stream data limit
1130 - MEDIUM: mux-quic: respect peer connection data limit
1131 - MINOR: mux-quic: support MAX_STREAM_DATA frame parsing
1132 - MINOR: mux-quic: support MAX_DATA frame parsing
1133 - BUILD: stream-int: avoid a build warning when DEBUG is empty
1134 - BUG/MINOR: quic: Wrong buffer length passed to generate_retry_token()
1135 - BUG/MINOR: tools: fix url2sa return value with IPv4
1136 - MINOR: mux-quic: convert fin on push-frame as boolean
1137 - BUILD: quic: add missing includes
1138 - REORG: quic: use a dedicated quic_loss.c
1139 - MINOR: mux-quic: declare the qmux trace module
1140 - MINOR: mux-quic: replace printfs by traces
1141 - MINOR: mux-quic: add trace event for frame sending
1142 - MINOR: mux-quic: add trace event for qcs_push_frame
1143 - MINOR: mux-quic: activate qmux traces on stdout via macro
1144 - BUILD: qpack: fix unused value when not using DEBUG_HPACK
1145 - CLEANUP: qpack: suppress by default stdout traces
1146 - CLEANUP: h3: suppress by default stdout traces
1147 - BUG/MINOR: tools: url2sa reads too far when no port nor path
1148
Willy Tarreaubc8b7a12022-03-11 18:09:24 +010011492022/03/11 : 2.6-dev3
1150 - DEBUG: rename WARN_ON_ONCE() to CHECK_IF()
1151 - DEBUG: improve BUG_ON output message accuracy
1152 - DEBUG: implement 4 levels of choices between warn and crash.
1153 - DEBUG: add two new macros to enable debugging in hot paths
1154 - DEBUG: buf: replace some sensitive BUG_ON() with BUG_ON_HOT()
1155 - DEBUG: buf: add BUG_ON_HOT() to most buffer management functions
1156 - MINOR: channel: don't use co_set_data() to decrement output
1157 - DEBUG: channel: add consistency checks using BUG_ON_HOT() in some key functions
1158 - MINOR: conn-stream: Improve API to have safe/unsafe accessors
1159 - MEDIUM: tree-wide: Use unsafe conn-stream API when it is relevant
1160 - CLEANUP: stream-int: Make si_cs_send() function static
1161 - REORG: stream-int: Uninline si_sync_recv() and make si_cs_recv() private
1162 - BUG/MEDIUM: mux-fcgi: Don't rely on SI src/dst addresses for FCGI health-checks
1163 - BUG/MEDIUM: htx: Fix a possible null derefs in htx_xfer_blks()
1164 - REGTESTS: fix the race conditions in normalize_uri.vtc
1165 - DEBUG: stream-int: Fix BUG_ON used to test appctx in si_applet_ops callbacks
1166 - BUILD: debug: fix build warning on older compilers around DEBUG_STRICT_ACTION
1167 - CLEANUP: connection: Indicate unreachability to the compiler in conn_recv_proxy
1168 - MINOR: connection: Transform safety check in PROXYv2 parsing into BUG_ON()
1169 - DOC: install: it's DEBUG_CFLAGS, not DEBUG, which is set to -g
1170 - DOC: install: describe the DEP variable
1171 - DOC: install: describe how to choose options used in the DEBUG variable
1172 - MINOR: queue: Replace if() + abort() with BUG_ON()
1173 - CLEANUP: adjust indentation in bidir STREAM handling function
1174 - MINOR: quic: simplify copy of STREAM frames to RX buffer
1175 - MINOR: quic: handle partially received buffered stream frame
1176 - MINOR: mux-quic: define flag for last received frame
1177 - BUG/MINOR: quic: support FIN on Rx-buffered STREAM frames
1178 - MEDIUM: quic: rearchitecture Rx path for bidirectional STREAM frames
1179 - REGTESTS: fix the race conditions in secure_memcmp.vtc
1180 - CLEANUP: stream: Remove useless tests on conn-stream in stream_dump()
1181 - BUILD: ssl: another build warning on LIBRESSL_VERSION_NUMBER
1182 - MINOR: quic: Ensure PTO timer is not set in the past
1183 - MINOR: quic: Post handshake I/O callback switching
1184 - MINOR: quic: Drop the packets of discarded packet number spaces
1185 - CLEANUP: quic: Useless tests in qc_try_rm_hp()
1186 - CLEANUP: quic: Indentation fix in qc_prep_pkts()
1187 - MINOR: quic: Assemble QUIC TLS flags at the same level
1188 - BUILD: conn_stream: avoid null-deref warnings on gcc 6
1189 - BUILD: connection: do not declare register_mux_proto() inline
1190 - BUILD: http_rules: do not declare http_*_keywords_registre() inline
1191 - BUILD: trace: do not declare trace_registre_source() inline
1192 - BUILD: tcpcheck: do not declare tcp_check_keywords_register() inline
1193 - DEBUG: reduce the footprint of BUG_ON() calls
1194 - BUG/MEDIUM: httpclient/lua: infinite appctx loop with POST
1195 - BUG/MINOR: pool: always align pool_heads to 64 bytes
1196 - DEV: udp: add a tiny UDP proxy for testing
1197 - DEV: udp: implement pseudo-random reordering/loss
1198 - DEV: udp: add an optional argument to set the prng seed
1199 - BUG/MINOR: quic: fix segfault on CC if mux uninitialized
1200 - BUG/MEDIUM: pools: fix ha_free() on area in the process of being freed
1201 - CLEANUP: tree-wide: remove a few rare non-ASCII chars
1202 - CI: coverity: simplify debugging options
1203 - CLEANUP: quic: complete ABORT_NOW with a TODO comment
1204 - MINOR: quic: qc_prep_app_pkts() implementation
1205 - MINOR: quic: Send short packet from a frame list
1206 - MINOR: quic: Make qc_build_frms() build ack-eliciting frames from a list
1207 - MINOR: quic: Export qc_send_app_pkts()
1208 - MINOR: mux-quic: refactor transport parameters init
1209 - MINOR: mux-quic: complete functions to detect stream type
1210 - MINOR: mux-quic: define new unions for flow-control fields
1211 - MEDIUM: mux-quic: use direct send transport API for STREAMs
1212 - MINOR: mux-quic: retry send opportunistically for remaining frames
1213 - MEDIUM: mux-quic: implement MAX_STREAMS emission for bidir streams
1214 - BUILD: fix kFreeBSD build.
1215 - MINOR: quic: Retry on qc_build_pkt() failures
1216 - BUG/MINOR: quic: Missing recovery start timer reset
1217 - CLEANUP: quic: Remove QUIC path manipulations out of the congestion controller
1218 - MINOR: quic: Add a "slow start" callback to congestion controller
1219 - MINOR: quic: Persistent congestion detection outside of controllers
1220 - CLEANUP: quic: Remove useless definitions from quic_cc_event struct
1221 - BUG/MINOR: quic: Confusion betwen "in_flight" and "prep_in_flight" in quic_path_prep_data()
1222 - MINOR: quic: More precise window update calculation
1223 - CLEANUP: quic: Remove window redundant variable from NewReno algorithm state struct
1224 - MINOR: quic: Add quic_max_int_by_size() function
1225 - BUG/MAJOR: quic: Wrong quic_max_available_room() returned value
1226 - MINOR: pools: add a new global option "no-memory-trimming"
1227 - BUG/MINOR: add missing modes in proxy_mode_str()
1228 - BUG/MINOR: cli: shows correct mode in "show sess"
1229 - BUG/MEDIUM: quic: do not drop packet on duplicate stream/decoding error
1230 - MINOR: stats: Add dark mode support for socket rows
1231 - BUILD: fix recent build breakage of freebsd caused by kFreeBSD build fix
1232 - BUG/MINOR: httpclient: Set conn-stream/channel EOI flags at the end of request
1233 - BUG/MINOR: hlua: Set conn-stream/channel EOI flags at the end of request
1234 - BUG/MINOR: stats: Set conn-stream/channel EOI flags at the end of request
1235 - BUG/MINOR: cache: Set conn-stream/channel EOI flags at the end of request
1236 - BUG/MINOR: promex: Set conn-stream/channel EOI flags at the end of request
1237 - BUG/MEDIUM: stream: Use the front analyzers for new listener-less streams
1238 - DEBUG: cache: Update underlying buffer when loading HTX message in cache applet
1239 - BUG/MEDIUM: mcli: Properly handle errors and timeouts during reponse processing
1240 - DEBUG: stream: Add the missing descriptions for stream trace events
1241 - DEBUG: stream: Fix stream trace message to print response buffer state
1242 - MINOR: proxy: Store monitor_uri as a `struct ist`
1243 - MINOR: proxy: Store fwdfor_hdr_name as a `struct ist`
1244 - MINOR: proxy: Store orgto_hdr_name as a `struct ist`
1245 - MEDIUM: proxy: Store server_id_hdr_name as a `struct ist`
1246 - CLEANUP: fcgi: Replace memcpy() on ist by istcat()
1247 - CLEANUP: fcgi: Use `istadv()` in `fcgi_strm_send_params`
1248 - BUG/MAJOR: mux-pt: Always destroy the backend connection on detach
1249 - DOC: sample fetch methods: move distcc_* to the right locations
1250 - MINOR: rules: record the last http/tcp rule that gave a final verdict
1251 - MINOR: stream: add "last_rule_file" and "last_rule_line" samples
1252 - BUG/MINOR: session: fix theoretical risk of memleak in session_accept_fd()
1253 - MINOR: quic: Add max_idle_timeout advertisement handling
1254 - MEDIUM: quic: Remove the QUIC connection reference counter
1255 - BUG/MINOR: quic: ACK_REQUIRED and ACK_RECEIVED flag collision
1256 - BUG/MINOR: quic: Missing check when setting the anti-amplification limit as reached
1257 - MINOR: quic: Add a function to compute the current PTO
1258 - MEDIUM: quic: Implement the idle timeout feature
1259 - BUG/MEDIUM: quic: qc_prep_app_pkts() retries on qc_build_pkt() failures
1260 - CLEANUP: quic: Comments fix for qc_prep_(app)pkts() functions
1261 - MINOR: mux-quic: prevent push frame for unidir streams
1262 - MINOR: mux-quic: improve opportunistic retry sending for STREAM frames
1263 - MINOR: quic: implement sending confirmation
1264 - MEDIUM: mux-quic: improve bidir STREAM frames sending
1265 - MEDIUM: check: do not auto configure SSL/PROXY for dynamic servers
1266 - REGTESTS: server: test SSL/PROXY with checks for dynamic servers
1267 - MEDIUM: server: remove experimental-mode for dynamic servers
1268 - BUG/MINOR: buffer: fix debugging condition in b_peek_varint()
1269
Willy Tarreau3b1d1902022-02-25 17:12:11 +010012702022/02/25 : 2.6-dev2
1271 - DOC: management: rework the Master CLI section
1272 - DOC: management: add expert and experimental mode in 9.4.1
1273 - CLEANUP: cleanup a commentary in pcli_parse_request()
1274 - BUG/MINOR: mworker/cli: don't display help on master applet
1275 - MINOR: mworker/cli: mcli-debug-mode enables every command
1276 - MINOR: mworker/cli: add flags in the prompt
1277 - BUG/MINOR: httpclient: Revisit HC request and response buffers allocation
1278 - BUG/MEDIUM: httpclient: Xfer the request when the stream is created
1279 - MINOR: httpclient: Don't limit data transfer to 1024 bytes
1280 - BUILD: ssl: adjust guard for X509_get_X509_PUBKEY(x)
1281 - REGTESTS: ssl: skip show_ssl_ocspresponse.vtc when BoringSSL is used
1282 - MINOR: quic: Do not modify a marked as consumed datagram
1283 - MINOR: quic: Wrong datagram buffer passed to quic_lstnr_dgram_dispatch()
1284 - MINOR: quic: Remove a useless test in quic_get_dgram_dcid()
1285 - BUG/MINOR: ssl: Remove empty lines from "show ssl ocsp-response <id>" output
1286 - CLEANUP: ssl: Remove unused ssl_sock_create_cert function
1287 - MINOR: ssl: Use high level OpenSSL APIs in sha2 converter
1288 - MINOR: ssl: Remove EC_KEY related calls when preparing SSL context
1289 - REGTESTS: ssl: Add test for "curves" and "ecdhe" SSL options
1290 - MINOR: ssl: Remove EC_KEY related calls when creating a certificate
1291 - REGTESTS: ssl: Add test for "generate-certificates" SSL option
1292 - MINOR: ssl: Remove call to SSL_CTX_set_tlsext_ticket_key_cb with OpenSSLv3
1293 - MINOR: ssl: Remove call to HMAC_Init_ex with OpenSSLv3
1294 - MINOR: h3: hardcode the stream id of control stream
1295 - MINOR: mux-quic: remove quic_transport_params_update
1296 - MINOR: quic: rename local tid variable
1297 - MINOR: quic: remove unused xprt rcv_buf operation
1298 - MINOR: quic: take out xprt snd_buf operation
1299 - CI: enable QUIC for Coverity scan
1300 - BUG/MINOR: mworker: does not erase the pidfile upon reload
1301 - MINOR: ssl: Remove call to ERR_func_error_string with OpenSSLv3
1302 - MINOR: ssl: Remove call to ERR_load_SSL_strings with OpenSSLv3
1303 - REGTESTS: ssl: Add tests for DH related options
1304 - MINOR: ssl: Create HASSL_DH wrapper structure
1305 - MINOR: ssl: Add ssl_sock_get_dh_from_bio helper function
1306 - MINOR: ssl: Factorize ssl_get_tmp_dh and append a cbk to its name
1307 - MINOR: ssl: Add ssl_sock_set_tmp_dh helper function
1308 - MINOR: ssl: Add ssl_sock_set_tmp_dh_from_pkey helper function
1309 - MINOR: ssl: Add ssl_new_dh_fromdata helper function
1310 - MINOR: ssl: Build local DH of right size when needed
1311 - MINOR: ssl: Set default dh size to 2048
1312 - MEDIUM: ssl: Replace all DH objects by EVP_PKEY on OpenSSLv3 (via HASSL_DH type)
1313 - MINOR: ssl: Remove calls to SSL_CTX_set_tmp_dh_callback on OpenSSLv3
1314 - MINOR: quic: Remove an RX buffer useless lock
1315 - MINOR: quic: Variable used before being checked in ha_quic_add_handshake_data()
1316 - MINOR: quic: EINTR error ignored
1317 - MINOR: quic: Potential overflow expression in qc_parse_frm()
1318 - MINOR: quic: Possible overflow in qpack_get_varint()
1319 - CLEANUP: h3: Unreachable target in h3_uqs_init()
1320 - MINOR: quic: Possible memleak in qc_new_conn()
1321 - MINOR: quic: Useless statement in quic_crypto_data_cpy()
1322 - BUG/MEDIUM: pools: ensure items are always large enough for the pool_cache_item
1323 - BUG/MINOR: pools: always flush pools about to be destroyed
1324 - CLEANUP: pools: don't needlessly set a call mark during refilling of caches
1325 - DEBUG: pools: add extra sanity checks when picking objects from a local cache
1326 - DEBUG: pools: let's add reverse mapping from cache heads to thread and pool
1327 - DEBUG: pools: replace the link pointer with the caller's address on pool_free()
1328 - BUG/MAJOR: sched: prevent rare concurrent wakeup of multi-threaded tasks
1329 - MINOR: quic: use a global dghlrs for each thread
1330 - BUG/MEDIUM: quic: fix crash on CC if mux not present
1331 - MINOR: qpack: fix typo in trace
1332 - BUG/MINOR: quic: fix FIN stream signaling
1333 - BUG/MINOR: h3: fix the header length for QPACK decoding
1334 - MINOR: h3: remove transfer-encoding header
1335 - MINOR: h3: add documentation on h3_decode_qcs
1336 - MINOR: h3: set properly HTX EOM/BODYLESS on HEADERS parsing
1337 - MINOR: mux-quic: implement rcv_buf
1338 - MINOR: mux-quic: set EOS on rcv_buf
1339 - MINOR: h3: set CS_FL_NOT_FIRST
1340 - MINOR: h3: report frames bigger than rx buffer
1341 - MINOR: h3: extract HEADERS parsing in a dedicated function
1342 - MINOR: h3: implement DATA parsing
1343 - MINOR: quic: Wrong smoothed rtt initialization
1344 - MINOR: quic: Wrong loss delay computation
1345 - MINOR: quic: Code never reached in qc_ssl_sess_init()
1346 - MINOR: quic: ha_quic_set_encryption_secrets without server specific code
1347 - MINOR: quic: Avoid warning about NULL pointer dereferences
1348 - MINOR: quic: Useless test in quic_lstnr_dghdlr()
1349 - MINOR: quic: Non checked returned value for cs_new() in hq_interop_decode_qcs()
1350 - MINOR: h3: Dead code in h3_uqs_init()
1351 - MINOR: quic: Non checked returned value for cs_new() in h3_decode_qcs()
1352 - MINOR: quic: Possible frame parsers array overrun
1353 - MINOR: quic: Do not retransmit too much packets.
1354 - MINOR: quic: Move quic_rxbuf_pool pool out of xprt part
1355 - MINOR: h3: report error on HEADERS/DATA parsing
1356 - BUG/MINOR: jwt: Double free in deinit function
1357 - BUG/MINOR: jwt: Missing pkey free during cleanup
1358 - BUG/MINOR: jwt: Memory leak if same key is used in multiple jwt_verify calls
1359 - BUG/MINOR: httpclient/cli: display junk characters in vsn
1360 - MINOR: h3: remove unused return value on decode_qcs
1361 - BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies
1362 - BUG/MAJOR: spoe: properly detach all agents when releasing the applet
1363 - REGTESTS: server: close an occasional race on dynamic_server_ssl.vtc
1364 - REGTESTS: peers: leave a bit more time to peers to synchronize
1365 - BUG/MEDIUM: h2/hpack: fix emission of HPACK DTSU after settings change
1366 - BUG/MINOR: mux-h2: update the session's idle delay before creating the stream
1367 - BUG/MINOR: httpclient: reinit flags in httpclient_start()
1368 - BUG/MINOR: mailers: negotiate SMTP, not ESMTP
1369 - MINOR: httpclient: sets an alternative destination
1370 - MINOR: httpclient/lua: add 'dst' optionnal field
1371 - BUG/MINOR: ssl: Add missing return value check in ssl_ocsp_response_print
1372 - BUG/MINOR: ssl: Fix leak in "show ssl ocsp-response" CLI command
1373 - BUG/MINOR: ssl: Missing return value check in ssl_ocsp_response_print
1374 - CLEANUP: httpclient/cli: fix indentation alignment of the help message
1375 - BUG/MINOR: tools: url2sa reads ipv4 too far
1376 - BUG/MEDIUM: httpclient: limit transfers to the maximum available room
1377 - DEBUG: buffer: check in __b_put_blk() whether the buffer room is respected
1378 - MINOR: mux-quic: fix a possible null dereference in qc_timeout_task
1379 - BUG/MEDIUM: htx: Be sure to have a buffer to perform a raw copy of a message
1380 - BUG/MEDIUM: mux-h1: Don't wake h1s if mux is blocked on lack of output buffer
1381 - BUG/MAJOR: mux-h2: Be sure to always report HTX parsing error to the app layer
1382 - DEBUG: stream-int: Check CS_FL_WANT_ROOM is not set with an empty input buffer
1383 - MINOR: quic: do not modify offset node if quic_rx_strm_frm in tree
1384 - MINOR: h3: fix compiler warning variable set but not used
1385 - MINOR: mux-quic: fix uninitialized return on qc_send
1386 - MINOR: quic: fix handling of out-of-order received STREAM frames
1387 - MINOR: pools: mark most static pool configuration variables as read-mostly
1388 - CLEANUP: pools: remove the now unused pool_is_crowded()
1389 - REGTESTS: fix the race conditions in 40be_2srv_odd_health_checks
1390 - BUG/MEDIUM: stream: Abort processing if response buffer allocation fails
1391 - MINOR: httpclient/lua: ability to set a server timeout
1392 - BUG/MINOR: httpclient/lua: missing pop for new timeout parameter
1393 - DOC: httpclient/lua: fix the type of the dst parameter
1394 - CLEANUP: httpclient: initialize the client in stage INIT not REGISTER
1395 - CLEANUP: muxes: do not use a dynamic trash in list_mux_protos()
1396 - CLEANUP: vars: move the per-process variables initialization to vars.c
1397 - CLEANUP: init: remove the ifdef on HAPROXY_MEMMAX
1398 - MINOR: pools: disable redundant poisonning on pool_free()
1399 - MINOR: pools: introduce a new pool_debugging global variable
1400 - MINOR: pools: switch the fail-alloc test to runtime only
1401 - MINOR: pools: switch DEBUG_DONT_SHARE_POOLS to runtime
1402 - MINOR: pools: add a new debugging flag POOL_DBG_COLD_FIRST
1403 - MINOR: pools: add a new debugging flag POOL_DBG_INTEGRITY
1404 - MINOR: pools: make the global pools a runtime option.
1405 - MEDIUM: pools: replace CONFIG_HAP_POOLS with a runtime "NO_CACHE" flag.
1406 - MINOR: pools: store the allocated size for each pool
1407 - MINOR: pools: get rid of POOL_EXTRA
1408 - MINOR: pools: replace DEBUG_POOL_TRACING with runtime POOL_DBG_CALLER
1409 - MINOR: pools: replace DEBUG_MEMORY_POOLS with runtime POOL_DBG_TAG
1410 - MINOR: pools: add a debugging flag for memory poisonning option
1411 - MEDIUM: initcall: move STG_REGISTER earlier
1412 - MEDIUM: init: split the early initialization in its own function
1413 - MINOR: init: extract args parsing to their own function
1414 - MEDIUM: init: handle arguments earlier
1415 - MINOR: pools: delegate parsing of command line option -dM to a new function
1416 - MINOR: pools: support setting debugging options using -dM
1417 - BUILD: makefile: enable both DEBUG_STRICT and DEBUG_MEMORY_POOLS by default
1418 - CI: github: enable pool debugging by default
1419 - DOC: Fix usage/examples of deprecated ACLs
1420 - DOC: internal: update the pools API to mention boot-time settings
1421 - DOC: design: add design thoughts for later simplification of the pools
1422 - DOC: design: commit the temporary design notes on thread groups
1423 - MINOR: stream-int: Handle appctx case first when releasing the endpoint
1424 - MINOR: connection: Be prepared to handle conn-stream with no connection
1425 - MINOR: stream: Handle appctx case first when creating a new stream
1426 - MINOR: connection: Add a function to detach a conn-stream from the connection
1427 - MINOR: stream-int: Add function to reset a SI endpoint
1428 - MINOR: stream-int: Add function to attach a connection to a SI
1429 - MINOR: stream-int: Be able to allocate a CS without connection
1430 - MEDIUM: stream: No longer release backend conn-stream on connection retry
1431 - MEDIUM: stream: Allocate backend CS when the stream is created
1432 - REORG: conn_stream: move conn-stream stuff in dedicated files
1433 - MEDIUM: conn-stream: No longer access connection field directly
1434 - MEDIUM: conn-stream: Be prepared to use an appctx as conn-stream endpoint
1435 - MAJOR: conn_stream/stream-int: move the appctx to the conn-stream
1436 - MEDIUM: applet: Set the conn-stream as appctx owner instead of the stream-int
1437 - MEDIUM: conn_stream: Add a pointer to the app object into the conn-stream
1438 - MINOR: stream: Add pointer to front/back conn-streams into stream struct
1439 - MINOR: stream: Slightly rework stream_new to separate CS/SI initialization
1440 - MINOR: stream-int: Always access the stream-int via the conn-stream
1441 - MINOR: backend: Always access the stream-int via the conn-stream
1442 - MINOR: stream: Always access the stream-int via the conn-stream
1443 - MINOR: http-ana: Always access the stream-int via the conn-stream
1444 - MINOR: cli: Always access the stream-int via the conn-stream
1445 - MINOR: log: Always access the stream-int via the conn-stream
1446 - MINOR: frontend: Always access the stream-int via the conn-stream
1447 - MINOR: proxy: Always access the stream-int via the conn-stream
1448 - MINOR: peers: Always access the stream-int via the conn-stream
1449 - MINOR: debug: Always access the stream-int via the conn-stream
1450 - MINOR: hlua: Always access the stream-int via the conn-stream
1451 - MINOR: cache: Always access the stream-int via the conn-stream
1452 - MINOR: dns: Always access the stream-int via the conn-stream
1453 - MINOR: http-act: Always access the stream-int via the conn-stream
1454 - MINOR: httpclient: Always access the stream-int via the conn-stream
1455 - MINOR: tcp-act: Always access the stream-int via the conn-stream
1456 - MINOR: sink: Always access the stream-int via the conn-stream
1457 - MINOR: conn-stream: Rename cs_detach() to cs_detach_endp()
1458 - CLEANUP: conn-stream: Don't export conn-stream pool
1459 - MAJOR: stream/conn_stream: Move the stream-interface into the conn-stream
1460 - CLEANUP: stream-int: rename si_reset() to si_init()
1461 - MINOR: conn-stream: Release a CS when both app and endp are detached
1462 - MINOR: stream: Don't destroy conn-streams but detach app and endp
1463 - MAJOR: check: Use a persistent conn-stream for health-checks
1464 - CLEANUP: conn-stream: Remove cs_destroy()
1465 - CLEANUP: backend: Don't export connect_server anymore
1466 - BUG/MINOR: h3/hq_interop: Fix CS and stream creation
1467 - BUILD: tree-wide: Avoid warnings about undefined entities retrieved from a CS
1468 - BUG/MINOR: proxy: preset the error message pointer to NULL in parse_new_proxy()
1469 - BUG/MEDIUM: quic: fix received ACK stream calculation
1470 - BUILD: stream: fix build warning with older compilers
1471 - BUG/MINOR: debug: fix get_tainted() to properly read an atomic value
1472 - DEBUG: move the tainted stuff to bug.h for easier inclusion
1473 - DEBUG: cleanup back trace generation
1474 - DEBUG: cleanup BUG_ON() configuration
1475 - DEBUG: mark ABORT_NOW() as unreachable
1476 - DBEUG: add a new WARN_ON() macro
1477 - DEBUG: make the _BUG_ON() macro return the condition
1478 - DEBUG: add a new WARN_ON_ONCE() macro
1479 - DEBUG: report BUG_ON() and WARN_ON() in the tainted flags
1480 - MINOR: quic: adjust buffer handling for STREAM transmission
1481 - MINOR: quic: liberate the TX stream buffer after ACK processing
1482 - MINOR: quic: add a TODO for a memleak frame on ACK consume
1483
Willy Tarreau2454d6e2022-02-01 18:06:59 +010014842022/02/01 : 2.6-dev1
1485 - BUG/MINOR: cache: Fix loop on cache entries in "show cache"
1486 - BUG/MINOR: httpclient: allow to replace the host header
1487 - BUG/MINOR: lua: don't expose internal proxies
1488 - MEDIUM: mworker: seamless reload use the internal sockpairs
1489 - BUG/MINOR: lua: remove loop initial declarations
1490 - BUG/MINOR: mworker: does not add the -sf in wait mode
1491 - BUG/MEDIUM: mworker: FD leak of the eventpoll in wait mode
1492 - MINOR: quic: do not reject PADDING followed by other frames
1493 - REORG: quic: add comment on rare thread concurrence during CID alloc
1494 - CLEANUP: quic: add comments on CID code
1495 - MEDIUM: quic: handle CIDs to rattach received packets to connection
1496 - MINOR: qpack: support litteral field line with non-huff name
1497 - MINOR: quic: activate QUIC traces at compilation
1498 - MINOR: quic: use more verbose QUIC traces set at compile-time
1499 - MEDIUM: pool: refactor malloc_trim/glibc and jemalloc api addition detections.
1500 - MEDIUM: pool: support purging jemalloc arenas in trim_all_pools()
1501 - BUG/MINOR: mworker: deinit of thread poller was called when not initialized
1502 - BUILD: pools: only detect link-time jemalloc on ELF platforms
1503 - CI: github actions: add the output of $CC -dM -E-
1504 - BUG/MEDIUM: cli: Properly set stream analyzers to process one command at a time
1505 - BUILD: evports: remove a leftover from the dead_fd cleanup
1506 - MINOR: quic: Set "no_application_protocol" alert
1507 - MINOR: quic: More accurate immediately close.
1508 - MINOR: quic: Immediately close if no transport parameters extension found
1509 - MINOR: quic: Rename qc_prep_hdshk_pkts() to qc_prep_pkts()
1510 - MINOR: quic: Possible crash when inspecting the xprt context
1511 - MINOR: quic: Dynamically allocate the secrete keys
1512 - MINOR: quic: Add a function to derive the key update secrets
1513 - MINOR: quic: Add structures to maintain key phase information
1514 - MINOR: quic: Optional header protection key for quic_tls_derive_keys()
1515 - MINOR: quic: Add quic_tls_key_update() function for Key Update
1516 - MINOR: quic: Enable the Key Update process
1517 - MINOR: quic: Delete the ODCIDs asap
1518 - BUG/MINOR: vars: Fix the set-var and unset-var converters
1519 - MEDIUM: pool: Following up on previous pool trimming update.
1520 - BUG/MEDIUM: mux-h1: Fix splicing by properly detecting end of message
1521 - BUG/MINOR: mux-h1: Fix splicing for messages with unknown length
1522 - MINOR: mux-h1: Improve H1 traces by adding info about http parsers
1523 - MINOR: mux-h1: register a stats module
1524 - MINOR: mux-h1: add counters instance to h1c
1525 - MINOR: mux-h1: count open connections/streams on stats
1526 - MINOR: mux-h1: add stat for total count of connections/streams
1527 - MINOR: mux-h1: add stat for total amount of bytes received and sent
1528 - REGTESTS: h1: Add a script to validate H1 splicing support
1529 - BUG/MINOR: server: Don't rely on last default-server to init server SSL context
1530 - BUG/MEDIUM: resolvers: Detach query item on response error
1531 - MEDIUM: resolvers: No longer store query items in a list into the response
1532 - BUG/MAJOR: segfault using multiple log forward sections.
1533 - BUG/MEDIUM: h1: Properly reset h1m flags when headers parsing is restarted
1534 - BUG/MINOR: resolvers: Don't overwrite the error for invalid query domain name
1535 - BUILD: bug: Fix error when compiling with -DDEBUG_STRICT_NOCRASH
1536 - BUG/MEDIUM: sample: Fix memory leak in sample_conv_jwt_member_query
1537 - DOC: spoe: Clarify use of the event directive in spoe-message section
1538 - DOC: config: Specify %Ta is only available in HTTP mode
1539 - BUILD: tree-wide: avoid warnings caused by redundant checks of obj_types
1540 - IMPORT: slz: use the correct CRC32 instruction when running in 32-bit mode
1541 - MINOR: quic: fix segfault on CONNECTION_CLOSE parsing
1542 - MINOR: h3: add BUG_ON on control receive function
1543 - MEDIUM: xprt-quic: finalize app layer initialization after ALPN nego
1544 - MINOR: h3: remove duplicated FIN flag position
1545 - MAJOR: mux-quic: implement a simplified mux version
1546 - MEDIUM: mux-quic: implement release mux operation
1547 - MEDIUM: quic: detect the stream FIN
1548 - MINOR: mux-quic: implement subscribe on stream
1549 - MEDIUM: mux-quic: subscribe on xprt if remaining data after send
1550 - MEDIUM: mux-quic: wake up xprt on data transferred
1551 - MEDIUM: mux-quic: handle when sending buffer is full
1552 - MINOR: quic: RX buffer full due to wrong CRYPTO data handling
1553 - MINOR: quic: Race issue when consuming RX packets buffer
1554 - MINOR: quic: QUIC encryption level RX packets race issue
1555 - MINOR: quic: Delete remaining RX handshake packets
1556 - MINOR: quic: Remove QUIC TX packet length evaluation function
1557 - MINOR: hq-interop: fix tx buffering
1558 - MINOR: mux-quic: remove uneeded code to check fin on TX
1559 - MINOR: quic: add HTX EOM on request end
1560 - BUILD: mux-quic: fix compilation with DEBUG_MEM_STATS
1561 - MINOR: http-rules: Add capture action to http-after-response ruleset
1562 - BUG/MINOR: cli/server: Don't crash when a server is added with a custom id
1563 - MINOR: mux-quic: do not release qcs if there is remaining data to send
1564 - MINOR: quic: notify the mux on CONNECTION_CLOSE
1565 - BUG/MINOR: mux-quic: properly initialize flow control
1566 - MINOR: quic: Compilation fix for quic_rx_packet_refinc()
1567 - MINOR: h3: fix possible invalid dereference on htx parsing
1568 - DOC: config: retry-on list is space-delimited
1569 - DOC: config: fix error-log-format example
1570 - BUG/MEDIUM: mworker/cli: crash when trying to access an old PID in prompt mode
1571 - MINOR: hq-interop: refix tx buffering
1572 - REGTESTS: ssl: use X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY for cert check
1573 - MINOR: cli: "show version" displays the current process version
1574 - CLEANUP: cfgparse: modify preprocessor guards around numa detection code
1575 - MEDIUM: cfgparse: numa detect topology on FreeBSD.
1576 - BUILD: ssl: unbreak the build with newer libressl
1577 - MINOR: vars: Move UPDATEONLY flag test to vars_set_ifexist
1578 - MINOR: vars: Set variable type to ANY upon creation
1579 - MINOR: vars: Delay variable content freeing in var_set function
1580 - MINOR: vars: Parse optional conditions passed to the set-var converter
1581 - MINOR: vars: Parse optional conditions passed to the set-var actions
1582 - MEDIUM: vars: Enable optional conditions to set-var converter and actions
1583 - DOC: vars: Add documentation about the set-var conditions
1584 - REGTESTS: vars: Add new test for conditional set-var
1585 - MINOR: quic: Attach timer task to thread for the connection.
1586 - CLEANUP: quic_frame: Remove a useless suffix to STOP_SENDING
1587 - MINOR: quic: Add traces for STOP_SENDING frame and modify others
1588 - CLEANUP: quic: Remove cdata_len from quic_tx_packet struct
1589 - MINOR: quic: Enable TLS 0-RTT if needed
1590 - MINOR: quic: No TX secret at EARLY_DATA encryption level
1591 - MINOR: quic: Add quic_set_app_ops() function
1592 - MINOR: ssl_sock: Set the QUIC application from ssl_sock_advertise_alpn_protos.
1593 - MINOR: quic: Make xprt support 0-RTT.
1594 - MINOR: qpack: Missing check for truncated QPACK fields
1595 - CLEANUP: quic: Comment fix for qc_strm_cpy()
1596 - MINOR: hq_interop: Stop BUG_ON() truncated streams
1597 - MINOR: quic: Do not mix packet number space and connection flags
1598 - CLEANUP: quic: Shorten a litte bit the traces in lstnr_rcv_pkt()
1599 - MINOR: mux-quic: fix trace on stream creation
1600 - CLEANUP: quic: fix spelling mistake in a trace
1601 - CLEANUP: quic: rename quic_conn conn to qc in quic_conn_free
1602 - MINOR: quic: add missing lock on cid tree
1603 - MINOR: quic: rename constant for haproxy CIDs length
1604 - MINOR: quic: refactor concat DCID with address for Initial packets
1605 - MINOR: quic: compare coalesced packets by DCID
1606 - MINOR: quic: refactor DCID lookup
1607 - MINOR: quic: simplify the removal from ODCID tree
1608 - REGTESTS: vars: Remove useless ssl tunes from conditional set-var test
1609 - MINOR: ssl: Remove empty lines from "show ssl ocsp-response" output
1610 - MINOR: quic: Increase the RX buffer for each connection
1611 - MINOR: quic: Add a function to list remaining RX packets by encryption level
1612 - MINOR: quic: Stop emptying the RX buffer asap.
1613 - MINOR: quic: Do not expect to receive only one O-RTT packet
1614 - MINOR: quic: Do not forget STREAM frames received in disorder
1615 - MINOR: quic: Wrong packet refcount handling in qc_pkt_insert()
1616 - DOC: fix misspelled keyword "resolve_retries" in resolvers
1617 - CLEANUP: quic: rename quic_conn instances to qc
1618 - REORG: quic: move mux function outside of xprt
1619 - MINOR: quic: add reference to quic_conn in ssl context
1620 - MINOR: quic: add const qualifier for traces function
1621 - MINOR: trace: add quic_conn argument definition
1622 - MINOR: quic: use quic_conn as argument to traces
1623 - MINOR: quic: add quic_conn instance in traces for qc_new_conn
1624 - MINOR: quic: Add stream IDs to qcs_push_frame() traces
1625 - MINOR: quic: unchecked qc_retrieve_conn_from_cid() returned value
1626 - MINOR: quic: Wrong dropped packet skipping
1627 - MINOR: quic: Handle the cases of overlapping STREAM frames
1628 - MINOR: quic: xprt traces fixes
1629 - MINOR: quic: Drop asap Retry or Version Negotiation packets
1630 - MINOR: pools: work around possibly slow malloc_trim() during gc
1631 - DEBUG: ssl: make sure we never change a servername on established connections
1632 - MINOR: quic: Add traces for RX frames (flow control related)
1633 - MINOR: quic: Add CONNECTION_CLOSE phrase to trace
1634 - REORG: quic: remove qc_ prefix on functions which not used it directly
1635 - BUG/MINOR: quic: upgrade rdlock to wrlock for ODCID removal
1636 - MINOR: quic: remove unnecessary call to free_quic_conn_cids()
1637 - MINOR: quic: store ssl_sock_ctx reference into quic_conn
1638 - MINOR: quic: remove unnecessary if in qc_pkt_may_rm_hp()
1639 - MINOR: quic: replace usage of ssl_sock_ctx by quic_conn
1640 - MINOR: quic: delete timer task on quic_close()
1641 - MEDIUM: quic: implement refcount for quic_conn
1642 - BUG/MINOR: quic: fix potential null dereference
1643 - BUG/MINOR: quic: fix potential use of uninit pointer
1644 - BUG/MEDIUM: backend: fix possible sockaddr leak on redispatch
1645 - BUG/MEDIUM: peers: properly skip conn_cur from incoming messages
1646 - CI: Github Actions: do not show VTest failures if build failed
1647 - BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time
1648 - MINOR: compat: detect support for dl_iterate_phdr()
1649 - MINOR: debug: add ability to dump loaded shared libraries
1650 - MINOR: debug: add support for -dL to dump library names at boot
1651 - BUG/MEDIUM: ssl: initialize correctly ssl w/ default-server
1652 - REGTESTS: ssl: fix ssl_default_server.vtc
1653 - BUG/MINOR: ssl: free the fields in srv->ssl_ctx
1654 - BUG/MEDIUM: ssl: free the ckch instance linked to a server
1655 - REGTESTS: ssl: update of a crt with server deletion
1656 - BUILD/MINOR: cpuset FreeBSD 14 build fix.
1657 - MINOR: pools: always evict oldest objects first in pool_evict_from_local_cache()
1658 - DOC: pool: document the purpose of various structures in the code
1659 - CLEANUP: pools: do not use the extra pointer to link shared elements
1660 - CLEANUP: pools: get rid of the POOL_LINK macro
1661 - MINOR: pool: allocate from the shared cache through the local caches
1662 - CLEANUP: pools: group list updates in pool_get_from_cache()
1663 - MINOR: pool: rely on pool_free_nocache() in pool_put_to_shared_cache()
1664 - MINOR: pool: make pool_is_crowded() always true when no shared pools are used
1665 - MINOR: pool: check for pool's fullness outside of pool_put_to_shared_cache()
1666 - MINOR: pool: introduce pool_item to represent shared pool items
1667 - MINOR: pool: add a function to estimate how many may be released at once
1668 - MEDIUM: pool: compute the number of evictable entries once per pool
1669 - MINOR: pools: prepare pool_item to support chained clusters
1670 - MINOR: pools: pass the objects count to pool_put_to_shared_cache()
1671 - MEDIUM: pools: centralize cache eviction in a common function
1672 - MEDIUM: pools: start to batch eviction from local caches
1673 - MEDIUM: pools: release cached objects in batches
1674 - OPTIM: pools: reduce local pool cache size to 512kB
1675 - CLEANUP: assorted typo fixes in the code and comments This is 29th iteration of typo fixes
1676 - CI: github actions: update OpenSSL to 3.0.1
1677 - BUILD/MINOR: tools: solaris build fix on dladdr.
1678 - BUG/MINOR: cli: fix _getsocks with musl libc
1679 - BUG/MEDIUM: http-ana: Preserve response's FLT_END analyser on L7 retry
1680 - MINOR: quic: Wrong traces after rework
1681 - MINOR: quic: Add trace about in flight bytes by packet number space
1682 - MINOR: quic: Wrong first packet number space computation
1683 - MINOR: quic: Wrong packet number space computation for PTO
1684 - MINOR: quic: Wrong loss time computation in qc_packet_loss_lookup()
1685 - MINOR: quic: Wrong ack_delay compution before calling quic_loss_srtt_update()
1686 - MINOR: quic: Remove nb_pto_dgrams quic_conn struct member
1687 - MINOR: quic: Wrong packet number space trace in qc_prep_pkts()
1688 - MINOR: quic: Useless test in qc_prep_pkts()
1689 - MINOR: quic: qc_prep_pkts() code moving
1690 - MINOR: quic: Speeding up Handshake Completion
1691 - MINOR: quic: Probe Initial packet number space more often
1692 - MINOR: quic: Probe several packet number space upon timer expiration
1693 - MINOR: quic: Comment fix.
1694 - MINOR: quic: Improve qc_prep_pkts() flexibility
1695 - MINOR: quic: Do not drop secret key but drop the CRYPTO data
1696 - MINOR: quic: Prepare Handshake packets asap after completed handshake
1697 - MINOR: quic: Flag asap the connection having reached the anti-amplification limit
1698 - MINOR: quic: PTO timer too often reset
1699 - MINOR: quic: Re-arm the PTO timer upon datagram receipt
1700 - MINOR: proxy: add option idle-close-on-response
1701 - MINOR: cpuset: switch to sched_setaffinity for FreeBSD 14 and above.
1702 - CI: refactor spelling check
1703 - CLEANUP: assorted typo fixes in the code and comments
1704 - BUILD: makefile: add -Wno-atomic-alignment to work around clang abusive warning
1705 - MINOR: quic: Only one CRYPTO frame by encryption level
1706 - MINOR: quic: Missing retransmission from qc_prep_fast_retrans()
1707 - MINOR: quic: Non-optimal use of a TX buffer
1708 - BUG/MEDIUM: mworker: don't use _getsocks in wait mode
1709 - BUG/MINOR: ssl: Store client SNI in SSL context in case of ClientHello error
1710 - BUG/MAJOR: mux-h1: Don't decrement .curr_len for unsent data
1711 - DOC: internals: document the pools architecture and API
1712 - CI: github actions: clean default step conditions
1713 - BUILD: cpuset: fix build issue on macos introduced by previous change
1714 - MINOR: quic: Remaining TRACEs with connection as firt arg
1715 - MINOR: quic: Reset ->conn quic_conn struct member when calling qc_release()
1716 - MINOR: quic: Flag the connection as being attached to a listener
1717 - MINOR: quic: Wrong CRYPTO frame concatenation
1718 - MINOR: quid: Add traces quic_close() and quic_conn_io_cb()
1719 - REGTESTS: ssl: Fix ssl_errors regtest with OpenSSL 1.0.2
1720 - MINOR: quic: Do not dereference ->conn quic_conn struct member
1721 - MINOR: quic: fix return of quic_dgram_read
1722 - MINOR: quic: add config parse source file
1723 - MINOR: quic: implement Retry TLS AEAD tag generation
1724 - MEDIUM: quic: implement Initial token parsing
1725 - MINOR: quic: define retry_source_connection_id TP
1726 - MEDIUM: quic: implement Retry emission
1727 - MINOR: quic: free xprt tasklet on its thread
1728 - BUG/MEDIUM: connection: properly leave stopping list on error
1729 - MINOR: pools: enable pools with DEBUG_FAIL_ALLOC as well
1730 - MINOR: quic: As server, skip 0-RTT packet number space
1731 - MINOR: quic: Do not wakeup the I/O handler before the mux is started
1732 - BUG/MEDIUM: htx: Adjust length to add DATA block in an empty HTX buffer
1733 - CI: github actions: use cache for OpenTracing
1734 - BUG/MINOR: httpclient: don't send an empty body
1735 - BUG/MINOR: httpclient: set default Accept and User-Agent headers
1736 - BUG/MINOR: httpclient/lua: don't pop the lua stack when getting headers
1737 - BUILD/MINOR: fix solaris build with clang.
1738 - BUG/MEDIUM: server: avoid changing healthcheck ctx with set server ssl
1739 - CI: refactor OpenTracing build script
1740 - DOC: management: mark "set server ssl" as deprecated
1741 - MEDIUM: cli: yield between each pipelined command
1742 - MINOR: channel: add new function co_getdelim() to support multiple delimiters
1743 - BUG/MINOR: cli: avoid O(bufsize) parsing cost on pipelined commands
1744 - MEDIUM: h2/hpack: emit a Dynamic Table Size Update after settings change
1745 - MINOR: quic: Retransmit the TX frames in the same order
1746 - MINOR: quic: Remove the packet number space TX MT_LIST
1747 - MINOR: quic: Splice the frames which could not be added to packets
1748 - MINOR: quic: Add the number of TX bytes to traces
1749 - CLEANUP: quic: Replace <nb_pto_dgrams> by <probe>
1750 - MINOR: quic: Send two ack-eliciting packets when probing packet number spaces
1751 - MINOR: quic: Probe regardless of the congestion control
1752 - MINOR: quic: Speeding up handshake completion
1753 - MINOR: quic: Release RX Initial packets asap
1754 - MINOR: quic: Release asap TX frames to be transmitted
1755 - MINOR: quic: Probe even if coalescing
1756 - BUG/MEDIUM: cli: Never wait for more data on client shutdown
1757 - BUG/MEDIUM: mcli: do not try to parse empty buffers
1758 - BUG/MEDIUM: mcli: always realign wrapping buffers before parsing them
1759 - BUG/MINOR: stream: make the call_rate only count the no-progress calls
1760 - MINOR: quic: do not use quic_conn after dropping it
1761 - MINOR: quic: adjust quic_conn refcount decrement
1762 - MINOR: quic: fix race-condition on xprt tasklet free
1763 - MINOR: quic: free SSL context on quic_conn free
1764 - MINOR: quic: Add QUIC_FT_RETIRE_CONNECTION_ID parsing case
1765 - MINOR: quic: Wrong packet number space selection
1766 - DEBUG: pools: add new build option DEBUG_POOL_INTEGRITY
1767 - MINOR: quic: add missing include in quic_sock
1768 - MINOR: quic: fix indentation in qc_send_ppkts
1769 - MINOR: quic: remove dereferencement of connection when possible
1770 - MINOR: quic: set listener accept cb on parsing
1771 - MEDIUM: quic/ssl: add new ex data for quic_conn
1772 - MINOR: quic: initialize ssl_sock_ctx alongside the quic_conn
1773 - MINOR: ssl: fix build in release mode
1774 - MINOR: pools: partially uninline pool_free()
1775 - MINOR: pools: partially uninline pool_alloc()
1776 - MINOR: pools: prepare POOL_EXTRA to be split into multiple extra fields
1777 - MINOR: pools: extend pool_cache API to pass a pointer to a caller
1778 - DEBUG: pools: add new build option DEBUG_POOL_TRACING
1779 - DEBUG: cli: add a new "debug dev fd" expert command
1780 - MINOR: fd: register the write side of the poller pipe as well
1781 - CI: github actions: use cache for SSL libs
1782 - BUILD: debug/cli: condition test of O_ASYNC to its existence
1783 - BUILD: pools: fix build error on DEBUG_POOL_TRACING
1784 - MINOR: quic: refactor header protection removal
1785 - MINOR: quic: handle app data according to mux/connection layer status
1786 - MINOR: quic: refactor app-ops initialization
1787 - MINOR: receiver: define a flag for local accept
1788 - MEDIUM: quic: flag listener for local accept
1789 - MINOR: quic: do not manage connection in xprt snd_buf
1790 - MINOR: quic: remove wait handshake/L6 flags on init connection
1791 - MINOR: listener: add flags field
1792 - MINOR: quic: define QUIC flag on listener
1793 - MINOR: quic: create accept queue for QUIC connections
1794 - MINOR: listener: define per-thr struct
1795 - MAJOR: quic: implement accept queue
1796 - CLEANUP: mworker: simplify mworker_free_child()
1797 - BUILD/DEBUG: lru: update the standalone code to support the revision
1798 - DEBUG: lru: use a xorshift generator in the testing code
1799 - BUG/MAJOR: compiler: relax alignment constraints on certain structures
1800 - BUG/MEDIUM: fd: always align fdtab[] to 64 bytes
1801 - MINOR: quic: No DCID length for datagram context
1802 - MINOR: quic: Comment fix about the token found in Initial packets
1803 - MINOR: quic: Get rid of a struct buffer in quic_lstnr_dgram_read()
1804 - MINOR: quic: Remove the QUIC haproxy server packet parser
1805 - MINOR: quic: Add new defintion about DCIDs offsets
1806 - MINOR: quic: Add a list to QUIC sock I/O handler RX buffer
1807 - MINOR: quic: Allocate QUIC datagrams from sock I/O handler
1808 - MINOR: proto_quic: Allocate datagram handlers
1809 - MINOR: quic: Pass CID as a buffer to quic_get_cid_tid()
1810 - MINOR: quic: Convert quic_dgram_read() into a task
1811 - CLEANUP: quic: Remove useless definition
1812 - MINOR: proto_quic: Wrong allocations for TX rings and RX bufs
1813 - MINOR: quic: Do not consume the RX buffer on QUIC sock i/o handler side
1814 - MINOR: quic: Do not reset a full RX buffer
1815 - MINOR: quic: Attach all the CIDs to the same connection
1816 - MINOR: quic: Make usage of by datagram handler trees
1817 - MEDIUM: da: new optional data file download scheduler service.
1818 - MEDIUM: da: update doc and build for new scheduler mode service.
1819 - MEDIUM: da: update module to handle schedule mode.
1820 - MINOR: quic: Drop Initial packets with wrong ODCID
1821 - MINOR: quic: Wrong RX buffer tail handling when no more contiguous data
1822 - MINOR: quic: Iterate over all received datagrams
1823 - MINOR: quic: refactor quic CID association with threads
1824 - BUG/MEDIUM: resolvers: Really ignore trailing dot in domain names
1825 - DEV: flags: Add missing flags
1826 - BUG/MINOR: sink: Use the right field in appctx context in release callback
1827 - MINOR: sock: move the unused socket cleaning code into its own function
1828 - BUG/MEDIUM: mworker: close unused transferred FDs on load failure
1829 - BUILD: atomic: make the old HA_ATOMIC_LOAD() support const pointers
1830 - BUILD: cpuset: do not use const on the source of CPU_AND/CPU_ASSIGN
1831 - BUILD: checks: fix inlining issue on set_srv_agent_[addr,port}
1832 - BUILD: vars: avoid overlapping field initialization
1833 - BUILD: server-state: avoid using not-so-portable isblank()
1834 - BUILD: mux_fcgi: avoid aliasing of a const struct in traces
1835 - BUILD: tree-wide: mark a few numeric constants as explicitly long long
1836 - BUILD: tools: fix warning about incorrect cast with dladdr1()
1837 - BUILD: task: use list_to_mt_list() instead of casting list to mt_list
1838 - BUILD: mworker: include tools.h for platforms without unsetenv()
1839 - BUG/MINOR: mworker: fix a FD leak of a sockpair upon a failed reload
1840 - MINOR: mworker: set the master side of ipc_fd in the worker to -1
1841 - MINOR: mworker: allocate and initialize a mworker_proc
1842 - CI: Consistently use actions/checkout@v2
1843 - REGTESTS: Remove REQUIRE_VERSION=1.8 from all tests
1844 - MINOR: mworker: sets used or closed worker FDs to -1
1845 - MINOR: quic: Try to accept 0-RTT connections
1846 - MINOR: quic: Do not try to treat 0-RTT packets without started mux
1847 - MINOR: quic: Do not try to accept a connection more than one time
1848 - MINOR: quic: Initialize the connection timer asap
1849 - MINOR: quic: Do not use connection struct xprt_ctx too soon
1850 - Revert "MINOR: mworker: sets used or closed worker FDs to -1"
1851 - BUILD: makefile: avoid testing all -Wno-* options when not needed
1852 - BUILD: makefile: validate support for extra warnings by batches
1853 - BUILD: makefile: only compute alternative options if required
1854 - DEBUG: fd: make sure we never try to insert/delete an impossible FD number
1855 - MINOR: mux-quic: add comment
1856 - MINOR: mux-quic: properly initialize qcc flags
1857 - MINOR: mux-quic: do not consider CONNECTION_CLOSE for the moment
1858 - MINOR: mux-quic: create a timeout task
1859 - MEDIUM: mux-quic: delay the closing with the timeout
1860 - MINOR: mux-quic: release idle conns on process stopping
1861 - MINOR: listener: replace the listener's spinlock with an rwlock
1862 - BUG/MEDIUM: listener: read-lock the listener during accept()
1863 - MINOR: mworker/cli: set expert/experimental mode from the CLI
1864
Willy Tarreau73dec762021-11-23 15:50:11 +010018652021/11/23 : 2.6-dev0
1866 - MINOR: version: it's development again
1867
Willy Tarreauf2e08332021-11-23 15:40:21 +010018682021/11/23 : 2.5.0
1869 - BUILD: SSL: add quictls build to scripts/build-ssl.sh
1870 - BUILD: SSL: add QUICTLS to build matrix
1871 - CLEANUP: sock: Wrap `accept4_broken = 1` into additional parenthesis
1872 - BUILD: cli: clear a maybe-unused warning on some older compilers
1873 - BUG/MEDIUM: cli: make sure we can report a warning from a bind keyword
1874 - BUG/MINOR: ssl: make SSL counters atomic
1875 - CLEANUP: assorted typo fixes in the code and comments
1876 - BUG/MINOR: ssl: free correctly the sni in the backend SSL cache
1877 - MINOR: version: mention that it's stable now
1878
Willy Tarreaua99cdfb2021-11-19 19:30:04 +010018792021/11/19 : 2.5-dev15
1880 - BUG/MINOR: stick-table/cli: Check for invalid ipv6 key
1881 - CLEANUP: peers: Remove useless test on peer variable in peer_trace()
1882 - DOC: log: Add comments to specify when session's listener is defined or not
1883 - BUG/MEDIUM: mux-h1: Handle delayed silent shut in h1_process() to release H1C
1884 - REGTESTS: ssl_crt-list_filters: feature cmd incorrectly set
1885 - DOC: internals: document the list API
1886 - BUG/MINOR: h3: ignore unknown frame types
1887 - MINOR: quic: redirect app_ops snd_buf through mux
1888 - MEDIUM: quic: inspect ALPN to install app_ops
1889 - MINOR: quic: support hq-interop
1890 - MEDIUM: quic: send version negotiation packet on unknown version
1891 - BUG/MEDIUM: mworker: cleanup the listeners when reexecuting
1892 - DOC: internals: document the scheduler API
1893 - BUG/MINOR: quic: fix version negotiation packet generation
1894 - CLEANUP: ssl: fix wrong #else commentary
1895 - MINOR: config: support default values for environment variables
1896 - SCRIPTS: run-regtests: reduce the number of processes needed to check options
1897 - SCRIPT: run-regtests: avoid several calls to grep to test for features
1898 - SCRIPT: run-regtests: avoid calling awk to compute the version
1899 - REGTEST: set retries count to zero for all tests that expect at 503
1900 - REGTESTS: make tcp-check_min-recv fail fast
1901 - REGTESTS: extend the default I/O timeouts and make them overridable
1902 - BUG/MEDIUM: ssl: backend TLS resumption with sni and TLSv1.3
1903 - BUG/MEDIUM: ssl: abort with the correct SSL error when SNI not found
1904 - REGTESTS: ssl: test the TLS resumption
1905 - BUILD: makefile: stop opening sub-shells for each and every command
1906 - BUILD: makefile: reorder objects by build time
1907 - BUG/MEDIUM: mux-h2: always process a pending shut read
1908 - MINOR: quic_sock: missing CO_FL_ADDR_TO_SET flag
1909 - MINOR: quic: Possible wrong connection identification
1910 - MINOR: quic: Correctly pad UDP datagrams
1911 - MINOR: quic: Support transport parameters draft TLS extension
1912 - MINOR: quic: Anti-amplification implementation
1913 - MINOR: quic: Wrong Initial packet connection initialization
1914 - MINOR: quic: Wrong ACK range building
1915 - MINOR: quic: Update some QUIC protocol errors
1916 - MINOR: quic: Send CONNECTION_CLOSE frame upon TLS alert
1917 - MINOR: quic: Wrong largest acked packet number parsing
1918 - MINOR: quic: Add minimalistic support for stream flow control frames
1919 - MINOR: quic: Wrong value for version negotiation packet 'Unused' field
1920 - MINOR: quic: Support draft-29 QUIC version
1921 - BUG/MINOR: quic: fix segfault on trace for version negotiation
1922 - BUG/MINOR: hq-interop: fix potential NULL dereference
1923 - BUILD: quic: fix potential NULL dereference on xprt_quic
1924 - DOC: lua: documentation about the httpclient API
1925 - BUG/MEDIUM: cache/cli: make "show cache" thread-safe
1926 - BUG/MEDIUM: shctx: leave the block allocator when enough blocks are found
1927 - BUG/MINOR: shctx: do not look for available blocks when the first one is enough
1928 - MINOR: shctx: add a few BUG_ON() for consistency checks
1929
Willy Tarreaud83f6e62021-11-14 16:04:57 +010019302021/11/14 : 2.5-dev14
1931 - DEV: coccinelle: Remove unused `expression e`
1932 - DEV: coccinelle: Add rule to use `istend()` where possible
1933 - CLEANUP: Apply ist.cocci
1934 - CLEANUP: Re-apply xalloc_size.cocci
1935 - CLEANUP: halog: make the default usage message fit in small screens
1936 - MINOR: h3/qpack: fix gcc11 warnings
1937 - MINOR: mux-quic: fix gcc11 warning
1938 - MINOR: h3: fix potential NULL dereference
1939 - MINOR: quic: Fix potential null pointer dereference
1940 - CLEANUP: halog: remove unused strl2ui()
1941 - OPTIM: halog: improve field parser speed for modern compilers
1942 - OPTIM: halog: skip fields 64 bits at a time when supported
1943 - DEV: coccinelle: Add rule to use `isttrim()` where possible
1944 - CLEANUP: Apply ist.cocci
1945 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_memcat()`
1946 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`
1947 - CLEANUP: Apply ist.cocci
1948 - CLEANUP: chunk: Remove duplicated chunk_Xcat implementation
1949 - CLEANUP: chunk: remove misleading chunk_strncat() function
1950 - BUG/MINOR: cache: properly ignore unparsable max-age in quotes
1951 - Revert "DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`"
1952 - DOC: stats: fix location of the text representation
1953 - DOC: internals: document the IST API
1954 - BUG/MINOR: httpclient/lua: rcv freeze when no request payload
1955 - BUG/MEDIUM: httpclient: channel_add_input() must use htx->data
1956 - MINOR: promex: backend aggregated server check status
1957 - DOC: config: Fix typo in ssl_fc_unique_id description
1958 - BUG/MINOR: http-ana: Apply stop to the current section for http-response rules
1959 - Revert "BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back"
1960 - DOC: config: Be more explicit in "allow" actions description
1961 - DOC: lua: Be explicit with the Reply object limits
1962 - MINOR: mux-h1: Slightly Improve H1 traces
1963 - BUG/MEDIUM: conn-stream: Don't reset CS flags on close
1964 - CLEANUP: mworker: remove any relative PID reference
1965 - MEDIUM: mworker: reexec in waitpid mode after successful loading
1966 - MINOR: mworker: clarify starting/failure messages
1967 - MINOR: mworker: only increment the number of reload in wait mode
1968 - MINOR: mworker: implement a reload failure counter
1969 - MINOR: mworker: ReloadFailed shown depending on failedreload
1970 - MINOR: mworker: change the way we set PROC_O_LEAVING
1971 - BUG/MINOR: mworker: doesn't launch the program postparser
1972 - DOC: management: edit the "show proc" example to show the current output
1973 - BUG/MEDIUM: httpclient/cli: free of unallocated hc->req.uri
1974 - REGTESTS: httpclient/lua: add greater body values
1975 - BUG/MINOR: mux-h2: Fix H2_CF_DEM_SHORT_READ value
1976 - BUG/MINOR: pools: don't mark ourselves as harmless in DEBUG_UAF mode
1977 - BUG/MEDIUM: connection: make cs_shutr/cs_shutw//cs_close() idempotent
1978 - BUILD: makefile: simplify detection of libatomic
1979
Willy Tarreau08d32202021-11-06 09:25:57 +010019802021/11/06 : 2.5-dev13
1981 - SCRIPTS: git-show-backports: re-enable file-based filtering
1982 - MINOR: jwt: Make invalid static JWT algorithms an error in `jwt_verify` converter
1983 - MINOR: mux-h2: add trace on extended connect usage
1984 - BUG/MEDIUM: mux-h2: reject upgrade if no RFC8441 support
1985 - MINOR: stream/mux: implement websocket stream flag
1986 - MINOR: connection: implement function to update ALPN
1987 - MINOR: connection: add alternative mux_ops param for conn_install_mux_be
1988 - MEDIUM: server/backend: implement websocket protocol selection
1989 - MINOR: server: add ws keyword
1990 - BUG/MINOR: resolvers: fix sent messages were counted twice
1991 - BUG/MINOR: resolvers: throw log message if trash not large enough for query
1992 - MINOR: resolvers/dns: split dns and resolver counters in dns_counter struct
1993 - MEDIUM: resolvers: rename dns extra counters to resolvers extra counters
1994 - BUG/MINOR: jwt: Fix jwt_parse_alg incorrectly returning JWS_ALG_NONE
1995 - DOC: add QUIC instruction in INSTALL
1996 - CLEANUP: halog: Remove dead stores
1997 - DEV: coccinelle: Add ha_free.cocci
1998 - CLEANUP: Apply ha_free.cocci
1999 - DEV: coccinelle: Add rule to use `istnext()` where possible
2000 - CLEANUP: Apply ist.cocci
2001 - REGTESTS: Use `feature cmd` for 2.5+ tests (2)
2002 - DOC: internals: move some API definitions to an "api" subdirectory
2003 - MINOR: quic: Allocate listener RX buffers
2004 - CLEANUP: quic: Remove useless code
2005 - MINOR: quic: Enhance the listener RX buffering part
2006 - MINOR: quic: Remove a useless lock for CRYPTO frames
2007 - MINOR: quic: Use QUIC_LOCK QUIC specific lock label.
2008 - MINOR: backend: Get client dst address to set the server's one only if needful
2009 - MINOR: compression: Warn for 'compression offload' in defaults sections
2010 - MEDIUM: connection: rename fc_conn_err and bc_conn_err to fc_err and bc_err
2011 - DOC: configuration: move the default log formats to their own section
2012 - MINOR: ssl: make the ssl_fc_sni() sample-fetch function always available
2013 - MEDIUM: log: add the client's SNI to the default HTTPS log format
2014 - DOC: config: add an example of reasonably complete error-log-format
2015 - DOC: config: move error-log-format before custom log format
2016
Willy Tarreau35dc13f2021-11-02 18:05:41 +010020172021/11/02 : 2.5-dev12
2018 - MINOR: httpclient: support payload within a buffer
2019 - MINOR: httpclient/lua: support more HTTP methods
2020 - MINOR: httpclient/lua: return an error when it can't generate the request
2021 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
2022 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
2023 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
2024 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
2025 - CLEANUP: lua: Use a const address to retrieve info about a connection
2026 - MINOR: connection: Add function to get src/dst without updating the connection
2027 - MINOR: session: Add src and dst addresses to the session
2028 - MINOR: stream-int: Add src and dst addresses to the stream-interface
2029 - MINOR: frontend: Rely on client src and dst addresses at stream level
2030 - MINOR: log: Rely on client addresses at the appropriate level to log messages
2031 - MINOR: session: Rely on client source address at session level to log error
2032 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
2033 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
2034 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
2035 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
2036 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
2037 - MEDIUM: backend: Rely on addresses at stream level to init server connection
2038 - MEDIUM: connection: Assign session addresses when PROXY line is received
2039 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
2040 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
2041 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
2042 - DOC: config: Fix alphabetical order of fc_* samples
2043 - MINOR: tcp-sample: Add samples to get original info about client connection
2044 - REGTESTS: Add script to test client src/dst manipulation at different levels
2045 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
2046 - BUILD: log: Fix compilation without SSL support
2047 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
2048 - MINOR: protocols: add a new protocol type selector
2049 - MINOR: protocols: make use of the protocol type to select the protocol
2050 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
2051 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
2052 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
2053 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
2054 - DEV: coccinelle: Add realloc_leak.cocci
2055 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
2056 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
2057 - BUILD: atomic: fix build on mac/arm64
2058 - MINOR: atomic: remove the memcpy() call and dependency on string.h
2059 - MINOR: httpclient: request streaming with a callback
2060 - MINOR: httpclient/lua: handle the streaming into the lua applet
2061 - REGTESTS: lua: test httpclient with body streaming
2062 - DOC: halog: Move the `-qry` parameter into the correct section in help text
2063 - MINOR: halog: Rename -qry to -query
2064 - CLEANUP: halog: Use consistent indentation in help()
2065 - BUG/MINOR: halog: Add missing newlines in die() messages
2066 - MINOR: halog: Add support for extracting captures using -hdr
2067 - DOC: Typo fixed "it" should be "is"
2068 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
2069 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
2070 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
2071 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
2072 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
2073 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
2074 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
2075 - BUILD/MINOR: cpuset freebsd build fix
2076 - BUG/MINOR: httpclient: use a placeholder value for Host header
2077 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
2078 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
2079 - MINOR: stream: Improve dump of bogus streams
2080 - DOC/peers: some grammar fixes for peers 2.1 spec
2081 - MEDIUM: vars: make the var() sample fetch function really return type ANY
2082 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
2083
Willy Tarreaub4d0cd02021-10-22 19:40:44 +020020842021/10/22 : 2.5-dev11
2085 - DEV: coccinelle: Add strcmp.cocci
2086 - CLEANUP: Apply strcmp.cocci
2087 - CI: Add `permissions` to GitHub Actions
2088 - CI: Clean up formatting in GitHub Action definitions
2089 - MINOR: add ::1 to predefined LOCALHOST acl
2090 - CLEANUP: assorted typo fixes in the code and comments
2091 - CLEANUP: Consistently `unsigned int` for bitfields
2092 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
2093 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
2094 - MINOR: jwt: Empty the certificate tree during deinit
2095 - MINOR: jwt: jwt_verify returns negative values in case of error
2096 - MINOR: jwt: Do not rely on enum order anymore
2097 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
2098 - MINOR: httpclient/cli: access should be only done from expert mode
2099 - DOC: management: doc about the CLI httpclient
2100 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
2101 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
2102 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
2103 - CLEANUP: dns: always detach the appctx from the dns session on release
2104 - DEBUG: dns: add a few more BUG_ON at sensitive places
2105 - BUG/MAJOR: resolvers: add other missing references during resolution removal
2106 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
2107 - BUILD: resolvers: avoid a possible warning on null-deref
2108 - BUG/MEDIUM: resolvers: always check a valid item in query_list
2109 - CLEANUP: always initialize the answer_list
2110 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
2111 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
2112 - MEDIUM: resolvers: use a kill list to preserve the list consistency
2113 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
2114 - BUG/MEDIUM: checks: fix the starting thread for external checks
2115 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
2116 - MEDIUM: resolvers: hash the records before inserting them into the tree
2117 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
2118 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
2119 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
2120 - OPTIM: dns: use an atomic check for the list membership
2121 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
2122 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
2123 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
2124 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
2125 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
2126 - MINOR: quic: Increase the size of handshake RX UDP datagrams
2127 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
2128 - MINOR: memprof: report the delta between alloc and free on realloc()
2129 - MINOR: memprof: add one pointer size to the size of allocations
2130 - BUILD: fix compilation on NetBSD
2131 - MINOR: backend: add traces for idle connections reuse
2132 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
2133 - MINOR: backend: improve perf with tcp proxies skipping idle conns
2134 - MINOR: connection: remove unneeded memset 0 for idle conns
2135
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +020021362021/10/16 : 2.5-dev10
2137 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
2138 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
2139 - MINOR: rules: add a file name and line number to act_rules
2140 - MINOR: stream: report the current rule in "show sess all" when known
2141 - MINOR: stream: report the current filter in "show sess all" when known
2142 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
2143 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
2144 - CI: github: switch to OpenSSL 3.0.0
2145 - REGTESTS: ssl: Fix references to removed option in test description
2146 - MINOR: ssl: Add ssllib_name_startswith precondition
2147 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
2148 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
2149 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
2150 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
2151 - MEDIUM: h3: properly manage tx buffers for large data
2152 - MINOR: mux-quic: standardize h3 settings sending
2153 - CLEANUP: h3: remove dead code
2154 - MINOR: mux-quic: implement standard method to detect if qcc is dead
2155 - MEDIUM: mux-quic: defer stream shut if remaining tx data
2156 - MINOR: mux: remove last occurences of qcc ring buffer
2157 - MINOR: quic: handle CONNECTION_CLOSE frame
2158 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
2159 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
2160 - MINOR: http: Add http_auth_bearer sample fetch
2161 - MINOR: jwt: Parse JWT alg field
2162 - MINOR: jwt: JWT tokenizing helper function
2163 - MINOR: jwt: Insert public certificates into dedicated JWT tree
2164 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
2165 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
2166 - REGTESTS: jwt: Add tests for the jwt_verify converter
2167 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
2168 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
2169 - MINOR: proto_tcp: also report the attempted MSS values in error message
2170 - MINOR: inet: report the faulty interface name in "bind" errors
2171 - MINOR: protocol: report the file and line number for binding/listening errors
2172 - MINOR: protocol: uniformize protocol errors
2173 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
2174 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
2175 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
2176 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
2177 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
2178 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
2179 - MEDIUM: listener: add the "shards" bind keyword
2180 - BUG/MEDIUM: resolvers: use correct storage for the target address
2181 - MINOR: resolvers: merge address and target into a union "data"
2182 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
2183 - BUG/MEDIUM: jwt: fix base64 decoding error detection
2184 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
2185 - DOC: jwt: fix a typo in the jwt_verify() keyword description
2186 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
2187 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
2188 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
2189 - DOC: config: Move 'tcp-response content' at the right place
2190 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
2191 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
2192 - MINOR: sample/arg: Be able to resolve args found in defaults sections
2193 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
2194 - MINOR: proxy: Be able to reference the defaults section used by a proxy
2195 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
2196 - MINOR: config: Finish configuration for referenced default proxies
2197 - MINOR: config: No longer remove previous anonymous defaults section
2198 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
2199 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
2200 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
2201 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
2202 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
2203 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
2204 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
2205 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
2206 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
2207 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
2208 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
2209 - BUG/MINOR: listener: fix incorrect return on out-of-memory
2210 - BUG/MINOR: listener: add an error check for unallocatable trash
2211 - CLEANUP: listeners: remove unreachable code in clone_listener()
2212
Willy Tarreau4c67bd62021-10-08 18:22:24 +020022132021/10/08 : 2.5-dev9
2214 - head-truc
2215 - REGTESTS: lua: test the httpclient:get() feature
2216 - Revert "head-truc"
2217 - BUG/MEDIUM: httpclient: replace ist0 by istptr
2218 - MINOR: config: use a standard parser for the "nbthread" keyword
2219 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
2220 - MEDIUM: init: de-uglify the per-thread affinity setting
2221 - MINOR: init: extract the setup and end of threads to their own functions
2222 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
2223 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
2224 - MINOR: mux-h1: Be able to set custom status code on parsing error
2225 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
2226 - MEDIUM: h1: Force close mode for invalid uses of T-E header
2227 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
2228 - MINOR: http: Add 422-Unprocessable-Content error message
2229 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
2230 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
2231 - REGTESTS: Add script to validate T-E header parsing
2232 - REORG: pools: move default settings to defaults.h
2233 - DOC: peers: fix doc "enable" statement on "peers" sections
2234 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
2235 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
2236 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
2237 - MINOR: ssl: Store the last SSL error code in case of read or write failure
2238 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
2239 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
2240 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
2241 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
2242 - MINOR: arg: Be able to forbid unresolved args when building an argument list
2243 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
2244 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
2245 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
2246 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
2247 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
2248 - CLEANUP: tasks: remove the long-unused work_lists
2249 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
2250 - MINOR: time: uninline report_idle() and move it to task.c
2251 - REORG: sched: move idle time calculation from time.h to task.h
2252 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
2253 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
2254 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
2255 - MINOR: httpclient: destroy() must free the headers and the ists
2256 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
2257 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
2258 - MINOR: httpclient: test if started during stop_and_destroy()
2259 - MINOR: httpclient/lua: implement garbage collection
2260 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
2261 - MINOR: httpclient: destroy checks if a client was started but not stopped
2262 - BUG/MINOR: httpclient/lua: does not process headers when failed
2263 - MINOR: httpclient/lua: supports headers via named arguments
2264 - CLEANUP: server: always include the storage for SSL settings
2265 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
2266 - CLEANUP: sample: uninline sample_conv_var2smp_str()
2267 - MINOR: sample: provide a generic var-to-sample conversion function
2268 - BUG/MEDIUM: sample: properly verify that variables cast to sample
2269 - BUILD: action: add the relevant structures for function arguments
2270 - BUILD: extcheck: needs to include stream-t.h
2271 - BUILD: hlua: needs to include stream-t.h
2272 - BUILD: stats: define several missing structures in stats.h
2273 - BUILD: resolvers: define missing types in resolvers.h
2274 - BUILD: httpclient: include missing ssl_sock-t
2275 - BUILD: sample: include openssl-compat
2276 - BUILD: http_ana: need to include proxy-t to get redirect_rule
2277 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
2278 - BUILD: vars: need to include xxhash
2279 - BUILD: peers: need to include eb{32/mb/pt}tree.h
2280 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
2281 - BUILD: compiler: add the container_of() and container_of_safe() macros
2282 - BUILD: idleconns: include missing ebmbtree.h at several places
2283 - BUILD: connection: connection.h needs list.h and server.h
2284 - BUILD: tree-wide: add missing http_ana.h from many places
2285 - BUILD: cfgparse-ssl: add missing errors.h
2286 - BUILD: tcp_sample: include missing errors.h and session-t.h
2287 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
2288 - BUILD: tree-wide: add several missing activity.h
2289 - BUILD: compat: fix -Wundef on SO_REUSEADDR
2290 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
2291 - REORG: pools: uninline the UAF allocator and force-inline the rest
2292 - REORG: thread: uninline the lock-debugging code
2293 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
2294 - CLEANUP: remove some unneeded includes from applet-t.h
2295 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
2296 - CLEANUP: listeners: do not include openssl-compat
2297 - CLEANUP: servers: do not include openssl-compat
2298 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
2299 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
2300 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
2301 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
2302 - REORG: sample: move the crypto samples to ssl_sample.c
2303 - REORG: sched: moved samp_time and idle_time to task.c as well
2304 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
2305 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
2306 - REORG: activity: uninline activity_count_runtime()
2307 - REORG: acitvity: uninline sched_activity_entry()
2308 - CLEANUP: stream: remove many unneeded includes from stream-t.h
2309 - CLEANUP: stick-table: no need to include socket nor in.h
2310 - MINOR: connection: use uint64_t for the hashes
2311 - REORG: connection: move the hash-related stuff to connection.c
2312 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
2313 - REORG: server: uninline the idle conns management functions
2314 - REORG: ebtree: split structures into their own file ebtree-t.h
2315 - CLEANUP: tree-wide: only include ebtree-t from type files
2316 - REORG: connection: move the largest inlines from connection.h to connection.c
2317 - CLEANUP: connection: do not include http_ana!
2318 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
2319 - REORG: connection: uninline the rest of the alloc/free stuff
2320 - REORG: task: uninline the loop time measurement code
2321 - CLEANUP: time: move a few configurable defines to defaults.h
2322 - CLEANUP: fd: do not include time.h
2323 - REORG: fd: uninline compute_poll_timeout()
2324 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
2325 - REORG: thread: move the thread init/affinity/stop to thread.c
2326 - REORG: thread: move ha_get_pthread_id() to thread.c
2327 - MINOR: thread: use a dedicated static pthread_t array in thread.c
2328 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
2329 - DOC: configuration: add clarification on escaping in keyword arguments
2330 - BUG/MINOR: task: fix missing include with DEBUG_TASK
2331 - MINOR: pools: report the amount used by thread caches in "show pools"
2332 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
2333 - MINOR: quic: Add a function to dump SSL stack errors
2334 - MINOR: quic: BUG_ON() SSL errors.
2335 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
2336 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
2337 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
2338 - MINOR: mux-quic: release connection if no more bidir streams
2339 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
2340 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
2341 - MINOR: qpack: do not encode invalid http status code
2342 - MINOR: qpack: support non-indexed http status code encoding
2343 - MINOR: qpack: fix memory leak on huffman decoding
2344 - CLEANUP: mux-quic: remove unused code
2345 - BUG/MINOR: quic: fix includes for compilation
2346 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
2347 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
2348 - REORG: time: move time-keeping code and variables to clock.c
2349 - REORG: clock: move the updates of cpu/mono time to clock.c
2350 - MINOR: activity: get the run_time from the clock updates
2351 - CLEANUP: clock: stop exporting before_poll and after_poll
2352 - REORG: clock: move the clock_id initialization to clock.c
2353 - REORG: clock/wdt: move wdt timer initialization to clock.c
2354 - MINOR: clock: move the clock_ids to clock.c
2355 - MINOR: wdt: move wd_timer to wdt.c
2356 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
2357 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
2358 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
2359 - REORG: thread/sched: move the thread_info flags to the thread_ctx
2360 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
2361 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
2362 - MINOR: threads: introduce a minimalistic notion of thread-group
2363 - MINOR: global: add a new "thread-groups" directive
2364 - MINOR: global: add a new "thread-group" directive
2365 - MINOR: threads: make tg point to the current thread's group
2366 - MEDIUM: threads: automatically assign threads to groups
2367 - MINOR: threads: set the group ID and its bit in the thread group
2368 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
2369 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
2370 - MINOR: threads: add the current group ID in thread-local "tgid" variable
2371 - MINOR: debug: report the group and thread ID in the thread dumps
2372 - MEDIUM: listeners: support the definition of thread groups on bind lines
2373 - MINOR: threads: add a new function to resolve config groups and masks
2374 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
2375 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
2376
Willy Tarreau538f3e02021-09-24 15:52:17 +020023772021/09/24 : 2.5-dev8
2378 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
2379 - BUILD: halog: fix a -Wundef warning on non-glibc systems
2380 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
2381 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
2382 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
2383 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
2384 - MINOR: pools: automatically disable malloc_trim() with external allocators
2385 - MINOR: pools: report it when malloc_trim() is enabled
2386 - DOC: Add .mailmap
2387 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
2388 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
2389 - CLEANUP: acl: Remove unused variable when releasing an acl expression
2390 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
2391 - DOC: update Tim's address in .mailmap
2392 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
2393 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
2394 - DOC: management: certificate files must be sanitized before injection
2395 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
2396 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
2397 - BUG/MINOR: cli/payload: do not search for args inside payload
2398 - BUILD: sockpair: do not set unused flag
2399 - BUILD: proto_uxst: do not set unused flag
2400 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
2401 - MINOR: applet: remove the thread mask from appctx_new()
2402 - REORG: threads: move ha_get_pthread_id() to tinfo.h
2403 - CLEANUP: Apply ist.cocci
2404 - DEV: coccinelle: Add ist.cocci
2405 - CLEANUP: Apply bug_on.cocci
2406 - DEV: coccinelle: Add xalloc_size.cocci
2407 - DEV: coccinelle: Add bug_on.cocci
2408 - CLEANUP: Apply xalloc_size.cocci
2409 - DEV: coccinelle: Add xalloc_cast.cocci
2410 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
2411 - MINOR: httpclient: add the EOH when no headers where provided
2412 - CLEANUP: Include check.h in flt_spoe.c
2413 - CLEANUP: Remove unreachable `break` from parse_time_err()
2414 - BUG/MINOR: server: allow 'enable health' only if check configured
2415 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
2416 - MINOR: server: enable more keywords for ssl checks for dynamic servers
2417 - MINOR: server: enable more check related keywords for dynamic servers
2418 - REORG: server: move slowstart init outside of checks
2419 - MINOR: server: enable slowstart for dynamic server
2420 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
2421 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
2422 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
2423 - MINOR: quic: Move transport parmaters to anynomous struct.
2424 - MINOR: mux_quic: Add QUIC mux layer.
2425 - MINOR: connection: Add callbacks definitions for QUIC.
2426 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
2427 - MINOR: quic: Add a new definition to store STREAM frames.
2428 - MINOR: h3: Add HTTP/3 definitions.
2429 - MINOR: qpack: Add QPACK compression.
2430 - MINOR: quic_sock: Finalize the QUIC connections.
2431 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
2432 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
2433 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
2434 - BUG/MINOR: quic: Wrong ->accept() error handling
2435 - MINOR: quic: Add a wrapper function to update transport parameters.
2436 - MINOR: quic: Update the streams transport parameters.
2437 - MINOR: quic: Avoid header collisions
2438 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
2439 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
2440 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
2441 - MINOR: quic: Initialize the session before starting the xprt.
2442 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
2443 - MINOR: quic: QUIC conn initialization from I/O handler
2444 - MINOR: quic: Remove header protection for conn with context
2445 - MINOR: quic: Derive the initial secrets asap
2446 - MINOR: quic: Remove header protection also for Initial packets
2447 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
2448 - MINOR: quic: quic_update_ack_ranges_list() code factorization
2449 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
2450 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
2451 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
2452 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
2453 - BUG/MINOR: quic: Wrong RX packet reference counter usage
2454 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
2455 - MINOR: quic: Add a lock for RX packets
2456 - MINOR: quic: Move the connection state
2457 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
2458 - MINOR: quic: Replace the RX list of packet by a thread safety one.
2459 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
2460 - MINOR: quic: Add useful traces for I/O dgram handler
2461 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
2462 - MINOR: quic: Connection allocations rework
2463 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
2464 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
2465 - MINOR: quic: Add a ring buffer implementation for QUIC
2466 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
2467 - MINOR: quic: Add the QUIC v1 initial salt.
2468 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
2469 - MINOR: net_helper: add functions for pointers
2470 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
2471 - MINOR: proto_quic: Allocate TX ring buffers for listeners
2472 - MINOR: quic: Initialize pointers to TX ring buffer list
2473 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
2474 - MINOR: quic_tls: Make use of the QUIC V1 salt.
2475 - MINOR: quic: Remove old TX buffer implementation
2476 - MINOR: Add function for TX packets reference counting
2477 - MINOR: quic: Add TX packets at the very last time to their tree.
2478 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
2479 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
2480 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
2481 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
2482 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
2483 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
2484 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
2485 - MINOR: quic: Add a useful function to compute any frame length.
2486 - MINOR: quic: Add the QUIC connection state to traces
2487 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
2488 - MINOR: quic: Add the packet type to quic_tx_packet struct
2489 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
2490 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
2491 - MINOR: quic: Modify qc_build_cfrms() to support any frame
2492 - MINOR: quic: quic_conn_io_cb() task rework
2493 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
2494 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
2495 - MINOR: quic: Remove Application level related functions
2496 - MINOR: quic: Rename functions which do not build only Handshake packets
2497 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
2498 - MINOR: quic: Add a pool for TX ring buffer internal buffer
2499 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
2500 - MINOR: quic: Missing acks encoded size updates.
2501 - MINOR: quic: Evaluate the packet lengths in advance
2502 - MINOR: quic: Update the TLS extension for QUIC transport parameters
2503 - MINOR: quic: Fix handshake state debug strings
2504 - MINOR: quic: Atomically get/set the connection state
2505 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
2506 - MINOR: quic: Coalesce Application level packets with Handshake packets.
2507 - MINOR: quic: Wrong flags handling for acks
2508 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
2509 - MINOR: quic: Post handshake packet building improvements
2510 - MINOR: quic: Prepare Application level packet asap.
2511 - MINOR: h3: Send h3 settings asap
2512 - MINOR: quic: Wrong STREAM frame length computing
2513 - MINOR: quic: Wrong short packet minimum length
2514 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
2515 - MINOR: h3: change default settings
2516 - MINOR: quic-enc: fix varint encoding
2517 - MINOR: qpack: fix wrong comment
2518 - MINOR: qpack: generate headers list on decoder
2519 - MINOR: h3: parse headers to htx
2520 - MINOR: h3: allocate stream on headers
2521 - MEDIUM: mux-quic: implement ring buffer on stream tx
2522 - MINOR: mux-quic: send SETTINGS on uni stream
2523 - MINOR: h3: define snd_buf callback and divert mux ops
2524 - MINOR: mux-quic: define FIN stream flag
2525 - MINOR: qpack: create qpack-enc module
2526 - MINOR: qpack: encode headers functions
2527 - MINOR: h3: encode htx headers to QPACK
2528 - MINOR: h3: send htx data
2529 - MINOR: h3/mux: detect fin on last h3 frame of the stream
2530 - MINOR: quic: Shorten some handshakes
2531 - MINOR: quic: Make QUIC-TLS support at least two initial salts
2532 - MINOR: quic: Attach the QUIC connection to a thread.
2533 - MINOR: quic: Missing active_connection_id_limit default value
2534 - MINOR: quic_sock: Do not flag QUIC connections as being set
2535 - MINOR: buf: Add b_force_xfer() function
2536 - MINOR: quic: Make use of buffer structs to handle STREAM frames
2537 - MINOR: mux_quic: move qc_process() code to qc_send()
2538 - MINOR: quic: Add a typedef for unsigned long long
2539 - MINOR: quic: Confusion between TX/RX for the frame builders
2540 - MINOR: quic: Wrong packet flags settings during frame building
2541 - MINOR: quic: Constantness fixes for frame builders/parsers.
2542 - MINOR: quic_tls: Client/serveur state reordering
2543 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
2544 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
2545 - MINOR: quic: Initial packet number spaced not discarded
2546 - MINOR: quic: Add useful trace about pktns discarding
2547 - MINOR: mux_quic: Export the mux related flags
2548 - MINOR: quic: Implement quic_conn_subscribe()
2549 - MINOR: quic: Wake up the mux upon ACK receipt
2550 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
2551 - MINOR: quic: Implement qc_process_mux()
2552 - MINOR: quic: Wake up the xprt from mux
2553 - CLEANUP: quic: Remove useless inline functions
2554 - MINOR: quic: RX packets memory leak
2555 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
2556 - MINOR: quic: Crash upon too big packets receipt
2557 - MINOR: quic: define close handler
2558 - MEDIUM: quic: implement mux release/conn free
2559 - MINOR: quic: fix qcc subs initialization
2560 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
2561 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
2562 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
2563 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
2564 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
2565 - MINOR: htx: Add an HTX flag to know when a message is fragmented
2566 - MINOR: htx: Add a function to know if the free space wraps
2567 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
2568 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
2569 - BUG/MINOR: http-ana: increment internal_errors counter on response error
2570 - MINOR: stats: Enable dark mode on stat web page
2571 - CLEANUP: stats: Fix some alignment mistakes
2572 - MINOR: httpclient: httpclient_data() returns the available data
2573 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
2574 - MINOR: httpclient/lua: httpclient:get() API in lua
2575 - MINOR: httpclient/lua: implement the headers in the response object
2576 - BUG/MINOR: httpclient/lua: return an error on argument check
2577 - CLEANUP: slz: Mark `reset_refs` as static
2578
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +020025792021/09/12 : 2.5-dev7
2580 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
2581 - CLEANUP: htx: remove comments about "must be < 256 MB"
2582 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
2583 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
2584 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
2585 - MINOR: vars: rename vars_init() to vars_init_head()
2586 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
2587 - REORG: vars: remerge sample_store{,_stream}() into var_set()
2588 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
2589 - MINOR: vars: add a VF_CREATEONLY flag for creation
2590 - MINOR: vars: support storing empty sample data with a variable
2591 - MINOR: vars: store flags into variables and add VF_PERMANENT
2592 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
2593 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
2594 - MINOR: vars: preset a random seed to hash variables names
2595 - MEDIUM: vars: replace the global name index with a hash
2596 - CLEANUP: vars: remove the now unused var_names array
2597 - MINOR: vars: centralize the lock/unlock into static inlines
2598 - OPTIM: vars: only takes the variables lock on shared entries
2599 - OPTIM: vars: remove internal bookkeeping for vars_global_size
2600 - OPTIM: vars: do not keep variables usage stats if no limit is set
2601 - BUILD: fix dragonfly build again on __read_mostly
2602 - CI: Github Actions: temporarily disable Opentracing
2603 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
2604 - MINOR: htx: Skip headers with no value when adding a header list to a message
2605 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
2606 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
2607 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
2608 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
2609 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
2610 - CLEANUP: ebmbtree: Replace always-taken elseif by else
2611 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
2612 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
2613 - BUG/MINOR: opentracing: enable the use of http headers without a set value
2614 - CLEANUP: opentracing: use the haproxy function to generate uuid
2615 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
2616 - CI: Github Actions: re-enable Opentracing
2617 - CLEANUP: opentracing: simplify the condition on the empty header
2618 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
2619
Willy Tarreauf653e832021-09-03 15:19:56 +020026202021/09/03 : 2.5-dev6
2621 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
2622 - BUG/MINOR: tools: Fix loop condition in dump_text()
2623 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
2624 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
2625 - BUILD: tools: properly guard __GLIBC__ with defined()
2626 - BUILD: globally enable -Wundef
2627 - MINOR: log: Remove log-error-via-logformat option
2628 - MINOR: log: Add new "error-log-format" option
2629 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
2630 - CLEANUP: Add missing include guard to signal.h
2631 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
2632 - MINOR: connection: Add a connection error code sample fetch for backend side
2633 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
2634 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
2635 - CI: Github Actions: temporarily disable BoringSSL builds
2636 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
2637 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
2638 - MINOR: sample: add missing ARGC_ entries
2639 - BUG/MINOR: vars: properly set the argument parsing context in the expression
2640 - DOC: configuration: remove wrong tcp-request examples in tcp-response
2641 - MEDIUM: vars: add a new "set-var-fmt" action
2642 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
2643 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
2644 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
2645 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
2646 - MINOR: log: make log-format expressions completely usable outside of req/resp
2647 - MINOR: vars: add a "set-var-fmt" directive to the global section
2648 - MEDIUM: vars: also support format strings in CLI's "set var" command
2649 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
2650 - MINOR: vars: make vars_get_by_* support an optional default value
2651 - MINOR: vars: make the vars() sample fetch function support a default value
2652 - BUILD: ot: add argument for default value to vars_get_by_name()
2653
Willy Tarreau446344c2021-08-28 13:46:11 +020026542021/08/28 : 2.5-dev5
2655 - MINOR: httpclient: initialize the proxy
2656 - MINOR: httpclient: implement a simple HTTP Client API
2657 - MINOR: httpclient/cli: implement a simple client over the CLI
2658 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
2659 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
2660 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
2661 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
2662 - MINOR: server: check if srv is NULL in free_server()
2663 - MINOR: proxy: check if p is NULL in free_proxy()
2664 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
2665 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
2666 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
2667 - REGTESTS: abortonclose: after retries, 503 is expected, not close
2668 - REGTESTS: server: fix agent-check syntax and expectation
2669 - BUG/MINOR: httpclient: fix uninitialized sl variable
2670 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
2671 - BUG/MINOR: httpclient: check if hdr_num is not 0
2672 - MINOR: httpclient: cleanup the include files
2673 - MINOR: hlua: take the global Lua lock inside a global function
2674 - MINOR: tools: add FreeBSD support to get_exec_path()
2675 - BUG/MINOR: systemd: ExecStartPre must use -Ws
2676 - MINOR: systemd: remove the ExecStartPre line in the unit file
2677 - MINOR: ssl: add an openssl version string parser
2678 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
2679 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
2680 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
2681 - BUG/MINOR: httpclient: remove deinit of the httpclient
2682 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
2683 - MINOR: httpclient: set verify none on the https server
2684 - MINOR: httpclient: add the server to the proxy
2685 - BUG/MINOR: httpclient: fix Host header
2686 - BUILD: httpclient: fix build without OpenSSL
2687 - CI: github-actions: remove obsolete options
2688 - CLEANUP: assorted typo fixes in the code and comments
2689 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
2690 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
2691 - MINOR: server: return the next srv instance on free_server
2692 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
2693 - MEDIUM: server: extend refcount for all servers
2694 - MINOR: server: define non purgeable server flag
2695 - MINOR: server: mark referenced servers as non purgeable
2696 - MINOR: server: mark servers referenced by LUA script as non purgeable
2697 - MEDIUM: server: allow to remove servers at runtime except non purgeable
2698 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
2699 - REGTEST: add missing lua requirements on server removal test
2700 - REGTEST: fix haproxy required version for server removal test
2701 - BUG/MINOR: proxy: don't dump servers of internal proxies
2702 - REGTESTS: Use `feature cmd` for 2.5+ tests
2703 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
2704 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
2705 - MINOR: compiler: implement an ONLY_ONCE() macro
2706 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
2707 - MEDIUM: ssl: Capture more info from Client Hello
2708 - MINOR: sample: Expose SSL captures using new fetchers
2709 - MINOR: sample: Add be2dec converter
2710 - MINOR: sample: Add be2hex converter
2711 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
2712 - BUG/MINOR: time: fix idle time computation for long sleeps
2713 - MINOR: time: add report_idle() to report process-wide idle time
2714 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
2715 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
2716 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
2717 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
2718 - IMPORT: slz: silence a build warning with -Wundef
2719 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
2720
Willy Tarreau08d0f232021-08-17 14:08:55 +020027212021/08/17 : 2.5-dev4
2722 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
2723 - MINOR: doc: rename conn_status in `option httsplog`
2724 - MINOR: proxy: disabled takes a stopping and a disabled state
2725 - MINOR: stats: shows proxy in a stopped state
2726 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
2727 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
2728 - MINOR: threads: make thread_release() not wait for other ones to complete
2729 - MEDIUM: threads: add a stronger thread_isolate_full() call
2730 - MEDIUM: servers: make the server deletion code run under full thread isolation
2731 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
2732 - MINOR: activity/fd: remove the dead_fd counter
2733 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
2734 - CLEANUP: fd: remove the now unused fd_set_running()
2735 - CLEANUP: fd: remove the now unneeded fd_mig_lock
2736 - BUG/MINOR: server: update last_change on maint->ready transitions too
2737 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
2738 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
2739 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
2740 - MINOR: server: unmark deprecated on enable health/agent cli
2741 - MEDIUM: task: implement tasklet kill
2742 - MINOR: server: initialize fields for dynamic server check
2743 - MINOR: check: allocate default check ruleset for every backends
2744 - MINOR: check: export check init functions
2745 - MINOR: check: do not increment global maxsock at runtime
2746 - MINOR: server: implement a refcount for dynamic servers
2747 - MEDIUM: check: implement check deletion for dynamic servers
2748 - MINOR: check: enable safe keywords for dynamic servers
2749 - MEDIUM: server: implement check for dynamic servers
2750 - MEDIUM: server: implement agent check for dynamic servers
2751 - REGTESTS: server: add dynamic check server test
2752 - MINOR: doc: specify ulimit-n usage for dynamic servers
2753 - REGTESTS: server: fix dynamic server with checks test
2754 - CI: travis-ci: temporarily disable arm64 builds
2755 - BUG/MINOR: check: test if server is not null in purge
2756 - MINOR: global: define MODE_STOPPING
2757 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
2758 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
2759 - BUG/MINOR: check: do not reset check flags on purge
2760 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
2761 - BUG/MEDIUM: check: fix leak on agent-check purge
2762 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
2763 - BUG/MINOR: buffer: fix buffer_dump() formatting
2764 - MINOR: channel: remove an htx block from a channel
2765 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
2766 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
2767 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
2768 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
2769 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
2770 - MINOR: filters/lua: Release filters before the lua context
2771 - MINOR: lua: Add a function to get a reference on a table in the stack
2772 - MEDIUM: lua: Process buffer data using an offset and a length
2773 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
2774 - DOC: Improve the lua documentation
2775 - MEDIUM: filters/lua: Add support for dummy filters written in lua
2776 - MINOR: lua: Add a function to get a filter attached to a channel class
2777 - MINOR: lua: Add flags on the lua TXN to know the execution context
2778 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
2779 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
2780 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
2781 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
2782 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
2783 - DOC: config: Fix 'http-response send-spoe-group' documentation
2784 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
2785 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
2786 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
2787 - MINOR: cli: delare the CLI frontend as an internal proxy
2788 - MINOR: proxy: disable warnings for internal proxies
2789 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
2790 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
2791 - DOC: lua-api: Add documentation about lua filters
2792 - CI: Remove obsolete USE_SLZ=1 CI job
2793 - CLEANUP: assorted typo fixes in the code and comments
2794 - CI: github actions: relax OpenSSL-3.0.0 version comparision
2795 - BUILD: tools: get the absolute path of the current binary on NetBSD.
2796 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
2797 - DOC/MINOR: fix typo in management document
2798 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
2799 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
2800 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
2801 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
2802 - BUG/MEDIUM: h2: give :authority precedence over Host
2803 - REGTESTS: add a test to prevent h2 desync attacks
2804
Willy Tarreau8441deb2021-08-01 18:19:51 +020028052021/08/01 : 2.5-dev3
2806 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
2807 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
2808 - MEDIUM: proxy: remove long-broken 'option http_proxy'
2809 - CLEANUP: http_ana: Remove now unused label from http_process_request()
2810 - MINOR: deinit: always deinit the init_mutex on failed initialization
2811 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
2812 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
2813 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
2814 - BUILD/MINOR: memprof fix macOs build.
2815 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
2816 - BUG/MINOR: stats: Add missing agent stats on servers
2817 - BUG/MINOR: check: fix the condition to validate a port-less server
2818 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
2819 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
2820 - MINOR: ssl: use __objt_* variant when retrieving counters
2821 - BUG/MINOR: systemd: must check the configuration using -Ws
2822 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
2823 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
2824 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
2825 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
2826 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
2827 - MINOR: mworker: the mworker CLI proxy is internal
2828 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
2829 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
2830 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
2831 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
2832 - MINOR: connection: Add a connection error code sample fetch
2833 - MINOR: ssl: Enable error fetches in case of handshake error
2834 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
2835 - MINOR: ssl: Define a default https log format
2836 - MEDIUM: connection: Add option to disable legacy error log
2837 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
2838 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
2839 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
2840 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
2841 - BUG/MINOR: select: fix excess number of dead/skip reported
2842 - BUG/MINOR: poll: fix abnormally high skip_fd counter
2843 - BUG/MINOR: pollers: always program an update for migrated FDs
2844 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
2845 - DOC: internals: document the FD takeover process
2846 - MINOR: fd: update flags only once in fd_update_events()
2847 - MINOR: poll/epoll: move detection of RDHUP support earlier
2848 - REORG: fd: uninline fd_update_events()
2849 - MEDIUM: fd: rely more on fd_update_events() to detect changes
2850 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
2851 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
2852 - MEDIUM: atomic: relax the load/store barriers on x86_64
2853 - BUILD: opentracing: fixed build when using pkg-config utility
2854
Willy Tarreaubccc91d2021-07-17 12:35:11 +020028552021/07/17 : 2.5-dev2
2856 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
2857 - DOC: config: use CREATE USER for mysql-check
2858 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
2859 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
2860 - MINOR: stick-table: make skttable_data_cast to use only std types
2861 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
2862 - MEDIUM: peers: handle arrays of std types in peers protocol
2863 - DOC: stick-table: add missing documentation about gpt0 stored type
2864 - MEDIUM: stick-table: add the new array of gpt data_type
2865 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
2866 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
2867 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
2868 - BUG/MEDIUM: sock: make sure to never miss early connection failures
2869 - BUG/MINOR: cli: fix server name output in "show fd"
2870 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
2871 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
2872 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
2873 - MINOR: http: implement http_get_scheme
2874 - MEDIUM: http: implement scheme-based normalization
2875 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
2876 - MEDIUM: h2: apply scheme-based normalization on h2 requests
2877 - REGTESTS: add http scheme-based normalization test
2878 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
2879 - MINOR: http: implement http uri parser
2880 - MINOR: http: use http uri parser for scheme
2881 - MINOR: http: use http uri parser for authority
2882 - REORG: http_ana: split conditions for monitor-uri in wait for request
2883 - MINOR: http: use http uri parser for path
2884 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
2885 - MINOR: mux_h2: define config to disable h2 websocket support
2886 - CLEANUP: applet: remove unused thread_mask
2887 - BUG/MINOR: ssl: Default-server configuration ignored by server
2888 - BUILD: add detection of missing important CFLAGS
2889 - BUILD: lua: silence a build warning with TCC
2890 - MINOR: srv: extract tracking server config function
2891 - MINOR: srv: do not allow to track a dynamic server
2892 - MEDIUM: server: support track keyword for dynamic servers
2893 - REGTESTS: test track support for dynamic servers
2894 - MINOR: init: verify that there is a single word on "-cc"
2895 - MINOR: init: make -cc support environment variables expansion
2896 - MINOR: arg: add a free_args() function to free an args array
2897 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
2898 - CLEANUP: hlua: use free_args() to release args arrays
2899 - REORG: config: move the condition preprocessing code to its own file
2900 - MINOR: cfgcond: start to split the condition parser to introduce terms
2901 - MEDIUM: cfgcond: report invalid trailing chars after expressions
2902 - MINOR: cfgcond: remerge all arguments into a single line
2903 - MINOR: cfgcond: support negating conditional expressions
2904 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
2905 - MINOR: cfgcond: insert an expression between the condition and the term
2906 - MINOR: cfgcond: support terms made of parenthesis around expressions
2907 - REGTEST: make check_condition.vtc fail as soon as possible
2908 - REGTESTS: add more complex check conditions to check_conditions.vtc
2909 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
2910
Willy Tarreau96a2f502021-06-30 16:16:14 +020029112021/06/30 : 2.5-dev1
2912 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
2913 - MINOR: ssl: Allow duplicated entries in the cafile_tree
2914 - MEDIUM: ssl: Chain ckch instances in ca-file entries
2915 - MINOR: ssl: Add reference to default ckch instance in bind_conf
2916 - MINOR: ssl: Add helper functions to create/delete cafile entries
2917 - MEDIUM: ssl: Add a way to load a ca-file content from memory
2918 - MINOR: ssl: Add helper function to add cafile entries
2919 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
2920 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
2921 - REGTESTS: ssl: Add new ca-file update tests
2922 - MINOR: ssl: Add "abort ssl ca-file" CLI command
2923 - MINOR: ssl: Add a cafile_entry type field
2924 - MINOR: ssl: Refactorize the "show certificate details" code
2925 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
2926 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
2927 - MINOR: ssl: Add "del ssl ca-file" CLI command
2928 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
2929 - DOC: ssl: Add documentation about CA file hot update commands
2930 - DOC: internals: update the SSL architecture schema
2931 - MINOR: ssl: Chain instances in ca-file entries
2932 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
2933 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
2934 - MINOR: ssl: Add "abort ssl crl-file" CLI command
2935 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
2936 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
2937 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
2938 - DOC: ssl: Add documentation about CRL file hot update commands
2939 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
2940 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
2941 - CI: introduce scripts/build-vtest.sh for installing VTest
2942 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
2943 - CI: github actions: add OpenTracing builds
2944 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
2945 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
2946 - BUILD/MINOR: opentracing: fixed build when using clang
2947 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
2948 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
2949 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
2950 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
2951 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
2952 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
2953 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
2954 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
2955 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
2956 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
2957 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
2958 - MINOR: buf: Add function to realign a buffer with a specific head position
2959 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
2960 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
2961 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
2962 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
2963 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
2964 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
2965 - MINOR: cfgparse: Fail when encountering extra arguments in macro
2966 - DOC: intro: Fix typo in starter guide
2967 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
2968 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
2969 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
2970 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
2971 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
2972 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
2973 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
2974 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
2975 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
2976 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
2977 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
2978 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
2979 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
2980 - CLEANUP: http-ana: Remove useless if statement about L7 retries
2981 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
2982 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
2983 - BUG/MINOR: vars: Be sure to have a session to get checks variables
2984 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
2985 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
2986 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
2987 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
2988 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
2989 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
2990 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
2991 - CI: github actions: add OpenSSL-3.0.0 builds
2992 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
2993 - MINOR: errors: allow empty va_args for diag variadic macro
2994 - REORG: errors: split errors reporting function from log.c
2995 - CLEANUP: server: fix cosmetic of error message on sni parsing
2996 - MEDIUM: errors: implement user messages buffer
2997 - MINOR: log: do not discard stderr when starting is over
2998 - MEDIUM: errors: implement parsing context type
2999 - MINOR: errors: use user messages context in print_message
3000 - MINOR: log: display exec path on first warning
3001 - MINOR: errors: specify prefix "config" for parsing output
3002 - MINOR: log: define server user message format
3003 - REORG: server: use parsing ctx for server parsing
3004 - REORG: config: use parsing ctx for server config check
3005 - MINOR: server: use parsing ctx for server init addr
3006 - MINOR: server: use ha_alert in server parsing functions
3007 - DOC: use the req.ssl_sni in examples
3008 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
3009 - CLEANUP: tools: Make errptr const in `parse_line()`
3010 - MINOR: haproxy: Add `-cc` argument
3011 - BUG: errors: remove printf positional args for user messages context
3012 - CI: Make matrix.py executable and add shebang
3013 - BUILD: make tune.ssl.keylog available again
3014 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
3015 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
3016 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
3017 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
3018 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
3019 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
3020 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
3021 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
3022 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
3023 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
3024 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
3025 - REGTESTS: ssl: Add "show ssl ocsp-response" test
3026 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
3027 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
3028 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
3029 - MINOR: pools: do not maintain the lock during pool_flush()
3030 - MINOR: pools: call malloc_trim() under thread isolation
3031 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
3032 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
3033 - CLEANUP: pools: remove now unused seq and pool_free_list
3034 - MEDIUM: pools: remove the locked pools implementation
3035 - BUILD: ssl: Fix compilation with BoringSSL
3036 - BUG/MEDIUM: errors: include missing obj_type file
3037 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
3038 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
3039 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
3040 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
3041 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
3042 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
3043 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
3044 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
3045 - BUG/MINOR: server-state: load SRV resolution only if params match the config
3046 - MINOR: config: remove support for deprecated option "tune.chksize"
3047 - MINOR: config: completely remove support for "no option http-use-htx"
3048 - MINOR: log: remove the long-deprecated early log-format tags
3049 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
3050 - MINOR: config: reject long-deprecated "option forceclose"
3051 - MINOR: config: remove deprecated option "http-tunnel"
3052 - MEDIUM: proxy: remove the deprecated "grace" keyword
3053 - MAJOR: config: remove parsing of the global "nbproc" directive
3054 - BUILD: init: remove initialization of multi-process thread mappings
3055 - BUILD: log: remove unused fmt_directive()
3056 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
3057 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
3058 - CI: github actions: enable alpine/musl builds
3059 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
3060 - DOC: lua: Add a warning about buffers modification in HTTP
3061 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
3062 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
3063 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
3064 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
3065 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
3066 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
3067 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
3068 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
3069 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
3070 - BUG/MINOR: mworker: fix typo in chroot error message
3071 - CLEANUP: global: remove unused definition of stopping_task[]
3072 - MEDIUM: init: remove the loop over processes during init
3073 - MINOR: mworker: remove the initialization loop over processes
3074 - CLEANUP: global: remove the nbproc field from the global structure
3075 - CLEANUP: global: remove pid_bit and all_proc_mask
3076 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
3077 - MEDIUM: config: simplify cpu-map handling
3078 - MEDIUM: cpu-set: make the proc a single bit field and not an array
3079 - CLEANUP: global: remove unused definition of MAX_PROCS
3080 - MEDIUM: global: remove the relative_pid from global and mworker
3081 - DOC: update references to process numbers in cpu-map and bind-process
3082 - MEDIUM: config: warn about "bind-process" deprecation
3083 - CLEANUP: shctx: remove the different inter-process locking techniques
3084 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
3085 - MINOR: backend: only skip LB when there are actual connections
3086 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
3087 - MINOR: connection: add helper conn_append_debug_info()
3088 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
3089 - CLEANUP: mux-h2/traces: better align user messages
3090 - BUG/MINOR: stats: make "show stat typed desc" work again
3091 - MINOR: mux-h2: obey http-ignore-probes during the preface
3092 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
3093 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
3094 - CLEANUP: assorted typo fixes in the code and comments
3095 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
3096 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
3097 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
3098 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
3099 - REGTESTS: Remove support for REQUIRE_BINARIES
3100 - CI: ssl: enable parallel builds for OpenSSL on Linux
3101 - CI: ssl: do not needlessly build the OpenSSL docs
3102 - CI: ssl: keep the old method for ancient OpenSSL versions
3103 - CLEANUP: server: a separate function for initializing the per_thr field
3104 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
3105 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
3106 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
3107 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
3108 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
3109 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
3110 - BUG/MINOR: backend: do not set sni on connection reuse
3111 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
3112 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
3113 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
3114 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
3115 - MINOR: ssl: always initialize random generator
3116 - MINOR: ssl: check allocation in ssl_sock_init_srv
3117 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
3118 - MINOR: ssl: check allocation in parse npn/sni
3119 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
3120 - MINOR: ssl: render file-access optional on server crt loading
3121 - MINOR: ssl: split parse functions for alpn/check-alpn
3122 - MINOR: ssl: support ca-file arg for dynamic servers
3123 - MINOR: ssl: support crt arg for dynamic servers
3124 - MINOR: ssl: support crl arg for dynamic servers
3125 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
3126 - MINOR: ssl: support ssl keyword for dynamic servers
3127 - REGTESTS: server: test ssl support for dynamic servers
3128 - MINOR: queue: update the stream's pend_pos before queuing it
3129 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
3130 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
3131 - REGTESTS: fix maxconn update with agent-check
3132 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
3133 - MINOR: queue: update proxy->served once out of the loop
3134 - MEDIUM: queue: refine the locking in process_srv_queue()
3135 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
3136 - MINOR: queue: create a new structure type "queue"
3137 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
3138 - MINOR: server: replace the pendconns-related stuff with a struct queue
3139 - MEDIUM: queue: use a dedicated lock for the queues
3140 - MEDIUM: queue: simplify again the process_srv_queue() API
3141 - MINOR: queue: factor out the proxy/server queuing code
3142 - MINOR: queue: use atomic-ops to update the queue's index
3143 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
3144 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
3145 - MEDIUM: queue: unlock as soon as possible
3146 - MINOR: queue: make pendconn_first() take the lock by itself
3147 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
3148 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
3149 - DOC: config: Add missing actions in "tcp-request session" documentation
3150 - CLEANUP: dns: Remove a forgotten debug message
3151 - DOC: Replace issue templates by issue forms
3152 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
3153 - Revert "MEDIUM: queue: unlock as soon as possible"
3154 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
3155 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
3156 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
3157 - Revert "MINOR: queue: factor out the proxy/server queuing code"
3158 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
3159 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
3160 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
3161 - Revert "MINOR: queue: update proxy->served once out of the loop"
3162 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
3163 - MEDIUM: queue: update px->served and lb's take_conn once per loop
3164 - MEDIUM: queue: use a dedicated lock for the queues (v2)
3165 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
3166 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
3167 - MINOR: queue: factor out the proxy/server queuing code (v2)
3168 - MINOR: queue: use atomic-ops to update the queue's index (v2)
3169 - MEDIUM: queue: take the proxy lock only during the px queue accesses
3170 - MEDIUM: queue: use a trylock on the server's queue
3171 - MINOR: queue: add queue_init() to initialize a queue
3172 - MINOR: queue: add a pointer to the server and the proxy in the queue
3173 - MINOR: queue: store a pointer to the queue into the pendconn
3174 - MINOR: queue: remove the px/srv fields from pendconn
3175 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
3176 - BUG: backend: stop looking for queued connections once there's no more
3177 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
3178 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
3179 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
3180 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
3181 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
3182 - BUILD: Makefile: fix linkage for Haiku.
3183 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
3184 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
3185 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
3186 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
3187 - CLEANUP: tcp-act: Sort action lists
3188 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
3189 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
3190 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
3191 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
3192 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
3193 - CLEANUP: peers: re-write intdecode function comment.
3194
Willy Tarreau1f973062021-05-14 09:36:37 +020031952021/05/14 : 2.5-dev0
3196 - MINOR: version: it's development again
3197
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020031982021/05/14 : 2.4.0
3199 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
3200 - CLEANUP: cli/activity: Remove double spacing in set profiling command
3201 - CI: Build VTest with clang
3202 - CI: extend spellchecker whitelist, add "ists" as well
3203 - CLEANUP: assorted typo fixes in the code and comments
3204 - BUG/MINOR: memprof: properly account for differences for realloc()
3205 - MINOR: memprof: also report the method used by each call
3206 - MINOR: memprof: also report the totals and delta alloc-free
3207 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
3208 - BUG/MINOR: http_act: Fix normalizer names in error messages
3209 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
3210 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
3211 - IMPORT: slz: use the generic function for the last bytes of the crc32
3212 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
3213 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
3214 - BUILD: makefile: add a few popular ARMv8 CPU targets
3215 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
3216 - REGTESTS: stick-table: add src_conn_rate test
3217 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
3218 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
3219 - EXAMPLES: add a "basic-config-edge" example config
3220 - EXAMPLES: add a trivial config for quick testing
3221 - DOC: management: Correct example reload command in the document
3222 - Revert "CI: Build VTest with clang"
3223 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
3224 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
3225 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
3226 - DOC: config: Fix configuration example for mqtt
3227 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
3228 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
3229 - DOC: update min requirements in INSTALL
3230 - IMPORT: slz: use inttypes.h instead of stdint.h
3231 - BUILD: sample: use strtoll() instead of atoll()
3232 - MINOR: version: mention that it's LTS now.
3233
Willy Tarreau46b93af2021-05-10 07:50:26 +020032342021/05/10 : 2.4-dev19
3235 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
3236 - BUG/MEDIUM: cli: prevent memory leak on write errors
3237 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
3238 - MINOR: debug: add a new "debug dev sym" command in expert mode
3239 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
3240 - CI: Github Actions: switch to LibreSSL-3.3.3
3241 - MINOR: srv: close all idle connections on shutdown
3242 - MINOR: connection: move session_list member in a union
3243 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
3244 - MEDIUM: connection: close front idling connection on soft-stop
3245 - MINOR: tools: add functions to retrieve the address of a symbol
3246 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
3247 - MINOR: activity: add a "memory" entry to "profiling"
3248 - MINOR: activity: declare the storage for memory usage statistics
3249 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
3250 - MINOR: activity: clean up the show profiling io_handler a little bit
3251 - MINOR: activity: make "show profiling" support a few arguments
3252 - MINOR: activity: make "show profiling" also dump the memoery usage
3253 - MINOR: activity: add the profiling.memory global setting
3254 - BUILD: makefile: add new option USE_MEMORY_PROFILING
3255 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
3256 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
3257 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
3258 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
3259 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
3260 - REGTESTS: Add script to test abortonclose option
3261 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
3262 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
3263 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
3264 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
3265 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
3266 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
3267 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
3268 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
3269 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
3270 - BUG/MINOR: config: .if/.elif should also accept negative integers
3271 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
3272 - MINOR: config: keep up-to-date current file/line/section in the global struct
3273 - MINOR: config: support some pseudo-variables for file/line/section
3274 - BUILD: activity: do not include malloc.h
3275 - MINOR: arg: improve the error message on missing closing parenthesis
3276 - MINOR: global: export the build features string list
3277 - MINOR: global: add version comparison functions
3278 - MINOR: config: improve .if condition error reporting
3279 - MINOR: config: make cfg_eval_condition() support predicates with arguments
3280 - MINOR: config: add predicate "defined()" to conditional expression blocks
3281 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
3282 - MINOR: config: add predicate "feature" to detect certain built-in features
3283 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
3284 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
3285 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
3286 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
3287 - MINOR: config: add a new message directive: .diag
3288 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
3289 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
3290 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
3291 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
3292 - MINOR: global: define tainted flag
3293 - MINOR: cfgparse: add a new field flags in cfg_keyword
3294 - MINOR: cfgparse: implement experimental config keywords
3295 - MINOR: action: replace match_pfx by a keyword flags field
3296 - MINOR: action: implement experimental actions
3297 - MINOR: cli: set tainted when using CLI expert/experimental mode
3298 - MINOR: stats: report tainted on show info
3299 - MINOR: http_act: mark normalize-uri as experimental
3300 - BUILD: fix usage of ha_alert without format string
3301 - MINOR: proxy: define PR_CAP_LB
3302 - BUG/MINOR: server: do not report diag for peer servers with null weight
3303 - DOC: ssl: Extra files loading now works for backends too
3304 - ADDONS: make addons/ discoverable by git via .gitignore
3305 - DOC: ssl: Add information about crl-file option
3306 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
3307 - DOC: management: mention that some fields may be emitted as floats
3308 - MINOR: tools: implement trimming of floating point numbers
3309 - MINOR: tools: add a float-to-ascii conversion function
3310 - MINOR: freq_ctr: add new functions to report float measurements
3311 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
3312 - MINOR: stats: add the HTML conversion for float types
3313 - MINOR: stats: pass the appctx flags to stats_fill_info()
3314 - MINOR: stats: support an optional "float" option to "show info"
3315 - MINOR: stats: use tv_remain() to precisely compute the uptime
3316 - MINOR: stats: report uptime and start time as floats with subsecond resolution
3317 - MINOR: stats: make "show info" able to report rates as floats when asked
3318 - MINOR: config: mark tune.fd.edge-triggered as experimental
3319 - REORG: vars: move the "proc" scope variables out of the global struct
3320 - REORG: threads: move all_thread_mask() to thread.h
3321 - BUILD: wdt: include signal-t.h
3322 - BUILD: auth: include missing list.h
3323 - REORG: mworker: move proc_self from global to mworker
3324 - BUILD: ssl: ssl_utils requires chunk.h
3325 - BUILD: config: cfgparse-ssl.c needs tools.h
3326 - BUILD: wurfl: wurfl.c needs tools.h
3327 - BUILD: spoe: flt_spoe.c needs tools.h
3328 - BUILD: promex: service-prometheus.c needs tools.h
3329 - BUILD: resolvers: include tools.h
3330 - BUILD: config: include tools.h in cfgparse-listen.c
3331 - BUILD: htx: include tools.h in http_htx.c
3332 - BUILD: proxy: include tools.h in proxy.c
3333 - BUILD: session: include tools.h in session.c
3334 - BUILD: cache: include tools.h in cache.c
3335 - BUILD: sink: include tools.h in sink.c
3336 - BUILD: connection: include tools.h in connection.c
3337 - BUILD: server-state: include tools.h from server_state.c
3338 - BUILD: dns: include tools.h in dns.c
3339 - BUILD: payload: include tools.h in payload.c
3340 - BUILD: vars: include tools.h in vars.c
3341 - BUILD: compression: include tools.h in compression.c
3342 - BUILD: mworker: include tools.h from mworker.c
3343 - BUILD: queue: include tools.h from queue.c
3344 - BUILD: udp: include tools.h from proto_udp.c
3345 - BUILD: stick-table: include freq_ctr.h from stick_table.h
3346 - BUILD: server: include tools.h from server.c
3347 - BUILD: server: include missing proxy.h in server.c
3348 - BUILD: sink: include proxy.h in sink.c
3349 - BUILD: mworker: include proxy.h in mworker.c
3350 - BUILD: filters: include proxy.h in filters.c
3351 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
3352 - BUILD: connection: move list_mux_proto() to connection.c
3353 - REORG: stick-table: uninline stktable_alloc_data_type()
3354 - REORG: stick-table: move composite address functions to stick_table.h
3355 - REORG: config: uninline warnifnotcap() and failifnotcap()
3356 - BUILD: task: remove unused includes from task.c
3357 - MINOR: task: stop including stream.h from task.c
3358 - BUILD: connection: stop including listener-t.h
3359 - BUILD: hlua: include proxy.h from hlua.c
3360 - BUILD: mux-h1: include proxy.h from mux-h1.c
3361 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
3362 - BUILD: listener: include proxy.h from listener.c
3363 - BUILD: http-rules: include proxy.h from http_rules.c
3364 - BUILD: thread: include log.h from thread.c
3365 - BUILD: comp: include proxy.h from flt_http_comp.c
3366 - BUILD: fd: include log.h from fd.c
3367 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
3368 - BUILD: makefile: reorder object files by build time
3369 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
3370 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
3371 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
3372 - DOC: remove last occurrences of "HA-Proxy" syntax
3373 - DOC: peers: fix the protocol tag name in the doc
3374 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
3375 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
3376 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
3377 - MINOR: tools/rnd: compute the result outside of the CAS loop
3378 - BUILD: http_fetch: address a few aliasing warnings with older compilers
3379 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
3380 - BUILD: errors: include stdarg in errors.h
3381 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
3382 - MINOR: cli: make "help" support a command in argument
3383 - MINOR: cli: sort the output of the "help" keywords
3384 - CLEANUP: cli/mworker: properly align the help messages
3385 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
3386 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
3387 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
3388 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
3389 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
3390
Willy Tarreau080347f2021-05-01 08:25:15 +020033912021/05/01 : 2.4-dev18
3392 - DOC: Fix indentation for `path-strip-dot` normalizer
3393 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
3394 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
3395 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
3396 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
3397 - REORG: htx: Inline htx functions to add HTX blocks in a message
3398 - CLEANUP: assorted typo fixes in the code and comments
3399 - DOC: general: fix white spaces for HTML converter
3400 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
3401 - BUG/MINOR: cpuset: move include guard at the very beginning
3402 - BUG/MAJOR: fix build on musl with cpu_set_t support
3403 - BUG/MEDIUM: cpuset: fix build on MacOS
3404 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
3405 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
3406 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
3407 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
3408 - MEDIUM: http-ana: handle read error on server side if waiting for response
3409 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
3410 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
3411 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
3412 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
3413 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
3414 - DOC: general: fix example in set-timeout
3415 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
3416 - MINOR: config: add a new "default-path" global directive
3417 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
3418 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
3419 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
3420 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
3421 - BUG/MEDIUM: peers: reset commitupdate value in new conns
3422 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
3423 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
3424 - MINOR: peers: add informative flags about resync process for debugging
3425 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
3426 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
3427 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
3428 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
3429 - REGTESTS: server: fix cli_add_server due to previous trace update
3430 - REGTESTS: add minimal CLI "add map" tests
3431 - DOC: management: move "set var" to the proper place
3432 - CLEANUP: map: slightly reorder the add map function
3433 - MINOR: map: get rid of map_add_key_value()
3434 - MINOR: map: show the current and next pattern version in "show map"
3435 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
3436 - MINOR: pattern: support purging arbitrary ranges of generations
3437 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
3438 - MINOR: map/acl: add the "prepare map/acl" CLI command
3439 - MINOR: map/acl: add the "commit map/acl" CLI command
3440 - MINOR: map/acl: make "add map/acl" support an optional version number
3441 - CLEANUP: map/cli: properly align the map/acl help
3442 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
3443
Willy Tarreaubfd19d62021-04-23 19:11:10 +020034442021/04/23 : 2.4-dev17
3445 - MINOIR: mux-pt/trace: Register a new trace source with its events
3446 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
3447 - CI: travis: Drastically clean up .travis.yml
3448 - CLEANUP: pattern: make all pattern tables read-only
3449 - MINOR: trace: replace the trace() inline function with an equivalent macro
3450 - MINOR: initcall: uniformize the section names between MacOS and other unixes
3451 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
3452 - MINOR: compiler: add macros to declare section names
3453 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
3454 - MINOR: global: declare a read_mostly section
3455 - MINOR: fd: move a few read-mostly variables to their own section
3456 - MINOR: epoll: move epoll_fd to read_mostly
3457 - MINOR: kqueue: move kqueue_fd to read_mostly
3458 - MINOR: pool: move pool declarations to read_mostly
3459 - MINOR: threads: mark all_threads_mask as read_mostly
3460 - MINOR: server: move idle_conn_task to read_mostly
3461 - MINOR: protocol: move __protocol_by_family to read_mostly
3462 - MINOR: pattern: make the pat_lru_seed read_mostly
3463 - MINOR: trace: make trace sources read_mostly
3464 - MINOR: freq_ctr: add a generic function to report the total value
3465 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
3466 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
3467 - MINOR: freq_ctr: add the missing next_event_delay_period()
3468 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
3469 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
3470 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
3471 - MINOR: freq_ctr: simplify and improve the update function
3472 - CLEANUP: time: remove the now unused ms_left_scaled
3473 - MINOR: time: move the time initialization out of tv_update_date()
3474 - MINOR: time: remove useless variable copies in tv_update_date()
3475 - MINOR: time: change the global timeval and the the global tick at once
3476 - MEDIUM: time: make the clock offset global and no per-thread
3477 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
3478 - MINOR: trace: Add the checks as a possible trace source
3479 - MINOIR: checks/trace: Register a new trace source with its events
3480 - MINOR: hlua: Add function to release a lua function
3481 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
3482 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
3483 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
3484 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
3485 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
3486 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
3487 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
3488 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
3489 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
3490 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
3491 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
3492 - DOC: internals: update the SSL architecture schema
3493 - BUG/MEDIUM: sample: Fix adjusting size in field converter
3494 - MINOR: sample: add ub64dec and ub64enc converters
3495 - CLEANUP: sample: align samples list in sample.c
3496 - MINOR: ist: Add `istclear(struct ist*)`
3497 - CI: cirrus: install "pcre" package
3498 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
3499 - MINOR: opentracing: transfer of context names without prefix
3500 - MINOR: sample: converter: Add mjson library.
3501 - MINOR: sample: converter: Add json_query converter
3502 - CI: travis-ci: enable weekly graviton2 builds
3503 - DOC: ssl: Certificate hot update only works on fronted certificates
3504 - DOC: ssl: Certificate hot update works on server certificates
3505 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
3506 - MINOR: threads: Only consider running threads to end a thread harmeless period
3507 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
3508 - MINOR: logs: Add support of checks as session origin to format lf strings
3509 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
3510 - MINOR: connection: Make bc_http_major compatible with tcp-checks
3511 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
3512 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
3513 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
3514 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
3515 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
3516 - BUG/MINOR: logs: Report the true number of retries if there was no connection
3517 - BUILD: makefile: Redirect stderr to /dev/null when probing options
3518 - MINOR: uri_normalizer: Add uri_normalizer module
3519 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
3520 - MINOR: uri_normalizer: Add `http-request normalize-uri`
3521 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
3522 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
3523 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
3524 - MINOR: uri_normalizer: Add a `sort-query` normalizer
3525 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
3526 - MEDIUM: http_act: Rename uri-normalizers
3527 - DOC: Add introduction to http-request normalize-uri
3528 - DOC: Note that URI normalization is experimental
3529 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
3530 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
3531 - MINOR: pools: drop the unused static history of artificially failed allocs
3532 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
3533 - MEDIUM: pools: move the cache into the pool header
3534 - MINOR: pool: remove the size field from pool_cache_head
3535 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
3536 - MINOR: pools: enable the fault injector in all allocation modes
3537 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
3538 - MEDIUM: pools: unify pool_refill_alloc() across all models
3539 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
3540 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
3541 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
3542 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
3543 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
3544 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
3545 - MINOR: tools: add statistical_prng_range() to get a random number over a range
3546 - MINOR: pools: use cheaper randoms for fault injections
3547 - MINOR: pools: move the fault injector to __pool_alloc()
3548 - MINOR: pools: split the OS-based allocator in two
3549 - MINOR: pools: always use atomic ops to maintain counters
3550 - MINOR: pools: move pool_free_area() out of the lock in the locked version
3551 - MINOR: pools: factor the release code into pool_put_to_os()
3552 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
3553 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
3554 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
3555 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
3556 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
3557 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
3558 - CLEANUP: pools: uninline pool_put_to_cache()
3559 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
3560 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
3561 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
3562 - CONTRIB: mod_defender: import the minimal number of includes
3563 - CONTRIB: mod_defender: make the code build with the embedded includes
3564 - CONTRIB: modsecurity: import the minimal number of includes
3565 - CONTRIB: modsecurity: make the code build with the embedded includes
3566 - CLEANUP: sample: Improve local variables in sample_conv_json_query
3567 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
3568 - CLEANUP: sample: Use explicit return for successful `json_query`s
3569 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
3570 - CONTRIB: move spoa_example out of the tree
3571 - BUG/MINOR: server: free srv.lb_nodes in free_server
3572 - BUG/MINOR: logs: free logsrv.conf.file on exit
3573 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
3574 - MINOR: server: add log on dynamic server creation
3575 - MINOR: server: implement delete server cli command
3576 - CONTRIB: move spoa_server out of the tree
3577 - CONTRIB: move modsecurity out of the tree
3578 - BUG/MINOR: server: fix potential null gcc error in delete server
3579 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
3580 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
3581 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
3582 - CLEANUP: uri_normalizer: Remove trailing whitespace
3583 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
3584 - CONTRIB: move mod_defender out of the tree
3585 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
3586 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
3587 - MINOR: config: add a diag for invalid cpu-map statement
3588 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
3589 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
3590 - BUILD: makefile: fix the "make clean" target on strict bourne shells
3591 - IMPORT: slz: import slz into the tree
3592 - BUILD: compression: switch SLZ from out-of-tree to in-tree
3593 - CI: github: do not build libslz any more
3594 - CLEANUP: compression: remove calls to SLZ init functions
3595 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
3596 - MINOR: cpuset: define a platform-independent cpuset type
3597 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
3598 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
3599 - MINOR: thread: implement the detection of forced cpu affinity
3600 - MINOR: cfgparse: support the comma separator on parse_cpu_set
3601 - MEDIUM: cfgparse: detect numa and set affinity if needed
3602 - MINOR: global: add option to disable numa detection
3603 - BUG/MINOR: haproxy: fix compilation on macOS
3604 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
3605 - MINOR: time: avoid unneeded updates to now_offset
3606 - MINOR: time: avoid overwriting the same values of global_now
3607 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
3608 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
3609 - BUG/MINOR: peers: remove useless table check if initial resync is finished
3610 - BUG/MEDIUM: peers: re-work connection to new process during reload.
3611 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
3612 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
3613
Willy Tarreau86512dd2021-04-09 17:10:39 +020036142021/04/09 : 2.4-dev16
3615 - CLEANUP: dev/flags: remove useless test in the stdin number parser
3616 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
3617 - MINOR: acl: Add HTTP_2.0 predefined macro
3618 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
3619 - BUG/MINOR: tools: fix parsing "us" unit for timers
3620 - MINOR: server/bind: add support of new prefixes for addresses.
3621 - MINOR: log: register config file and line number on log servers.
3622 - MEDIUM: log: support tcp or stream addresses on log lines.
3623 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
3624 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
3625 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
3626 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
3627 - MINOR: fd: move .linger_risk into fdtab[].state
3628 - MINOR: fd: move .cloned into fdtab[].state
3629 - MINOR: fd: move .initialized into fdtab[].state
3630 - MINOR: fd: move .et_possible into fdtab[].state
3631 - MINOR: fd: move .exported into fdtab[].state
3632 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
3633 - MINOR: cli/show-fd: slightly reorganize the FD status flags
3634 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
3635 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
3636 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
3637 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
3638 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
3639 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
3640 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
3641 - MINOR: atomic: implement native BTS/BTR for x86
3642 - MINOR: ist: Add `istappend(struct ist, char)`
3643 - MINOR: ist: Add `istshift(struct ist*)`
3644 - MINOR: ist: Add `istsplit(struct ist*, char)`
3645 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
3646 - MINOR: opentracing: register config file and line number on log servers
3647 - MEDIUM: resolvers: add support of tcp address on nameserver line.
3648 - MINOR: ist: Rename istappend() to __istappend()
3649 - CLEANUP: htx: Make http_get_stline take a `const struct`
3650 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
3651 - CLEANUP: Remove useless malloc() casts
3652
Willy Tarreau59fa1d12021-04-02 19:16:32 +020036532021/04/02 : 2.4-dev15
3654 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
3655 - BUG/MINOR: stats: Apply proper styles in HTML status page.
3656 - BUG/MEDIUM: time: make sure to always initialize the global tick
3657 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
3658 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
3659 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
3660 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
3661 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
3662 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
3663 - MINOR: frontend: Create HTTP txn for HTX streams
3664 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
3665 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
3666 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
3667 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
3668 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
3669 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
3670 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
3671 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
3672 - MINOR: muxes: Show muxes flags when the mux list is displayed
3673 - DOC: config: Improve documentation about proto/check-proto keywords
3674 - MINOR: stream: Use stream type instead of proxy mode when appropriate
3675 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
3676 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
3677 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
3678 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
3679 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
3680 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
3681 - DOC: config: Add documentation about TCP to HTTP upgrades
3682 - REGTESTS: Add script to tests TCP to HTTP upgrades
3683 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
3684 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
3685 - MINOR: action: Use a generic function to check validity of an action rule list
3686 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
3687 - MEDIUM: http-rules: Add wait-for-body action on request and response side
3688 - REGTESTS: Add script to tests the wait-for-body HTTP action
3689 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
3690 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
3691 - MINOR: global: define diagnostic mode of execution
3692 - MINOR: cfgparse: diag for multiple nbthread statements
3693 - MINOR: server: diag for 0 weight server
3694 - MINOR: diag: create cfgdiag module
3695 - MINOR: diag: diag if servers use the same cookie value
3696 - MINOR: config: diag if global section after non-global
3697 - TESTS: slightly reorganize the code in the tests/ directory
3698 - TESTS: move tests/*.cfg to tests/config
3699 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
3700 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
3701 - CONTRIB: halog: fix issue with array of type char
3702 - CONTRIB: tcploop: add a shutr command
3703 - CONTRIB: debug: add the show-fd-to-flags script
3704 - CONTRIB: debug: split poll from flags
3705 - CONTRIB: move some dev-specific tools to dev/
3706 - BUILD: makefile: always build the flags utility
3707 - DEV: flags: replace the unneeded makefile with a README
3708 - BUILD: makefile: integrate the hpack tools
3709 - CONTRIB: merge ip6range with iprange
3710 - CONTRIB: move some admin-related sub-projects to admin/
3711 - CONTRIB: move halog to admin/
3712 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
3713 - BUILD: makefile: build halog with the correct flags
3714 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
3715 - CONTRIB: move prometheus-exporter to addons/promex
3716 - DOC: add a few words about USE_* and the addons directory
3717 - CONTRIB: move 51Degrees to addons/51degrees
3718 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
3719 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
3720 - CONTRIB: move contrib/opentracing to addons/ot
3721 - BUG/MINOR: opentracing: initialization after establishing daemon mode
3722 - DOC: clarify that compression works for HTTP/2
3723
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010037242021/03/27 : 2.4-dev14
3725 - MEDIUM: quic: Fix build.
3726 - MEDIUM: quic: Fix build.
3727 - CI: codespell: whitelist "Dragan Dosen"
3728 - CLEANUP: assorted typo fixes in the code and comments
3729 - CI: github actions: update LibreSSL to 3.2.5
3730 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
3731 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
3732 - REGTESTS: remove unneeded experimental-mode in cli add server test
3733 - REGTESTS: wait for proper return of enable server in cli add server test
3734 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
3735 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
3736 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
3737 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
3738 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
3739 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
3740 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
3741 - CLEANUP: compression: do not test for buffer before calling b_alloc()
3742 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
3743 - MINOR: channel: simplify the channel's buffer allocation
3744 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
3745 - CLEANUP: dynbuf: remove b_alloc_margin()
3746 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
3747 - CLEANUP: pools: remove the unused pool_get_first() function
3748 - MINOR: pools: make the pool allocator support a few flags
3749 - MINOR: pools: add pool_zalloc() to return a zeroed area
3750 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
3751 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
3752 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
3753 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
3754 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
3755 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
3756 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
3757 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
3758 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
3759 - MINOR: time: also provide a global, monotonic global_now_ms timer
3760 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
3761 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
3762 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
3763 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
3764 - CLEANUP: ssl: remove unused definitions
3765 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
3766 - MINOR: lua: Slightly improve function dumping the lua traceback
3767 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
3768 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
3769 - MINOR: fd: make fd_clr_running() return the remaining running mask
3770 - MINOR: fd: remove the unneeded running bit from fd_insert()
3771 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
3772 - CLEANUP: fd: remove unused fd_set_running_excl()
3773 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
3774 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
3775 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
3776 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
3777 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
3778 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
3779 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
3780 - BUG/MINOR: ssl: Fix update of default certificate
3781 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
3782 - BUILD: ssl: introduce fine guard for ssl random extraction functions
3783 - REORG: global: move initcall register code in a dedicated file
3784 - REORG: global: move free acl/action in their related source files
3785 - REORG: split proxy allocation functions
3786 - MINOR: proxy: implement a free_proxy function
3787 - MINOR: proxy: define cap PR_CAP_LUA
3788 - MINOR: lua: properly allocate the lua Socket proxy
3789 - MINOR: lua: properly allocate the lua Socket servers
3790 - MINOR: vars: make get_vars() allow the session to be null
3791 - MINOR: vars: make the var() sample fetch keyword depend on nothing
3792 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
3793 - MINOR: sample: make smp_resolve_args() return an allocate error message
3794 - MINOR: sample: add a new SMP_SRC_CONST sample capability
3795 - MINOR: sample: mark the truly constant sample fetch keywords as such
3796 - MINOR: sample: add a new CFG_PARSER context for samples
3797 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
3798 - MEDIUM: vars: add support for a "set-var" global directive
3799 - REGTESTS: add a basic reg-test for some "set-var" commands
3800 - MINOR: sample: add a new CLI_PARSER context for samples
3801 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
3802 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
3803 - MEDIUM: cli: add a new experimental "set var" command
3804 - MINOR: compat: add short aliases for a few very commonly used types
3805 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
3806 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
3807
Willy Tarreau09cc6692021-03-19 17:16:18 +010038082021/03/19 : 2.4-dev13
3809 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
3810 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
3811 - MINOR: tools: improve word fingerprinting by counting presence
3812 - MINOR: tools: do not sum squares of differences for word fingerprints
3813 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
3814 - MINOR: cli: sort the suggestions by order of relevance
3815 - MINOR: cli: limit spelling suggestions to 5
3816 - MINOR: cfgparse/proxy: also support spelling fixes on options
3817 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
3818 - MINOR: time: export the global_now variable
3819 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
3820 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
3821 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
3822 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
3823 - MINOR: cli: implement experimental-mode
3824 - REORG: server: add a free server function
3825 - MINOR: cfgparse: always alloc idle conns task
3826 - REORG: server: move keywords in srv_kws
3827 - MINOR: server: remove fastinter from mistyped kw list
3828 - REORG: server: split parse_server
3829 - REORG: server: move alert traces in parse_server
3830 - REORG: server: rename internal functions from parse_server
3831 - REORG: server: attach servers in parse_server
3832 - REORG: server: use flags for parse_server
3833 - MINOR: server: prepare parsing for dynamic servers
3834 - MINOR: stats: export function to allocate extra proxy counters
3835 - MEDIUM: server: implement 'add server' cli command
3836 - REGTESTS: implement test for 'add server' cli
3837 - MINOR: server: enable standard options for dynamic servers
3838 - MINOR: server: support keyword proto in 'add server' cli
3839 - BUG/MINOR: protocol: add missing support of dgram unix socket.
3840 - CLEANUP: Fix a typo in fix_is_valid description
3841 - MINOR: raw_sock: Add a close method.
3842 - MEDIUM: connections: Introduce a new XPRT method, start().
3843 - MEDIUM: connections: Implement a start() method for xprt_handshake.
3844 - MEDIUM: connections: Implement a start() method in ssl_sock.
3845 - MINOR: muxes: garbage collect the reset() method.
3846 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
3847 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
3848 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
3849
Willy Tarreauacdd47d2021-03-13 11:48:28 +010038502021/03/13 : 2.4-dev12
3851 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
3852 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
3853 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
3854 - MINOR: connection: Use a `struct ist` to store proxy_authority
3855 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
3856 - BUILD: task: fix build at -O0 with threads disabled
3857 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
3858 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
3859 - BUILD: connection: do not use VAR_ARRAY in struct tlv
3860 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
3861 - MINOR: build: force CC to set a return code when probing options
3862 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
3863 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
3864 - CLEANUP: config: also address the cfg_keyword API change in the compression code
3865 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
3866 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
3867 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
3868 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
3869 - BUG/MINOR: connection: Missing QUIC initialization
3870 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
3871 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
3872 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
3873 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
3874 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
3875 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
3876 - BUG/MINOR: server-state: properly handle the case where the base is not set
3877 - BUG/MINOR: server-state: use the argument, not the global state
3878 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
3879 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
3880 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
3881 - CLEANUP: actions: the keyword must always be const from the rule
3882 - MINOR: tools: add simple word fingerprinting to find similar-looking words
3883 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
3884 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
3885 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
3886 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
3887 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
3888 - MINOR: actions: add a function to suggest an action ressembling a given word
3889 - MINOR: http-rules: suggest approaching action names on mismatch
3890 - MINOR: tcp-rules: suggest approaching action names on mismatch
3891 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
3892 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
3893 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
3894 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
3895 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
3896 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
3897 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
3898 - MINOR: resolvers: new function find_srvrq_answer_record()
3899 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
3900 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
3901 - MINOR: resolvers: Use a function to remove answers attached to a resolution
3902 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
3903 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
3904 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
3905 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
3906 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
3907 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
3908 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
3909 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
3910 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
3911 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
3912 - CLEANUP: cli: fix misleading comment and better indent the access level flags
3913 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
3914 - MINOR: cli: test the appctx level for master access instead of comparing pointers
3915 - MINOR: cli: print the error message in the parser function itself
3916 - MINOR: cli: filter the list of commands to the matching part
3917 - MEDIUM: cli: apply spelling fixes for known commands before listing them
3918 - MINOR: tools: add the ability to update a word fingerprint
3919 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
3920 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
3921 - CLEANUP: cli: rename the last few "stats_" to "cli_"
3922 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
3923 - CLEANUP: assorted typo fixes in the code and comments
3924
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010039252021/03/05 : 2.4-dev11
3926 - CI: codespell: skip Makefile for spell check
3927 - CLEANUP: assorted typo fixes in the code and comments
3928 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
3929 - BUG/MINOR: connection: Use the client's dst family for adressless servers
3930 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
3931 - CLEANUP: Use ist2(const void*, size_t) whenever possible
3932 - CLEANUP: Use IST_NULL whenever possible
3933 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
3934 - BUILD: quic: Implicit conversion between SSL related enums.
3935 - DOC: spoe: Add a note about fragmentation support in HAProxy
3936 - MINOR: contrib: add support for heartbeat control messages.
3937 - MINOR: contrib: Enhance peers dissector heuristic.
3938 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
3939 - CLEANUP: Reapply the ist2() replacement patch
3940 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
3941 - CLEANUP: Use isttest(const struct ist) whenever possible
3942 - Revert "CI: Pin VTest to a known good commit"
3943 - CLEANUP: backend: fix a wrong comment
3944 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
3945 - MINOR: backend: handle reuse for conns with no server as target
3946 - REGTESTS: test http-reuse if no server target
3947 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
3948 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
3949 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
3950 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
3951 - DOC: fix originalto except clause on destination address
3952 - CLEANUP: Use the ist() macro whenever possible
3953 - CLEANUP: Replace for loop with only a condition by while
3954 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
3955 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
3956 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
3957 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
3958 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
3959 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
3960 - MINOR: pools: double the local pool cache size to 1 MB
3961 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
3962 - CLEANUP: stream: explain why we queue the stream at the head of the server list
3963 - MEDIUM: backend: use a trylock when trying to grab an idle connection
3964 - REORG: tools: promote the debug PRNG to more general use as a statistical one
3965 - OPTIM: lb-random: use a cheaper PRNG to pick a server
3966 - MINOR: task: stop abusing the nice field to detect a tasklet
3967 - MINOR: task: move the nice field to the struct task only
3968 - MEDIUM: task: extend the state field to 32 bits
3969 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
3970 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
3971 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
3972 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
3973 - MINOR: server: don't read curr_used_conns multiple times
3974 - CLEANUP: global: reorder some fields to respect cache lines
3975 - CLEANUP: sockpair: silence a coverity check about fcntl()
3976 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
3977 - MINOR: server: add a global list of all known servers
3978 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
3979 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
3980 - MINOR: server: move actconns to the per-thread structure
3981 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
3982 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
3983 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
3984 - BUILD: Fix build when using clang without optimizing.
3985 - CLEANUP: assorted typo fixes in the code and comments
3986
Willy Tarreau8ab65c22021-02-26 22:49:10 +010039872021/02/26 : 2.4-dev10
3988 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
3989 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
3990 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
3991 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
3992 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
3993 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
3994 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
3995 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
3996 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
3997 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
3998 - MINOR: stream: add an "epoch" to figure which streams appeared when
3999 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
4000 - MINOR: streams: use one list per stream instead of a global one
4001 - MEDIUM: streams: do not use the streams lock anymore
4002 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
4003 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
4004 - MINOR: tasks: do not maintain the rqueue_size counter anymore
4005 - CLEANUP: tasks: use a less confusing name for task_list_size
4006 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
4007 - MINOR: task: limit the remote thread wakeup to the global runqueue only
4008 - MINOR: task: move the allocated tasks counter to the per-thread struct
4009 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
4010 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
4011 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
4012 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
4013 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
4014 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
4015 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
4016 - DOC: Update the module list in MAINTAINERS file
4017 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
4018 - DOC: Update the HTX API documentation
4019 - DOC: Update the filters guide
4020 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
4021 - MINOR: task: split the counts of local and global tasks picked
4022 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
4023 - MINOR: task: don't decrement then increment the local run queue
4024 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
4025 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
4026 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
4027 - MINOR: task: make tasklet wakeup latency measurements more accurate
4028 - MINOR: server: Be more strict on the server-state line parsing
4029 - MINOR: server: Only fill one array when parsing a server-state line
4030 - MEDIUM: server: Refactor apply_server_state() to make it more readable
4031 - CLEANUP: server: Rename state_line node to node instead of name_name
4032 - CLEANUP: server: Rename state_line structure into server_state_line
4033 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
4034 - MINOR: server: Be more strict when reading the version of a server-state file
4035 - MEDIUM: server: Store parsed params of a server-state line in the tree
4036 - MINOR: server: Remove cached line from global server-state tree when found
4037 - MINOR: server: Move loading state of servers in a dedicated function
4038 - MEDIUM: server: Use a tree to store local server-state lines
4039 - MINOR: server: Parse and store server-state lines in a dedicated function
4040 - MEDIUM: server: Don't load server-state file if a line is corrupted
4041 - REORG: server: Export and rename some functions updating server info
4042 - REORG: server-state: Move functions to deal with server-state in its own file
4043 - MINOR: server-state: Don't load server-state file for serverless proxies
4044 - CLEANUP: muxes: Remove useless if condition in show_fd function
4045 - BUG/MINOR: stats: fix compare of no-maint url suffix
4046 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
4047 - MINOR: ssl: mark the SSL handshake tasklet as heavy
4048 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
4049 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
4050 - MINOR: task: add one extra tasklet class: TL_HEAVY
4051 - MINOR: task: place the heavy elements in TL_HEAVY
4052 - MINOR: task: only limit TL_HEAVY tasks but not others
4053 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
4054 - MINOR: tools: Add net_addr structure describing a network addess
4055 - MINOR: tools: Add function to compare an address to a network address
4056 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
4057 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
4058 - REGTESTS: Add script to test except param for fowardedfor/originalto options
4059 - DOC: scheduler: add a diagram showing the different queues and their usages
4060 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
4061 - CLEANUP: config: replace a few free() with ha_free()
4062 - CLEANUP: vars: always zero the pointers after a free()
4063 - CLEANUP: ssl: remove a useless "if" before freeing an error message
4064 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
4065 - CLEANUP: ssl: use realloc() instead of free()+malloc()
4066
Willy Tarreau31dd3932021-02-20 13:30:31 +010040672021/02/20 : 2.4-dev9
4068 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
4069 - CLEANUP: check: fix get_check_status_info declaration
4070 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
4071 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
4072 - MINOR: stats: add helper to get status string
4073 - MEDIUM: contrib/prometheus-exporter: add listen stats
4074 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
4075 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
4076 - BUG/MINOR: dns: missing test writing in output channel in session handler
4077 - BUG/MINOR: dns: fix ring attach control on dns_session_new
4078 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
4079 - BUG/MAJOR: connection: prevent double free if conn selected for removal
4080 - BUG/MINOR: session: atomically increment the tracked sessions counter
4081 - REGTESTS: fix http_reuse_conn_hash proxy test
4082 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
4083 - MINOR: connection: remove pointers for prehash in conn_hash_params
4084 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
4085 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
4086 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
4087 - OPTIM: server: switch the actconn list to an mt-list
4088 - Revert "MINOR: threads: change lock_t to an unsigned int"
4089 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
4090 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
4091 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
4092 - OPTIM: lb-leastconn: do not unlink the server if it did not change
4093 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
4094 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
4095 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
4096 - MINOR: cli: add missing agent commands for set server
4097 - BUILD/MEDIUM: da Adding pcre2 support.
4098 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
4099 - REGTESTS: reorder reuse conn proxy protocol test
4100 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
4101 - MINOR: tasks: refine the default run queue depth
4102 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
4103 - MINOR: mux_h2: do not try to remove front conn from idle trees
4104 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
4105 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
4106 - MINOR: connection: allocate dynamically hash node for backend conns
4107 - DOC: DeviceAtlas documentation typo fix.
4108 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
4109 - BUG/MINOR: http-rules: Always replace the response status on a return action
4110 - BUG/MINOR: server: Init params before parsing a new server-state line
4111 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
4112 - MEDIUM: server: Don't introduce a new server-state file version
4113 - DOC: contrib/prometheus-exporter: remove htx reference
4114 - REGTESTS: contrib/prometheus-exporter: test NaN values
4115 - REGTESTS: contrib/prometheus-exporter: test well known labels
4116 - CI: github actions: switch to stable LibreSSL release
4117 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
4118 - MINOR: dynbuf: make the buffer wait queue per thread
4119 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
4120 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
4121 - MINOR: sched: have one runqueue ticks counter per thread
4122
Willy Tarreaudc626ec2021-02-13 10:17:27 +010041232021/02/13 : 2.4-dev8
4124 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
4125 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
4126 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
4127 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
4128 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
4129 - CLEANUP: assorted typo fixes in the code and comments
4130 - CLEANUP: check: fix some typo in comments
4131 - CLEANUP: tools: typo in `strl2irc` mention
4132 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
4133 - MEDIUM: ssl: add a rwlock for SSL server session cache
4134 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
4135 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
4136 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
4137 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
4138 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
4139 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
4140 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
4141 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
4142 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
4143 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
4144 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
4145 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
4146 - BUG/MINOR: server: re-align state file fields number
4147 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
4148 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
4149 - CLEANUP: remove unused variable assigned found by Coverity
4150 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
4151 - BUG/MINOR: backend: hold correctly lock when killing idle conn
4152 - MEDIUM: connection: protect idle conn lists with locks
4153 - MEDIUM: connection: replace idle conn lists by eb trees
4154 - MINOR: backend: search conn in idle/safe trees after available
4155 - MINOR: backend: search conn in idle tree after safe on always reuse
4156 - MINOR: connection: prepare hash calcul for server conns
4157 - MINOR: connection: use the srv pointer for the srv conn hash
4158 - MINOR: backend: compare conn hash for session conn reuse
4159 - MINOR: connection: use sni as parameter for srv conn hash
4160 - MINOR: reg-tests: test http-reuse with sni
4161 - MINOR: backend: rewrite alloc of stream target address
4162 - MINOR: connection: use dst addr as parameter for srv conn hash
4163 - MINOR: reg-test: test http-reuse with specific dst addr
4164 - MINOR: backend: rewrite alloc of connection src address
4165 - MINOR: connection: use src addr as parameter for srv conn hash
4166 - MINOR: connection: use proxy protocol as parameter for srv conn hash
4167 - MINOR: reg-tests: test http-reuse with proxy protocol
4168 - MINOR: doc: update http reuse for new eligilible connections
4169 - BUG/MINOR: backend: fix compilation without ssl
4170 - REGTESTS: adjust http_reuse_conn_hash requirements
4171 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
4172 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
4173 - CI: cirrus: update FreeBSD image to 12.2
4174 - MEDIUM: cli: add check-addr command
4175 - MEDIUM: cli: add agent-port command
4176 - MEDIUM: server: add server-states version 2
4177 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
4178 - MINOR: server: enhance error precision when applying server state
4179 - BUG/MINOR: server: Fix server-state-file-name directive
4180 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
4181 - BUG/MEDIUM: config: don't pick unset values from last defaults section
4182 - BUG/MINOR: stats: revert the change on ST_CONVDONE
4183 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
4184 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
4185 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
4186 - BUILD: proxy: add missing compression-t.h to proxy-t.h
4187 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
4188 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
4189 - MEDIUM: proxy: only take defaults when a default proxy is passed.
4190 - MINOR: proxy: move the defproxy freeing code to proxy.c
4191 - MINOR: proxy: always properly reset the just freed default instance pointers
4192 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
4193 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
4194 - BUG/MINOR: server: parse_server() must take a const for the defproxy
4195 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
4196 - MINOR: proxy: add a new capability PR_CAP_DEF
4197 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
4198 - MINOR: cfgparse: use a pointer to the current default proxy
4199 - MINOR: proxy: also store the name for a defaults section
4200 - MINOR: proxy: support storing defaults sections into their own tree
4201 - MEDIUM: proxy: store the default proxies in a tree by name
4202 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
4203 - MINOR: http: add baseq sample fetch
4204 - CLEANUP: tcpcheck: Remove a useless test on port variable
4205 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
4206 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
4207 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
4208 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
4209 - DOC: tune: explain the origin of block size for ssl.cachesize
4210 - MINOR: tcp: add support for defer-accept on FreeBSD.
4211 - MINOR: ring: adds new ring_init function.
4212 - CLEANUP: channel: fix comment in ci_putblk.
4213 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
4214 - BUG/MINOR: resolvers: fix attribute packed struct for dns
4215 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
4216 - MINOR: resolvers: renames type dns_resolvers to resolvers.
4217 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
4218 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
4219 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
4220 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
4221 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
4222 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
4223 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
4224 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
4225 - MEDIUM: resolvers: split resolving and dns message exchange layers.
4226 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
4227 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
4228 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
4229
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010042302021/02/05 : 2.4-dev7
4231 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
4232 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
4233 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
4234 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
4235 - CLEANUP: stats: improve field selection for frontend http fields
4236 - CLEANUP: assorted typo fixes in the code and comments
4237 - DOC: Improve documentation of the various hdr() fetches
4238 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
4239 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
4240 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
4241 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
4242 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
4243 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
4244 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
4245 - MINOR: reg-tests: add http-reuse test
4246 - CLEANUP: srv: fix comment for pool-max-conn
4247 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
4248 - REORG: backend: simplify conn_backend_get
4249 - MINOR: ssl: Server ssl context prepare function refactoring
4250 - MINOR: ssl: Certificate chain loading refactorization
4251 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
4252 - MEDIUM: ssl: Enable backend certificate hot update
4253 - MINOR: ssl: Remove client_crt member of the server's ssl context
4254 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
4255 - CLEANUP: ssl: remove SSL_CTX function parameter
4256 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
4257 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
4258 - CI: Fix DEBUG_STRICT definition for Coverity
4259 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
4260 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
4261 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
4262 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
4263 - BUG/MEDIUM: session: only retrieve ready idle conn from session
4264 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
4265 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
4266 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
4267 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
4268 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
4269 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
4270 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
4271 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
4272 - MINOR: stream: Add a function to validate TCP to H1 upgrades
4273 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
4274 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
4275 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
4276 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
4277 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
4278 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
4279 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
4280 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
4281 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
4282 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
4283 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
4284 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
4285 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
4286 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
4287 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
4288 - MINOR: htx: Add a function to know if a block is the only one in a message
4289 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
4290 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
4291 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
4292 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
4293 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
4294 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
4295 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
4296 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
4297 - MINOR: h1: reject websocket handshake if missing key
4298 - MEDIUM: h1: generate WebSocket key on response if needed
4299 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
4300 - MEDIUM: h2: parse Extended CONNECT reponse to htx
4301 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
4302 - MEDIUM: h1: add a WebSocket key on handshake if needed
4303 - MEDIUM: mux_h2: generate Extended CONNECT response
4304 - MEDIUM: h2: parse Extended CONNECT request to htx
4305 - MEDIUM: h2: send connect protocol h2 settings
4306 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
4307 - MINOR: vtc: add websocket test
4308 - REGTESTS: Fix required versions for several scripts
4309 - REGTEST: Don't use the websocket to validate http-check
4310 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
4311 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
4312 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
4313 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
4314 - REGTESTS: set_ssl_server_cert.vtc: set as broken
4315 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
4316 - BUG/MINOR: backend: check available list allocation for reuse
4317 - CI: Fix the coverity builds
4318 - DOC: management: fix "show resolvers" alphabetical ordering
4319 - MINOR: tools: add print_time_short() to print a condensed duration value
4320 - MINOR: activity: make profiling more manageable
4321 - MINOR: activity: declare a new structure to collect per-function activity
4322 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
4323 - MINOR: activity: also report collected tasks stats in "show profiling"
4324 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
4325 - MINOR: activity: add a new "show tasks" command to list currently active tasks
4326 - MINOR: listener: export accept_queue_process
4327 - MINOR: session: export session_expire_embryonic()
4328 - MINOR: muxes: export the timeout and shutr task handlers
4329 - MINOR: checks: export a few functions that appear often in trace dumps
4330 - MINOR: peers: export process_peer_sync() to improve traces
4331 - MINOR: stick-tables: export process_table_expire()
4332 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
4333 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
4334 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
4335 - MINOR: http-conv: Don't check if argument list is set in sample converters
4336 - MINOR: sample: Don't check if argument list is set in sample fetches
4337 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
4338 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
4339 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
4340 - MINOR: contrib/prometheus-exporter: declare states for objects
4341 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
4342 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
4343 - MINOR: listener: export manage_global_listener_queue()
4344 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
4345 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
4346 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
4347 - MINOR: checks: Add function to get the result code corresponding to a status
4348 - MAJOR: contrib/prometheus-exporter: move health check status to labels
4349 - MINOR: contrib/prometheus-exporter: improve service status description field
4350 - MINOR: stats: improve pending connections description
4351 - MINOR: stats: improve max stats descriptions
4352 - MINOR: contrib/prometheus-exporter: use stats desc when possible
4353 - MINOR: contrib/prometheus-exporter: add uweight field
4354 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
4355 - CLEANUP: contrib/prometheus-exporter: remove unused includes
4356 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
4357 - CLEANUP: contrib/prometheus-exporter: remove description in README
4358 - DOC: contrib/prometheus-exporter: Add missing metrics in README
4359 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
4360 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
4361 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
4362 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
4363 - BUG/MINOR: mux_h2: fix incorrect stat titles
4364 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
4365 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
4366 - MINOR: server: Don't set the check port during the update from a state file
4367 - MINOR: dns: Don't set the check port during a server dns resolution
4368 - MEDIUM: check: remove checkport checkaddr flag
4369 - MEDIUM: server: adding support for check_port in server state
4370 - BUG/MINOR: check: consitent way to set agentaddr
4371 - MEDIUM: check: align agentaddr and agentport behaviour
4372 - DOC: server: Add missing params in comment of the server state line parsing
4373 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
4374 - REGTESTS: mark http-check-send.vtc as 2.4-only
4375 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
4376 - BUG/MINOR: ssl: do not try to use early data if not configured
4377 - REGTESTS: unbreak http-check-send.vtc
4378 - MINOR: cli/show_fd: report local and report ports when known
4379 - BUILD: Makefile: move REGTESTST_TYPE default setting
4380 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
4381 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
4382 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
4383 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
4384
Willy Tarreau24c41d52021-01-22 16:19:46 +010043852021/01/22 : 2.4-dev6
4386 - MINOR: converter: adding support for url_enc
4387 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
4388 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
4389 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
4390 - BUILD: Makefile: exclude broken tests by default
4391 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
4392 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
4393 - MINOR: contrib/prometheus-exporter: export build_info
4394 - DOC: fix some spelling issues over multiple files
4395 - CLEANUP: Fix spelling errors in comments
4396 - SCRIPTS: announce-release: fix typo in help message
4397 - CI: github: add a few more words to the codespell ignore list
4398 - DOC: Add maintainers for the Prometheus exporter
4399 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
4400 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
4401 - CLEANUP: sample: remove uneeded check in json validation
4402 - MINOR: reg-tests: add a way to add service dependency
4403 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
4404 - BUG/MINOR: reg-tests: fix service dependency script
4405 - MINOR: reg-tests: add base prometheus test
4406 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
4407 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
4408 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
4409 - BUG/MINOR: init: enforce strict-limits when using master-worker
4410 - MINOR: contrib/prometheus-exporter: avoid connection close header
4411 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
4412 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
4413 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
4414 - MINOR: server: Forbid server definitions in frontend sections
4415 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
4416 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
4417 - MINOR: pattern: add the missing generation ID manipulation functions
4418 - MINOR: peers: Add traces for peer control messages.
4419 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
4420 - BUILD: peers: fix build warning about unused variable
4421 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
4422 - MINOR: cache: Do not store responses with an unknown encoding
4423 - BUG/MINOR: peers: Possible appctx pointer dereference.
4424 - MINOR: build: discard echoing in help target
4425 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
4426 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
4427 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
4428 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
4429 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
4430 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
4431 - CLEANUP: tools: make resolve_sym_name() take a const pointer
4432 - CLEANUP: cli: make "show fd" use a const connection to access other fields
4433 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
4434 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
4435 - MINOR: ssl: provide a "show fd" helper to report important SSL information
4436 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
4437 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
4438 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
4439 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
4440 - CI: Pin VTest to a known good commit
4441 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
4442 - MINOR: cli/show_fd: report some easily detectable suspicious states
4443 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
4444 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
4445 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
4446 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
4447 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
4448 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
4449 - MINOR: http: Add HTTP 501-not-implemented error message
4450 - MINOR: muxes: Add exit status for errors about not implemented features
4451 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
4452 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
4453 - DOC: Remove space after comma in converter signature
4454 - DOC: Rename '<var name>' to '<var>' in converter signature
4455 - MINOR: stats: duplicate 3 fields in bytes in info
4456 - MINOR: stats: add new start time field
4457 - MINOR: contrib/prometheus-exporter: merge info description from stats
4458 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
4459 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
4460 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
4461 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
4462 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
4463 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
4464 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
4465 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
4466 - MINOR: debug: always export the my_backtrace function
4467 - MINOR: debug: extract the backtrace dumping code to its own function
4468 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
4469 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
4470 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
4471 - BUILD: debug: fix build warning by consuming the write() result
4472 - MINOR: lua: remove unused variable
4473 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
4474
Willy Tarreau421ed392021-01-06 17:41:32 +010044752021/01/06 : 2.4-dev5
4476 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
4477 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
4478 - MINOR: time: increase the minimum wakeup interval to 60s
4479 - MINOR: check: do not ignore a connection header for http-check send
4480 - REGTESTS: complete http-check test
4481 - CI: travis-ci: drop coverity scan builds
4482 - MINOR: atomic: don't use ; to separate instruction on aarch64.
4483 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
4484 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
4485 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
4486 - CLEANUP: xxhash: remove the unused src/xxhash.c
4487 - MINOR: sample: add the xxh3 converter
4488 - REGTESTS: add tests for the xxh3 converter
4489 - MINOR: protocol: Create proto_quic QUIC protocol layer.
4490 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
4491 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
4492 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
4493 - MINOR: connection: Add a new xprt to connection.
4494 - MINOR: ssl: Export definitions required by QUIC.
4495 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
4496 - MINOR: tools: Add support for QUIC addresses parsing.
4497 - MINOR: quic: Add definitions for QUIC protocol.
4498 - MINOR: quic: Import C source code files for QUIC protocol.
4499 - MINOR: listener: Add QUIC info to listeners and receivers.
4500 - MINOR: server: Add QUIC definitions to servers.
4501 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
4502 - MINOR: ssl: QUIC transport parameters parsing.
4503 - MINOR: quic: QUIC socket management finalization.
4504 - MINOR: cfgparse: QUIC default server transport parameters init.
4505 - MINOR: quic: Enable the compilation of QUIC modules.
4506 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
4507 - MINOR: quic: Attempt to make trace more readable
4508 - MINOR: quic: Make usage of the congestion control window.
4509 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
4510 - MINOR: quic: Code reordering to help in reviewing/modifying.
4511 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
4512 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
4513 - MINOR: quic: Update the initial salt to that of draft-29.
4514 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
4515 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
4516 - MINOR: quic: Add traces for quic_packet_encrypt().
4517 - MINOR: cache: Refactoring of secondary_key building functions
4518 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
4519 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
4520 - MINOR: cache: Add specific secondary key comparison mechanism
4521 - MINOR: http: Add helper functions to trim spaces and tabs
4522 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
4523 - REGTESTS: cache: Simplify vary.vtc file
4524 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
4525 - MINOR: cache: Remove redundant test in http_action_req_cache_use
4526 - MINOR: cache: Replace the "process-vary" option's expected values
4527 - CI: GitHub Actions: enable daily Coverity scan
4528 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
4529 - MEDIUM: stick-tables: Add srvkey option to stick-table
4530 - REGTESTS: add test for stickiness using "srvkey addr"
4531 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
4532 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
4533 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
4534 - MINOR: lua: Use consistent error message 'memory allocation failed'
4535 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
4536 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
4537 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
4538 - MINOR: qpack: Add static header table definitions for QPACK.
4539 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
4540 - CLEANUP: quic: Remove useless QUIC event trace definitions.
4541 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
4542 - MINOR: quic: Pass quic_conn struct to frame parsers.
4543 - BUG/MINOR: quic: Wrong STREAM frames parsing.
4544 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
4545 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
4546 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
4547 - MINOR: ssl: make tlskeys_list_get_next() take a list element
4548 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
4549 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
4550 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
4551 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
4552 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
4553 - CLEANUP: spoe: fix typo on `var_check_arg` comment
4554 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
4555 - CI: github actions: build several popular "contrib" tools
4556 - DOC: Improve the message printed when running `make` w/o `TARGET`
4557 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
4558 - REGTESTS: add unresolvable servers to srvkey-addr
4559 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
4560 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
4561 - SCRIPTS: improve announce-release to support different tag and versions
4562 - SCRIPTS: make announce release support preparing announces before tag exists
4563 - CLEANUP: assorted typo fixes in the code and comments
4564 - BUG/MINOR: srv: do not init address if backend is disabled
4565 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
4566 - CLEANUP: assorted typo fixes in the code and comments
4567 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
4568
Willy Tarreau4d711762020-12-21 11:54:56 +010045692020/12/21 : 2.4-dev4
4570 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
4571 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
4572 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
4573 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
4574 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
4575 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
4576 - MEDIUM: cache: Avoid going over duplicates lists too often
4577 - MINOR: cache: Add a max-secondary-entries cache option
4578 - CI: cirrus: drop CentOS 6 builds
4579 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
4580 - MINOR: vars: replace static functions with global ones
4581 - MINOR: opentracing: add ARGC_OT enum
4582 - CONTRIB: opentracing: add the OpenTracing filter
4583 - DOC: opentracing: add the OpenTracing filter section
4584 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
4585 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
4586 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
4587 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
4588 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
4589 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
4590 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
4591 - CLEANUP: debug: mark the RNG's seed as unsigned
4592 - CONTRIB: halog: fix build issue caused by %L printf format
4593 - CONTRIB: halog: mark the has_zero* functions unused
4594 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
4595 - CONTRIB: debug: address "poll" utility build on non-linux platforms
4596 - BUILD: plock: remove dead code that causes a warning in gcc 11
4597 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
4598 - BUG/MINOR: dns: SRV records ignores duplicated AR records
4599 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
4600 - CLEANUP: assorted typo fixes in the code and comments
4601 - DOC: assorted typo fixes in the documentation
4602 - CI: codespell: whitelist "te" and "nd" words
4603
Willy Tarreaua786c412020-12-11 17:22:51 +010046042020/12/11 : 2.4-dev3
4605 - MINOR: log: Logging HTTP path only with %HPO
4606 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
4607 - MINOR: traces: add a new level "error" below the "user" level
4608 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
4609 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
4610 - BUG/MINOR: lua: missing "\n" in error message
4611 - BUG/MINOR: lua: lua-load doesn't check its parameters
4612 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
4613 - BUG/MINOR: lua: Some lua init operation are processed unsafe
4614 - MINOR: actions: Export actions lookup functions
4615 - MINOR: actions: add a function returning a service pointer from its name
4616 - MINOR: cli: add a function to look up a CLI service description
4617 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
4618 - MINOR: cache: Improve accept_encoding_normalizer
4619 - MINOR: cache: Add entry to the tree as soon as possible
4620 - BUG/MINOR: trace: Wrong displayed trace level
4621 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
4622 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
4623 - MEDIUM: lua-thread: use atomics for memory accounting
4624 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
4625 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
4626 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
4627 - MINOR: lua-thread: Use NULL context for main lua state
4628 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
4629 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
4630 - MINOR: lua-thread: Split hlua_init() function in two parts
4631 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
4632 - MINOR: lua-thread: Split hlua_load function in two parts
4633 - MINOR: lua-thread: Split hlua_post_init() function in two parts
4634 - MINOR: lua-thread: Add the "thread" core variable
4635 - MEDIUM: lua-thread: No longer use locked context in initialization parts
4636 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
4637 - MINOR: lua-thread: Replace global gL var with an array of states
4638 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
4639 - MINOR: lua-thread: Replace state_from by state_id
4640 - MINOR: lua-thread: Store each function reference and init reference in array
4641 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
4642 - MINOR: lua-thread: Add verbosity in errors
4643 - REGTESTS: add a test for the threaded Lua code
4644 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
4645 - DOC/MINOR: Fix formatting in Management Guide
4646 - MINOR: cache: Do not store stale entry
4647 - MINOR: cache: Add extra "cache-control" value checks
4648 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
4649 - MINOR: cache: Consider invalid Age values as stale
4650 - BUG/MEDIUM: lua-thread: some parts must be initialized once
4651 - BUG/MINOR: lua-thread: close all states on deinit
4652 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
4653 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
4654 - MINOR: session: Add the idle duration field into the session
4655 - MINOR: mux-h1: Update session idle duration when data are received
4656 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
4657 - MINOR: logs: Use session idle duration when no stream is provided
4658 - MINOR: stream: Always get idle duration from the session
4659 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
4660 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
4661 - MINOR: muxes: Remove get_cs_info callback function now useless
4662 - MINOR: stream: Pass an optional input buffer when a stream is created
4663 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
4664 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
4665 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
4666 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
4667 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
4668 - MINOR: mux-h1: Add a rxbuf into the H1 stream
4669 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
4670 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
4671 - MINOR: mux-h1: rework the h1_timeout_task() function
4672 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
4673 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
4674 - MINOR: mux-h1: Rework how shutdowns are handled
4675 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
4676 - MINOR: mux-h1: Process next request for IDLE connection only
4677 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
4678 - MINOR: stick-tables: Add functions to update some values of a tracked counter
4679 - MINOR: session: Add functions to increase http values of tracked counters
4680 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
4681 - MINOR: logs: Get the multiplexer exist status when no stream is provided
4682 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
4683 - MAJOR: mux-h1: Create the client stream as later as possible
4684 - DOC: config: Add notes about errors emitted by H1 mux
4685 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
4686 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
4687 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
4688 - MEDIUM: http-ana: Don't process partial or empty request anymore
4689 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
4690 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
4691 - REGTESTS: Fix proxy_protocol_tlv_validation
4692 - MINOR: http-ana: Properly set message flags from the start-line flags
4693 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
4694 - MINOR: protocol: add a ->set_port() helper to address families
4695 - MINOR: listener: automatically set the port when creating listeners
4696 - MINOR: listener: now use a generic add_listener() function
4697 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
4698 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
4699 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
4700 - MINOR: protocol: remove the redundant ->sock_domain field
4701 - MINOR: protocol: export protocol definitions
4702 - CLEANUP: protocol: group protocol struct members by usage
4703 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
4704 - MINOR: connection: use the control layer's init/close
4705 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
4706 - BUG/MAJOR: spoa/python: Fixing return None
4707 - DOC: spoa/python: Fixing typo in IP related error messages
4708 - DOC: spoa/python: Rephrasing memory related error messages
4709 - DOC: spoa/python: Fixing typos in comments
4710 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
4711 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
4712 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
4713 - BUG/MEDIUM: spoa/python: Fixing references to None
4714 - DOC: email change of the DeviceAtlas maintainer
4715 - MINOR: cache: Dump secondary entries in "show cache"
4716 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
4717 - MINOR: stream-int: don't touch polling anymore on shutdown
4718 - MINOR: connection: implement cs_drain_and_close()
4719 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
4720 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
4721 - MINOR: checks: don't call conn_cond_update_polling() anymore
4722 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
4723 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
4724 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
4725 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
4726 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
4727 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
4728 - BUG/MINOR: tools: Reject size format not starting by a digit
4729 - MINOR: action: define enum for timeout type of the set-timeout rule
4730 - MINOR: stream: prepare the hot refresh of timeouts
4731 - MEDIUM: stream: support a dynamic server timeout
4732 - MEDIUM: stream: support a dynamic tunnel timeout
4733 - MEDIUM: http_act: define set-timeout server/tunnel action
4734 - MINOR: frontend: add client timeout sample fetch
4735 - MINOR: backend: add timeout sample fetches
4736 - MINOR: stream: add sample fetches
4737 - MINOR: stream: add timeout sample fetches
4738 - REGTESTS: add regtest for http-request set-timeout
4739 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
4740 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
4741 - MINOR: connection: remove sock-specific code from conn_sock_send()
4742 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
4743 - MINOR: protocol: add a ->drain() function at the connection control layer
4744 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
4745 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
4746 - MEDIUM: connection: make use of the control layer check_events/ignore_events
4747
Willy Tarreauc94431b2020-12-01 08:15:26 +010047482020/12/01 : 2.4-dev2
4749 - BUILD: Make DEBUG part of .build_opts
4750 - BUILD: Show the value of DEBUG= in haproxy -vv
4751 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
4752 - MINOR: stream: Add level 7 retries on http error 401, 403
4753 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
4754 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
4755 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
4756 - BUG/MEDIUM: http_act: Restore init of log-format list
4757 - DOC: better describes how to configure a fallback crt
4758 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
4759 - MINOR: cache: Prepare helper functions for Vary support
4760 - MEDIUM: cache: Add the Vary header support
4761 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
4762 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
4763 - BUG/MAJOR: peers: fix partial message decoding
4764 - DOC: cache: Add new caching limitation information
4765 - DOC: cache: Add information about Vary support
4766 - DOC: better document the config file format and escaping/quoting rules
4767 - DOC: Clarify %HP description in log-format
4768 - CI: github actions: update LibreSSL to 3.3.0
4769 - CI: github actions: enable 51degrees feature
4770 - MINOR: fd/threads: silence a build warning with threads disabled
4771 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
4772 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
4773 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
4774 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
4775 - MINOR: config: Deprecate and ignore tune.chksize global option
4776 - MINOR: config: Add a warning if tune.chksize is used
4777 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
4778 - MINOR: check: Always increment check health counter on CONPASS
4779 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
4780 - DOC: config: Make disable-on-404 option clearer on transition conditions
4781 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
4782 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
4783 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
4784 - MINOR: debug: add "debug dev sched" to stress the scheduler.
4785 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
4786 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
4787 - MINOR: task: remove tasklet_insert_into_tasklet_list()
4788 - MINOR: task: perform atomic counter increments only once per wakeup
4789 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
4790 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
4791 - BUG/MEDIUM: local log format regression.
4792
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010047932020/11/21 : 2.4-dev1
4794 - MINOR: ist: Add istend() function to return a pointer to the end of the string
4795 - MINOR: sample: Add converters to parse FIX messages
4796 - REGTEST: converter: Add a regtest for fix converters
4797 - MINOR: sample: Add converts to parses MQTT messages
4798 - REGTEST: converter: Add a regtest for MQTT converters
4799 - MINOR: compat: automatically include malloc.h on glibc
4800 - MEDIUM: pools: call malloc_trim() from pool_gc()
4801 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
4802 - MINOR: pattern: move the update revision to the pat_ref, not the expression
4803 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
4804 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
4805 - MINOR: pattern: make the delete and prune functions more generic
4806 - MEDIUM: pattern: link all final elements from the reference
4807 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
4808 - MINOR: pattern: remerge the list and tree deletion functions
4809 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
4810 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
4811 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
4812 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
4813 - MINOR: pattern: store a generation number in the reference patterns
4814 - MEDIUM: pattern: only match patterns that match the current generation
4815 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
4816 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
4817 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
4818 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
4819 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
4820 - MINOR: pattern: prepare removal of a pattern from the list head
4821 - MEDIUM: pattern: turn the pattern chaining to single-linked list
4822 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
4823 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
4824 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
4825 - MINOR: ssl: instantiate stats module
4826 - MINOR: ssl: count client hello for stats
4827 - MINOR: ssl: add counters for ssl sessions
4828 - DOC: config: Fix a typo on ssl_c_chain_der
4829 - MINOR: server: remove idle lock in srv_cleanup_connections
4830 - BUILD: ssl: silence build warning on uninitialised counters
4831 - BUILD: http-htx: fix build warning regarding long type in printf
4832 - REGTEST: ssl: test wildcard and multi-type + exclusions
4833 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
4834 - CI: Expand use of GitHub Actions for CI
4835 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
4836 - BUG/MINOR: pattern: a sample marked as const could be written
4837 - BUG/MINOR: lua: set buffer size during map lookups
4838 - MEDIUM: cache: Change caching conditions
4839 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
4840 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
4841 - MINOR: peers: Add traces to peer_treat_updatemsg().
4842 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
4843 - BUG/MINOR: peers: Missing TX cache entries reset.
4844 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
4845 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
4846 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
4847 - BUG/MEDIUM: check: reuse srv proto only if using same mode
4848 - MINOR: check: report error on incompatible proto
4849 - MINOR: check: report error on incompatible connect proto
4850 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
4851 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
4852 - MINOR: spoe: Don't close connection in sync mode on processing timeout
4853 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
4854 - MINOR: init: Fix the prototype for per-thread free callbacks
4855 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
4856 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
4857 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
4858 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
4859 - REGTESTS: Add sample_fetches/cook.vtc
4860 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
4861 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
4862 - CLEANUP: flt-trace: Remove unused random-parsing option
4863 - MINOR: flt-trace: Add an option to inhibits trace messages
4864 - MINOR: flt-trace: Use a bitfield for the trace options
4865 - REGTESTS: Add a script to test the random forwarding with several filters
4866 - REGTESTS: mark the abns test as broken again
4867 - REGTESTS: converter: add url_dec test
4868 - CI: Stop hijacking the hosts file
4869 - CI: Make the h2spec workflow more consistent with the VTest workflow
4870 - CI: travis-ci: remove amd64, osx builds
4871 - CI: travis-ci: arm64 are not allowed to fail anymore
4872 - DOC: add missing 3.10 in the summary
4873 - MINOR: ssl: remove client hello counters
4874 - MEDIUM: stats: add counters for failed handshake
4875 - MINOR: ssl: create common ssl_ctx init
4876 - MEDIUM: cli/ssl: configure ssl on server at runtime
4877 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
4878 - DOC: coding-style: update a few rules about pointers
4879 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
4880 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
4881 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
4882 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
4883 - BUG/MEDIUM: ssl: error when no certificate are found
4884 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
4885 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
4886 - CI: Github Actions: enable prometheus exporter
4887 - CI: Github Actions: remove LibreSSL-3.0.2 builds
4888 - CI: Github Actions: enable BoringSSL builds
4889 - CI: travis-ci: remove builds migrated to GH actions
4890 - BUILD: makefile: enable crypt(3) for OpenBSD
4891 - CI: Github Action: run "apt-get update" before packages restore
4892 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
4893 - CI: Pass the github.event_name to matrix.py
4894 - CI: Clean up Windows CI
4895 - DOC: clarify how to create a fallback crt
4896 - CLEANUP: connection: do not use conn->owner when the session is known
4897 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
4898 - REGTESTS: mark proxy_protocol_random_fail as broken
4899 - BUG/MINOR: http_htx: Fix searching headers by substring
4900 - MINOR: http_act: Add -m flag for del-header name matching method
4901
Willy Tarreau1db55792020-11-05 17:20:35 +010049022020/11/05 : 2.4-dev0
4903 - MINOR: version: it's development again.
4904 - DOC: mention in INSTALL that it's development again
4905
Willy Tarreau1c0a7222020-11-05 17:04:53 +010049062020/11/05 : 2.3.0
4907 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
4908 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
4909 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
4910 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
4911 - BUG/MINOR: checks: Report a socket error before any connection attempt
4912 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
4913 - MINOR: server: Copy configuration file and line for server templates
4914 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
4915 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
4916 - MINOR: debug: don't count free(NULL) in memstats
4917 - BUG/MINOR: filters: Skip disabled proxies during startup only
4918 - MINOR: mux_h2: capitalize frame type in stats
4919 - MINOR: mux_h2: add stat for total count of connections/streams
4920 - MINOR: stats: do not display empty stat module title on html
4921 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
4922 - BUG/MEDIUM: listener: only enable a listening listener if needed
4923 - BUG/MEDIUM: listener: never suspend inherited sockets
4924 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
4925 - MINOR: fd: add fd_want_recv_safe()
4926 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
4927 - REGTESTS: mark abns_socket as working now
4928 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
4929 - MINOR: sock: add a check against cross worker<->master socket activities
4930 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
4931 - BUG/MEDIUM: server: make it possible to kill last idle connections
4932 - MINOR: mworker/cli: the master CLI use its own applet
4933 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
4934 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
4935 - DOC: Add dns as an available domain to show stat
4936 - BUILD: makefile: usual reorder of objects for faster builds
4937 - DOC: update INSTALL to mention that TCC is supported
4938 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
4939 - MINOR: version: mention that it's stable now
4940
Willy Tarreaubd703e52020-10-31 13:17:06 +010049412020/10/31 : 2.3-dev9
4942 - CLEANUP: http_ana: remove unused assignation of `att_beg`
4943 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
4944 - BUG/MINOR: log: fix memory leak on logsrv parse error
4945 - BUG/MINOR: log: fix risk of null deref on error path
4946 - BUILD: ssl: more elegant OpenSSL early data support check
4947 - CI: github actions: update h2spec to 2.6.0
4948 - BUG/MINOR: cache: Check the return value of http_replace_res_status
4949 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
4950 - MINOR: cache: Process the If-Modified-Since header in conditional requests
4951 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
4952 - MINOR: mux-h2: register a stats module
4953 - MINOR: mux-h2: add counters instance to h2c
4954 - MINOR: mux-h2: add stats for received frame types
4955 - MINOR: mux-h2: report detected error on stats
4956 - MINOR: mux-h2: count open connections/streams on stats
4957 - BUG/MINOR: server: fix srv downtime calcul on starting
4958 - BUG/MINOR: server: fix down_time report for stats
4959 - BUG/MINOR: lua: initialize sample before using it
4960 - MINOR: cache: Add Expires header value parsing
4961 - MINOR: ist: Add a case insensitive istmatch function
4962 - BUG/MINOR: cache: Manage multiple values in cache-control header value
4963 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
4964 - MINOR: pattern: make pat_ref_append() return the newly added element
4965 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
4966 - MINOR: pattern: export pat_ref_push()
4967 - CLEANUP: pattern: use calloc() rather than malloc for structures
4968 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
4969
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020049702020/10/24 : 2.3-dev8
4971 - MINOR: backend: replace the lbprm lock with an rwlock
4972 - MINOR: lb/map: use seek lock and read locks where appropriate
4973 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
4974 - MINOR: lb/first: use a read lock in fas_get_next_server()
4975 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
4976 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
4977 - BUILD: ssl: make BoringSSL use its own version numbers
4978 - CLEANUP: threads: don't register an initcall when not debugging
4979 - MINOR: threads: change lock_t to an unsigned int
4980 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
4981 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
4982 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
4983 - MEDIUM: config: report that "nbproc" is deprecated
4984 - BUG/MINOR: listener: close before free in `listener_accept`
4985 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
4986 - BUG/MINOR: queue: properly report redistributed connections
4987 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
4988 - BUILD: makefile: add entries to build common debugging tools
4989 - BUG/MEDIUM: server: support changing the slowstart value from state-file
4990 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
4991 - MINOR: http: Add etag comparison function
4992 - MEDIUM: cache: Store the ETag information in the cache_entry
4993 - MEDIUM: cache: Add support for 'If-None-Match' request header
4994 - REGTEST: cache: Add if-none-match test case
4995 - CLEANUP: compression: Make use of http_get_etag_type()
4996 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
4997 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
4998 - MINOR: threads/debug: only report used lock stats
4999 - MINOR: threads/debug: only report lock stats for used operations
5000 - MINOR: proxy; replace the spinlock with an rwlock
5001 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
5002 - MINOR: proxy/cli: only take a read lock in "show errors"
5003 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
5004 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
5005 - MINOR: queue: reduce the locked area in pendconn_add()
5006 - OPTIM: queue: make the nbpend counters atomic
5007 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
5008 - MINOR: leastconn: take the queue length into account when queuing servers
5009 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
5010 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
5011 - MINOR: stats: support the "up" output modifier for "show stat"
5012 - MINOR: stats: also support a "no-maint" show stat modifier
5013 - MINOR: stats: indicate the number of servers in a backend's status
5014 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
5015 - REGTEST: ssl: test "set ssl cert" with separate key / crt
5016 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
5017 - MINOR: stats: report server's user-configured weight next to effective weight
5018 - CI: travis-ci: switch to Ubuntu 20.04
5019 - CONTRIB: release-estimator: Add release estimating tool
5020 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
5021 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
5022
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020050232020/10/17 : 2.3-dev7
5024 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
5025 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
5026 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
5027 - MINOR: fd: report an error message when failing initial allocations
5028 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
5029 - MINOR: sock: add sock_accept_conn() to test a listening socket
5030 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
5031 - MINOR: sockpair: implement the .rx_listening function
5032 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
5033 - CLEANUP: unix: make use of sock_accept_conn() where relevant
5034 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
5035 - CONTRIB: tcploop: implement a disconnect operation 'D'
5036 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
5037 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
5038 - BUG/MINOR: connection: fix loop iter on connection takeover
5039 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
5040 - MINOR: connection: improve list api usage
5041 - MINOR: mux/connection: add a new mux flag for HOL risk
5042 - MINOR: connection: don't check priv flag on free
5043 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
5044 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
5045 - MEDIUM: h2: remove conn from session on detach
5046 - MEDIUM: fcgi: remove conn from session on detach
5047 - DOC: Describe reuse safe for HOL handling
5048 - MEDIUM: proxy: remove obsolete "mode health"
5049 - MEDIUM: proxy: remove obsolete "monitor-net"
5050 - CLEANUP: protocol: remove the ->drain() function
5051 - CLEANUP: fd: finally get rid of fd_done_recv()
5052 - MINOR: connection: make sockaddr_alloc() take the address to be copied
5053 - MEDIUM: listener: allocate the connection before queuing a new connection
5054 - MINOR: session: simplify error path in session_accept_fd()
5055 - MINOR: connection: add new error codes for accept_conn()
5056 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
5057 - MINOR: protocol: add a new function accept_conn()
5058 - MINOR: sock: implement sock_accept_conn() to accept a connection
5059 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
5060 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
5061 - MEDIUM: listener: remove the second pass of fd manipulation at the end
5062 - MINOR: protocol: add a default I/O callback and put it into the receiver
5063 - MINOR: log: set the UDP receiver's I/O handler in the receiver
5064 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
5065 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
5066 - DOC: improve the documentation for "option nolinger"
5067 - BUG/MEDIUM: proxy: properly stop backends
5068 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
5069 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
5070 - MINOR: threads: add the transitions to/from the seek state
5071 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
5072 - BUILD: listener: avoir a build warning when threads are disabled
5073 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
5074 - MINOR: ssl: add volatile flags to ssl samples
5075 - MEDIUM: backend: reuse connection if using a static sni
5076 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
5077 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
5078 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
5079 - DOC: fix typo in MAX_SESS_STKCTR
5080
Willy Tarreaub7ffe192020-10-10 10:45:13 +020050812020/10/10 : 2.3-dev6
5082 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
5083 - BUILD: makefile: Update feature flags for OpenBSD
5084 - DOC: agent-check: fix typo in "fail" word expected reply
5085 - DOC: crt: advise to move away from cert bundle
5086 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
5087 - REGTEST: fix host part in balance-uri-path-only.vtc
5088 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
5089 - REGTEST: the iif converter test requires 2.3
5090 - REGTEST: make agent-check.vtc require 1.8
5091 - REGTEST: make abns_socket.vtc require 1.8
5092 - REGTEST: make map_regm_with_backref require 1.7
5093 - BUILD: makefile: Update feature flags for FreeBSD
5094 - OPTIM: backend/random: never queue on the server, always on the backend
5095 - OPTIM: backend: skip LB when we know the backend is full
5096 - BUILD: makefile: Fix building with closefrom() support enabled
5097 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
5098 - MINOR: tools: support for word expansion of environment in parse_line
5099 - BUILD: tools: fix minor build issue on isspace()
5100 - BUILD: makefile: Enable closefrom() support on Solaris
5101 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
5102 - MINOR: ssl: Add error if a crt-list might be truncated
5103 - MINOR: ssl: remove uneeded check in crtlist_parse_file
5104 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
5105 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
5106 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
5107 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
5108 - DOC: ssl: new "cert bundle" behavior
5109 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
5110 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
5111 - MINOR: counters: fix a typo in comment
5112 - BUG/MINOR: stats: fix validity of the json schema
5113 - REORG: stats: export some functions
5114 - MINOR: stats: add stats size as a parameter for csv/json dump
5115 - MINOR: stats: hide px/sv/li fields in applet struct
5116 - REORG: stats: extract proxy json dump
5117 - REORG: stats: extract proxies dump loop in a function
5118 - MINOR: hlua: Display debug messages on stderr only in debug mode
5119 - MINOR: stats: define the concept of domain for statistics
5120 - MINOR: stats: define additional flag px cap on domain
5121 - MEDIUM: stats: add delimiter for static proxy stats on csv
5122 - MEDIUM: stats: define an API to register stat modules
5123 - MEDIUM: stats: add abstract type to store counters
5124 - MEDIUM: stats: integrate static proxies stats in new stats
5125 - MINOR: stats: support clear counters for dynamic stats
5126 - MINOR: stats: display extra proxy stats on the html page
5127 - MINOR: stats: add config "stats show modules"
5128 - MINOR: dns/stats: integrate dns counters in stats
5129 - MINOR: stats: remove for loop declaration
5130 - DOC: ssl: fix typo about ocsp files
5131 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
5132 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
5133 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
5134 - CLEANUP: cache: Fix leak of cconf->c.name during config check
5135 - CLEANUP: ssl: Release cached SSL sessions on deinit
5136 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
5137 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
5138 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
5139 - CLEANUP: sock-unix: Remove an unreachable goto clause
5140 - BUG/MINOR: proxy: inc req counter on new syslog messages.
5141 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
5142 - MINOR: stats: inc req counter on listeners.
5143 - MINOR: channel: new getword and getchar functions on channel.
5144 - MEDIUM: log: syslog TCP support on log forward section.
5145 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
5146 - DOC: re-work log forward bind statement documentation.
5147 - DOC: fix a confusing typo on a regsub example
5148 - BUILD: Add a DragonFlyBSD target
5149 - BUG/MINOR: makefile: fix a tiny typo in the target list
5150 - BUILD: makefile: Update feature flags for NetBSD
5151 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
5152 - DOC: Add missing stats fields in the management doc
5153 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
5154 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
5155 - DOC: Fix typos in configuration.txt
5156 - BUG/MINOR: http: Fix content-length of the default 500 error
5157 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
5158 - REGTESTS: mark abns_socket as broken
5159 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
5160 - MEDIUM: listeners: don't bounce listeners management between queues
5161 - MEDIUM: init: stop disabled proxies after initializing fdtab
5162 - MEDIUM: listeners: make unbind_listener() converge if needed
5163 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
5164 - MEDIUM: listeners: remove the now unused ZOMBIE state
5165 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
5166 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
5167 - MINOR: listeners: introduce listener_set_state()
5168 - MINOR: proxy: maintain per-state counters of listeners
5169 - MEDIUM: proxy: remove the unused PR_STFULL state
5170 - MEDIUM: proxy: remove the PR_STERROR state
5171 - MEDIUM: proxy: remove state PR_STPAUSED
5172 - MINOR: startup: don't rely on PR_STNEW to check for listeners
5173 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
5174 - MEDIUM: proxy: replace proxy->state with proxy->disabled
5175 - MEDIUM: proxy: remove start_proxies()
5176 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
5177 - MINOR: listeners: check the current listener state in pause_listener()
5178 - MINOR: listeners: check the current listener earlier state in resume_listener()
5179 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
5180 - MINOR: protocol: introduce protocol_{pause,resume}_all()
5181 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
5182 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
5183 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
5184 - BUG/MEDIUM: listeners: correctly report pause() errors
5185 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
5186 - CLEANUP: protocol: remove the ->disable_all method
5187 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
5188 - MINOR: listeners: export enable_listener()
5189 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
5190 - CLEANUP: protocol: remove the ->enable_all method
5191 - CLEANUP: listeners: remove the now unused enable_all_listeners()
5192 - MINOR: protocol: rename the ->listeners field to ->receivers
5193 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
5194 - MINOR: protocol: implement an ->rx_resume() method
5195 - MINOR: listener: use the protocol's ->rx_resume() method when available
5196 - MINOR: sock: provide a set of generic enable/disable functions
5197 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
5198 - MINOR: protocol: add a new pair of enable/disable methods for listeners
5199 - MEDIUM: listeners: now use the listener's ->enable/disable
5200 - MINOR: listeners: split delete_listener() in two versions
5201 - MINOR: listeners: count unstoppable jobs on creation, not deletion
5202 - MINOR: listeners: add a new stop_listener() function
5203 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
5204 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
5205 - MEDIUM: proxy: centralize proxy status update and reporting
5206 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
5207 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
5208 - MEDIUM: udp: implement udp_suspend() and udp_resume()
5209 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
5210 - MEDIUM: listeners: always close master vs worker listeners
5211 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
5212 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
5213 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
5214 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
5215 - MEDIUM: receivers: add an rx_unbind() method in the protocols
5216 - MINOR: listeners: split do_unbind_listener() in two
5217 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
5218 - MEDIUM: config: mark "grace" as deprecated
5219 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
5220 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
5221 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
5222 - BUILD: makefile: Enable getaddrinfo() on OS/X
5223
Christopher Faulet05f01882020-09-25 18:40:47 +020052242020/09/25 : 2.3-dev5
5225 - DOC: Fix typo in iif() example
5226 - CLEANUP: Update .gitignore
5227 - BUILD: introduce possibility to define ABORT_NOW() conditionally
5228 - CI: travis-ci: help Coverity to recognize abort()
5229 - BUG/MINOR: Fix type passed of sizeof() for calloc()
5230 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
5231 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
5232 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
5233 - BUG/MINOR: ssl: verifyhost is case sensitive
5234 - BUILD: makefile: change default value of CC from gcc to cc
5235 - CI: travis-ci: split asan step out of running tests
5236 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
5237 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
5238 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
5239 - BUG/MINOR: log-forward: fail on unknown keywords
5240 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
5241 - BUG/MEDIUM: log-forward: always quit on parsing errors
5242 - MEDIUM: ssl: remove bundle support in crt-list and directories
5243 - MEDIUM: ssl/cli: remove support for multi certificates bundle
5244 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
5245 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
5246 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
5247 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
5248 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
5249 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
5250 - CLEANUP: ssl: remove utility functions for bundle
5251 - DOC: explain bundle emulation in configuration.txt
5252 - BUILD: fix build with openssl < 1.0.2 since bundle removal
5253 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
5254 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
5255 - MINOR: listener: create a new struct "settings" in bind_conf
5256 - MINOR: listener: move bind_proc and bind_thread to struct settings
5257 - MINOR: listener: move the interface to the struct settings
5258 - MINOR: listener: move the network namespace to the struct settings
5259 - REORG: listener: create a new struct receiver
5260 - REORG: listener: move the listening address to a struct receiver
5261 - REORG: listener: move the receiving FD to struct receiver
5262 - REORG: listener: move the listener's proto to the receiver
5263 - MINOR: listener: make sock_find_compatible_fd() check the socket type
5264 - REORG: listener: move the receiver part to a new file
5265 - MINOR: receiver: link the receiver to its settings
5266 - MINOR: receiver: link the receiver to its owner
5267 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
5268 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
5269 - MINOR: listener: move the INHERITED flag down to the receiver
5270 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
5271 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
5272 - MINOR: protocol: rename the ->bind field to ->listen
5273 - MINOR: protocol: add a new ->bind() entry to bind the receiver
5274 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
5275 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
5276 - MEDIUM: udp: make use of sock_inet_bind_receiver()
5277 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
5278 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
5279 - MEDIUM: sockpair: implement sockpair_bind_receiver()
5280 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
5281 - MEDIUM: protocol: explicitly start the receiver before the listener
5282 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
5283 - MINOR: protocol: add a new proto_fam structure for protocol families
5284 - MINOR: protocol: retrieve the family-specific fields from the family
5285 - CLEANUP: protocol: remove family-specific fields from struct protocol
5286 - MINOR: protocol: add a real family for existing FDs
5287 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
5288 - MINOR: tools: make str2sa_range() take more options than just resolve
5289 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
5290 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
5291 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
5292 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
5293 - MINOR: listener: remove the inherited arg to create_listener()
5294 - MINOR: tools: make str2sa_range() optionally return the fd
5295 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
5296 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
5297 - MINOR: config: do not test an inherited socket again
5298 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
5299 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
5300 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
5301 - MINOR: tools: remove the central test for "udp" in str2sa_range()
5302 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
5303 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
5304 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
5305 - MINOR: listener: pass the chosen protocol to create_listeners()
5306 - MINOR: tools: make str2sa_range() directly return the protocol
5307 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
5308 - MINOR: protocol: add the control layer type in the protocol struct
5309 - MEDIUM: protocol: store the socket and control type in the protocol array
5310 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
5311 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
5312 - MINOR: tools: drop listener detection hack from str2sa_range()
5313 - BUILD: sock_unix: add missing errno.h
5314 - MINOR: sock_inet: report the errno string in binding errors
5315 - MINOR: sock_unix: report the errno string in binding errors
5316 - BUILD: sock_inet: include errno.h
5317 - MINOR: h2/trace: also display the remaining frame length in traces
5318 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
5319 - BUG/MEDIUM: h2: report frame bits only for handled types
5320 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
5321 - BUG/MINOR: Fix memory leaks cfg_parse_peers
5322 - BUG/MINOR: config: Fix memory leak on config parse listen
5323 - MINOR: backend: make the "whole" option of balance uri take only one bit
5324 - MINOR: backend: add a new "path-only" option to "balance uri"
5325 - REGTESTS: add a few load balancing tests
5326 - BUG/MEDIUM: listeners: do not pause foreign listeners
5327 - BUG/MINOR: listeners: properly close listener FDs
5328 - BUILD: trace: include tools.h
5329
Willy Tarreau253c4dc2020-09-11 17:05:59 +020053302020/09/11 : 2.3-dev4
5331 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
5332 - BUG/MEDIUM: ssl: crt-list negative filters don't work
5333 - DOC: overhauling github issue templates
5334 - MEDIUM: cfgparse: Emit hard error on truncated lines
5335 - DOC: cache: Use '<name>' instead of '<id>' in error message
5336 - MINOR: cache: Reject duplicate cache names
5337 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
5338 - MINOR: stats: prevent favicon.ico requests for stats page
5339 - BUILD: tools: include auxv a bit later
5340 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
5341 - MEDIUM: ssl: Support certificate chaining for certificate generation
5342 - MINOR: ssl: Support SAN extension for certificate generation
5343 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
5344 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
5345 - MINOR: reload: determine the foreing binding status from the socket
5346 - MEDIUM: reload: stop passing listener options along with FDs
5347 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
5348 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
5349 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
5350 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
5351 - MEDIUM: reload: pass all exportable FDs, not just listeners
5352 - DOC: add description of pidfile in master-worker mode
5353 - BUG/MINOR: reload: do not fail when no socket is sent
5354 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
5355 - CLEANUP: tcp: stop exporting smp_fetch_src()
5356 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
5357 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
5358 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
5359 - REORG: sock: start to move some generic socket code to sock.c
5360 - MINOR: sock: introduce sock_inet and sock_unix
5361 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
5362 - MINOR: sock_inet: implement sock_inet_get_dst()
5363 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
5364 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
5365 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
5366 - REORG: listener: move xfer_sock_list to sock.{c,h}.
5367 - MINOR: sock: add interface and namespace length to xfer_sock_list
5368 - MINOR: sock: implement sock_find_compatible_fd()
5369 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
5370 - REORG: sock: move get_old_sockets() from haproxy.c
5371 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
5372 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
5373 - BUILD: sock_unix: fix build issue with isdigit()
5374 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
5375 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
5376 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
5377 - MINOR: http-htx: Handle an optional reason when replacing the response status
5378 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
5379 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
5380 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
5381 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
5382 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
5383 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
5384 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
5385 - REGTEST: increase some short timeouts to make tests more reliable
5386 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
5387 - BUILD: thread: limit the libgcc_s workaround to glibc only
5388 - MINOR: protocol: do not call proto->bind_all() anymore
5389 - MINOR: protocol: do not call proto->unbind_all() anymore
5390 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
5391 - MAJOR: init: start all listeners via protocols and not via proxies anymore
5392 - BUG/MINOR: startup: haproxy -s cause 100% cpu
5393 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
5394 - BUG/MEDIUM: doc: Fix replace-path action description
5395 - MINOR: http-rules: Add set-pathq and replace-pathq actions
5396 - MINOR: http-fetch: Add pathq sample fetch
5397 - REGTEST: Add a test for request path manipulations, with and without the QS
5398 - MINOR: Commit .gitattributes
5399 - CLEANUP: Update .gitignore
5400 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
5401 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
5402 - MINOR: server: Improve log message sent when server address is updated
5403 - DOC: ssl-load-extra-files only applies to certificates on bind lines
5404 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
5405 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
5406 - BUILD: threads: better workaround for late loading of libgcc_s
5407 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
5408 - BUILD: compiler: workaround a glibc madness around __attribute__()
5409 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
5410 - BUILD: trace: always have an argument before variadic args in macros
5411 - BUILD: traces: don't pass an empty argument for missing ones
5412 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
5413 - CLEANUP: Free old_argv on deinit
5414 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
5415 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
5416 - CLEANUP: haproxy: Free post_check_list in deinit()
5417 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
5418 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
5419 - MINOR: sample: Add iif(<true>,<false>) converter
5420
Willy Tarreauf104b532020-08-14 18:54:05 +020054212020/08/14 : 2.3-dev3
5422 - SCRIPTS: git-show-backports: make -m most only show the left branch
5423 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
5424 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
5425 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
5426 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
5427 - CLEANUP: dns: typo in reported error message
5428 - BUG/MAJOR: dns: disabled servers through SRV records never recover
5429 - BUG/MINOR: spoa-server: fix size_t format printing
5430 - DOC: spoa-server: fix false friends `actually`
5431 - BUG/MINOR: ssl: fix memory leak at OCSP loading
5432 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
5433 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
5434 - MINOR: arg: Add an argument type to keep a reference on opaque data
5435 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
5436 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
5437 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
5438 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
5439 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
5440 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
5441 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
5442 - MEDIUM: lua: Don't filter exported fetches and converters
5443 - MINOR: lua: Add support for userlist as fetches and converters arguments
5444 - MINOR: lua: Add support for regex as fetches and converters arguments
5445 - MINOR: arg: Use chunk_destroy() to release string arguments
5446 - BUG/MINOR: snapshots: leak of snapshots on deinit()
5447 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
5448 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
5449 - CLEANUP: fix all duplicated semicolons
5450 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
5451 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
5452 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
5453 - BUILD: makefile: don't disable -Wstringop-overflow anymore
5454 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
5455 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
5456 - BUG/MEDIUM: ssl: never generates the chain from the verify store
5457 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
5458 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
5459 - CLEANUP: ssl: remove poorly readable nested ternary
5460
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020054612020/07/31 : 2.3-dev2
5462 - DOC: ssl: req_ssl_sni needs implicit TLS
5463 - BUG/MEDIUM: arg: empty args list must be dropped
5464 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
5465 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
5466 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
5467 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
5468 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
5469 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
5470 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
5471 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
5472 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
5473 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
5474 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
5475 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
5476 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
5477 - BUILD: tools: fix build with static only toolchains
5478 - DOC: Use gender neutral language
5479 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
5480 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
5481 - BUG/MAJOR: dns: don't treat Authority records as an error
5482 - CI : travis-ci : prepare for using stock OpenSSL
5483 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
5484 - MEDIUM: lua: Add support for the Lua 5.4
5485 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
5486 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
5487 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
5488 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
5489 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
5490 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
5491 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
5492 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
5493 - MINOR: connection: Preinstall the mux for non-ssl connect
5494 - MINOR: stream-int: Be sure to have a mux to do sends and receives
5495 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
5496 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
5497 - CI: travis-ci: use better name for Coverity scan job
5498 - CI: travis-ci: use proper linking flags for SLZ build
5499 - BUG/MEDIUM: backend: always attach the transport before installing the mux
5500 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
5501 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
5502 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
5503 - MINOR: mux-h1: do not try to receive on backend before sending a request
5504 - CLEANUP: assorted typo fixes in the code and comments
5505 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
5506
Willy Tarreaue732cbd2020-07-17 15:13:19 +020055072020/07/17 : 2.3-dev1
5508 - MINOR: config: make strict limits enabled by default
5509 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
5510 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
5511 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
5512 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
5513 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
5514 - BUG/MINOR: haproxy: Free srule->file during deinit
5515 - BUG/MINOR: haproxy: Free srule->expr during deinit
5516 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
5517 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
5518 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
5519 - CLEANUP: haproxy: Free post_deinit_list in deinit()
5520 - CLEANUP: haproxy: Free server_deinit_list in deinit()
5521 - CLEANUP: haproxy: Free post_server_check_list in deinit()
5522 - CLEANUP: Add static void vars_deinit()
5523 - CLEANUP: Add static void hlua_deinit()
5524 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
5525 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
5526 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
5527 - MINOR: tcp: Support TCP keepalive parameters customization
5528 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
5529 - MINOR: lists: rename some MT_LIST operations to clarify them
5530 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
5531 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
5532 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
5533 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
5534 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
5535 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
5536 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
5537 - MINOR: connection: Set the SNI on server connections before installing the mux
5538 - MINOR: connection: Set new connection as private on reuse never
5539 - MINOR: connection: Add a wrapper to mark a connection as private
5540 - MEDIUM: connection: Add private connections synchronously in session server list
5541 - MINOR: connection: Use a dedicated function to look for a session's connection
5542 - MINOR: connection: Set the conncetion target during its initialisation
5543 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
5544 - MINOR: server: Factorize code to deal with reuse of server idle connections
5545 - MINOR: server: Factorize code to deal with connections removed from an idle list
5546 - CLEANUP: connection: remove unused field idle_time from the connection struct
5547 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
5548 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
5549 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
5550 - MINOR: backend: Add sample fetches to get the server's weight
5551 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
5552 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
5553 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
5554 - BUG/MINOR: backend: fix potential null deref on srv_conn
5555 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
5556 - MEDIUM: udp: adds minimal proto udp support for message listeners.
5557 - MEDIUM: log/sink: re-work and merge of build message API.
5558 - MINOR: log: adds syslog udp message handler and parsing.
5559 - MEDIUM: log: adds log forwarding section.
5560 - MINOR: log: adds counters on received syslog messages.
5561 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
5562 - BUG/MEDIUM: server: resolve state file handle leak on reload
5563 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
5564 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
5565 - BUILD: config: address build warning on raspbian+rpi4
5566 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
5567 - BUILD: config: fix again bugs gcc warnings on calloc
5568
Willy Tarreau33205c22020-07-07 16:35:28 +020055692020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02005570 - [RELEASE] Released version 2.3-dev0
5571 - MINOR: version: back to development, update status message
5572
55732020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02005574 - exact copy of 2.2.0
5575
Willy Tarreau3a00c912020-07-07 16:33:14 +020055762020/07/07 : 2.2.0
5577 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
5578 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
5579 - BUILD: tools: make resolve_sym_name() return a const
5580 - CLEANUP: auth: fix useless self-include of auth-t.h
5581 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
5582 - CLEANUP: assorted typo fixes in the code and comments
5583 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
5584 - DOC: fix tune.ssl.keylog sample fetches array
5585 - BUG/MINOR: ssl: check conn in keylog sample fetch
5586 - DOC: configuration: various typo fixes
5587 - MINOR: log: Remove unused case statement during the log-format string parsing
5588 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
5589 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
5590 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
5591 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
5592 - MINOR: mux-h1: Improve traces about the splicing
5593 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
5594 - BUG/MEDIUM: connection: Don't consider new private connections as available
5595 - BUG/MINOR: connection: See new connection as available only on reuse always
5596 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
5597 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
5598 - DOC: update INSTALL with new compiler versions
5599 - DOC: minor update to coding style file
5600 - MINOR: version: mention that it's an LTS release now
5601
Willy Tarreau62f11a52020-07-04 07:10:24 +020056022020/07/04 : 2.2-dev12
5603 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
5604 - MINOR: cli: make "show sess" stop at the last known session
5605 - CLEANUP: buffers: remove unused buffer_wq_lock lock
5606 - BUG/MEDIUM: buffers: always allocate from the local cache first
5607 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
5608 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
5609 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
5610 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
5611 - REORG: buffer: rename buffer.c to dynbuf.c
5612 - REORG: includes: create tinfo.h for the thread_info struct
5613 - CLEANUP: pool: only include the type files from types
5614 - MINOR: pools: move the LRU cache heads to thread_info
5615 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
5616 - MINOR: stats: add 3 new output values for the per-server idle conn state
5617 - MINOR: activity: add per-thread statistics on FD takeover
5618 - BUG/MINOR: server: start cleaning idle connections from various points
5619 - MEDIUM: server: improve estimate of the need for idle connections
5620 - MINOR: stats: add the estimated need of concurrent connections per server
5621 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
5622 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
5623 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
5624 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
5625 - BUG/MINOR: server: always count one idle slot for current thread
5626 - MEDIUM: server: use the two thresholds for the connection release algorithm
5627 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
5628 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
5629 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
5630 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
5631 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
5632 - MINOR: pools: increase MAX_BASE_POOLS to 64
5633 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
5634 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
5635 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
5636 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
5637 - BUG/MINOR: proxy: always initialize the trash in show servers state
5638 - MINOR: cli/proxy: add a new "show servers conn" command
5639 - MINOR: server: skip servers with no idle conns earlier
5640 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
5641 - MEDIUM: server: add a new pool-low-conn server setting
5642 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
5643 - MINOR: backend: don't always takeover from the same threads
5644 - MINOR: sched: make sched->task_list_size atomic
5645 - MEDIUM: sched: create a new TASK_KILLED task flag
5646 - MEDIUM: sched: implement task_kill() to kill a task
5647 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
5648 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
5649 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
5650 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
5651 - CLEANUP: connections: rename the toremove_lock to takeover_lock
5652 - MEDIUM: connections: Don't use a lock when moving connections to remove.
5653 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
5654 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
5655 - MINOR: config: add a new tune.idle-pool.shared global setting.
5656 - MINOR: 51d: silence a warning about null pointer dereference
5657 - MINOR: debug: add a new "debug dev memstats" command
5658 - MINOR: log-format: allow to preserve spacing in log format strings
5659 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
5660 - BUG/MAJOR: sched: make sure task_kill() always queues the task
5661 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
5662 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
5663 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
5664 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
5665 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
5666 - BUG/MINOR: log: missing timezone on iso dates.
5667 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
5668 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
5669 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
5670 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
5671 - BUG/MINOR: http_act: don't check capture id in backend (2)
5672 - BUILD: makefile: disable threads by default on OpenBSD
5673 - BUILD: peers: fix build warning with gcc 4.2.1
5674 - CI: cirrus-ci: exclude slow reg-tests
5675
Willy Tarreau4462af82020-06-26 22:01:04 +020056762020/06/26 : 2.2-dev11
5677 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
5678 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
5679 - BUG/MINOR: spoe: correction of setting bits for analyzer
5680 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
5681 - MINOR: cfgparse: Warn on truncated lines / files
5682 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
5683 - MINOR: debug: add a new DEBUG_FD build option
5684 - BUG/MINOR: tasks: make sure never to exceed max_processed
5685 - MINOR: task: add a new pointer to current tasklet queue
5686 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
5687 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
5688 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
5689 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
5690 - MINOR: ssl: free bind_conf_node in crtlist_free()
5691 - MINOR: ssl: free the crtlist and the ckch during the deinit()
5692 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
5693 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
5694 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
5695 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
5696 - MINOR: tasks: make current_queue an index instead of a pointer
5697 - MINOR: tasks: add a mask of the queues with active tasklets
5698 - MINOR: tasks: pass the queue index to run_task_from_list()
5699 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
5700 - MEDIUM: tasks: add a tune.sched.low-latency option
5701 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
5702 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
5703 - MINOR: tools: make parse_line() always terminate the args list
5704 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
5705 - MINOR: cfgparse: sanitize the output a little bit
5706 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
5707 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
5708 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
5709 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
5710 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
5711 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
5712 - MINOR: spoe: Don't systematically create new applets if processing rate is low
5713 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
5714 - BUILD: fix ssl_sample.c when building against BoringSSL
5715 - CI: travis-ci: switch BoringSSL builds to ninja
5716 - CI: extend spellchecker whitelist
5717 - DOC: assorted typo fixes in the documentation
5718 - CLEANUP: assorted typo fixes in the code and comments
5719 - MINOR: http: Add support for http 413 status
5720 - REGTEST: ssl: tests the ssl_f_* sample fetches
5721 - REGTEST: ssl: add some ssl_c_* sample fetches test
5722 - DOC: ssl: update the documentation of "commit ssl cert"
5723 - BUG/MINOR: cfgparse: correctly deal with empty lines
5724 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
5725
Willy Tarreaudc0936c2020-06-19 21:43:26 +020057262020/06/19 : 2.2-dev10
5727 - BUILD: include: add sys/types before netinet/tcp.h
5728 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
5729 - BUILD: Remove nowarn for warnings that do not trigger
5730 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
5731 - BUILD: Re-enable -Wimplicit-fallthrough
5732 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
5733 - BUILD: thread: add parenthesis around values of locking macros
5734 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
5735 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
5736 - CI: travis-ci: use "-O1" for clang builds
5737 - MINOR: haproxy: Add void deinit_and_exit(int)
5738 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
5739 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
5740 - BUILD: compression: make gcc 10 happy with free_zlib()
5741 - BUILD: atomic: add string.h for memcpy() on ARM64
5742 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
5743 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
5744 - BUILD: haproxy: mark deinit_and_exit() as noreturn
5745 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
5746 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
5747 - MINOR: tools: add a new configurable line parse, parse_line()
5748 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
5749 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
5750 - MINOR: http: do not close connections anymore after internal responses
5751 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
5752 - BUG/MINOR: spoe: add missing key length check before checking key names
5753 - MINOR: version: put the compiler version output into version.c not haproxy.c
5754 - MINOR: compiler: always define __has_feature()
5755 - MINOR: version: report the presence of the compiler's address sanitizer
5756 - BUILD: Fix build by including haproxy/global.h
5757 - BUG/MAJOR: connection: always disable ready events once reported
5758 - CLEANUP: activity: remove unused counter fd_lock
5759 - DOC: fd: make it clear that some fields ordering must absolutely be respected
5760 - MINOR: activity: report the number of times poll() reports I/O
5761 - MINOR: activity: rename confusing poll_* fields in the output
5762 - MINOR: fd: Fix a typo in a coment.
5763 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
5764 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
5765 - MINOR: activity: group the per-loop counters at the top
5766 - MINOR: activity: rename the "stream" field to "stream_calls"
5767 - MEDIUM: fd: refine the fd_takeover() migration lock
5768 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
5769 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
5770 - MINOR: peers: do not use localpeer as an array anymore
5771 - MEDIUM: peers: add the "localpeer" global option
5772 - MEDIUM: fd: add experimental support for edge-triggered polling
5773 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
5774 - MINOR: haproxy: process signals before runnable tasks
5775 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
5776 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
5777 - BUG/MINOR: cli: allow space escaping on the CLI
5778 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
5779 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
5780 - REGTEST: http-rules: test spaces in ACLs
5781 - REGTEST: http-rules: test spaces in ACLs with master CLI
5782 - BUG/MAJOR: init: properly compute the default global.maxpipes value
5783 - MEDIUM: map: make the "clear map" operation yield
5784 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
5785 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
5786 - BUG/MINOR: systemd: Wait for network to be online
5787 - DOC: configuration: Unindent non-code sentences in the protobuf example
5788 - DOC: configuration: http-check send was missing from matrix
5789
Willy Tarreau1385c882020-06-11 10:22:10 +020057902020/06/11 : 2.2-dev9
5791 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
5792 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
5793 - MINOR: checks: Remove dead code from process_chk_conn()
5794 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
5795 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
5796 - MINOR: lua: Use vars_unset_by_name_ifexist()
5797 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
5798 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
5799 - MINOR: lua: Make `set_var()` and `unset_var()` return success
5800 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
5801 - MEDIUM: ring: new section ring to declare custom ring buffers.
5802 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
5803 - REGTESTS: Require the version 2.2 to execute lua/set_var
5804 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
5805 - MINOR: checks: Remove useless tests on the connection and conn-stream
5806 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
5807 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
5808 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
5809 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
5810 - MINOR: pools: compute an estimate of each pool's average needed objects
5811 - MEDIUM: pools: directly free objects when pools are too much crowded
5812 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
5813 - MINOR: http-ana: Make the function http_reply_to_htx() public
5814 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
5815 - MINOR: http-rules: Use an action function to eval http-request auth rules
5816 - CLEANUP: http: Remove unused HTTP message templates
5817 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
5818 - MINOR: checks: I/O callback function only rely on the data layer wake callback
5819 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
5820 - BUG/MEDIUM: logs: fix trailing zeros on log message.
5821 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
5822 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
5823 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
5824 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
5825 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
5826 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
5827 - MINOR: ring: re-work ring attach generic API.
5828 - BUG/MINOR: error on unknown statement in ring section.
5829 - MEDIUM: ring: add server statement to forward messages from a ring
5830 - MEDIUM: ring: add new srv statement to support octet counting forward
5831 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
5832 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
5833 - BUILD: sink: address build warning on 32-bit architectures
5834 - BUG/MINOR: peers: fix internal/network key type mapping.
5835 - CLEANUP: regex: remove outdated support for regex actions
5836 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
5837 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
5838 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
5839 - DOC: add a line about comments in crt-list
5840 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
5841 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
5842 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
5843 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
5844 - BUG/MINOR: init: -x can have a parameter starting with a dash
5845 - BUG/MINOR: init: -S can have a parameter starting with a dash
5846 - BUG/MEDIUM: mworker: fix the reload with an -- option
5847 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
5848 - BUG/MINOR: mworker: fix a memleak when execvp() failed
5849 - MINOR: sample: Add secure_memcmp converter
5850 - REORG: ebtree: move the C files from ebtree/ to src/
5851 - REORG: ebtree: move the include files from ebtree to include/import/
5852 - REORG: ebtree: clean up remains of the ebtree/ directory
5853 - REORG: include: create new file haproxy/api-t.h
5854 - REORG: include: create new file haproxy/api.h
5855 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
5856 - CLEANUP: include: remove common/config.h
5857 - CLEANUP: include: remove unused template.h
5858 - REORG: include: move MIN/MAX from tools.h to compat.h
5859 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
5860 - CLEANUP: include: remove unused common/tools.h
5861 - REORG: include: move the base files from common/ to haproxy/
5862 - REORG: include: move version.h to haproxy/
5863 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
5864 - REORG: include: move openssl-compat.h from common/ to haproxy/
5865 - REORG: include: move ist.h from common/ to import/
5866 - REORG: include: move the BUG_ON() code to haproxy/bug.h
5867 - REORG: include: move debug.h from common/ to haproxy/
5868 - CLEANUP: debug: drop unused function p_malloc()
5869 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
5870 - REORG: include: move istbuf.h to haproxy/
5871 - REORG: include: split mini-clist into haproxy/list and list-t.h
5872 - REORG: threads: extract atomic ops from hathreads.h
5873 - CLEANUP: threads: remove a few needless includes of hathreads.h
5874 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
5875 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
5876 - REORG: include: move time.h from common/ to haproxy/
5877 - REORG: include: move integer manipulation functions from standard.h to intops.h
5878 - CLEANUP: include: remove excessive includes of common/standard.h
5879 - REORG: include: move freq_ctr to haproxy/
5880 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
5881 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
5882 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
5883 - MINOR: memory: don't let __pool_get_first() pick from the cache
5884 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
5885 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
5886 - MEDIUM: memory: make local pools independent on lockless pools
5887 - REORG: include: move common/memory.h to haproxy/pool.h
5888 - REORG: include: move common/chunk.h to haproxy/chunk.h
5889 - REORG: include: move activity to haproxy/
5890 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
5891 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
5892 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
5893 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
5894 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
5895 - REORG: include: move common/ticks.h to haproxy/ticks.h
5896 - REORG: include: split common/http.h into haproxy/http{,-t}.h
5897 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
5898 - REORG: include: move common/h1.h to haproxy/h1.h
5899 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
5900 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
5901 - REORG: include: move common/h2.h to haproxy/h2.h
5902 - REORG: include: move common/fcgi.h to haproxy/
5903 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
5904 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
5905 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
5906 - REORG: include: move shctx to haproxy/shctx{,-t}.h
5907 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
5908 - REORG: include: move fd.h to haproxy/fd{,-t}.h
5909 - REORG: include: move ring to haproxy/ring{,-t}.h
5910 - REORG: include: move sink.h to haproxy/sink{,-t}.h
5911 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
5912 - CLEANUP: include: remove empty raw_sock.h
5913 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
5914 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
5915 - REORG: include: move compression.h to haproxy/compression{,-t}.h
5916 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
5917 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
5918 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
5919 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
5920 - REORG: include: move action.h to haproxy/action{,-t}.h
5921 - REORG: include: move arg.h to haproxy/arg{,-t}.h
5922 - REORG: include: move auth.h to haproxy/auth{,-t}.h
5923 - REORG: include: move dns.h to haproxy/dns{,-t}.h
5924 - REORG: include: move flt_http_comp.h to haproxy/
5925 - REORG: include: move counters.h to haproxy/counters-t.h
5926 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
5927 - REORG: include: move capture.h to haproxy/capture{,-t}.h
5928 - REORG: include: move frontend.h to haproxy/frontend.h
5929 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
5930 - REORG: include: move http_rules.h to haproxy/http_rules.h
5931 - CLEANUP: include: remove unused mux_pt.h
5932 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
5933 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
5934 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
5935 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
5936 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
5937 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
5938 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
5939 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
5940 - REORG: include: move listener.h to haproxy/listener{,-t}.h
5941 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
5942 - REORG: include: move map to haproxy/map{,-t}.h
5943 - REORG: include: move payload.h to haproxy/payload.h
5944 - REORG: include: move sample.h to haproxy/sample{,-t}.h
5945 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
5946 - REORG: include: move vars.h to haproxy/vars{,-t}.h
5947 - REORG: include: split global.h into haproxy/global{,-t}.h
5948 - REORG: include: move task.h to haproxy/task{,-t}.h
5949 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
5950 - REORG: include: move signal.h to haproxy/signal{,-t}.h
5951 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
5952 - REORG: include: move connection.h to haproxy/connection{,-t}.h
5953 - REORG: include: move checks.h to haproxy/check{,-t}.h
5954 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
5955 - REORG: include: move peers.h to haproxy/peers{,-t}.h
5956 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
5957 - REORG: include: move session.h to haproxy/session{,-t}.h
5958 - REORG: include: move trace.h to haproxy/trace{,-t}.h
5959 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
5960 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
5961 - REORG: move applet.h to haproxy/applet{,-t}.h
5962 - REORG: include: move stats.h to haproxy/stats{,-t}.h
5963 - REORG: include: move cli.h to haproxy/cli{,-t}.h
5964 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
5965 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
5966 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
5967 - REORG: include: move channel.h to haproxy/channel{,-t}.h
5968 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
5969 - REORG: include: move filters.h to haproxy/filters{,-t}.h
5970 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
5971 - REORG: include: move log.h to haproxy/log{,-t}.h
5972 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
5973 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
5974 - REORG: include: move backend.h to haproxy/backend{,-t}.h
5975 - REORG: include: move queue.h to haproxy/queue{,-t}.h
5976 - REORG: include: move server.h to haproxy/server{,-t}.h
5977 - REORG: include: move stream.h to haproxy/stream{,-t}.h
5978 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
5979 - CLEANUP: hpack: export debug functions and move inlines to .h
5980 - REORG: check: move the e-mail alerting code to mailers.c
5981 - REORG: check: move tcpchecks away from check.c
5982 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
5983 - REORG: check: extract the external checks from check.{c,h}
5984 - CLEANUP: include: don't include stddef.h directly
5985 - CLEANUP: include: don't include proxy-t.h in global-t.h
5986 - CLEANUP: include: move sample_data out of sample-t.h
5987 - REORG: include: move the error reporting functions to from log.h to errors.h
5988 - BUILD: reorder objects in the Makefile for faster builds
5989 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
5990 - CLEANUP: include: make atomic.h part of the base API
5991 - REORG: include: move MAX_THREADS to defaults.h
5992 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
5993 - CLEANUP: include: tree-wide alphabetical sort of include files
5994 - REORG: include: make list-t.h part of the base API
5995 - REORG: dgram: rename proto_udp to dgram
5996
Willy Tarreau73b943b2020-05-22 16:19:04 +020059972020/05/22 : 2.2-dev8
5998 - MINOR: checks: Improve report of unexpected errors for expect rules
5999 - MEDIUM: checks: Add matching on log-format string for expect rules
6000 - DOC: Fix req.body and co documentation to be accurate
6001 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
6002 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
6003 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
6004 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
6005 - MINOR: checks/sample: Remove unnecessary tests on the sample session
6006 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
6007 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
6008 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
6009 - MINOR: checks: Support log-format string to set the body for HTTP send rules
6010 - DOC: Be more explicit about configurable check ok/error/timeout status
6011 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
6012 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
6013 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
6014 - REGTESTS: make the http-check-send test require version 2.2
6015 - BUG/MINOR: http-ana: fix NTLM response parsing again
6016 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
6017 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
6018 - MINOR: cfgparse: Improve error message for invalid \x sequences
6019 - CI: travis-ci: enable arm64 builds again
6020 - MEDIUM: ssl: increase default-dh-param to 2048
6021 - CI: travis-ci: skip pcre2 on arm64 build
6022 - CI: travis-ci: extend the build time for SSL to 60 minutes
6023 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
6024 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
6025 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
6026 - CLEANUP: remove THREAD_LOCAL from config.h
6027 - CI: travis-ci: upgrade LibreSSL versions
6028 - DOC: assorted typo fixes in the documentation
6029 - CI: extend spellchecker whitelist
6030 - CLEANUP: assorted typo fixes in the code and comments
6031 - MAJOR: contrib: porting spoa_server to support python3
6032 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
6033 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
6034 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
6035 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
6036 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
6037 - MINOR: sample: Add digest and hmac converters
6038 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
6039 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
6040 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
6041 - BUG/MINOR: pollers: remove uneeded free in global init
6042 - CLEANUP: select: enhance readability in init
6043 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
6044 - MINOR: soft-stop: let the first stopper only signal other threads
6045 - BUILD: select: only declare existing local labels to appease clang
6046 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
6047 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
6048 - DOC: retry-on can only be used with mode http
6049 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
6050 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
6051 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
6052 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
6053 - REORG: ssl: move macros and structure definitions to ssl_sock.h
6054 - CLEANUP: ssl: remove the shsess_* macros
6055 - REORG: move the crt-list structures in their own .h
6056 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
6057 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
6058 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
6059 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
6060 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
6061 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
6062 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
6063 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
6064 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
6065 - MINOR: ssl: remove static keyword in some SSL utility functions
6066 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
6067 - REORG: ssl: move sample fetches to src/ssl_sample.c
6068 - REORG: ssl: move utility functions to src/ssl_utils.c
6069 - DOC: ssl: update MAINTAINERS file
6070 - CI: travis-ci: switch arm64 builds to use openssl from distro
6071 - MINOR: stats: Prepare for more accurate moving averages
6072 - MINOR: stats: Expose native cum_req metric for a server
6073 - MEDIUM: stats: Enable more accurate moving average calculation for stats
6074 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
6075 - BUILD: ssl: include errno.h in ssl_crtlist.c
6076 - CLEANUP: acl: remove unused assignment
6077 - DOC/MINOR: halog: Add long help info for ic flag
6078 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
6079 - DOC: SPOE is no longer experimental
6080 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
6081 - MINOR: config: Don't dump keywords if argument is NULL
6082 - MEDIUM: checks: Make post-41 the default mode for mysql checks
6083 - BUG/MINOR: logs: prevent double line returns in some events.
6084 - MEDIUM: sink: build header in sink_write for log formats
6085 - MEDIUM: logs: buffer targets now rely on new sink_write
6086 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
6087 - MEDIUM: hpack: use a pool for the hpack table
6088 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
6089 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
6090 - MINOR: applet: adopt the wait list entry from the CLI
6091 - MINOR: ring: make the applet code not depend on the CLI
6092 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
6093 - CI: travis-ci: fix libslz download URL
6094 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
6095 - CLEANUP: http_ana: Remove unused TXN flags
6096 - BUG/MINOR: http-rules: Mark http return rules as final
6097 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
6098 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
6099 - MINOR: http-rules: Use http_reply structure for http return rules
6100 - MINOR: http-htx: Use a dedicated function to release http_reply objects
6101 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
6102 - MINOR: http-htx: Use a dedicated function to check http reply validity
6103 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
6104 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
6105 - MINOR: http-htx: Store default error messages in a global http reply array
6106 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
6107 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
6108 - MINOR: proxy: Add references on http replies for proxy error messages
6109 - MINOR: http-htx: Use http reply from the http-errors section
6110 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
6111 - MEDIUM: http-ana: Use http replies for HTTP error messages
6112 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
6113 - MINOR: htx: Add a function to copy a buffer in an HTX message
6114 - CLEANUP: channel: Remove channel_htx_copy_msg() function
6115 - MINOR: http-ana: Add a function to write an http reply in an HTX message
6116 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
6117 - DOC: Fix "errorfile" description in the configuration manual
6118 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
6119 - BUILD: hpack: make sure the hpack table can still be built standalone
6120 - CONTRIB: hpack: make use of the simplified standalone HPACK API
6121 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
6122
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020061232020/05/05 : 2.2-dev7
6124 - MINOR: version: Show uname output in display_version()
6125 - CI: run weekly OpenSSL "no-deprecated" builds
6126 - CLEANUP: log: fix comment of parse_logformat_string()
6127 - DOC: Improve documentation on http-request set-src
6128 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
6129 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
6130 - MINOR: ssl: add ssl-skip-self-issued-ca global option
6131 - BUG/MINOR: ssl: default settings for ssl server options are not used
6132 - MINOR: config: add a global directive to set default SSL curves
6133 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
6134 - DOC: internals: update the SSL architecture schema
6135 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
6136 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
6137 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
6138 - DOC: option logasap does not depend on mode
6139 - MEDIUM: memory: make pool_gc() run under thread isolation
6140 - MINOR: contrib: make the peers wireshark dissector a plugin
6141 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
6142 - BUG/MINOR: check: Update server address and port to execute an external check
6143 - MINOR: mini-clist: Add functions to iterate backward on a list
6144 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
6145 - MINOR: server: respect warning and alert semantic
6146 - BUG/MINOR: checks: Respect the no-check-ssl option
6147 - BUG/MEDIUM: server/checks: Init server check during config validity check
6148 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
6149 - BUG/MINOR: checks: chained expect will not properly wait for enough data
6150 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
6151 - MINOR: checks: Use an enum to describe the tcp-check rule type
6152 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
6153 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
6154 - MINOR: checks: simplify tcp expect config parser
6155 - MINOR: checks: add min-recv tcp-check expect option
6156 - MINOR: checks: add linger option to tcp connect
6157 - MINOR: checks: define a tcp expect type
6158 - MEDIUM: checks: rewrite tcp-check expect block
6159 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
6160 - MINOR: checks: add rbinary expect match type
6161 - MINOR: checks: Simplify functions to get step id and comment
6162 - MEDIUM: checks: capture groups in expect regexes
6163 - MINOR: checks: Don't use a static tcp rule list head
6164 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
6165 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
6166 - MINOR: checks: Set the tcp-check rule index during parsing
6167 - MINOR: checks: define tcp-check send type
6168 - MINOR: checks: define a tcp-check connect type
6169 - MEDIUM: checks: Add implicit tcp-check connect rule
6170 - MAJOR: checks: Refactor and simplify the tcp-check loop
6171 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
6172 - MINOR: checks/vars: Add a check scope for variables
6173 - MEDIUM: checks: Parse custom action rules in tcp-checks
6174 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
6175 - MINOR: checks: Add the sni option for tcp-check connect rules
6176 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
6177 - MINOR: checks: Add the alpn option for tcp-check connect rules
6178 - MINOR: ssl: Export a generic function to parse an alpn string
6179 - MINOR: checks: Add the default option for tcp-check connect rules
6180 - MINOR: checks: Add the addr option for tcp-check connect rule
6181 - MEDIUM: checks: Support expression to set the port
6182 - MEDIUM: checks: Support log-format strings for tcp-check send rules
6183 - MINOR: log: Don't depends on a stream to process samples in log-format string
6184 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
6185 - MEDIUM: checks: Add a shared list of tcp-check rules
6186 - MINOR: sample: add htonl converter
6187 - MINOR: sample: add cut_crlf converter
6188 - MINOR: sample: add ltrim converter
6189 - MINOR: sample: add rtrim converter
6190 - MINOR: checks: Use a name for the healthcheck status enum
6191 - MINOR: checks: Add option to tcp-check expect rules to customize error status
6192 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
6193 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
6194 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
6195 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
6196 - MINOR: checks: Relax the default option for tcp-check connect rules
6197 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
6198 - MINOR: checks: Export the tcpcheck_eval_ret enum
6199 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
6200 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
6201 - MEDIUM: checks: Implement redis check using tcp-check rules
6202 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
6203 - MEDIUM: checks: Implement smtp check using tcp-check rules
6204 - MEDIUM: checks: Implement postgres check using tcp-check rules
6205 - MEDIUM: checks: Implement MySQL check using tcp-check rules
6206 - MEDIUM: checks: Implement LDAP check using tcp-check rules
6207 - MEDIUM: checks: Implement SPOP check using tcp-check rules
6208 - MINOR: server/checks: Move parsing of agent keywords in checks.c
6209 - MINOR: server/checks: Move parsing of server check keywords in checks.c
6210 - MEDIUM: checks: Implement agent check using tcp-check rules
6211 - REGTEST: Adapt regtests about checks to recent changes
6212 - MINOR: Produce tcp-check info message for pure tcp-check rules only
6213 - MINOR: checks: Add an option to set success status of tcp-check expect rules
6214 - MINOR: checks: Improve log message of tcp-checks on success
6215 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
6216 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
6217 - MINOR: proxy/checks: Register a keyword to parse http-check rules
6218 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
6219 - MINOR: proxy/checks: Register a keyword to parse external-check rules
6220 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
6221 - MINOR: checks: Use an indirect string to represent the expect matching string
6222 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
6223 - MINOR: standard: Add my_memspn and my_memcspn
6224 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
6225 - MAJOR: checks: Implement HTTP check using tcp-check rules
6226 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
6227 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
6228 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
6229 - MINOR: checks/obj_type: Add a new object type for checks
6230 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
6231 - MINOR: checks: Use the check as origin when a session is created
6232 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
6233 - MINOR: connection: Add a function to install a mux for a health-check
6234 - MAJOR: checks: Use the best mux depending on the protocol for health checks
6235 - MEDIUM: checks: Implement default TCP check using tcp-check rules
6236 - MINOR: checks: Remove unused code about pure TCP checks
6237 - CLEANUP: checks: Reorg checks.c file to be more readable
6238 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
6239 - MINOR: ist: Add a function to retrieve the ist pointer
6240 - MINOR: checks: Use ist API as far as possible
6241 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
6242 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
6243 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
6244 - REGTEST: Add scripts to test based tcp-check health-checks
6245 - Revert "MEDIUM: checks: capture groups in expect regexes"
6246 - DOC: Add documentation about comments for tcp-check and http-check directives
6247 - DOC: Fix the tcp-check and http-check directives layout
6248 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
6249 - MINOR: checks: Support mux protocol definition for tcp and http health checks
6250 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
6251 - MINOR: checks: Support list of status codes on http-check expect rules
6252 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
6253 - REGTEST: Add a script to validate agent checks
6254 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
6255 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
6256 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
6257 - BUG/MINOR: checks/server: use_ssl member must be signed
6258 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
6259 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
6260 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
6261 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
6262 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
6263 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
6264 - BUG/MINOR: checks: Remove wrong variable redeclaration
6265 - BUG/MINOR: checks: Properly handle truncated mysql server messages
6266 - CLEANUP: checks: Remove unused code when ldap server message is parsed
6267 - MINOR: checks: Make the use of the check's server more explicit on connect
6268 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
6269 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
6270 - BUG/MINOR: checks: Don't lose warning on proxy capability
6271 - MINOR: log: Add "Tu" timer
6272 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
6273 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
6274 - REGTEST: ssl: test the client certificate authentication
6275 - DOC: give a more accurate description of what check does
6276 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
6277 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
6278 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
6279 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
6280 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
6281 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
6282 - MINOR: http-htx: Export functions to update message authority and host
6283 - MINOR: checks: Don't support multiple host header for http-check send rule
6284 - MINOR: checks: Skip some headers for http-check send rules
6285 - MINOR: checks: Keep the Host header and the request uri synchronized
6286 - CLEANUP: checks: Fix checks includes
6287 - DOC: Fix send rules in the http-check connect example
6288 - DOC: Add more info about request formatting in http-check send description
6289 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
6290 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
6291 - REGTEST: ssl: improve the "set ssl cert" test
6292 - CLEANUP: ssl: silence a build warning when threads are disabled
6293 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
6294 - MINOR: threads: export the POSIX thread ID in panic dumps
6295 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
6296 - BUG/MEDIUM: shctx: really check the lock's value while waiting
6297 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
6298 - MINOR: stream: report the list of active filters on stream crashes
6299 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
6300 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
6301 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
6302 - BUG/MEDIUM: connections: force connections cleanup on server changes
6303 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
6304 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
6305 - CLEANUP: connections: align function declaration
6306 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
6307 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
6308 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
6309 - MINOR: checks: Add support of payload-based sample fetches
6310 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
6311 - MINOR: checks: Add support of server side ssl sample fetches
6312 - MINOR: checks: Add support of HTTP response sample fetches
6313 - MINOR: http-htx: Support different methods to look for header names
6314 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
6315 - BUG/MINOR: checks: Support multiple HTTP expect rules
6316 - REGTEST: checks: Fix sync condition for agent-check
6317 - MEDIUM: checks: Support matching on headers for http-check expect rules
6318 - MINOR: lua: allow changing port with set_addr
6319 - BUG/MINOR: da: Fix HTX message prefetch
6320 - BUG/MINOR: wurfl: Fix HTX message prefetch
6321 - BUG/MINOR: 51d: Fix HTX message prefetch
6322 - MINOR: ist: add istadv() function
6323 - MINOR: ist: add istissame() function
6324 - MINOR: istbuf: add ist2buf() function
6325 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
6326 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
6327 - DOC: update intro.txt for 2.2
6328 - DOC: intro: add a contacts section
6329
Willy Tarreaud0089302020-04-17 14:19:38 +020063302020/04/17 : 2.2-dev6
6331 - BUG/MINOR: ssl: memory leak when find_chain is NULL
6332 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
6333 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
6334 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
6335 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
6336 - BUG/MINOR: peers: Use after free of "peers" section.
6337 - CI: github actions: add weekly h2spec test
6338 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
6339 - MINOR: build: Fix build in mux_h1
6340 - CLEANUP: remove obsolete comments
6341 - BUG/MEDIUM: dns: improper parsing of aditional records
6342 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
6343 - MINOR: listener: add so_name sample fetch
6344 - MEDIUM: stream: support use-server rules with dynamic names
6345 - MINOR: servers: Add a counter for the number of currently used connections.
6346 - MEDIUM: connections: Revamp the way idle connections are killed
6347 - MINOR: cli: add a general purpose pointer in the CLI struct
6348 - MINOR: ssl: add a list of bind_conf in struct crtlist
6349 - REORG: ssl: move SETCERT enum to ssl_sock.h
6350 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
6351 - REORG: ssl: move some functions above crtlist_load_cert_dir()
6352 - MINOR: ssl: use crtlist_free() upon error in directory loading
6353 - MINOR: ssl: add a list of crtlist_entry in ckch_store
6354 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
6355 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
6356 - MEDIUM: ssl/cli: 'add ssl crt-list' command
6357 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
6358 - BUG/MINOR: ssl: entry->ckch_inst not initialized
6359 - REGTEST: ssl/cli: change test type to devel
6360 - REGTEST: make the PROXY TLV validation depend on version 2.2
6361 - CLEANUP: assorted typo fixes in the code and comments
6362 - BUG/MINOR: stats: Fix color of draining servers on stats page
6363 - DOC: internals: Fix spelling errors in filters.txt
6364 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
6365 - REGTEST: make the unique-id test depend on version 2.0
6366 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
6367 - MINOR: ssl: split the line parsing of the crt-list
6368 - MINOR: ssl/cli: support filters and options in add ssl crt-list
6369 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
6370 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
6371 - REGTEST: ssl: pollute the crt-list file
6372 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
6373 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
6374 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
6375 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
6376 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
6377 - CLEANUP: assorted typo fixes in the code and comments
6378 - DOC: management: add the new crt-list CLI commands
6379 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
6380 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
6381 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
6382 - CI: use better SSL library definition
6383 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
6384 - CI: travis-ci: upgrade openssl to 1.1.1f
6385 - MINOR: ssl: improve the errors when a crt can't be open
6386 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
6387 - CI: adopt openssl download script to download all versions
6388 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
6389 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
6390 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
6391 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
6392 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
6393 - CLEANUP: ssl: use the refcount for the SSL_CTX'
6394 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
6395 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
6396 - CLEANUP: ssl: remove a commentary in struct ckch_inst
6397 - MINOR: ssl: initialize all list in ckch_inst_new()
6398 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
6399 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
6400 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
6401 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
6402 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
6403 - REORG: ssl: move some free/new functions
6404 - MINOR: ssl: crtlist_entry_{new, free}
6405 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
6406 - MINOR: ssl: don't alloc ssl_conf if no option found
6407 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
6408 - BUG/MINOR: peers: Incomplete peers sections should be validated.
6409 - MINOR: init: report in "haproxy -c" whether there were warnings or not
6410 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
6411 - MINOR: init: report the compiler version in haproxy -vv
6412 - CLEANUP: assorted typo fixes in the code and comments
6413 - MINOR: init: report the haproxy version and executable path once on errors
6414 - DOC: Make how "option redispatch" works more explicit
6415 - BUILD: Makefile: add linux-musl to TARGET
6416 - CLEANUP: assorted typo fixes in the code and comments
6417 - CLEANUP: http: Fixed small typo in parse_http_return
6418 - DOC: hashing: update link to hashing functions
6419
Willy Tarreau3328f182020-03-23 09:43:45 +010064202020/03/23 : 2.2-dev5
6421 - CLEANUP: ssl: is_default is a bit in ckch_inst
6422 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
6423 - DOC: ssl: clarify security implications of TLS tickets
6424 - CLEANUP: remove support for Linux i686 vsyscalls
6425 - CLEANUP: drop support for USE_MY_ACCEPT4
6426 - CLEANUP: remove support for USE_MY_EPOLL
6427 - CLEANUP: remove support for USE_MY_SPLICE
6428 - CLEANUP: remove the now unused common/syscall.h
6429 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
6430 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
6431 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
6432 - CLEANUP: ssl: separate the directory loading in a new function
6433 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
6434 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
6435 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
6436 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
6437 - BUG/MAJOR: list: fix invalid element address calculation
6438 - BUILD: stream-int: fix a few includes dependencies
6439 - MINOR: mt_lists: Appease gcc.
6440 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
6441 - MINOR: servers: Kill priv_conns.
6442 - MINOR: lists: fix indentation.
6443 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
6444 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
6445 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
6446 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
6447 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
6448 - BUG/MINOR: haproxy/threads: try to make all threads leave together
6449 - Revert "BUILD: travis-ci: enable s390x builds"
6450 - BUILD: travis-ci: enable regular s390x builds
6451 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
6452 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
6453 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
6454 - CLEANUP: connection: Add blank line after declarations in PP handling
6455 - CLEANUP: assorted typo fixes in the code and comments
6456 - CI: add spellcheck github action
6457 - DOC: correct typo in alert message about rspirep
6458 - CI: travis: switch linux builds to clang-9
6459 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
6460 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
6461 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
6462 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
6463 - CLEANUP: connection: Stop directly setting an ist's .ptr
6464 - CI: travis: revert to clang-7 for BoringSSL tests
6465 - BUILD: on ARM, must be linked to libatomic.
6466 - BUILD: makefile: fix regex syntax in ARM platform detection
6467 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
6468 - REORG: ssl: move ssl_sock_load_cert()
6469 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
6470 - MEDIUM: ssl: allow crt-list caching
6471 - MINOR: ssl: directories are loaded like crt-list
6472 - BUG/MINOR: ssl: can't open directories anymore
6473 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
6474 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
6475 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
6476 - MINOR: ssl/cli: show/dump ssl crt-list
6477 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
6478 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
6479 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
6480 - MINOR: tasks: Provide the tasklet to the callback.
6481 - BUG/MINOR: ssl: memleak of struct crtlist_entry
6482 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
6483 - BUILD: makefile: fix expression again to detect ARM platform
6484 - CI: travis: re-enable ASAN on clang
6485 - CI: travis: proper group output redirection together with travis_wait
6486 - DOC: assorted typo fixes in the documentation
6487 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
6488 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
6489 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
6490 - MINOR: ssl/cli: 'new ssl cert' command
6491 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
6492 - MEDIUM: sessions: Don't be responsible for connections anymore.
6493 - MEDIUM: servers: Split the connections into idle, safe, and available.
6494 - MINOR: fd: Implement fd_takeover().
6495 - MINOR: connections: Add a new mux method, "takeover".
6496 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
6497 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
6498 - MEDIUM: connections: Attempt to get idle connections from other threads.
6499 - MEDIUM: mux_h1: Implement the takeover() method.
6500 - MEDIUM: mux_h2: Implement the takeover() method.
6501 - MEDIUM: mux_fcgi: Implement the takeover() method.
6502 - MEDIUM: connections: Kill connections even if we are reusing one.
6503 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
6504 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
6505 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
6506 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
6507 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
6508 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
6509 - CI: run travis-ci builds on push only, skip pull requests
6510 - CI: temporarily disable unstable travis arm64 builds
6511 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
6512 - BUG/MINOR: connections: Make sure we free the connection on failure.
6513 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
6514 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
6515 - BUG/MINOR: connections: Set idle_time before adding to idle list.
6516 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
6517 - REGTEST: increase timeouts on the seamless-reload test
6518 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
6519 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
6520
Willy Tarreau5a753bd2020-03-09 14:57:20 +010065212020/03/09 : 2.2-dev4
6522 - MEDIUM: buffer: remove the buffer_wq lock
6523 - MINOR: ssl: move find certificate chain code to its own function
6524 - MINOR: ssl: resolve issuers chain later
6525 - MINOR: ssl: resolve ocsp_issuer later
6526 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
6527 - BUG/MINOR: h2: reject again empty :path pseudo-headers
6528 - MINOR: wdt: always clear sigev_value to make valgrind happy
6529 - MINOR: epoll: always initialize all of epoll_event to please valgrind
6530 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
6531 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
6532 - BUILD: cirrus-ci: suppress OS version check when installing packages
6533 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
6534 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
6535 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
6536 - MINOR: fd: merge the read and write error bits into RW error
6537 - BUG/MINOR: dns: ignore trailing dot
6538 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
6539 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
6540 - MINOR: mux-h1: Remove useless case-insensitive comparisons
6541 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
6542 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
6543 - MEDIUM: connection: don't stop receiving events in the FD handler
6544 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
6545 - BUG/MINOR: arg: don't reject missing optional args
6546 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
6547 - MINOR: debug: report the task handler's pointer relative to main
6548 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
6549 - MINOR: haproxy: export main to ease access from debugger
6550 - MINOR: haproxy: export run_poll_loop
6551 - MINOR: task: export run_tasks_from_list
6552 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
6553 - MINOR: tools: add new function dump_addr_and_bytes()
6554 - MINOR: tools: add resolve_sym_name() to resolve function pointers
6555 - MINOR: debug: use resolve_sym_name() to dump task handlers
6556 - MINOR: cli: make "show fd" rely on resolve_sym_name()
6557 - MEDIUM: debug: add support for dumping backtraces of stuck threads
6558 - MINOR: debug: call backtrace() once upon startup
6559 - MINOR: ssl: add "ca-verify-file" directive
6560 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
6561 - BUILD: Makefile: include librt before libpthread
6562 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
6563 - MINOR: wdt: do not depend on USE_THREAD
6564 - MINOR: debug: report the number of entries in the backtrace
6565 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
6566 - MINOR: debug: use our own backtrace function on clang+x86_64
6567 - MINOR: debug: dump the whole trace if we can't spot the starting point
6568 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
6569 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
6570 - CLEANUP: contrib/spoa_example: Fix several typos
6571 - BUILD: makefile: do not modify the build options during make reg-tests
6572 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
6573 - MEDIUM: stream-int: make sure to try to immediately validate the connection
6574 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
6575 - MEDIUM: connection: only call ->wake() for connect() without I/O
6576 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
6577 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
6578 - REGTEST: Add unique-id reg-test
6579 - MINOR: stream: Add stream_generate_unique_id function
6580 - MINOR: stream: Use stream_generate_unique_id
6581 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
6582 - MINOR: ssl/cli: support crt-list filters
6583 - MINOR: ssl: reach a ckch_store from a sni_ctx
6584 - DOC: fix incorrect indentation of http_auth_*
6585 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
6586 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
6587 - MINOR: ist: Add `IST_NULL` macro
6588 - MINOR: ist: Add `int isttest(const struct ist)`
6589 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
6590 - CLEANUP: Use `isttest()` and `istfree()`
6591 - MINOR: ist: Add `struct ist istdup(const struct ist)`
6592 - MINOR: proxy: Make `header_unique_id` a `struct ist`
6593 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
6594 - OPTIM: startup: fast unique_id allocation for acl.
6595 - DOC: configuration.txt: fix various typos
6596 - DOC: assorted typo fixes in the documentation and Makefile
6597 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
6598 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
6599 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
6600 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
6601 - MINOR: htx: Add a function to return a block at a specific offset
6602 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
6603 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
6604 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
6605 - BUG/MINOR: filters: Forward everything if no data filters are called
6606 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
6607 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
6608 - BUG/MINOR: http-ana: Reset request analysers on a response side error
6609 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
6610 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
6611 - MINOR: lua: Add function to know if a channel is a response one
6612 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
6613 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
6614 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
6615 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
6616 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
6617 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
6618 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
6619 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
6620 - BUG/MINOR: http-rules: Fix a typo in the reject action function
6621 - MINOR: cache/filters: Initialize the cache filter when stream is created
6622 - MINOR: compression/filters: Initialize the comp filter when stream is created
6623 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
6624 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
6625 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
6626 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
6627 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
6628 - BUILD: ssl: include mini-clist.h
6629 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
6630 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
6631 - BUILD: listener: types/listener.h must not include standard.h
6632 - BUG/MEDIUM: random: initialize the random pool a bit better
6633 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
6634 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
6635 - BUILD: cirrus-ci: get rid of unstable freebsd images
6636 - MINOR: tools: add 64-bit rotate operators
6637 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
6638 - MINOR: backend: use a single call to ha_random32() for the random LB algo
6639 - BUG/MINOR: checks/threads: use ha_random() and not rand()
6640 - MINOR: sample: make all bits random on the rand() sample fetch
6641 - MINOR: tools: add a generic function to generate UUIDs
6642 - DOC: fix typo about no-tls-tickets
6643 - DOC: improve description of no-tls-tickets
6644 - DOC: assorted typo fixes in the documentation
6645 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
6646
Willy Tarreau32bf97f2020-02-25 18:14:02 +010066472020/02/25 : 2.2-dev3
6648 - SCRIPTS: announce-release: place the send command in the mail's header
6649 - SCRIPTS: announce-release: allow the user to force to overwrite old files
6650 - SCRIPTS: backport: fix the master branch detection
6651 - BUG/MINOR: http-act: Set stream error flag before returning an error
6652 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
6653 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
6654 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
6655 - DOC: schematic of the SSL certificates architecture
6656 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
6657 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
6658 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
6659 - BUILD: cirrus-ci: workaround "pkg install" bug
6660 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
6661 - BUG/MINOR: connection: correctly retry I/O on signals
6662 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
6663 - BUILD: http_act: cast file sizes when reporting file size error
6664 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
6665 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
6666 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
6667 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
6668 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
6669 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
6670 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
6671 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
6672 - SCRIPTS: make announce-release executable again
6673 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
6674 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
6675 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
6676 - CLEANUP: ssl: remove unused functions in openssl-compat.h
6677 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
6678 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
6679 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
6680 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
6681 - MEDIUM: arg: make make_arg_list() stop after its own arguments
6682 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
6683 - MEDIUM: arg: make make_arg_list() support quotes in arguments
6684 - MINOR: sample: make sample_parse_expr() able to return an end pointer
6685 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
6686 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
6687 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
6688 - BUILD: enable ERR=1 in github cygwin builds
6689 - BUG/MINOR: arg: fix again incorrect argument length check
6690 - MINOR: sample: regsub now supports backreferences
6691 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
6692 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
6693 - MINOR: filters: Forward data only if the last filter forwards something
6694 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
6695 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
6696 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
6697 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
6698 - MINOR: ssl: add "issuers-chain-path" directive.
6699 - REGTESTS: use "command -v" instead of "which"
6700 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
6701 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
6702 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
6703 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
6704 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
6705 - MINOR: checks: do not call conn_xprt_stop_send() anymore
6706 - CLEANUP: epoll: place the struct epoll_event in the stack
6707 - MEDIUM: connection: remove the intermediary polling state from the connection
6708 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
6709 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
6710 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
6711 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
6712 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
6713 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
6714 - MINOR: ist: add an iststop() function
6715 - BUG/MINOR: http: http-request replace-path duplicates the query string
6716 - CLEANUP: sample: use iststop instead of a for loop
6717 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
6718 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
6719 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
6720 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
6721 - BUILD: fix recent build failure on unaligned archs
6722 - MINOR: ssl: load the key from a dedicated file
6723 - BUG/MINOR: ssl: load .key in a directory only after PEM
6724 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
6725 - CLEANUP: conn: Do not pass a pointer to likely
6726 - CLEANUP: net_helper: Do not negate the result of unlikely
6727 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
6728 - CLEANUP: cfgparse: Fix type of second calloc() parameter
6729 - BUILD: ssl: only pass unsigned chars to isspace()
6730 - BUILD: general: always pass unsigned chars to is* functions
6731 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
6732 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
6733 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
6734 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
6735 - CLEANUP: stick-tables: use read_u32() to display a node's key
6736 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
6737 - MINOR: pattern: fix all remaining strict aliasing issues
6738 - CLEANUP: lua: fix aliasing issues in the address matching code
6739 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
6740 - BUILD: makefile: re-enable strict aliasing
6741 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
6742 - MINOR: compiler: add new alignment macros
6743 - BUILD: ebtree: improve architecture-specific alignment
6744 - MINOR: config: mark global.debug as deprecated
6745 - BUILD: travis-ci: enable s390x builds
6746 - MINOR: ssl/cli: 'show ssl cert' displays the chain
6747 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
6748 - MINOR: ssl/cli: reorder 'show ssl cert' output
6749 - CLEANUP: ssl: move issuer_chain tree and definition
6750 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
6751
Willy Tarreau4c47d912020-02-07 04:12:19 +010067522020/02/07 : 2.2-dev2
6753 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
6754 - MEDIUM: cli: Allow multiple filter entries for "show table"
6755 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
6756 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
6757 - BUILD: stick-table: fix build errors introduced by last stick-table change
6758 - BUG/MINOR: cli: Missing arg offset for filter data values.
6759 - MEDIUM: streams: Always create a conn_stream in connect_server().
6760 - MEDIUM: connections: Get ride of the xprt_done callback.
6761 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
6762 - BUILD: CI: move cygwin builds to Github Actions
6763 - MINOR: cli: Report location of errors or any extra data for "show table"
6764 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
6765 - CLEANUP: backend: remove useless test for inexistent connection
6766 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
6767 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
6768 - BUG/MINOR: ssl: increment issuer refcount if in chain
6769 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
6770 - BUG/MINOR: ssl: typo in previous patch
6771 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
6772 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
6773 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
6774 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
6775 - MINOR: stream-int: always report received shutdowns
6776 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
6777 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
6778 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
6779 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
6780 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
6781 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
6782 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
6783 - BUG/MINOR: stktable: report the current proxy name in error messages
6784 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
6785 - MINOR: lua: Add hlua_prepend_path function
6786 - MINOR: lua: Add lua-prepend-path configuration option
6787 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
6788 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
6789 - BUG/MINOR: http-ana: Increment the backend counters on the backend
6790 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
6791 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
6792 - REGTESTS: make the set_ssl_cert test require version 2.2
6793 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
6794 - MINOR: ssl: Remove dead code.
6795 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
6796 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
6797 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
6798 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
6799 - BUILD: CI: disable slow regtests on Travis
6800 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
6801 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
6802 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
6803 - BUG/MINOR: dns: allow 63 char in hostname
6804 - MINOR: proxy: clarify number of connections log when stopping
6805 - DOC: word converter ignores delimiters at the start or end of input string
6806 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
6807 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
6808 - MEDIUM: pipe/thread: reduce the locking overhead
6809 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
6810 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
6811 - MINOR: tasks: move the list walking code to its own function
6812 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
6813 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
6814 - OPTIM: task: refine task classes default CPU bandwidth ratios
6815 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
6816 - MINOR: task: permanently flag tasklets waking themselves up
6817 - MINOR: task: make sched->current also reflect tasklets
6818 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
6819 - OPTIM: task: readjust CPU bandwidth distribution since last update
6820 - MINOR: task: don't set TASK_RUNNING on tasklets
6821 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
6822 - MINOR: memory: Only init the pool spinlock once.
6823 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
6824 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
6825 - MINOR: ssl: ssl-load-extra-files configure loading of files
6826 - SCRIPTS: add a new "backport" script to simplify long series of backports
6827 - BUG/MINOR: ssl: we may only ignore the first 64 errors
6828 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
6829 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
6830 - CLEANUP: hpack: remove a redundant test in the decoder
6831 - CLEANUP: peers: Remove unused static function `free_dcache`
6832 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
6833 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
6834 - CONTRIB: debug: add the possibility to decode the value as certain types only
6835 - CONTRIB: debug: support reporting multiple values at once
6836 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
6837 - MINOR: global: Set default tune.maxrewrite value during global structure init
6838 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
6839 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
6840 - MINOR: htx: Add a function to append an HTX message to another one
6841 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
6842 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
6843 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
6844 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
6845 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
6846 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
6847 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
6848 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
6849 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
6850 - MINOR: http-ana: Add a function for forward internal responses
6851 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
6852 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
6853 - MEDIUM: http-rules: Add the return action to HTTP rules
6854 - MEDIUM: http-rules: Support extra headers for HTTP return actions
6855 - CLEANUP: lua: Remove consistency check for sample fetches and actions
6856 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
6857 - MINOR: lua: Get the action return code on the stack when an action finishes
6858 - MINOR: lua: Create the global 'act' object to register all action return codes
6859 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
6860 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
6861 - REGTESTS: Add reg tests for the HTTP return action
6862 - REGTESTS: Add a reg test for http-after-response rulesets
6863 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
6864 - MINOR: acl: Warn when an ACL is named 'or'
6865 - CONTRIB: debug: also support reading values from stdin
6866 - SCRIPTS: backport: use short revs and resolve the initial commit
6867 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
6868
Willy Tarreau71f95fa2020-01-22 10:34:58 +010068692020/01/22 : 2.2-dev1
6870 - DOC: this is development again
6871 - MINOR: version: this is development again, update the status
6872 - SCRIPTS: update create-release to fix the changelog on new branches
6873 - CLEANUP: ssl: Clean up error handling
6874 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
6875 - BUG/MINOR: h1: Don't test the host header during response parsing
6876 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
6877 - DOC: Clarify behavior of server maxconn in HTTP mode
6878 - MINOR: ssl: deduplicate ca-file
6879 - MINOR: ssl: compute ca-list from deduplicate ca-file
6880 - MINOR: ssl: deduplicate crl-file
6881 - CLEANUP: dns: resolution can never be null
6882 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
6883 - DOC: ssl/cli: set/commit/abort ssl cert
6884 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
6885 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
6886 - BUG/MINOR: stats: Fix HTML output for the frontends heading
6887 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
6888 - DOC: clarify matching strings on binary fetches
6889 - DOC: Fix ordered list in summary
6890 - DOC: move the "group" keyword at the right place
6891 - MEDIUM: init: prevent process and thread creation at runtime
6892 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
6893 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
6894 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
6895 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
6896 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
6897 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
6898 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
6899 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
6900 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
6901 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
6902 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
6903 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
6904 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
6905 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
6906 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
6907 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
6908 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
6909 - BUG/MINOR: listener: also clear the error flag on a paused listener
6910 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
6911 - MINOR: listener: make the wait paths cleaner and more reliable
6912 - MINOR: listener: split dequeue_all_listener() in two
6913 - REORG: listener: move the global listener queue code to listener.c
6914 - DOC: document the listener state transitions
6915 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
6916 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
6917 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
6918 - DOC: listeners: add a few missing transitions
6919 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
6920 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
6921 - DOC: proxies: HAProxy only supports 3 connection modes
6922 - DOC: remove references to the outdated architecture.txt
6923 - BUG/MINOR: log: fix minor resource leaks on logformat error path
6924 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
6925 - BUG/MINOR: listener: do not immediately resume on transient error
6926 - BUG/MINOR: server: make "agent-addr" work on default-server line
6927 - BUG/MINOR: listener: fix off-by-one in state name check
6928 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
6929 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
6930 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
6931 - REGTEST: Add an HTX reg-test to check an edge case
6932 - DOC: clarify the fact that replace-uri works on a full URI
6933 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
6934 - BUG/MINOR: sample: always check converters' arguments
6935 - MINOR: sample: Validate the number of bits for the sha2 converter
6936 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
6937 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
6938 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
6939 - MINOR: debug: support logging to various sinks
6940 - MINOR: http: add a new "replace-path" action
6941 - REGTEST: ssl: test the "set ssl cert" CLI command
6942 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
6943 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
6944 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
6945 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
6946 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
6947 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
6948 - REGTEST: make the "set ssl cert" require version 2.1
6949 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
6950 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
6951 - BUG/MINOR: state-file: do not store duplicates in the global tree
6952 - BUG/MINOR: state-file: do not leak memory on parse errors
6953 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
6954 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
6955 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
6956 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
6957 - BUILD: travis-ci: reenable address sanitizer for clang builds
6958 - BUG/MINOR: checks: refine which errno values are really errors.
6959 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
6960 - CLEANUP: connection: conn->xprt is never NULL
6961 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
6962 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
6963 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
6964 - MINOR: connection: check for connection validation earlier
6965 - MINOR: connection: remove the double test on xprt_done_cb()
6966 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
6967 - MINOR: poller: do not call the IO handler if the FD is not active
6968 - OPTIM: epoll: always poll for recv if neither active nor ready
6969 - OPTIM: polling: do not create update entries for FD removal
6970 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
6971 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
6972 - BUILD: CI: modernize cirrus-ci
6973 - MINOR: config: disable busy polling on old processes
6974 - MINOR: ssl: Remove unused variable "need_out".
6975 - BUG/MINOR: h1: Report the right error position when a header value is invalid
6976 - BUG/MINOR: proxy: Fix input data copy when an error is captured
6977 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
6978 - BUG/MINOR: channel: inject output data at the end of output
6979 - BUG/MEDIUM: session: do not report a failure when rejecting a session
6980 - MEDIUM: dns: implement synchronous send
6981 - MINOR: raw_sock: make sure to disable polling once everything is sent
6982 - MINOR: http: Add 410 to http-request deny
6983 - MINOR: http: Add 404 to http-request deny
6984 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
6985 - BUILD: cirrus-ci: choose proper openssl package name
6986 - BUG/MAJOR: listener: do not schedule a task-less proxy
6987 - CLEANUP: server: remove unused err section in server_finalize_init
6988 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
6989 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
6990 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
6991 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
6992 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
6993 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
6994 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
6995 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
6996 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
6997 - REGTEST: mcli/mcli_start_progs: start 2 programs
6998 - BUG/MEDIUM: mworker: remain in mworker mode during reload
6999 - DOC: clarify crt-base usage
7000 - CLEANUP: compression: remove unused deinit_comp_ctx section
7001 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
7002 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
7003 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
7004 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
7005 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
7006 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
7007 - CLEANUP: cli: deduplicate the code in _getsocks
7008 - BUG/MINOR: stream: don't mistake match rules for store-request rules
7009 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
7010 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
7011 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
7012 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
7013 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
7014 - BUILD: pattern: include errno.h
7015 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
7016 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
7017 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
7018 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
7019 - REORG: stream/backend: move backend-specific stuff to backend.c
7020 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
7021 - MEDIUM: connection: merge the send_wait and recv_wait entries
7022 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
7023 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
7024 - MEDIUM: mux-h1: merge recv_wait and send_wait
7025 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
7026 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
7027 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
7028 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
7029 - DOC: Fix copy and paste mistake in http-response replace-value doc
7030 - BUG/MINOR: cache: Fix leak of cache name in error path
7031 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
7032 - BUG/MINOR: 51d: Fix bug when HTX is enabled
7033 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
7034 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
7035 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
7036 - DOC: Add a section to document the internal sample fetches
7037 - MINOR: mux-h1: Inherit send flags from the upper layer
7038 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
7039 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
7040 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
7041 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
7042 - MEDIUM: http-rules: Register an action keyword for all http rules
7043 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
7044 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
7045 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
7046 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
7047 - MINOR: counters: Add a counter to report internal processing errors
7048 - MEDIUM: http-ana: Properly handle internal processing errors
7049 - MINOR: http-rules: Add a rule result to report internal error
7050 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
7051 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
7052 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
7053 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
7054 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
7055 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
7056 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
7057 - MINOR: counters: Review conditions to increment counters from analysers
7058 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
7059 - MINOR: http-rules: Handle all message rewrites the same way
7060 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
7061 - MEDIUM: http-rules: Enable the strict rewriting mode by default
7062 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
7063 - MINOR: actions: Add a function pointer to release args used by actions
7064 - MINOR: actions: Regroup some info about HTTP rules in the same struct
7065 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
7066 - MINOR: actions: Rename the act_flag enum into act_opt
7067 - MINOR: actions: Add flags to configure the action behaviour
7068 - MINOR: actions: Use an integer to set the action type
7069 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
7070 - MINOR: http-rules: Make replace-header and replace-value custom actions
7071 - MINOR: http-rules: Make set-header and add-header custom actions
7072 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
7073 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
7074 - MEDIUM: http-rules: Make early-hint custom actions
7075 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
7076 - MINOR: tcp-rules: Make tcp-request capture a custom action
7077 - MINOR: http-rules: Add release functions for existing HTTP actions
7078 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
7079 - MINOR: tcp-rules: Add release functions for existing TCP actions
7080 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
7081 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
7082 - MINOR: http-htx: Add functions to create HTX redirect message
7083 - MINOR: config: Use dedicated function to parse proxy's errorfiles
7084 - MINOR: config: Use dedicated function to parse proxy's errorloc
7085 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
7086 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
7087 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
7088 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
7089 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
7090 - MINOR: http-rules: Support an optional status on deny rules for http reponses
7091 - MINOR: http-rules: Use same function to parse request and response deny actions
7092 - MINOR: http-ana: Add an error message in the txn and send it when defined
7093 - MEDIUM: http-rules: Support an optional error message in http deny rules
7094 - REGTEST: Add a strict rewriting mode reg test
7095 - REGEST: Add reg tests about error files
7096 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
7097 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
7098 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
7099 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
7100 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
7101 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
7102 - BUILD: CI: introduce ARM64 builds
7103 - BUILD: ssl: more elegant anti-replay feature presence check
7104 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
7105 - MEDIUM: dns: use Additional records from SRV responses
7106 - CLEANUP: Consistently `unsigned int` for bitfields
7107 - CLEANUP: pattern: remove the pat_time definition
7108 - BUG/MINOR: http_act: don't check capture id in backend
7109 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
7110
Willy Tarreau2e077f82019-11-25 20:36:16 +010071112019/11/25 : 2.2-dev0
7112 - exact copy of 2.1.0
7113
Willy Tarreaue54b43a2019-11-25 19:47:40 +010071142019/11/25 : 2.1.0
7115 - BUG/MINOR: init: fix set-dumpable when using uid/gid
7116 - MINOR: init: avoid code duplication while setting identify
7117 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
7118 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
7119 - MINOR: peers: Alway show the table info for disconnected peers.
7120 - MINOR: peers: Add TX/RX heartbeat counters.
7121 - MINOR: peers: Add debugging information to "show peers".
7122 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
7123 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
7124 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
7125 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
7126 - BUILD/MINOR: ssl: fix compiler warning about useless statement
7127 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
7128 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
7129 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
7130 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
7131 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
7132 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
7133 - DOC: Update http-buffer-request description to remove the part about chunks
7134 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
7135 - DOC: internal: document the init calls
7136 - MEDIUM: dns: Add resolve-opts "ignore-weight"
7137 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
7138 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
7139 - MINOR: ssl/cli: display warning during 'commit ssl cert'
7140 - MINOR: version: report the version status in "haproxy -v"
7141 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
7142 - DOC: Add documentation about the use-service action
7143 - MINOR: ssl: fix possible null dereference in error handling
7144 - BUG/MINOR: ssl: fix curve setup with LibreSSL
7145 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
7146 - CLEANUP: ssl: check if a transaction exists once before setting it
7147 - BUG/MINOR: cli: fix out of bounds in -S parser
7148 - MINOR: ist: add ist_find_ctl()
7149 - BUG/MAJOR: h2: reject header values containing invalid chars
7150 - BUG/MAJOR: h2: make header field name filtering stronger
7151 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
7152 - MINOR: h2: add a function to report H2 error codes as strings
7153 - MINOR: mux-h2/trace: report the connection and/or stream error code
7154 - SCRIPTS: create-release: show the correct origin name in suggested commands
7155 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
7156 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
7157 - BUILD: reorder the objects in the makefile
7158 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
7159 - MINOR: version: indicate that this version is stable
7160
Willy Tarreau84681322019-11-15 18:49:37 +010071612019/11/15 : 2.1-dev5
7162 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
7163 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
7164 - BUG/MINOR: ssl/cli: fix an error when a file is not found
7165 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
7166 - DOC: fix date and http_date keywords syntax
7167 - MINOR: peers: Add "log" directive to "peers" section.
7168 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
7169 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
7170 - MINOR: flt_trace: Rename macros to print trace messages
7171 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
7172 - MEDIUM: stream/trace: Register a new trace source with its events
7173 - MINOR: doc: http-reuse connection pool fix
7174 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
7175 - MINOR: http-ana: Remove the unused function http_reset_txn()
7176 - BUG/MINOR: action: do-resolve now use cached response
7177 - BUG: dns: timeout resolve not applied for valid resolutions
7178 - DOC: management: fix typo on "cache_lookups" stats output
7179 - BUG/MINOR: stream: init variables when the list is empty
7180 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
7181 - BUG/MINOR: queue/threads: make the queue unlinking atomic
7182 - BUG/MEDIUM: Make sure we leave the session list in session_free().
7183 - CLEANUP: session: slightly simplify idle connection cleanup logic
7184 - MINOR: memory: also poison the area on freeing
7185 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
7186 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
7187 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
7188 - BUILD: contrib/da: remove an "unused" warning
7189 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
7190 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
7191 - MINOR: freq_ctr: Make the sliding window sums thread-safe
7192 - MINOR: stream: Remove the lock on the proxy to update time stats
7193 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
7194 - MINOR: stats: Report max times in addition of the averages for sessions
7195 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
7196 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
7197 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
7198 - DOC: Add missing stats fields in the management manual
7199 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
7200 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
7201 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
7202 - MINOR: sink: Set the default max length for a message to BUFSIZE
7203 - MINOR: ring: make the parse function automatically set the handler/release
7204 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
7205 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
7206
Willy Tarreau1753cb52019-11-03 15:43:10 +010072072019/11/03 : 2.1-dev4
7208 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
7209 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
7210 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
7211 - DOC: remove obsolete section about header manipulation
7212 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
7213 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
7214 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
7215 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
7216 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
7217 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
7218 - BUILD/MINOR: ssl: shut up a build warning about format truncation
7219 - BUILD: do not disable -Wformat-truncation anymore
7220 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
7221 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
7222 - MINOR: mux: Add a new method to get informations about a mux.
7223 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
7224 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
7225 - MINOR: doc: fix busy-polling performance reference
7226 - MINOR: config: allow no set-dumpable config option
7227 - MINOR: init: always fail when setrlimit fails
7228 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
7229 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
7230 - REGTEST: vtest can now enable mcli with its own flag
7231 - BUG/MINOR: config: Update cookie domain warn to RFC6265
7232 - MINOR: sample: add us/ms support to date/http_date
7233 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
7234 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
7235 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
7236 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
7237 - BUG/MINOR: stats: properly check the path and not the whole URI
7238 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
7239 - BUG/MINOR: ssl: ckch->chain must be initialized
7240 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
7241 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
7242 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
7243 - MINOR: backend: Add srv_name sample fetche
7244 - DOC: Add GitHub issue config.yml
7245
Willy Tarreauc70df532019-10-25 15:48:53 +020072462019/10/25 : 2.1-dev3
7247 - MINOR: mux-h2/trace: missing conn pointer in demux full message
7248 - MINOR: mux-h2: add a per-connection list of blocked streams
7249 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
7250 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
7251 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
7252 - BUG/MINOR: peers: crash on reload without local peer.
7253 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
7254 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
7255 - MINOR: htx: Adapt htx_dump() to be used from traces
7256 - MINOR: mux-h1/trace: register a new trace source with its events
7257 - MINOR: proxy: Store http-send-name-header in lower case
7258 - MINOR: http: Remove headers matching the name of http-send-name-header option
7259 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
7260 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
7261 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
7262 - MINOR: fcgi: Add function to get the string representation of a record type
7263 - MINOR: mux-fcgi/trace: Register a new trace source with its events
7264 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
7265 - DOC: clarify some points around http-send-name-header's behavior
7266 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
7267 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
7268 - DOC: fix typo in Prometheus exporter doc
7269 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
7270 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
7271 - MINOR: http: Add a function to get the authority into a URI
7272 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
7273 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
7274 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
7275 - MEDIUM: h2: make the request parser rebuild a complete URI
7276 - MINOR: h2: report in the HTX flags when the request has an authority
7277 - MEDIUM: mux-h2: do not map Host to :authority on output
7278 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
7279 - MINOR: stats: mention in the help message support for "json" and "typed"
7280 - MINOR: stats: get rid of the ST_CONVDONE flag
7281 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
7282 - MINOR: stats: always merge the uri_auth flags into the appctx flags
7283 - MINOR: stats: set the appctx flags when initializing the applet only
7284 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
7285 - MINOR: stats: make stats_dump_fields_json() directly take flags
7286 - MINOR: stats: uniformize the calling convention of the dump functions
7287 - MINOR: stats: support the "desc" output format modifier for info and stat
7288 - MINOR: stats: prepare to add a description with each stat/info field
7289 - MINOR: stats: make "show stat" and "show info"
7290 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
7291 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
7292 - BUILD: stats: fix missing '=' sign in array declaration
7293 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
7294 - MINOR: list: add new macro MT_LIST_BEHEAD
7295 - MEDIUM: task: Split the tasklet list into two lists.
7296 - MINOR: h2: Document traps to be avoided on multithread.
7297 - MINOR: lists: Try to use local variables instead of macro arguments.
7298 - MINOR: lists: Fix alignement of \ when relevant.
7299 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
7300 - MINOR: ssl: crt-list do ckchn_lookup
7301 - REORG: ssl: rename ckch_node to ckch_store
7302 - REORG: ssl: move structures to ssl_sock.h
7303 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
7304 - MINOR: ssl: initialize explicitly the sni_ctx trees
7305 - BUG/MINOR: ssl: abort on sni allocation failure
7306 - BUG/MINOR: ssl: free the sni_keytype nodes
7307 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
7308 - MEDIUM: ssl: introduce the ckch instance structure
7309 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
7310 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
7311 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
7312 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
7313 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
7314 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
7315 - MINOR: ssl: load the sctl in/from the ckch
7316 - MINOR: ssl: load the ocsp in/from the ckch
7317 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
7318 - BUG/MINOR: ssl: fix build without SSL
7319 - BUG/MINOR: ssl: fix build without multi-cert bundles
7320 - BUILD: ssl: wrong #ifdef for SSL engines code
7321 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
7322 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
7323 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
7324 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
7325 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
7326 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
7327 - BUG/MINOR: mux-h1: Capture ignored parsing errors
7328 - MINOR: h1: Reject requests with different occurrences of the header host
7329 - MINOR: h1: Reject requests if the authority does not match the header host
7330 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
7331 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
7332 - BUG/MINOR: WURFL: fix send_log() function arguments
7333 - BUG/MINOR: ssl: fix error messages for OCSP loading
7334 - BUG/MINOR: ssl: can't load ocsp files
7335 - MINOR: version: make the version strings variables, not constants
7336 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
7337 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
7338 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
7339 - BUILD: travis-ci: limit build to branches "master" and "next"
7340 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
7341 - BUILD/SMALL: threads: enable threads on osx
7342 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
7343 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
7344 - BUG/MINOR: cache: also cache absolute URIs
7345 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
7346 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
7347 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
7348 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
7349 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
7350 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
7351 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
7352 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
7353 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
7354 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
7355 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
7356 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
7357 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
7358 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
7359 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
7360 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
7361 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
7362 - CLEANUP: bind: handle warning label on bind keywords parsing.
7363 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
7364 - BUG/MINOR: mworker/cli: reload fail with inherited FD
7365 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
7366 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
7367 - BUG/MINOR: cache: alloc shctx after check config
7368 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
7369 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
7370 - REGTESTS: make seamless-reload depend on 1.9 and above
7371 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
7372 - BUG/MINOR: dns: allow srv record weight set to 0
7373 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
7374 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
7375 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
7376 - BUG/MINOR: mux-h2: do not emit logs on backend connections
7377 - CLEANUP: ssl: remove old TODO commentary
7378 - CLEANUP: ssl: fix SNI/CKCH lock labels
7379 - MINOR: ssl: OCSP functions can load from file or buffer
7380 - MINOR: ssl: load sctl from buf OR from a file
7381 - MINOR: ssl: load issuer from file or from buffer
7382 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
7383 - BUG/MINOR: ssl/cli: fix looking up for a bundle
7384 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
7385 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
7386 - MINOR: ssl: copy a ckch from src to dst
7387 - MINOR: ssl: new functions duplicate and free a ckch_store
7388 - MINOR: ssl/cli: assignate a new ckch_store
7389 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
7390 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
7391 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
7392 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
7393 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
7394 - MINOR: tcp: avoid confusion in time parsing init
7395 - MINOR: debug: add a new "debug dev stream" command
7396 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
7397 - REORG: move CLI access level definitions to cli.h
7398 - MINOR: cli: add an expert mode to hide dangerous commands
7399 - MINOR: debug: make most debug CLI commands accessible in expert mode
7400 - MINOR: stats/debug: maintain a counter of debug commands issued
7401 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
7402
Willy Tarreaucb8f03f2019-10-01 18:13:09 +020074032019/10/01 : 2.1-dev2
7404 - DOC: management: document reuse and connect counters in the CSV format
7405 - DOC: management: document cache_hits and cache_lookups in the CSV format
7406 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
7407 - MINOR: applet: make appctx use their own pool
7408 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
7409 - BUG/MEDIUM: http/htx: unbreak option http_proxy
7410 - BUG/MINOR: backend: do not try to install a mux when the connection failed
7411 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
7412 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
7413 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
7414 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
7415 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
7416 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
7417 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
7418 - MINOR: proto_htx: Add the function htx_return_srv_error()
7419 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
7420 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
7421 - DOC: htx: Update comments in HTX files
7422 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
7423 - MINOR: htx: Deduce the number of used blocks from tail and head values
7424 - MINOR: htx: Use an array of char to store HTX blocks
7425 - MINOR: htx: Slightly update htx_dump() to report better messages
7426 - DOC: htx: Add internal documentation about the HTX
7427 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
7428 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
7429 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
7430 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
7431 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
7432 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
7433 - MINOR: config: Remove tests on the option 'http-use-htx'
7434 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
7435 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
7436 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
7437 - MINOR: cache: Remove tests on the option 'http-use-htx'
7438 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
7439 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
7440 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
7441 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
7442 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
7443 - MINOR: http_act: Remove code relying on the legacy HTTP mode
7444 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
7445 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
7446 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
7447 - MINOR: stats: Remove code relying on the legacy HTTP mode
7448 - MAJOR: filters: Remove code relying on the legacy HTTP mode
7449 - MINOR: stream: Remove code relying on the legacy HTTP mode
7450 - MAJOR: http: Remove the HTTP legacy code
7451 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
7452 - MINOR: proto_http: Remove unused http txn flags
7453 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
7454 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
7455 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
7456 - CLEANUP: proto_http: Remove unecessary includes and comments
7457 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
7458 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
7459 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
7460 - MINOR: proxy: Remove support of the option 'http-tunnel'
7461 - DOC: config: Update as a result of the legacy HTTP removal
7462 - MEDIUM: config: Remove parsing of req* and rsp* directives
7463 - MINOR: proxy: Remove the unused list of block rules
7464 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
7465 - DOC: config: Remove unsupported req* and rsp* keywords
7466 - MINOR: global: Preset tune.max_http_hdr to its default value
7467 - MINOR: http: Don't store raw HTTP errors in chunks anymore
7468 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
7469 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
7470 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
7471 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
7472 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
7473 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
7474 - MINOR: connection: add conn_get_src() and conn_get_dst()
7475 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
7476 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
7477 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
7478 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
7479 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
7480 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
7481 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
7482 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
7483 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
7484 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
7485 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
7486 - MINOR: connection: add new src and dst fields
7487 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
7488 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
7489 - MINOR: lua: switch to conn->dst for a connection's target address
7490 - MINOR: peers: use conn->dst for the peer's target address
7491 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
7492 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
7493 - MINOR: proxy: switch to conn->src in error snapshots
7494 - MINOR: session: use conn->src instead of conn->addr.from
7495 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
7496 - MINOR: unix: use conn->dst for the target address in ->connect()
7497 - MINOR: sockpair: use conn->dst for the target address in ->connect()
7498 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
7499 - MINOR: checks: replace conn->addr.to with conn->dst
7500 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
7501 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
7502 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
7503 - MINOR: connection: create a new pool for struct sockaddr_storage
7504 - MEDIUM: connection: make sure all address producers allocate their address
7505 - MAJOR: connection: remove the addr field
7506 - MINOR: connection: don't use clear_addr() anymore, just release the address
7507 - MINOR: stream: add a new target_addr entry in the stream structure
7508 - MAJOR: stream: store the target address into s->target_addr
7509 - MINOR: peers: now remove the remote connection setup code
7510 - MEDIUM: lua: do not allocate the remote connection anymore
7511 - MEDIUM: backend: always release any existing prior connection in connect_server()
7512 - MEDIUM: backend: remove impossible cases from connect_server()
7513 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
7514 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
7515 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
7516 - BUG/MINOR: http_htx: Support empty errorfiles
7517 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
7518 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
7519 - BUG/MINOR: proxy: always lock stop_proxy()
7520 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
7521 - BUILD: threads: add the definition of PROTO_LOCK
7522 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
7523 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
7524 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
7525 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
7526 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
7527 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
7528 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
7529 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
7530 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
7531 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
7532 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
7533 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
7534 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
7535 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
7536 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
7537 - MEDIUM: ssl: split the loading of the certificates
7538 - MEDIUM: ssl: lookup and store in a ckch_node tree
7539 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
7540 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
7541 - MINOR: ssl: use STACK_OF for chain certs
7542 - MINOR: ssl: add extra chain compatibility
7543 - MINOR: ssl: check private key consistency in loading
7544 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
7545 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
7546 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
7547 - MAJOR: fd: Get rid of the fd cache.
7548 - MEDIUM: pollers: Remember the state for read and write for each threads.
7549 - MEDIUM: mux-h2: don't try to read more than needed
7550 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
7551 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
7552 - BUG/MINOR: debug: fix a small race in the thread dumping code
7553 - MINOR: wdt: also consider that waiting in the thread dumper is normal
7554 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
7555 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
7556 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
7557 - BUG/MINOR: ssl: fix ressource leaks on error
7558 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
7559 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
7560 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
7561 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
7562 - BUG/MINOR: stream-int: also update analysers timeouts on activity
7563 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
7564 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
7565 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
7566 - DOC: Add 'Question.md' issue template, discouraging asking questions
7567 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
7568 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
7569 - BUILD: travis-ci: enable daily Coverity scan
7570 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
7571 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
7572 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
7573 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
7574 - BUG/MINOR: mux-h2: always send stream window update before connection's
7575 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
7576 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
7577 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
7578 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
7579 - MINOR: cache: add method to cache hash
7580 - MINOR: cache: allow caching of OPTIONS request
7581 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
7582 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
7583 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
7584 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
7585 - CLEANUP: buffer: replace b_drop() with b_free()
7586 - CLEANUP: task: move the cpu_time field to the task-only part
7587 - MINOR: cli: add two new states to print messages on the CLI
7588 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
7589 - CLEANUP: cli: replace all occurrences of manual handling of return messages
7590 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
7591 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
7592 - BUG/MINOR: lua: fix setting netfilter mark
7593 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
7594 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
7595 - BUG/MINOR: stats: Wait the body before processing POST requests
7596 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
7597 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
7598 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
7599 - MINOR: debug: indicate the applet name when the task is task_run_applet()
7600 - MINOR: tools: add append_prefixed_str()
7601 - MINOR: lua: export applet and task handlers
7602 - MEDIUM: debug: make the thread dump code show Lua backtraces
7603 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
7604 - MINOR: list: add LIST_SPLICE() to merge one list into another
7605 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
7606 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
7607 - MINOR: sink: create definitions a minimal code for event sinks
7608 - MINOR: sink: add a support for file descriptors
7609 - MINOR: trace: start to create a new trace subsystem
7610 - MINOR: trace: add allocation of buffer-sized trace buffers
7611 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
7612 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
7613 - MINOR: trace/cli: add "show trace" to report trace state and statistics
7614 - MINOR: trace: implement a very basic trace() function
7615 - MINOR: trace: add the file name and line number in the prefix
7616 - MINOR: trace: make trace() now also take a level in argument
7617 - MINOR: trace: implement a call to a decode function
7618 - MINOR: trace: add per-level macros to produce traces
7619 - MINOR: trace: add a definition of typed arguments to trace()
7620 - MINOR: trace: make sure to always stop the locking when stopping or pausing
7621 - MINOR: trace: add the possibility to lock on some arguments
7622 - MINOR: trace: parse the "lock" argument to trace
7623 - MINOR: trace: retrieve useful pointers and enforce lock-on
7624 - DOC: management: document the "trace" and "show trace" commands
7625 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
7626 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
7627 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
7628 - DOC: fixed typo in management.txt
7629 - BUG/MINOR: mworker: disable SIGPROF on re-exec
7630 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
7631 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
7632 - MINOR: backend: Add srv_queue converter
7633 - MINOR: sink: set the fd-type sinks to non-blocking
7634 - MINOR: tools: add a function varint_bytes() to report the size of a varint
7635 - MINOR: buffer: add functions to read/write varints from/to buffers
7636 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
7637 - MINOR: sink: now call the generic fd write function
7638 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
7639 - MINOR: ring: add a ring_write() function
7640 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
7641 - MINOR: sink: add support for ring buffers
7642 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
7643 - MINOR: sink: now report the number of dropped events on output
7644 - MINOR: trace: support a default callback for the source
7645 - MINOR: trace: extend the source location to 13 chars
7646 - MINOR: trace: show thread number and source name in the trace
7647 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
7648 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
7649 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
7650 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
7651 - MINOR: trace: change the "payload" level to "data" and move it
7652 - MINOR: trace: prepend the function name for developer level traces
7653 - MINOR: trace: also report the trace level in the output
7654 - MINOR: trace: change the detail_level to per-source verbosity
7655 - MINOR: mux-h2/trace: register a new trace source with its events
7656 - MINOR: mux-h2/trace: add the default decoding callback
7657 - MEDIUM: mux-h2/trace: add lots of traces all over the code
7658 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
7659 - MINOR: mux-h2/trace: add a new verbosity level "clean"
7660 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
7661 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
7662 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
7663 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
7664 - CLEANUP: mux-h2/trace: lower-case event names
7665 - MINOR: trace: extend default event names to 12 chars
7666 - BUG/MINOR: ring: fix the way watchers are counted
7667 - MINOR: cli: extend the CLI context with a list and two offsets
7668 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
7669 - MEDIUM: ring: implement a wait mode for watchers
7670 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
7671 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
7672 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
7673 - CLEANUP: fd: remove leftovers of the fdcache
7674 - MINOR: fd: add a new "initialized" bit in the fdtab struct
7675 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
7676 - MEDIUM: log: use the new generic fd_write_frag_line() function
7677 - MINOR: log: add a target type instead of hacking the address family
7678 - MEDIUM: log: add support for logging to a ring buffer
7679 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
7680 - MINOR: build: add linux-glibc-legacy build TARGET
7681 - BUG/MEDIUM: peers: local peer socket not bound.
7682 - BUILD: connection: silence gcc warning with extra parentheses
7683 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
7684 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
7685 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
7686 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
7687 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
7688 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
7689 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
7690 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
7691 - MEDIUM: fd: remove the FD_EV_POLLED status bit
7692 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
7693 - MINOR: fd: make updt_fd_polling() a normal function
7694 - CONTRIB: debug: add new program "poll" to test poll() events
7695 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
7696 - BUG/MINOR: checks: start sending the request right after connect()
7697 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
7698 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
7699 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
7700 - BUILD: CI: add basic CentOS 6 cirrus build
7701 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
7702 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
7703 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
7704 - MEDIUM: fd: mark the FD as ready when it's inserted
7705 - MINOR: fd: add two new calls fd_cond_{recv,send}()
7706 - MEDIUM: connection: enable reading only once the connection is confirmed
7707 - MINOR: fd: add two flags ERR and SHUT to describe FD states
7708 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
7709 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
7710 - MINOR: stats: report the number of idle connections for each server
7711 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
7712 - BUILD/MINOR: auth: enabling for osx
7713 - BUG/MINOR: listener: Fix a possible null pointer dereference
7714 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
7715 - MINOR: stats: Add JSON export from the stats page
7716 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
7717 - MINOR: sample: Add UUID-fetch
7718 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
7719 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
7720 - BUG/MINOR: backend: Fix a possible null pointer dereference
7721 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
7722 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
7723 - BUILD: CI: temporarily disable ASAN
7724 - MINOR: htx: Add a flag on HTX message to report processing errors
7725 - MINOR: mux-h1: Report a processing error during output processing
7726 - MINOR: http-ana: Handle HTX errors first during message analysis
7727 - MINOR: http-ana: Remove err_state field from http_msg
7728 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
7729 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
7730 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
7731 - MINOR: istbuf: Add the function b_isteqi()
7732 - MINOR: log: Provide a function to emit a log for an application
7733 - MINOR: http: Add function to parse value of the header Status
7734 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
7735 - MINOR: h1-htx: Use the same function to copy message payload in all cases
7736 - MINOR: muxes/htx: Ignore pseudo header during message formatting
7737 - MINOR: fcgi: Add code related to FCGI protocol
7738 - MEDIUM: fcgi-app: Add FCGI application and filter
7739 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
7740 - MINOR: doc: Add documentation about the FastCGI support
7741 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
7742 - BUILD: CI: install golang-1.13 when building BoringSSL
7743 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
7744 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
7745 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
7746 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
7747 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
7748 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
7749 - MEDIUM: list: Separate "locked" list from regular list.
7750 - MINOR: mt_lists: Add new macroes.
7751 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
7752 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
7753 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
7754 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
7755 - TESTS: Add a stress-test for mt_lists.
7756 - BUILD: travis-ci: add PCRE2, SLZ build
7757 - BUG/MINOR: build: fix event ports (Solaris)
7758 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
7759 - OPTIM: listeners: use tasklets for the multi-queue rings
7760 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
7761 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
7762 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
7763 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
7764 - CLEANUP: task: remove impossible test
7765 - CLEANUP: task: cache the task_per_thread pointer
7766 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
7767 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
7768 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
7769 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
7770 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
7771 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
7772 - MINOR: h2/trace: report the frame type when known
7773 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
7774 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
7775 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
7776 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
7777 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
7778 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
7779 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
7780 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
7781 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
7782 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
7783 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
7784 - BUG/MEDIUM: spoe: Use a different engine-id per process
7785 - MINOR: spoe: Improve generation of the engine-id
7786 - MINOR: spoe: Support the async mode with several threads
7787 - MINOR: http: Add server name header from HTTP multiplexers
7788 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
7789 - MINOR: stats: Add the support of float fields in stats
7790 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
7791 - DOC: Fix documentation about the cli command to get resolver stats
7792 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
7793 - BUG/MINOR: stats: Add a missing break in a switch statement
7794 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
7795 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
7796 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
7797 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
7798 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
7799 - DOC: replace utf-8 quotes by ascii ones
7800 - BUG/MEDIUM: fd: HUP is an error only when write is active
7801 - BUG/MINOR: action: do-resolve does not yield on requests with body
7802 - Revert "MINOR: cache: allow caching of OPTIONS request"
7803
Willy Tarreaudb514072019-07-16 19:15:28 +020078042019/07/16 : 2.1-dev1
7805 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
7806 - DOC: this is a development branch again.
7807 - MEDIUM: Make 'block' directive fatal
7808 - MEDIUM: Make 'redispatch' directive fatal
7809 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
7810 - MEDIUM: Remove 'option independant-streams'
7811 - MINOR: sample: Add sha2([<bits>]) converter
7812 - MEDIUM: server: server-state global file stored in a tree
7813 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
7814 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
7815 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
7816 - MINOR: htx: Add the function htx_change_blk_value_len()
7817 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
7818 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
7819 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
7820 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
7821 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
7822 - BUILD: mworker: silence two printf format warnings around getpid()
7823 - BUILD: makefile: use :space: instead of digits to count commits
7824 - BUILD: makefile: adjust the sed expression of "make help" for solaris
7825 - BUILD: makefile: do not rely on shell substitutions to determine git version
7826 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
7827 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
7828 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
7829 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
7830 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
7831 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
7832 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
7833 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
7834 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
7835 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
7836 - BUG/MINOR: log: Detect missing sampling ranges in config
7837 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
7838 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
7839 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
7840 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
7841 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
7842 - BUG/MINOR: mworker/cli: don't output a \n before the response
7843 - BUG/MEDIUM: checks: unblock signals in external checks
7844 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
7845 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
7846 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
7847 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
7848 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
7849 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
7850 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
7851 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
7852 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
7853 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
7854 - BUG/MEDIUM: servers: Authorize tfo in default-server.
7855 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
7856 - MINOR: server: Add "no-tfo" option.
7857 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
7858 - MINOR: action: Add the return code ACT_RET_DONE for actions
7859 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
7860 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
7861 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
7862 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
7863 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
7864 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
7865 - DOC: contrib: spoa_server Add some hints for building spoa_server
7866 - DOC: Fix typo in intro.txt
7867 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
7868 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
7869 - MINOR: pools: release the pool's lock during the malloc/free calls
7870 - MINOR: pools: always pre-initialize allocated memory outside of the lock
7871 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
7872 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
7873 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
7874 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
7875 - BUG/MEDIUM: da: cast the chunk to string.
7876 - DOC: Fix typos and grammer in configuration.txt
7877 - CLEANUP: proto_tcp: Remove useless header inclusions.
7878 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
7879 - MINOR: task: introduce work lists
7880 - BUG/MAJOR: listener: fix thread safety in resume_listener()
7881 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
7882 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
7883 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
7884 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
7885 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
7886 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
7887 - MEDIUM: mworker-prog: Add user/group options to program section
7888 - REGTESTS: checks: tcp-check connect to multiple ports
7889 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
7890
Willy Tarreau9dc6b972019-06-16 21:49:47 +020078912019/06/16 : 2.1-dev0
7892 - exact copy of 2.0.0
7893
Willy Tarreauba236302019-06-16 20:00:26 +020078942019/06/16 : 2.0.0
7895 - MINOR: fd: Don't use atomic operations when it's not needed.
7896 - DOC: mworker-prog: documentation for the program section
7897 - MINOR: http: add a new "http-request replace-uri" action
7898 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
7899 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
7900 - MINOR: mworker: change formatting in uptime field of "show proc"
7901 - MINOR: mworker: add the HAProxy version in "show proc"
7902 - MINOR: doc: Remove -Ds option in man page
7903 - MINOR: doc: add master-worker in the man page
7904 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
7905 - BUILD: Silence gcc warning about unused return value
7906 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
7907 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
7908 - MINOR: doc: update the manpage and usage message about -S
7909 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
7910 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
7911 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
7912 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
7913 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
7914 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
7915 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
7916 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
7917 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
7918 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
7919 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
7920 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
7921 - MINOR: h2: Set flags about the request's scheme on the start-line
7922 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
7923 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
7924 - MEDIUM: server: server-state only rely on server name
7925 - CLEANUP: connection: rename the wait_event.task field to .tasklet
7926 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
7927 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
7928 - DOC: add some environment variables in section 2.3
7929 - BUILD: makefile: clarify the "help" output and list options
7930 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
7931 - BUG: tasks: fix bug introduced by latest scheduler cleanup
7932 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
7933 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
7934 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
7935 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
7936 - BUILD: makefile: further clarify the "help" output and list targets
7937 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
7938 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
7939 - DOC: update few references to the linux* targets and change them to linux-glibc
7940 - BUILD: makefile: detect and reject recently removed linux targets
7941 - BUILD: makefile: enable linux namespaces by default on linux
7942 - BUILD: makefile: enable TFO on linux platforms
7943 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
7944 - DOC: small updates to the CONTRIBUTING file
7945 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
7946 - CLEANUP: removed obsolete examples an move a few to better places
7947 - DOC: Fix typos in CONTRIBUTING
7948 - DOC: update the outdated ROADMAP file
7949 - DOC: create a BRANCHES file to explain the life cycle
7950 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
7951 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
7952 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
7953 - BUILD: tools: work around an internal compiler bug in gcc-3.4
7954 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
7955 - BUILD: makefile: enable USE_RT on Solaris
7956 - BUILD: makefile: do not use echo -n
7957 - DOC: mention a few common build errors in the INSTALL file
7958
Willy Tarreauca3551f2019-06-11 19:28:00 +020079592019/06/11 : 2.0-dev7
7960 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
7961 - MINOR: tools: add new bitmap manipulation functions
7962 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
7963 - MINOR: chunks: Make sure trash_size is only set once.
7964 - Revert "MINOR: chunks: Make sure trash_size is only set once."
7965 - MINOR: threads: serialize threads initialization
7966 - MINOR peers: data structure simplifications for server names dictionary cache.
7967 - DOC: peers: Update for dictionary cache entries for peers protocol.
7968 - MINOR: dict: Store the length of the dictionary entries.
7969 - MINOR: peers: A bit of optimization when encoding cached server names.
7970 - MINOR: peers: Optimization for dictionary cache lookup.
7971 - MEDIUM: tools: improve time format error detection
7972 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
7973 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
7974 - MINOR: threads: avoid clearing harmless twice in thread_release()
7975 - MEDIUM: threads: add thread_sync_release() to synchronize steps
7976 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
7977 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
7978 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
7979 - MEDIUM: init/threads: don't use spinlocks during the init phase
7980 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
7981 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
7982 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
7983 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
7984 - MINOR: htx: Add the function htx_move_blk_before()
7985 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
7986 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
7987 - MINOR: http: turn default error files to HTTP/1.1
7988 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
7989 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
7990 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
7991 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
7992 - MINOR: contrib/spoa_server: Add random IP score
7993 - DOC/MINOR: contrib/spoa_server: Fix typo in README
7994
Willy Tarreaub57f1092019-06-07 06:12:59 +020079952019/06/07 : 2.0-dev6
7996 - BUG/MEDIUM: connection: fix multiple handshake polling issues
7997 - MINOR: connection: also stop receiving after a SOCKS4 response
7998 - MINOR: mux-h1: don't try to recv() before the connection is ready
7999 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
8000 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
8001 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
8002 - CONTRIB: debug: add 4 missing connection/conn_stream flags
8003 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
8004 - MINOR: server: increase the default pool-purge-delay to 5 seconds
8005 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
8006 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
8007 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
8008 - BUILD: task: fix a build warning when threads are disabled
8009 - CLEANUP: peers: Remove tabs characters.
8010 - CLEANUP: peers: Replace hard-coded values by macros.
8011 - BUG/MINOR: peers: Wrong stick-table update message building.
8012 - MINOR: dict: Add dictionary new data structure.
8013 - MINOR: peers: Add a LRU cache implementation for dictionaries.
8014 - MINOR: stick-table: Add "server_name" new data type.
8015 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
8016 - MINOR: proxy: Add a "server by name" tree to proxy.
8017 - MINOR: server: Add a dictionary for server names.
8018 - MINOR: stream: Stickiness server lookup by name.
8019 - MINOR: peers: Make peers protocol support new "server_name" data type.
8020 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
8021 - REGTEST: Add a basic server by name stickiness reg test.
8022 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
8023 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
8024 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
8025 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
8026 - BUILD: travis-ci improvements
8027 - MINOR: SSL: add client/server random sample fetches
8028 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
8029 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
8030 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
8031 - MEDIUM: mux-h1: refactor output processing
8032 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
8033 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
8034 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
8035 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
8036 - MEDIUM: htx: Add the parsing of trailers of chunked messages
8037 - MINOR: htx: Don't use end-of-data blocks anymore
8038 - BUG/MINOR: mux-h1: Don't send more data than expected
8039 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
8040 - BUG/MINOR: peers: Wrong "server_name" decoding.
8041 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
8042 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
8043 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
8044 - MEDIUM: ssl: Handle subscribe by itself.
8045 - MINOR: ssl: Make ssl_sock_handshake() static.
8046 - MINOR: connections: Add a new xprt method, remove_xprt.
8047 - MINOR: connections: Add a new xprt method, add_xprt().
8048 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
8049 - MEDIUM: connections: Remove CONN_FL_SOCK*
8050 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
8051 - BUG/MINOR: peers: Wrong server name parsing.
8052 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
8053 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
8054 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
8055 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
8056 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
8057 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
8058 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
8059 - MEDIUM: stream: re-arrange the connection setup status reporting
8060 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
8061 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
8062 - MEDIUM: stream: rearrange the events to remove the loop
8063 - MEDIUM: stream: only loop on flags relevant to the analysers
8064 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
8065 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
8066 - BUILD: peers: fix a build warning about an incorrect intiialization
8067 - BUG/MINOR: time: make sure only one thread sets global_now at boot
8068 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
8069
Willy Tarreauabc874e2019-06-02 12:06:08 +020080702019/06/02 : 2.0-dev5
8071 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
8072 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
8073 - BUILD: watchdog: condition it to USE_RT
8074 - MINOR: raw_sock: report global traffic statistics
8075 - MINOR: stats: report the global output bit rate in human readable form
8076 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
8077 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
8078 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
8079 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
8080 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
8081 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
8082 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
8083 - DOC: fix typos
8084 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
8085 - OPTIM: freq-ctr: don't take the date lock for most updates
8086 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
8087 - CLEANUP: debug: remove the TRACE() macro
8088 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
8089 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
8090 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
8091 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
8092 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
8093 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
8094 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
8095 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
8096 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
8097 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
8098 - BUILD: ssl: fix latest LibreSSL reg-test error
8099 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
8100 - MINOR: cli/activity: add 3 general purpose counters in development mode
8101 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
8102 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
8103 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
8104 - MEDIUM: config: now alert when two servers have the same name
8105 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
8106 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
8107 - MINOR: htx: Store the head position instead of the wrap one
8108 - MINOR: htx: Store start-line block's position instead of address of its payload
8109 - MINOR: htx: Add functions to get the first block of an HTX message
8110 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
8111 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
8112 - CLEANUP: htx: Remove unused function htx_get_stline()
8113 - MINOR: http/htx: Use sl_pos directly to replace the start-line
8114 - MEDIUM: http/htx: Perform analysis relatively to the first block
8115 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
8116 - MINOR: htx: Add function htx_get_max_blksz()
8117 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
8118 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
8119 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
8120 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
8121 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
8122 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
8123 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
8124 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
8125 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
8126 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
8127 - MEDIUM: htx: 1xx messages are now part of the final reponses
8128 - MINOR: channel/htx: Add function to forward headers of an HTX message
8129 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
8130 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
8131 - MEDIUM: htx: Store the first block position instead of the start-line one
8132 - MINOR: stats/htx: don't use the first block position but the head one
8133 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
8134 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
8135 - MEDIUM: filters/htx: Filter body relatively to the first block
8136 - MINOR: htx: Optimize htx_drain() when all data are drained
8137 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
8138 - MINOR: htx: remove the unused function htx_find_blk()
8139 - MINOR: htx: Remove support of pseudo headers because it is unused
8140 - BUG/MEDIUM: http: fix "http-request reject" when not final
8141 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
8142 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
8143 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
8144 - MINOR: htx: make htx_add_data() return the transmitted byte count
8145 - MEDIUM: htx: make htx_add_data() never defragment the buffer
8146 - MINOR: activity: write totals on the "show activity" output
8147 - MINOR: activity: report totals and average separately
8148 - MEDIUM: poller: separate the wait time from the wake events
8149 - MINOR: activity: report the number of failed pool/buffer allocations
8150 - MEDIUM: buffers: relax the buffer lock a little bit
8151 - MINOR: task: turn the WQ lock to an RW_LOCK
8152 - MEDIUM: task: don't grab the WR lock just to check the WQ
8153 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
8154 - MEDIUM: sessions: Introduce session flags.
8155 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
8156 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
8157 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
8158 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
8159 - MEDIUM: tasks: Get rid of active_tasks_mask.
8160 - MEDIUM: connection: Upstream SOCKS4 proxy support
8161 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
8162 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
8163
Willy Tarreau56740692019-05-22 20:48:33 +020081642019/05/22 : 2.0-dev4
8165 - BUILD: enable freebsd builds on cirrus-ci
8166 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
8167 - MEDIUM: Make 'option forceclose' actually warn
8168 - MEDIUM: Make 'resolution_pool_size' directive fatal
8169 - DOC: management: place "show activity" at the right place
8170 - MINOR: cli/activity: show the dumping thread ID starting at 1
8171 - MINOR: task: export global_task_mask
8172 - MINOR: cli/debug: add a thread dump function
8173 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
8174 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
8175 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
8176 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
8177 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
8178 - BUG/MINOR: debug: don't check the call date on tasklets
8179 - MINOR: thread: implement ha_thread_relax()
8180 - MINOR: task: put barriers after each write to curr_task
8181 - MINOR: task: always reset curr_task when freeing a task or tasklet
8182 - MINOR: stream: detach the stream from its own task on stream_free()
8183 - MEDIUM: debug/threads: implement an advanced thread dump system
8184 - REGTEST: extend the check duration on tls_health_checks and mark it slow
8185 - DOC: fix "successful" typo
8186 - MINOR: init: setenv HAPROXY_CFGFILES
8187 - MINOR: threads/init: synchronize the threads startup
8188 - MEDIUM: init/mworker: make the pipe register function a regular initcall
8189 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
8190 - CLEANUP: threads: remove the now unused START_LOCK label
8191 - MINOR: init/threads: make the global threads an array of structs
8192 - MINOR: threads: add each thread's clockid into the global thread_info
8193 - CLEANUP: stream: remove an obsolete debugging test
8194 - MINOR: tools: add dump_hex()
8195 - MINOR: debug: implement ha_panic()
8196 - MINOR: debug/cli: add some debugging commands for developers
8197 - MINOR: tools: provide a may_access() function and make dump_hex() use it
8198 - MINOR: debug: make ha_panic() report threads starting at 1
8199 - REORG: compat: move some integer limit definitions from standard.h to compat.h
8200 - REORG: threads: move the struct thread_info from global.h to hathreads.h
8201 - MINOR: compat: make sure to always define clockid_t
8202 - MINOR: threads: always place the clockid in the struct thread_info
8203 - MINOR: threads: add a thread-local thread_info pointer "ti"
8204 - MINOR: time: move the cpu, mono, and idle time to thread_info
8205 - MINOR: time: add a function to retrieve another thread's cputime
8206 - MINOR: debug: report each thread's cpu usage in "show thread"
8207 - BUILD: threads: only assign the clock_id when supported
8208 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
8209 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
8210 - MAJOR: polling: add event ports support (Solaris)
8211 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
8212 - CLEANUP: time: refine the test on _POSIX_TIMERS
8213 - MINOR: compat: define a new empty type empty_t for non-implemented fields
8214 - CLEANUP: time: switch clockid_t to empty_t when not available
8215 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
8216 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
8217 - MINOR: debug: switch to SIGURG for thread dumps
8218 - CLEANUP: threads: really move thread_info to hathreads.c
8219 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
8220 - CLEANUP: debug: always report harmless/want_rdv even without threads
8221 - MINOR: threads: implement ha_tkill() and ha_tkillall()
8222 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
8223 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
8224 - MINOR: debug: dump streams when an applet, iocb or stream is known
8225 - MINOR: threads: add a "stuck" flag to the thread_info struct
8226 - MINOR: threads: add a timer_t per thread in thread_info
8227 - MAJOR: watchdog: implement a thread lockup detection mechanism
8228 - MINOR: stream: remove the cpu time detection from process_stream()
8229 - MINOR: connection: report the mux names in "haproxy -vv"
8230 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
8231 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
8232 - MINOR: WURFL: call header_retireve_callback() in dummy library
8233 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
8234 - MINOR: WURFL: shows log messages during module initialization
8235 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
8236 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
8237 - MEDIUM: WURFL: HTX awareness.
8238 - MINOR: WURFL: module version bump to 2.0
8239 - MINOR: WURFL: do not emit warnings when not configured
8240 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
8241 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
8242 - BUILD: travis: add sanitizers to travis-ci builds
8243 - BUILD: time: remove the test on _POSIX_C_SOURCE
8244 - CLEANUP: build: rename some build macros to use the USE_* ones
8245 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
8246 - BUG/MEDIUM: dns: make the port numbers unsigned
8247 - MEDIUM: config: deprecate the antique req* and rsp* commands
8248
Willy Tarreaua257a9b2019-05-15 16:51:48 +020082492019/05/15 : 2.0-dev3
8250 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
8251 - CLEANUP: peers: remove useless annoying tabulations.
8252 - CLEANUP: peers: replace timeout constants by macros.
8253 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
8254 - DOC: The option httplog is no longer valid in a backend.
8255 - DOC: peers: Peers protocol documentation update.
8256 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
8257 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
8258 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
8259 - BUILD: Makefile: remove outdated support for dlmalloc
8260 - BUILD: Makefile: consider a variable's origin and not its value for the options list
8261 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
8262 - BUILD: Makefile: shorten default settings declaration
8263 - BUILD: Makefile: clean up the target declarations
8264 - BUILD: report the whole feature set with their status in haproxy -vv
8265 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
8266 - REGTEST: script: make the script use the new features list
8267 - REGTEST: script: remove platform-specific assigments of OPTIONS
8268 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
8269 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
8270 - BUILD/MINOR: listener: Silent a few signedness warnings.
8271 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
8272 - BUG/MEDIUM: mworker: don't free the wrong child when not found
8273 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
8274 - BUG/MAJOR: checks: segfault during tcpcheck_main
8275 - BUILD: makefile: work around an old bug in GNU make-3.80
8276 - BUILD: makefile: work around another bug in make 3.80
8277 - BUILD: http: properly mark some struct as extern
8278 - BUILD: chunk: properly declare pool_head_trash as extern
8279 - BUILD: cache: avoid a build warning with some compilers/linkers
8280 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
8281 - MINOR: tools: add an unsetenv() implementation
8282 - BUILD: re-implement an initcall variant without using executable sections
8283 - BUILD: use inttypes.h instead of stdint.h
8284 - BUILD: connection: fix naming of ip_v field
8285 - BUILD: makefile: fix build of IPv6 header on aix51
8286 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
8287 - BUILD: define unsetenv on AIX 5.1
8288 - BUILD: Makefile: disable shared cache on AIX 5.1
8289 - MINOR: ssl: Add aes_gcm_dec converter
8290 - REORG: mworker: move serializing functions to mworker.c
8291 - REORG: mworker: move signals functions to mworker.c
8292 - REORG: mworker: move IPC functions to mworker.c
8293 - REORG: mworker: move signal handlers and related functions
8294 - REORG: mworker: move mworker_cleanlisteners to mworker.c
8295 - MINOR: mworker: calloc mworker_proc structures
8296 - MINOR: mworker: don't use children variable anymore
8297 - MINOR: cli: export cli_parse_default() definition in cli.h
8298 - REORG: mworker/cli: move CLI functions to mworker.c
8299 - MEDIUM: mworker-prog: implement program for master-worker
8300 - MINOR: mworker/cli: show programs in 'show proc'
8301 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
8302 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
8303 - MINOR: cli: export HAPROXY_CLI environment variable
8304 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
8305 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
8306 - REGTEST: http-capture/h00000: Relax a regex matching the log message
8307 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
8308 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
8309 - REGTEST: log/b00000: Be sure the client always hits its timeout
8310 - REGTEST: lua/b00003: Relax the regex matching the log message
8311 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
8312 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
8313 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
8314 - BUG/MEDIUM: htx: fix random premature abort of data transfers
8315 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
8316 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
8317 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
8318 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
8319 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
8320 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
8321 - MINOR: skip get_gmtime where tm is unused
8322 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
8323 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
8324 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
8325 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
8326 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
8327 - BUG/MINOR: listener: renice the accept ring processing task
8328 - MINOR: cli/listener: report the number of accepts on "show activity"
8329 - MINOR: cli/activity: report the accept queue sizes in "show activity"
8330 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
8331 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
8332 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
8333 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
8334 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
8335 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
8336 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
8337 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
8338 - MINOR: mux-h1: Simplify handling of 1xx responses
8339 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
8340 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
8341 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
8342 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
8343 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
8344 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
8345 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
8346 - MINOR: stream: Set a flag when the stream uses the HTX
8347 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
8348 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
8349 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
8350 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
8351 - MEDIUM: muxes: Add an optional input buffer during mux initialization
8352 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
8353 - MEDIUM: muxes: Be prepared to don't own connection during the release
8354 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
8355 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
8356 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
8357 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
8358 - MAJOR: htx: Enable the HTX mode by default for all proxies
8359 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
8360 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
8361 - CLEANUP: task: do not export rq_next anymore
8362 - MEDIUM: tasks: improve fairness between the local and global queues
8363 - MEDIUM: tasks: only base the nice offset on the run queue depth
8364 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
8365 - BUG/MEDIUM: map: Fix memory leak in the map converter
8366 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
8367 - BUILD: task/thread: fix single-threaded build of task.c
8368 - BUILD: cli/threads: fix build in single-threaded mode
8369 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
8370 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
8371 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
8372 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
8373 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
8374 - BUILD: address a few cases of "static <type> inline foo()"
8375 - BUILD: do not specify "const" on functions returning structs or scalars
8376 - BUILD: htx: fix a used uninitialized warning on is_cookie2
8377 - MINOR: peers: Add a new command to the CLI for peers.
8378 - DOC: update for "show peers" CLI command.
8379 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
8380 - MEDIUM: mworker: store the leaving state of a process
8381 - MEDIUM: mworker-prog: implements 'option start-on-reload'
8382 - CLEANUP: mworker: remove the type field in mworker_proc
8383 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
8384 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
8385 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
8386 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
8387 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
8388 - BUG/MINOR: mworker: mworker_kill should apply on every children
8389 - BUG/MINOR: mworker: don't exit with an ambiguous value
8390 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
8391 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
8392 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
8393 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
8394 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
8395 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
8396 - MINOR: mux-h1: Handle read0 during TCP splicing
8397 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
8398 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
8399 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
8400 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
8401 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
8402 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
8403 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
8404 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
8405 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
8406 - BUG/MEDIUM: applets: Don't use task_in_rq().
8407 - BUG/MAJOR: task: make sure never to delete a queued task
8408 - MINOR: task/thread: factor out a wake-up condition
8409 - CLEANUP: task: remain consistent when using the task's handler
8410 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
8411 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
8412 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
8413 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
8414 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
8415 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
8416 - BUG/MINOR: mworker: disable busy polling in the master process
8417 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
8418 - MEDIUM: ssl: Give ssl_sock its own context.
8419 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
8420 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
8421 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
8422 - MEDIUM: ssl: provide our own BIO.
8423 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
8424 - MINOR: peers: adds counters on show peers about tasks calls.
8425 - MEDIUM: enable travis-ci builds
8426 - MINOR: fd: Add a counter of used fds.
8427 - MEDIUM: connections: Add a way to control the number of idling connections.
8428 - BUG/MEDIUM: maps: only try to parse the default value when it's present
8429 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
8430 - REGTEST: Missing REQUIRE_VERSION declarations.
8431 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
8432 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
8433 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
8434 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
8435 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
8436 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
8437 - MINOR: gcc: Fix a silly gcc warning in connect_server()
8438 - MINOR: ssl/cli: async fd io-handlers printable on show fd
8439 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
8440 - BUILD: add USE_WURFL to the list of known build options
8441 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
8442 - BUILD: wurfl: build fix for 1.9/2.0 code base
8443 - CLEANUP: wurfl: removed deprecated methods
8444 - DOC: wurfl: added point of contact in MAINTAINERS file
8445 - MINOR: wurfl: enabled multithreading mode
8446 - MINOR: contrib: dummy wurfl library
8447 - MINOR: dns: dns_requester structures are now in a memory pool
8448 - MINOR: dns: move callback affection in dns_link_resolution()
8449 - MINOR: obj_type: new object type for struct stream
8450 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
8451 - MINOR: log: Extract some code to send syslog messages.
8452 - REGTEST: replace LEVEL option by a more human readable one.
8453 - REGTEST: rename the reg test files.
8454 - REGTEST: adapt some reg tests after renaming.
8455 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
8456 - BUG/MAJOR: stream: Missing DNS context initializations.
8457 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
8458 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
8459 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
8460 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
8461 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
8462 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
8463 - CLEANUP: task: report calls as unsigned in show sess
8464 - MINOR: tasks/activity: report the context switch and task wakeup rates
8465 - MINOR: stream: measure and report a stream's call rate in "show sess"
8466 - MINOR: applet: measure and report an appctx's call rate in "show sess"
8467 - BUILD: extend Travis CI config to support more platforms
8468 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
8469 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
8470 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
8471 - BUILD: travis: remove the "allow_failures" entry
8472 - BUG/MINOR: activity: always initialize the profiling variable
8473 - MINOR: activity: make the profiling status per thread and not global
8474 - MINOR: activity: enable automatic profiling turn on/off
8475 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
8476 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
8477 - MINOR: connection: make the debugging helper functions safer
8478 - MINOR: stream/debug: make a stream dump and crash function
8479 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
8480 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
8481 - MEDIUM: streams: measure processing time and abort when detecting bugs
8482 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
8483 - MEDIUM: da: HTX mode support.
8484 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
8485 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
8486 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
8487 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
8488 - DOC: contrib/modsecurity: Typos and fix the reject example
8489 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
8490 - MINOR: log: Add "sample" new keyword to "log" lines.
8491 - MINOR: log: Enable the log sampling and load-balancing feature.
8492 - DOC: log: Document the sampling and load-balancing logging feature.
8493 - REGTEST: Add a new reg test for log load-balancing feature.
8494 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
8495 - REGTEST: Make this reg test be Linux specific.
8496 - CLEANUP: task: move the task_per_thread definition to task.h
8497 - MINOR: activity: report context switch counts instead of rates
8498 - MINOR: threads: Implement HA_ATOMIC_LOAD().
8499 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
8500 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
8501 - MINOR: config: Test validity of tune.maxaccept during the config parsing
8502 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
8503 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
8504 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
8505 - BUG/MINOR: haproxy: fix rule->file memory leak
8506 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
8507 - BUG/MINOR: checks: free memory allocated for tasklets
8508 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
8509 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
8510 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
8511 - MINOR: threads: flatten the per-thread cpu-map
8512 - MINOR: init/threads: remove the useless tids[] array
8513 - MINOR: init/threads: make the threads array global
8514 - BUG/MEDIUM: ssl: Use the early_data API the right way.
8515 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
8516 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
8517 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
8518 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
8519 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
8520 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
8521 - BUG/MINOR: logs/threads: properly split the log area upon startup
8522 - BUILD: extend travis-ci matrix
8523 - CLEANUP: Remove appsession documentation
8524 - DOC: Fix typo in keyword matrix
8525 - BUILD: remove "build_libressl" duplicate declaration
8526 - BUILD: travis-ci: get back to osx without openssl support
8527 - BUILD: enable several LibreSSL hacks, including
8528 - BUILD: temporarily mark LibreSSL builds as allowed to fail
8529 - BUILD: travis: TMPDIR replacement.
8530 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
8531 - MINOR: doc: Document allow-0rtt on the server line.
8532 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
8533 - MEDIUM: proto: Change the prototype of the connect() method.
8534 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
8535 - MINOR: config: Extract the code of "stick-table" line parsing.
8536 - BUILD/MINOR: stick-table: Compilation fix.
8537 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
8538 - MINOR: stick-tables: Add peers process binding computing.
8539 - MINOR: stick-table: Add prefixes to stick-table names.
8540 - MINOR: peers: Do not emit global stick-table names.
8541 - DOC: Update for "table" lines in "peers" section.
8542 - REGTEST: Add reg tests for "table" lines in "peers" sections.
8543 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
8544 - REGTEST: make the tls_health_checks test much faster
8545 - REGTEST: make the "table in peers" test require v2.0
8546 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
8547 - BUG/MEDIUM: h2/htx: always fail on too large trailers
8548 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
8549 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
8550 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
8551 - REGTEST: Flag some slow reg tests.
8552 - REGTEST: Reg tests file renaming.
8553 - REGTEST: Wrong renaming for one reg test.
8554 - REGTEST: Wrong assumption in IP:port logging test.
8555 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
8556 - MINOR: systemd: Use the variables from /etc/default/haproxy
8557 - MINOR: systemd: Make use of master socket in systemd unit
8558 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
8559 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
8560 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
8561 - CLEANUP: task: remove unneeded tests before task_destroy()
8562 - MINOR: mworker: support a configurable maximum number of reloads
8563 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
8564 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
8565 - BUG/MINOR: mux-h1: Fix the parsing of trailers
8566 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
8567 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
8568 - MINOR: htx: Don't try to append a trailer block with the previous one
8569 - MINOR: htx: Remove support for unused OOB HTX blocks
8570 - BUILD: travis-ci bugfixes and improvements
8571 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
8572 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
8573 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
8574 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
8575 - BUILD: ssl: make libressl use its own version numbers
8576 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
8577 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
8578 - BUILD: ssl: fix libressl build again after aes-gcm-enc
8579 - REORG: ssl: move openssl-compat from proto to common
8580 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
8581 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
8582 - CLEANUP: ssl: make inclusion of openssl headers safe
8583 - BUILD: add BoringSSL to travis-ci build matrix
8584 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
8585 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
8586 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
8587 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
8588 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
8589 - MEDIUM: streams: Add a new http action, disable-l7-retry.
8590 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
8591 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
8592 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
8593 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
8594 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
8595 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
8596 - BUILD: threads: fix again the __ha_cas_dw() definition
8597 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
8598 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
8599 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
8600 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
8601 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
8602 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
8603 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
8604 - BUG/MAJOR: ssl: segfault upon an heartbeat request
8605 - MINOR: spoa-server: Clone the v1.7 spoa-example project
8606 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
8607 - MINOR: spoa-server: Externalise debug functions
8608 - MINOR: spoe-server: rename "worker" functions
8609 - MINOR: spoa-server: Replace the thread init system by processes
8610 - MINOR: spoa-server: With debug mode, start only one process
8611 - MINOR: spoa-server: Allow registering external processes
8612 - MINOR: spoa-server: Allow registering message processors
8613 - MINOR: spoa-server: Load files
8614 - MINOR: spoa-server: Prepare responses
8615 - MINOR: spoa-server: Execute registered callbacks
8616 - MINOR: spoa-server: Add Lua processing
8617 - MINOR: spoa-server: Add python
8618 - MINOR/DOC: spoe-server: Add documentation
8619 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
8620 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
8621 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
8622 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
8623 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
8624 - CLEANUP: connection: remove the handle field from the wait_event struct
8625 - BUG/MINOR: log: Wrong log format initialization.
8626 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
8627 - BUG/MINOR: mworker: use after free when the PID not assigned
8628 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
8629 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
8630 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
8631 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
8632 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
8633 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
8634 - MINOR: mux-h2: add macros to check multiple stream states at once
8635 - MINOR: mux-h2: stop relying on CS_FL_REOS
8636 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
8637 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
8638 - MINOR: debug: add a new BUG_ON macro
8639 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
8640 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
8641 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
8642 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
8643
Willy Tarreau6e893b92019-03-26 05:40:51 +010086442019/03/26 : 2.0-dev2
8645 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
8646 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
8647 - MINOR: lists: Implement locked variations.
8648 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
8649 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
8650 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
8651 - MINOR: cfgparse: Add a cast to make gcc happier.
8652 - BUG/MEDIUM: standard: Wrong reallocation size.
8653 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
8654 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
8655 - MAJOR: config: disable support for nbproc and nbthread in parallel
8656 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
8657 - MAJOR: listener: do not hold the listener lock in listener_accept()
8658 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
8659 - MINOR: tools: implement functions to look up the nth bit set in a mask
8660 - MINOR: listener: pre-compute some thread counts per bind_conf
8661 - MINOR: listener: implement multi-queue accept for threads
8662 - MAJOR: listener: use the multi-queue for multi-thread listeners
8663 - MINOR: activity: add accept queue counters for pushed and overflows
8664 - MINOR: config: add global tune.listener.multi-queue setting
8665 - MAJOR: threads: enable one thread per CPU by default
8666 - DOC: update management.txt to reflect that threads are used by default
8667 - BUG/MINOR: config: don't over-count the global maxsock value
8668 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
8669 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
8670 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
8671 - MINOR: list: make the delete and pop operations idempotent
8672 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
8673 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
8674 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
8675 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
8676 - MINOR: listener: introduce listener_backlog() to report the backlog value
8677 - MINOR: listener: do not needlessly set l->maxconn
8678 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
8679 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
8680 - MINOR: peers: Add a message for heartbeat.
8681 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
8682 - BUG/MINOR: init: never lower rlim_fd_max
8683 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
8684 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
8685 - MINOR: init: make the maxpipe computation more accurate
8686 - MINOR: init: move some maxsock updates earlier
8687 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
8688 - REGTEST: fix a spurious "nbthread 4" in the connection test
8689 - DOC: update the text related to the global maxconn value
8690 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
8691 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
8692 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
8693 - MINOR: htx: unconditionally handle parsing errors in requests or responses
8694 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
8695 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
8696 - MINOR: sample: Code factorization "ungrpc" converter.
8697 - MINOR: sample: Rework gRPC converter code.
8698 - CLEANUP: wurfl: remove dead, broken and unmaintained code
8699 - MINOR: config: relax the range checks on cpu-map
8700 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
8701 - MINOR: sample: Extract some protocol buffers specific code.
8702 - DOC: Remove tabs and fixed punctuation.
8703 - MINOR: sample: Add a protocol buffers specific converter.
8704 - REGTEST: Peers reg tests.
8705 - REGTEST: Enable reg tests with HEAD HTTP method usage.
8706 - MINOR: lists: add a LIST_DEL_INIT() macro
8707 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
8708 - MINOR: listener: improve incoming traffic distribution
8709 - MINOR: tools: implement my_flsl()
8710 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
8711 - CLEANUP: listener: remove old thread bit mapping
8712 - MINOR: listener: move thr_idx from the bind_conf to the listener
8713 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
8714 - BUG/MAJOR: config: Wrong maxconn adjustment.
8715 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
8716 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
8717 - MINOR: fd: Remove debugging code.
8718 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
8719 - MINOR: threads: Implement __ha_barrier_atomic*.
8720 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
8721 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
8722 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
8723 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
8724 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
8725 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
8726 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
8727 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
8728 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
8729 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
8730 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
8731 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
8732 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
8733 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
8734 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
8735 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
8736 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
8737 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
8738 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
8739 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
8740 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
8741 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
8742 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
8743 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
8744 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
8745 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
8746 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
8747 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
8748 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
8749 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
8750 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
8751 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
8752 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
8753 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
8754 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
8755 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
8756 - MEDIUM: list: Remove useless barriers.
8757 - MEDIUM: list: Use _HA_ATOMIC_*
8758 - MEDIUM: connections: Use _HA_ATOMIC_*
8759 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
8760 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
8761 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
8762 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
8763 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
8764 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
8765 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
8766 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
8767 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
8768 - MINOR: stats: Move stuff about the stats status codes in stats files
8769 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
8770 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
8771 - BUILD: listener: shut up a build warning when threads are disabled
8772 - BUILD: Makefile: allow the reg-tests target to be verbose
8773 - BUILD: Makefile: resolve LEVEL before calling run-regtests
8774 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
8775 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
8776 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
8777 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
8778 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
8779 - MINOR: muxes: Report the Last read with a dedicated flag
8780 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
8781 - BUILD: tools: fix a build warning on some 32-bit archs
8782 - MINOR: init: report the list of optionally available services
8783 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
8784 - BUG/MINOR: cache: Fully consume large requests in the cache applet
8785 - BUG/MINOR: stats: Fully consume large requests in the stats applet
8786 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
8787 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
8788 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
8789 - MINOR: stats/cache: Handle the header Expect when applets are registered
8790 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
8791 - CLEANUP: cache: don't export http_cache_applet anymore
8792 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
8793 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
8794 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
8795 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
8796 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
8797 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
8798 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
8799 - CLEANUP: mux-h2: add some comments to help understand the code
8800 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
8801 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
8802 - BUG/MEDIUM: h2: Try to be fair when sending data.
8803 - BUG/MINOR: proto-http: Don't forward request body anymore on error
8804 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
8805 - MINOR: connection: and new flag to mark end of input (EOI)
8806 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
8807 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
8808 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
8809 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
8810 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
8811 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
8812 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
8813 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
8814 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
8815 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
8816 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
8817 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
8818 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
8819 - CONTRIB: debug: report the CS and CF's EOI flags
8820 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
8821
Willy Tarreau6c1b6672019-02-26 16:43:49 +010088222019/02/26 : 2.0-dev1
8823 - MINOR: mux-h2: only increase the connection window with the first update
8824 - REGTESTS: remove the expected window updates from H2 handshakes
8825 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
8826 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
8827 - MEDIUM: mux-h2: remove padlen during headers phase
8828 - MINOR: h2: add a bit-based frame type representation
8829 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
8830 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
8831 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
8832 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
8833 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
8834 - MINOR: buffers: add a new b_move() function
8835 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
8836 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
8837 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
8838 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
8839 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
8840 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
8841 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
8842 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
8843 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
8844 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
8845 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
8846 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
8847 - MEDIUM: servers: Be smarter when switching connections.
8848 - MEDIUM: sessions: Keep track of which connections are idle.
8849 - MINOR: payload: add sample fetch for TLS ALPN
8850 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
8851 - MINOR: channel: Add the function channel_add_input
8852 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
8853 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
8854 - BUG/MAJOR: htx: Return the good block address after a defrag
8855 - MINOR: lb: allow redispatch when using consistent hash
8856 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
8857 - BUG/MEDIUM: mux-h2: always restart reading if data are available
8858 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
8859 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
8860 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
8861 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
8862 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
8863 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
8864 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
8865 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
8866 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
8867 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
8868 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
8869 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
8870 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
8871 - MINOR: mux-h2: remove a misleading and impossible test
8872 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
8873 - MINOR: mux-h2: check for too many streams only for idle streams
8874 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
8875 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
8876 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
8877 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
8878 - MINOR: htx: add a new function to add a block without filling it
8879 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
8880 - MEDIUM: mux-h2: pass trailers to HTX
8881 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
8882 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
8883 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
8884 - MINOR: h1: make the H1 headers block parser able to parse headers only
8885 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
8886 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
8887 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
8888 - MINOR: mux-h1: Add the subscription events in "show fd" command
8889 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
8890 - BUG/MINOR: cache/htx: Be sure to count partial trailers
8891 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
8892 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
8893 - MINOR: connections: Remove a stall comment.
8894 - BUG/MEDIUM: cli: make "show sess" really thread-safe
8895 - BUILD: add a new file "version.c" to carry version updates
8896 - MINOR: stream/htx: add the HTX flags output in "show sess all"
8897 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
8898 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
8899 - BUG/MINOR: lua: bad args are returned for Lua actions
8900 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
8901 - MINOR: htx: Add an helper function to get the max space usable for a block
8902 - MINOR: channel/htx: Add HTX version for some helper functions
8903 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
8904 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
8905 - DOC: regtest: make it clearer what the purpose of the "broken" series is
8906 - REGTEST: mailers: add new test for 'mailers' section
8907 - REGTEST: Add a reg test for health-checks over SSL/TLS.
8908 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
8909 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
8910 - BUG/MINOR: compression: Disable it if another one is already in progress
8911 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
8912 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
8913 - REGTEST: Add some informatoin to test results.
8914 - MINOR: htx: Add a function to truncate all blocks after a specific offset
8915 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
8916 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
8917 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
8918 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
8919 - DOC: http-request cache-use / http-response cache-store expects cache name
8920 - REGTEST: "capture (request|response)" regtest.
8921 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
8922 - REGTEST: filters: add compression test
8923 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
8924 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
8925 - DOC: Be a bit more explicit about allow-0rtt security implications.
8926 - MINOR: mux-h1: make the mux_h1_ops struct static
8927 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
8928 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
8929 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
8930 - REGTESTS: test case for map_regm commit 271022150d
8931 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
8932 - REGTESTS: Basic tests for using maps to redirect requests / select backend
8933 - DOC: REGTESTS README varnishtest -Dno-htx= define.
8934 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
8935 - MINOR: checks: Store the proxy in checks.
8936 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
8937 - REGTEST: Switch to vtest.
8938 - REGTEST: Adapt reg test doc files to vtest.
8939 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
8940 - BUG/MINOR: base64: dec func ignores padding for output size checking
8941 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
8942 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
8943 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
8944 - BUG/MINOR: backend: balance uri specific options were lost across defaults
8945 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
8946 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
8947 - MINOR: backend: make headers and RDP cookie also use arg_str/len
8948 - MINOR: backend: add new fields in lbprm to store more LB options
8949 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
8950 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
8951 - MINOR: backend: move hash_balance_factor out of chash
8952 - MEDIUM: backend: move all LB algo parameters into an union
8953 - MINOR: backend: make the random algorithm support a number of draws
8954 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
8955 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
8956 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
8957 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
8958 - DOC: add a missing space in the documentation for bc_http_major
8959 - REGTEST: checks basic stats webpage functionality
8960 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
8961 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
8962 - DOC: add github issue templates
8963 - MINOR: cfgparse: Extract some code to be re-used.
8964 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
8965 - CLEANUP: cfgparse: Code reindentation.
8966 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
8967 - MINOR: cfgparse: Rework peers frontend init.
8968 - MINOR: cfgparse: Simplication.
8969 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
8970 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
8971 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
8972 - DOC: peers: SSL/TLS documentation for "peers"
8973 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
8974 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
8975 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
8976 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
8977 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
8978 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
8979 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
8980 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
8981 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
8982 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
8983 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
8984 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
8985 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
8986 - MINOR: h2: declare new sets of frame types
8987 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
8988 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
8989 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
8990 - BUG/MINOR: hpack: return a compression error on invalid table size updates
8991 - MINOR: server: make sure pool-max-conn is >= -1
8992 - BUG/MINOR: stream: take care of synchronous errors when trying to send
8993 - CLEANUP: server: fix indentation mess on idle connections
8994 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
8995 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
8996 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
8997 - MINOR: server: add a max-reuse parameter
8998 - MINOR: mux-h2: always consider a server's max-reuse parameter
8999 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
9000 - MINOR: stream: don't wait before retrying after a failed connection reuse
9001 - MEDIUM: h2: always parse and deduplicate the content-length header
9002 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
9003 - CLEANUP: h2: Remove debug printf in mux_h2.c
9004 - MINOR: cfgparse: make the process/thread parser support a maximum value
9005 - MINOR: threads: make MAX_THREADS configurable at build time
9006 - DOC: nbthread is no longer experimental.
9007 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
9008 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
9009 - BUG/MINOR: spoe: corrected fragmentation string size
9010 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
9011 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
9012 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
9013 - SCRIPTS: add the issue tracker URL to the announce script
9014 - MINOR: peers: Extract some code to be reused.
9015 - CLEANUP: peers: Indentation fixes.
9016 - MINOR: peers: send code factorization.
9017 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
9018 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
9019 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
9020 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
9021 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
9022 - CLEANUP: peers: Be more generic.
9023 - MINOR: peers: move error handling to reduce the size of the I/O handler.
9024 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
9025 - MINOR: peers: move send code to reduce the size of the I/O handler.
9026 - CLEANUP: peers: Remove useless statements.
9027 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
9028 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
9029 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
9030 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
9031 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
9032 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
9033 - CLEANUP: mux-h2: remove two useless but misleading assignments
9034 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
9035 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
9036 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
9037 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
9038 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
9039 - BUG/MEDIUM: peers: Handle mux creation failure.
9040 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
9041 - BUG/MEDIUM: compression: Rewrite strong ETags
9042 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
9043 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
9044 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
9045 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
9046 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
9047 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
9048 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
9049 - MINOR: h2: add a generic frame checker
9050 - MEDIUM: mux-h2: check the frame validity before considering the stream state
9051 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
9052 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
9053 - DOC: compression: Update the reasons for disabled compression
9054 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
9055 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
9056 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
9057 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
9058 - BUG/MEDIUM: peers: Peer addresses parsing broken.
9059 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
9060 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
9061 - BUG/MINOR: stream: don't close the front connection when facing a backend error
9062 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
9063 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
9064 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
9065 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
9066 - BUG/MINOR: server: fix logic flaw in idle connection list management
9067 - MINOR: mux-h2: max-concurrent-streams should be unsigned
9068 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
9069 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
9070 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
9071 - MINOR: xref: Add missing barriers.
9072 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
9073 - MINOR: debug: Add an option that causes random allocation failures.
9074 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
9075 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
9076 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
9077 - BUG/MINOR: backend: check srv_conn before dereferencing it
9078 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
9079 - BUG/MEDIUM: mux-h2: always set :authority on request output
9080 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
9081 - BUG/MINOR: threads: fix the process range of thread masks
9082 - BUG/MINOR: config: fix bind line thread mask validation
9083 - CLEANUP: threads: fix misleading comment about all_threads_mask
9084 - CLEANUP: threads: use nbits to calculate the thread mask
9085 - OPTIM: listener: optimize cache-line packing for struct listener
9086 - MINOR: tools: improve the popcount() operation
9087 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
9088 - MINOR: global: add proc_mask() and thread_mask()
9089 - MINOR: config: simplify bind_proc processing using proc_mask()
9090 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
9091 - BUG/MINOR: compression: properly report compression stats in HTX mode
9092 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
9093 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
9094 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
9095 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
9096 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
9097 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
9098 - DOC: ssl: Stop documenting ciphers example to use
9099 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
9100 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
9101 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
9102 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
9103 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
9104 - MINOR: config: make MAX_PROCS configurable at build time
9105 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
9106 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
9107 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
9108 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
9109 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
9110 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
9111 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
9112 - BUG/MAJOR: stream: avoid double free on unique_id
9113 - BUILD/MINOR: stream: avoid a build warning with threads disabled
9114 - BUILD/MINOR: tools: fix build warning in the date conversion functions
9115 - BUILD/MINOR: peers: remove an impossible null test in intencode()
9116 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
9117 - BUG/MEDIUM: peers: Missing peer initializations.
9118 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
9119 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
9120 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
9121 - BUILD/MEDIUM: initcall: Fix build on MacOS.
9122 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
9123 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
9124 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
9125 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
9126 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
9127 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
9128 - MINOR: mux-h2: Set HTX extra value when possible
9129 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
9130 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
9131 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
9132 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
9133 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
9134 - MINOR: fd: add a new my_closefrom() function to close all FDs
9135 - MINOR: checks: use my_closefrom() to close all FDs
9136 - MINOR: fd: implement an optimised my_closefrom() function
9137 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
9138 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
9139 - BUG/MAJOR: listener: Make sure the listener exist before using it.
9140 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
9141 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
9142 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
9143 - MINOR: htx: Add function to drain data from an HTX message
9144 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
9145 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
9146 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
9147 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
9148 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
9149 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
9150 - BUG/MEDIUM: h2: advertise to servers that we don't support push
9151 - MINOR: standard: Add a function to parse uints (dotted notation).
9152 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
9153 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
9154 - MINOR: sample: Add two sample converters for protocol buffers.
9155 - DOC: sample: Add gRPC related documentation.
9156
Willy Tarreaufba74ea2018-12-22 11:19:45 +010091572018/12/22 : 2.0-dev0
9158 - BUG/MAJOR: connections: Close the connection before freeing it.
9159 - REGTEST: Require the option LUA to run lua tests
9160 - REGTEST: script: Process script arguments before everything else
9161 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
9162 - REGTEST: script: Add the option --clean to remove previous log direcotries
9163 - REGTEST: script: Add the option --debug to show logs on standard ouput
9164 - REGTEST: script: Add the option --keep-logs to keep all log directories
9165 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
9166 - REGTEST: script: Print only errors in the results report
9167 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
9168 - REGTEST: Make reg-tests target support argument.
9169 - REGTEST: Fix a typo about barrier type.
9170 - REGTEST: Be less Linux specific with a syslog regex.
9171 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
9172 - REGTEST: Exclude freebsd target for some reg tests.
9173 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
9174 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
9175 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
9176 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
9177 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
9178 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
9179 - MEDIUM: mux_h1: Implement h1_show_fd.
9180 - REGTEST: script: Add support of alternatives in requited options list
9181 - REGTEST: Add a basic test for the compression
9182 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
9183 - REGTEST: A basic test for "http-buffer-request"
9184 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
9185 - MINOR: ssl: Add ssl_sock_set_alpn().
9186 - MEDIUM: checks: Add check-alpn.
9187 - wip
9188
Willy Tarreau82230502018-12-19 19:13:17 +010091892018/12/19 : 1.9.0
9190 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
9191 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
9192 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
9193 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
9194 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
9195 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
9196 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
9197 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
9198 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
9199 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
9200 - MINOR: cli/stream: add the conn_stream in "show sess" output
9201 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
9202 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
9203 - MINOR: objtype: report a few missing types in names and base pointers
9204 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
9205 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
9206 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
9207 - BUG/MINOR: mux-h1: report the correct frontend in error captures
9208 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
9209 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
9210 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
9211 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
9212 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
9213 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
9214 - MINOR: compression: Remove the thread_local variable buf_output
9215 - CLEANUP: connection: rename subscription events values and event field
9216 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
9217 - MINOR: connection: remove an unwelcome dependency on struct stream
9218 - CLEANUP: stream-int: consistently call the si/stream_int functions
9219 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
9220 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
9221 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
9222 - MEDIUM: stream-int: always consider all CS errors on the send side
9223 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
9224 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
9225 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
9226 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
9227 - MINOR: connection: add cs_set_error() to set the error bits
9228 - CLEANUP: mux-h2: make use of cs_set_error()
9229 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
9230 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
9231 - MINOR: cli/show_fd: report that a connection is back or not
9232 - SCRIPTS: add the slack channel URL to the announce script
9233 - CLEANUP: remove my name and address from the copyright banner
9234 - DOC: mention in the readme that 1.9 is a stable version now
9235
Willy Tarreau2a7d6502018-12-16 22:35:06 +010092362018/12/16 : 1.9-dev11
9237 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
9238 - REGTEST/MINOR: remove double body specification for server txresp
9239 - BUG/MEDIUM: connections: Remove error flags when retrying.
9240 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
9241 - REGTEST/MINOR: remove health-check that can make the test fail
9242 - DOC: clarify that check-sni needs an argument.
9243 - DOC: refer to check-sni in the documentation of sni
9244 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
9245 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
9246 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
9247 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
9248 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
9249 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
9250 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
9251 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
9252 - MINOR: hpack: simplify the len to bytes conversion
9253 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
9254 - MINOR: hpack: optimize header encoding for short names
9255 - CONTRIB: hpack: add a compressed stream generator for the encoder
9256 - MEDIUM: hpack: make it possible to encode any static header name
9257 - MINOR: hpack: move the length computation and encoding functions to .h
9258 - MINOR: hpack: provide a function to encode a short indexed header
9259 - MINOR: hpack: provide a function to encode a long indexed header
9260 - MINOR: hpack: provide new functions to encode the ":status" header
9261 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
9262 - MINOR: hpack: provide a function to encode an HTTP method
9263 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
9264 - MINOR: hpack: provide a function to encode an HTTP scheme
9265 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
9266 - MINOR: hpack: provide a function to encode an HTTP path
9267 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
9268 - REGTEST: add the HTTP rules test involving HTX processing
9269 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
9270 - MEDIUM: cli: rework the CLI proxy parser
9271 - MINOR: cli: parse prompt command in the CLI proxy
9272 - MINOR: cli: implements 'quit' in the CLI proxy
9273 - BUG/MINOR: cli: wait for payload data even without prompt
9274 - MEDIUM: cli: handle payload in CLI proxy
9275 - MINOR: cli: use pcli_flags for prompt activation
9276 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
9277 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
9278 - MINOR: cache: Register the cache as a data filter only if response is cacheable
9279 - MEDIUM: cache/htx: Add the HTX support into the cache
9280 - MINOR: cache: Improve and simplify the cache configuration check
9281 - MINOR: filters: Export the name of known filters
9282 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
9283 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
9284 - REORG: htx: merge types+proto into common/htx.h
9285 - REORG: http: create http_msg.c to place there some legacy HTTP parts
9286 - REORG: h1: move legacy http functions to http_msg.c
9287 - REORG: h1: move the h1_state definition to proto_http
9288 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
9289 - REORG: h1: merge types+proto into common/h1.h
9290 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
9291 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
9292 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
9293 - BUG/MINOR: mux-h2: refrain from muxing during the preface
9294 - BUG/MINOR: mux-h2: advertise a larger connection window size
9295 - DOC: master CLI documentation in management.txt
9296 - MINOR: mux-h2: avoid copying large blocks into full buffers
9297 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
9298 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
9299 - MINOR: cli: change 'show proc' output of old processes
9300 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
9301 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
9302 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
9303 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
9304 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
9305 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
9306 - REGTEST: the cache regtest requires haproxy 1.9
9307 - MEDIUM: cli: store CLI level in the appctx
9308 - MEDIUM: cli: show and change CLI permissions
9309 - CLEANUP: cli: use dedicated define instead of appctx ones
9310 - MEDIUM: cli: handle CLI level from the master CLI
9311 - BUG/MEDIUM: cli: handle correctly prefix and payload
9312 - BUILD: Makefile: Implements the help target
9313 - REGTESTS: adjust the http-rules regtest to support window updates
9314 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
9315 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
9316 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
9317 - MEDIUM: mux: Add an optional "reset" method.
9318 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
9319 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
9320 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
9321 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
9322 - MEDIUM: htx: Try to take a connection over if it has no owner.
9323 - REGTEST: Reg testing improvements.
9324 - REGTEST: Add a first test for health-checks.
9325 - REGTEST: Reg test for "check" health-check option.
9326 - REGTEST: level 1 health-check test 2.
9327 - REGTEST: Add miscellaneous reg tests for health-checks.
9328 - REGTEST: add a few HTTP messaging tests
9329 - MINOR: lb: make the leastconn algorithm more accurate
9330 - REGTEST: fix missing space in checks/s00001
9331 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
9332 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
9333 - MINOR: connection: realign empty buffers in muxes, not transport layers
9334 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
9335 - MINOR: backend: count the number of connect and reuse per server and per backend
9336 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
9337 - MINOR: tools: increase the number of ITOA strings to 16
9338 - MINOR: cache: report the number of cache lookups and cache hits
9339 - MEDIUM: tasks: check the global task mask instead of the thread number
9340 - MINOR: mworker: set all_threads_mask and pid_bit to 1
9341 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
9342 - BUG/MINOR: stats: Parse post data for HTX streams
9343 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
9344 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
9345 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
9346 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
9347 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
9348 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
9349 - MINOR: lua: Remove useless check on the messages state in HTTP functions
9350 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
9351 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
9352 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
9353 - MINOR: cli: implements 'reload' on master CLI
9354 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
9355 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
9356 - BUG/MAJOR: backend: only update server's counters when the server exists
9357 - MINOR: tools: preset the port of fd-based "sockets" to zero
9358 - BUG/MINOR: log: fix logging to both FD and IP
9359 - REGTEST: Add a reg test for HTTP cookies.
9360 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
9361 - BUILD: thread: properly report multi-thread support
9362 - BUG/MINOR: logs: leave startup-logs global and not per-thread
9363 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
9364 - BUG/MAJOR: compression/cache: Make it really works with these both filters
9365 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
9366 - MEDIUM: proxy: Set http-reuse safe as default.
9367 - MEDIUM: servers: Add a command to limit the number of idling connections.
9368 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
9369 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
9370 - MEDIUM: mux: provide the session to the init() and attach() method.
9371 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
9372 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
9373 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
9374 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
9375 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
9376 - MINOR: pools: Cast to volatile int * instead of int *.
9377 - MINOR: debug: make the ABORT_NOW macro use a volatile int
9378 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
9379 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
9380 - DOC: clarify the agent-check status line syntax
9381 - BUG/MAJOR: hpack: fix length check for short names encoding
9382 - DOC: split the README into README + INSTALL
9383
Willy Tarreau72e92272018-12-08 16:20:55 +010093842018/12/08 : 1.9-dev10
9385 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
9386 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
9387 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
9388 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
9389 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
9390 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
9391 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
9392 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
9393 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
9394 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
9395 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
9396 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
9397 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
9398 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
9399 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
9400 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
9401 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
9402 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
9403 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
9404 - BUG/MEDIUM: h1: Correctly report used data with no len.
9405 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
9406 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
9407 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
9408 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
9409 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
9410 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
9411 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
9412 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
9413 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
9414 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
9415 - MEDIUM: channel/htx: Add functions for forward HTX data
9416 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
9417 - CLEANUP: htx: Fix indentation here and there in HTX files
9418 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
9419 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
9420 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
9421 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
9422 - BUG/MEDIUM: mworker: stop every tasks in the master
9423 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
9424 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
9425 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
9426 - MINOR: stream-int: add a new blocking condition on the remote connection
9427 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
9428 - BUG/MEDIUM: lua: block on remote connection establishment
9429 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
9430 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
9431 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
9432 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
9433 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
9434 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
9435 - REGTEST: Move LUA reg test 4 to level 1.
9436 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
9437 - MEDIUM: ist: always turn header names to lower case
9438 - MINOR: h2: don't turn HTX header names to lower case anymore
9439 - MEDIUM: ist: use local conversion arrays to case conversion
9440 - MINOR: htx: switch to case sensitive search of lower case header names
9441 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
9442 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
9443 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
9444 - REGTEST: add a basic test for HTTP rules manipulating headers
9445 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
9446 - MINOR: sample: add bc_http_major
9447 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
9448 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
9449 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
9450 - MINOR: compiler: add a new macro ALREADY_CHECKED()
9451 - BUILD: h2: mark the start line already checked to avoid warnings
9452 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
9453
Willy Tarreauda7e3be2018-12-02 19:31:37 +010094542018/12/02 : 1.9-dev9
9455 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
9456 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
9457 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
9458 - MINOR: compression: always create the compression pool
9459 - BUG/MEDIUM: mworker: fix FD leak upon reload
9460 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
9461 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
9462 - MINOR: initcall: introduce a way to register init functions to call at boot
9463 - MINOR: init: process all initcalls in order at boot time
9464 - MEDIUM: init: convert all trivial registration calls to initcalls
9465 - MINOR: thread: provide a set of lock initialisers
9466 - MINOR: threads: add new macros to declare self-initializing locks
9467 - MEDIUM: init: use self-initializing spinlocks and rwlocks
9468 - MINOR: initcall: apply initcall to all register_build_opts() calls
9469 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
9470 - MINOR: initcall: use initcalls for section parsers
9471 - MINOR: memory: add a callback function to create a pool
9472 - MEDIUM: init: use initcall for all fixed size pool creations
9473 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
9474 - MEDIUM: initcall: use initcalls for a few initialization functions
9475 - MEDIUM: memory: make the pool cache an array and not a thread_local
9476 - MINOR: ssl: free ctx when libssl doesn't support NPN
9477 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
9478 - MINOR: h2: make struct h2_ops static
9479 - BUG/MEDIUM: mworker: avoid leak of client socket
9480 - REORG: mworker: declare master variable in global.h
9481 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
9482 - CLEANUP: http: Fix typo in init_http's comment
9483 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
9484 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
9485 - REGTEST/MINOR: script: add run-regtests.sh script
9486 - REGTEST: Add a basic test for the cache.
9487 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
9488 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
9489 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
9490 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
9491 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
9492 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
9493 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
9494 - REGTEST: Fix several issues.
9495 - REGTEST: lua: check socket functionality from a lua-task
9496 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
9497 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
9498 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
9499 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
9500 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
9501 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
9502 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
9503 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
9504 - MAJOR: sessions: Store multiple outgoing connections in the session.
9505 - MEDIUM: session: Steal owner-less connections on end of transaction.
9506 - MEDIUM: server: Be smarter about deciding to reuse the last server.
9507 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
9508 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
9509 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
9510 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
9511 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
9512 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
9513 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
9514 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
9515 - BUG/MINOR: connection: report mux modes when HTX is supported
9516 - MINOR: htx: add a function to cut the beginning of a DATA block
9517 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
9518 - MINOR: mux-h1: Implement get_cs_info() callback
9519 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
9520 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
9521 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
9522 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
9523 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
9524 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
9525 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
9526 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
9527 - MINOR: htx: Add function to add an HTX block just before another one
9528 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
9529 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
9530 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
9531 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
9532 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
9533 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
9534 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
9535 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
9536 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
9537 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
9538 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
9539 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
9540 - MINOR: proto_htx: Send valid HTX message to send 30x responses
9541 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
9542 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
9543 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
9544 - MINOR: mux-h1: Capture bad H1 messages
9545 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
9546 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
9547 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
9548 - MEDIUM: compression: Adapt to be compatible with the HTX representation
9549 - MINOR: h2: implement H2->HTX request header frame transcoding
9550 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
9551 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
9552 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
9553 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
9554 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
9555 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
9556 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
9557 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
9558 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
9559 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
9560 - MINOR: listener: the mux_proto entry in the bind_conf is const
9561 - MINOR: connection: create conn_get_best_mux_entry()
9562 - MINOR: server: the mux_proto entry in the server is const
9563 - MINOR: config: make sure to associate the proper mux to bind and servers
9564 - MINOR: hpack: add ":path" to the list of common header fields
9565 - MINOR: h2: add new functions to produce an HTX message from an H2 response
9566 - MINOR: mux-h2: mention that the mux is compatible with both sides
9567 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
9568 - MEDIUM: mux-h2: start to create the outgoing mux
9569 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
9570 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
9571 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
9572 - MEDIUM: mux-h2: Implement h2_attach().
9573 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
9574 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
9575 - MINOR: connection: Fix a comment.
9576 - MINOR: mux: add a "max_streams" method.
9577 - MEDIUM: servers: Add a way to keep idle connections alive.
9578 - CLEANUP: fix typos in the htx subsystem
9579 - CLEANUP: Fix typo in the chunk headers file
9580 - CLEANUP: Fix typos in the h1 subsystem
9581 - CLEANUP: Fix typos in the h2 subsystem
9582 - CLEANUP: Fix a typo in the mini-clist header
9583 - CLEANUP: Fix a typo in the proto_htx subsystem
9584 - CLEANUP: Fix typos in the proto_tcp subsystem
9585 - CLEANUP: Fix a typo in the signal subsystem
9586 - CLEANUP: Fix a typo in the session subsystem
9587 - CLEANUP: Fix a typo in the queue subsystem
9588 - CLEANUP: Fix typos in the shctx subsystem
9589 - CLEANUP: Fix typos in the socket pair protocol subsystem
9590 - CLEANUP: Fix typos in the map management functions
9591 - CLEANUP: Fix typo in the fwrr subsystem
9592 - CLEANUP: Fix typos in the cli subsystem
9593 - CLEANUP: Fix typo in the 51d subsystem
9594 - CLEANUP: Fix a typo in the base64 subsystem
9595 - CLEANUP: Fix a typo in the connection subsystem
9596 - CLEANUP: Fix a typo in the protocol header file
9597 - CLEANUP: Fix a typo in the checks header file
9598 - CLEANUP: Fix typos in the file descriptor subsystem
9599 - CLEANUP: Fix a typo in the listener subsystem
9600 - BUG/MINOR: lb-map: fix unprotected update to server's score
9601 - BUILD: threads: fix minor build warnings when threads are disabled
9602
Willy Tarreau0b936ad2018-11-25 09:16:46 +010096032018/11/25 : 1.9-dev8
9604 - REORG: config: extract the global section parser into cfgparse-global
9605 - REORG: config: extract the proxy parser into cfgparse-listen.c
9606 - BUILD: update the list of supported targets and compilers in makefile and readme
9607 - BUILD: reorder the objects in the makefile
9608 - BUILD: Makefile: make "V=1" show some of the commands that are executed
9609 - BUILD: Makefile: add the quiet mode to a few more targets
9610 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
9611 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
9612 - MINOR: cli: format `show proc` to be more readable
9613 - MINOR: cli: displays uptime in `show proc`
9614 - MINOR: cli: show master information in 'show proc'
9615 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
9616 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
9617 - BUG/MINOR: mux-h1: Enable keep-alive on server side
9618 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
9619 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
9620 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
9621 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
9622 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
9623 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
9624 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
9625 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
9626 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
9627 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
9628 - MEDIUM: mworker: wait mode use standard init code path
9629 - MINOR: log: introduce ha_notice()
9630 - MINOR: mworker: use ha_notice to announce a new worker
9631 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
9632 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
9633 - MEDIUM: signal: signal_unregister() removes every handlers
9634 - BUG/MEDIUM: mworker: unregister the signals of main()
9635 - MINOR: cli: add a few missing includes in proto/cli.h
9636 - REORG: time/activity: move activity measurements to activity.{c,h}
9637 - MINOR: activity: report the average loop time in "show activity"
9638 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
9639 - MEDIUM: tasks: collect per-task CPU time and latency
9640 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
9641 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
9642 - BUG/MINOR: cli: Fix memory leak
9643 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
9644 - MINOR: poller: move the call of tv_update_date() back to the pollers
9645 - MINOR: polling: add an option to support busy polling
9646 - MINOR: server: Add "alpn" and "npn" keywords.
9647 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
9648 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
9649 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
9650 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
9651 - REGTEST: add the option to test only a specific set of files
9652 - REGTEST: add a test for connections to a "dispatch" address
9653 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
9654 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
9655 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
9656 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
9657 - MEDIUM: servers: Store the connection in the SI until we have a mux.
9658 - BUG/MEDIUM: h2: wake the processing task up after demuxing
9659 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
9660
Willy Tarreau5c0e41b2018-11-18 22:33:00 +010096612018/11/18 : 1.9-dev7
9662 - BUILD: cache: fix a build warning regarding too large an integer for the age
9663 - CLEANUP: fix typos in the comments of the Makefile
9664 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
9665 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
9666 - CLEANUP: fix typos in comments for contrib/spoa_example
9667 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
9668 - DOC: Fix typos in README and CONTRIBUTING
9669 - MINOR: log: slightly improve error message syntax on log failure
9670 - DOC: logs: the format directive was missing from the second log part
9671 - MINOR: log: report the number of dropped logs in the stats
9672 - MEDIUM: log: add support for logging to existing file descriptors
9673 - MEDIUM: log: support a new "short" format
9674 - MEDIUM: log: add a new "raw" format
9675 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
9676 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
9677 - MINOR: namespaces: don't build namespace.c if disabled
9678 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
9679 - MINOR: http: Add new "early-hint" http-request action.
9680 - MINOR: http: Make new "early-hint" http-request action really be parsed.
9681 - MINOR: http: Implement "early-hint" http request rules.
9682 - MINOR: doc: Add information about "early-hint" http-request action.
9683 - DOC: early-hints: fix truncated line.
9684 - MINOR: mworker: only close std{in,out,err} in daemon mode
9685 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
9686 - BUG/MEDIUM: Make sure stksess is properly aligned.
9687 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
9688 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
9689 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
9690 - CONTRIB: debug: fix build related to conn_stream flags change
9691 - REGTEST: fix scripts 1 and 3 to accept development version
9692 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
9693 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
9694 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
9695 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
9696 - MEDIUM: jobs: support unstoppable jobs for soft stop
9697 - MEDIUM: listeners: support unstoppable listener
9698 - MEDIUM: cli: worker socketpair is unstoppable
9699 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
9700 - MINOR: stream: move the conn_stream specific calls to the stream-int
9701 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
9702 - CLEANUP: h2: minimum documentation for recent API changes
9703 - MINOR: mux: implement a get_first_cs() method
9704 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
9705 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
9706 - MINOR: stream-int: expand the flags to 32-bit
9707 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
9708 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
9709 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
9710 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
9711 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
9712 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
9713 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
9714 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
9715 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
9716 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
9717 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
9718 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
9719 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
9720 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
9721 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
9722 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
9723 - MEDIUM: connections: Wait until the connection is established to try to recv.
9724 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
9725 - MINOR: mux: Add a new "avail_streams" method.
9726 - MINOR: mux: Add a destroy() method.
9727 - MINOR: sessions: Start to store the outgoing connection in sessions.
9728 - MAJOR: connections: Detach connections from streams.
9729 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
9730 - MINOR: htx: Add proto_htx.c file
9731 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
9732 - MINOR: http: Add standalone functions to parse a start-line or a header
9733 - MINOR: http: Call http_send_name_header with the stream instead of the txn
9734 - MINOR: conn_stream: Add a flag to notify the SI some data were received
9735 - MINOR: http: Add macros to check if a stream uses the HTX representation
9736 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
9737 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
9738 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
9739 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
9740 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
9741 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
9742 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
9743 - MINOR: proto_htx: Add some functions to handle HTX messages
9744 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
9745 - MINOR: http_htx: Add functions to replace part of the start-line
9746 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
9747 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
9748 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
9749 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
9750 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
9751 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
9752 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
9753 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
9754 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
9755 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
9756 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
9757 - MINOR: proto_htx: Add functions htx_send_name_header
9758 - MINOR: proto_htx: Add functions htx_perform_server_redirect
9759 - MINOR: proto_htx: Add functions to handle the stats applet
9760 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
9761 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
9762 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
9763 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
9764 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
9765 - MINOR: http_fetch: Add smp_prefetch_htx
9766 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
9767 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
9768 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
9769 - MINOR: stream: Don't reset sov value with HTX messages
9770 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
9771 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
9772 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
9773 - CLEANUP: Fix some typos in the haproxy subsystem
9774 - CLEANUP: Fix typos in the dns subsystem
9775 - CLEANUP: Fix typos in the pattern subsystem
9776 - CLEANUP: fix 2 typos in the xxhash subsystem
9777 - CLEANUP: fix a few typos in the comments of the server subsystem
9778 - CLEANUP: fix a misspell in tests/filltab25.c
9779 - CLEANUP: fix a typo found in the stream subsystem
9780 - CLEANUP: fix typos in comments in ebtree
9781 - CLEANUP: fix typos in reg-tests
9782 - CLEANUP: fix typos in the comments of the vars subsystem
9783 - CLEANUP: fix typos in the hlua_fcn subsystem
9784 - CLEANUP: fix typos in the proto_http subsystem
9785 - CLEANUP: fix typos in the proxy subsystem
9786 - CLEANUP: fix typos in the ssl_sock subsystem
9787 - DOC: Fix typos in different subsections of the documentation
9788 - DOC: fix a few typos in the documentation
9789 - MINOR: Fix an error message thrown when we run out of memory
9790 - MINOR: Fix typos in error messages in the proxy subsystem
9791 - MINOR: fix typos in the examples files
9792 - CLEANUP: Fix a typo in the stats subsystem
9793 - CLEANUP: Fix typos in the acl subsystem
9794 - CLEANUP: Fix typos in the cache subsystem
9795 - CLEANUP: Fix typos in the cfgparse subsystem
9796 - CLEANUP: Fix typos in the filters subsystem
9797 - CLEANUP: Fix typos in the http subsystem
9798 - CLEANUP: Fix typos in the log subsystem
9799 - CLEANUP: Fix typos in the peers subsystem
9800 - CLEANUP: Fix typos in the regex subsystem
9801 - CLEANUP: Fix typos in the sample subsystem
9802 - CLEANUP: Fix typos in the spoe subsystem
9803 - CLEANUP: Fix typos in the standard subsystem
9804 - CLEANUP: Fix typos in the stick_table subsystem
9805 - CLEANUP: Fix typos in the task subsystem
9806 - MINOR: Fix typo in error message in the standard subsystem
9807 - CLEANUP: fix typos in the comments of hlua
9808 - MINOR: Fix typo in the error 500 output of hlua
9809 - MINOR: Fix a typo in a warning message in the spoe subsystem
9810
Willy Tarreau96079492018-11-11 10:43:39 +010098112018/11/11 : 1.9-dev6
9812 - BUG/MEDIUM: tools: fix direction of my_ffsl()
9813 - BUG/MINOR: cli: forward the whole command on master CLI
9814 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
9815 - MINOR: compat: automatically detect support for crypt_r()
9816 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
9817 - DOC: split the http-request actions in their own section
9818 - DOC: split the http-response actions in their own section
9819 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
9820 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
9821 - MINOR: stats: report the number of active jobs and listeners in "show info"
9822 - MINOR: stats: report the number of active peers in "show info"
9823 - MINOR: stats: report the number of currently connected peers
9824 - MINOR: cli: show the number of reload in 'show proc'
9825 - MINOR: cli: can't connect to the target CLI
9826 - MEDIUM: mworker: does not create the CLI proxy when no listener
9827 - MINOR: mworker: displays more information when leaving
9828 - MEDIUM: mworker: exit with the incriminated exit code
9829 - MINOR: mworker: displays a message when a worker is forked
9830 - MEDIUM: mworker: leave when the master die
9831 - CLEANUP: stream-int: retro-document si_cs_io_cb()
9832 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
9833 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
9834 - BUG/MEDIUM: cli: crash when trying to access a worker
9835 - DOC: restore note about "independant" typo
9836 - MEDIUM: stream: implement stream_buf_available()
9837 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
9838 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
9839 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
9840 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
9841 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
9842 - MINOR: stream-int: make it clear that si_ops cannot be null
9843 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
9844 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
9845 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
9846 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
9847 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
9848 - MINOR: stream-int: replace si_update() with si_update_both()
9849 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
9850 - CLEANUP: stream-int: remove the now unused si->update() function
9851 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
9852 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
9853 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
9854
Willy Tarreaubddf2922018-10-28 20:39:31 +010098552018/10/28 : 1.9-dev5
9856 - BUILD: Makefile: add the new ERR variable to force -Werror
9857 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
9858 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
9859 - CLEANUP: http: Remove the unused function http_find_header
9860 - MINOR: h1: Export some functions parsing the value of some HTTP headers
9861 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
9862 - MINOR: proxy: add a new option "http-use-htx"
9863 - BUG/MEDIUM: pools: fix the minimum allocation size
9864 - MINOR: shctx: Shared objects block by block allocation.
9865 - MINOR: cache: Larger HTTP objects caching.
9866 - MINOR: shctx: Add a maximum object size parameter.
9867 - MINOR: cache: Add "max-object-size" option.
9868 - DOC: Update about the cache support for big objects.
9869 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
9870 - BUG/MINOR: cache: Wrong usage of shctx_init().
9871 - BUG/MINOR: ssl: Wrong usage of shctx_init().
9872 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
9873 - MINOR: shctx: Change max. object size type to unsigned int.
9874 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
9875 - CLEANUP: tools: fix misleading comment above function LIM2A
9876 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
9877 - BUG/MINOR: only mark connections private if NTLM is detected
9878 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
9879 - MINOR: stream: don't prune variables if the list is empty
9880 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
9881 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
9882 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
9883 - MEDIUM: stream: don't try to send first in process_stream()
9884 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
9885 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
9886 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
9887 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
9888 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
9889 - MINOR: mworker: number of reload in the life of a worker
9890 - MEDIUM: mworker: each worker socketpair is a CLI listener
9891 - REORG: mworker: move struct mworker_proc to global.h
9892 - MINOR: server: export new_server() function
9893 - MEDIUM: mworker: move proc_list gen before proxies startup
9894 - MEDIUM: mworker: add proc_list in global.h
9895 - MEDIUM: mworker: proxy for the master CLI
9896 - MEDIUM: mworker: create CLI listeners from argv[]
9897 - MEDIUM: cli: disable some keywords in the master
9898 - MEDIUM: mworker: find the server ptr using a CLI prefix
9899 - MEDIUM: cli: 'show proc' displays processus
9900 - MEDIUM: cli: implement 'mode cli' proxy analyzers
9901 - MINOR: cli: displays sockpair@ in "show cli sockets"
9902 - MEDIUM: cli: enable "show cli sockets" for the master
9903 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
9904 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
9905 - MEDIUM: mworker: stop the master proxy in the workers
9906 - MEDIUM: channel: reorder the channel analyzers for the cli
9907 - MEDIUM: cli: write a prompt for the CLI proxy of the master
9908 - MINOR: cli: helper to write an response message and close
9909 - MINOR: cache: Add "Age" header.
9910 - REGTEST: make the IP+port logging test more reliable
9911 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
9912 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
9913 - BUG/MINOR: backend: assign the wait list after the error check
9914
Willy Tarreau01fbe742018-10-21 20:28:30 +020099152018/10/21 : 1.9-dev4
9916 - BUILD: Allow configuration of pcre-config path
9917 - DOC: clarify force-private-cache is an option
9918 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
9919 - REORG: http: move the code to different files
9920 - REORG: http: move HTTP rules parsing to http_rules.c
9921 - CLEANUP: http: remove some leftovers from recent cleanups
9922 - BUILD: Makefile: add a "make opts" target to simply show the build options
9923 - BUILD: Makefile: speed up compiler options detection
9924 - BUG/MINOR: backend: check that the mux installed properly
9925 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
9926 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
9927 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
9928 - MINOR: ssl: cleanup old openssl API call
9929 - MINOR: ssl: generate-certificates for BoringSSL
9930 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
9931 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
9932 - CLEANUP: haproxy: Remove unused variable
9933 - CLEANUP: h1: Fix debug warnings for h1 headers
9934 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
9935 - MEDIUM: task: perform a single tree lookup per run queue batch
9936 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
9937 - BUG/MINOR: threads: move declaration of capabilities to config.h
9938 - OPTIM: tools: optimize my_ffsl() for x86_64
9939 - BUG/MINOR: h2: null-deref
9940 - BUG/MINOR: checks: queues null-deref
9941 - MINOR: connections: Introduce an unsubscribe method.
9942 - MEDIUM: connections: Change struct wait_list to wait_event.
9943 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
9944 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
9945 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
9946 - MINOR: http: Move comment about some HTTP macros in the right header file
9947 - MINOR: stats: Add missing include
9948 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
9949 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
9950 - MEDIUM: http: Ignore http-tunnel option on backend
9951 - MINOR: http: Use same flag for httpclose and forceclose options
9952 - MINOR: h1: Add EOH marker during headers parsing
9953 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
9954 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
9955 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
9956 - MINOR: log: make sess_log() support sess=NULL
9957 - MINOR: chunk: add chunk_cpy() and chunk_cat()
9958 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
9959 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
9960 - MINOR: h2: don't try to send data before preface
9961 - MINOR: h2: unify the mux init function
9962 - MINOR: h2: retrieve the front proxy from the caller instead of the session
9963 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
9964 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
9965 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
9966 - BUG/MEDIUM: stream: don't crash on out-of-memory
9967 - BUILD: compiler: add a new statement "__unreachable()"
9968 - BUILD: lua: silence some compiler warnings about potential null derefs
9969 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
9970 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
9971 - BUILD: stick-table: make sure not to fail on task_new() during initialization
9972 - BUILD: peers: check allocation error during peers_init_sync()
9973 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
9974 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
9975 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
9976 - MAJOR: tasks: create per-thread wait queues
9977 - OPTIM: tasks: group all tree roots per cache line
9978 - DOC: Fix a few typos
9979 - MINOR: pools: allocate most memory pools from an array
9980 - MINOR: pools: split pool_free() in the lockfree variant
9981 - MEDIUM: pools: implement a thread-local cache for pool entries
9982 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
9983 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
9984 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
9985 - MINOR: lua: all functions calling lua_yieldk() may return
9986 - BUILD: lua: silence some compiler warnings after WILL_LJMP
9987 - BUILD: Makefile: silence an option conflict warning with clang
9988 - MINOR: server: Use memcpy() instead of strncpy().
9989 - CLEANUP: state-file: make the path concatenation code a bit more consistent
9990 - MINOR: build: Disable -Wstringop-overflow.
9991 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
9992 - MINOR: peers: use defines instead of enums to appease clang.
9993 - DOC: fix reference to map files in MAINTAINERS
9994 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
9995 - MINOR: poller: move time and date computation out of the pollers
9996 - BUILD: memory: fix pointer declaration for atomic CAS
9997 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
9998 - MINOR: time: add now_mono_time() and now_cpu_time()
9999 - MEDIUM: time: measure the time stolen by other threads
10000 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
10001 - BUILD: compiler: rename __unreachable() to my_unreachable()
10002 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
10003 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
10004 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
10005 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
10006 - BUG/MEDIUM: stream: Make sure polling is right on retry.
10007 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
10008 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
10009 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
10010 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
10011 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
10012 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
10013
Willy Tarreau27010f02018-09-29 20:17:33 +0200100142018/09/29 : 1.9-dev3
10015 - BUG/MINOR: h1: don't consider the status for each header
10016 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
10017 - MINOR: h1: parse the Connection header field
10018 - DOC: Fix typos in lua documentation
10019 - MINOR: h1: Add H1_MF_XFER_LEN flag
10020 - MINOR: http: add http_hdr_del() to remove a header from a list
10021 - MINOR: h1: add headers to the list after controls, not before
10022 - MEDIUM: h1: better handle transfer-encoding vs content-length
10023 - MEDIUM: h1: deduplicate the content-length header
10024 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
10025 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
10026 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
10027 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
10028 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
10029 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
10030 - MINOR: stream-int: make si_appctx() never fail
10031 - BUILD: ssl_sock: remove build warnings on potential null-derefs
10032 - BUILD: stats: remove build warnings on potential null-derefs
10033 - BUILD: stream: address null-deref build warnings at -Wextra
10034 - BUILD: http: address a couple of null-deref warnings at -Wextra
10035 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
10036 - BUILD: dns: fix null-deref build warning at -Wextra
10037 - BUILD: checks: silence a null-deref build warning at -Wextra
10038 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
10039 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
10040 - BUILD: sockpair: silence a build warning at -Wextra
10041 - BUILD: build with -Wextra and sort out certain warnings
10042 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
10043 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
10044 - DOC: Update configuration doc about the maximum number of stick counters.
10045 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
10046 - MINOR: h2/stream_interface: Reintroduce te wake() method.
10047 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
10048 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
10049 - MEDIUM: lua: Add stick table support for Lua.
10050
Willy Tarreau253006d2018-09-12 18:59:48 +0200100512018/09/12 : 1.9-dev2
10052 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
10053 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
10054 - BUG/MEDIUM: servers: check the queues once enabling a server
10055 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
10056 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
10057 - CLEANUP: backend: Move mux install to call it at only one place
10058 - MINOR: conn_stream: add an tx buffer to the conn_stream
10059 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
10060 - MINOR: backend: Try to find the best mux for outgoing connections
10061 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
10062 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
10063 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
10064 - MINOR: mux: Print the list of existing mux protocols during HA startup
10065 - MEDIUM: checks: use the new rendez-vous point to spread check result
10066 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
10067 - MINOR: threads: remove the previous synchronization point
10068 - MAJOR: server: make server state changes synchronous again
10069 - CLEANUP: server: remove the update list and the update lock
10070 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
10071 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
10072 - MINOR: mux: Change get_mux_proto to get an ist as parameter
10073 - MINOR: mux: Improve the message with the list of existing mux protocols
10074 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
10075 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
10076 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
10077 - BUG/MEDIUM: connection/mux: take care of serverless proxies
10078 - MINOR: queue: make sure the pendconn is released before logging
10079 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
10080 - MINOR: queue: store the queue index in the stream when enqueuing
10081 - MINOR: queue: replace the linked list with a tree
10082 - MEDIUM: add set-priority-class and set-priority-offset
10083 - MEDIUM: queue: adjust position based on priority-class and priority-offset
10084 - DOC: update the roadmap about priority queues
10085 - BUG/MINOR: ssl: empty connections reported as errors.
10086 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
10087 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
10088 - MINOR: connections: Get rid of txbuf.
10089 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
10090 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
10091 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
10092 - MINOR: stream_interface: Give stream_interface its own wait_list.
10093 - MINOR: mux_h2: Don't use h2_send() as a callback.
10094 - MINOR: checks: Add event_srv_chk_io().
10095 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
10096 - BUG/MEDIUM: sessions: Don't use t->state.
10097 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
10098 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
10099 - BUG/MINOR: map: fix map_regm with backref
10100 - DOC: dns: explain set server ... fqdn requires resolver
10101 - DOC: add documentation for prio_class and prio_offset sample fetches.
10102 - DOC: ssl: Use consistent naming for TLS protocols
10103 - DOC: update the layering design notes
10104 - MINOR: tasks: Don't special-case when nbthreads == 1
10105 - MINOR: fd cache: And the thread_mask with all_threads_mask.
10106 - BUG/MEDIUM: lua: socket timeouts are not applied
10107 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
10108 - BUG/MEDIUM: server: update our local state before propagating changes
10109 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
10110 - DOC: server/threads: document which functions need to be called with/without locks
10111 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
10112 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
10113 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
10114 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
10115 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
10116 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
10117 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
10118 - BUG/MEDIUM: connection: don't forget to always delete the list's head
10119 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
10120 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
10121 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
10122 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
10123 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
10124 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
10125 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
10126 - BUG/MEDIUM: connection: don't store recv() result into trash.data
10127 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
10128 - MINOR: chunk: remove impossible tests on negative chunk->data
10129 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
10130 - DOC: Fix spelling error in configuration doc
10131 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
10132 - REGTEST/MINOR: Add a new class of regression testing files.
10133 - BUG/MEDIUM: unix: provide a ->drain() function
10134 - MINOR: connection: make conn_sock_drain() work for all socket families
10135 - BUG/MINOR: lua: Bad HTTP client request duration.
10136 - REGEST/MINOR: Add reg testing files.
10137 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
10138 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
10139 - BUG/MEDIUM: lua: reset lua transaction between http requests
10140 - MINOR: add be_conn_free sample fetch
10141 - MINOR: Add srv_conn_free sample fetch
10142 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
10143 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
10144 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
10145 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
10146 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
10147 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
10148 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
10149 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
10150 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
10151 - MINOR: tools: make date2str_log() take some consts
10152 - MINOR: thread: implement HA_ATOMIC_XADD()
10153 - BUG/MINOR: stream: use atomic increments for the request counter
10154 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
10155 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
10156 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
10157 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
10158 - MINOR: log: make the backend fall back to the frontend when there's no stream
10159 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
10160 - MINOR: log: don't unconditionally pick log info from s->logs
10161 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
10162 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
10163 - MINOR: log: do not dereference a null stream to access captures
10164 - MINOR: log: be sure not to dereference a null stream for a target
10165 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
10166 - MINOR: log: use NULL for the unique_id if there is no stream
10167 - MINOR: log: keep a copy of s->flags early to avoid a dereference
10168 - MINOR: log: use zero as the request counter if there is no stream
10169 - MEDIUM: log: make sess_build_logline() support being called with no stream
10170 - MINOR: log: provide a function to emit a log for a session
10171 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
10172 - BUG/MINOR: h1: fix buffer shift after realignment
10173 - MINOR: connection: make the initialization more consistent
10174 - MINOR: connection: add new function conn_get_proxy()
10175 - MINOR: connection: add new function conn_is_back()
10176 - MINOR: log: One const should be enough.
10177 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
10178 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
10179 - MINOR: snapshot: restart on the event ID and not the stream ID
10180 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
10181 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
10182 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
10183 - MINOR: proxy: add a new generic proxy_capture_error()
10184 - MINOR: http: make the HTTP error capture rely on the generic proxy code
10185 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
10186 - REORG: cli: move the "show errors" handler from http to proxy
10187 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
10188 - MEDIUM: snapshots: dynamically allocate the snapshots
10189 - MEDIUM: snapshot: merge the captured data after the descriptor
10190 - MEDIUM: mworker: remove register/unregister signal functions
10191 - MEDIUM: mworker: use the haproxy poll loop
10192 - BUG/MINOR: mworker: no need to stop peers for each proxy
10193 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
10194 - MEDIUM: mworker: block SIGCHLD until the master is ready
10195 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
10196 - MEDIUM: startup: unify signal init between daemon and mworker mode
10197 - MINOR: mworker: don't deinit the poller fd when in wait mode
10198 - MEDIUM: mworker: master wait mode use its own initialization
10199 - MEDIUM: mworker: replace the master pipe by socketpairs
10200 - MINOR: mworker: keep and clean the listeners
10201 - MEDIUM: threads: close the thread-waker pipe during deinit
10202 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
10203 - REORG: http: move the HTTP semantics definitions to http.h/http.c
10204 - REORG: http: move http_get_path() to http.c
10205 - REORG: http: move error codes production and processing to http.c
10206 - REORG: http: move the log encoding tables to log.c
10207 - REORG: http: move some header value processing functions to http.c
10208 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
10209 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
10210 - MEDIUM: protocol: sockpair protocol
10211 - TESTS: add a python wrapper for sockpair@
10212 - BUG/MINOR: server: Crash when setting FQDN via CLI.
10213 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
10214 - BUILD: fix build without thread
10215 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
10216 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
10217 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
10218 - MEDIUM: connections: Get rid of the recv() method.
10219 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
10220 - MEDIUM: h2: always subscribe to receive if allowed.
10221 - MEDIUM: h2: Don't use a wake() method anymore.
10222 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
10223 - MINOR: connections: Add a "handle" field to wait_list.
10224 - MEDIUM: mux_h2: Revamp the send path when blocking.
10225 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
10226 - MINOR: checks: Give checks their own wait_list.
10227 - MINOR: conn_streams: Remove wait_list from conn_streams.
10228 - REORG: h1: create a new h1m_state
10229 - MINOR: h1: add the restart offsets into struct h1m
10230 - MINOR: h1: remove the unused states from h1m_state
10231 - MINOR: h1: provide a distinct init() function for request and response
10232 - MINOR: h1: add a message flag to indicate that a message carries a response
10233 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
10234 - MINOR: h1: properly pre-initialize err_pos to -2
10235 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
10236 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
10237 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
10238 - MEDIUM: h1: make the parser support a pointer to a start line
10239 - MEDIUM: h1: let the caller pass the initial parser's state
10240 - MINOR: h1: make the message parser support a null <hdr> argument
10241 - MEDIUM: h1: support partial message parsing
10242 - MEDIUM: h1: remove the useless H1_MSG_BODY state
10243 - MINOR: h2: store the HTTP status into the H2S, not the H1M
10244 - MINOR: h1: remove the HTTP status from the H1M struct
10245 - MEDIUM: h1: implement the request parser as well
10246 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
10247 - MINOR: connection: pass the proxy when creating a connection
10248 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
10249 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
10250 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
10251
Willy Tarreau65e94d12018-08-02 18:12:50 +0200102522018/08/02 : 1.9-dev1
10253 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
10254 - DOC: cache: update sections and fix some typos
10255 - BUILD/MINOR: deviceatlas: enable thread support
10256 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
10257 - BUG/MEDIUM: ssl: don't allocate shctx several time
10258 - BUG/MEDIUM: cache: bad computation of the remaining size
10259 - BUILD: checks: don't include server.h
10260 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
10261 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
10262 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
10263 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
10264 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
10265 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
10266 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
10267 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
10268 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
10269 - MINOR: config: report when "monitor fail" rules are misplaced
10270 - BUG/MINOR: mworker: fix validity check for the pipe FDs
10271 - BUG/MINOR: mworker: detach from tty when in daemon mode
10272 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
10273 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
10274 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
10275 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
10276 - BUG/MINOR: hpack: fix debugging output of pseudo header names
10277 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
10278 - BUG/MINOR: hpack: reject invalid header index
10279 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
10280 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
10281 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
10282 - BUG/MINOR: h2: try to abort closed streams as soon as possible
10283 - BUG/MINOR: h2: ":path" must not be empty
10284 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
10285 - BUG/MINOR: h2: the TE header if present may only contain trailers
10286 - BUG/MEDIUM: h2: enforce the per-connection stream limit
10287 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
10288 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
10289 - BUG/MINOR: h2: properly check PRIORITY frames
10290 - BUG/MINOR: h2: reject response pseudo-headers from requests
10291 - BUG/MEDIUM: h2: remove connection-specific headers from request
10292 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
10293 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
10294 - BUG/MINOR: action: Don't check http capture rules when no id is defined
10295 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
10296 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
10297 - BUG/MEDIUM: mworker: also close peers sockets in the master
10298 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
10299 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
10300 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
10301 - BUG/MEDIUM: h2: fix handling of end of stream again
10302 - MINOR: mworker: Update messages referencing exit-on-failure
10303 - MINOR: mworker: Improve wording in `void mworker_wait()`
10304 - CONTRIB: halog: Add help text for -s switch in halog program
10305 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
10306 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
10307 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
10308 - DOC: notifications: add precisions about thread usage
10309 - BUG/MEDIUM: lua/notification: memory leak
10310 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
10311 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
10312 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
10313 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
10314 - BUG/MEDIUM: h2: work around a connection API limitation
10315 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
10316 - MINOR: h2: store the demux padding length in the h2c struct
10317 - BUG/MEDIUM: h2: support uploading partial DATA frames
10318 - MINOR: h2: don't demand that a DATA frame is complete before processing it
10319 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
10320 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
10321 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
10322 - BUG/MEDIUM: h2: fix stream limit enforcement
10323 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
10324 - MINOR: sample: add len converter
10325 - BUG: MAJOR: lb_map: server map calculation broken
10326 - BUG: MINOR: http: don't check http-request capture id when len is provided
10327 - MINOR: sample: rename the "len" converter to "length"
10328 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
10329 - DOC/MINOR: intro: typo, wording, formatting fixes
10330 - MINOR: netscaler: respect syntax
10331 - MINOR: netscaler: remove the use of cip_magic only used once
10332 - MINOR: netscaler: rename cip_len to clarify its uage
10333 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
10334 - BUG/MAJOR: netscaler: address truncated CIP header detection
10335 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
10336 - MEDIUM: netscaler: do not analyze original IP packet size
10337 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
10338 - MINOR: spoe: add force-set-var option in spoe-agent configuration
10339 - CONTRIB: iprange: Fix compiler warning in iprange.c
10340 - CONTRIB: halog: Fix compiler warnings in halog.c
10341 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
10342 - MINOR: mux: add flags to describe a mux's capabilities
10343 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
10344 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
10345 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
10346 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
10347 - MINOR: http: adjust the list of supposedly cacheable methods
10348 - MINOR: http: update the list of cacheable status codes as per RFC7231
10349 - MINOR: http: start to compute the transaction's cacheability from the request
10350 - BUG/MINOR: http: do not ignore cache-control: public
10351 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
10352 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
10353 - MINOR: http: add a function to check request's cache-control header field
10354 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
10355 - BUG/MEDIUM: cache: replace old object on store
10356 - BUG/MEDIUM: cache: respect the request cache-control header
10357 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
10358 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
10359 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
10360 - BUG/MEDIUM: h2: properly handle and report some stream errors
10361 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
10362 - DOC/MINOR: configuration: typo, formatting fixes
10363 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
10364 - BUG/MEDIUM: mworker: don't close stdio several time
10365 - MINOR: don't close stdio anymore
10366 - BUG/MEDIUM: http: don't automatically forward request close
10367 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
10368 - MINOR: h2: add a function to report pseudo-header names
10369 - DEBUG: hpack: make hpack_dht_dump() expose the output file
10370 - DEBUG: hpack: add more traces to the hpack decoder
10371 - CONTRIB: hpack: add an hpack decoder
10372 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
10373 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
10374 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
10375 - CLEANUP: rbtree: remove
10376 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
10377 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
10378 - DOC: lua: Fix typos in comments of hlua_socket_receive
10379 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
10380 - BUG/MINOR: lua: Fix return value of Socket.settimeout
10381 - MINOR: dns: Handle SRV record weight correctly.
10382 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
10383 - MINOR: hathreads: add support for gcc < 4.7
10384 - BUILD/MINOR: ancient gcc versions atomic fix
10385 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
10386 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
10387 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
10388 - DOC: clarify the scope of ssl_fc_is_resumed
10389 - CONTRIB: debug: fix a few flags definitions
10390 - BUG/MINOR: poll: too large size allocation for FD events
10391 - MINOR: sample: add date_us sample
10392 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
10393 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
10394 - MINOR: global/threads: move cpu_map at the end of the global struct
10395 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
10396 - MINOR: global: add some global activity counters to help debugging
10397 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
10398 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
10399 - BUG/MEDIUM: fd: maintain a per-thread update mask
10400 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
10401 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
10402 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
10403 - BUG/MEDIUM: threads/mworker: fix a race on startup
10404 - BUG/MINOR: mworker: only write to pidfile if it exists
10405 - MINOR: threads: Fix build when we're not compiling with threads.
10406 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
10407 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
10408 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
10409 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
10410 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
10411 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
10412 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
10413 - CLEANUP: sample: Fix comment encoding of sample.c
10414 - CLEANUP: sample: Fix outdated comment about sample casts functions
10415 - BUG/MINOR: sample: Fix output type of c_ipv62ip
10416 - CLEANUP: Fix typo in ARGT_MSK6 comment
10417 - CLEANUP: standard: Use len2mask4 in str2mask
10418 - MINOR: standard: Add str2mask6 function
10419 - MINOR: config: Add support for ARGT_MSK6
10420 - MEDIUM: sample: Add IPv6 support to the ipmask converter
10421 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
10422 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
10423 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
10424 - MINOR: fd: don't report maxfd in alert messages
10425 - MEDIUM: polling: start to move maxfd computation to the pollers
10426 - CLEANUP: fd/threads: remove the now unused fdtab_lock
10427 - MINOR: poll: more accurately compute the new maxfd in the loop
10428 - CLEANUP: fd: remove the unused "new" field
10429 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
10430 - MEDIUM: select: make use of hap_fd_* functions
10431 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
10432 - MEDIUM: select: don't use the old FD state anymore
10433 - MEDIUM: poll: don't use the old FD state anymore
10434 - MINOR: fd: pass the iocb and owner to fd_insert()
10435 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
10436 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
10437 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
10438 - DOC: don't suggest using http-server-close
10439 - MINOR: introduce proxy-v2-options for send-proxy-v2
10440 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
10441 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
10442 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
10443 - MINOR: spoe: Always link a SPOE context with the applet processing it
10444 - MINOR: spoe: Replace sending_rate by a frequency counter
10445 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
10446 - MEDIUM: spoe: Use an ebtree to manage idle applets
10447 - MINOR: spoa_example: Count the number of frames processed by each worker
10448 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
10449 - MINOR: init: make stdout unbuffered
10450 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
10451 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
10452 - MINOR: compiler: introduce offsetoff().
10453 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
10454 - MINOR: threads: add test and set/reset operations
10455 - MINOR: pools/threads: Implement lockless memory pools.
10456 - MAJOR: fd/threads: Make the fdcache mostly lockless.
10457 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
10458 - MAJOR: fd: compute the new fd polling state out of the fd lock
10459 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
10460 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
10461 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
10462 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
10463 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
10464 - MEDIUM: fd: make updt_fd_polling() use atomics
10465 - MEDIUM: poller: use atomic ops to update the fdtab mask
10466 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
10467 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
10468 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
10469 - MINOR: fd: reorder fd_add_to_fd_list()
10470 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
10471 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
10472 - MINOR: init: emit warning when -sf/-sd cannot parse argument
10473 - BUILD: fd/threads: fix breakage build breakage without threads
10474 - DOC: Describe routing impact of using interface keyword on bind lines
10475 - DOC: Mention -Ws in the list of available options
10476 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
10477 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
10478 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
10479 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
10480 - BUILD/MINOR: memory: stdint is needed for uintptr_t
10481 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
10482 - DOC: lua: new prototype for function "register_action()"
10483 - DOC: cfgparse: Warn on option (tcp|http)log in backend
10484 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
10485 - MINOR: sample: add a new "concat" converter
10486 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
10487 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
10488 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
10489 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
10490 - CLEANUP: cfgparse: Remove unused label end
10491 - CLEANUP: spoe: Remove unused label retry
10492 - CLEANUP: h2: Remove unused labels from mux_h2.c
10493 - CLEANUP: pools: Remove unused end label in memory.h
10494 - CLEANUP: standard: Fix typo in IPv6 mask example
10495 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
10496 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
10497 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
10498 - MINOR: stats: display the number of threads in the statistics.
10499 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
10500 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
10501 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
10502 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
10503 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
10504 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
10505 - MINOR: ssl: extract full pkey info in load_certificate
10506 - MINOR: ssl: add ssl_sock_get_pkey_algo function
10507 - MINOR: ssl: add ssl_sock_get_cert_sig function
10508 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
10509 - MINOR: connection: add proxy-v2-options authority
10510 - MINOR: systemd: Add section for SystemD sandboxing to unit file
10511 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
10512 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
10513 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
10514 - MINOR: h2: provide and use h2s_detach() and h2s_free()
10515 - MEDIUM: h2: use a single buffer allocator
10516 - MINOR/BUILD: fix Lua build on Mac OS X
10517 - BUILD/MINOR: fix Lua build on Mac OS X (again)
10518 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
10519 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
10520 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
10521 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
10522 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
10523 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
10524 - CLEANUP: ssl: Remove a duplicated #include
10525 - CLEANUP: cli: Remove a leftover debug message
10526 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
10527 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
10528 - BUG/MINOR: force-persist and ignore-persist only apply to backends
10529 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
10530 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
10531 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
10532 - TESTS: Add a testcase for multi-port + multi-server listener issue
10533 - CLEANUP: dns: remove duplicate code in src/dns.c
10534 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
10535 - BUG/MINOR: cli: Ensure all command outputs end with a LF
10536 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
10537 - BUILD: ssl: Fix build with OpenSSL without NPN capability
10538 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
10539 - BUG/MINOR: lua: return bad error messages
10540 - CLEANUP: lua/syntax: lua is a name and not an acronym
10541 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
10542 - BUG/MINOR: tcp-check: use the server's service port as a fallback
10543 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
10544 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
10545 - BUILD/BUG: enable -fno-strict-overflow by default
10546 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
10547 - DOC: log: more than 2 log servers are allowed
10548 - MINOR: hash: add new function hash_crc32c
10549 - MINOR: proxy-v2-options: add crc32c
10550 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
10551 - REORG: compact "struct server"
10552 - MINOR: samples: add crc32c converter
10553 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
10554 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
10555 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
10556 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
10557 - BUG/MINOR: lua: the function returns anything
10558 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
10559 - CLEANUP: lua: typo fix in comments
10560 - BUILD/MINOR: fix build when USE_THREAD is not defined
10561 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
10562 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
10563 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
10564 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
10565 - BUILD/MINOR: cli: fix a build warning introduced by last commit
10566 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
10567 - MINOR: h2: always call h2s_detach() in h2_detach()
10568 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
10569 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
10570 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
10571 - BUILD/MINOR: threads: always export thread_sync_io_handler()
10572 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
10573 - MINOR: h2: implement a basic "show_fd" function
10574 - MINOR: cli: report cache indexes in "show fd"
10575 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
10576 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
10577 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
10578 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
10579 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
10580 - BUG/MINOR: cache: fix "show cache" output
10581 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
10582 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
10583 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
10584 - BUG/MINOR: spoe: Register the variable to set when an error occurred
10585 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
10586 - MINOR: spoe: Add metrics in to know time spent in the SPOE
10587 - MINOR: spoe: Add options to store processing times in variables
10588 - MINOR: log: move 'log' keyword parsing in dedicated function
10589 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
10590 - MINOR: spoe: Add loggers dedicated to the SPOE agent
10591 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
10592 - MINOR: spoe: use agent's logger to log SPOE messages
10593 - MINOR: spoe: Add counters to log info about SPOE agents
10594 - BUG/MAJOR: cache: always initialize newly created objects
10595 - MINOR: servers: Support alphanumeric characters for the server templates names
10596 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
10597 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
10598 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
10599 - MINOR: proxy: Add fe_defbe fetcher
10600 - MINOR: config: Warn if resolvers has no nameservers
10601 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
10602 - MINOR: cli: Ensure the CLI always outputs an error when it should
10603 - MEDIUM: sample: Extend functionality for field/word converters
10604 - MINOR: export localpeer as an environment variable
10605 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
10606 - BUILD: sample: avoid build warning in sample.c
10607 - BUG/CRITICAL: h2: fix incorrect frame length check
10608 - DOC: lua: update the links to the config and Lua API
10609 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
10610 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
10611 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
10612 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
10613 - MINOR: h2: detect presence of CONNECT and/or content-length
10614 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
10615 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
10616 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
10617 - MEDIUM: cli: Add payload support
10618 - MINOR: map: Add payload support to "add map"
10619 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
10620 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
10621 - MINOR: sample: Add strcmp sample converter
10622 - MINOR: http: Add support for 421 Misdirected Request
10623 - BUG/MINOR: config: disable http-reuse on TCP proxies
10624 - MINOR: ssl: disable SSL sample fetches when unsupported
10625 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
10626 - BUG/MINOR: checks: Fix check->health computation for flapping servers
10627 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
10628 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
10629 - MINOR: backend: implement random-based load balancing
10630 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
10631 - MINOR: lua: Add server name & puid to LUA Server class.
10632 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
10633 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
10634 - BUG/MEDIUM: task: Don't free a task that is about to be run.
10635 - MINOR: fd: Make the lockless fd list work with multiple lists.
10636 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
10637 - MINOR: pollers: move polled_mask outside of struct fdtab.
10638 - BUG/MINOR: lua: schedule socket task upon lua connect()
10639 - BUG/MINOR: lua: ensure large proxy IDs can be represented
10640 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
10641 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
10642 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
10643 - BUG/MEDIUM: ssl: properly protect SSL cert generation
10644 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
10645 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
10646 - BUG/MEDIUM: spoe: Flags are not encoded in network order
10647 - CLEANUP: spoe: Remove unused variables the agent structure
10648 - DOC: spoe: fix a typo
10649 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
10650 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
10651 - DOC: add some description of the pending rework of the buffer structure
10652 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
10653 - MINOR: lua: Improve error message
10654 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
10655 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
10656 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
10657 - BUG/BUILD: threads: unbreak build without threads
10658 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
10659 - BUG/MEDIUM: lua/socket: Length required read doesn't work
10660 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
10661 - MAJOR: tasks: Create a per-thread runqueue.
10662 - MAJOR: tasks: Introduce tasklets.
10663 - MINOR: tasks: Make the number of tasks to run at once configurable.
10664 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
10665 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
10666 - MINOR: http: Log warning if (add|set)-header fails
10667 - DOC: management: add the new wrew stats column
10668 - MINOR: stats: also report the failed header rewrites warnings on the stats page
10669 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
10670 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
10671 - MINOR: task: Also consider the task list size when getting global tasks.
10672 - MINOR: dns: Implement `parse-resolv-conf` directive
10673 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
10674 - MINOR: task/notification: Is notifications registered ?
10675 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
10676 - BUG/MAJOR: lua: Dead lock with sockets
10677 - BUG/MEDIUM: lua/socket: Notification error
10678 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
10679 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
10680 - DOC: contrib/modsecurity: few typo fixes
10681 - DOC: SPOE.txt: fix a typo
10682 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
10683 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
10684 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
10685 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
10686 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
10687 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
10688 - MINOR: task: Fix a compiler warning by adding a cast.
10689 - MINOR: stats: also report the nice and number of calls for applets
10690 - MINOR: applet: assign the same nice value to a new appctx as its owner task
10691 - MINOR: task: Fix compiler warning.
10692 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
10693 - MINOR: tasks: Don't define rqueue if we're building without threads.
10694 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
10695 - MINOR: lua: Increase debug information
10696 - BUG/MEDIUM: threads: handle signal queue only in thread 0
10697 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
10698 - BUG/MINOR: signals: ha_sigmask macro for multithreading
10699 - BUG/MAJOR: map: fix a segfault when using http-request set-map
10700 - DOC: regression testing: Add a short starting guide.
10701 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
10702 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
10703 - BUG/MINOR: lua: Segfaults with wrong usage of types.
10704 - BUG/MAJOR: ssl: Random crash with cipherlist capture
10705 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
10706 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
10707 - MINOR: tests: First regression testing file.
10708 - MINOR: reg-tests: Add reg-tests/README file.
10709 - MINOR: reg-tests: Add a few regression testing files.
10710 - DOC: Add new REGTEST tag info about reg testing.
10711 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
10712 - MINOR: Some spelling cleanup in the comments.
10713 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
10714 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
10715 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
10716 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
10717 - REGTEST/MINOR: Add levels to reg-tests target.
10718 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
10719 - BUG/BUILD: threads: unbreak build without threads
10720 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
10721 - MINOR: stick-tables: make stktable_release() do nothing on NULL
10722 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
10723 - MINOR: startup: change session/process group settings
10724 - MINOR: systemd: consider exit status 143 as successful
10725 - REGTEST/MINOR: Wrong URI syntax.
10726 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
10727 - CLEANUP: dns: inacurate comment about prefered IP score
10728 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
10729 - MINOR: dns: new DNS options to allow/prevent IP address duplication
10730 - REGTEST/MINOR: Unexpected curl URL globling.
10731 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
10732 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
10733 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
10734 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
10735 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
10736 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
10737 - MINOR: tasklet: Set process to NULL.
10738 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
10739 - MINOR: buffer: switch buffer sizes and offsets to size_t
10740 - MINOR: buffer: add a few basic functions for the new API
10741 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
10742 - MINOR: buffer: Add b_set_data().
10743 - MINOR: buffer: introduce b_realign_if_empty()
10744 - MINOR: compression: pass the channel to http_compression_buffer_end()
10745 - MINOR: channel: add a few basic functions for the new buffer API
10746 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
10747 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
10748 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
10749 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
10750 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
10751 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
10752 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
10753 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
10754 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
10755 - MINOR: buffer: remove bi_ptr()
10756 - MINOR: buffer: remove bo_ptr()
10757 - MINOR: buffer: remove bo_end()
10758 - MINOR: buffer: remove bi_end()
10759 - MINOR: buffer: remove bo_contig_data()
10760 - MINOR: buffer: merge b{i,o}_contig_space()
10761 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
10762 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
10763 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
10764 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
10765 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
10766 - MINOR: h2: clarify the fact that the send functions are unsigned
10767 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
10768 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
10769 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
10770 - MINOR: h1: make h1_measure_trailers() use an offset and a count
10771 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
10772 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
10773 - MINOR: buffer: get rid of b_end() and b_to_end()
10774 - MINOR: buffer: make b_getblk_nc() take const pointers
10775 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
10776 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
10777 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
10778 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
10779 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
10780 - MINOR: connection: add a flags argument to rcv_buf()
10781 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
10782 - MINOR: buffer: get rid of b_ptr() and convert its last users
10783 - MINOR: buffer: use b_room() to determine available space in a buffer
10784 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
10785 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
10786 - MINOR: buffer: make bo_putchar() use b_tail()
10787 - MINOR: buffer: replace buffer_full() with channel_full()
10788 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
10789 - MINOR: buffer: replace buffer_pending() with ci_data()
10790 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
10791 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
10792 - MINOR: buffer: use b_orig() to replace most references to b->data
10793 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
10794 - MINOR: channel: remove almost all references to buf->i and buf->o
10795 - MINOR: channel: Add co_set_data().
10796 - MEDIUM: channel: adapt to the new buffer API
10797 - MINOR: checks: adapt to the new buffer API
10798 - MEDIUM: h2: update to the new buffer API
10799 - MINOR: buffer: remove unused bo_add()
10800 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
10801 - MINOR: stats: adapt to the new buffers API
10802 - MINOR: cli: use the new buffer API
10803 - MINOR: cache: use the new buffer API
10804 - MINOR: stream-int: use the new buffer API
10805 - MINOR: stream: use wrappers instead of directly manipulating buffers
10806 - MINOR: backend: use new buffer API
10807 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
10808 - MINOR: filters: convert to the new buffer API
10809 - MINOR: payload: convert to the new buffer API
10810 - MEDIUM: h1: port to new buffer API.
10811 - MINOR: flt_trace: adapt to the new buffer API
10812 - MEDIUM: compression: start to move to the new buffer API
10813 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
10814 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
10815 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
10816 - MAJOR: start to change buffer API
10817 - MINOR: buffer: remove the check for output on b_del()
10818 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
10819 - MINOR: buffer: rename the "data" field to "area"
10820 - MEDIUM: buffers: move "output" from struct buffer to struct channel
10821 - MINOR: buffer: replace bi_fast_delete() with b_del()
10822 - MINOR: buffer: replace b{i,o}_put* with b_put*
10823 - MINOR: buffer: add a new file for ist + buffer manipulation functions
10824 - MINOR: checks: use b_putist() instead of b_putstr()
10825 - MINOR: buffers: remove b_putstr()
10826 - CLEANUP: buffer: minor cleanups to buffer.h
10827 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
10828 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
10829 - MINOR: buffer: rename the data length member to '->data'
10830 - MAJOR: buffer: finalize buffer detachment
10831 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
10832 - MAJOR: chunks: replace struct chunk with struct buffer
10833 - DOC: buffers: document the new buffers API
10834 - DOC: buffers: remove obsolete docs about buffers
10835 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
10836 - MINOR: connections/mux: Add a new "subscribe" method.
10837 - MEDIUM: connections/mux: Revamp the send direction.
10838 - MINOR: connection: simplify subscription by adding a registration function
10839 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
10840 - BUG/MINOR: build: Fix compilation with debug mode enabled
10841 - BUILD: Generate sha256 checksums in publish-release
10842 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
10843 - MINOR: debug: Add checks for conn_stream flags
10844 - MINOR: ist: Add the function isteqi
10845 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
10846 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
10847 - MINOR: buffers: simplify b_contig_space()
10848 - MINOR: buffers: split b_putblk() into __b_putblk()
10849 - MINOR: buffers: add b_xfer() to transfer data between buffers
10850 - DOC: add some design notes about the new layering model
10851 - MINOR: conn_stream: add a new CS_FL_REOS flag
10852 - MINOR: conn_stream: add an rx buffer to the conn_stream
10853 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
10854 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
10855 - MINOR: h2: make each H2 stream support an intermediary input buffer
10856 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
10857 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
10858 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
10859 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
10860 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
10861 - MEDIUM: h2: perform a single call to the data layer in demux()
10862 - MEDIUM: h2: don't call data_cb->recv() anymore
10863 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
10864 - MEDIUM: h2: use the default conn_stream's receive function
10865 - DOC: add more design feedback on the new layering model
10866 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
10867 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
10868 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
10869 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
10870 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
10871 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
10872 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
10873 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
10874 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
10875 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
10876 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
10877 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
10878 - MINOR: queue: centralize dequeuing code a bit better
10879 - MEDIUM: queue: make pendconn_free() work on the stream instead
10880 - DOC: queue: document the expected locking model for the server's queue
10881 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
10882 - MINOR: queue: use a distinct variable for the assigned server and the queue
10883 - MINOR: queue: implement pendconn queue locking functions
10884 - MEDIUM: queue: get rid of the pendconn lock
10885 - MINOR: tasks: Make active_tasks_mask volatile.
10886 - MINOR: tasks: Make global_tasks_mask volatile.
10887 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
10888 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
10889 - BUG/MEDIUM: threads/sync: use sched_yield when available
10890 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
10891 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
10892 - BUG/MINOR: config: stick-table is not supported in defaults section
10893 - BUILD/MINOR: threads: unbreak build with threads disabled
10894 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
10895 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
10896 - MINOR: threads: move "nbthread" parsing to hathreads.c
10897 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
10898 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
10899 - BUILD/MINOR: compiler: fix offsetof() on older compilers
10900 - SCRIPTS: git-show-backports: add missing quotes to "echo"
10901 - MINOR: threads: add more consistency between certain variables in no-thread case
10902 - MEDIUM: hathreads: implement a more flexible rendez-vous point
10903 - BUG/MEDIUM: cli: make "show fd" thread-safe
10904
Willy Tarreaub3066502017-11-26 19:50:17 +0100109052017/11/26 : 1.9-dev0
10906
Willy Tarreau0b787922017-11-26 19:25:23 +0100109072017/11/26 : 1.8.0
10908 - BUG/MEDIUM: stream: don't automatically forward connect nor close
10909 - BUG/MAJOR: stream: ensure analysers are always called upon close
10910 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
10911 - MEDIUM: mworker: Add systemd `Type=notify` support
10912 - BUG/MEDIUM: cache: free callback to remove from tree
10913 - CLEANUP: cache: remove unused struct
10914 - MEDIUM: cache: enable the HTTP analysers
10915 - CLEANUP: cache: remove wrong comment
10916 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
10917 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
10918 - MINOR: threads/atomic: implement pl_mb() in asm on x86
10919 - MINOR: threads/atomic: implement pl_bts() on non-x86
10920 - MINOR: threads/build: atomic: replace the few inlines with macros
10921 - BUILD: threads/plock: fix a build issue on Clang without optimization
10922 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
10923 - BUILD: compiler: add a new type modifier __maybe_unused
10924 - BUILD: h2: mark some inlined functions "unused"
10925 - BUILD: server: check->desc always exists
10926 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
10927 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
10928 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
10929 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
10930 - BUG/MINOR: systemd: ignore daemon mode
10931 - CONTRIB: spoa_example: allow to compile outside HAProxy.
10932 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
10933 - CONTRIB: spoa_example: remove last dependencies on type "sample"
10934 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
10935 - CLEANUP: cache: reorder includes
10936 - MEDIUM: shctx: use unsigned int for len and block_count
10937 - MEDIUM: cache: "show cache" on the cli
10938 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
10939 - BUG/MEDIUM: cache: refcount forbids to free the objects
10940 - BUG/MEDIUM: cache fix cli_kws structure
10941 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
10942 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
10943 - MINOR: ssl: Don't disable early data handling if we could not write.
10944 - MINOR: pools: prepare functions to override malloc/free in pools
10945 - MINOR: pools: implement DEBUG_UAF to detect use after free
10946 - BUG/MEDIUM: threads/time: fix time drift correction
10947 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
10948 - MINOR: sample: Add "thread" sample fetch
10949 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
10950 - BUG/MINOR: stream: fix tv_request calculation for applets
10951 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
10952 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
10953 - MINOR: ssl: Handle reading early data after writing better.
10954 - MINOR: mux: Make sure every string is woken up after the handshake.
10955 - MEDIUM: cache: store sha1 for hashing the cache key
10956 - MINOR: http: implement the "http-request reject" rule
10957 - MINOR: h2: send RST_STREAM before GOAWAY on reject
10958 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
10959 - MINOR: h2: make use of client-fin timeout after GOAWAY
10960 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
10961 - MINOR: ssl: Handle early data with BoringSSL
10962 - BUG/MEDIUM: stream: always release the stream-interface on abort
10963 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
10964 - MINOR: cache: move the refcount decrease in the applet release
10965 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
10966 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
10967 - MINOR: config: Slightly change how parse_process_number works
10968 - MINOR: config: Export parse_process_number and use it wherever it's applicable
10969 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
10970 - MINOR: config: Add auto-increment feature for cpu-map
10971 - MINOR: config: Support partial ranges in cpu-map directive
10972 - MINOR:: config: Remove thread-map directive
10973 - MINOR: config: Add the threads support in cpu-map directive
10974 - MINOR: config: Add threads support for "process" option on "bind" lines
10975 - MEDIUM: listener: Bind listeners on a thread subset if specified
10976 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
10977 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
10978 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
10979 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
10980 - DOC: update the roadmap file with the latest changes merged in 1.8
10981 - DOC: fix mangled version in peers protocol documentation
10982 - DOC: add initial peers protovol v2.0 documentation.
10983 - DOC: mention William as maintainer of the cache and master-worker
10984 - DOC: add Christopher and Emeric as maintainers of the threads
10985 - MINOR: cache: replace a fprint() by an abort()
10986 - MEDIUM: cache: max-age configuration keyword
10987 - DOC: explain HTTP2 timeout behavior
10988 - DOC: cache: configuration and management
10989 - MAJOR: mworker: exits the master on failure
10990 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
10991 - MINOR: task: keep a pointer to the currently running task
10992 - MINOR: task: align the rq and wq locks
10993 - MINOR: fd: cache-align fdtab and fdcache locks
10994 - MINOR: buffers: cache-align buffer_wq_lock
10995 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
10996 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
10997 - CLEANUP: checks: remove 16 bytes of holes in struct check
10998 - CLEANUP: cache: more efficiently pack the struct cache
10999 - CLEANUP: fd: place the lock at the beginning of struct fdtab
11000 - CLEANUP: pools: align pools on a cache line
11001 - DOC: config: add a few bits about how to configure HTTP/2
11002 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
11003 - BUILD: Makefile: reorder object files by size
11004
Willy Tarreaucfe14662017-11-19 09:55:29 +0100110052017/11/19 : 1.8-rc4
11006 - BUG/MEDIUM: cache: does not cache if no Content-Length
11007 - BUILD: thread/pipe: fix build without threads
11008 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
11009 - MINOR: debug/flags: Add missing flags
11010 - MINOR: threads: Use __decl_hathreads to declare locks
11011 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
11012 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
11013 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
11014 - MINOR: ebtree/scope: add a function to find next node from a parent
11015 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
11016 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
11017 - BUG/MEDIUM: cache: use msg->sov to forward header
11018 - MINOR: cache: forward data with headers
11019 - MINOR: cache: disable cache if shctx_row_data_append fail
11020 - BUG/MINOR: threads: tid_bit must be a unsigned long
11021 - CLEANUP: tasks: Remove useless double test on rq_next
11022 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
11023 - MINOR: tools: add a function to dump a scope-aware tree to a file
11024 - MINOR: tools: improve the DOT dump of the ebtree
11025 - MINOR: tools: emphasize the node being worked on in the tree dump
11026 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
11027 - DOC: peers: Add a first version of peers protocol v2.1.
11028 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
11029 - MINOR: mworker: display an accurate error when the reexec fail
11030 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
11031 - BUG/MEDIUM: mworker: does not deinit anymore
11032 - BUG/MEDIUM: mworker: does not close inherited FD
11033 - MINOR: tests: add a python wrapper to test inherited fd
11034 - BUG/MINOR: Allocate the log buffers before the proxies startup
11035 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
11036 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
11037 - MINOR: applets: Use a bitfield to track applets activity per-thread
11038 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
11039 - MEDIUM: applets: Don't process more than 200 active applets at once
11040 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
11041 - MINOR: SSL: Store the ASN1 representation of client sessions.
11042 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
11043 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
11044
Willy Tarreau34650d52017-11-11 09:06:48 +0100110452017/11/11 : 1.8-rc3
11046 - BUILD: use MAXPATHLEN instead of NAME_MAX.
11047 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
11048 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
11049 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
11050 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
11051 - CLEANUP: checks: remove return statements in locked functions
11052 - BUG/MINOR: cli: add severity in "set server addr" parser
11053 - CLEANUP: server: get rid of return statements in the CLI parser
11054 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
11055 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
11056 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
11057 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
11058 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
11059 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
11060 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
11061 - BUG/MEDIUM: threads: don't try to free build option message on exit
11062 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
11063 - MINOR: add master-worker in the warning about nbproc
11064 - MINOR: mworker: allow pidfile in mworker + foreground
11065 - MINOR: mworker: write parent pid in the pidfile
11066 - MINOR: mworker: do not store child pid anymore in the pidfile
11067 - MINOR: ebtree: implement the scope-aware functions for eb32
11068 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
11069 - MINOR: ebtree: update the eb32sc parent node's scope on delete
11070 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
11071 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
11072 - MAJOR: task: make use of the scope-aware ebtree functions
11073 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
11074 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
11075 - MINOR: threads: use faster locks for the spin locks
11076 - MINOR: tasks: only visit filled task slots after processing them
11077 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
11078 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
11079 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
11080 - DOC: Add note about encrypted password CPU usage
11081 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
11082 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
11083 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
11084 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
11085 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
11086 - BUG/MEDIUM: h2: fix some wrong error codes on connections
11087 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
11088 - BUILD: enable USE_THREAD for Solaris build.
11089 - BUG/MEDIUM: h2: don't close the connection is there are data left
11090 - MINOR: h2: don't re-enable the connection's task when we're closing
11091 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
11092 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
11093 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
11094 - BUG/MINOR: h2: don't send GOAWAY on failed response
11095 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
11096 - BUG/MINOR: comp: fix compilation warning compiling without compression.
11097 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
11098 - BUG/MAJOR: threads/tasks: fix the scheduler again
11099 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
11100 - MINOR: ssl: Handle session resumption with TLS 1.3
11101 - MINOR: ssl: Spell 0x10101000L correctly.
11102 - MINOR: ssl: Handle sending early data to server.
11103 - BUILD: ssl: fix build of backend without ssl
11104 - BUILD: shctx: do not depend on openssl anymore
11105 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
11106 - BUG/MEDIUM: h2: reject non-3-digit status codes
11107 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
11108 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
11109 - BUG/MEDIUM: h2: split the function to send RST_STREAM
11110 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
11111 - MINOR: tools: don't use unlikely() in hex2i()
11112 - BUG/MEDIUM: h2: support orphaned streams
11113 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
11114 - CLEANUP: mux: remove the unused "release()" function
11115 - MINOR: cli: make "show fd" report the fd's thread mask
11116 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
11117 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
11118 - MEDIUM: http: always reject the "PRI" method
11119
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +0100111202017/11/03 : 1.8-rc2
11121 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
11122 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
11123 - MINOR: mux: Only define pipe functions on linux.
11124 - MINOR: cache: Remove useless test for nonzero.
11125 - MINOR: cache: Don't confuse act_return and act_parse_ret.
11126 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
11127 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
11128 - BUG/MAJOR: fix deadlock on healthchecks.
11129 - BUG/MINOR: thread: fix a typo in the debug code
11130 - BUILD: shctx: allow to be built without openssl
11131 - BUG/MEDIUM: cache: don't try to resolve wrong filters
11132 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
11133 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
11134 - BUG/MINOR: stdarg.h inclusion
11135 - BUG/MINOR: dns: fix missing lock protection on server.
11136 - BUG/MINOR: lua: fix missing lock protection on server.
11137 - BUILD: enable USE_THREAD for OpenBSD build.
11138 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
11139 - MINOR: thread: report multi-thread support in haproxy -vv
11140
Willy Tarreau901f75c2017-10-31 23:18:29 +0100111412017/10/31 : 1.8-rc1
11142 - BUG/MEDIUM: server: Allocate tmptrash before using it.
11143 - CONTRIB: trace: add the possibility to place trace calls in the code
11144 - CONTRIB: trace: try to display the function's return value on exit
11145 - CONTRIB: trace: report the base name only for file names
11146 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
11147 - MINOR: ssl: build with recent BoringSSL library
11148 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
11149 - BUG/MINOR: cli: restore "set ssl tls-key" command
11150 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
11151 - IMPORT: sha1: import SHA1 functions
11152 - MINOR: sample: add the sha1 converter
11153 - MINOR: sample: add the hex2i converter
11154 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
11155 - MINOR: ssl: don't abort after sending 16kB
11156 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
11157 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
11158 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
11159 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
11160 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
11161 - BUG/MINOR: checks: Don't forget to release the connection on error case.
11162 - MINOR: buffer: add the buffer input manipulation functions
11163 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
11164 - MEDIUM: cfgparse: post section callback
11165 - MEDIUM: cfgparse: post parsing registration
11166 - MINOR: lua: add uuid to the Class Proxy
11167 - MINOR: hlua: Add regex class
11168 - MINOR: http: Mark the 425 code as "Too Early".
11169 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
11170 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
11171 - MINOR: ssl: generated certificate is missing in switchctx early callback
11172 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
11173 - BUILD: Makefile: disable -Wunused-label
11174 - MINOR: ssl/proto_http: Add keywords to take care of early data.
11175 - BUG/MINOR: lua: const attribute of a string is overridden
11176 - MINOR: ssl: Don't abuse ssl_options.
11177 - MINOR: update proxy-protocol-v2 #define
11178 - MINOR: merge ssl_sock_get calls for log and ppv2
11179 - MINOR: add ALPN information to send-proxy-v2
11180 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
11181 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
11182 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
11183 - REORG: shctx: move lock functions and struct
11184 - MEDIUM: shctx: allow the use of multiple shctx
11185 - REORG: shctx: move ssl functions to ssl_sock.c
11186 - MEDIUM: shctx: separate ssl and shctx
11187 - MINOR: shctx: rename lock functions
11188 - MINOR: h1: store the status code in the H1 message
11189 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
11190 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
11191 - MINOR: action: Add trk_idx inline function
11192 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
11193 - MINOR: action: Add a function pointer in act_rule struct to check its validity
11194 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
11195 - MINOR: action: Add a functions to check http capture rules
11196 - MINOR: action: Factorize checks on rules calling check_ptr if defined
11197 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
11198 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
11199 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
11200 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
11201 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
11202 - MINOR: spoe: Move message encoding in its own function
11203 - MINOR: spoe: Add a type to qualify the message list during encoding
11204 - MINOR: spoe: Add a generic function to encode a list of SPOE message
11205 - MEDIUM: spoe/rules: Process "send-spoe-group" action
11206 - BUG/MINOR: dns: Fix CLI keyword declaration
11207 - MAJOR: dns: Refactor the DNS code
11208 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
11209 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
11210 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
11211 - MINOR: standard: Add memvprintf function
11212 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
11213 - MINOR: cli: Add "show startup-logs" command
11214 - MINOR: startup: Extend the scope the MODE_STARTING flag
11215 - MINOR: threads: Prepare makefile to link with pthread
11216 - MINOR: threads: Add THREAD_LOCAL macro
11217 - MINOR: threads: Add atomic-ops and plock includes in import dir
11218 - MEDIUM: threads: Add hathreads header file
11219 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
11220 - MINOR: threads: Add nbthread parameter
11221 - MEDIUM: threads: Adds a set of functions to handle sync-point
11222 - MAJOR: threads: Start threads to experiment multithreading
11223 - MINOR: threads: Define the sync-point inside run_poll_loop
11224 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
11225 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
11226 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
11227 - MEDIUM: threads/logs: Make logs thread-safe
11228 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
11229 - MAJOR: threads/fd: Make fd stuffs thread-safe
11230 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
11231 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
11232 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
11233 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
11234 - WIP: SQUASH WITH SYNC POINT
11235 - MAJOR: threads/task: handle multithread on task scheduler
11236 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
11237 - MEDIUM: threads/listeners: Make listeners thread-safe
11238 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
11239 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
11240 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
11241 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
11242 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
11243 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
11244 - MINOR: threads/sample: Change temp_smp into a thread local variable
11245 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
11246 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
11247 - MAJOR: threads/applet: Handle multithreading for applets
11248 - MAJOR: threads/peers: Make peers thread safe
11249 - MAJOR: threads/buffer: Make buffer wait queue thread safe
11250 - MEDIUM: threads/stream: Make streams list thread safe
11251 - MAJOR: threads/ssl: Make SSL part thread-safe
11252 - MEDIUM: threads/queue: Make queues thread-safe
11253 - MAJOR: threads/map: Make acls/maps thread safe
11254 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
11255 - MEDIUM: thread/vars: Make vars thread-safe
11256 - MEDIUM: threads/filters: Add init/deinit callback per thread
11257 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
11258 - MEDIUM: threads/compression: Make HTTP compression thread-safe
11259 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
11260 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
11261 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
11262 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
11263 - MEDIUM: threads/xref: Convert xref function to a thread safe model
11264 - MEDIUM: threads/tasks: Add lock around notifications
11265 - MEDIUM: thread/spoe: Make the SPOE thread-safe
11266 - MEDIUM: thread/dns: Make DNS thread-safe
11267 - MINOR: threads: Add thread-map config parameter in the global section
11268 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
11269 - MINOR: threads/checks: Set the task process_mask when a check is executed
11270 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
11271 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
11272 - MINOR: threads: Don't start when device a detection module is used
11273 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
11274 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
11275 - MAJOR: threads: Offically enable the threads support in HAProxy
11276 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
11277 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
11278 - BUILD: stick-tables: silence an uninitialized variable warning
11279 - BUG/MINOR: dns: Fix SRV records with the new thread code.
11280 - MINOR: ssl: Remove the global allow-0rtt option.
11281 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
11282 - CLEANUP: threads: rename process_mask to thread_mask
11283 - MINOR: h1: add a function to measure the trailers length
11284 - MINOR: threads: add a portable barrier for threads and non-threads
11285 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
11286 - BUG/MEDIUM: threads: Initialize the sync-point
11287 - MEDIUM: connection: start to introduce a mux layer between xprt and data
11288 - MINOR: connection: implement alpn registration of muxes
11289 - MINOR: mux: register the pass-through mux for any ALPN string
11290 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
11291 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
11292 - MINOR: connection: introduce conn_stream
11293 - MINOR: mux: add more methods to mux_ops
11294 - MINOR: connection: introduce the conn_stream manipulation functions
11295 - MINOR: mux_pt: implement remaining mux_ops methods
11296 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
11297 - MINOR: connection: make conn_stream users also check for per-stream error flag
11298 - MINOR: conn_stream: new shutr/w status flags
11299 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
11300 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
11301 - MINOR: connection: add cs_close() to close a conn_stream
11302 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
11303 - MEDIUM: connection: replace conn_full_close() with cs_close()
11304 - MEDIUM: connection: make mux->detach() release the connection
11305 - MEDIUM: stream: do not forcefully close the client connection anymore
11306 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
11307 - MEDIUM: connection: add a destroy callback
11308 - MINOR: session: release the listener with the session, not the stream
11309 - MEDIUM: session: make use of the connection's destroy callback
11310 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
11311 - MINOR: hpack: implement the HPACK Huffman table decoder
11312 - MINOR: hpack: implement the header tables management
11313 - MINOR: hpack: implement the decoder
11314 - MEDIUM: hpack: implement basic hpack encoding
11315 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
11316 - MINOR: h2: create a very minimalistic h2 mux
11317 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
11318 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
11319 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
11320 - MINOR: h2: create the h2c struct and allocate its pool
11321 - MINOR: h2: create the h2s struct and the associated pool
11322 - MINOR: h2: handle two extra stream states for errors
11323 - MINOR: h2: add a frame header descriptor for incoming frames
11324 - MEDIUM: h2: allocate and release the h2c context on connection init/end
11325 - MEDIUM: h2: implement basic recv/send/wake functions
11326 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
11327 - MEDIUM: h2: implement the mux buffer allocator
11328 - MINOR: h2: add the connection and stream flags listing the causes for blocking
11329 - MINOR: h2: add function h2s_id() to report a stream's ID
11330 - MINOR: h2: small function to know when the mux is busy
11331 - MINOR: h2: new function h2c_error to mark an error on the connection
11332 - MINOR: h2: new function h2s_error() to mark an error on a stream
11333 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
11334 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
11335 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
11336 - MINOR: h2: add stream lookup function based on the stream ID
11337 - MINOR: h2: create dummy idle and closed streams
11338 - MINOR: h2: add the function to create a new stream
11339 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
11340 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
11341 - MINOR: h2: also terminate the connection on shutr
11342 - MEDIUM: h2: properly consider all conditions for end of connection
11343 - MEDIUM: h2: wake the connection up for send on pending streams
11344 - MEDIUM: h2: start to implement the frames processing loop
11345 - MINOR: h2: add a function to send a GOAWAY error frame
11346 - MINOR: h2: match the H2 connection preface on init
11347 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
11348 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
11349 - MEDIUM: h2: process streams pending for sending
11350 - MINOR: h2: send a real SETTINGS frame based on the configuration
11351 - MEDIUM: h2: detect the presence of the first settings frame
11352 - MINOR: h2: create a stream parser for the demuxer
11353 - MINOR: h2: implement PING frames
11354 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
11355 - MINOR: h2: lookup the stream during demuxing
11356 - MEDIUM: h2: honor WINDOW_UPDATE frames
11357 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
11358 - MINOR: h2: handle CONTINUATION frames
11359 - MEDIUM: h2: partial implementation of h2_detach()
11360 - MEDIUM: h2: unblock a connection when its current stream detaches
11361 - MEDIUM: h2: basic processing of HEADERS frame
11362 - MEDIUM: h2: don't use trash to decode headers!
11363 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
11364 - MEDIUM: h2: send the H1 response body as DATA frames
11365 - MEDIUM: h2: skip the response trailers if any
11366 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
11367 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
11368 - MEDIUM: h2: handle request body in DATA frames
11369 - MINOR: h2: handle RST_STREAM frames
11370 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
11371 - MINOR: h2: use a common function to signal some and all streams.
11372 - MEDIUM: h2: handle GOAWAY frames
11373 - MINOR: h2: centralize the check for the idle streams
11374 - MINOR: h2: centralize the check for the half-closed(remote) streams
11375 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
11376 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
11377 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
11378 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
11379 - MEDIUM: h2: apply a timeout to h2 connections
11380 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
11381 - MEDIUM: shctx: forbid shctx to read more than expected
11382 - MEDIUM: cache: configuration parsing and initialization
11383 - MEDIUM: cache: store objects in cache
11384 - MEDIUM: cache: deliver objects from cache
11385
Willy Tarreauf08137c2017-10-22 10:13:45 +0200113862017/10/22 : 1.8-dev3
11387 - REORG: ssl: move defines and methodVersions table upper
11388 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
11389 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
11390 - MEDIUM: ssl: disable SSLv3 per default for bind
11391 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
11392 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
11393 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
11394 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
11395 - BUG/MEDIUM: build without openssl broken
11396 - BUG/MINOR: warning: need_resend may be used uninitialized
11397 - BUG/MEDIUM: misplaced exit and wrong exit code
11398 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
11399 - BUILD: scripts: make publish-release support bare repositories
11400 - BUILD: scripts: add an automatic mode for publish-release
11401 - BUILD: scripts: add a "quiet" mode to publish-release
11402 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
11403 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
11404 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
11405 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
11406 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
11407 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
11408 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
11409 - BUG/MAJOR: server: Segfault after parsing server state file.
11410 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
11411 - scripts: create-release pass -n to tail
11412 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
11413 - BUG/MEDIUM: fix segfault when no argument to -x option
11414 - MINOR: warning on multiple -x
11415 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
11416 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
11417 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
11418 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
11419 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
11420 - DOC: fix references to the section about the unix socket
11421 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
11422 - MAJOR: task: task scheduler rework.
11423 - MINOR: task/stream: tasks related to a stream must be init by the caller.
11424 - MINOR: queue: Change pendconn_get_next_strm into private function
11425 - MINOR: backends: Change get_server_sh/get_server_uh into private function
11426 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
11427 - MEDIUM: stream: make stream_new() always set the target and analysers
11428 - MINOR: frontend: initialize HTTP layer after the debugging code
11429 - MINOR: connection: add a .get_alpn() method to xprt_ops
11430 - MINOR: ssl: add a get_alpn() method to ssl_sock
11431 - MINOR: frontend: retrieve the ALPN name when available
11432 - MINOR: frontend: report the connection's ALPN in the debug output
11433 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
11434 - MINOR: connection: send data before receiving
11435 - MAJOR: applet: applet scheduler rework.
11436 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
11437 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
11438 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
11439 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
11440 - MINOR: compression: Use a memory pool to allocate compression states
11441 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
11442 - DOC: fix references to the section about time format.
11443 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
11444 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
11445 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
11446 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
11447 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
11448 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
11449 - MINOR: peers: Add additional information to stick-table definition messages.
11450 - BUG/MINOR: http: properly handle all 1xx informational responses
11451 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
11452 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
11453 - CLEANUP: hdr_idx: make some function arguments const where possible
11454 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
11455 - BUG/MINOR: lua: In error case, the safe mode is not removed
11456 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
11457 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
11458 - BUG/MEDIUM: lua: bad memory access
11459 - BUG/MINOR: Lua: variable already initialized
11460 - DOC: update CONTRIBUTING regarding optional parts and message format
11461 - DOC: update the list of OpenSSL versions in the README
11462 - BUG/MINOR: http: Set the response error state in http_sync_res_state
11463 - MINOR: http: Reorder/rewrite checks in http_resync_states
11464 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
11465 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
11466 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
11467 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
11468 - BUG/MINOR: contrib/modsecurity: BSD build fix
11469 - BUG/MINOR: contrib/mod_defender: build fix
11470 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
11471 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
11472 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
11473 - MINOR: tools: add a portable timegm() alternative
11474 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
11475 - DOC: Updated 51Degrees git URL to point to a stable version.
11476 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
11477 - MINOR: memory: remove macros
11478 - BUG/MINOR: lua: Fix Server.get_addr() port values
11479 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
11480 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
11481 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
11482 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
11483 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
11484 - MINOR: task: always preinitialize the task's timeout in task_init()
11485 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
11486 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
11487 - MINOR: lua: Add proxy as member of proxy object.
11488 - DOC: lua: Proxy class doc update
11489 - MINOR: lua: Add lists of frontends and backends
11490 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
11491 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
11492 - MINOR: ssl: add a new error codes for wrong server certificates
11493 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
11494 - MINOR: ssl: add "no-ca-names" parameter for bind
11495 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
11496 - DOC: fix alphabetical order of "show commands" in management.txt
11497 - MINOR: listener: add a function to return a listener's state as a string
11498 - MINOR: cli: add a new "show fd" command
11499 - BUG/MEDIUM: ssl: Fix regression about certificates generation
11500 - MINOR: Add server port field to server state file.
11501 - MINOR: ssl: allow to start without certificate if strict-sni is set
11502 - MINOR: dns: Cache previous DNS answers.
11503 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
11504 - Add a few functions to do unaligned access.
11505 - MINOR: dns: Handle SRV records.
11506 - MINOR: check: Fix checks when using SRV records.
11507 - MINOR: doc: Document SRV label usage.
11508 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
11509 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
11510 - BUILD/MINOR: build without openssl still broken
11511 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
11512 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
11513 - MINOR: init: Fix CPU affinity setting on FreeBSD.
11514 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
11515 - MINOR: dns: update record dname matching for SRV query types
11516 - MINOR: dns: update dns response buffer reading pointer due to SRV record
11517 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
11518 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
11519 - MINOR: dns: ability to use a SRV resolution for multiple backends
11520 - MINOR: dns: enable caching of responses for server set by a SRV record
11521 - MINOR: dns: new dns record type (RTYPE) for OPT
11522 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
11523 - MINOR: dns: default "hold obsolete" timeout set to 0
11524 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
11525 - MINOR: session: add a streams field to the session struct
11526 - MINOR: stream: link the stream to its session
11527 - MEDIUM: session: do not free a session until no stream references it
11528 - MINOR: ist: implement very simple indirect strings
11529 - TESTS: ist: add a test file for the functions
11530 - MINOR: http: export some of the HTTP parser macros
11531 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
11532 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
11533 - MINOR: dns: Maximum DNS udp payload set to 8192
11534 - MINOR: dns: automatic reduction of DNS accpeted payload size
11535 - MINOR: dns: make SRV record processing more verbose
11536 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
11537 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
11538 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
11539 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
11540 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
11541 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
11542 - MINOR: lua: properly process the contents of the content-length field
11543 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
11544 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
11545 - OPTIM: lua: don't add "Connection: close" on the response
11546 - REORG/MEDIUM: connection: introduce the notion of connection handle
11547 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
11548 - MEDIUM: connection: get rid of data->init() which was not for data
11549 - MEDIUM: stream: make stream_new() allocate its own task
11550 - CLEANUP: listener: remove the unused handler field
11551 - MEDIUM: session: add a pointer to a struct task in the session
11552 - MINOR: stream: provide a new stream creation function for connections
11553 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
11554 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
11555 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
11556 - DOC: add CLI info on privilege levels
11557 - DOC: Refer to Mozilla TLS info / config generator
11558 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
11559 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
11560 - DOC: Add note about "* " prefix in CSV stats
11561 - CLEANUP: memory: Remove unused function pool_destroy
11562 - MINOR: listeners: Change listener_full and limit_listener into private functions
11563 - MINOR: listeners: Change enable_listener and disable_listener into private functions
11564 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
11565 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
11566 - MINOR: backends: Make get_server_* functions explicitly static
11567 - MINOR: applet: Check applets_active_queue before processing applets queue
11568 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
11569 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
11570 - MINOR: logs: Use dedicated function to init/deinit log buffers
11571 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
11572 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
11573 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
11574 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
11575 - MINOR: fd: Add fd_active function
11576 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
11577 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
11578 - MINOR: freq_ctr: Return the new value after an update
11579 - MEDIUM: check: server states and weight propagation re-work
11580 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
11581 - MINOR: fd: Add fd_update_events function
11582 - MINOR: polling: Use fd_update_events to update events seen for a fd
11583 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
11584 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
11585 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
11586 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
11587 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
11588 - MINOR: xref: Add a new xref system
11589 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
11590 - MINOR: tasks: Move Lua notification from Lua to tasks
11591 - MINOR: net_helper: Inline functions meant to be inlined.
11592 - MINOR: cli: add socket commands and config to prepend informational messages with severity
11593 - MINOR: add severity information to cli feedback messages
11594 - BUILD: Makefile: add a function to detect support by the compiler of certain options
11595 - BUILD: Makefile: shut certain gcc/clang stupid warnings
11596 - BUILD: Makefile: improve detection of support for compiler warnings
11597 - MINOR: peers: don't reference the incoming listener on outgoing connections
11598 - MINOR: frontend: don't retrieve ALPN on the critical path
11599 - MINOR: protocols: always pass a "port" argument to the listener creation
11600 - MINOR: protocols: register the ->add function and stop calling them directly
11601 - MINOR: unix: remove the now unused proto_uxst.h file
11602 - MINOR: listeners: new function create_listeners
11603 - MINOR: listeners: make listeners count consistent with reality
11604 - MEDIUM: session: take care of incrementing/decrementing jobs
11605 - MINOR: listener: new function listener_release
11606 - MINOR: session: small cleanup of conn_complete_session()
11607 - MEDIUM: session: factor out duplicated code for conn_complete_session
11608 - MEDIUM: session: count the frontend's connections at a single place
11609 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
11610 - BUG/MINOR: compression: Check response headers before http-response rules eval
11611 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
11612 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
11613 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
11614 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
11615 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
11616 - MINOR: tools: make my_htonll() more efficient on x86_64
11617 - MINOR: buffer: add b_del() to delete a number of characters
11618 - MINOR: buffer: add b_end() and b_to_end()
11619 - MINOR: net_helper: add functions to read from vectors
11620 - MINOR: net_helper: add write functions
11621 - MINOR: net_helper: add 64-bit read/write functions
11622 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
11623 - MINOR: ist: add a macro to ease const array initialization
11624 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
11625 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
11626 - BUG/MINOR: log: fixing small memory leak in error code path.
11627 - BUG/MINOR: contrib/halog: fixing small memory leak
11628 - BUG/MEDIUM: tcp/http: set-dst-port action broken
11629 - CLEANUUP: checks: don't set conn->handle.fd to -1
11630 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
11631 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
11632 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
11633 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
11634 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
11635 - CLEANUP: checks: remove misleading comments and statuses for external process
11636 - CLEANUP: checks: don't report report the fork() error twice
11637 - CLEANUP: checks: do not allocate a connection for process checks
11638 - TESTS: checks: add a simple test config for external checks
11639 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
11640 - TESTS: checks: add a simple test config for tcp-checks
11641 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
11642 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
11643 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
11644 - MEDIUM: checks: do not allocate a permanent connection anymore
11645 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
11646 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
11647 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
11648 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
11649 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
11650 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
11651 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
11652 - MINOR: session: remove the list of streams from struct session
11653 - DOC: fix some typos
11654 - MINOR: server: add the srv_queue() sample fetch method
11655 - MINOR: payload: add new sample fetch functions to process distcc protocol
11656 - MAJOR: servers: propagate server status changes asynchronously.
11657 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
11658 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
11659 - MINOR: server: Handle weight increase in consistent hash.
11660 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
11661 - BUG/MINOR: tools: fix my_htonll() on x86_64
11662 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
11663 - BUG/MAJOR: lua: scheduled task is freezing.
11664 - MINOR: buffer: add bo_del() to delete a number of characters from output
11665 - MINOR: buffer: add a function to match against string patterns
11666 - MINOR: buffer: add two functions to inject data into buffers
11667 - MINOR: buffer: add buffer_space_wraps()
11668 - REORG: channel: finally rename the last bi_* / bo_* functions
11669 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
11670 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
11671 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
11672 - MINOR: ist: add ist0() to add a trailing zero to a string.
11673 - BUG/MEDIUM: log: check result details truncated.
11674 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
11675 - REORG: http: move some very http1-specific parts to h1.{c,h}
11676 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
11677 - REORG: http: move the HTTP/1 header block parser to h1.c
11678 - MEDIUM: http: make the chunk size parser only depend on the buffer
11679 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
11680 - MINOR: h1: add struct h1m for basic HTTP/1 messages
11681 - MINOR: http: add very simple header management based on double strings
11682 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
11683 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
11684 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
11685 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
11686 - MINOR: connection: add conn_stop_tracking() to disable tracking
11687 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
11688 - MINOR: unix: use conn_full_close() instead of conn_force_close()
11689 - MINOR: checks: use conn_full_close() instead of conn_force_close()
11690 - MINOR: session: use conn_full_close() instead of conn_force_close()
11691 - MINOR: stream: use conn_full_close() instead of conn_force_close()
11692 - MINOR: stream: use conn_full_close() instead of conn_force_close()
11693 - MINOR: backend: use conn_full_close() instead of conn_force_close()
11694 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
11695 - MINOR: connection: remove conn_force_close()
11696 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
11697
Willy Tarreauf57a29a2017-06-02 15:59:51 +0200116982017/06/02 : 1.8-dev2
11699 - CLEANUP: server: moving netinet/tcp.h inclusion
11700 - DOC: changed "block"(deprecated) examples to http-request deny
11701 - DOC: add few comments to examples.
11702 - DOC: update sample code for PROXY protocol
11703 - DOC: mention lighttpd 1.4.46 implements PROXY
11704 - MINOR server: Restrict dynamic cookie check to the same proxy.
11705 - DOC: stick-table is available in frontend sections
11706 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
11707 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
11708 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
11709 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
11710 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
11711 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
11712 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
11713 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
11714 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
11715 - BUG/MEDIUM: servers: unbreak server weight propagation
11716 - MINOR: lua: ensure the memory allocator is used all the time
11717 - MINOR: cli: Add a command to send listening sockets.
11718 - MINOR: global: Add an option to get the old listening sockets.
11719 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
11720 - MINOR: doc: document the -x flag
11721 - MINOR: proxy: Don't close FDs if not our proxy.
11722 - MINOR: socket transfer: Set a timeout on the socket.
11723 - MINOR: systemd wrapper: add support for passing the -x option.
11724 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
11725 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
11726 - CLEANUP: logs: typo: simgle => single
11727 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
11728 - MEDIUM: config: don't check config validity when there are fatal errors
11729 - BUG/MAJOR: Use -fwrapv.
11730 - BUG/MINOR: server: don't use "proxy" when px is really meant.
11731 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
11732 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
11733 - MINOR: server: Extract the code responsible of copying default-server settings.
11734 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
11735 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
11736 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
11737 - DOC: Add documentation for new "server-template" keyword.
11738 - DOC: add layer 4 links/cross reference to "block" keyword.
11739 - DOC: errloc/errorloc302/errorloc303 missing status codes.
11740 - BUG/MEDIUM: lua: memory leak
11741 - CLEANUP: lua: remove test
11742 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
11743 - BUG/MINOR: change header-declared function to static inline
11744 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
11745 - MINOR: Add binary encoding request header sample fetch
11746 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
11747 - MINOR: Add ModSecurity wrapper as contrib
11748 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
11749 - DOC: update RFC references
11750 - CONTRIB: tcploop: add action "X" to execute a command
11751 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
11752 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
11753 - BUG/MINOR: checks: don't send proxy protocol with agent checks
11754 - MINOR: ssl: add prefer-client-ciphers
11755 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
11756 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
11757 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
11758 - MINOR: ssl: support TLSv1.3 for bind and server
11759 - MINOR: ssl: show methods supported by openssl
11760 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
11761 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
11762 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
11763 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
11764 - MINOR: sample: Add b64dec sample converter
11765 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
11766 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
11767 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
11768 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
11769 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
11770 - MAJOR: ssl: add openssl async mode support
11771 - MEDIUM: ssl: handle multiple async engines
11772 - MINOR: boringssl: basic support for OCSP Stapling
11773 - MEDIUM: mworker: replace systemd mode by master worker mode
11774 - MEDIUM: mworker: handle reload and signals
11775 - MEDIUM: mworker: wait mode on reload failure
11776 - MEDIUM: mworker: try to guess the next stats socket to use with -x
11777 - MEDIUM: mworker: exit-on-failure option
11778 - MEDIUM: mworker: workers exit when the master leaves
11779 - DOC: add documentation for the master-worker mode
11780 - MEDIUM: systemd: Type=forking in unit file
11781 - MAJOR: systemd-wrapper: get rid of the wrapper
11782 - MINOR: log: Add logurilen tunable.
11783 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
11784 - MINOR: dns: smallest DNS fqdn size
11785 - MINOR: dns: functions to manage memory for a DNS resolution structure
11786 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
11787 - REORG: dns: dns_option structure, storage of hostname_dn
11788 - MINOR: dns: new snr_check_ip_callback function
11789 - MAJOR: dns: save a copy of the DNS response in struct resolution
11790 - MINOR: dns: implement a LRU cache for DNS resolutions
11791 - MINOR: dns: make 'ancount' field to match the number of saved records
11792 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
11793 - MAJOR/REORG: dns: DNS resolution task and requester queues
11794 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
11795 - MINOR: Add Mod Defender integration as contrib
11796 - CLEANUP: str2mask return code comment: non-zero -> zero.
11797 - MINOR: tools: make debug_hexdump() use a const char for the string
11798 - MINOR: tools: make debug_hexdump() take a string prefix
11799 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
11800
Willy Tarreau7b677262017-04-03 09:27:49 +0200118012017/04/03 : 1.8-dev1
11802 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
11803 - BUG/MINOR: stats: make field_str() return an empty string on NULL
11804 - DOC: Spelling fixes
11805 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
11806 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
11807 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
11808 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
11809 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
11810 - BUG/MAJOR: stream: fix session abort on resource shortage
11811 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
11812 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
11813 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
11814 - DOC: Fix map table's format
11815 - DOC: Added 51Degrees conv and fetch functions to documentation.
11816 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
11817 - DOC: mention that req_tot is for both frontends and backends
11818 - BUG/MEDIUM: variables: some variable name can hide another ones
11819 - MINOR: lua: Allow argument for actions
11820 - BUILD: rearrange target files by build time
11821 - CLEANUP: hlua: just indent functions
11822 - MINOR: lua: give HAProxy variable access to the applets
11823 - BUG/MINOR: stats: fix be/sessions/max output in html stats
11824 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
11825 - DOC: lua: Documentation about some entry missing
11826 - DOC: lua: Add documentation about variable manipulation from applet
11827 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
11828 - DOC: Add undocumented argument of the trace filter
11829 - DOC: Fix some typo in SPOE documentation
11830 - MINOR: cli: Remove useless call to bi_putchk
11831 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
11832 - MINOR: applet: Count number of (active) applets
11833 - MINOR: task: Rename run_queue and run_queue_cur counters
11834 - BUG/MEDIUM: stream: Save unprocessed events for a stream
11835 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
11836 - BUILD/MEDIUM: Fixing the build using LibreSSL
11837 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
11838 - SCRIPTS: git-show-backports: fix a harmless typo
11839 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
11840 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
11841 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
11842 - CLEANUP: applet/table: add an "action" entry in ->table context
11843 - CLEANUP: applet: remove the now unused appctx->private field
11844 - DOC: lua: documentation about time parser functions
11845 - DOC: lua: improve links
11846 - DOC: lua: section declared twice
11847 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
11848 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
11849 - BUG/MINOR: cli: "show cli sockets" would always report process 64
11850 - CLEANUP: lua: rename one of the lua appctx union
11851 - BUG/MINOR: lua/cli: bad error message
11852 - MEDIUM: lua: use memory pool for hlua struct in applets
11853 - MINOR: lua/signals: Remove Lua part from signals.
11854 - DOC: cli: show cli sockets
11855 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
11856 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
11857 - CLEANUP: applet: group all CLI contexts together
11858 - CLEANUP: stats: move a misplaced stats context initialization
11859 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
11860 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
11861 - MINOR: appctx/cli: remove the env entry from the appctx union
11862 - MINOR: appctx/cli: remove the "be" entry from the appctx union
11863 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
11864 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
11865 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
11866 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
11867 - MINOR/DOC: lua: just precise one thing
11868 - DOC: fix small typo in fe_id (backend instead of frontend)
11869 - BUG/MINOR: Fix the sending function in Lua's cosocket
11870 - BUG/MINOR: lua: memory leak executing tasks
11871 - BUG/MINOR: lua: bad return code
11872 - BUG/MINOR: lua: memleak when Lua/cli fails
11873 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
11874 - CLEANUP: haproxy: statify unexported functions
11875 - MINOR: haproxy: add a registration for build options
11876 - CLEANUP: wurfl: use the build options list to report it
11877 - CLEANUP: 51d: use the build options list to report it
11878 - CLEANUP: da: use the build options list to report it
11879 - CLEANUP: namespaces: use the build options list to report it
11880 - CLEANUP: tcp: use the build options list to report transparent modes
11881 - CLEANUP: lua: use the build options list to report it
11882 - CLEANUP: regex: use the build options list to report the regex type
11883 - CLEANUP: ssl: use the build options list to report the SSL details
11884 - CLEANUP: compression: use the build options list to report the algos
11885 - CLEANUP: auth: use the build options list to report its support
11886 - MINOR: haproxy: add a registration for post-check functions
11887 - CLEANUP: checks: make use of the post-init registration to start checks
11888 - CLEANUP: filters: use the function registration to initialize all proxies
11889 - CLEANUP: wurfl: make use of the late init registration
11890 - CLEANUP: 51d: make use of the late init registration
11891 - CLEANUP: da: make use of the late init registration code
11892 - MINOR: haproxy: add a registration for post-deinit functions
11893 - CLEANUP: wurfl: register the deinit function via the dedicated list
11894 - CLEANUP: 51d: register the deinitialization function
11895 - CLEANUP: da: register the deinitialization function
11896 - CLEANUP: wurfl: move global settings out of the global section
11897 - CLEANUP: 51d: move global settings out of the global section
11898 - CLEANUP: da: move global settings out of the global section
11899 - MINOR: cfgparse: add two new functions to check arguments count
11900 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
11901 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
11902 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
11903 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
11904 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
11905 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
11906 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
11907 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
11908 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
11909 - MINOR: tcp-rules: check that the listener exists before updating its counters
11910 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
11911 - MINOR: listener: move the transport layer pointer to the bind_conf
11912 - MEDIUM: move listener->frontend to bind_conf->frontend
11913 - MEDIUM: ssl: remote the proxy argument from most functions
11914 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
11915 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
11916 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
11917 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
11918 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
11919 - MINOR: connection: add a minimal transport layer registration system
11920 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
11921 - CLEANUP: connection: unexport raw_sock and ssl_sock
11922 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
11923 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
11924 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
11925 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
11926 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
11927 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
11928 - BUG/MINOR: systemd: potential zombie processes
11929 - DOC: Add timings events schemas
11930 - BUILD: lua: build failed on FreeBSD.
11931 - MINOR: samples: add xx-hash functions
11932 - MEDIUM: regex: pcre2 support
11933 - BUG/MINOR: option prefer-last-server must be ignored in some case
11934 - MINOR: stats: Support "select all" for backend actions
11935 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
11936 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
11937 - BUG/MINOR: http: report real parser state in error captures
11938 - BUILD: scripts: automatically update the branch in version.h when releasing
11939 - MINOR: tools: add a generic hexdump function for debugging
11940 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
11941 - MINOR: http: custom status reason.
11942 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
11943 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
11944 - BUG/MINOR: tools: fix off-by-one in port size check
11945 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
11946 - MEDIUM: server: split the address and the port into two different fields
11947 - MINOR: tools: make str2sa_range() return the port in a separate argument
11948 - MINOR: server: take the destination port from the port field, not the addr
11949 - MEDIUM: server: disable protocol validations when the server doesn't resolve
11950 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
11951 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
11952 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
11953 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
11954 - MINOR: proto_http.c 502 error txt typo.
11955 - DOC: add deprecation notice to "block"
11956 - MINOR: compression: fix -vv output without zlib/slz
11957 - BUG/MINOR: Reset errno variable before calling strtol(3)
11958 - MINOR: ssl: don't show prefer-server-ciphers output
11959 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
11960 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
11961 - MAJOR: ssl: bind configuration per certificat
11962 - MINOR: ssl: add curve suite for ECDHE negotiation
11963 - MINOR: checks: Add agent-addr config directive
11964 - MINOR: cli: Add possiblity to change agent config via CLI/socket
11965 - MINOR: doc: Add docs for agent-addr configuration variable
11966 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
11967 - BUILD: ssl: fix to build (again) with boringssl
11968 - BUILD: ssl: fix build on OpenSSL 1.0.0
11969 - BUILD: ssl: silence a warning reported for ERR_remove_state()
11970 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
11971 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
11972 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
11973 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
11974 - MINOR: server: extend the flags to 32 bits
11975 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
11976 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
11977 - BUG/MAJOR: dns: restart sockets after fork()
11978 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
11979 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
11980 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
11981 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
11982 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
11983 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
11984 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
11985 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
11986 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
11987 - MINOR: http: don't close when redirect location doesn't start with "/"
11988 - MEDIUM: boringssl: support native multi-cert selection without bundling
11989 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
11990 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
11991 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
11992 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
11993 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
11994 - MEDIUM: ssl: remove ssl-options from crt-list
11995 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
11996 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
11997 - MINOR: ssl: improved cipherlist captures
11998 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
11999 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
12000 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
12001 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
12002 - MINOR: spoe: Remove SPOE details from the appctx structure
12003 - MINOR: spoe: Add status code in error variable instead of hardcoded value
12004 - MINOR: spoe: Send a log message when an error occurred during event processing
12005 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
12006 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
12007 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
12008 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
12009 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
12010 - MAJOR: spoe: refactor the filter to clean up the code
12011 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
12012 - REORG: spoe: Move struct and enum definitions in dedicated header file
12013 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
12014 - MINOR: spoe: Improve implementation of the payload fragmentation
12015 - MINOR: spoe: Add support of negation for options in SPOE configuration file
12016 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
12017 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
12018 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
12019 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
12020 - DOC: spoe: Update SPOE documentation to reflect recent changes
12021 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
12022 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
12023 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
12024 - BUG/MINOR: Fix "get map <map> <value>" CLI command
12025 - MINOR: Add nbsrv sample converter
12026 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
12027 - MINOR: Add hostname sample fetch
12028 - CLEANUP: Remove comment that's no longer valid
12029 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
12030 - MINOR: http-request tarpit deny_status.
12031 - CLEANUP: http: make http_server_error() not set the status anymore
12032 - MEDIUM: stats: Add JSON output option to show (info|stat)
12033 - MEDIUM: stats: Add show json schema
12034 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
12035 - MINOR: server: Add dynamic session cookies.
12036 - MINOR: cli: Let configure the dynamic cookies from the cli.
12037 - BUG/MINOR: checks: attempt clean shutw for SSL check
12038 - CONTRIB: tcploop: make it build on FreeBSD
12039 - CONTRIB: tcploop: fix time format to silence build warnings
12040 - CONTRIB: tcploop: report action 'K' (kill) in usage message
12041 - CONTRIB: tcploop: fix connect's address length
12042 - CONTRIB: tcploop: use the trash instead of NULL for recv()
12043 - BUG/MEDIUM: listener: do not try to rebind another process' socket
12044 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
12045 - CLEANUP: config: Typo in comment.
12046 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
12047 - TESTS: add a test configuration to stress handshake combinations
12048 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
12049 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
12050 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
12051 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
12052 - BUG: payload: fix payload not retrieving arbitrary lengths
12053 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
12054 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
12055 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
12056 - MINOR: doc: 2.4. Examples should be 2.5. Examples
12057 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
12058 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
12059 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
12060 - OPTIM: poll: enable support for POLLRDHUP
12061 - MINOR: kqueue: exclusively rely on the kqueue returned status
12062 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
12063 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
12064 - DOC/MINOR: Fix typos in proxy protocol doc
12065 - DOC: Protocol doc: add checksum, TLV type ranges
12066 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
12067 - DOC: Protocol doc: add noop TLV
12068 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
12069 - MINOR: dns: improve DNS response parsing to use as many available records as possible
12070 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
12071 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
12072 - MINOR: server: Make 'default-server' support 'backup' keyword.
12073 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
12074 - CLEANUP: server: code alignement.
12075 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
12076 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
12077 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
12078 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
12079 - CLEANUP: server: code alignement.
12080 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
12081 - MINOR: server: Make 'default-server' support 'ssl' keyword.
12082 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
12083 - CLEANUP: server: code alignement.
12084 - MINOR: server: Make 'default-server' support 'verify' keyword.
12085 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
12086 - MINOR: server: Make 'default-server' support 'check' keyword.
12087 - MINOR: server: Make 'default-server' support 'track' setting.
12088 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
12089 - MINOR: server: Make 'default-server' support 'redir' keyword.
12090 - MINOR: server: Make 'default-server' support 'observe' keyword.
12091 - MINOR: server: Make 'default-server' support 'cookie' keyword.
12092 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
12093 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
12094 - MINOR: server: Make 'default-server' support 'namespace' keyword.
12095 - MINOR: server: Make 'default-server' support 'source' keyword.
12096 - MINOR: server: Make 'default-server' support 'sni' keyword.
12097 - MINOR: server: Make 'default-server' support 'addr' keyword.
12098 - MINOR: server: Make 'default-server' support 'disabled' keyword.
12099 - MINOR: server: Add 'no-agent-check' server keyword.
12100 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
12101 - MINOR: doc: fix use-server example (imap vs mail)
12102 - BUG/MEDIUM: tcp: don't require privileges to bind to device
12103 - BUILD: make the release script use shortlog for the final changelog
12104 - BUILD: scripts: fix typo in announce-release error message
12105 - CLEANUP: time: curr_sec_ms doesn't need to be exported
12106 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
12107 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
12108 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
12109 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
12110 - CLEANUP: http: Remove channel_congested function
12111 - CLEANUP: buffers: Remove buffer_bounce_realign function
12112 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
12113 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
12114 - MINOR: http: Add debug messages when HTTP body analyzers are called
12115 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
12116 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
12117 - DOC: fix parenthesis and add missing "Example" tags
12118 - DOC: update the contributing file
12119 - DOC: log-format/tcplog/httplog update
12120 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
12121
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100121222016/11/25 : 1.8-dev0
12123
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100121242016/11/25 : 1.7.0
12125 - SCRIPTS: make publish-release also copy the new SPOE doc
12126 - BUILD: http: include types/sample.h in proto_http.h
12127 - BUILD: debug/flags: remove test for SF_COMP_READY
12128 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
12129 - MINOR: lua: add function which return true if the channel is full.
12130 - MINOR: lua: add ip addresses and network manipulation function
12131 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
12132 - CONTRIB: tcploop: implement fork()
12133 - CONTRIB: tcploop: implement logging when called with -v
12134 - CONTRIB: tcploop: update the usage output
12135 - CONTRIB: tcploop: support sending plain strings
12136 - CONTRIB: tcploop: don't report failed send() or recv()
12137 - CONTRIB: tcploop: add basic loops via a jump instruction
12138 - BUG/MEDIUM: channel: bad unlikely macro
12139 - CLEANUP: lua: move comment
12140 - CLEANUP: lua: control executed twice
12141 - BUG/MEDIUM: ssl: Store certificate filename in a variable
12142 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
12143 - CLEANUP: ssl: Remove goto after return dead code
12144 - CLEANUP: ssl: Fix bind keywords name in comments
12145 - DOC: ssl: Use correct wording for ca-sign-pass
12146 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
12147 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
12148 - MINOR: cli: add private pointer and release function
12149 - MEDIUM: lua: Add cli handler for Lua
12150 - BUG/MEDIUM: connection: check the control layer before stopping polling
12151 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
12152 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
12153 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
12154 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
12155 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
12156 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
12157 - MINOR: spoe: Remove useless 'timeout ack' option
12158 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
12159 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
12160 - MINOR: spoe: Add "option set-on-error" statement
12161 - MINOR: stats: correct documentation of process ID for typed output
12162 - BUILD: contrib: fix ip6range build on Centos 7
12163 - BUILD: fix build on Solaris 10/11
12164 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
12165 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
12166 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
12167 - MINOR: connection: add a few functions to report the data and xprt layers' names
12168 - MINOR: connection: add names for transport and data layers
12169 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
12170 - REORG: cli: split dumpstats.h in stats.h and cli.h
12171 - REORG: cli: move ssl CLI functions to ssl_sock.c
12172 - REORG: cli: move map and acl code to map.c
12173 - REORG: cli: move show stat resolvers to dns.c
12174 - MINOR: cli: create new function cli_has_level() to validate permissions
12175 - MINOR: server: create new function cli_find_server() to find a server
12176 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
12177 - REORG: cli: move 'set server' to server.c
12178 - REORG: cli: move 'show pools' to memory.c
12179 - REORG: cli: move 'show servers' to proxy.c
12180 - REORG: cli: move 'show sess' to stream.c
12181 - REORG: cli: move 'show backend' to proxy.c
12182 - REORG: cli: move get/set weight to server.c
12183 - REORG: cli: move "show stat" to stats.c
12184 - REORG: cli: move "show info" to stats.c
12185 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
12186 - REORG: cli: move table dump/clear/set to stick_table.c
12187 - REORG: cli: move "show errors" out of cli.c
12188 - REORG: cli: make "show env" also use the generic keyword registration
12189 - REORG: cli: move "set timeout" to its own handler
12190 - REORG: cli: move "clear counters" to stats.c
12191 - REORG: cli: move "set maxconn global" to its own handler
12192 - REORG: cli: move "set maxconn server" to server.c
12193 - REORG: cli: move "set maxconn frontend" to proxy.c
12194 - REORG: cli: move "shutdown sessions server" to stream.c
12195 - REORG: cli: move "shutdown session" to stream.c
12196 - REORG: cli: move "shutdown frontend" to proxy.c
12197 - REORG: cli: move "{enable|disable} frontend" to proxy.c
12198 - REORG: cli: move "{enable|disable} server" to server.c
12199 - REORG: cli: move "{enable|disable} health" to server.c
12200 - REORG: cli: move "{enable|disable} agent" to server.c
12201 - REORG: cli: move the "set rate-limit" functions to their own parser
12202 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
12203 - CLEANUP: cli: simplify the request parser a little bit
12204 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
12205 - BUILD: server: remove a build warning introduced by latest series
12206 - BUG/MINOR: log-format: uncatched memory allocation functions
12207 - CLEANUP: log-format: useless file and line in json converter
12208 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
12209 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
12210 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
12211 - CLEANUP: log-format: remove unused arguments
12212 - MEDIUM: log-format: strict parsing and enable fail
12213 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
12214 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
12215 - BUILD: vars: remove a build warning on vars.c
12216 - MINOR: lua: add utility function for check boolean argument
12217 - MINOR: lua: Add tokenize function.
12218 - BUG/MINOR: conf: calloc untested
12219 - MINOR: http/conf: store the use_backend configuration file and line for logs
12220 - MEDIUM: log-format: Use standard HAProxy log system to report errors
12221 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
12222 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
12223 - MINOR: cli: make "show stat" support a proxy name
12224 - MINOR: cli: make "show errors" support a proxy name
12225 - MINOR: cli: make "show errors" capable of dumping only request or response
12226 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
12227 - CLEANUP: counters: move from 3 types to 2 types
12228 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
12229 - REORG: tcp-rules: move tcp rules processing to their own file
12230 - REORG: stkctr: move all the stick counters processing to stick-tables.c
12231 - DOC: update the roadmap file with the latest changes
12232
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100122332016/11/09 : 1.7-dev6
12234 - DOC: fix the entry for hash-balance-factor config option
12235 - DOC: Fix typo in description of `-st` parameter in man page
12236 - CLEANUP: cfgparse: Very minor spelling correction
12237 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
12238 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
12239 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
12240 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
12241 - MINOR: peers: remove the pointer to the stream
12242 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
12243 - DOC: stats: provide state details for show servers state
12244 - MEDIUM: tools: make str2ip2() preserve existing ports
12245 - CLEANUP: tools: make ipcpy() preserve the original port
12246 - OPTIM: http: move all http character classs tables into a single one
12247 - OPTIM: http: improve parsing performance of long header lines
12248 - OPTIM: http: improve parsing performance of long URIs
12249 - OPTIM: http: optimize lookup of comma and quote in header values
12250 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
12251 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
12252 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
12253 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
12254 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
12255 - DOC: move the device detection modules documentation to their own files
12256 - CLEANUP: wurfl: reduce exposure in the rest of the code
12257 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
12258 - MINOR: stream: make option contstats usable again
12259 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
12260 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
12261 - MAJOR: server: postpone address resolution
12262 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
12263 - MINOR: server: indicate in the logs when RMAINT is cleared
12264 - MINOR: stats: indicate it when a server is down due to resolution
12265 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
12266 - MINOR: dns: implement extra 'hold' timers.
12267 - MAJOR: dns: runtime resolution can change server admin state
12268 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
12269 - MEDIUM: server: add a new init-addr server line setting
12270 - MEDIUM: server: make use of init-addr
12271 - MINOR: server: implement init-addr none
12272 - MEDIUM: server: make libc resolution failure non-fatal
12273 - MINOR: server: add support for explicit numeric address in init-addr
12274 - DOC: add some documentation for the "init-addr" server keyword
12275 - MINOR: init: add -dr to ignore server address resolution failures
12276 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
12277 - BUG: vars: Fix 'set-var' converter because of a typo
12278 - CLEANUP: remove last references to 'ruleset' section
12279 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
12280 - MINOR: filters: Update filters documentation accordingly to recent changes
12281 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
12282 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
12283 - MINOR: flt_trace: Add hexdump option to dump forwarded data
12284 - MINOR: cfgparse: Add functions to backup and restore registered sections
12285 - MINOR: cfgparse: Parse scope lines and save the last one parsed
12286 - REORG: sample: move code to release a sample expression in sample.c
12287 - MINOR: vars: Allow '.' in variable names
12288 - MINOR: vars: Add vars_set_by_name_ifexist function
12289 - MEDIUM: vars: Add a per-process scope for variables
12290 - MINOR: vars: Add 'unset-var' action/converter
12291 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
12292 - MINOR: spoe: add random ip-reputation service as SPOA example
12293 - MINOR: spoe/checks: Add support for SPOP health checks
12294 - DOC: update ROADMAP file
12295
Willy Tarreau608efa12016-10-25 22:22:00 +0200122962016/10/25 : 1.7-dev5
12297 - MINOR: cfgparse: few memory leaks fixes.
12298 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
12299 - CLEANUP: logs: remove unused log format field definitions
12300 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
12301 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
12302 - CLEANUP: proto_http: Removing useless variable assignation
12303 - CLEANUP: dumpstats: Removing useless variables allocation
12304 - CLEANUP: dns: Removing usless variable & assignation
12305 - BUG/MINOR: payload: fix SSLv2 version parser
12306 - MINOR: cli: allow the semi-colon to be escaped on the CLI
12307 - MINOR: cli: change a server health check port through the stats socket
12308 - BUG/MINOR: Fix OSX compilation errors
12309 - MAJOR: check: find out which port to use for health check at run time
12310 - MINOR: server: introduction of 3 new server flags
12311 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
12312 - MINOR: cli: ability to change a server's port
12313 - CLEANUP/MINOR dns: comment do not follow up code update
12314 - MINOR: chunk: new strncat function
12315 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
12316 - MINOR: dns: new MAX values
12317 - MINOR: dns: new macro to compute DNS header size
12318 - MINOR: dns: new DNS structures to store received packets
12319 - MEDIUM: dns: new DNS response parser
12320 - MINOR: dns: query type change when last record is a CNAME
12321 - MINOR: dns: proper domain name validation when receiving DNS response
12322 - MINOR: dns: comments in types/dns.h about structures endianness
12323 - BUG/MINOR: displayed PCRE version is running release
12324 - MINOR: show Built with PCRE version
12325 - MINOR: show Running on zlib version
12326 - MEDIUM: make SO_REUSEPORT configurable
12327 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
12328 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
12329 - BUG/MINOR: stats: report the correct conn_time in backend's html output
12330 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
12331 - MINOR: Add fe_req_rate sample fetch
12332 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
12333 - MEDIUM: cli: register CLI keywords with cli_register_kw()
12334 - BUILD: Make use of accept4() on OpenBSD.
12335 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
12336 - DOC: fix missed entry for "set-{src,dst}{,-port}"
12337 - BUG/MINOR: vars: use sess and not s->sess in action_store()
12338 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
12339 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
12340 - MINOR: stats: output dcon
12341 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
12342 - MINOR: counters: add new fields for denied_sess
12343 - MEDIUM: tcp: add registration and processing of TCP L5 rules
12344 - MINOR: stats: emit dses
12345 - DOC: document tcp-request session
12346 - MINOR: ssl: add debug traces
12347 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
12348 - BUG/MINOR: ssl: Check malloc return code
12349 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
12350 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
12351 - BUG/MINOR: systemd: always restore signals before execve()
12352 - BUG/MINOR: systemd: check return value of calloc()
12353 - MINOR: systemd: report it when execve() fails
12354 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
12355 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
12356 - MINOR: backend: add hash-balance-factor option for hash-type consistent
12357 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
12358 - MEDIUM: server: Implement bounded-load hash algorithm
12359 - SCRIPTS: make git-show-backports also dump a "git show" command
12360 - MINOR: build: Allow linking to device-atlas library file
12361 - MINOR: stats: Escape equals sign on socket dump
12362
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200123632016/08/14 : 1.7-dev4
12364 - MINOR: add list_append_word function
12365 - MEDIUM: init: use list_append_word in haproxy.c
12366 - MEDIUM: init: allow directory as argument of -f
12367 - CLEANUP: config: detect double registration of a config section
12368 - MINOR: log: add the %Td log-format specifier
12369 - MEDIUM: filters: Move HTTP headers filtering in its own callback
12370 - MINOR: filters: Simplify calls to analyzers using 2 new macros
12371 - MEDIUM: filters: Add pre and post analyzer callbacks
12372 - DOC: filters: Update the filters documentation accordingly to recent changes
12373 - BUG/MEDIUM: init: don't use environment locale
12374 - SCRIPTS: teach git-show-backports how to report upstream commits
12375 - SCRIPTS: make git-show-backports capable of limiting its history
12376 - BUG/MAJOR: fix listening IP address storage for frontends
12377 - BUG/MINOR: fix listening IP address storage for frontends (cont)
12378 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
12379 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
12380 - BUG/MEDIUM: stick-tables: fix breakage in table converters
12381 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
12382 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
12383 - BUILD: fix build on Solaris 11
12384 - BUG/MEDIUM: config: fix multiple declaration of section parsers
12385 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
12386 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
12387 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
12388 - DOC: update doc about tls-tickets-keys dump
12389 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
12390 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
12391 - MEDIUM: tcp/http: add 'set-src-port' action
12392 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
12393 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
12394 - BUILD/MEDIUM: rebuild everything when an include file is changed
12395 - BUILD/MEDIUM: force a full rebuild if some build options change
12396 - BUG/MEDIUM: lua: converters doesn't work
12397 - BUG/MINOR: http: add-header: header name copied twice
12398 - BUG/MEDIUM: http: add-header: buffer overwritten
12399 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
12400 - MINOR: stream: export the function 'smp_create_src_stkctr'
12401 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
12402 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
12403 - BUG/MINOR: http: url32+src should use the big endian version of url32
12404 - BUG/MINOR: http: url32+src should check cli_conn before using it
12405 - DOC: http: add documentation for url32 and url32+src
12406 - BUG/MINOR: fix http-response set-log-level parsing error
12407 - MINOR: systemd: Use variable for config and pidfile paths
12408 - MINOR: systemd: Perform sanity check on config before reload
12409 - MEDIUM: ssl: support SNI filters with multicerts
12410 - MINOR: ssl: crt-list parsing factor
12411 - BUILD: ssl: fix typo causing a build failure in the multicert patch
12412 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
12413 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
12414 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
12415 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
12416 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
12417 - BUG/MAJOR: external-checks: use asynchronous signal delivery
12418 - BUG/MINOR: external-checks: do not unblock undesired signals
12419 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
12420 - BUG/MEDIUM: filters: Fix data filtering when data are modified
12421 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
12422 - BUG/MINOR: srv-state: fix incorrect output of state file
12423 - BUG/MINOR: ssl: close ssl key file on error
12424 - BUG/MINOR: http: fix misleading error message for response captures
12425 - BUG/BUILD: don't automatically run "make" on "make install"
12426 - DOC: add missing doc for http-request deny [deny_status <status>]
12427 - CLEANUP: dumpstats: u64 field is an unsigned type.
12428 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
12429 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
12430 - MINOR: new function my_realloc2 = realloc + free upon failure
12431 - CLEANUP: fixed some usages of realloc leading to memory leak
12432 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
12433 - CLEANUP: connection: using internal struct to hold source and dest port.
12434 - DOC: spelling fixes
12435 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
12436 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
12437 - BUG/MINOR: Fix endiness issue in DNS header creation code
12438 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
12439 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
12440 - MEDIUM: http: implement http-response track-sc* directive
12441 - BUG/MINOR: peers: Fix peers data decoding issue
12442 - BUG/MINOR: peers: don't count track-sc multiple times on errors
12443 - MINOR: standard: add function "escape_string"
12444 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
12445 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
12446 - DOC: lua: remove old functions
12447 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
12448 - DOC: fix json converter example and error message
12449 - BUG/MEDIUM: stream-int: completely detach connection on connect error
12450 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
12451 - BUILD: make proto_tcp.c compatible with musl library
12452 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
12453 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
12454 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
12455 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
12456 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
12457 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
12458 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
12459 - MINOR: sample: use smp_make_rw() in upper/lower converters
12460 - MINOR: tcp: add dst_is_local and src_is_local
12461 - BUG/MINOR: peers: some updates are pushed twice after a resync.
12462 - BUILD: protocol: fix some build errors on OpenBSD
12463 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
12464 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
12465 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
12466 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
12467 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
12468 - BUILD: compression: remove a warning when no compression lib is used
12469 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
12470 - MINOR: tcp: add further tcp info fetchers
12471 - BUG/MINOR: peers: empty chunks after a resync.
12472 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
12473 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
12474 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
12475 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
12476
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200124772016/05/10 : 1.7-dev3
12478 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
12479 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
12480 - BUILD: namespaces: fix a potential build warning in namespaces.c
12481 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
12482 - DOC: add encoding to json converter example
12483 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
12484 - DOC: Clarify tunes.vars.xxx-max-size settings
12485 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
12486 - CLEANUP: connection: fix double negation on memcmp()
12487 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
12488 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
12489 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
12490 - BUG/MINOR: lua: can't load external libraries
12491 - BUG/MINOR: prevent the dump of uninitialized vars
12492 - CLEANUP: map: it seems that the map were planed to be chained
12493 - MINOR: lua: move class registration facilities
12494 - MINOR: lua: remove some useless checks
12495 - CLEANUP: lua: Remove two same functions
12496 - MINOR: lua: refactor the Lua object registration
12497 - MINOR: lua: precise message when a critical error is catched
12498 - MINOR: lua: post initialization
12499 - MINOR: lua: Add internal function which strip spaces
12500 - MINOR: lua: convert field to lua type
12501 - DOC: "addr" parameter applies to both health and agent checks
12502 - DOC: timeout client: pointers to timeout http-request
12503 - DOC: typo on stick-store response
12504 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
12505 - DOC: typo: ACL subdir match
12506 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
12507 - DOC: regsub: parser limitation about the inability to use closing square brackets
12508 - DOC: typo: req.uri is now replaced by capture.req.uri
12509 - DOC: name set-gpt0 mismatch with the expected keyword
12510 - MINOR: http: sample fetch which returns unique-id
12511 - MINOR: dumpstats: extract stats fields enum and names
12512 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
12513 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
12514 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
12515 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
12516 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
12517 - MINOR: lua: dump general info
12518 - MINOR: lua: add class proxy
12519 - MINOR: lua: add class server
12520 - MINOR: lua: add class listener
12521 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
12522 - MEDIUM: proxy: use dynamic allocation for error dumps
12523 - CLEANUP: remove unneeded casts
12524 - CLEANUP: uniformize last argument of malloc/calloc
12525 - DOC: fix "needed" typo
12526 - BUG/MINOR: dumpstats: fix write to global chunk
12527 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
12528 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
12529 - CLEANUP: proto_http: few corrections for gcc warnings.
12530 - BUG/MINOR: DNS: resolution structure change
12531 - BUG/MINOR : allow to log cookie for tarpit and denied request
12532 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
12533 - OPTIM/MINOR: session: abort if possible before connecting to the backend
12534 - DOC: http: rename the unique-id sample and add the documentation
12535 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
12536 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
12537 - BUG/MINOR: server: risk of over reading the pref_net array.
12538 - BUG/MINOR: cfgparse: couple of small memory leaks.
12539 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
12540 - DOC: fix discrepancy in the example for http-request redirect
12541 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
12542 - CLEANUP: .gitignore cleanup
12543 - DOC: Clarify IPv4 address / mask notation rules
12544 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
12545 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
12546 - BUG/MINOR: listener: stop unbound listeners on startup
12547 - BUG/MINOR: fix maxaccept computation according to the frontend process range
12548 - TESTS: add blocksig.c to run tests with all signals blocked
12549 - MEDIUM: unblock signals on startup.
12550 - MINOR: filters: Print the list of existing filters during HA startup
12551 - MINOR: filters: Typo in an error message
12552 - MINOR: filters: Filters must define the callbacks struct during config parsing
12553 - DOC: filters: Add filters documentation
12554 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
12555 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
12556 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
12557 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
12558 - MINOR: Add ability for agent-check to set server maxconn
12559 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
12560 - MINOR: filters: add opaque data
12561 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
12562 - MINOR: lua: migrate the argument mask to 64 bits type.
12563 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
12564 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
12565 - BUG/MEDIUM: http: fix incorrect reporting of server errors
12566 - MINOR: channel: add new function channel_congested()
12567 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
12568 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
12569 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
12570 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
12571 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
12572 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
12573 - MINOR: stats: fix typo in help messages
12574 - MINOR: stats: show stat resolvers missing in the help message
12575 - BUG/MINOR: dns: fix DNS header definition
12576 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
12577 - CLEANUP: don't ignore scripts in .gitignore
12578 - BUILD: add a few release and backport scripts in scripts/
12579
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100125802016/03/14 : 1.7-dev2
12581 - DOC: lua: fix lua API
12582 - DOC: mailers: typo in 'hostname' description
12583 - DOC: compression: missing mention of libslz for compression algorithm
12584 - BUILD/MINOR: regex: missing header
12585 - BUG/MINOR: stream: bad return code
12586 - DOC: lua: fix somme errors and add implicit types
12587 - MINOR: lua: add set/get priv for applets
12588 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
12589 - BUG/MINOR: http: Be sure to process all the data received from a server
12590 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
12591 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
12592 - DOC: ssl: fixed some formatting errors in crt tag
12593 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
12594 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
12595 - MINOR: chunk: make chunk_initstr() take a const string
12596 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
12597 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
12598 - MINOR: lru: new function to delete <nb> least recently used keys
12599 - DOC: add Ben Shillito as the maintainer of 51d
12600 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
12601 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
12602 - BUG/MINOR: 51d: Releases workset back to pool.
12603 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
12604 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
12605 - MINOR: rename master process name in -Ds (systemd mode)
12606 - DOC: fix a few spelling mistakes
12607 - DOC: fix "workaround" spelling
12608 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
12609 - MINOR: fix the return type for dns_response_get_query_id() function
12610 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
12611 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
12612 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
12613 - BUG/MEDIUM: servers state: server port is used uninitialized
12614 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
12615 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
12616 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
12617 - MEDIUM: pools: add a new flag to avoid rounding pool size up
12618 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
12619 - BUG/MINOR: stream: don't force retries if the server is DOWN
12620 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
12621 - MINOR: unix: don't mention free ports on EAGAIN
12622 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
12623 - MINOR: stats: send content-length with the redirect to allow keep-alive
12624 - BUG: stream_interface: Reuse connection even if the output channel is empty
12625 - DOC: remove old tunnel mode assumptions
12626 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
12627 - BUG/MEDIUM: http-reuse: do not share private connections across backends
12628 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
12629 - BUG/MINOR: stats: fix missing comma in stats on agent drain
12630 - MAJOR: filters: Add filters support
12631 - MINOR: filters: Do not reset stream analyzers if the client is gone
12632 - REORG: filters: Prepare creation of the HTTP compression filter
12633 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
12634 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
12635 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
12636 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
12637 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
12638 - MINOR: filters: Add stream_filters structure to hide filters info
12639 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
12640 - MINOR: filters: Remove unused or useless stuff and do small optimizations
12641 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
12642 - MINOR: filters/http: Slightly update the parsing of chunks
12643 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
12644 - MINOR: filters: Add an filter example
12645 - MINOR: filters: Extract proxy stuff from the struct filter
12646 - MINOR: map: Add regex matching replacement
12647 - BUG/MINOR: lua: unsafe initialization
12648 - DOC: lua: fix somme errors
12649 - MINOR: lua: file dedicated to unsafe functions
12650 - MINOR: lua: add "now" time function
12651 - MINOR: standard: add RFC HTTP date parser
12652 - MINOR: lua: Add date functions
12653 - MINOR: lua: move common function
12654 - MINOR: lua: merge function
12655 - MINOR: lua: Add concat class
12656 - MINOR: standard: add function "escape_chunk"
12657 - MEDIUM: log: add a new log format flag "E"
12658 - DOC: add server name at rate-limit sessions example
12659 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
12660 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
12661 - DOC: LUA: fix some typos and syntax errors
12662 - MINOR: cli: add a new "show env" command
12663 - MEDIUM: config: allow to manipulate environment variables in the global section
12664 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
12665 - MINOR: mailers: increase default timeout to 10 seconds
12666 - MINOR: mailers: use <CRLF> for all line endings
12667 - BUG/MAJOR: lua: segfault using Concat object
12668 - DOC: lua: copyrights
12669 - MINOR: common: mask conversion
12670 - MEDIUM: dns: extract options
12671 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
12672 - MINOR: mailers: make it possible to configure the connection timeout
12673 - BUG/MAJOR: lua: applets can't sleep.
12674 - BUG/MINOR: server: some prototypes are renamed
12675 - BUG/MINOR: lua: Useless copy
12676 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
12677 - BUG/MINOR: server: fix the format of the warning on address change
12678 - CLEANUP: server: add "const" to some message strings
12679 - MINOR: server: generalize the "updater" source
12680 - BUG/MEDIUM: chunks: always reject negative-length chunks
12681 - BUG/MINOR: systemd: ensure we don't miss signals
12682 - BUG/MINOR: systemd: report the correct signal in debug message output
12683 - BUG/MINOR: systemd: propagate the correct signal to haproxy
12684 - MINOR: systemd: ensure a reload doesn't mask a stop
12685 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
12686 - CLEANUP: stats: Avoid computation with uninitialized bits.
12687 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
12688 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
12689 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
12690 - BUG/MAJOR: samples: check smp->strm before using it
12691 - MINOR: sample: add a new helper to initialize the owner of a sample
12692 - MINOR: sample: always set a new sample's owner before evaluating it
12693 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
12694 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
12695 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
12696 - MINOR: stats: create fields types suitable for all CSV output data
12697 - MINOR: stats: add all the "show info" fields in a table
12698 - MEDIUM: stats: fill all the show info elements prior to displaying them
12699 - MINOR: stats: add a function to emit fields into a chunk
12700 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
12701 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
12702 - MINOR: stats: add a declaration of all stats fields
12703 - MINOR: stats: don't hard-code the CSV fields list anymore
12704 - MINOR: stats: create stats fields storage and CSV dump function
12705 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
12706 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
12707 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
12708 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
12709 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
12710 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
12711 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
12712 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
12713 - MEDIUM: stats: move the server state coloring logic to the server dump function
12714 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
12715 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
12716 - MINOR: stats: make CSV report server check status only when enabled
12717 - MINOR: stats: only report backend's down time if it has servers
12718 - MINOR: stats: prepend '*' in front of the check status when in progress
12719 - MINOR: stats: make HTML stats dump rely on the table for the check status
12720 - MINOR: stats: add agent_status, agent_code, agent_duration to output
12721 - MINOR: stats: add check_desc and agent_desc to the output fields
12722 - MINOR: stats: add check and agent's health values in the output
12723 - MEDIUM: stats: make the HTML server state dump use the CSV states
12724 - MEDIUM: stats: only report observe errors when observe is set
12725 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
12726 - MEDIUM: stats: report server's address in the CSV output
12727 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
12728 - MEDIUM: stats: compute the color code only in the HTML form
12729 - MEDIUM: stats: report the listeners' address in the CSV output
12730 - MEDIUM: stats: make it possible to report the WAITING state for listeners
12731 - REORG: stats: dump the frontend's HTML stats via a generic function
12732 - REORG: stats: dump the socket stats via the generic function
12733 - REORG: stats: dump the server stats via the generic function
12734 - REORG: stats: dump the backend stats via the generic function
12735 - MEDIUM: stats: add a new "mode" column to report the proxy mode
12736 - MINOR: stats: report the load balancing algorithm in CSV output
12737 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
12738 - MINOR: stats: report number of intercepted requests for frontend and backends
12739 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
12740 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
12741 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
12742 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
12743 - MINOR: stats: add functions to emit typed fields into a chunk
12744 - MEDIUM: stats: support "show info typed" on the CLI
12745 - MEDIUM: stats: implement a typed output format for stats
12746 - DOC: document the "show info typed" and "show stat typed" output formats
12747 - MINOR: cfgparse: warn when uid parameter is not a number
12748 - MINOR: cfgparse: warn when gid parameter is not a number
12749 - BUG/MINOR: standard: Avoid free of non-allocated pointer
12750 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
12751 - CLEANUP: http: fix a build warning introduced by a recent fix
12752 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
12753
Willy Tarreaucb928252015-12-20 23:33:18 +0100127542015/12/20 : 1.7-dev1
12755 - DOC: specify that stats socket doc (section 9.2) is in management
12756 - BUILD: install only relevant and existing documentation
12757 - CLEANUP: don't ignore debian/ directory if present
12758 - BUG/MINOR: dns: parsing error of some DNS response
12759 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
12760 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
12761 - MEDIUM: dns: Don't use the ANY query type
12762 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
12763 - DOC: fix a typo for a "deviceatlas" keyword
12764 - FIX: small typo in an example using the "Referer" header
12765 - MINOR: cli: ability to set per-server maxconn
12766 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
12767 - DEBUG/MEDIUM: memory: optionally protect free data in pools
12768 - DEBUG/MEDIUM: memory: add optional control pool memory operations
12769 - MEDIUM: memory: add accounting for failed allocations
12770 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
12771 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
12772 - BUG/MINOR: dns: unable to parse CNAMEs response
12773 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
12774 - DOC: deviceatlas: more example use cases.
12775 - MINOR: config: allow IPv6 bracketed literals
12776 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
12777 - BUILD: add Haiku as supported target.
12778 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
12779 - DOC: typo on capture.res.hdr and capture.req.hdr
12780 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
12781 - CLEANUP: use direction names in place of numeric values
12782 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
12783 - MINOR: check: add agent-send server parameter
12784 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
12785 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
12786 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
12787 - BUILD: freebsd: double declaration
12788 - BUG/MEDIUM: lua: clean output buffer
12789 - BUILD: check for libressl to be able to build against it
12790 - DOC: lua-api/index.rst small example fixes, spelling correction.
12791 - DOC: lua: architecture and first steps
12792 - DOC: relation between timeout http-request and option http-buffer-request
12793 - BUILD: Make deviceatlas require PCRE
12794 - BUG: http: do not abort keep-alive connections on server timeout
12795 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
12796 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
12797 - BUILD/MINOR: http: proto_http.h needs sample.h
12798 - BUG/MEDIUM: http: don't enable auto-close on the response side
12799 - BUG/MEDIUM: stream: fix half-closed timeout handling
12800 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
12801 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
12802 - BUG/MEDIUM: sample: urlp can't match an empty value
12803 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
12804 - CLEANUP: proxy: calloc call inverted arguments
12805 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
12806 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
12807 - DOC: Edited 51Degrees section of README/
12808 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
12809 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
12810 - BUG/MINOR: checks: typo in an email-alert error message
12811 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
12812 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
12813 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
12814 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
12815 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
12816 - MINOR: ssl: Added cert_key_and_chain struct
12817 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
12818 - MINOR: ssl: Added multi cert support for crt-list config keyword
12819 - MEDIUM: ssl: Added multi cert support for loading crt directories
12820 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
12821 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
12822 - MINOR: config: make tune.recv_enough configurable
12823 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
12824 - DOC: ssl: Adding docs for Multi-Cert bundling
12825 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
12826 - BUG/MEDIUM: peers: old stick table updates could be repushed.
12827 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
12828 - REORG/MINOR: lua: convert boolean "int" to bitfield
12829 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
12830 - BUG/MINOR: lua: Lua applets must not use http_txn
12831 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
12832 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
12833 - CLEANUP: lua: bad error messages
12834 - CONTRIB: initiate a debugging suite to make debugging easier
12835
Willy Tarreau991b4782015-10-13 21:48:10 +0200128362015/10/13 : 1.7-dev0
12837 - exact copy of 1.6.0
12838
Willy Tarreau844028b2015-10-13 18:52:22 +0200128392015/10/13 : 1.6.0
12840 - BUG/MINOR: Handle interactive mode in cli handler
12841 - DOC: global section missing parameters
12842 - DOC: backend section missing parameters
12843 - DOC: stats paramaters available in frontend
12844 - MINOR: lru: do not allocate useless memory in lru64_lookup
12845 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
12846 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
12847 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
12848 - MINOR: ssl: Read the file used to generate certificates in any order
12849 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
12850 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
12851 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
12852 - BUILD: Fix the build on OSX (htonll/ntohll)
12853 - BUILD: enable build on Linux/s390x
12854 - BUG/MEDIUM: lua: direction test failed
12855 - MINOR: lua: fix a spelling error in some error messages
12856 - CLEANUP: cli: ensure we can never double-free error messages
12857 - BUG/MEDIUM: lua: force server-close mode on Lua services
12858 - MEDIUM: init: support more command line arguments after pid list
12859 - MEDIUM: init: support a list of files on the command line
12860 - MINOR: debug: enable memory poisonning to use byte 0
12861 - BUILD: ssl: fix build error introduced by recent commit
12862 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
12863 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
12864 - DOC: mention the "namespace" options for bind and server lines
12865 - DOC: add the "management" documentation
12866 - DOC: move the stats socket documentation from config to management
12867 - MINOR: examples: update haproxy.spec to mention new docs
12868 - DOC: mention management.txt in README
12869 - DOC: remove haproxy-{en,fr}.txt
12870 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
12871 - MINOR: init: report use of libslz instead of "no compression"
12872 - CLEANUP: examples: remove some obsolete and confusing files
12873 - CLEANUP: examples: remove obsolete configuration file samples
12874 - CLEANUP: examples: fix the example file content-sw-sample.cfg
12875 - CLEANUP: examples: update sample file option-http_proxy.cfg
12876 - CLEANUP: examples: update sample file ssl.cfg
12877 - CLEANUP: tests: move a test file from examples/ to tests/
12878 - CLEANUP: examples: shut up warnings in transparent proxy example
12879 - CLEANUP: tests: removed completely obsolete test files
12880 - DOC: update ROADMAP to remove what was done in 1.6
12881 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
12882
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200128832015/10/06 : 1.6-dev7
12884 - MINOR: cli: Dump all resolvers stats if no resolver section is given
12885 - BUG: config: external-check command validation is checking for incorrect arguments.
12886 - DOC: documentation format cleanups
12887 - DOC: lua: few typos.
12888 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
12889 - BUG/MEDIUM: logs: segfault writing to log from Lua
12890 - DOC: fix lua use-service example
12891 - MINOR: payload: add support for tls session ticket ext
12892 - MINOR: lua: remove the run flag
12893 - MEDIUM: lua: change the timeout execution
12894 - MINOR: lua: rename the tune.lua.applet-timeout
12895 - DOC: lua: update Lua doc
12896 - DOC: lua: update doc according with the last Lua changes
12897 - MINOR: http/tcp: fill the avalaible actions
12898 - DOC: reorder misplaced res.ssl_hello_type in the doc
12899 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
12900 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
12901 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
12902 - BUILD: server: fix build warnings introduced by load-server-state
12903 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
12904
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200129052015/09/28 : 1.6-dev6
12906 - BUG/MAJOR: can't enable a server through the stat socket
12907 - MINOR: server: Macro definition for server-state
12908 - MINOR: cli: new stats socket command: show servers state
12909 - DOC: stats socket command: show servers state
12910 - MINOR: config: new global directive server-state-base
12911 - DOC: global directive server-state-base
12912 - MINOR: config: new global section directive: server-state-file
12913 - DOC: new global directive: server-state-file
12914 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
12915 - DOC: load-server-state-from-file
12916 - MINOR: init: server state loaded from file
12917 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
12918 - MINOR: cli: new stats socket command: show backend
12919 - DOC: servers state seamless reload example
12920 - BUG: dns: can't connect UDP socket on FreeBSD
12921 - MINOR: cfgparse: New function cfg_unregister_sections()
12922 - MINOR: chunk: New function free_trash_buffers()
12923 - BUG/MEDIUM: main: Freeing a bunch of static pointers
12924 - MINOR: proto_http: Externalisation of previously internal functions
12925 - MINOR: global: Few new struct fields for da module
12926 - MAJOR: da: Update of the DeviceAtlas API module
12927 - DOC: DeviceAtlas new keywords
12928 - DOC: README: DeviceAtlas sample configuration updates
12929 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
12930 - MEDIUM: log: use a separate buffer for the header and for the message
12931 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
12932 - MEDIUM: logs: add support for RFC5424 header format per logger
12933 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
12934 - DOC: mention support for the RFC5424 syslog message format
12935 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
12936 - MEDIUM: logs: pass the trailing "\n" as an iovec
12937 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
12938 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
12939 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
12940 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
12941 - MINOR: global: Added new fields for 51Degrees device detection
12942 - DOC: Added more explanation for 51Degrees V3.2
12943 - BUILD: Changed 51Degrees option to support V3.2
12944 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
12945 - MINOR: 51d: Improved string handling for LRU cache
12946 - DOC: add references to rise/fall for the fastinter explanation
12947 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
12948 - BUG/MAJOR: lua: potential unexpected aborts()
12949 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
12950 - MINOR: action: add private configuration
12951 - MINOR: action: add reference to the original keywork matched for the called parser.
12952 - MINOR: lua: change actions registration
12953 - MEDIUM: proto_http: smp_prefetch_http initialize txn
12954 - MINOR: channel: rename function chn_sess to chn_strm
12955 - CLEANUP: lua: align defines
12956 - MINOR: http: export http_get_path() function
12957 - MINOR: http: export the get_reason() function
12958 - MINOR: http: export function http_msg_analyzer()
12959 - MINOR: http: split initialization
12960 - MINOR: lua: reset pointer after use
12961 - MINOR: lua: identify userdata objects
12962 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
12963 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
12964 - CLEANUP: lua: use calloc in place of malloc
12965 - BUG/MEDIUM: lua: longjmp function must be unregistered
12966 - BUG/MEDIUM: lua: forces a garbage collection
12967 - BUG/MEDIUM: lua: wakeup task on bad conditions
12968 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
12969 - MINOR: lua: extend socket address to support non-IP families
12970 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
12971 - BUG/MEDIUM: lua: socket destroy before reading pending data
12972 - MEDIUM: lua: change the GC policy
12973 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
12974 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
12975 - MINOR: applet: add init function
12976 - MINOR: applet: add an execution timeout
12977 - MINOR: stream/applet: add use-service action
12978 - MINOR: lua: add AppletTCP class and service
12979 - MINOR: lua: add AppletHTTP class and service
12980 - DOC: lua: some documentation update
12981 - DOC: add the documentation about internal circular lists
12982 - DOC: add a CONTRIBUTING file
12983 - DOC: add a MAINTAINERS file
12984 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
12985 - DOC: update coding-style to reference checkpatch.pl
12986 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
12987 - BUG/MINOR: args: add name for ARGT_VAR
12988 - DOC: add more entries to MAINTAINERS
12989 - DOC: add more entries to MAINTAINERS
12990 - CLEANUP: stream-int: remove obsolete function si_applet_call()
12991 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
12992 - BUG/MEDIUM: http: do not dereference strm_li(stream)
12993 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
12994 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
12995 - MINOR: stream-int: use si_release_endpoint() to close idle conns
12996 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
12997 - BUG/MEDIUM: acl: always accept match "found"
12998 - MINOR: applet: rename applet_runq to applet_active_queue
12999 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
13000 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
13001 - MINOR: stream-int: implement a new stream_int_update() function
13002 - MEDIUM: stream-int: factor out the stream update functions
13003 - MEDIUM: stream-int: call stream_int_update() from si_update()
13004 - MINOR: stream-int: export stream_int_update_*
13005 - MINOR: stream-int: move the applet_pause call out of the stream updates
13006 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
13007 - MINOR: stream-int: implement the stream_int_notify() function
13008 - MEDIUM: stream-int: use the same stream notification function for applets and conns
13009 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
13010 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
13011 - BUG/MEDIUM: applet: fix reporting of broken write situation
13012 - BUG/MINOR: stats: do not call cli_release_handler 3 times
13013 - BUG/MEDIUM: cli: properly handle closed output
13014 - MINOR: cli: do not call the release handler on internal error.
13015 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
13016 - DEBUG: add p_malloc() to return a poisonned memory area
13017 - CLEANUP: lua: remove unneeded memset(0) after calloc()
13018 - MINOR: lua: use the proper applet wakeup mechanism
13019 - BUG/MEDIUM: lua: better fix for the protocol check
13020 - BUG/MEDIUM: lua: properly set the target on the connection
13021 - MEDIUM: actions: pass a new "flags" argument to custom actions
13022 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
13023 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
13024 - MEDIUM: lua: only allow actions to yield if not in a final call
13025 - DOC: clarify how to make use of abstract sockets in socat
13026 - CLEANUP: config: make the errorloc/errorfile messages less confusing
13027 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
13028 - BUG/MINOR: config: check that tune.bufsize is always positive
13029 - MEDIUM: config: set tune.maxrewrite to 1024 by default
13030 - DOC: add David Carlier as maintainer of da.c
13031 - DOC: fix some broken unexpected unicode chars in the Lua doc.
13032 - BUG/MEDIUM: proxy: ignore stopped peers
13033 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
13034 - MEDIUM: init: completely deallocate unused peers
13035 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
13036 - DOC: remove outdated actions lists on tcp-request/response
13037 - MEDIUM: tcp: add new tcp action "silent-drop"
13038 - DOC: add URLs to optional libraries in the README
13039
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200130402015/09/14 : 1.6-dev5
13041 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
13042 - BUG/MEDIUM: dns: DNS resolution doesn't start
13043 - BUG/MAJOR: dns: dns client resolution infinite loop
13044 - MINOR: dns: coding style update
13045 - MINOR: dns: new bitmasks to use against DNS flags
13046 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
13047 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
13048 - MEDIUM: dns: handling of truncated response
13049 - MINOR: DNS client query type failover management
13050 - MINOR: dns: no expected DNS record type found
13051 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
13052 - BUG/MINOR: DNS request retry counter used for retry only
13053 - DOC: DNS documentation updated
13054 - MEDIUM: actions: remove ACTION_STOP
13055 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
13056 - BUG/MINOR: lua: last log character truncated.
13057 - CLEANUP: typo: bad indent
13058 - CLEANUP: actions: missplaced includes
13059 - MINOR: build: missing header
13060 - CLEANUP: lua: Merge log functions
13061 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
13062 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
13063 - BUG/MAJOR: http: don't call http_send_name_header() after an error
13064 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
13065 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
13066 - BUG/MEDIUM: dns: use the correct server hostname when resolving
13067
Willy Tarreau61d301f2015-08-30 00:17:17 +0200130682015/08/30 : 1.6-dev4
13069 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
13070 - DOC: typo in 'redirect', 302 code meaning
13071 - DOC: typos in tcp-check expect examples
13072 - DOC: resolve-prefer default value and default-server update
13073 - MINOR: DNS counters: increment valid counter
13074 - BUG/MEDIUM: DNS resolution response parsing broken
13075 - MINOR: server: add new SRV_ADMF_CMAINT flag
13076 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
13077 - BUG/MEDIUM: dns: wrong first time DNS resolution
13078 - BUG/MEDIUM: lua: Lua tasks fail to start.
13079 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
13080 - DOC/MINOR: fix OpenBSD versions where haproxy works
13081 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
13082 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
13083 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
13084 - BUILD: ssl: Allow building against libssl without SSLv3.
13085 - DOC: clarify some points about SSL and the proxy protocol
13086 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
13087 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
13088 - DOC: match several lua configuration option names to those implemented in code
13089 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
13090 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
13091 - MINOR: stream: initialize the current_rule field to NULL on stream init
13092 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
13093 - CLEANUP: proto_http: remove useless initialisation
13094 - CLEANUP: http/tcp actions: remove the scope member
13095 - BUG/MINOR: proto_tcp: custom action continue is ignored
13096 - MINOR: proto_tcp: add session in the action prototype
13097 - MINOR: vars: reduce the code size of some wrappers
13098 - MINOR: Move http method enum from proto_http to sample
13099 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
13100 - MINOR: sample/proto_tcp: export "smp_fetch_src"
13101 - MEDIUM: cli: rely on the map's output type instead of the sample type
13102 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
13103 - BUG/MEDIUM: vars: segfault during the configuration parsing
13104 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
13105 - BUG/MEDIUM: lua: bad error processing
13106 - MINOR: samples: rename a struct from sample_storage to sample_data
13107 - MINOR: samples: rename some struct member from "smp" to "data"
13108 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
13109 - MINOR: samples: extract the anonymous union and create the union sample_value
13110 - MINOR: samples: rename union from "data" to "u"
13111 - MEDIUM: 51degrees: Adapt the 51Degrees library
13112 - MINOR: samples: data assignation simplification
13113 - MEDIUM: pattern/map: Maps can returns various types
13114 - MINOR: map: The map can return IPv4 and IPv6
13115 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
13116 - MINOR: actions: Remove the data opaque pointer
13117 - MINOR: lua: use the hlua_rule type in place of opaque type
13118 - MINOR: vars: use the vars types as argument in place of opaque type
13119 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
13120 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
13121 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
13122 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
13123 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
13124 - MEDIUM: capture: Move the capture configuration storage in the union
13125 - MINOR: actions: add "from" information
13126 - MINOR: actions: remove the mark indicating the last entry in enum
13127 - MINOR: actions: Declare all the embedded actions in the same header file
13128 - MINOR: actions: change actions names
13129 - MEDIUM: actions: Add standard return code for the action API
13130 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
13131 - MINOR: proto_tcp: proto_tcp.h is now useles
13132 - MINOR: actions: mutualise the action keyword lookup
13133 - MEDIUM: actions: Normalize the return code of the configuration parsers
13134 - MINOR: actions: Remove wrappers
13135 - MAJOR: stick-tables: use sample types in place of dedicated types
13136 - MEDIUM: stick-tables: use the sample type names
13137 - MAJOR: stick-tables: remove key storage from the key struct
13138 - MEDIUM: stick-tables: Add GPT0 in the stick tables
13139 - MINOR: stick-tables: Add GPT0 access
13140 - MINOR: stick-tables: Add GPC0 actions
13141 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
13142 - DOC: ssl: missing LF
13143 - MINOR: lua: add core.done() function
13144 - DOC: fix function name
13145 - BUG/MINOR: lua: in some case a sample may remain undefined
13146 - DOC: fix "http_action_set_req_line()" comments
13147 - MINOR: http: Action for manipulating the returned status code.
13148 - MEDIUM: lua: turns txn:close into txn:done
13149 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
13150 - BUILD: link with libdl if needed for Lua support
13151 - CLEANUP: backend: factor out objt_server() in connect_server()
13152 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
13153 - MEDIUM: stream-int: simplify si_alloc_conn()
13154 - MINOR: stream-int: add new function si_detach_endpoint()
13155 - MINOR: server: add a list of private idle connections
13156 - MINOR: connection: add a new list member in the connection struct
13157 - MEDIUM: stream-int: queue idle connections at the server
13158 - MINOR: stream-int: make si_idle_conn() only accept valid connections
13159 - MINOR: server: add a list of already used idle connections
13160 - MINOR: connection: add a new flag CO_FL_PRIVATE
13161 - MINOR: config: add new setting "http-reuse"
13162 - MAJOR: backend: initial work towards connection reuse
13163 - MAJOR: backend: improve the connection reuse mechanism
13164 - MEDIUM: backend: implement "http-reuse safe"
13165 - MINOR: server: add a list of safe, already reused idle connections
13166 - MEDIUM: backend: add the "http-reuse aggressive" strategy
13167 - DOC: document the new http-reuse directive
13168 - DOC: internals: document next steps for HTTP connection reuse
13169 - DOC: mention that %ms is left-padded with zeroes.
13170 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
13171 - MAJOR: http: remove references to appsession
13172 - CLEANUP: config: remove appsession initialization
13173 - CLEANUP: appsession: remove appsession.c and sessionhash.c
13174 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
13175 - CLEANUP: proxy: remove last references to appsession
13176 - CLEANUP: appsession: remove the last include files
13177 - DOC: remove documentation about appsession
13178 - CLEANUP: .gitignore: ignore more test files
13179 - CLEANUP: .gitignore: finally ignore everything but what is known.
13180 - MEDIUM: config: emit a warning on a frontend without listener
13181 - DOC: add doc/internals/entities-v2.txt
13182 - DOC: add doc/linux-syn-cookies.txt
13183 - DOC: add design thoughts on HTTP/2
13184 - DOC: add some thoughts on connection sharing for HTTP/2
13185 - DOC: add design thoughts on dynamic buffer allocation
13186 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
13187 - DOC: add new file intro.txt
13188 - MAJOR: tproxy: remove support for cttproxy
13189 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
13190 - DOC: lua: replace txn:close with txn:done in lua-api
13191 - DOC: intro: minor updates and fixes
13192 - DOC: intro: fix too long line.
13193 - DOC: fix example of http-request using ssl_fc_session_id
13194 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
13195 - CLEANUP: lua: fix some indent issues
13196 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
13197 - DOC: lua: mention than txn:close was renamed txn:done.
13198
Willy Tarreau50bdda62015-07-22 17:32:56 +0200131992015/07/22 : 1.6-dev3
13200 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
13201 - MEDIUM: http: Add new 'set-src' option to http-request
13202 - DOC usesrc root privileges requirments
13203 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
13204 - MINOR: proxy: bit field for proxy_find_best_match diff status
13205 - MINOR: server: new server flag: SRV_F_FORCED_ID
13206 - MINOR: server: server_find functions: id, name, best_match
13207 - DOC: dns: fix chapters syntax
13208 - BUILD/MINOR: tools: rename popcount to my_popcountl
13209 - BUILD: add netbsd TARGET
13210 - MEDIUM: 51Degrees code refactoring and cleanup
13211 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
13212 - DOC: add notes about the "51degrees-cache-size" parameter
13213 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
13214 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
13215 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
13216 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
13217 - BUG/MINOR: lua: type error in the arguments wrapper
13218 - CLEANUP: vars: remove unused struct
13219 - BUG/MINOR: http/sample: gmtime/localtime can fail
13220 - MINOR: standard: add 64 bits conversion functions
13221 - MAJOR: sample: converts uint and sint in 64 bits signed integer
13222 - MAJOR: arg: converts uint and sint in sint
13223 - MEDIUM: sample: switch to saturated arithmetic
13224 - MINOR: vars: returns variable content
13225 - MEDIUM: vars/sample: operators can use variables as parameter
13226 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
13227 - BUILD/MINOR: lua: fix a harmless build warning
13228 - BUILD/MINOR: stats: fix build warning due to condition always true
13229 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
13230 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
13231 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
13232 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
13233 - MINOR: vars: make the accounting not depend on the stream
13234 - MEDIUM: vars: move the session variables to the session, not the stream
13235 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
13236 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
13237 - BUG/MAJOR: tcp: tcp rulesets were still broken
13238 - MINOR: stats: improve compression stats reporting
13239 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
13240 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
13241 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
13242 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
13243 - MINOR: args: add new context for servers
13244 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
13245 - MINOR: ssl: provide ia function to set the SNI extension on a connection
13246 - MEDIUM: ssl: add sni support on the server lines
13247 - CLEANUP: stream: remove a useless call to si_detach()
13248 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
13249 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
13250 - MINOR: stream-int: only use si_release_endpoint() to release a connection
13251 - MINOR: standard: provide htonll() and ntohll()
13252 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
13253 - BUG/MAJOR: dns: fix the length of the string to be copied
13254
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200132552015/06/17 : 1.6-dev2
13256 - BUG/MINOR: ssl: Display correct filename in error message
13257 - MEDIUM: logs: Add HTTP request-line log format directives
13258 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
13259 - BUG/MINOR: check: fix tcpcheck error message
13260 - MINOR: use an int instead of calling tcpcheck_get_step_id
13261 - MINOR: tcpcheck_rule structure update
13262 - MINOR: include comment in tcpcheck error log
13263 - DOC: tcpcheck comment documentation
13264 - MEDIUM: server: add support for changing a server's address
13265 - MEDIUM: server: change server ip address from stats socket
13266 - MEDIUM: protocol: add minimalist UDP protocol client
13267 - MEDIUM: dns: implement a DNS resolver
13268 - MAJOR: server: add DNS-based server name resolution
13269 - DOC: server name resolution + proto DNS
13270 - MINOR: dns: add DNS statistics
13271 - MEDIUM: http: configurable http result codes for http-request deny
13272 - BUILD: Compile clean when debug options defined
13273 - MINOR: lru: Add the possibility to free data when an item is removed
13274 - MINOR: lru: Add lru64_lookup function
13275 - MEDIUM: ssl: Add options to forge SSL certificates
13276 - MINOR: ssl: Export functions to manipulate generated certificates
13277 - MEDIUM: config: add DeviceAtlas global keywords
13278 - MEDIUM: global: add the DeviceAtlas required elements to struct global
13279 - MEDIUM: sample: add the da-csv converter
13280 - MEDIUM: init: DeviceAtlas initialization
13281 - BUILD: Makefile: add options to build with DeviceAtlas
13282 - DOC: README: explain how to build with DeviceAtlas
13283 - BUG/MEDIUM: http: fix the url_param fetch
13284 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
13285 - MAJOR: peers: peers protocol version 2.0
13286 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
13287 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
13288 - MEDIUM: peers: support of any stick-table data-types for sync
13289 - BUG/MAJOR: sample: regression on sample cast to stick table types.
13290 - CLEANUP: deinit: remove codes for cleaning p->block_rules
13291 - DOC: Fix L4TOUT typo in documentation
13292 - DOC: set-log-level in Logging section preamble
13293 - BUG/MEDIUM: compat: fix segfault on FreeBSD
13294 - MEDIUM: check: include server address and port in the send-state header
13295 - MEDIUM: backend: Allow redispatch on retry intervals
13296 - MINOR: Add TLS ticket keys reference and use it in the listener struct
13297 - MEDIUM: Add support for updating TLS ticket keys via socket
13298 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
13299 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
13300 - DOC: Update doc about weight, act and bck fields in the statistics
13301 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
13302 - MINOR: ssl: add a destructor to free allocated SSL ressources
13303 - MEDIUM: ssl: add the possibility to use a global DH parameters file
13304 - MEDIUM: ssl: replace standards DH groups with custom ones
13305 - MEDIUM: stats: Add enum srv_stats_state
13306 - MEDIUM: stats: Separate server state and colour in stats
13307 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
13308 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
13309 - MEDIUM: Lower priority of email alerts for log-health-checks messages
13310 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
13311 - MEDIUM: Document when email-alerts are sent
13312 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
13313 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
13314 - BUG/MINOR: utf8: remove compilator warning
13315 - MEDIUM: map: uses HAProxy facilities to store default value
13316 - BUG/MINOR: lua: error in detection of mandatory arguments
13317 - BUG/MINOR: lua: set current proxy as default value if it is possible
13318 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
13319 - BUG/MEDIUM: lua: undetected infinite loop
13320 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
13321 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
13322 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
13323 - BUILD: lua: it miss the '-ldl' directive
13324 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
13325 - MINOR: http: split the function http_action_set_req_line() in two parts
13326 - MINOR: http: split http_transform_header() function in two parts.
13327 - MINOR: http: export function inet_set_tos()
13328 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
13329 - MINOR: lua: create and register HTTP class
13330 - DOC: lua: fix some typos
13331 - MINOR: lua: add log functions
13332 - BUG/MINOR: lua: Fix SSL initialisation
13333 - DOC: lua: some fixes
13334 - MINOR: lua: (req|res)_get_headers return more than one header value
13335 - MINOR: lua: map system integration in Lua
13336 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
13337 - MINOR: sample: add url_dec converter
13338 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
13339 - MEDIUM: sample change the prototype of sample-fetches and converters functions
13340 - MINOR: sample: fill the struct sample with the options.
13341 - MEDIUM: sample: change the prototype of sample-fetches functions
13342 - MINOR: http: split the url_param in two parts
13343 - CLEANUP: http: bad indentation
13344 - MINOR: http: add body_param fetch
13345 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
13346 - DOC: http: req.body_param documentation
13347 - MINOR: proxy: custom capture declaration
13348 - MINOR: capture: add two "capture" converters
13349 - MEDIUM: capture: Allow capture with slot identifier
13350 - MINOR: http: add array of generic pointers in http_res_rules
13351 - MEDIUM: capture: adds http-response capture
13352 - MINOR: common: escape CSV strings
13353 - MEDIUM: stats: escape some strings in the CSV dump
13354 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
13355 - MINOR: lua: Lua tcp action are not final action
13356 - DOC: lua: schematics about lua socket organization
13357 - BUG/MINOR: debug: display (null) in place of "meth"
13358 - DOC: mention the "lua action" in documentation
13359 - MINOR: standard: add function that converts signed int to a string
13360 - BUG/MINOR: sample: wrong conversion of signed values
13361 - MEDIUM: sample: Add type any
13362 - MINOR: debug: add a special converter which display its input sample content.
13363 - MINOR: tcp: increase the opaque data array
13364 - MINOR: tcp/http/conf: extends the keyword registration options
13365 - MINOR: build: fix build dependency
13366 - MEDIUM: vars: adds support of variables
13367 - MINOR: vars: adds get and set functions
13368 - MINOR: lua: Variable access
13369 - MINOR: samples: add samples which returns constants
13370 - BUG/MINOR: vars/compil: fix some warnings
13371 - BUILD: add 51degrees options to makefile.
13372 - MINOR: global: add several 51Degrees members to global
13373 - MINOR: config: add 51Degrees config parsing.
13374 - MINOR: init: add 51Degrees initialisation code
13375 - MEDIUM: sample: add fiftyone_degrees converter.
13376 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
13377 - MEDIUM: sample: add trie support to 51Degrees
13378 - DOC: add 51Degrees notes to configuration.txt.
13379 - DOC: add build indications for 51Degrees to README.
13380 - MEDIUM: cfgparse: introduce weak and strong quoting
13381 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
13382 - MINOR: cfgparse: remove line size limitation
13383 - MEDIUM: cfgparse: expand environment variables
13384 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
13385 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
13386 - CLEANUP: cfgparse: remove reference to 'ruleset' section
13387 - MEDIUM: cfgparse: check section maximum number of arguments
13388 - MEDIUM: cfgparse: max arguments check in the global section
13389 - MEDIUM: cfgparse: check max arguments in the proxies sections
13390 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
13391 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
13392 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
13393 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
13394 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
13395 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
13396 - MINOR: connection: implement conn_sock_send()
13397 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
13398 - MEDIUM: connection: make conn_drain() perform more controls
13399 - REORG: connection: move conn_drain() to connection.c and rename it
13400 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
13401 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
13402 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
13403 - BUG/MEDIUM: peers: correctly configure the client timeout
13404 - MINOR: peers: centralize configuration of the peers frontend
13405 - MINOR: proxy: store the default target into the frontend's configuration
13406 - MEDIUM: stats: use frontend_accept() as the accept function
13407 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
13408 - CLEANUP: listeners: remove unused timeout
13409 - MEDIUM: listener: store the default target per listener
13410 - BUILD: fix automatic inclusion of libdl.
13411 - MEDIUM: lua: implement a simple memory allocator
13412 - MEDIUM: compression: postpone buffer adjustments after compression
13413 - MEDIUM: compression: don't send leading zeroes with chunk size
13414 - BUG/MINOR: compression: consider the expansion factor in init
13415 - MINOR: http: check the algo name "identity" instead of the function pointer
13416 - CLEANUP: compression: statify all algo-specific functions
13417 - MEDIUM: compression: add a distinction between UA- and config- algorithms
13418 - MEDIUM: compression: add new "raw-deflate" compression algorithm
13419 - MEDIUM: compression: split deflate_flush() into flush and finish
13420 - CLEANUP: compression: remove unused reset functions
13421 - MAJOR: compression: integrate support for libslz
13422 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
13423 - BUG/MAJOR: http: null-terminate the http actions keywords list
13424 - CLEANUP: lua: remove the unused hlua_sleep memory pool
13425 - BUG/MAJOR: lua: use correct object size when initializing a new converter
13426 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
13427 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
13428 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
13429 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
13430 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
13431 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
13432 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
13433 - REORG/MAJOR: session: rename the "session" entity to "stream"
13434 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
13435 - MINOR: session: start to reintroduce struct session
13436 - MEDIUM: stream: allocate the session when a stream is created
13437 - MEDIUM: stream: move the listener's pointer to the session
13438 - MEDIUM: stream: move the frontend's pointer to the session
13439 - MINOR: session: add a pointer to the session's origin
13440 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
13441 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
13442 - MEDIUM: http: move header captures from http_txn to struct stream
13443 - MINOR: http: create a dedicated pool for http_txn
13444 - MAJOR: http: move http_txn out of struct stream
13445 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
13446 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
13447 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
13448 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
13449 - MAJOR: sample: pass a pointer to the session to each sample fetch function
13450 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
13451 - CLEANUP: stream: don't set ->target to the incoming connection anymore
13452 - MINOR: stream: move session initialization before the stream's
13453 - MINOR: session: store the session's accept date
13454 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
13455 - MINOR: session: implement session_free() and use it everywhere
13456 - MINOR: session: add stick counters to the struct session
13457 - REORG: stktable: move the stkctr_* functions from stream to sticktable
13458 - MEDIUM: streams: support looking up stkctr in the session
13459 - MEDIUM: session: update the session's stick counters upon session_free()
13460 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
13461 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
13462 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
13463 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
13464 - MAJOR: stream: don't initialize the stream anymore in stream_accept
13465 - MEDIUM: session: remove the task pointer from the session
13466 - REORG: session: move the session parts out of stream.c
13467 - MINOR: stream-int: make appctx_new() take the applet in argument
13468 - MEDIUM: peers: move the appctx initialization earlier
13469 - MINOR: session: introduce session_new()
13470 - MINOR: session: make use of session_new() when creating a new session
13471 - MINOR: peers: make use of session_new() when creating a new session
13472 - MEDIUM: peers: initialize the task before the stream
13473 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
13474 - CLEANUP: stream.c: do not re-attach the connection to the stream
13475 - MEDIUM: stream: isolate connection-specific initialization code
13476 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
13477 - MEDIUM: peers: make use of stream_accept_session()
13478 - MEDIUM: frontend: make ->accept only return +/-1
13479 - MEDIUM: stream: return the stream upon accept()
13480 - MEDIUM: frontend: move some stream initialisation to stream_new()
13481 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
13482 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
13483 - MEDIUM: frontend: move some remaining stream settings to stream_new()
13484 - CLEANUP: frontend: remove one useless local variable
13485 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
13486 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
13487 - MINOR: lua: minor cleanup in hlua_socket_new()
13488 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
13489 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
13490 - CLEANUP: stream-int: swap stream-int and appctx declarations
13491 - CLEANUP: namespaces: fix protection against multiple inclusions
13492 - MINOR: session: maintain the session count stats in the session, not the stream
13493 - MEDIUM: session: adjust the connection flags before stream_new()
13494 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
13495 - CLEANUP: poll: move the conditions for waiting out of the poll functions
13496 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
13497 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
13498 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
13499 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
13500 - DOC: update the entities diagrams
13501 - BUG/MEDIUM: http: properly retrieve the front connection
13502 - MINOR: applet: add a new "owner" pointer in the appctx
13503 - MEDIUM: applet: make the applet not depend on a stream interface anymore
13504 - REORG: applet: move the applet definitions out of stream_interface
13505 - CLEANUP: applet: rename struct si_applet to applet
13506 - REORG: stream-int: create si_applet_ops dedicated to applets
13507 - MEDIUM: applet: add basic support for an applet run queue
13508 - MEDIUM: applet: implement a run queue for active appctx
13509 - MEDIUM: stream-int: add a new function si_applet_done()
13510 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
13511 - MAJOR: stream: use a regular ->update for all stream interfaces
13512 - MEDIUM: dumpstats: don't unregister the applet anymore
13513 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
13514 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
13515 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
13516 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
13517 - MEDIUM: stream-int: pause the appctx if the task is woken up
13518 - BUG/MAJOR: tcp: only call registered actions when they're registered
13519 - BUG/MEDIUM: peers: fix applet scheduling
13520 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
13521 - MINOR: tools: provide an rdtsc() function for time comparisons
13522 - IMPORT: lru: import simple ebtree-based LRU functions
13523 - IMPORT: hash: import xxhash-r39
13524 - MEDIUM: pattern: add a revision to all pattern expressions
13525 - MAJOR: pattern: add LRU-based cache on pattern matching
13526 - BUG/MEDIUM: http: remove content-length from chunked messages
13527 - DOC: http: update the comments about the rules for determining transfer-length
13528 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
13529 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
13530 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
13531 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
13532 - MEDIUM: http: disable support for HTTP/0.9 by default
13533 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
13534 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
13535 - MEDIUM: init: don't stop proxies in parent process when exiting
13536 - MINOR: stick-table: don't attach to peers in stopped state
13537 - MEDIUM: config: initialize stick-tables after peers, not before
13538 - MEDIUM: peers: add the ability to disable a peers section
13539 - MINOR: peers: store the pointer to the signal handler
13540 - MEDIUM: peers: unregister peers that were never started
13541 - MEDIUM: config: propagate the table's process list to the peers sections
13542 - MEDIUM: init: stop any peers section not bound to the correct process
13543 - MEDIUM: config: validate that peers sections are bound to exactly one process
13544 - MAJOR: peers: allow peers section to be used with nbproc > 1
13545 - DOC: relax the peers restriction to single-process
13546 - DOC: document option http-ignore-probes
13547 - DOC: fix the comments about the meaning of msg->sol in HTTP
13548 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
13549 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
13550 - MEDIUM: stream: move HTTP request body analyser before process_common
13551 - MEDIUM: http: add a new option http-buffer-request
13552 - MEDIUM: http: provide 3 fetches for the body
13553 - DOC: update the doc on the proxy protocol
13554 - BUILD: pattern: fix build warnings introduced in the LRU cache
13555 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
13556 - CLEANUP: config: fix misleading information in error message.
13557 - MINOR: config: report the number of processes using a peers section in the error case
13558 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
13559 - MEDIUM: http: add new "capture" action for http-request
13560 - BUG/MEDIUM: http: fix the http-request capture parser
13561 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
13562 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
13563 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
13564 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
13565 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
13566 - CLEANUP: checks: simplify the loop processing of tcp-checks
13567 - BUG/MAJOR: checks: always check for end of list before proceeding
13568 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
13569 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
13570 - MEDIUM: http: make url_param iterate over multiple occurrences
13571 - BUG/MEDIUM: peers: apply a random reconnection timeout
13572 - MEDIUM: config: reject invalid config with name duplicates
13573 - MEDIUM: config: reject conflicts in table names
13574 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
13575 - MINOR: proxy: simply ignore duplicates in proxy name lookups
13576 - MINOR: config: don't open-code proxy name lookups
13577 - MEDIUM: config: clarify the conflicting modes detection for backend rules
13578 - CLEANUP: proxy: remove now unused function findproxy_mode()
13579 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
13580 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
13581 - MINOR: proxy: add a new function proxy_find_by_id()
13582 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
13583 - MEDIUM: proxy: add a new proxy_find_best_match() function
13584 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
13585 - MINOR: http: prepare support for parsing redirect actions on responses
13586 - MEDIUM: http: implement http-response redirect rules
13587 - MEDIUM: http: no need to close the request on redirect if data was parsed
13588 - BUG/MEDIUM: http: fix body processing for the stats applet
13589 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
13590 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
13591 - CLEANUP: da: move the converter registration to da.c
13592 - CLEANUP: da: register the config keywords in da.c
13593 - CLEANUP: adjust the envelope name in da.h to reflect the file name
13594 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
13595 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
13596 - BUILD: fix build warning when not using 51degrees
13597 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
13598 - BUILD: ssl: fix recent build breakage on older SSL libs
13599
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100136002015/03/11 : 1.6-dev1
13601 - CLEANUP: extract temporary $CFG to eliminate duplication
13602 - CLEANUP: extract temporary $BIN to eliminate duplication
13603 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
13604 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
13605 - CLEANUP: extract quiet_check() to avoid duplication
13606 - BUG/MINOR: don't start haproxy on reload
13607 - DOC: Address issue where documentation is excluded due to a gitignore rule.
13608 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
13609 - BUILD: fix "make install" to support spaces in the install dirs
13610 - BUG/MINOR: config: http-request replace-header arg typo
13611 - BUG: config: error in http-response replace-header number of arguments
13612 - DOC: missing track-sc* in http-request rules
13613 - BUILD: lua: missing ifdef related to SSL when enabling LUA
13614 - BUG/MEDIUM: regex: fix pcre_study error handling
13615 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
13616 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
13617 - MEDIUM: Improve signal handling in systemd wrapper.
13618 - DOC: fix typo in Unix Socket commands
13619 - BUG/MEDIUM: checks: external checks can't change server status to UP
13620 - BUG/MEDIUM: checks: segfault with external checks in a backend section
13621 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
13622 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
13623 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
13624 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
13625 - BUG/MINOR: log: fix request flags when keep-alive is enabled
13626 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
13627 - MINOR: checks: allow external checks in backend sections
13628 - MEDIUM: checks: provide environment variables to the external checks
13629 - MINOR: checks: update dynamic environment variables in external checks
13630 - DOC: checks: environment variables used by "external-check command"
13631 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
13632 - MINOR: ssl: load certificates in alphabetical order
13633 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
13634 - MINOR: lua: typo in an error message
13635 - MINOR: report the Lua version in -vv
13636 - MINOR: lua: add a compilation error message when compiled with an incompatible version
13637 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
13638 - BUILD: try to automatically detect the Lua library name
13639 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
13640 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
13641 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
13642 - MEDIUM: connection: add new bit in Proxy Protocol V2
13643 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
13644 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
13645 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
13646 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
13647 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
13648 - MINOR: ssl: add statement to force some ssl options in global.
13649 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
13650 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
13651 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
13652 - MINOR: samples: adds the bytes converter.
13653 - MINOR: samples: adds the field converter.
13654 - MINOR: samples: add the word converter.
13655 - BUG/MINOR: server: move the directive #endif to the end of file
13656 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
13657 - DOC: fix a few typos
13658 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
13659 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
13660 - BUG/MINOR: parse: refer curproxy instead of proxy
13661 - BUG/MINOR: parse: check the validity of size string in a more strict way
13662 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
13663 - DOC: expand the docs for the provided stats.
13664 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
13665 - MEDIUM: ssl: Certificate Transparency support
13666 - MEDIUM: stats: proxied stats admin forms fix
13667 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
13668 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
13669 - MAJOR: namespace: add Linux network namespace support
13670 - MINOR: systemd: Check configuration before start
13671 - BUILD: ssl: handle boringssl in openssl version detection
13672 - BUILD: ssl: disable OCSP when using boringssl
13673 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
13674 - MINOR: ssl: don't use boringssl's cipher_list
13675 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
13676 - MINOR: stats: fix minor typo in HTML page
13677 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
13678 - MEDIUM: Add support for configurable TLS ticket keys
13679 - DOC: Document the new tls-ticket-keys bind keyword
13680 - DOC: clearly state that the "show sess" output format is not fixed
13681 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
13682 - DOC: httplog does not support 'no'
13683 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
13684 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
13685 - BUG/MEDIUM: Consistently use 'check' in process_chk
13686 - MEDIUM: Add external check
13687 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
13688 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
13689 - MEDIUM: Remove connect_chk
13690 - MEDIUM: Refactor init_check and move to checks.c
13691 - MEDIUM: Add free_check() helper
13692 - MEDIUM: Move proto and addr fields struct check
13693 - MEDIUM: Attach tcpcheck_rules to check
13694 - MEDIUM: Add parsing of mailers section
13695 - MEDIUM: Allow configuration of email alerts
13696 - MEDIUM: Support sending email alerts
13697 - DOC: Document email alerts
13698 - MINOR: Remove trailing '.' from email alert messages
13699 - MEDIUM: Allow suppression of email alerts by log level
13700 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
13701 - MINOR: deinit: fix memory leak
13702 - MINOR: http: export the function 'smp_fetch_base32'
13703 - BUG/MEDIUM: http: tarpit timeout is reset
13704 - MINOR: sample: add "json" converter
13705 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
13706 - MINOR: map/acl/dumpstats: remove the "Done." message
13707 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
13708 - BUG/MINOR: pattern: error message missing
13709 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
13710 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
13711 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
13712 - MEDIUM: task: call session analyzers if the task is woken by a message.
13713 - MEDIUM: protocol: automatically pick the proto associated to the connection.
13714 - MEDIUM: channel: wake up any request analyzer on response activity
13715 - MINOR: converters: add a "void *private" argument to converters
13716 - MINOR: converters: give the session pointer as converter argument
13717 - MINOR: sample: add private argument to the struct sample_fetch
13718 - MINOR: global: export function and permits to not resolve DNS names
13719 - MINOR: sample: add function for browsing samples.
13720 - MINOR: global: export many symbols.
13721 - MINOR: includes: fix a lot of missing or useless includes
13722 - MEDIUM: tcp: add register keyword system.
13723 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
13724 - MEDIUM: http: change the code returned by the response processing rule functions
13725 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
13726 - MINOR: channel: functions to get data from a buffer without copy
13727 - MEDIUM: lua: lua integration in the build and init system.
13728 - MINOR: lua: add ease functions
13729 - MINOR: lua: add runtime execution context
13730 - MEDIUM: lua: "com" signals
13731 - MINOR: lua: add the configuration directive "lua-load"
13732 - MINOR: lua: core: create "core" class and object
13733 - MINOR: lua: post initialisation bindings
13734 - MEDIUM: lua: add coroutine as tasks.
13735 - MINOR: lua: add sample and args type converters
13736 - MINOR: lua: txn: create class TXN associated with the transaction.
13737 - MINOR: lua: add shared context in the lua stack
13738 - MINOR: lua: txn: import existing sample-fetches in the class TXN
13739 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
13740 - MINOR: lua: register and execute sample-fetches in LUA
13741 - MINOR: lua: register and execute converters in LUA
13742 - MINOR: lua: add bindings for tcp and http actions
13743 - MINOR: lua: core: add sleep functions
13744 - MEDIUM: lua: socket: add "socket" class for TCP I/O
13745 - MINOR: lua: core: pattern and acl manipulation
13746 - MINOR: lua: channel: add "channel" class
13747 - MINOR: lua: txn: object "txn" provides two objects "channel"
13748 - MINOR: lua: core: can set the nice of the current task
13749 - MINOR: lua: core: can yield an execution stack
13750 - MINOR: lua: txn: add binding for closing the client connection.
13751 - MEDIUM: lua: Lua initialisation "on demand"
13752 - BUG/MAJOR: lua: send function fails and return bad bytes
13753 - MINOR: remove unused declaration.
13754 - MINOR: lua: remove some #define
13755 - MINOR: lua: use bitfield and macro in place of integer and enum
13756 - MINOR: lua: set skeleton for Lua execution expiration
13757 - MEDIUM: lua: each yielding function returns a wake up time.
13758 - MINOR: lua: adds "forced yield" flag
13759 - MEDIUM: lua: interrupt the Lua execution for running other process
13760 - MEDIUM: lua: change the sleep function core
13761 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
13762 - DOC: lua: Lua configuration documentation
13763 - MINOR: lua: add the struct session in the lua channel struct
13764 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
13765 - BUG/MEDIUM: lua: reset flags before resuming execution
13766 - BUG/MEDIUM: lua: fix infinite loop about channel
13767 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
13768 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
13769 - MEDIUM: lua: use the Lua-5.3 version of the library
13770 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
13771 - BUG/MEDIUM: lua: can't handle the response bytes
13772 - BUG/MEDIUM: lua: segfault with buffer_replace2
13773 - BUG/MINOR: lua: check buffers before initializing socket
13774 - BUG/MINOR: log: segfault if there are no proxy reference
13775 - BUG/MEDIUM: lua: sockets don't have buffer to write data
13776 - BUG/MEDIUM: lua: cannot connect socket
13777 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
13778 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
13779 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
13780 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
13781 - MINOR: replace the Core object by a simple model.
13782 - MEDIUM: lua: change the objects configuration
13783 - MEDIUM: lua: create a namespace for the fetches
13784 - MINOR: converters: add function to browse converters
13785 - MINOR: lua: wrapper for converters
13786 - MINOR: lua: replace function (req|get)_channel by a variable
13787 - MINOR: lua: fetches and converters can return an empty string in place of nil
13788 - DOC: lua api
13789 - BUG/MEDIUM: sample: fix random number upper-bound
13790 - BUG/MINOR: stats:Fix incorrect printf type.
13791 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
13792 - BUG/MINOR: logs: properly initialize and count log sockets
13793 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
13794 - BUG/MINOR: counters: do not untrack counters before logging
13795 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
13796 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
13797 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
13798 - BUILD: remove TODO from the spec file and add README
13799 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
13800 - MEDIUM: log: support a user-configurable max log line length
13801 - DOC: provide an example of how to use ssl_c_sha1
13802 - BUILD: checks: external checker needs signal.h
13803 - BUILD: checks: kill a minor warning on Solaris in external checks
13804 - BUILD: http: fix isdigit & isspace warnings on Solaris
13805 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
13806 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
13807 - MEDIUM: listener: implement a per-protocol pause() function
13808 - MEDIUM: listener: support rebinding during resume()
13809 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
13810 - DOC: explicitly mention the limits of abstract namespace sockets
13811 - DOC: minor fix on {sc,src}_kbytes_{in,out}
13812 - DOC: fix alphabetical sort of converters
13813 - MEDIUM: stick-table: implement lookup from a sample fetch
13814 - MEDIUM: stick-table: add new converters to fetch table data
13815 - MINOR: samples: add two converters for the date format
13816 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
13817 - DOC: remove references to CPU=native in the README
13818 - DOC: mention that "compression offload" is ignored in defaults section
13819 - DOC: mention that Squid correctly responds 400 to PPv2 header
13820 - BUILD: fix dependencies between config and compat.h
13821 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
13822 - MEDIUM: stick-table: make it easier to register extra data types
13823 - BUG/MINOR: http: base32+src should use the big endian version of base32
13824 - MINOR: sample: allow IP address to cast to binary
13825 - MINOR: sample: add new converters to hash input
13826 - MINOR: sample: allow integers to cast to binary
13827 - BUILD: report commit ID in git versions as well
13828 - CLEANUP: session: move the stick counters declarations to stick_table.h
13829 - MEDIUM: http: add the track-sc* actions to http-request rules
13830 - BUG/MEDIUM: connection: fix proxy v2 header again!
13831 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
13832 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
13833 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
13834 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
13835 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
13836 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
13837 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
13838 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
13839 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
13840 - MEDIUM: http: enable header manipulation for 101 responses
13841 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
13842 - MEDIUM: config: properly propagate process binding between proxies
13843 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
13844 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
13845 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
13846 - MEDIUM: config: report it when tcp-request rules are misplaced
13847 - DOC: indicate in the doc that track-sc* can wait if data are missing
13848 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
13849 - MEDIUM: systemd-wrapper: support multiple executable versions and names
13850 - BUG/MEDIUM: remove debugging code from systemd-wrapper
13851 - BUG/MEDIUM: http: adjust close mode when switching to backend
13852 - BUG/MINOR: config: don't propagate process binding on fatal errors.
13853 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
13854 - BUG/MINOR: tcp-check: report the correct failed step in the status
13855 - DOC: indicate that weight zero is reported as DRAIN
13856 - BUG/MEDIUM: config: avoid skipping disabled proxies
13857 - BUG/MINOR: config: do not accept more track-sc than configured
13858 - BUG/MEDIUM: backend: fix URI hash when a query string is present
13859 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
13860 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
13861 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
13862 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
13863 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
13864 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
13865 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
13866 - MEDIUM: ssl: add support for smaller SSL records
13867 - MINOR: session: release a few other pools when stopping
13868 - MINOR: task: release the task pool when stopping
13869 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
13870 - BUG/MAJOR: frontend: initialize capture pointers earlier
13871 - BUG/MINOR: stats: correctly set the request/response analysers
13872 - MAJOR: polling: centralize calls to I/O callbacks
13873 - DOC: fix typo in the body parser documentation for msg.sov
13874 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
13875 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
13876 - DEBUG: pools: apply poisonning on every allocated pool
13877 - BUG/MAJOR: sessions: unlink session from list on out of memory
13878 - BUG/MEDIUM: patterns: previous fix was incomplete
13879 - BUG/MEDIUM: payload: ensure that a request channel is available
13880 - BUG/MINOR: tcp-check: don't condition data polling on check type
13881 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
13882 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
13883 - BUG/MINOR: config: fix typo in condition when propagating process binding
13884 - BUG/MEDIUM: config: do not propagate processes between stopped processes
13885 - BUG/MAJOR: stream-int: properly check the memory allocation return
13886 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
13887 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
13888 - BUG/MEDIUM: compression: correctly report zlib_mem
13889 - CLEANUP: lists: remove dead code
13890 - CLEANUP: memory: remove dead code
13891 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
13892 - MINOR: memory: cut pool allocator in 3 layers
13893 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
13894 - MINOR: stream-int: retrieve session pointer from stream-int
13895 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
13896 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
13897 - MINOR: buffer: move buffer initialization after channel initialization
13898 - MINOR: buffer: only use b_free to release buffers
13899 - MEDIUM: buffer: always assign a dummy empty buffer to channels
13900 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
13901 - MEDIUM: channel: do not report full when buf_empty is present on a channel
13902 - MINOR: session: group buffer allocations together
13903 - MINOR: buffer: implement b_alloc_fast()
13904 - MEDIUM: buffer: implement b_alloc_margin()
13905 - MEDIUM: session: implement a basic atomic buffer allocator
13906 - MAJOR: session: implement a wait-queue for sessions who need a buffer
13907 - MAJOR: session: only allocate buffers when needed
13908 - MINOR: stats: report a "waiting" flags for sessions
13909 - MAJOR: session: only wake up as many sessions as available buffers permit
13910 - MINOR: config: implement global setting tune.buffers.reserve
13911 - MINOR: config: implement global setting tune.buffers.limit
13912 - MEDIUM: channel: implement a zero-copy buffer transfer
13913 - MEDIUM: stream-int: support splicing from applets
13914 - OPTIM: stream-int: try to send pending spliced data
13915 - CLEANUP: session: remove session_from_task()
13916 - DOC: add missing entry for log-format and clarify the text
13917 - MINOR: logs: add a new per-proxy "log-tag" directive
13918 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
13919 - MINOR: config: extend the default max hostname length to 64 and beyond
13920 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
13921 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
13922 - MINOR: channel: add channel_in_transit()
13923 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
13924 - MEDIUM: channel: make bi_avail() use channel_in_transit()
13925 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
13926 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
13927 - MINOR: channel: rename channel_full() to !channel_may_recv()
13928 - MINOR: channel: rename buffer_reserved() to channel_reserved()
13929 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
13930 - MINOR: channel: rename bi_avail() to channel_recv_max()
13931 - MINOR: channel: rename bi_erase() to channel_truncate()
13932 - BUG/MAJOR: log: don't try to emit a log if no logger is set
13933 - MINOR: tools: add new round_2dig() function to round integers
13934 - MINOR: global: always export some SSL-specific metrics
13935 - MINOR: global: report information about the cost of SSL connections
13936 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
13937 - MINOR: http: add a new fetch "query" to extract the request's query string
13938 - MINOR: hash: add new function hash_crc32
13939 - MINOR: samples: provide a "crc32" converter
13940 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
13941 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
13942 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
13943 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
13944 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
13945 - MINOR: args: add type-specific flags for each arg in a list
13946 - MINOR: args: implement a new arg type for regex : ARGT_REG
13947 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
13948 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
13949 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
13950 - MEDIUM: http: implement http-request set-{method,path,query,uri}
13951 - DOC: fix missing closing brackend on regsub
13952 - MEDIUM: samples: provide basic arithmetic and bitwise operators
13953 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
13954 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
13955 - BUG/MINOR: http: abort request processing on filter failure
13956 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
13957 - MINOR: ssl/server: add the "no-ssl-reuse" server option
13958 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
13959 - MINOR: http: add a new function to iterate over each header line
13960 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
13961 - MEDIUM: task: always ensure that the run queue is consistent
13962 - BUILD: Makefile: add -Wdeclaration-after-statement
13963 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
13964 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
13965 - MEDIUM: protocol: use a family array to index the protocol handlers
13966 - BUILD: lua: cleanup many mixed occurrences declarations & code
13967 - BUG/MEDIUM: task: fix recently introduced scheduler skew
13968 - BUG/MINOR: lua: report the correct function name in an error message
13969 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
13970 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
13971 - MINOR: lua: convert IP addresses to type string
13972 - CLEANUP: lua: use the same function names in C and Lua
13973 - REORG/MAJOR: move session's req and resp channels back into the session
13974 - CLEANUP: remove now unused channel pool
13975 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
13976 - MEDIUM: stream-int: add a flag indicating which side the SI is on
13977 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
13978 - MEDIUM: stream-interface: remove now unused pointers to channels
13979 - MEDIUM: stream-int: make si_sess() use the stream int's side
13980 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
13981 - MEDIUM: stream-int: remove any reference to the owner
13982 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
13983 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
13984 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
13985 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
13986 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
13987 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
13988 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
13989 - CLEANUP: session: use local variables to access channels / stream ints
13990 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
13991 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
13992 - CLEANUP: stream-int: limit usage of si_ic/si_oc
13993 - CLEANUP: lua: limit usage of si_ic/si_oc
13994 - MINOR: channel: add chn_sess() helper to retrieve session from channel
13995 - MEDIUM: session: simplify receive buffer allocator to only use the channel
13996 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
13997 - CLEANUP: lua: remove the session pointer from hlua_channel
13998 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
13999 - MEDIUM: lua: remove struct hlua_channel
14000 - MEDIUM: lua: remove hlua_sample_fetch
14001
Willy Tarreau15480d72014-06-19 21:10:58 +0200140022014/06/19 : 1.6-dev0
14003 - exact copy of 1.5.0
14004
Willy Tarreau9229f122014-06-19 21:01:06 +0200140052014/06/19 : 1.5.0
14006 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
14007 - MEDIUM: ssl: basic OCSP stapling support.
14008 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
14009 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
14010 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
14011 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
14012 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
14013 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
14014 - MEDIUM: Break out check establishment into connect_chk()
14015 - MEDIUM: Add port_to_str helper
14016 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
14017 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
14018 - MINOR: regex: fix a little configuration memory leak.
14019 - MINOR: regex: Create JIT compatible function that return match strings
14020 - MEDIUM: regex: replace all standard regex function by own functions
14021 - MEDIUM: regex: Remove null terminated strings.
14022 - MINOR: regex: Use native PCRE API.
14023 - MINOR: missing regex.h include
14024 - DOC: Add Exim as Proxy Protocol implementer.
14025 - BUILD: don't use type "uint" which is not portable
14026 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
14027 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
14028 - CLEANUP: http: don't clear CF_READ_NOEXP twice
14029 - DOC: fix proxy protocol v2 decoder example
14030 - DOC: fix remaining occurrences of "pattern extraction"
14031 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
14032 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
14033 - MINOR: sample: improve sample_fetch_string() to report partial contents
14034 - MINOR: capture: extend the captures to support non-header keys
14035 - MINOR: tcp: prepare support for the "capture" action
14036 - MEDIUM: tcp: add a new tcp-request capture directive
14037 - MEDIUM: session: allow shorter retry delay if timeout connect is small
14038 - MEDIUM: session: don't apply the retry delay when redispatching
14039 - MEDIUM: session: redispatch earlier when possible
14040 - MINOR: config: warn when tcp-check rules are used without option tcp-check
14041 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
14042 - DOC: proxy protocol example parser was still wrong
14043 - DOC: minor updates to the proxy protocol doc
14044 - CLEANUP: connection: merge proxy proto v2 header and address block
14045 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
14046 - MINOR: tools: add new functions to quote-encode strings
14047 - DOC: clarify the CSV format
14048 - MEDIUM: stats: report the last check and last agent's output on the CSV status
14049 - MINOR: freq_ctr: introduce a new averaging method
14050 - MEDIUM: session: maintain per-backend and per-server time statistics
14051 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
14052 - BUG/MINOR: http: fix typos in previous patch
14053 - DOC: remove the ultra-obsolete TODO file
14054 - DOC: update roadmap
14055 - DOC: minor updates to the README
14056 - DOC: mention the maxconn limitations with the select poller
14057 - DOC: commit a few old design thoughts files
14058
Willy Tarreau2e858402014-05-28 17:50:53 +0200140592014/05/28 : 1.5-dev26
14060 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
14061 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
14062 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
14063 - MINOR: fix a few memory usage errors
14064 - CONTRIB: halog: Filter input lines by date and time through timestamp
14065 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
14066 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
14067 - MINOR: acl: set "str" as default match for strings
14068 - DOC: Add some precisions about acl default matching method
14069 - MEDIUM: acl: strenghten the option parser to report invalid options
14070 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
14071 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
14072 - MINOR: stats: improve alignment of color codes to save one line of header
14073 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
14074 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
14075 - MINOR: server: use functions to detect state changes and to update them
14076 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
14077 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
14078 - BUG/MAJOR: config: don't free valid regex memory
14079 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
14080 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
14081 - MEDIUM: proxy: make timeout parser a bit stricter
14082 - REORG/MEDIUM: server: split server state and flags in two different variables
14083 - REORG/MEDIUM: server: move the maintenance bits out of the server state
14084 - MAJOR: server: use states instead of flags to store the server state
14085 - REORG: checks: put the functions in the appropriate files !
14086 - MEDIUM: server: properly support and propagate the maintenance status
14087 - MEDIUM: server: allow multi-level server tracking
14088 - CLEANUP: checks: rename the server_status_printf function
14089 - MEDIUM: checks: simplify server up/down/nolb transitions
14090 - MAJOR: checks: move health checks changes to set_server_check_status()
14091 - MINOR: server: make the status reporting function support a reason
14092 - MINOR: checks: simplify health check reporting functions
14093 - MINOR: server: implement srv_set_stopped()
14094 - MINOR: server: implement srv_set_running()
14095 - MINOR: server: implement srv_set_stopping()
14096 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
14097 - MEDIUM: checks: simplify success notification using srv_set_running()
14098 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
14099 - MEDIUM: stats: report a server's own state instead of the tracked one's
14100 - MINOR: server: make use of srv_is_usable() instead of checking eweight
14101 - MAJOR: checks: add support for a new "drain" administrative mode
14102 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
14103 - MEDIUM: stats: introduce new actions to simplify admin status management
14104 - MINOR: cli: introduce a new "set server" command
14105 - MINOR: stats: report a distinct output for DOWN caused by agent
14106 - MINOR: checks: support specific check reporting for the agent
14107 - MINOR: checks: support a neutral check result
14108 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
14109 - MEDIUM: cli: add support for enabling/disabling health checks.
14110 - MEDIUM: stats: report down caused by agent prior to reporting up
14111 - MAJOR: agent: rework the response processing and support additional actions
14112 - MINOR: stats: improve the stats web page to support more actions
14113 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
14114 - DOC: document the workarouds for Google Chrome's bogus pre-connect
14115 - MINOR: stats: report SSL key computations per second
14116 - MINOR: stats: add counters for SSL cache lookups and misses
14117
Willy Tarreaua3393952014-05-10 15:16:43 +0200141182014/05/10 : 1.5-dev25
14119 - MEDIUM: connection: Implement and extented PROXY Protocol V2
14120 - MINOR: ssl: clean unused ACLs declarations
14121 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
14122 - MINOR: ssl: merge client's and frontend's certificate functions.
14123 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
14124 - MINOR: ssl: adds sample converter base64 for binary type.
14125 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
14126 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
14127 - MAJOR: ssl: Change default locks on ssl session cache.
14128 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
14129 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
14130 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
14131 - BUG/MEDIUM: patterns: last fix was still not enough
14132 - MINOR: http: export the smp_fetch_cookie function
14133 - MINOR: http: generic pointer to rule argument
14134 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
14135 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
14136 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
14137 - BUG/MINOR: http: log 407 in case of proxy auth
14138 - MINOR: http: rely on the message body parser to send 100-continue
14139 - MEDIUM: http: move reqadd after execution of http_request redirect
14140 - MEDIUM: http: jump to dedicated labels after http-request processing
14141 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
14142 - BUG/MINOR: http: block rules forgot to increment the session's request counter
14143 - MEDIUM: http: move Connection header processing earlier
14144 - MEDIUM: http: remove even more of the spaghetti in the request path
14145 - MINOR: http: silently support the "block" action for http-request
14146 - CLEANUP: proxy: rename "block_cond" to "block_rules"
14147 - MEDIUM: http: emulate "block" rules using "http-request" rules
14148 - MINOR: http: remove the now unused loop over "block" rules
14149 - MEDIUM: http: factorize the "auth" action of http-request and stats
14150 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
14151 - MINOR: config: add minimum support for emitting warnings only once
14152 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
14153 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
14154 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
14155 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
14156 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
14157 - BUILD: config: remove a warning with clang
14158 - BUG/MAJOR: http: connection setup may stall on balance url_param
14159 - BUG/MEDIUM: http/session: disable client-side expiration only after body
14160 - BUG/MEDIUM: http: correctly report request body timeouts
14161 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
14162 - MEDIUM: listener: make the accept function more robust against pauses
14163 - BUILD: syscalls: remove improper inline statement in front of syscalls
14164 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
14165 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
14166 - DOC: add some explanation on the shared cache build options in the readme.
14167 - MEDIUM: proxy: only adjust the backend's bind-process when already set
14168 - MEDIUM: config: limit nbproc to the machine's word size
14169 - MEDIUM: config: check the bind-process settings according to nbproc
14170 - MEDIUM: listener: parse the new "process" bind keyword
14171 - MEDIUM: listener: inherit the process mask from the proxy
14172 - MAJOR: listener: only start listeners bound to the same processes
14173 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
14174 - CLEANUP: config: set the maxaccept value for peers listeners earlier
14175 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
14176 - BUG/MINOR: checks: correctly configure the address family and protocol
14177 - MINOR: tools: split is_addr() and is_inet_addr()
14178 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
14179 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
14180 - MEDIUM: checks: only complain about the missing port when the check uses TCP
14181 - MEDIUM: unix: implement support for Linux abstract namespace sockets
14182 - DOC: map_beg was missing from the table of map_* converters
14183 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
14184 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
14185 - BUILD: remove the obsolete BSD and OSX makefiles
14186 - MEDIUM: unix: avoid a double connect probe when no data are sent
14187 - DOC: stop referencing the slow git repository in the README
14188 - BUILD: only build the systemd wrapper on Linux 2.6 and above
14189 - DOC: update roadmap with completed tasks
14190 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
14191
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200141922014/04/26 : 1.5-dev24
14193 - MINOR: pattern: find element in a reference
14194 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
14195 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
14196 - DOC: Full section dedicated to the converters
14197 - MEDIUM: http: register http-request and http-response keywords
14198 - BUG/MINOR: compression: correctly report incoming byte count
14199 - BUG/MINOR: http: don't report server aborts as client aborts
14200 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
14201 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
14202 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
14203 - BUG/MAJOR: http: fix timeouts during data forwarding
14204 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
14205 - MEDIUM: http: move skipping of 100-continue earlier
14206 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
14207 - CLEANUP: general: get rid of all old occurrences of "session *t"
14208 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
14209 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
14210 - MEDIUM: http: enable analysers to have keep-alive on stats
14211 - REORG: http: move HTTP Connection response header parsing earlier
14212 - MINOR: stats: always emit HTTP/1.1 in responses
14213 - MINOR: http: add capture.req.ver and capture.res.ver
14214 - MINOR: checks: add a new global max-spread-checks directive
14215 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
14216 - MINOR: http: implement the max-keep-alive-queue setting
14217 - DOC: fix alphabetic order of tcp-check
14218 - MINOR: connection: add a new error code for SSL with heartbeat
14219 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
14220 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
14221 - BUILD: http: remove a warning on strndup
14222 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
14223 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
14224 - MINOR: ssl: finally catch the heartbeats missing the padding
14225
Willy Tarreau8317b282014-04-23 01:49:41 +0200142262014/04/23 : 1.5-dev23
14227 - BUG/MINOR: reject malformed HTTP/0.9 requests
14228 - MINOR: systemd wrapper: re-execute on SIGUSR2
14229 - MINOR: systemd wrapper: improve logging
14230 - MINOR: systemd wrapper: propagate exit status
14231 - BUG/MINOR: tcpcheck connect wrong behavior
14232 - MEDIUM: proxy: support use_backend with dynamic names
14233 - MINOR: stats: Enhancement to stats page to provide information of last session time.
14234 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
14235 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
14236 - DOC: fix fetching samples syntax
14237 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
14238 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
14239 - DOC: fix typo
14240 - CLEANUP: code style: use tabs to indent codes instead of spaces
14241 - DOC: fix a few config typos.
14242 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
14243 - DOC: lowercase format string in unique-id
14244 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
14245 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
14246 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
14247 - BUG/MINOR: build: handle whitespaces in wc -l output
14248 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
14249 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
14250 - BUG/MEDIUM: map: The map parser includes blank lines.
14251 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
14252 - MINOR: standard: add function "encode_chunk"
14253 - BUG/MINOR: http: fix encoding of samples used in http headers
14254 - MINOR: sample: add hex converter
14255 - MEDIUM: sample: change the behavior of the bin2str cast
14256 - MAJOR: auth: Change the internal authentication system.
14257 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
14258 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
14259 - MEDIUM: pattern: Change the prototype of the function pattern_register().
14260 - CONTRIB: ip6range: add a network IPv6 range to mask converter
14261 - MINOR: pattern: separe list element from the data part.
14262 - MEDIUM: pattern: add indexation function.
14263 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
14264 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
14265 - MINOR: sample: dont call the sample cast function "c_none"
14266 - MINOR: standard: Add function for converting cidr to network mask.
14267 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
14268 - MEDIUM: sample/http_proto: Add new type called method
14269 - MINOR: dumpstats: Group map inline help
14270 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
14271 - MINOR: dumpstats: change map inline sentences
14272 - MINOR: dumpstats: change the "get map" display management
14273 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
14274 - MEDIUM: pattern: The match function browse itself the list or the tree.
14275 - MEDIUM: pattern: Index IPv6 addresses in a tree.
14276 - MEDIUM: pattern: add delete functions
14277 - MEDIUM: pattern: add prune function
14278 - MEDIUM: pattern: add sample lookup function.
14279 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
14280 - MINOR: map/pattern: The sample parser is stored in the pattern
14281 - MAJOR: pattern/map: Extends the map edition system in the patterns
14282 - MEDIUM: pattern: merge same pattern
14283 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
14284 - MINOR: pattern: Each pattern is identified by unique id.
14285 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
14286 - MINOR: pattern: The function "pattern_register()" is no longer used.
14287 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
14288 - MINOR: pattern: store configuration reference for each acl or map pattern.
14289 - MINOR: pattern: Each pattern expression element store the reference struct.
14290 - MINOR: dumpstats: display the reference for th key/pattern and value.
14291 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
14292 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
14293 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
14294 - MINOR: pattern/map/acl: Centralization of the file parsers
14295 - MINOR: pattern: Check if the file reference is not used with acl and map
14296 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
14297 - MEDIUM: dumpstats: Display error message during add of values.
14298 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
14299 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
14300 - MINOR: cli: Block the usage of the command "acl add" in many cases.
14301 - MINOR: doc: Update the documentation about the map and acl
14302 - MINOR: pattern: index duplicates
14303 - MINOR: configuration: File and line propagation
14304 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
14305 - MINOR: standard: Disable ip resolution during the runtime
14306 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
14307 - MINOR: pattern: forbid dns resolutions
14308 - DOC: document "get map" / "get acl" on the CLI
14309 - MEDIUM: acl: Change the acl register struct
14310 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
14311 - DOC: pattern: pattern organisation schematics
14312 - MINOR: pattern/cli: Update used terms in documentation and cli
14313 - MINOR: cli: remove information about acl or map owner.
14314 - MINOR: session: don't always assume there's a listener
14315 - MINOR: pattern: Add function to prune and reload pattern list.
14316 - MINOR: standard: Add ipv6 support in the function url2sa().
14317 - MEDIUM: config: Dynamic sections.
14318 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
14319 - MINOR: http: Add the "language" converter to for use with accept-language
14320 - BUG/MINOR: log: Don't dump empty unique-id
14321 - BUG/MAJOR: session: fix a possible crash with src_tracked
14322 - DOC: Update "language" documentation
14323 - MINOR: http: add the function "del-header" to the directives http-request and http-response
14324 - DOC: add some information on capture.(req|res).hdr
14325 - MINOR: http: capture.req.method and capture.req.uri
14326 - MINOR: http: optimize capture.req.method and capture.req.uri
14327 - MINOR: session: clean up the connection free code
14328 - BUG/MEDIUM: checks: immediately report a connection success
14329 - MEDIUM: connection: don't use real send() flags in snd_buf()
14330 - OPTIM: ssl: implement dynamic record size adjustment
14331 - MINOR: stats: report exact last session time in backend too
14332 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
14333 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
14334 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
14335 - MINOR: channel: add the date of last read in the channel
14336 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
14337 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
14338 - MINOR: config: make the stream interface idle timer user-configurable
14339 - MINOR: config: add global directives to set default SSL ciphers
14340 - MINOR: sample: add a rand() sample fetch to return a sample.
14341 - BUG/MEDIUM: config: immediately abort if peers section has no name
14342 - BUG/MINOR: ssl: fix syntax in config error message
14343 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
14344 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
14345 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
14346 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
14347 - MEDIUM: acl: fix pattern type for payload / payload_lv
14348 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
14349 - BUG/MEDIUM: compression: fix the output type of the compressor name
14350 - BUG/MEDIUM: http: don't start to forward request data before the connect
14351 - MINOR: http: release compression context only in http_end_txn()
14352 - MINOR: protect ebimtree/ebistree against multiple inclusions
14353 - MEDIUM: proxy: create a tree to store proxies by name
14354 - MEDIUM: proxy: make findproxy() use trees to look up proxies
14355 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
14356 - MEDIUM: stick-table: lookup table names using trees.
14357 - MEDIUM: config: faster lookup for duplicated proxy name
14358 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
14359 - MINOR: sample: move smp_to_type to sample.c
14360 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
14361 - REORG: cfgparse: move server keyword parsing to server.c
14362 - BUILD: adjust makefile for AIX 5.1
14363 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
14364 - CLEANUP: pattern: move array definitions to proto/ and not types/
14365 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
14366 - BUILD: ssl: previous patch failed
14367 - BUILD/MEDIUM: standard: get rid of the last strcpy()
14368 - BUILD/MEDIUM: standard: get rid of sprintf()
14369 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
14370 - BUILD/MEDIUM: checks: get rid of sprintf()
14371 - BUILD/MEDIUM: http: remove calls to sprintf()
14372 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
14373 - BUILD/MINOR: ssl: remove one call to sprintf()
14374 - MEDIUM: http: don't reject anymore message bodies not containing the url param
14375 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
14376 - CLEANUP: http: rename http_process_request_body()
14377 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
14378 - MINOR: http: make msg->eol carry the last CRLF length
14379 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
14380 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
14381 - MAJOR: http: don't update msg->sov anymore while processing the body
14382 - MINOR: http: add a small helper to compute the amount of body bytes present
14383 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
14384 - MINOR: http: add a small helper to compute how far to rewind to find URI
14385 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
14386 - MAJOR: http: reset msg->sov after headers are forwarded
14387 - MEDIUM: http: forward headers again while waiting for connection to complete
14388 - BUG/MINOR: http: deinitialize compression after a parsing error
14389 - BUG/MINOR: http: deinitialize compression after a compression error
14390 - MEDIUM: http: headers must be forwarded even if data was already inspected
14391 - MAJOR: http: re-enable compression on chunked encoding
14392 - MAJOR: http/compression: fix chunked-encoded response processing
14393 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
14394 - MEDIUM: http: start to centralize the forwarding code
14395 - MINOR: http: further cleanups of response forwarding function
14396 - MEDIUM: http: only allocate the temporary compression buffer when needed
14397 - MAJOR: http: centralize data forwarding in the request path
14398 - CLEANUP: http: document the response forwarding states
14399 - CLEANUP: http: remove all calls to http_silent_debug()
14400 - DOC: internal: add some reminders about HTTP parsing and pointer states
14401 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
14402 - BUG/MINOR: stats: last session was not always set
14403 - DOC: add pointer to the Cyril's HTML doc in the README
14404 - MEDIUM: config: relax use_backend check to make the condition optional
14405 - MEDIUM: config: report misplaced http-request rules
14406 - MEDIUM: config: report misplaced use-server rules
14407 - DOC: update roadmap with what was done.
14408
Willy Tarreau1a34d572014-02-03 00:41:29 +0100144092014/02/03 : 1.5-dev22
14410 - MEDIUM: tcp-check new feature: connect
14411 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
14412 - MINOR: ssl: handshake optim for long certificate chains.
14413 - BUG/MINOR: pattern: pattern comparison executed twice
14414 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
14415 - BUG/MEDIUM: pattern: Segfault in binary parser
14416 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
14417 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
14418 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
14419 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
14420 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
14421 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
14422 - MINOR: doc: Bad cli function name.
14423 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
14424 - BUILD: last release inadvertently prepended a "+" in front of the date
14425 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
14426 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
14427 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
14428 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
14429 - MINOR: http: try to stick to same server after status 401/407
14430 - BUG/MINOR: http: always disable compression on HTTP/1.0
14431 - OPTIM: poll: restore polling after a poll/stop/want sequence
14432 - OPTIM: http: don't stop polling for read on the client side after a request
14433 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
14434 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
14435 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
14436 - BUG/MINOR: stream-int: do not clear the owner upon unregister
14437 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
14438 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
14439 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
14440 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
14441 - OPTIM: session: set the READ_DONTWAIT flag when connecting
14442 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
14443 - MINOR: session: factor out the connect time measurement
14444 - MEDIUM: session: prepare to support earlier transitions to the established state
14445 - MEDIUM: stream-int: make si_connect() return an established state when possible
14446 - MINOR: checks: use an inline function for health_adjust()
14447 - OPTIM: session: put unlikely() around the freewheeling code
14448 - MEDIUM: config: report a warning when multiple servers have the same name
14449 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
14450 - BUILD/MINOR: listener: remove a glibc warning on accept4()
14451 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
14452 - BUILD: listener: fix recent accept4() again
14453 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
14454 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
14455 - MEDIUM: listener: fix polling management in the accept loop
14456 - MINOR: protocol: improve the proto->drain() API
14457 - MINOR: connection: add a new conn_drain() function
14458 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
14459 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
14460 - MINOR: connection: add more error codes to report connection errors
14461 - MEDIUM: tcp: report connection error at the connection level
14462 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
14463 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
14464 - DOC: fix misleading information about SIGQUIT
14465 - BUG/MAJOR: fix freezes during compression
14466 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
14467 - BUILD: fix VERDATE exclusion regex
14468 - CLEANUP: polling: rename "spec_e" to "state"
14469 - DOC: add a diagram showing polling state transitions
14470 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
14471 - REORG: polling: rename "fd_spec" to "fd_cache"
14472 - REORG: polling: rename the cache allocation functions
14473 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
14474 - MAJOR: polling: rework the whole polling system
14475 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
14476 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
14477 - MEDIUM: connection: add check for readiness in I/O handlers
14478 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
14479 - MINOR: stream-interface: no need to call fd_stop_both() on error
14480 - MEDIUM: connection: no need to recheck FD state
14481 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
14482 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
14483 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
14484 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
14485 - MEDIUM: polling: centralize polled events processing
14486 - MINOR: polling: create function fd_compute_new_polled_status()
14487 - MINOR: cli: add more information to the "show info" output
14488 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
14489 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
14490 - REORG: stats: move the stats socket states to dumpstats.c
14491 - MINOR: cli: add the new "show pools" command
14492 - BUG/MEDIUM: counters: flush content counters after each request
14493 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
14494 - MINOR: tools: add very basic support for composite pointers
14495 - MEDIUM: counters: stop relying on session flags at all
14496 - BUG/MINOR: cli: fix missing break in command line parser
14497 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
14498 - MAJOR: http: update connection mode configuration
14499 - MEDIUM: http: make keep-alive + httpclose be passive mode
14500 - MAJOR: http: switch to keep-alive mode by default
14501 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
14502 - BUG/MEDIUM: listener: improve detection of non-working accept4()
14503 - BUILD: listener: add fcntl.h and unistd.h
14504 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
14505
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100145062013/12/17 : 1.5-dev21
14507 - MINOR: stats: don't use a monospace font to report numbers
14508 - MINOR: session: remove debugging code
14509 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
14510 - MEDIUM: http: make option http_proxy automatically rewrite the URL
14511 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
14512 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
14513 - BUG/MEDIUM: checks: servers must not start in slowstart mode
14514 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
14515 - MEDIUM: stream-int: implement a very simplistic idle connection manager
14516 - DOC: update the ROADMAP file
14517
Willy Tarreau11f64d62013-12-16 02:32:37 +0100145182013/12/16 : 1.5-dev20
14519 - DOC: add missing options to the manpage
14520 - DOC: add manpage references to all system calls
14521 - DOC: update manpage reference to haproxy-en.txt
14522 - DOC: remove -s and -l options from the manpage
14523 - DOC: missing information for the "description" keyword
14524 - DOC: missing http-send-name-header keyword in keyword table
14525 - MINOR: tools: function my_memmem() to lookup binary contents
14526 - MEDIUM: checks: add send/expect tcp based check
14527 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
14528 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
14529 - DOC: Documentation for hashing function, with test results.
14530 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
14531 - BUILD: ssl: compilation issue with openssl v0.9.6.
14532 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
14533 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
14534 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
14535 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
14536 - CLEANUP: session: remove event_accept() which was not used anymore
14537 - BUG/MINOR: deinit: free fdinfo while doing cleanup
14538 - DOC: minor typo fix in documentation
14539 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
14540 - BUG/MINOR: use the same check condition for server as other algorithms
14541 - DOC: fix typo in comments
14542 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
14543 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
14544 - MINOR: buffer: align the last output line of buffer_dump()
14545 - MINOR: buffer: align the last output line if there are less than 8 characters left
14546 - DOC: stick-table: modify the description
14547 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
14548 - CLEANUP: code style: use tabs to indent codes
14549 - DOC: checkcache: block responses with cacheable cookies
14550 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
14551 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
14552 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
14553 - LOW: systemd-wrapper: Write debug information to stdout
14554 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
14555 - MEDIUM: http: add IPv6 support for "set-tos"
14556 - DOC: ssl: update build instructions to use new SSL_* variables
14557 - BUILD/MINOR: systemd: fix compiler warning about unused result
14558 - url32+src - like base32+src but whole url including parameters
14559 - BUG/MINOR: fix forcing fastinter in "on-error"
14560 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
14561 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
14562 - MEDIUM: Split up struct server's check element
14563 - MEDIUM: Move result element to struct check
14564 - MEDIUM: Paramatise functions over the check of a server
14565 - MEDIUM: cfgparse: Factor out check initialisation
14566 - MEDIUM: Add state to struct check
14567 - MEDIUM: Move health element to struct check
14568 - MEDIUM: Add helper for task creation for checks
14569 - MEDIUM: Add helper function for failed checks
14570 - MEDIUM: Log agent fail, stopped or down as info
14571 - MEDIUM: Remove option lb-agent-chk
14572 - MEDIUM: checks: Add supplementary agent checks
14573 - MEDIUM: Do not mark a server as down if the agent is unavailable
14574 - MEDIUM: Set rise and fall of agent checks to 1
14575 - MEDIUM: Add enable and disable agent unix socket commands
14576 - MEDIUM: Add DRAIN state and report it on the stats page
14577 - BUILD/MINOR: missing header file
14578 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
14579 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
14580 - MINOR: http: some exported functions were not in the header file
14581 - MINOR: http: change url_decode to return the size of the decoded string.
14582 - BUILD/MINOR: missing header file
14583 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
14584 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
14585 - MINOR: sample: export the generic sample conversion parser
14586 - MINOR: sample: export sample_casts
14587 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
14588 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
14589 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
14590 - MINOR: tools: Add a function to convert buffer to an ipv6 address
14591 - MINOR: acl: export acl arrays
14592 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
14593 - MINOR: acl: Extract the pattern matching function
14594 - MINOR: sample: Define new struct sample_storage
14595 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
14596 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
14597 - MEDIUM: pattern: create pattern expression
14598 - MEDIUM: pattern: rename "acl" prefix to "pat"
14599 - MEDIUM: sample: let the cast functions set their output type
14600 - MINOR: sample: add a private field to the struct sample_conv
14601 - MINOR: map: Define map types
14602 - MEDIUM: sample: add the "map" converter
14603 - MEDIUM: http: The redirect strings follows the log format rules.
14604 - BUG/MINOR: acl: acl parser does not recognize empty converter list
14605 - BUG/MINOR: map: The map list was declared in the map.h file
14606 - MINOR: map: Cleanup the initialisation of map descriptors.
14607 - MEDIUM: map: merge identical maps
14608 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
14609 - BUG/MEDIUM: map: Bad map file parser
14610 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
14611 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
14612 - MINOR: map: export map_get_reference() function
14613 - MINOR: pattern: Each pattern sets the expected input type
14614 - MEDIUM: acl: Last patch change the output type
14615 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
14616 - MINOR: standard: The function parse_binary() can use preallocated buffer
14617 - MINOR: regex: Change the struct containing regex
14618 - MINOR: regex: Copy the original regex expression into string.
14619 - MINOR: pattern: add support for compiling patterns for lookups
14620 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
14621 - MINOR: map: export parse output sample functions
14622 - MINOR: pattern: add function to lookup a specific entry in pattern list
14623 - MINOR: pattern/map: Each pattern must free the associated sample
14624 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
14625 - MEDIUM: map: dynamic manipulation of maps
14626 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
14627 - BUG/MINOR: log: junk at the end of syslog packet
14628 - MINOR: Makefile: provide cscope rule
14629 - DOC: compression: chunk are not compressed anymore
14630 - MEDIUM: session: disable lingering on the server when the client aborts
14631 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
14632 - DOC: remove the comment saying that SSL certs are not checked on the server side
14633 - BUG: counters: third counter was not stored if others unset
14634 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
14635 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
14636 - BUG/MAJOR: http: sample prefetch code was not properly migrated
14637 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
14638 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
14639 - OPTIM: splicing: use splice() for the last block when relevant
14640 - MEDIUM: sample: handle comma-delimited converter list
14641 - MINOR: sample: fix sample_process handling of unstable data
14642 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
14643 - MINOR: sample: add a new "date" fetch to return the current date
14644 - MINOR: samples: add the http_date([<offset>]) sample converter.
14645 - DOC: minor improvements to the part on the stats socket.
14646 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
14647 - MINOR: payload: split smp_fetch_rdp_cookie()
14648 - MINOR: counters: factor out smp_fetch_sc*_tracked
14649 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
14650 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
14651 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
14652 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
14653 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
14654 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
14655 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
14656 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
14657 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
14658 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
14659 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
14660 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
14661 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
14662 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
14663 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
14664 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
14665 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
14666 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
14667 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
14668 - MINOR: session: make the number of stick counter entries more configurable
14669 - MEDIUM: counters: support passing the counter number as a fetch argument
14670 - MEDIUM: counters: support looking up a key in an alternate table
14671 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
14672 - MINOR: cli: make it possible to enter multiple values at once with "set table"
14673 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
14674 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
14675 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
14676 - MINOR: config: warn when a server with no specific port uses rdp-cookie
14677 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
14678 - DOC: add a mention about the limited chunk size
14679 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
14680 - MEDIUM: stick-tables: flush old entries upon soft-stop
14681 - MINOR: tcp: add new "close" action for tcp-response
14682 - MINOR: payload: provide the "res.len" fetch method
14683 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
14684 - MINOR: http: compute response time before processing headers
14685 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
14686 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
14687 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
14688 - BUG/MEDIUM: session: risk of crash on out of memory conditions
14689 - BUG/MINOR: peers: set the accept date in outgoing connections
14690 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
14691 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
14692 - MINOR: acl: add a warning when an ACL keyword is used without any value
14693 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
14694 - BUG/MINOR: acl: remove patterns from the tree before freeing them
14695 - MEDIUM: backend: add support for the wt6 hash
14696 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
14697 - OPTIM/MINOR: mark the source address as already known on accept()
14698 - BUG/MINOR: stats: don't count tarpitted connections twice
14699 - CLEANUP: http: homogenize processing of denied req counter
14700 - CLEANUP: http: merge error handling for req* and http-request *
14701 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
14702 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
14703 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
14704 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
14705 - MINOR: stats: report correct throttling percentage for servers in slowstart
14706 - OPTIM: connection: fold the error handling with handshake handling
14707 - MINOR: peers: accept to learn strings of different lengths
14708 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
14709 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
14710 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
14711 - BUG/MINOR: connection: fix typo in error message report
14712 - BUG/MINOR: backend: fix target address retrieval in transparent mode
14713 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
14714 - BUG/MINOR: log: fix log-format parsing errors
14715 - DOC: add some information about how to apply converters to samples
14716 - MINOR: acl/pattern: use types different from int to clarify who does what.
14717 - MINOR: pattern: import acl_find_match_name() into pattern.h
14718 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
14719 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
14720 - BUG/MINOR: http: usual deinit stuff in last commit
14721 - BUILD: log: silent a warning about isblank() with latest patches
14722 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
14723 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
14724 - BUG/MINOR: checks: don't consider errno and use conn->err_code
14725 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
14726 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
14727 - BUG/MINOR: tcp: check that no error is pending during a connect probe
14728 - BUG/MINOR: connection: check EINTR when sending a PROXY header
14729 - MEDIUM: connection: set the socket shutdown flags on socket errors
14730 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
14731 - MINOR: connection: clear errno prior to checking for errors
14732 - BUG/MINOR: checks: do not trust errno in write event before any syscall
14733 - MEDIUM: checks: centralize error reporting
14734 - OPTIM: checks: don't poll on recv when using plain TCP connects
14735 - OPTIM: checks: avoid setting SO_LINGER twice
14736 - MINOR: tools: add a generic binary hex string parser
14737 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
14738 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
14739 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
14740 - BUG/MINOR: acl: fix sample expression error reporting
14741 - BUG/MINOR: checks: tcp-check actions are enums, not flags
14742 - MEDIUM: checks: make tcp-check perform multiple send() at once
14743 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
14744 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
14745 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
14746 - CLEANUP: stream_interface: remove unused field err_loc
14747 - MEDIUM: stats: don't use conn->xprt_st anymore
14748 - MINOR: session: add a simple function to retrieve a session from a task
14749 - MEDIUM: stats: don't use conn->xprt_ctx anymore
14750 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
14751 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
14752 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
14753 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
14754 - MAJOR: stats: move the HTTP stats handling to its applet
14755 - MEDIUM: stats: move request argument processing to the final step
14756 - MEDIUM: session: detect applets from the session by using s->target
14757 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
14758 - MAJOR: session: pass applet return traffic through the response analysers
14759 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
14760 - MINOR: stream-int: make the shutr/shutw functions void
14761 - MINOR: obj: provide a safe and an unsafe access to pointed objects
14762 - MINOR: connection: add a field to store an object type
14763 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
14764 - MEDIUM: stream interface: move the peers' ptr into the applet context
14765 - MINOR: stream-interface: move the applet context to its own struct
14766 - MINOR: obj: introduce a new type appctx
14767 - MINOR: stream-int: rename ->applet to ->appctx
14768 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
14769 - MINOR: stream-int: add a new pointer to the end point
14770 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
14771 - MAJOR: stream interface: remove the ->release function pointer
14772 - MEDIUM: stream-int: make ->end point to the connection or the appctx
14773 - CLEANUP: stream-int: remove obsolete si_ctrl function
14774 - MAJOR: stream-int: stop using si->conn and use si->end instead
14775 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
14776 - MEDIUM: session: attach incoming connection to target on embryonic sessions
14777 - MINOR: connection: add conn_init() to (re)initialize a connection
14778 - MINOR: checks: call conn_init() to properly initialize the connection.
14779 - MINOR: peers: make use of conn_init() to initialize the connection
14780 - MINOR: session: use conn_init() to initialize the connections
14781 - MINOR: http: use conn_init() to reinitialize the server connection
14782 - MEDIUM: connection: replace conn_prepare with conn_assign
14783 - MINOR: get rid of si_takeover_conn()
14784 - MINOR: connection: add conn_new() / conn_free()
14785 - MAJOR: connection: add two new flags to indicate readiness of control/transport
14786 - MINOR: stream-interface: introduce si_reset() and si_set_state()
14787 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
14788 - MINOR: connection: replace conn_assign with conn_attach
14789 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
14790 - MAJOR: stream interface: dynamically allocate the outgoing connection
14791 - MEDIUM: connection: move the send_proxy offset to the connection
14792 - MINOR: connection: check for send_proxy during the connect(), not the SI
14793 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
14794 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
14795 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
14796 - MAJOR: stream-interface: dynamically allocate the applet context
14797 - MEDIUM: session: automatically register the applet designated by the target
14798 - MEDIUM: stats: delay appctx initialization
14799 - CLEANUP: peers: use less confusing state/status code names
14800 - MEDIUM: peers: delay appctx initialization
14801 - MINOR: stats: provide some appctx information in "show sess all"
14802 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
14803 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
14804 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
14805 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
14806 - DIET/MINOR: session: reduce the struct session size by 8 bytes
14807 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
14808 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
14809 - MINOR: http: switch the http state to an enum
14810 - MINOR: http: use an enum for the auth method in http_auth_data
14811 - DIET/MINOR: task: reduce struct task size by 8 bytes
14812 - MINOR: stream_interface: add reporting of ressouce allocation errors
14813 - MINOR: session: report lack of resources using the new stream-interface's error code
14814 - BUILD: simplify the date and version retrieval in the makefile
14815 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
14816 - BUILD: use format tags in VERDATE and SUBVERS files
14817 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
14818 - CLEANUP: check: server port is unsigned
14819 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
14820 - MINOR: tools: buf2ip6 must not modify output on failure
14821 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
14822 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
14823 - MINOR: arg: improve wording on error reporting
14824 - BUG/MEDIUM: sample: simplify and fix the argument parsing
14825 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
14826 - MEDIUM: acl: fix the initialization order of the ACL expression
14827 - CLEANUP: acl: remove useless blind copy-paste from sample converters
14828 - TESTS: add regression tests for ACL and sample expression parsers
14829 - BUILD: time: adapt the type of TV_ETERNITY to the local system
14830 - MINOR: chunks: allocate the trash chunks before parsing the config
14831 - BUILD: definitely silence some stupid GCC warnings
14832 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
14833 - MINOR: checks: improve handling of the servers tracking chain
14834 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
14835 - MINOR: checks: use an enum instead of flags to report a check result
14836 - MINOR: checks: rename the state flags
14837 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
14838 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
14839 - MINOR: checks: fix agent check interval computation
14840 - MINOR: checks: add a PAUSED state for the checks
14841 - MINOR: checks: create the agent tasks even when no check is configured
14842 - MINOR: checks: add a flag to indicate what check is an agent
14843 - MEDIUM: checks: enable agent checks even if health checks are disabled
14844 - BUG/MEDIUM: checks: ensure we can enable a server after boot
14845 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
14846 - BUG/MAJOR: session: repair tcp-request connection rules
14847 - BUILD: fix SUBVERS extraction in the Makefile
14848 - BUILD: pattern: silence a warning about uninitialized value
14849 - BUILD: log: fix build warning on Solaris
14850 - BUILD: dumpstats: fix build error on Solaris
14851 - DOC: move option pgsql-check to the correct place
14852 - DOC: move option tcp-check to the proper place
14853 - MINOR: connection: add simple functions to report connection readiness
14854 - MEDIUM: connection: centralize handling of nolinger in fd management
14855 - OPTIM: http: set CF_READ_DONTWAIT on response message
14856 - OPTIM: http: do not re-enable reading on client side while closing the server side
14857 - MINOR: config: add option http-keep-alive
14858 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
14859 - MAJOR: stream-int: handle the connection reuse in si_connect()
14860 - MAJOR: http: add the keep-alive transition on the server side
14861 - MAJOR: backend: enable connection reuse
14862 - MINOR: http: add option prefer-last-server
14863 - MEDIUM: http: do not report connection errors for second and further requests
14864
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200148652013/06/17 : 1.5-dev19
14866 - MINOR: stats: remove the autofocus on the scope input field
14867 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
14868 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
14869 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
14870 - MEDIUM: ssl: improve crt-list format to support negation
14871 - BUG: ssl: fix crt-list for clients not supporting SNI
14872 - MINOR: stats: show soft-stopped servers in different color
14873 - BUG/MINOR: config: "source" does not work in defaults section
14874 - BUG: regex: fix pcre compile error when using JIT
14875 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
14876 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
14877 - MINOR: show PCRE version and JIT status in -vv
14878 - BUG/MINOR: jit: don't rely on USE flag to detect support
14879 - DOC: readme: add suggestion to link against static openssl
14880 - DOC: examples: provide simplified ssl configuration
14881 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
14882 - MINOR: tproxy: add support for FreeBSD
14883 - MINOR: tproxy: add support for OpenBSD
14884 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
14885 - CLEANUP: fix minor typo in error message.
14886 - CLEANUP: fix missing include <string.h> in proto/listener.h
14887 - CLEANUP: protect checks.h from multiple inclusions
14888 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
14889 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
14890 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
14891 - BUG/MEDIUM: splicing is broken since 1.5-dev12
14892 - BUG/MAJOR: acl: add implicit arguments to the resolve list
14893 - BUG/MINOR: tcp: fix error reporting for TCP rules
14894 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
14895 - MINOR: stick-table: allow to allocate an entry without filling it
14896 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
14897 - MINOR: session: only call http_send_name_header() when changing the server
14898 - MINOR: tcp: report the erroneous word in tcp-request track*
14899 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
14900 - BUG/MEDIUM: log: fix regression on log-format handling
14901 - MEDIUM: log: report file name, line number, and directive name with log-format errors
14902 - BUG/MINOR: cli: "clear table" did not work anymore without a key
14903 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
14904 - BUG/MAJOR: http: compression still has defects on chunked responses
14905 - BUG/MINOR: stats: fix confirmation links on the stats interface
14906 - BUG/MINOR: stats: the status bar does not appear anymore after a change
14907 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
14908 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
14909 - BUG/MINOR: fix unterminated ACL array in compression
14910 - BUILD: last fix broke non-linux platforms
14911 - MINOR: init: indicate the SSL runtime version on -vv.
14912 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
14913 - BUILD: stdbool is not portable (again)
14914 - DOC: readme: add a small reminder about restrictions to respect in the code
14915 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
14916 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
14917 - DOC: fix wrong copy-paste in the rspdel example
14918 - MINOR: counters: make it easier to extend the amount of tracked counters
14919 - MEDIUM: counters: add support for tracking a third counter
14920 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
14921 - BUG/MAJOR: http: always ensure response buffer has some room for a response
14922 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
14923 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
14924 - MINOR: log: add a new flag 'L' for locally processed requests
14925 - MINOR: http: add full-length header fetch methods
14926 - MEDIUM: protocol: implement a "drain" function in protocol layers
14927 - MEDIUM: http: add a new "http-response" ruleset
14928 - MEDIUM: http: add the "set-nice" action to http-request and http-response
14929 - MEDIUM: log: add a log level override value in struct session
14930 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
14931 - MEDIUM: http: add support for "set-tos" in http-request/http-response
14932 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
14933 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
14934 - MEDIUM: acl: automatically detect the type of certain fetches
14935 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
14936 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
14937 - DOC: major reorg of ACL + sample fetch
14938 - CLEANUP: http: remove the bogus urlp_ip ACL match
14939 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
14940 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
14941 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
14942 - DOC: update ROADMAP file
14943 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
14944 - MEDIUM: stats: add proxy name filtering on the statistic page
14945
Willy Tarreau289dd922013-04-03 02:26:31 +0200149462013/04/03 : 1.5-dev18
14947 - DOCS: Add explanation of intermediate certs to crt paramater
14948 - DOC: typo and minor fixes in compression paragraph
14949 - MINOR: config: http-request configuration error message misses new keywords
14950 - DOC: minor typo fix in documentation
14951 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
14952 - MEDIUM: ssl: add bind-option "strict-sni"
14953 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
14954 - MEDIUM: regex: Use PCRE JIT in acl
14955 - DOC: simplify bind option "interface" explanation
14956 - DOC: tfo: bump required kernel to linux-3.7
14957 - BUILD: add explicit support for TFO with USE_TFO
14958 - MEDIUM: New cli option -Ds for systemd compatibility
14959 - MEDIUM: add haproxy-systemd-wrapper
14960 - MEDIUM: add systemd service
14961 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
14962 - BUG/MEDIUM: remove supplementary groups when changing gid
14963 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
14964 - BUG/MINOR: Correct logic in cut_crlf()
14965 - CLEANUP: checks: Make desc argument to set_server_check_status const
14966 - CLEANUP: dumpstats: Make cli_release_handler() static
14967 - MEDIUM: server: Break out set weight processing code
14968 - MEDIUM: server: Allow relative weights greater than 100%
14969 - MEDIUM: server: Tighten up parsing of weight string
14970 - MEDIUM: checks: Add agent health check
14971 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
14972 - BUG/MINOR: time: frequency counters are not totally accurate
14973 - BUG/MINOR: http: don't process abortonclose when request was sent
14974 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
14975 - BUG/MEDIUM: checks: ignore late resets after valid responses
14976 - DOC: fix bogus recommendation on usage of gpc0 counter
14977 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
14978 - MINOR: signal: don't block SIGPROF by default
14979 - OPTIM: epoll: make use of EPOLLRDHUP
14980 - OPTIM: splice: detect shutdowns and avoid splice() == 0
14981 - OPTIM: splice: assume by default that splice is working correctly
14982 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
14983 - BUG/MEDIUM: peers: only the last peers section was used by tables
14984 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
14985 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
14986 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
14987 - BUG/MINOR: config: free peer's address when exiting upon parsing error
14988 - BUG/MINOR: config: check the proper variable when parsing log minlvl
14989 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
14990 - BUG/MINOR: cli: show sess should always validate s->listener
14991 - BUG/MINOR: log: improper NULL return check on utoa_pad()
14992 - CLEANUP: http: remove a useless null check
14993 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
14994 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
14995 - BUG/MEDIUM: tools: off-by-one in quote_arg()
14996 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
14997 - BUG/MINOR: unix: remove the 'level' field from the ux struct
14998 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
14999 - CLEANUP: config: slowstart is never negative
15000 - CLEANUP: config: maxcompcpuusage is never negative
15001 - BUG/MEDIUM: log: emit '-' for empty fields again
15002 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
15003 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
15004 - BUILD: improve the makefile's support for libpcre
15005 - MEDIUM: halog: add support for counting per source address (-ic)
15006 - MEDIUM: tools: make str2sa_range support all address syntaxes
15007 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
15008 - MEDIUM: config: use str2sa_range() to parse server addresses
15009 - MEDIUM: config: use str2sa_range() to parse peers addresses
15010 - MINOR: tests: add a config file to ease address parsing tests.
15011 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
15012 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
15013 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
15014 - MINOR: config: report missing peers section name
15015 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
15016 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
15017 - MINOR: tools: prepare str2sa_range() to return an error message
15018 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
15019 - MINOR: tools: prepare str2sa_range() to accept a prefix
15020 - MEDIUM: tools: make str2sa_range() parse unix addresses too
15021 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
15022 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
15023 - MEDIUM: config: use str2sa_range() to parse log addresses
15024 - CLEANUP: tools: remove str2sun() which is not used anymore.
15025 - MEDIUM: config: add complete support for str2sa_range() in dispatch
15026 - MEDIUM: config: add complete support for str2sa_range() in server addr
15027 - MEDIUM: config: add complete support for str2sa_range() in 'server'
15028 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
15029 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
15030 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
15031 - CLEANUP: config: do not use multiple errmsg at once
15032 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
15033 - MAJOR: listener: support inheriting a listening fd from the parent
15034 - MAJOR: tools: support environment variables in addresses
15035 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
15036 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
15037 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
15038 - DOC: mention the new HTTP 307 and 308 redirect statues
15039 - MEDIUM: poll: do not use FD_* macros anymore
15040 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
15041 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
15042 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
15043 - BUILD: fix usual isdigit() warning on solaris
15044 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
15045 - OPTIM: buffer: remove one jump in buffer_count()
15046 - OPTIM: http: improve branching in chunk size parser
15047 - OPTIM: http: optimize the response forward state machine
15048 - BUILD: enable poll() by default in the makefile
15049 - BUILD: add explicit support for Mac OS/X
15050 - BUG/MAJOR: http: use a static storage for sample fetch context
15051 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
15052 - BUG/MAJOR: http: fix regression introduced by commit a890d072
15053 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
15054 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
15055 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
15056 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
15057 - MINOR: log: indicate it when some unreliable sample fetches are logged
15058 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
15059 - MINOR: backend: rename sample fetch functions and declare the sample keywords
15060 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
15061 - MINOR: listener: rename sample fetch functions and declare the sample keywords
15062 - MEDIUM: http: unify acl and sample fetch functions
15063 - MINOR: session: rename sample fetch functions and declare the sample keywords
15064 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
15065 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
15066 - MAJOR: acl: remove fetch argument validation from the ACL struct
15067 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
15068 - MINOR: payload: add new direction-explicit sample fetches
15069 - CLEANUP: acl: remove ACL hooks which were never used
15070 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
15071 - MINOR: sample: provide a function to report the name of a sample check point
15072 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
15073 - CLEANUP: acl: remove unused references to ACL_USE_*
15074 - MINOR: http: replace acl_parse_ver with acl_parse_str
15075 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
15076 - MAJOR: acl: add option -m to change the pattern matching method
15077 - MINOR: acl: remove the use_count in acl keywords
15078 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
15079 - MEDIUM: acl: support using sample fetches directly in ACLs
15080 - MEDIUM: http: remove val_usr() to validate user_lists
15081 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
15082 - MINOR: ssl: add support for the "alpn" bind keyword
15083 - MINOR: http: status code 303 is HTTP/1.1 only
15084 - MEDIUM: http: implement redirect 307 and 308
15085 - MINOR: http: status 301 should not be marked non-cacheable
15086
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100150872012/12/28 : 1.5-dev17
15088 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
15089 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
15090 - BUG/MINOR: stats: last fix was still wrong
15091 - BUG/MINOR: stats: http-request rules still don't cope with stats
15092 - BUG/MINOR: http: http-request add-header emits a corrupted header
15093 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
15094 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
15095 - BUILD: log: unused variable svid
15096 - CLEANUP: http: rename the misleading http_check_access_rule
15097 - MINOR: http: move redirect rule processing to its own function
15098 - REORG: config: move the http redirect rule parser to proto_http.c
15099 - MEDIUM: http: add support for "http-request redirect" rules
15100 - MEDIUM: http: add support for "http-request tarpit" rule
15101
Willy Tarreau69eda352012-12-24 16:48:14 +0100151022012/12/24 : 1.5-dev16
15103 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
15104 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
15105 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
15106 - MINOR: contrib: make the iprange tool grep for addresses
15107 - CLEANUP: polling: gcc doesn't always optimize constants away
15108 - OPTIM: poll: optimize fd management functions for low register count CPUs
15109 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
15110 - OPTIM: epoll: use a temp variable for intermediary flag computations
15111 - OPTIM: epoll: current fd does not count as a new one
15112 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
15113 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
15114 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
15115 - BUG/MINOR: stream_interface: don't return when the fd is already set
15116 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
15117 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
15118 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
15119 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
15120 - BUG/MINOR: http: don't abort client connection on premature responses
15121 - BUILD: no need to clean up when making git-tar
15122 - MINOR: log: add a tag for amount of bytes uploaded from client to server
15123 - BUG/MEDIUM: log: fix possible segfault during config parsing
15124 - MEDIUM: log: change a few log tokens to make them easier to remember
15125 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
15126 - MEDIUM: log-format: make the format parser more robust and more extensible
15127 - MINOR: sample: support cast from bool to string
15128 - MINOR: samples: add a function to fetch and convert any sample to a string
15129 - MINOR: log: add lf_text_len
15130 - MEDIUM: log: add the ability to include samples in logs
15131 - REORG: stats: massive code reorg and cleanup
15132 - REORG: stats: move the HTTP header injection to proto_http
15133 - REORG: stats: functions are now HTTP/CLI agnostic
15134 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
15135 - MINOR: chunks: centralize the trash chunk allocation
15136 - MEDIUM: stats: use hover boxes instead of title to report details
15137 - MEDIUM: stats: use multi-line tips to display detailed counters
15138 - MINOR: tools: simplify the use of the int to ascii macros
15139 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
15140 - MINOR: http: prepare to support more http-request actions
15141 - MINOR: log: make parse_logformat_string() take a const char *
15142 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
15143
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100151442012/12/12 : 1.5-dev15
15145 - DOC: add a few precisions on compression
15146 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
15147 - BUG/MINOR: ssl: One free session in cache remains unused.
15148 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
15149 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
15150 - MINOR: acl: add fetch for server session rate
15151 - BUG/MINOR: compression: Content-Type is case insensitive
15152 - MINOR: compression: disable on multipart or status != 200
15153 - BUG/MINOR: http: don't report client aborts as server errors
15154 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
15155 - MINOR: http: factor out the content-type checks
15156 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
15157 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
15158 - BUG/MINOR: http: disable compression when message has no body
15159 - MINOR: compression: make the stats a bit more robust
15160 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
15161 - MINOR: connection: don't remove failed handshake flags
15162 - MEDIUM: connection: add an error code in connections
15163 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
15164 - MEDIUM: connection: add error reporting for the PROXY protocol header
15165 - MEDIUM: connection: add error reporting for the SSL
15166 - DOC: document the connection error format in logs
15167 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
15168 - BUILD: stdbool is not portable
15169 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
15170 - BUG/MAJOR: raw_sock: must check error code on hangup
15171 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
15172 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
15173 - MINOR: stats: add a few more information on session dump
15174 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
15175 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
15176 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
15177 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
15178 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
15179 - CLEANUP: proto_tcp: use the same code to bind servers and backends
15180 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
15181 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
15182 - MEDIUM: proto_tcp: add support for tracking L7 information
15183 - MEDIUM: counters: add sc1_trackers/sc2_trackers
15184 - MINOR: http: add the "base32" pattern fetch function
15185 - MINOR: http: add the "base32+src" fetch method.
15186 - CLEANUP: session: use an array for the stick counters
15187 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
15188 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
15189 - BUG/MAJOR: connection: always recompute polling status upon I/O
15190 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
15191 - MINOR: config: improve error checking on TCP stick-table tracking
15192 - DOC: add some clarifications to the readme
15193
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100151942012/11/26 : 1.5-dev14
15195 - DOC: fix minor typos
15196 - BUG/MEDIUM: compression: does not forward trailers
15197 - MINOR: buffer_dump with ASCII
15198 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
15199 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
15200 - BUG/MINOR: checks: don't mark the FD as closed before transport close
15201 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
15202 - MINOR: cli: report the msg state in full text in "show sess $PTR"
15203 - CLEANUP: checks: rename some server check flags
15204 - MAJOR: checks: rework completely bogus state machine
15205 - BUG/MINOR: checks: slightly clean the state machine up
15206 - MEDIUM: checks: avoid waking the application up for pure TCP checks
15207 - MEDIUM: checks: close the socket as soon as we have a response
15208 - BUG/MAJOR: checks: close FD on all timeouts
15209 - MINOR: checks: fix recv polling after connect()
15210 - MEDIUM: connection: provide a common conn_full_close() function
15211 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
15212 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
15213 - MINOR: listeners: make the accept loop more robust when maxaccept==0
15214 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
15215 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
15216 - BUG/MINOR: stats: fix inversion of the report of a check in progress
15217 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
15218 - BUG/MEDIUM: connection: always disable polling upon error
15219 - MINOR: connection: abort earlier when errors are detected
15220 - BUG/MEDIUM: checks: report handshake failures
15221 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
15222 - MINOR: tcp: add support for the "v6only" bind option
15223 - MINOR: stats: also report the computed compression savings in html stats
15224 - MINOR: stats: report the total number of compressed responses per front/back
15225 - MINOR: tcp: add support for the "v4v6" bind option
15226 - DOC: stats: document the comp_rsp stats column
15227 - BUILD: buffer: fix another isprint() warning on solaris
15228 - MINOR: cli: add support for the "show sess all" command
15229 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
15230 - MINOR: cli: improve output format for show sess $ptr
15231
Willy Tarreauad15d122012-11-22 01:11:33 +0100152322012/11/22 : 1.5-dev13
15233 - BUILD: fix build issue without USE_OPENSSL
15234 - BUILD: fix compilation error with DEBUG_FULL
15235 - DOC: ssl: remove prefer-server-ciphers documentation
15236 - DOC: ssl: surround keywords with quotes
15237 - DOC: fix minor typo on http-send-name-header
15238 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
15239 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
15240 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
15241 - BUILD: report zlib support in haproxy -vv
15242 - DOC: compression: add some details and clean up the formatting
15243 - DOC: Change is_ssl acl to ssl_fc acl in example
15244 - DOC: make it clear what the HTTP request size is
15245 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
15246 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
15247 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
15248 - DOC: ssl: add 'ecdhe' statement on 'bind'
15249 - MEDIUM: ssl: add client certificate authentication support
15250 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
15251 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
15252 - DOC: ssl: add fetch and ACL 'client_cert'
15253 - MINOR: ssl: add ignore verify errors options
15254 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
15255 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
15256 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
15257 - MINOR: ssl: add fetches and ACLs to return verify errors
15258 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
15259 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
15260 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
15261 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
15262 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
15263 - MEDIUM: config: authorize frontend and listen without bind.
15264 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
15265 - DOC: ssl: add 'no-tls-tickets' statement documentation.
15266 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
15267 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
15268 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
15269 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
15270 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
15271 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
15272 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
15273 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
15274 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
15275 - MINOR: ssl: use bit fields to store ssl options instead of one int each
15276 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
15277 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
15278 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
15279 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
15280 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
15281 - MEDIUM: ssl: reject ssl server keywords in default-server statement
15282 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
15283 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
15284 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
15285 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
15286 - MINOR: acl: add parse and match primitives to use binary type on ACLs
15287 - MINOR: sample: export 'sample_get_trash_chunk(void)'
15288 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
15289 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
15290 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
15291 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
15292 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
15293 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
15294 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
15295 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
15296 - MINOR: ssl: add 'crt' statement on server.
15297 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
15298 - BUG/MEDIUM: ssl: review polling on reneg.
15299 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
15300 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
15301 - MINOR: build: allow packagers to specify the ssl cache size
15302 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
15303 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
15304 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
15305 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
15306 - DOC: duplicate ssl_sni section
15307 - MEDIUM: HTTP compression (zlib library support)
15308 - CLEANUP: use struct comp_ctx instead of union
15309 - BUILD: remove dependency to zlib.h
15310 - MINOR: compression: memlevel and windowsize
15311 - MEDIUM: use pool for zlib
15312 - MINOR: compression: try init in cfgparse.c
15313 - MINOR: compression: init before deleting headers
15314 - MEDIUM: compression: limit RAM usage
15315 - MINOR: compression: tune.comp.maxlevel
15316 - MINOR: compression: maximum compression rate limit
15317 - MINOR: log-format: check number of arguments in cfgparse.c
15318 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
15319 - BUG/MINOR: compression: deinit zlib only when required
15320 - MEDIUM: compression: don't compress when no data
15321 - MEDIUM: compression: use pool for comp_ctx
15322 - MINOR: compression: rate limit in 'show info'
15323 - MINOR: compression: report zlib memory usage
15324 - BUG/MINOR: compression: dynamic level increase
15325 - DOC: compression: unsupported cases.
15326 - MINOR: compression: CPU usage limit
15327 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
15328 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
15329 - MINOR: config: add a function to indent error messages
15330 - REORG: split "protocols" files into protocol and listener
15331 - MEDIUM: config: replace ssl_conf by bind_conf
15332 - CLEANUP: listener: remove unused conf->file and conf->line
15333 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
15334 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
15335 - MEDIUM: move bind SSL parsing to ssl_sock
15336 - MINOR: config: improve error reporting for "bind" lines
15337 - MEDIUM: config: move the common "bind" settings to listener.c
15338 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
15339 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
15340 - MINOR: listener: add a scope field in the bind keyword lists
15341 - MINOR: config: pass the file and line to config keyword parsers
15342 - MINOR: stats: fill the file and line numbers in the stats frontend
15343 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
15344 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
15345 - REORG: listener: move unix perms from the listener to the bind_conf
15346 - BUG: backend: balance hdr was broken since 1.5-dev11
15347 - MINOR: standard: make memprintf() support a NULL destination
15348 - MINOR: config: make str2listener() use memprintf() to report errors.
15349 - MEDIUM: stats: remove the stats_sock struct from the global struct
15350 - MINOR: ssl: set the listeners' data layer to ssl during parsing
15351 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
15352 - DOC: move bind options to their own section
15353 - DOC: stats: refer to "bind" section for "stats socket" settings
15354 - DOC: fix index to reference bind and server options
15355 - BUG: http: do not print garbage on invalid requests in debug mode
15356 - BUG/MINOR: config: check the proper pointer to report unknown protocol
15357 - CLEANUP: connection: offer conn_prepare() to set up a connection
15358 - CLEANUP: config: fix typo inteface => interface
15359 - BUG: stats: fix regression introduced by commit 4348fad1
15360 - MINOR: cli: allow to set frontend maxconn to zero
15361 - BUG/MAJOR: http: chunk parser was broken with buffer changes
15362 - MEDIUM: monitor: simplify handling of monitor-net and mode health
15363 - MINOR: connection: add a pointer to the connection owner
15364 - MEDIUM: connection: make use of the owner instead of container_of
15365 - BUG/MINOR: ssl: report the L4 connection as established when possible
15366 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
15367 - BUG/MINOR: config: use a copy of the file name in proxy configurations
15368 - BUG/MEDIUM: listener: don't pause protocols that do not support it
15369 - MEDIUM: proxy: add the global frontend to the list of normal proxies
15370 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
15371 - MINOR: signal: really ignore signals configured with no handler
15372 - MINOR: buffers: add a few functions to write chars, strings and blocks
15373 - MINOR: raw_sock: always report asynchronous connection errors
15374 - MEDIUM: raw_sock: improve connection error reporting
15375 - REORG: connection: rename the data layer the "transport layer"
15376 - REORG: connection: rename app_cb "data"
15377 - MINOR: connection: provide a generic data layer wakeup callback
15378 - MINOR: connection: split conn_prepare() in two functions
15379 - MINOR: connection: add an init callback to the data_cb struct
15380 - MEDIUM: session: use a specific data_cb for embryonic sessions
15381 - MEDIUM: connection: use a generic data-layer init() callback
15382 - MEDIUM: connection: reorganize connection flags
15383 - MEDIUM: connection: only call the data->wake callback on activity
15384 - MEDIUM: connection: make it possible for data->wake to return an error
15385 - MEDIUM: session: register a data->wake callback to process errors
15386 - MEDIUM: connection: don't call the data->init callback upon error
15387 - MEDIUM: connection: it's not the data layer's role to validate the connection
15388 - MEDIUM: connection: automatically disable polling on error
15389 - REORG: connection: move the PROXY protocol management to connection.c
15390 - MEDIUM: connection: add a new local send-proxy transport callback
15391 - MAJOR: checks: make use of the connection layer to send checks
15392 - REORG: server: move the check-specific parts into a check subsection
15393 - MEDIUM: checks: use real buffers to store requests and responses
15394 - MEDIUM: check: add the ctrl and transport layers in the server check structure
15395 - MAJOR: checks: completely use the connection transport layer
15396 - MEDIUM: checks: add the "check-ssl" server option
15397 - MEDIUM: checks: enable the PROXY protocol with health checks
15398 - CLEANUP: checks: remove minor warnings for assigned but not used variables
15399 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
15400 - BUG: connection: fix regression from commit 9e272bf9
15401 - CLEANUP: cttproxy: remove a warning on undeclared close()
15402 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
15403 - MEDIUM: listener: add support for linux's accept4() syscall
15404 - MINOR: halog: sort output by cookie code
15405 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
15406 - BUG/MINOR: halog: fix help message for -ut/-uto
15407 - MINOR: halog: add a parameter to limit output line count
15408 - BUILD: accept4: move the socketcall declaration outside of accept4()
15409 - MINOR: server: add minimal infrastructure to parse keywords
15410 - MINOR: standard: make indent_msg() support empty messages
15411 - MEDIUM: server: check for registered keywords when parsing unknown keywords
15412 - MEDIUM: server: move parsing of keyword "id" to server.c
15413 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
15414 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
15415 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
15416 - MEDIUM: connection: always unset the transport layer upon close
15417 - BUG/MINOR: session: fix some leftover from debug code
15418 - BUG/MEDIUM: session: enable the conn_session_update() callback
15419 - MEDIUM: connection: add a flag to hold the transport layer
15420 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
15421 - MINOR: log: make lf_text use a const char *
15422 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
15423 - REORG: http: rename msg->buf to msg->chn since it's a channel
15424 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
15425 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
15426 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
15427 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
15428 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
15429 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
15430 - OPTIM: channel: reorganize struct members to improve cache efficiency
15431 - CLEANUP: session: remove term_trace which is not used anymore
15432 - OPTIM: session: reorder struct session fields
15433 - OPTIM: connection: pack the struct target
15434 - DOC: document relations between internal entities
15435 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
15436 - BUILD: ssl: fix shctx build on older compilers
15437 - MEDIUM: ssl: add support for the "npn" bind keyword
15438 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
15439 - MINOR: chunk: provide string compare functions
15440 - MINOR: sample: accept fetch keywords without parenthesis
15441 - MEDIUM: sample: pass an empty list instead of a null for fetch args
15442 - MINOR: ssl: improve socket behaviour upon handshake abort.
15443 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
15444 - MEDIUM: listener: provide a fallback for accept4() when not supported
15445 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
15446 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
15447 - OPTIM: channel: inline channel_forward's fast path
15448 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
15449 - OPTIM: tools: inline hex2i()
15450 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
15451 - MINOR: compression: automatically disable compression for older browsers
15452 - MINOR: compression: optimize memLevel to improve byte rate
15453 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
15454 - BUILD: fix coexistence of openssl and zlib
15455 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
15456 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
15457 - MINOR: tools: add a clear_addr() function to unset an address
15458 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
15459 - CLEANUP: remove trashlen
15460 - MAJOR: session: detach the connections from the stream interfaces
15461 - DOC: update document describing relations between internal entities
15462 - BUILD: make it possible to specify ZLIB path
15463 - MINOR: compression: add an offload option to remove the Accept-Encoding header
15464 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
15465 - CLEANUP: completely remove trashlen
15466 - MINOR: chunk: add a function to reset a chunk
15467 - CLEANUP: replace chunk_printf() with chunk_appendf()
15468 - MEDIUM: make the trash be a chunk instead of a char *
15469 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
15470 - MEDIUM: stick-table: allocate the table key of size buffer size
15471 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
15472 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
15473 - OPTIM: session: don't process the whole session when only timers need a refresh
15474 - BUG/MINOR: session: mark the handshake as complete earlier
15475 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
15476 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
15477 - MAJOR: sepoll: make the poller totally event-driven
15478 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
15479 - BUILD: compression: remove a build warning
15480 - MEDIUM: fd: don't unset fdtab[].updated upon delete
15481 - REORG: fd: move the speculative I/O management from ev_sepoll
15482 - REORG: fd: move the fd state management from ev_sepoll
15483 - REORG: fd: centralize the processing of speculative events
15484 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
15485 - BUILD: stream_interface: remove si_fd() and its references
15486 - BUILD: compression: enable build in BSD and OSX Makefiles
15487 - MAJOR: ev_select: make the poller support speculative events
15488 - MAJOR: ev_poll: make the poller support speculative events
15489 - MAJOR: ev_kqueue: make the poller support speculative events
15490 - MAJOR: polling: replace epoll with sepoll and remove sepoll
15491 - MAJOR: polling: remove unused callbacks from the poller struct
15492 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
15493 - CLEANUP: channel: remove any reference of the hijackers
15494 - CLEANUP: stream_interface: remove the external task type target
15495 - MAJOR: connection: replace struct target with a pointer to an enum
15496 - BUG: connection: fix typo in previous commit
15497 - BUG: polling: don't skip polled events in the spec list
15498 - MINOR: splice: disable it when the system returns EBADF
15499 - MINOR: build: allow packagers to specify the default maxzlibmem
15500 - BUG: halog: fix broken output limitation
15501 - BUG: proxy: fix server name lookup in get_backend_server()
15502 - BUG: compression: do not always increment the round counter on allocation failure
15503 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
15504 - MINOR: global: don't prevent nbproc from being redefined
15505 - MINOR: config: support process ranges for "bind-process"
15506 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
15507 - MINOR: ssl: rename and document the tune.ssl.cachesize option
15508 - DOC: update the PROXY protocol spec to support v2
15509 - MINOR: standard: add a simple popcount function
15510 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
15511 - BUG: compression: properly disable compression when content-type does not match
15512 - MINOR: cli: report connection status in "show sess xxx"
15513 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
15514 - BUILD: cli: fix build when SSL is enabled
15515 - MINOR: cli: report the fd state in "show sess xxx"
15516 - MINOR: cli: report an error message on missing argument to compression rate
15517 - MINOR: http: add some debugging functions to pretty-print msg state names
15518 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
15519 - DOC: documentation on http header capture is wrong
15520 - MINOR: http: allow the cookie capture size to be changed
15521 - DOC: http header capture has not been limited in size for a long time
15522 - DOC: update readme with build methods for BSD
15523 - BUILD: silence a warning on Solaris about usage of isdigit()
15524 - MINOR: stats: report HTTP compression stats per frontend and per backend
15525 - MINOR: log: add '%Tl' to log-format
15526 - MINOR: samples: update the url_param fetch to match parameters in the path
15527
Willy Tarreau16216822012-09-10 09:46:55 +0200155282012/09/10 : 1.5-dev12
15529 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
15530 - MEDIUM: ssl: add support for prefer-server-ciphers option
15531 - MINOR: IPv6 support for transparent proxy
15532 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
15533 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
15534 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
15535 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
15536 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
15537 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
15538 - MEDIUM: ssl: protect against client-initiated renegociation
15539 - BUILD: add optional support for SSL via the USE_OPENSSL flag
15540 - MEDIUM: ssl: add shared memory session cache implementation.
15541 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
15542 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
15543 - MEDIUM: ssl: add support for SNI and wildcard certificates
15544 - DOC: Typos cleanup
15545 - DOC: fix name for "option independant-streams"
15546 - DOC: specify the default value for maxconn in the context of a proxy
15547 - BUG/MINOR: to_log erased with unique-id-format
15548 - LICENSE: add licence exception for OpenSSL
15549 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
15550 - BUILD: add an AIX 5.2 (and later) target.
15551 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
15552 - MINOR: halog: use the more recent dual-mode fgets2 implementation
15553 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
15554 - CLEANUP: halog: make clean should also remove .o files
15555 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
15556 - OPTIM: halog: improve cold-cache behaviour when loading a file
15557 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
15558 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
15559 - MEDIUM: pattern: add the "base" sample fetch method
15560 - OPTIM: i386: make use of kernel-mode-linux when available
15561 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
15562 - BUG/MINOR: polling: some events were not set in various pollers
15563 - MINOR: http: add the urlp_val ACL match
15564 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
15565 - MINOR: stats/cli: add plans to support more stick-table actions
15566 - MEDIUM: stats/cli: add support for "set table key" to enter values
15567 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
15568 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
15569 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
15570 - REORG/MINOR: connection: move declaration to its own include file
15571 - REORG/MINOR: checks: put a struct connection into the server
15572 - MINOR: connection: add flags to the connection struct
15573 - MAJOR: get rid of fdtab[].state and use connection->flags instead
15574 - MINOR: fd: add a new I/O handler to fdtab
15575 - MEDIUM: polling: prepare to call the iocb() function when defined.
15576 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
15577 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
15578 - MINOR: connection: add a handler for fd-based connections
15579 - MAJOR: connection: replace direct I/O callbacks with the connection callback
15580 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
15581 - MEDIUM: connection: remove the FD_POLL_* flags only once
15582 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
15583 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
15584 - CLEANUP: remove the now unused fdtab direct I/O callbacks
15585 - MAJOR: remove the stream interface and task management code from sock_*
15586 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
15587 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
15588 - MAJOR: connection: add a new CO_FL_CONNECTED flag
15589 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
15590 - MAJOR: connection: call data layer handshakes from the handler
15591 - MEDIUM: fd: remove the EV_FD_COND_* primitives
15592 - MINOR: sock_raw: move calls to si_data_close upper
15593 - REORG: connection: replace si_data_close() with conn_data_close()
15594 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
15595 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
15596 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
15597 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
15598 - MEDIUM: connection: add definitions for dual polling mechanisms
15599 - MEDIUM: connection: make use of the new polling functions
15600 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
15601 - MEDIUM: checks: don't use FD_WAIT_* anymore
15602 - MINOR: fd: get rid of FD_WAIT_*
15603 - MEDIUM: stream_interface: offer a generic function for connection updates
15604 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
15605 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
15606 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
15607 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
15608 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
15609 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
15610 - REORG/MAJOR: extract "struct buffer" from "struct channel"
15611 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
15612 - REORG: sock_raw: rename the files raw_sock*
15613 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
15614 - MAJOR: raw_sock: temporarily disable splicing
15615 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
15616 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
15617 - MAJOR: connection: split the send call into connection and stream interface
15618 - MAJOR: stream-interface: restore splicing mechanism
15619 - MAJOR: stream-interface: make conn_notify_si() more robust
15620 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
15621 - MAJOR: stream-interface: don't commit polling changes in every callback
15622 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
15623 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
15624 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
15625 - REORG: buffers: split buffers into chunk,buffer,channel
15626 - MAJOR: channel: remove the BF_OUT_EMPTY flag
15627 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
15628 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
15629 - MINOR: buffer: provide a new buffer_full() function
15630 - MAJOR: channel: stop relying on BF_FULL to take action
15631 - MAJOR: channel: remove the BF_FULL flag
15632 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
15633 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
15634 - CLEANUP: channel: use "channel" instead of "buffer" in function names
15635 - REORG: connection: move the target pointer from si to connection
15636 - MAJOR: connection: move the addr field from the stream_interface
15637 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
15638 - MEDIUM: proto_tcp: remove any dependence on stream_interface
15639 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
15640 - MEDIUM: connection: add an ->init function to data layer
15641 - MAJOR: session: introduce embryonic sessions
15642 - MAJOR: connection: make the PROXY decoder a handshake handler
15643 - CLEANUP: frontend: remove the old proxy protocol decoder
15644 - MAJOR: connection: rearrange the polling flags.
15645 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
15646 - MEDIUM: connection: complete the polling cleanups
15647 - MEDIUM: connection: avoid calling handshakes when polling is required
15648 - MAJOR: stream_interface: continue to update data polling flags during handshakes
15649 - CLEANUP: fd: remove fdtab->flags
15650 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
15651 - CLEANUP: includes: fix includes for a number of users of fd.h
15652 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
15653 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
15654 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
15655 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
15656 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
15657 - BUILD: ssl: fix shctx build on RHEL with futex
15658 - BUILD: include sys/socket.h to fix build failure on FreeBSD
15659 - BUILD: fix build error without SSL (ssl_cert)
15660 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
15661 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
15662 - MEDIUM: config: support per-listener backlog and maxconn
15663 - MINOR: session: do not send an HTTP/500 error on SSL sockets
15664 - MEDIUM: config: implement maxsslconn in the global section
15665 - BUG: tcp: close socket fd upon connect error
15666 - MEDIUM: connection: improve error handling around the data layer
15667 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
15668 - BUILD: shut a gcc warning introduced by commit 269ab31
15669 - MEDIUM: config: centralize handling of SSL config per bind line
15670 - BUILD: makefile: report USE_OPENSSL status in build options
15671 - BUILD: report openssl build settings in haproxy -vv
15672 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
15673 - DOC: add a special acknowledgement for the stud project
15674 - DOC: add missing SSL options for servers and listeners
15675 - BUILD: automatically add -lcrypto for SSL
15676 - DOC: add some info about openssl build in the README
15677
Willy Tarreau02c7c142012-06-04 00:43:45 +0200156782012/06/04 : 1.5-dev11
15679 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
15680 - BUG/MAJOR: trash must always be the size of a buffer
15681 - DOC: fix minor regex example issue and improve doc on stats
15682 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
15683 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
15684 - MINOR: checks: add on-marked-up option
15685 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
15686 - MEDIUM: stream_interface: remove the si->init
15687 - MINOR: buffers: add a rewind function
15688 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
15689 - MAJOR: http: stop using msg->sol outside the parsers
15690 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
15691 - MEDIUM: http: get rid of msg->som which is not used anymore
15692 - MEDIUM: http: msg->sov and msg->sol will never wrap
15693 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
15694 - BUG/MINOR: stop connect timeout when connect succeeds
15695 - REORG: move the send-proxy code to tcp_connect_write()
15696 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
15697 - MINOR: stream_interface: introduce a new "struct connection" type
15698 - REORG/MINOR: stream_interface: move si->fd to struct connection
15699 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
15700 - MINOR: stream_interface: add a data channel close function
15701 - MEDIUM: stream_interface: call si_data_close() before releasing the si
15702 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
15703 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
15704 - MINOR: add a new function call tracer for debugging purposes
15705 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
15706 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
15707 - BUG/MEDIUM: register peer sync handler in the proper order
15708 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
15709 - BUG/MINOR: fix option httplog validation with TCP frontends
15710 - BUG/MINOR: log: don't report logformat errors in backends
15711 - REORG/MINOR: use dedicated proxy flags for the cookie handling
15712 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
15713 - MINOR: http: add support for "httponly" and "secure" cookie attributes
15714 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
15715 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
15716 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
15717 - MEDIUM: stats: add the ability to kill sessions from the admin interface
15718 - BUILD: add support for linux kernels >= 2.6.28
15719
Willy Tarreauffb89472012-05-14 07:26:56 +0200157202012/05/14 : 1.5-dev10
15721 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
15722 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
15723 - CLEANUP: auth: make the code build again with DEBUG_AUTH
15724 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
15725 - REORG: use the name sock_raw instead of stream_sock
15726 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
15727 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
15728 - CLEANUP: sock_raw: remove last references to stream_sock
15729 - CLEANUP: stream_interface: stop exporting socket layer functions
15730 - MINOR: stream_interface: add an init callback to sock_ops
15731 - MEDIUM: stream_interface: derive the socket operations from the target
15732 - MAJOR: fd: remove the need for the socket layer to recheck the connection
15733 - MINOR: session: call the socket layer init function when a session establishes
15734 - MEDIUM: session: add support for tunnel timeouts
15735 - MINOR: standard: add a new debug macro : fddebug()
15736 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
15737 - OPTIM: proto_http: don't enable quick-ack on empty buffers
15738 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
15739 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
15740
Willy Tarreaua0564f32012-05-08 21:56:27 +0200157412012/05/08 : 1.5-dev9
15742 - MINOR: Add release callback to si_applet
15743 - CLEANUP: Fix some minor typos
15744 - MINOR: Add TO/FROM_SET flags to struct stream_interface
15745 - CLEANUP: Fix some minor whitespace issues
15746 - MINOR: stats admin: allow unordered parameters in POST requests
15747 - CLEANUP: fix typo in findserver() log message
15748 - MINOR: stats admin: use the backend id instead of its name in the form
15749 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
15750 - DOC: cleanup indentation, alignment, columns and chapters
15751 - DOC: fix some keywords arguments documentation
15752 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
15753 - BUG/MAJOR: log: possible segfault with logformat
15754 - MEDIUM: log: split of log_format generation
15755 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
15756 - MEDIUM: log: Unique ID
15757 - MINOR: log: log-format: usable without httplog and tcplog
15758 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
15759 - MINOR: contrib/iprange: add a network IP range to mask converter
15760 - MEDIUM: session: implement the "use-server" directive
15761 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
15762 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
15763 - MEDIUM: http: add cookie and scookie ACLs
15764 - CLEANUP: lb_first: add reference to a paper describing the original idea
15765 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
15766 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
15767 - BUILD: http: make extract_cookie_value() return an int not size_t
15768 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
15769 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
15770 - MINOR: standard: add a memprintf() function to build formatted error messages
15771 - CLEANUP: remove a few warning about unchecked return values in debug code
15772 - MEDIUM: move message-related flags from transaction to message
15773 - DOC: add a diagram to explain how circular buffers work
15774 - MAJOR: buffer rework: replace ->send_max with ->o
15775 - MAJOR: buffer: replace buf->l with buf->{o+i}
15776 - MINOR: buffers: provide simple pointer normalization functions
15777 - MINOR: buffers: remove unused function buffer_contig_data()
15778 - MAJOR: buffers: replace buf->w with buf->p - buf->o
15779 - MAJOR: buffers: replace buf->r with buf->p + buf->i
15780 - MAJOR: http: move buffer->lr to http_msg->next
15781 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
15782 - CLEANUP: http: remove unused http_msg->col
15783 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
15784 - MEDIUM: http: add a pointer to the buffer in http_msg
15785 - MAJOR: http: make http_msg->sol relative to buffer's origin
15786 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
15787 - MEDIUM: http: remove buffer arg in a few header manipulation functions
15788 - MEDIUM: http: remove buffer arg in http_capture_bad_message
15789 - MEDIUM: http: remove buffer arg in http_msg_analyzer
15790 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
15791 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
15792 - MEDIUM: http: remove buffer arg in chunk parsing functions
15793 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
15794 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
15795 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
15796 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
15797 - MEDIUM: buffers: rename a number of buffer management functions
15798 - MEDIUM: http: add a prefetch function for ACL pattern fetch
15799 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
15800 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
15801 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
15802 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
15803 - MEDIUM: add a new typed argument list parsing framework
15804 - MAJOR: acl: make use of the new argument parsing framework
15805 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
15806 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
15807 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
15808 - MAJOR: acl: ensure that implicit table and proxies are valid
15809 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
15810 - MEDIUM: pattern: replace type pattern_arg with type arg
15811 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
15812 - MEDIUM: pattern: use the standard arg parser
15813 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
15814 - MEDIUM: pattern: report the precise argument parsing error when known.
15815 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
15816 - MINOR: pattern: add a new 'sample' type to store fetched data
15817 - MEDIUM: pattern: add new sample types to replace pattern types
15818 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
15819 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
15820 - MEDIUM: acl: get rid of the SET_RES flags
15821 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
15822 - MINOR: pattern: replace struct pattern with struct sample
15823 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
15824 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
15825 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
15826 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
15827 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
15828 - MEDIUM: acl/pattern: use the same direction scheme
15829 - MEDIUM: acl/pattern: start merging common sample fetch functions
15830 - MEDIUM: pattern: ensure that sample types always cast into other types.
15831 - MEDIUM: acl/pattern: factor out the src/dst address fetches
15832 - MEDIUM: acl: implement payload and payload_lv
15833 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
15834 - MINOR: stick_table: centralize the handling of empty keys
15835 - MINOR: pattern: centralize handling of unstable data in pattern_process()
15836 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
15837 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
15838 - MINOR: acl: add a val_args field to keywords
15839 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
15840 - MEDIUM: http: merge acl and pattern header fetch functions
15841 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
15842 - MEDIUM: acl: report parsing errors to the caller
15843 - MINOR: arg: improve error reporting on invalid arguments
15844 - MINOR: acl: report errors encountered when loading patterns from files
15845 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
15846 - REORG: use the name "sample" instead of "pattern" to designate extracted data
15847 - REORG: rename "pattern" files
15848 - MINOR: acl: add types to ACL patterns
15849 - MINOR: standard: add an IPv6 parsing function (str62net)
15850 - MEDIUM: acl: support IPv6 address matching
15851 - REORG: stream_interface: create a struct sock_ops to hold socket operations
15852 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
15853 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
15854 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
15855 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
15856 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
15857 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
15858 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
15859 - MEDIUM: http: improve error capture reports
15860 - MINOR: acl: add the cook_val() match to match a cookie against an integer
15861 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
15862 - MEDIUM: memory: add the ability to poison memory at run time
15863 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
15864 - MINOR: cfgparse: use a common errmsg pointer for all parsers
15865 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
15866 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
15867 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
15868
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200158692012/03/26 : 1.5-dev8
15870 - MINOR: patch for minor typo (ressources/resources)
15871 - MEDIUM: http: add support for sending the server's name in the outgoing request
15872 - DOC: mention that default checks are TCP connections
15873 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
15874 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
15875 - CLEANUP: Fix HCHK spelling errors
15876 - BUG/MINOR: fix typo in processing of http-send-name-header
15877 - MEDIUM: log: Use linked lists for loggers
15878 - BUILD: fix declaration inside a scope block
15879 - REORG: log: split send_log function
15880 - MINOR: config: Parse the string of the log-format config keyword
15881 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
15882 - MINOR: Date and time fonctions that don't use snprintf
15883 - MEDIUM: log: make http_sess_log use log_format
15884 - DOC: log-format documentation
15885 - MEDIUM: log: use log_format for mode tcplog
15886 - MEDIUM: log-format: backend source address %Bi %Bp
15887 - BUG/MINOR: log-format: fix %o flag
15888 - BUG/MEDIUM: bad length in log_format and __send_log
15889 - MINOR: logformat %st is signed
15890 - BUILD/MINOR: fix the source URL in the spec file
15891 - DOC: acl is http_first_req, not http_req_first
15892 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
15893 - MINOR: acl: add new matches for header/path/url length
15894 - BUILD: halog: make halog build on solaris
15895 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
15896 - MINOR: remove the client/server side distinction in SI addresses
15897 - MINOR: halog: add support for matching queued requests
15898 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
15899 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
15900 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
15901 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
15902 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
15903 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
15904 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
15905 - CLEANUP: rename possibly confusing struct field "tracked"
15906 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
15907 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
15908 - MEDIUM: buffers: add some new primitives and rework existing ones
15909 - BUG: buffers: don't return a negative value on buffer_total_space_res()
15910 - MINOR: buffers: make buffer_pointer() support negative pointers too
15911 - CLEANUP: kill buffer_replace() and use an inline instead
15912 - BUG: tcp: option nolinger does not work on backends
15913 - CLEANUP: ebtree: remove a few annoying signedness warnings
15914 - CLEANUP: ebtree: clarify licence and update to 6.0.6
15915 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
15916 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
15917 - BUG: ebtree: ebst_lookup() could return the wrong entry
15918 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
15919 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
15920 - MINOR: acl: add support for TLS server name matching using SNI
15921 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
15922 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
15923 - MINOR: pattern: export the global temporary pattern
15924 - CLEANUP: patterns: get rid of pattern_data_setstring()
15925 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
15926 - MINOR: acl: include pattern.h to make pattern migration more transparent
15927 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
15928 - MEDIUM: acl: use temp_pattern to store any integer-type information
15929 - MEDIUM: acl: use temp_pattern to store any address-type information
15930 - CLEANUP: acl: integer part of acl_test is not used anymore
15931 - MEDIUM: acl: use temp_pattern to store any string-type information
15932 - CLEANUP: acl: remove last data fields from the acl_test struct
15933 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
15934 - MEDIUM: patterns: the hdr() pattern is now of type string
15935 - DOC: add minimal documentation on how ACLs work internally
15936 - DOC: add a coding-style file
15937 - OPTIM: halog: keep a fast path for the lines-count only
15938 - CLEANUP: silence a warning when building on sparc
15939 - BUG: http: tighten the list of allowed characters in a URI
15940 - MEDIUM: http: block non-ASCII characters in URIs by default
15941 - DOC: add some documentation from RFC3986 about URI format
15942 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
15943 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
15944 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
15945 - MINOR: halog: add some help on the command line
15946 - BUILD: fix build error on FreeBSD
15947 - BUG: fix double free in peers config error path
15948 - MEDIUM: improve config check return codes
15949 - BUILD: make it possible to look for pcre in the default system paths
15950 - MINOR: config: emit a warning when 'default_backend' masks servers
15951 - MINOR: backend: rework the LC definition to support other connection-based algos
15952 - MEDIUM: backend: add the 'first' balancing algorithm
15953 - BUG: fix httplog trailing LF
15954 - MEDIUM: increase chunk-size limit to 2GB-1
15955 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
15956 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
15957 - BUG: checks: fix server maintenance exit sequence
15958 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
15959 - DOC: enumerate valid status codes for "observe layer7"
15960 - MINOR: buffer: switch a number of buffer args to const
15961 - CLEANUP: silence signedness warning in acl.c
15962 - BUG: stream_sock: si->release was not called upon shutw()
15963 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
15964 - BUG/CRITICAL: log: fix risk of crash in development snapshot
15965 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
15966 - MINOR: config: disable header captures in TCP mode and complain
15967
Willy Tarreau60612eb2011-09-10 23:43:11 +0200159682011/09/10 : 1.5-dev7
15969 - [BUG] fix binary stick-tables
15970 - [MINOR] http: *_dom matching header functions now also split on ":"
15971 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
15972 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
15973 - [MINOR] check: add redis check support
15974 - [DOC] small fixes to clearly distinguish between keyword and variables
15975 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
15976 - [DOC] Minor spelling fixes and grammatical enhancements
15977 - [CLEANUP] dumpstats: make symbols static where possible
15978 - [MINOR] Break out dumping table
15979 - [MINOR] Break out processing of clear table
15980 - [MINOR] Allow listing of stick table by key
15981 - [MINOR] Break out all stick table socat command parsing
15982 - [MINOR] More flexible clearing of stick table
15983 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
15984 - [MINOR] Allow showing and clearing by key of integer stick tables
15985 - [MINOR] Allow showing and clearing by key of string stick tables
15986 - [CLEANUP] Remove assigned but unused variables
15987 - [CLEANUP] peers.h: fix declarations
15988 - [CLEANUP] session.c: Make functions static where possible
15989 - [MINOR] Add active connection list to server
15990 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
15991 - [MINOR] Add down termination condition
15992 - [MINOR] Make appsess{,ion}_refresh static
15993 - [MINOR] Add rdp_cookie pattern fetch function
15994 - [CLEANUP] Remove unnecessary casts
15995 - [MINOR] Add non-stick server option
15996 - [MINOR] Consistently use error in tcp_parse_tcp_req()
15997 - [MINOR] Consistently free expr on error in cfg_parse_listen()
15998 - [MINOR] Free rdp_cookie_name on denint()
15999 - [MINOR] Free tcp rules on denint()
16000 - [MINOR] Free stick table pool on denint()
16001 - [MINOR] Free stick rules on denint()
16002 - [MEDIUM] Fix stick-table replication on soft-restart
16003 - [MEDIUM] Correct ipmask() logic
16004 - [MINOR] Correct type in table dump examples
16005 - [MINOR] Fix build error in stream_int_register_handler()
16006 - [MINOR] Use DPRINTF in assign_server()
16007 - [BUG] checks: http-check expect could fail a check on multi-packet responses
16008 - [DOC] fix minor typo in the "dispatch" doc
16009 - [BUG] proto_tcp: fix address binding on remote source
16010 - [MINOR] http: don't report the "haproxy" word on the monitoring response
16011 - [REORG] http: move HTTP error codes back to proto_http.h
16012 - [MINOR] http: make the "HTTP 200" status code configurable.
16013 - [MINOR] http: partially revert the chunking optimization for now
16014 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
16015 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
16016 - [MEDIUM] http: add support for "http-no-delay"
16017 - [OPTIM] http: optimize chunking again in non-interactive mode
16018 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
16019 - [OPTIM] stream_sock: don't use splice on too small payloads
16020 - [MINOR] config: make it possible to specify a cookie even without a server
16021 - [BUG] stats: support url-encoded forms
16022 - [MINOR] config: automatically compute a default fullconn value
16023 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
16024 - [DOC] add missing entry or stick store-response
16025 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
16026 - [BUG] halog: correctly handle truncated last line
16027 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
16028 - [MINOR] halog: add support for HTTP log matching (-H)
16029 - [MINOR] halog: gain back performance before SKIP_CHAR fix
16030 - [OPTIM] halog: cache some common fields positions
16031 - [OPTIM] halog: check once for correct line format and reuse the pointer
16032 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
16033 - [OPTIM] halog: remove support for tab delimiters in input data
16034 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
16035 - [MINOR] session: try to emit a 500 response on memory allocation errors
16036 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
16037 - [BUG] stream_sock: disable listener when system resources are exhausted
16038 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
16039 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
16040 - [MINOR] listeners: add listen_full() to mark a listener full
16041 - [MINOR] listeners: add support for queueing resource limited listeners
16042 - [MEDIUM] listeners: put listeners in queue upon resource shortage
16043 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
16044 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
16045 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
16046 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
16047 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
16048 - [MINOR] proxy: make session rate-limit more accurate
16049 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
16050 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
16051 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
16052 - [MINOR] task: new function task_schedule() to schedule a wake up
16053 - [MAJOR] proxy: finally get rid of maintain_proxies()
16054 - [BUG] proxy: stats frontend and peers were missing many initializers
16055 - [MEDIUM] listeners: add a global listener management task
16056 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
16057 - [DOC] fix typos, "#" is a sharp, not a dash
16058 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
16059 - [MEDIUM] checks: group health checks methods by values and save option bits
16060 - [MINOR] session-counters: add the ability to clear the counters
16061 - [BUG] check: http-check expect + regex would crash in defaults section
16062 - [MEDIUM] http: make x-forwarded-for addition conditional
16063 - [REORG] build: move syscall redefinition to specific places
16064 - [CLEANUP] update the year in the copyright banner
16065 - [BUG] possible crash in 'show table' on stats socket
16066 - [BUG] checks: use the correct destination port for sending checks
16067 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
16068 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
16069 - [DOC] fixed a few "sensible" -> "sensitive" errors
16070 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
16071 - [BUG] http: trailing white spaces must also be trimmed after headers
16072 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
16073 - [MINOR] http: take a capture of too large requests and responses
16074 - [MINOR] http: take a capture of truncated responses
16075 - [MINOR] http: take a capture of bad content-lengths.
16076 - [DOC] add a few old and uncommitted docs
16077 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
16078 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
16079 - [MINOR] halog: support backslash-escaped quotes
16080 - [CLEANUP] remove dirty left-over of a debugging message
16081 - [MEDIUM] stats: disable complex socket reservation for stats socket
16082 - [CLEANUP] remove a useless test in manage_global_listener_queue()
16083 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
16084 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
16085 - [MINOR] stats: report the current and max global connection rates
16086 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
16087 - [BUG] peers: don't pre-allocate 65000 connections to each peer
16088 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
16089 - [BUG] peers: the peer frontend must not emit any log
16090 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
16091 - [BUG] peers: don't keep a peers section which has a NULL frontend
16092 - [BUG] peers: ensure the peers are resumed if they were paused
16093 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
16094 - [MEDIUM] session: make session_shutdown() an independant function
16095 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
16096 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
16097 - [MEDIUM] stats: offer the possibility to kill sessions by server
16098 - [MINOR] halog: do not consider byte 0x8A as end of line
16099 - [MINOR] frontend: ensure debug message length is always initialized
16100 - [OPTIM] halog: make fgets parse more bytes by blocks
16101 - [OPTIM] halog: add assembly version of the field lookup code
16102 - [MEDIUM] poll: add a measurement of idle vs work time
16103 - [CLEANUP] startup: report only the basename in the usage message
16104 - [MINOR] startup: add an option to change to a new directory
16105 - [OPTIM] task: don't scan the run queue if we know it's empty
16106 - [BUILD] stats: stdint is not present on solaris
16107 - [DOC] update the README file to reflect new naming rules for patches
16108 - [MINOR] stats: report the number of requests intercepted by the frontend
16109 - [DOC] update ROADMAP file
16110
Willy Tarreau04df1122011-04-08 00:56:41 +0200161112011/04/08 : 1.5-dev6
16112 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
16113 - [BUG] TCP source tracking was broken with IPv6 changes
16114 - [BUG] stick-tables did not work when converting IPv6 to IPv4
16115 - [CRITICAL] fix risk of crash when dealing with space in response cookies
16116
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200161172011/03/29 : 1.5-dev5
16118 - [BUG] standard: is_addr return value for IPv4 was inverted
16119 - [MINOR] update comment about IPv6 support for server
16120 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
16121 - [DOC] update IPv6 support for bind
16122 - [DOC] document IPv6 support for server
16123 - [DOC] fix a minor typo
16124 - [MEDIUM] IPv6 support for syslog
16125 - [DOC] document IPv6 support for syslog
16126 - [MEDIUM] IPv6 support for stick-tables
16127 - [DOC] document IPv6 support for stick-tables
16128 - [DOC] update ROADMAP file
16129 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
16130 - [MINOR] frontend: add a make_proxy_line function
16131 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
16132 - [MEDIUM] server: add support for the "send-proxy" option
16133 - [DOC] update the spec on the proxy protocol
16134 - [BUILD] proto_tcp: fix build issue with CTTPROXY
16135 - [DOC] update ROADMAP file
16136 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
16137 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
16138 - [BUILD] add the USE_GETADDRINFO build option
16139 - [TESTS] provide a test case for various address formats
16140 - [BUG] session: conn_retries was not always initialized
16141 - [BUG] log: retrieve the target from the session, not the SI
16142 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
16143 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
16144 - [BUG] http: fix content-length handling on 32-bit platforms
16145 - [OPTIM] buffers: uninline buffer_forward()
16146 - [BUG] stream_sock: fix handling for server side PROXY protocol
16147 - [MINOR] acl: add support for table_cnt and table_avl matches
16148 - [DOC] update ROADMAP file
16149
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100161502011/03/13 : 1.5-dev4
16151 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
16152 - [MINOR] unix sockets : inherits the backlog size from the listener
16153 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
16154 - [DOC] fix a minor typo
16155 - [DOC] fix ignore-persist documentation
16156 - [MINOR] add warnings on features not compatible with multi-process mode
16157 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
16158 - [MINOR] stats: add support for several packets in stats admin
16159 - [BUG] stats: admin commands must check the proxy state
16160 - [BUG] stats: admin web interface must check the proxy state
16161 - [MINOR] http: add pattern extraction method to stick on query string parameter
16162 - [MEDIUM] add internal support for IPv6 server addresses
16163 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
16164 - [MINOR] log: add support for passing the forwarded hostname
16165 - [MINOR] log: ability to override the syslog tag
16166 - [MINOR] checks: add PostgreSQL health check
16167 - [DOC] update ROADMAP file
16168 - [BUILD] pattern: use 'int' instead of 'int32_t'
16169 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
16170 - [BUG] debug: report the correct poller list in verbose mode
16171 - [BUG] capture: do not capture a cookie if there is no memory left
16172 - [BUG] appsession: fix possible double free in case of out of memory
16173 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
16174 - [BUG] http: correctly update the header list when removing two consecutive headers
16175 - [BUILD] add the CPU=native and ARCH=32/64 build options
16176 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
16177 - [CLEANUP] hash: move the avalanche hash code globally available
16178 - [MEDIUM] hash: add support for an 'avalanche' hash-type
16179 - [DOC] update roadmap file
16180 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
16181 - [OPTIM] http: don't send each chunk in a separate packet
16182 - [DOC] fix minor typos reported recently in the peers section
16183 - [DOC] fix another typo in the doc
16184 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
16185 - [BUG] http chunking: don't report a parsing error on connection errors
16186 - [BUG] stream_interface: truncate buffers when sending error messages
16187 - [MINOR] http: support wrapping messages in error captures
16188 - [MINOR] http: capture incorrectly chunked message bodies
16189 - [MINOR] stats: add global event ID and count
16190 - [BUG] http: analyser optimizations broke pipelining
16191 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
16192 - [BUG] http: fix incorrect error reporting during data transfers
16193 - [CRITICAL] session: correctly leave turn-around and queue states on abort
16194 - [BUG] session: release slot before processing pending connections
16195 - [MINOR] tcp: add support for dynamic MSS setting
16196 - [BUG] stick-table: correctly terminate string keys during lookups
16197 - [BUG] acl: fix handling of empty lines in pattern files
16198 - [BUG] stick-table: use the private buffer when padding strings
16199 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
16200 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
16201 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
16202 - [REVERT] undo the stick-table string key lookup fixes
16203 - [MINOR] http: improve url_param pattern extraction to ignore empty values
16204 - [BUILD] frontend: shut a warning with TCP_MAXSEG
16205 - [BUG] http: update the header list's tail when removing the last header
16206 - [DOC] fix minor typo in the proxy protocol doc
16207 - [DOC] fix typos (http-request instead of http-check)
16208 - [BUG] http: use correct ACL pointer when evaluating authentication
16209 - [BUG] cfgparse: correctly count one socket per port in ranges
16210 - [BUG] startup: set the rlimits before binding ports, not after.
16211 - [BUG] acl: srv_id must return no match when the server is NULL
16212 - [MINOR] acl: add ability to check for internal response-only parameters
16213 - [MINOR] acl: srv_id is only valid in responses
16214 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
16215 - [BUG] acl: fd leak when reading patterns from file
16216 - [DOC] fix minor typo in "usesrc"
16217 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
16218 - [BUG] http: fix computation of message body length after forwarding has started
16219 - [BUG] http: balance url_param did not work with first parameters on POST
16220 - [TESTS] update the url_param regression test to test check_post too
16221 - [DOC] update ROADMAP
16222 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
16223 - [BUG] config: don't crash on empty pattern files.
16224 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
16225 - [REORG] stream_interface: move the st0, st1 and private members to the applet
16226 - [REORG] stream_interface: split the struct members in 3 parts
16227 - [REORG] session: move client and server address to the stream interface
16228 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
16229 - [MEDIUM] stream_interface: store the target pointer and type
16230 - [CLEANUP] stream_interface: remove the applet.handler pointer
16231 - [MEDIUM] log: take the logged server name from the stream interface
16232 - [CLEANUP] session: remove data_source from struct session
16233 - [CLEANUP] stats: make all dump functions only rely on the stream interface
16234 - [REORG] session: move the data_ctx struct to the stream interface's applet
16235 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
16236 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
16237 - [MINOR] session: add a pointer to the new target into the session
16238 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
16239 - [CLEANUP] stream_interface: use inline functions to manipulate targets
16240 - [MAJOR] session: remove the ->srv pointer from struct session
16241 - [MEDIUM] stats: split frontend and backend stats
16242 - [MEDIUM] http: always evaluate http-request rules before stats http-request
16243 - [REORG] http: move the http-request rules to proto_http
16244 - [BUG] http: stats were not incremented on http-request deny
16245 - [MINOR] checks: report it if checks fail due to socket creation error
16246
Willy Tarreau442e8342010-11-11 23:29:35 +0100162472010/11/11 : 1.5-dev3
16248 - [DOC] fix http-request documentation
16249 - [MEDIUM] enable/disable servers from the stats web interface
16250 - [MEDIUM] stats: add an admin level
16251 - [DOC] stats: document the "stats admin" statement
16252 - [MINOR] startup: print the proxy socket which caused an error
16253 - [CLEANUP] Remove unneeded chars allocation
16254 - [MINOR] config: detect options not supported due to compilation options
16255 - [MINOR] Add pattern's fetchs payload and payload_lv
16256 - [MINOR] frontend: improve accept-proxy header parsing
16257 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
16258 - [MEDIUM] Enhance message errors management on binds
16259 - [MINOR] Manage unix socket source field on logs
16260 - [MINOR] Manage unix socket source field on session dump on sock stats
16261 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
16262 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
16263 - [MINOR] Manage socket type unix for some logs
16264 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
16265 - [MINOR] Support listener's sockets unix on http logs.
16266 - [MEDIUM] Add supports of bind on unix sockets.
16267 - [BUG] stick table purge failure if size less than 255
16268 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
16269 - [MEDIUM] Implement tcp inspect response rules
16270 - [DOC] tcp-response content and inspect
16271 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
16272 - [DOC] acls rep_ssl_hello and req_ssl_hello
16273 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
16274 - [DOC] new type binary in stick-table
16275 - [DOC] stick store-response and new patterns payload and payload_lv
16276 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
16277 - [MEDIUM] Create updates tree on stick table to manage sync.
16278 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
16279 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
16280 - [MEDIUM] Manage soft stop on peers proxy
16281 - [DOC] add documentation for peers section
16282 - [MINOR] checks: add support for LDAPv3 health checks
16283 - [MINOR] add better support to "mysql-check"
16284 - [BUG] Restore info about available active/backup servers
16285 - [CONTRIB] Update haproxy.pl
16286 - [CONTRIB] Update Cacti Tempates
16287 - [CONTRIB] add templates for Cacti.
16288 - [BUG] http: don't consider commas as a header delimitor within quotes
16289 - [MINOR] support a global jobs counter
16290 - [DOC] add a summary about cookie incompatibilities between specs and browsers
16291 - [DOC] fix description of cookie "insert" and "indirect" modes
16292 - [MEDIUM] http: fix space handling in the request cookie parser
16293 - [MEDIUM] http: fix space handling in the response cookie parser
16294 - [DOC] fix typo in the queue() definition (backend, not frontend)
16295 - [BUG] deinit: unbind listeners before freeing them
16296 - [BUG] stream_interface: only call si->release when both dirs are closed
16297 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
16298 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
16299 - [MINOR] halog: add '-tc' to sort by termination codes
16300 - [MINOR] halog: skip non-traffic logs for -st and -tc
16301 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
16302 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
16303 - [DOC] bind option is "defer-accept", not "defer_accept"
16304 - [DOC] missing index entry for http-check send-state
16305 - [DOC] tcp-request inspect-delay is for backends too
16306 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
16307 - [BUG] stream_sock: try to flush any extra pending request data after a POST
16308 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
16309 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
16310 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
16311 - [MEDIUM] checks: add support for HTTP contents lookup
16312 - [TESTS] add test-check-expect to test various http-check methods
16313 - [MINOR] global: add "tune.chksize" to change the default check buffer size
16314 - [MINOR] cookie: add options "maxidle" and "maxlife"
16315 - [MEDIUM] cookie: support client cookies with some contents appended to their value
16316 - [MINOR] http: make some room in the transaction flags to extend cookies
16317 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
16318 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
16319 - [MINOR] add encode/decode function for 30-bit integers from/to base64
16320 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
16321 - [MEDIUM] cookie: set the date in the cookie if needed
16322 - [DOC] document the cookie maxidle and maxlife parameters
16323 - [BUG] checks: don't log backend down for all zero-weight servers
16324 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
16325 - [BUG] config: report correct keywords for "observe"
16326 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
16327 - [MINOR] acl: add the http_req_first match
16328 - [DOC] fix typos about bind-process syntax
16329 - [BUG] cookie: correctly unset default cookie parameters
16330 - [MINOR] cookie: add support for the "preserve" option
16331 - [BUG] ebtree: fix duplicate strings insertion
16332 - [CONTRIB] halog: report per-url counts, errors and times
16333 - [CONTRIB] halog: minor speed improvement in timer parser
16334 - [MINOR] buffers: add a new request analyser flag for PROXY mode
16335 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
16336 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
16337 - [MINOR] standard: change arg type from const char* to char*
16338 - [MINOR] frontend: add a new analyser to parse a proxied connection
16339 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
16340 - [DOC] add the proxy protocol's specifications
16341 - [DOC] document the 'accept-proxy' bind option
16342 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
16343 - [DOC] add references to unix socket handling
16344 - [MINOR] move MAXPATHLEN definition to compat.h
16345 - [MEDIUM] unix sockets: cleanup the error reporting path
16346 - [BUG] session: don't stop forwarding of data upon last packet
16347 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
16348 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
16349 - [BUG] accept: don't close twice upon error
16350 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
16351 - [OPTIM] stream_sock: don't clear FDs that are already cleared
16352 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
16353
Willy Tarreau37242fa2010-08-28 19:21:00 +0200163542010/08/28 : 1.5-dev2
16355 - [MINOR] startup: release unused structs after forking
16356 - [MINOR] startup: don't wait for nothing when no old pid remains
16357 - [CLEANUP] reference product branch 1.5
16358 - [MEDIUM] signals: add support for registering functions and tasks
16359 - [MEDIUM] signals: support redistribution of signal zero when stopping
16360 - [BUG] http: don't set auto_close if more data are expected
16361
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200163622010/08/25 : 1.5-dev1
16363 - [BUG] stats: session rate limit gets garbaged in the stats
16364 - [DOC] mention 'option http-server-close' effect in Tq section
16365 - [DOC] summarize and highlight persistent connections behaviour
16366 - [DOC] add configuration samples
16367 - [BUG] http: dispatch and http_proxy modes were broken for a long time
16368 - [BUG] http: the transaction must be initialized even in TCP mode
16369 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
16370 - [BUG] consistent hash: balance on all servers, not only 2 !
16371 - [CONTRIB] halog: report per-server status codes, errors and response times
16372 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
16373 - [BUG] client: always ensure to zero rep->analysers
16374 - [BUG] session: clear BF_READ_ATTACHED before next I/O
16375 - [BUG] http: automatically close response if req is aborted
16376 - [BUG] proxy: connection rate limiting was eating lots of CPU
16377 - [BUG] http: report correct flags in case of client aborts during body
16378 - [TESTS] refine non-regression tests and add 4 new tests
16379 - [BUG] debug: wrong pointer was used to report a status line
16380 - [BUG] debug: correctly report truncated messages
16381 - [DOC] document the "dispatch" keyword
16382 - [BUG] stick_table: fix possible memory leak in case of connection error
16383 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
16384 - [MINOR] accept: count the incoming connection earlier
16385 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
16386 - [CLEANUP] client: move some ACLs away to their respective locations
16387 - [CLEANUP] rename client -> frontend
16388 - [MEDIUM] separate protocol-level accept() from the frontend's
16389 - [MINOR] proxy: add a list to hold future layer 4 rules
16390 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
16391 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
16392 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
16393 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
16394 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
16395 - [CLEANUP] buffer->cto is not used anymore
16396 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
16397 - [MEDIUM] session: initialize server-side timeouts after connect()
16398 - [MEDIUM] backend: initialize the server stream_interface upon connect()
16399 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
16400 - [MEDIUM] session: move the conn_retries attribute to the stream interface
16401 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
16402 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
16403 - [MAJOR] frontend: reorder the session initialization upon accept
16404 - [MINOR] proxy: add an accept() callback for the application layer
16405 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
16406 - [MEDIUM] stats: rely on the standard session_accept() function
16407 - [MINOR] buffer: refine the flags that may wake an analyser up.
16408 - [MINOR] stream_sock: don't dereference a non-existing frontend
16409 - [MINOR] session: differenciate between accepted connections and received connections
16410 - [MEDIUM] frontend: count the incoming connection earlier
16411 - [MINOR] frontend: count denied TCP requests separately
16412 - [CLEANUP] stick_table: add/clarify some comments
16413 - [BUILD] memory: add a few missing parenthesis to the pool management macros
16414 - [MINOR] stick_table: add support for variable-sized data
16415 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
16416 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
16417 - [MEDIUM] stick_table: add room for extra data types
16418 - [MINOR] stick_table: add support for "conn_cum" data type.
16419 - [MEDIUM] stick_table: don't overwrite data when storing an entry
16420 - [MINOR] config: initialize stick tables after all the parsing
16421 - [MINOR] stick_table: provide functions to return stksess data from a type
16422 - [MEDIUM] stick_table: move the server ID to a generic data type
16423 - [MINOR] stick_table: enable it for frontends too
16424 - [MINOR] stick_table: export the stick_table_key
16425 - [MINOR] tcp: add per-source connection rate limiting
16426 - [MEDIUM] stick_table: separate storage and update of session entries
16427 - [MEDIUM] stick-tables: add a reference counter to each entry
16428 - [MINOR] session: add a pointer to the tracked counters for the source
16429 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
16430 - [BUG] config: report the correct proxy type in tcp-request errors
16431 - [MINOR] config: provide a function to quote args in a more friendly way
16432 - [BUG] stick_table: the fix for the memory leak caused a regression
16433 - [MEDIUM] backend: support servers on 0.0.0.0
16434 - [BUG] stick-table: correctly refresh expiration timers
16435 - [MEDIUM] stream-interface: add a ->release callback
16436 - [MINOR] proxy: add a "parent" member to the structure
16437 - [MEDIUM] session: make it possible to call an I/O handler on both SI
16438 - [MINOR] tools: add a fast div64_32 function
16439 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
16440 - [MINOR] errors: provide new status codes for config parsing functions
16441 - [BUG] http: denied requests must not be counted as denied resps in listeners
16442 - [MINOR] tools: add a get_std_op() function to parse operators
16443 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
16444 - [MAJOR] stream_sock: better wakeup conditions on read()
16445 - [BUG] session: analysers must be checked when SI state changes
16446 - [MINOR] http: reset analysers to listener's, not frontend's
16447 - [MEDIUM] session: support "tcp-request content" rules in backends
16448 - [BUILD] always match official tags when doing git-tar
16449 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
16450 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
16451 - [MINOR] tcp: src_count acl does not have a permanent result
16452 - [MAJOR] session: add track-counters to track counters related to the session
16453 - [MINOR] stick-table: provide a table lookup function
16454 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
16455 - [MEDIUM] session: move counter ACL fetches from proto_tcp
16456 - [MEDIUM] session: add concurrent connections counter
16457 - [MEDIUM] session: add data in and out volume counters
16458 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
16459 - [MEDIUM] session-counters: automatically update tracked connection count
16460 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
16461 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
16462 - [MEDIUM] session: add a counter on the cumulated number of sessions
16463 - [MINOR] config: support a comma-separated list of store data types in stick-table
16464 - [MEDIUM] stick-tables: add support for arguments to data_types
16465 - [MEDIUM] stick-tables: add stored data argument type checking
16466 - [MEDIUM] session counters: add conn_rate and sess_rate counters
16467 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
16468 - [MINOR] stktable: add a stktable_update_key() function
16469 - [MINOR] session-counters: add a general purpose counter (gpc0)
16470 - [MEDIUM] session-counters: add HTTP req/err tracking
16471 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
16472 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
16473 - [CLEANUP] stick-table: declare stktable_data_types as extern
16474 - [MEDIUM] stick-table: make use of generic types for stored data
16475 - [MINOR] stats: correctly report errors on "show table" and "clear table"
16476 - [MEDIUM] stats: add the ability to dump table entries matching criteria
16477 - [DOC] configuration: document all the new tracked counters
16478 - [DOC] stats: document "show table" and "clear table"
16479 - [MAJOR] session-counters: split FE and BE track counters
16480 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
16481 - [MEDIUM] session counters: automatically remove expired entries.
16482 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
16483 - [MEDIUM] session-counters: make it possible to count connections from frontend
16484 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
16485 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
16486 - [CLEANUP] stats: use stksess_kill() to remove table entries
16487 - [DOC] update the references to session counters and to tcp-request connection
16488 - [DOC] cleanup: split a few long lines
16489 - [MEDIUM] http: forward client's close when abortonclose is set
16490 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
16491 - [BUG] stats: global stats timeout may be specified before stats socket.
16492 - [BUG] conf: add tcp-request content rules to the correct list
16493
Willy Tarreau21475e32010-05-23 08:46:08 +0200164942010/05/23 : 1.5-dev0
16495 - exact copy of 1.4.6
16496
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200164972010/05/16 : 1.4.6
16498 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
16499 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
16500 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
16501 - [DOC] add a few precisions about the use of RDP cookies
16502
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200165032010/05/13 : 1.4.5
16504 - [DOC] report minimum kernel version for tproxy in the Makefile
16505 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
16506 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
16507 - [DOC] fix ignore-persist/force-persist documentation
16508 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
16509 - [DOC] doc/configuration.txt: fix typos
16510 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
16511 - [MINOR] fix possible crash in debug mode with invalid responses
16512 - [MINOR] halog: add support for statisticts on status codes
16513 - [OPTIM] halog: use a faster zero test in fgets()
16514 - [OPTIM] halog: minor speedup by using unlikely()
16515 - [OPTIM] halog: speed up fgets2-64 by about 10%
16516 - [DOC] refresh the README file and merge the CONTRIB file into it
16517 - [MINOR] acl: support loading values from files
16518 - [MEDIUM] ebtree: upgrade to version 6.0
16519 - [MINOR] acl trees: add flags and union members to store values in trees
16520 - [MEDIUM] acl: add ability to insert patterns in trees
16521 - [MEDIUM] acl: add tree-based lookups of exact strings
16522 - [MEDIUM] acl: add tree-based lookups of networks
16523 - [MINOR] acl: ignore empty lines and comments in pattern files
16524 - [MINOR] stick-tables: add support for "stick on hdr"
16525
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200165262010/04/07 : 1.4.4
16527 - [BUG] appsession should match the whole cookie name
16528 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
16529 - [MEDIUM] backend: move the transparent proxy address selection to backend
16530 - [MINOR] add very fast IP parsing functions
16531 - [MINOR] add new tproxy flags for dynamic source address binding
16532 - [MEDIUM] add ability to connect to a server from an IP found in a header
16533 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
16534 - [MINOR] http: make it possible to pretend keep-alive when doing close
16535 - [MINOR] config: report "default-server" instead of "(null)" in error messages
16536
Willy Tarreau75934a12010-03-30 09:50:08 +0200165372010/03/30 : 1.4.3
16538 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
16539 - [MEDIUM] session: better fix for connection to servers with closed input
16540 - [DOC] indicate in the doc how to bind to port ranges
16541 - [BUG] backend: L7 hashing must not be performed on incomplete requests
16542 - [TESTS] add a simple program to test connection resets
16543 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
16544 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
16545 - [MINOR] config: allow "slowstart 0s"
16546 - [BUILD] 'make tags' did not consider files ending in '.c'
16547 - [MINOR] checks: add the ability to disable a server in the config
16548
Willy Tarreauda618cb2010-03-17 23:41:57 +0100165492010/03/17 : 1.4.2
16550 - [CLEANUP] product branch update
16551 - [DOC] Some more documentation cleanups
16552 - [BUG] clf logs segfault when capturing a non existant header
16553 - [OPTIM] config: only allocate check buffer when checks are enabled
16554 - [MEDIUM] checks: support multi-packet health check responses
16555 - [CLEANUP] session: remove duplicate test
16556 - [BUG] http: don't wait for response data to leave buffer is client has left
16557 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
16558 - [MINOR] stats: don't send empty lines in "show errors"
16559 - [MINOR] stats: make the data dump function reusable for other purposes
16560 - [MINOR] stats socket: add show sess <id> to dump details about a session
16561 - [BUG] stats: connection reset counters must be plain ascii, not HTML
16562 - [BUG] url_param hash may return a down server
16563 - [MINOR] force null-termination of hostname
16564 - [MEDIUM] connect to servers even when the input has already been closed
16565 - [BUG] don't merge anonymous ACLs !
16566 - [BUG] config: fix endless loop when parsing "on-error"
16567 - [MINOR] http: don't mark a server as failed when it returns 501/505
16568 - [OPTIM] checks: try to detect the end of response without polling again
16569 - [BUG] checks: don't report an error when recv() returns an error after data
16570 - [BUG] checks: don't abort when second poll returns an error
16571 - [MINOR] checks: make shutdown() silently fail
16572 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
16573 - [BUG] init: unconditionally catch SIGPIPE
16574 - [BUG] checks: don't wait for a close to start parsing the response
16575
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100165762010/03/04 : 1.4.1
16577 - [BUG] Clear-cookie path issue
16578 - [DOC] fix typo on stickiness rules
16579 - [BUILD] fix BSD and OSX makefiles for missing files
16580 - [BUILD] includes order breaks OpenBSD build
16581 - [BUILD] fix some build warnings on Solaris with is* macros
16582 - [BUG] logs: don't report "last data" when we have just closed after an error
16583 - [BUG] logs: don't report "proxy request" when server closes early
16584 - [BUILD] fix platform-dependant build issues related to crypt()
16585 - [STATS] count transfer aborts caused by client and by server
16586 - [STATS] frontend requests were not accounted for failed requests
16587 - [MINOR] report total number of processed connections when stopping a proxy
16588 - [DOC] be more clear about the limitation to one single monitor-net entry
16589
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100165902010/02/26 : 1.4.0
16591 - [MINOR] stats: report maint state for tracking servers too
16592 - [DOC] fix summary to add pattern extraction
16593 - [DOC] Documentation cleanups
16594 - [BUG] cfgparse memory leak and missing free calls in deinit()
16595 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
16596 - [EXAMPLES] add auth.cfg
16597 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
16598 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
16599 - [BUILD] auth: don't use unnamed unions
16600 - [BUG] config: report unresolvable host names as errors
16601 - [BUILD] fix build breakage with DEBUG_FULL
16602 - [DOC] fix a typo about timeout check and clarify the explanation.
16603 - [MEDIUM] http: don't use trash to realign large buffers
16604 - [STATS] report HTTP requests (total and rate) in frontends
16605 - [STATS] separate frontend and backend HTTP stats
16606 - [MEDIUM] http: revert to use a swap buffer for realignment
16607 - [MINOR] stats: report the request rate in frontends as cell titles
16608 - [MINOR] stats: mark areas with an underline when tooltips are available
16609 - [DOC] reorder some entries to maintain the alphabetical order
16610 - [DOC] cleanup of the keyword matrix
16611
Willy Tarreaub05613d2010-02-02 10:18:28 +0100166122010/02/02 : 1.4-rc1
16613 - [MEDIUM] add a maintenance mode to servers
16614 - [MINOR] http-auth: last fix was wrong
16615 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
16616 - [MINOR] Base64 decode
16617 - [MINOR] generic auth support with groups and encrypted passwords
16618 - [MINOR] add ACL_TEST_F_NULL_MATCH
16619 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
16620 - [MINOR] acl: add http_auth and http_auth_group
16621 - [MAJOR] use the new auth framework for http stats
16622 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
16623 - [STATS] make it possible to change a CLI connection timeout
16624 - [BUG] patterns: copy-paste typo in type conversion arguments
16625 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
16626 - [MINOR] standard: str2mask: string to netmask converter
16627 - [MINOR] pattern: add support for argument parsers for converters
16628 - [MINOR] pattern: add the "ipmask()" converting function
16629 - [MINOR] config: off-by-one in "stick-table" after list of converters
16630 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
16631 - [BUG] restore accidentely removed line in last patch !
16632 - [MINOR] checks: make the HTTP check code add the CRLF itself
16633 - [MINOR] checks: add the server's status in the checks
16634 - [BUILD] halog: make without arch-specific optimizations
16635 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
16636 - [MINOR] http: disable keep-alive when process is going down
16637 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
16638 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
16639 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
16640 - [MINOR] prepare req_*/rsp_* to receive a condition
16641 - [CLEANUP] config: specify correct const char types to warnif_* functions
16642 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
16643 - [MEDIUM] http: make the request filter loop check for optional conditions
16644 - [MEDIUM] http: add support for conditional request filter execution
16645 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
16646 - [MEDIUM] http: add support for conditional request header addition
16647 - [MEDIUM] http: add support for conditional response header rewriting
16648 - [DOC] add some missing ACLs about response header matching
16649 - [MEDIUM] http: add support for proxy authentication
16650 - [MINOR] http-auth: make the 'unless' keyword work as expected
16651 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
16652 - [MEDIUM] add support for anonymous ACLs
16653 - [MEDIUM] http: switch to tunnel mode after status 101 responses
16654 - [MEDIUM] http: stricter processing of the CONNECT method
16655 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
16656 - [MINOR] config: fix too large ssl-hello-check message.
16657 - [BUG] fix error response in case of server error
16658
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100166592010/01/25 : 1.4-dev8
16660 - [CLEANUP] Keep in sync "defaults" support between documentation and code
16661 - [MEDIUM] http: add support for Proxy-Connection header
16662 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
16663 - [MINOR] http: remove a copy-paste typo in transaction cleaning
16664 - [BUG] http: trim any excess buffer data when recycling a connection
16665
Willy Tarreau6939b552010-01-25 01:54:37 +0100166662010/01/25 : 1.4-dev7
16667 - [BUG] appsession: possible memory leak in case of out of memory condition
16668 - [MINOR] config: don't accept 'appsession' in defaults section
16669 - [MINOR] Add function to parse a size in configuration
16670 - [MEDIUM] Add stick table (persistence) management functions and types
16671 - [MEDIUM] Add pattern fetch management types and functions
16672 - [MEDIUM] Add src dst and dport pattern fetches.
16673 - [MEDIUM] Add stick table configuration and init.
16674 - [MEDIUM] Add stick and store rules analysers.
16675 - [MINOR] add option "mysql-check" to use MySQL health checks
16676 - [BUG] health checks: fix requeued message
16677 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
16678 - [BUG] checks: fix newline termination
16679 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
16680 - [BUG] appsession's sessid must be reset at end of transaction
16681 - [BUILD] appsession did not build anymore under gcc-2.95
16682 - [BUG] server redirection used an uninitialized string.
16683 - [MEDIUM] http: fix handling of message pointers
16684 - [MINOR] http: fix double slash prefix with server redirect
16685 - [MINOR] http redirect: add the ability to append a '/' to the URL
16686 - [BUG] stream_interface: fix retnclose and remove cond_close
16687 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
16688 - [MINOR] http: move appsession 'sessid' from session to http_txn
16689 - [OPTIM] reorder http_txn to optimize cache lines placement
16690 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
16691 - [MINOR] http: add a separate "http-keep-alive" timeout
16692 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
16693 - [DOC] fix various too large lines
16694 - [DOC] remove several trailing spaces
16695 - [DOC] add the doc about stickiness
16696 - [BUILD] remove a warning in standard.h on AIX
16697 - [BUG] checks: chars are unsigned on AIX, check was always true
16698 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
16699 - [BUG] check: we must not check for error before reading a response
16700 - [BUG] buffers: remove remains of wrong obsolete length check
16701 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
16702 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
16703 - [MEDIUM] http: don't switch to tunnel mode upon close
16704 - [DOC] add documentation about connection header processing
16705 - [MINOR] http: add http_remove_header2() to remove a header value.
16706 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
16707 - [MAJOR] http: rework request Connection header handling
16708 - [MAJOR] http: rework response Connection header handling
16709 - [MINOR] add the ability to force kernel socket buffer size.
16710 - [BUG] http_server_error() must not purge a previous pending response
16711 - [OPTIM] http: don't delay response if next request is incomplete
16712 - [MINOR] add the "force-persist" statement to force persistence on down servers
16713 - [MINOR] http: logs must report persistent connections to down servers
16714 - [BUG] buffer_replace2 must never change the ->w entry
16715
Willy Tarreau11f8f542010-01-08 07:49:44 +0100167162010/01/08 : 1.4-dev6
16717 - [BUILD] warning in stream_interface.h
16718 - [BUILD] warning ultoa_r returns char *
16719 - [MINOR] hana: only report stats if it is enabled
16720 - [MINOR] stats: add "a link" & "a href" for sockets
16721 - [MINOR]: stats: add show-legends to report additional informations
16722 - [MEDIUM] default-server support
16723 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
16724 - [MINOR] stats: add href to tracked server
16725 - [BUG] stats: show UP/DOWN status also in tracking servers
16726 - [DOC] Restore ability to search a keyword at the beginning of a line
16727 - [BUG] stats: cookie should be reported under backend not under proxy
16728 - [BUG] cfgparser/stats: fix error message
16729 - [BUG] http: disable auto-closing during chunk analysis
16730 - [BUG] http: fix hopefully last closing issue on data forwarding
16731 - [DEBUG] add an http_silent_debug function to debug HTTP states
16732 - [MAJOR] http: fix again the forward analysers
16733 - [BUG] http_process_res_common() must not skip the forward analyser
16734 - [BUG] http: some possible missed close remain in the forward chain
16735 - [BUG] http: redirect needed to be updated after recent changes
16736 - [BUG] http: don't set no-linger on response in case of forced close
16737 - [MEDIUM] http: restore the original behaviour of option httpclose
16738 - [TESTS] add a file to test various connection modes
16739 - [BUG] http: check options before the connection header
16740 - [MAJOR] session: fix the order by which the analysers are run
16741 - [MEDIUM] session: also consider request analysers added during response
16742 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
16743 - [BUG] http: memory leak with captures when using keep-alive
16744 - [BUG] http: fix for capture memory leak was incorrect
16745 - [MINOR] http redirect: use proper call to return last response
16746 - [MEDIUM] http: wait for some flush of the response buffer before a new request
16747 - [MEDIUM] session: limit the number of analyser loops
16748
Willy Tarreau1f445892010-01-03 23:23:36 +0100167492010/01/03 : 1.4-dev5
16750 - [MINOR] server tracking: don't care about the tracked server's mode
16751 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
16752 - [MEDIUM] appsession: add the "request-learn" option
16753 - [BUG] Configuration parser bug when escaping characters
16754 - [MINOR] CSS & HTML fun
16755 - [MINOR] Collect & provide http response codes received from servers
16756 - [BUG] Fix silly typo: hspr_other -> hrsp_other
16757 - [MINOR] Add "a name" to stats page
16758 - [MINOR] add additional "a href"s to stats page
16759 - [MINOR] Collect & provide http response codes for frontends, fix backends
16760 - [DOC] some small spell fixes and unifications
16761 - [MEDIUM] Decrease server health based on http responses / events, version 3
16762 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
16763 - [BUG] config: fix erroneous check on cookie domain names, again
16764 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
16765 - [DOC] trivial fix for man page
16766 - [MINOR] config: report all supported options for the "bind" keyword
16767 - [MINOR] tcp: add support for the defer_accept bind option
16768 - [MINOR] unix socket: report the socket path in case of bind error
16769 - [CONTRIB] halog: support searching by response time
16770 - [DOC] add a reminder about obsolete documents
16771 - [DOC] point to 1.4 doc, not 1.3
16772 - [DOC] option tcp-smart-connect was missing from index
16773 - [MINOR] http: detect connection: close earlier
16774 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
16775 - [OPTIM] move some rarely used fields out of fdtab
16776 - [MEDIUM] fd: merge fd_list into fdtab
16777 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
16778 - [MINOR] http: add new transaction flags for keep-alive and content-length
16779 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
16780 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
16781 - [MINOR] http request: simplify the test of no-data
16782 - [MEDIUM] http request: simplify POST length detection
16783 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
16784 - [MAJOR] http: create the analyser which waits for a response
16785 - [MINOR] http: pre-set the persistent flags in the transaction
16786 - [MEDIUM] http response: check body length and set transaction flags
16787 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
16788 - [MINOR] http: remove the last call to stream_int_return
16789 - [IMPORT] import ebtree v5.0 into directory ebtree/
16790 - [MEDIUM] build: switch ebtree users to use new ebtree version
16791 - [CLEANUP] ebtree: remove old unused files
16792 - [BUG] definitely fix regparm issues between haproxy core and ebtree
16793 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
16794 - [BUILD] missing #ifndef in ebmbtree.h
16795 - [BUILD] missing #ifndef in ebsttree.h
16796 - [MINOR] tools: add hex2i() function to convert hex char to int
16797 - [MINOR] http: create new MSG_BODY sub-states
16798 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
16799 - [DOC] option is "defer-accept", not "defer_accept"
16800 - [MINOR] http: keep pointer to beginning of data
16801 - [BUG] x-original-to: name was not set in default instance
16802 - [MINOR] http: detect tunnel mode and set it in the session
16803 - [BUG] config: fix error message when config file is not found
16804 - [BUG] config: fix wrong handling of too large argument count
16805 - [BUG] config: disable 'option httplog' on TCP proxies
16806 - [BUG] config: fix erroneous check on cookie domain names
16807 - [BUG] config: cookie domain was ignored in defaults sections
16808 - [MINOR] config: support passing multiple "domain" statements to cookies
16809 - [MINOR] ebtree: add functions to lookup non-null terminated strings
16810 - [MINOR] config: don't report error on all subsequent files on failure
16811 - [BUG] second fix for the printf format warning
16812 - [BUG] check_post: limit analysis to the buffer length
16813 - [MEDIUM] http: process request body in a specific analyser
16814 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
16815 - [MAJOR] http: completely process the "connection" header
16816 - [MINOR] http: only consider chunk encoding with HTTP/1.1
16817 - [MAJOR] buffers: automatically compute the maximum buffer length
16818 - [MINOR] http: move the http transaction init/cleanup code to proto_http
16819 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
16820 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
16821 - [MEDIUM] http: rework chunk-size parser
16822 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
16823 - [MINOR] buffers: add buffer_ignore() to skip some bytes
16824 - [BUG] http: offsets are relative to the buffer, not to ->som
16825 - [MEDIUM] http: automatically re-aling request buffer
16826 - [BUG] http: body parsing must consider the start of message
16827 - [MINOR] new function stream_int_cond_close()
16828 - [MAJOR] http: implement body parser
16829 - [BUG] http: typos on several unlikely() around header insertion
16830 - [BUG] stream_sock: wrong max computation on recv
16831 - [MEDIUM] http: rework the buffer alignment logic
16832 - [BUG] buffers: wrong size calculation for displaced data
16833 - [MINOR] stream_sock: prepare for closing when all pending data are sent
16834 - [MEDIUM] http: add two more states for the closing period
16835 - [MEDIUM] http: properly handle "option forceclose"
16836 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
16837 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
16838 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
16839 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
16840 - [MINOR] config: option forceclose is valid in frontends too
16841 - [BUILD] halog: insufficient include path in makefile
16842 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
16843 - [MEDIUM] http: make the parsers able to wait for a buffer flush
16844 - [MAJOR] http: add support for option http-server-close
16845 - [BUG] http: ensure we abort data transfer on write error
16846 - [BUG] last fix was overzealous and disabled server-close
16847 - [BUG] http: fix erroneous trailers size computation
16848 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
16849 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
16850 - [BUG] http: redirects were broken by chunk changes
16851 - [BUG] http: the request URI pointer is relative to the buffer
16852 - [OPTIM] http: don't immediately enable reading on request
16853 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
16854 - [BUG] http: take care of errors, timeouts and aborts during the data phase
16855 - [MINOR] http: don't wait for sending requests to the server
16856 - [MINOR] http: make the conditional redirect support keep-alive
16857 - [BUG] http: fix cookie parser to support spaces and commas in values
16858 - [MINOR] config: some options were missing for "redirect"
16859 - [MINOR] redirect: add support for unconditional rules
16860 - [MINOR] config: centralize proxy struct initialization
16861 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
16862 - [MEDIUM] config: remove the limitation of 10 config files
16863 - [CLEANUP] http: remove a remaining impossible condition
16864 - [OPTIM] http: optimize a bit the construct of the forward loops
16865
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200168662009/10/12 : 1.4-dev4
16867 - [DOC] add missing rate_lim and rate_max
16868 - [MAJOR] struct chunk rework
16869 - [MEDIUM] Health check reporting code rework + health logging, v3
16870 - [BUG] check if rise/fall has an argument and it is > 0
16871 - [MINOR] health checks logging unification
16872 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
16873 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
16874 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
16875 - [MINOR] Introduce include/types/counters.h
16876 - [CLEANUP] Move counters to dedicated structures
16877 - [MINOR] Add "clear counters" to clear statistics counters
16878 - [MEDIUM] Collect & provide separate statistics for sockets, v2
16879 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
16880 - [MINOR] acl: don't report valid acls as potential mistakes
16881 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
16882 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
16883 - [MINOR] Capture & display more data from health checks, v2
16884 - [BUG] task.c: don't assing last_timer to node-less entries
16885 - [BUG] http stats: large outputs sometimes got some parts chopped off
16886 - [MINOR] backend: export some functions to recount servers
16887 - [MINOR] backend: uninline some LB functions
16888 - [MINOR] include time.h from freq_ctr.h as is uses "now".
16889 - [CLEANUP] backend: move LB algos to individual files
16890 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
16891 - [CLEANUP] proxy: move last lb-specific bits to their respective files
16892 - [MINOR] backend: separate declarations of LB algos from their lookup method
16893 - [MINOR] backend: reorganize the LB algorithm selection
16894 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
16895 - [MINOR] report list of supported pollers with -vv
16896 - [DOC] log-health-checks is an option, not a directive
16897 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
16898 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
16899 - [MINOR] stats: strip CR and LF from the input command line
16900 - [BUG] don't refresh timeouts late after detected activity
16901 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
16902 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
16903 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
16904 - [MEDIUM] stats: don't use s->ana_state anymore
16905 - [MINOR] remove now obsolete ana_state from the session struct
16906 - [MEDIUM] stats: make HTTP stats use an I/O handler
16907 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
16908 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
16909 - [MINOR] config: reference file and line with any listener/proxy/server declaration
16910 - [MINOR] config: report places of duplicate names or IDs
16911 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
16912 - [MINOR] tools: add a new get_next_id() function
16913 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
16914 - [OPTIM] counters: move some max numbers to the counters struct
16915 - [BUG] counters: fix segfault on missing counters for a listener
16916 - [MEDIUM] backend: implement consistent hashing variation
16917 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
16918 - [MINOR] stats: use 'clear counters all' to clear all values
16919 - [MEDIUM] add access restrictions to the stats socket
16920 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
16921 - [MINOR] proxy: provide function to retrieve backend/server pointers
16922 - [MINOR] add the "initial weight" to the server struct.
16923 - [MEDIUM] stats: add the "get weight" command to report a server's weight
16924 - [MEDIUM] stats: add the "set weight" command
16925 - [BUILD] add a 'make tags' target
16926 - [MINOR] stats: add support for numeric IDs in set weight/get weight
16927 - [MINOR] stats: use a dedicated state to output static data
16928 - [OPTIM] stats: check free space before trying to print
16929
Willy Tarreau9f389e02009-09-24 00:12:50 +0200169302009/09/24 : 1.4-dev3
16931 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
16932 - [MEDIUM] Collect & show information about last health check, v3
16933 - [MINOR] export the hostname variable so that all the code can access it
16934 - [MINOR] stats: add a new node-name setting
16935 - [MEDIUM] remove old experimental tcpsplice option
16936 - [BUILD] fix build for systems without SOL_TCP
16937 - [MEDIUM] move connection establishment from backend to the SI.
16938 - [MEDIUM] make the global stats socket part of a frontend
16939 - [MEDIUM] session: account per-listener connections
16940 - [MINOR] session: switch to established state if no connect function
16941 - [MEDIUM] make the unix stats sockets use the generic session handler
16942 - [CLEANUP] unix: remove uxst_process_session()
16943 - [CLEANUP] move remaining stats sockets code to dumpstats
16944 - [MINOR] move the initial task's nice value to the listener
16945 - [MINOR] cleanup set_session_backend by using pre-computed analysers
16946 - [MINOR] set s->srv_error according to the analysers
16947 - [MEDIUM] set rep->analysers from fe and be analysers
16948 - [MEDIUM] replace BUFSIZE with buf->size in computations
16949 - [MEDIUM] make it possible to change the buffer size in the configuration
16950 - [MEDIUM] report error on buffer writes larger than buffer size
16951 - [MEDIUM] stream_interface: add and use ->update function to resync
16952 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
16953 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
16954 - [BUG] tarpit did not work anymore
16955 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
16956 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
16957 - [MINOR] buffers: provide more functions to handle buffer data
16958 - [MEDIUM] buffers: provide new buffer_feed*() function
16959 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
16960 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
16961 - [BUG] buffer_forward() would not correctly consider data already scheduled
16962 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
16963 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
16964 - [MAJOR] http: add support for HTTP 1xx informational responses
16965 - [MINOR] buffers: inline buffer_si_putchar()
16966 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
16967 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
16968 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
16969 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
16970 - [MEDIUM] add support for infinite forwarding
16971 - [BUILD] stream_interface: fix conflicting declaration
16972 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
16973 - [BUG] variable buffer size ignored at initialization time
16974 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
16975 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
16976 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
16977 - [MINOR] stream_interface: add iohandler callback
16978 - [MINOR] stream_interface: add functions to support running as internal/external tasks
16979 - [MEDIUM] session: call iohandler for embedded tasks (applets)
16980 - [MINOR] add a ->private member to the stream_interface
16981 - [MEDIUM] stats: prepare the connection for closing before dumping
16982 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
16983
Willy Tarreau68dcd252009-08-09 22:57:09 +0200169842009/08/09 : 1.4-dev2
16985 - [BUG] task: fix possible crash when some timeouts are not configured
16986 - [BUG] log: option tcplog would log to global if no logger was defined
16987
Willy Tarreaub03d2982009-07-29 22:38:32 +0200169882009/07/29 : 1.4-dev1
16989 - [MINOR] acl: add support for matching of RDP cookies
16990 - [MEDIUM] add support for RDP cookie load-balancing
16991 - [MEDIUM] add support for RDP cookie persistence
16992 - [MINOR] add a new CLF log format
16993 - [MINOR] startup: don't imply -q with -D
16994 - [BUG] ensure that we correctly re-start old process in case of error
16995 - [MEDIUM] add support for binding to source port ranges during connect
16996 - [MINOR] config: track "no option"/"option" changes
16997 - [MINOR] config: support resetting options do default values
16998 - [MEDIUM] implement option tcp-smart-accept at the frontend
16999 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
17000 - [MEDIUM] implement tcp-smart-connect option at the backend
17001 - [MEDIUM] add support for TCP MSS adjustment for listeners
17002 - [MEDIUM] support setting a server weight to zero
17003 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
17004 - [MAJOR] session: don't clear buffer status flags anymore
17005 - [MAJOR] session: only check for timeouts when they have just occurred.
17006 - [MAJOR] session: simplify buffer error handling
17007 - [MEDIUM] config: split parser and checker in two functions
17008 - [MEDIUM] config: support loading multiple configuration files
17009 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
17010 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
17011 - [MEDIUM] splice: set the capability on each stream_interface
17012 - [BUG] http: redirect rules were processed too early
17013 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
17014 - [MEDIUM] http: split request waiter from request processor
17015 - [MEDIUM] session: tell analysers what bit they were called for
17016 - [MAJOR] http: complete splitting of the remaining stages
17017 - [MINOR] report in the proxies the requirements for ACLs
17018 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
17019 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
17020 - [MINOR] prepare callers of session_set_backend to handle errors
17021 - [BUG] default ACLs did not properly set the ->requires flag
17022 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
17023 - [MINOR] ensure we can jump from swiching rules to http without data
17024 - [MINOR] http: take http request timeout from the backend
17025 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
17026 - [BUILD] report commit date and not author's date as build date
17027 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
17028 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
17029 - [BUG] stream_sock: don't stop reading when the poller reports an error
17030 - [BUG] config: tcp-request content only accepts "if" or "unless"
17031 - [BUG] task: fix possible timer drift after update
17032 - [MINOR] apply tcp-smart-connect option for the checks too
17033 - [MINOR] stats: better displaying in MSIE
17034 - [MINOR] config: improve error reporting in global section
17035 - [MINOR] config: improve error reporting in listen sections
17036 - [MINOR] config: the "capture" keyword is not allowed in backends
17037 - [MINOR] config: improve error reporting when checking configuration
17038 - [BUILD] fix a minor build warning on AIX
17039 - [BUILD] use "git cmd" instead of "git-cmd"
17040 - [CLEANUP] report 2009 not 2008 in the copyright banner.
17041 - [MINOR] print usage on the stats sockets upon invalid commands
17042 - [MINOR] acl: detect and report potential mistakes in ACLs
17043 - [BUILD] fix incorrect printf arg count with tcp_splice
17044 - [BUG] fix random pauses on last segment of a series
17045 - [BUILD] add support for build under Cygwin
17046
Willy Tarreau79158882009-06-09 11:59:08 +0200170472009/06/09 : 1.4-dev0
17048 - exact copy of 1.3.18
17049
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200170502009/05/10 : 1.3.18
17051 - [MEDIUM] add support for "balance hdr(name)"
17052 - [CLEANUP] give a little bit more information in error message
17053 - [MINOR] add X-Original-To: header
17054 - [BUG] x-original-to: fix missing initialization to default value
17055 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
17056 - [MINOR] improve reporting of misplaced acl/reqxxx rules
17057 - [MEDIUM] http: add options to ignore invalid header names
17058 - [MEDIUM] http: capture invalid requests/responses even if accepted
17059 - [BUILD] add format(printf) to printf-like functions
17060 - [MINOR] fix several printf formats and missing arguments
17061 - [BUG] stats: total and lbtot are unsigned
17062 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
17063 - [CLEANUP] remove unused make option from haproxy.spec
17064 - [BUILD] make it possible to pass alternative arch at build time
17065 - [MINOR] switch all stat counters to 64-bit
17066 - [MEDIUM] ensure we don't recursively call pool_gc2()
17067 - [CRITICAL] uninitialized response field can sometimes cause crashes
17068 - [BUG] fix wrong pointer arithmetics in HTTP message captures
17069 - [MINOR] rhel init script : support the reload operation
17070 - [MINOR] add basic signal handling functions
17071 - [BUILD] add signal.o to all makefiles
17072 - [MEDIUM] call signal_process_queue from run_poll_loop
17073 - [MEDIUM] pollers: don't wait if a signal is pending
17074 - [MEDIUM] convert all signals to asynchronous signals
17075 - [BUG] O(1) pollers should check their FD before closing it
17076 - [MINOR] don't close stdio fds twice
17077 - [MINOR] add options dontlog-normal and log-separate-errors
17078 - [DOC] minor fixes and rearrangements
17079 - [BUG] fix parser crash on unconditional tcp content rules
17080 - [DOC] rearrange the configuration manual and add a summary
17081 - [MINOR] standard: provide a new 'my_strndup' function
17082 - [MINOR] implement per-logger log level limitation
17083 - [MINOR] compute the max of sessions/s on fe/be/srv
17084 - [MINOR] stats: report max sessions/s and limit in CSV export
17085 - [MINOR] stats: report max sessions/s and limit in HTML stats
17086 - [MINOR] stats/html: use the arial font before helvetica
17087
Willy Tarreauf459b422009-03-29 15:26:57 +0200170882009/03/29 : 1.3.17
17089 - Update specfile to build for v2.6 kernel.
17090 - [BUG] reset the stream_interface connect timeout upon connect or error
17091 - [BUG] reject unix accepts when connection limit is reached
17092 - [MINOR] show sess: report number of calls to each task
17093 - [BUG] don't call epoll_ctl() on closed sockets
17094 - [BUG] stream_sock: disable I/O on fds reporting an error
17095 - [MINOR] sepoll: don't count two events on the same FD.
17096 - [MINOR] show sess: report a lot more information about sessions
17097 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
17098 - [BUG] don't set an expiration date directly from now_ms
17099 - [MINOR] implement ulltoh() to write HTML-formatted numbers
17100 - [MINOR] stats/html: group digits by 3 to clarify numbers
17101 - [BUILD] remove haproxy-small.spec
17102 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
17103
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100171042009/03/22 : 1.3.16
17105 - [BUILD] Fixed Makefile for linking pcre
17106 - [CONTRIB] selinux policy for haproxy
17107 - [MINOR] show errors: encode backslash as well as non-ascii characters
17108 - [MINOR] cfgparse: some cleanups in the consistency checks
17109 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
17110 - [MINOR] tcp-inspect: permit the use of no-delay inspection
17111 - [MEDIUM] reverse internal proxy declaration order to match configuration
17112 - [CLEANUP] config: catch and report some possibly wrong rule ordering
17113 - [BUG] connect timeout is in the stream interface, not the buffer
17114 - [BUG] session: errors were not reported in termination flags in TCP mode
17115 - [MINOR] tcp_request: let the caller take care of errors and timeouts
17116 - [CLEANUP] http: remove some commented out obsolete code in process_response
17117 - [MINOR] update ebtree to version 4.1
17118 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
17119 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
17120 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
17121 - [MINOR] sched: permit a task to stay up between calls
17122 - [MINOR] task: keep a task count and clean up task creators
17123 - [MINOR] stats: report number of tasks (active and running)
17124 - [BUG] server check intervals must not be null
17125 - [OPTIM] stream_sock: don't retry to read after a large read
17126 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
17127 - [MEDIUM] session: don't resync FSMs on non-interesting changes
17128 - [BUG] check for global.maxconn before doing accept()
17129 - [OPTIM] sepoll: do not re-check whole list upon accepts
17130
Willy Tarreau8185ced2009-03-09 22:45:53 +0100171312009/03/09 : 1.3.16-rc2
17132 - [BUG] stream_sock: write timeout must be updated when forwarding !
17133
Willy Tarreauff63b432009-03-09 01:03:42 +0100171342009/03/09 : 1.3.16-rc1
17135 - appsessions: cleanup DEBUG_HASH and initialize request_counter
17136 - [MINOR] acl: add new keyword "connslots"
17137 - [MINOR] cfgparse: fix off-by 2 in error message size
17138 - [BUILD] fix build with gcc 4.3
17139 - [BUILD] fix MANDIR default location to match documentation
17140 - [TESTS] add a debug patch to help trigger the stats bug
17141 - [BUG] Flush buffers also where there are exactly 0 bytes left
17142 - [MINOR] Allow to specify a domain for a cookie
17143 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
17144 - [MEDIUM] Fix memory freeing at exit
17145 - [MEDIUM] Fix memory freeing at exit, part 2
17146 - [BUG] Fix listen & more of 2 couples <ip>:<port>
17147 - [DOC] remove buggy comment for use_backend
17148 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
17149 - [MEDIUM] add support for URI hash depth and length limits
17150 - [MINOR] permit renaming of x-forwarded-for header
17151 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
17152 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
17153 - [MEDIUM] upgrade to ebtree v4.0
17154 - [DOC] update the README file with new build options
17155 - [MEDIUM] reduce risk of event starvation in ev_sepoll
17156 - [MEDIUM] detect streaming buffers and tag them as such
17157 - [MEDIUM] add support for conditional HTTP redirection
17158 - [BUILD] make install should depend on haproxy not "all"
17159 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
17160 - [BUG] event pollers must not wait if a task exists in the run queue
17161 - [BUG] queue management: wake oldest request in queues
17162 - [BUG] log: reported queue position was offed-by-one
17163 - [BUG] fix the dequeuing logic to ensure that all requests get served
17164 - [DOC] documentation for the "retries" parameter was missing.
17165 - [MEDIUM] implement a monotonic internal clock
17166 - [MEDIUM] further improve monotonic clock by check forward jumps
17167 - [OPTIM] add branch prediction hints in list manipulations
17168 - [MAJOR] replace ultree with ebtree in wait-queues
17169 - [BUG] we could segfault during exit while freeing uri_auths
17170 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
17171 - [MINOR] introduce now_ms, the current date in milliseconds
17172 - [BUG] disable buffer read timeout when reading stats
17173 - [MEDIUM] rework the wait queue mechanism
17174 - [BUILD] change declaration of base64tab to fix build with Intel C++
17175 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
17176 - [MAJOR] use an ebtree instead of a list for the run queue
17177 - [MEDIUM] introduce task->nice and boot access to statistics
17178 - [OPTIM] task_queue: assume most consecutive timers are equal
17179 - [BUILD] silent a warning in unlikely() with gcc 4.x
17180 - [MAJOR] convert all expiration timers from timeval to ticks
17181 - [BUG] use_backend would not correctly consider "unless"
17182 - [TESTS] added test-acl.cfg to test some ACL combinations
17183 - [MEDIUM] add support for configuration keyword registration
17184 - [MEDIUM] modularize the global "stats" keyword configuration parser
17185 - [MINOR] cfgparse: add support for warnings in external functions
17186 - [MEDIUM] modularize the "timeout" keyword configuration parser
17187 - [MAJOR] implement tcp request content inspection
17188 - [MINOR] acl: add a new parsing function: parse_dotted_ver
17189 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
17190 - [CLEANUP] remove unused include/types/client.h
17191 - [CLEANUP] remove many #include <types/xxx> from C files
17192 - [CLEANUP] remove dependency on obsolete INTBITS macro
17193 - [DOC] document the new "tcp-request" keyword and associated ACLs
17194 - [MINOR] acl: add REQ_CONTENT to the list of default acls
17195 - [MEDIUM] acl: permit fetch() functions to set the result themselves
17196 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
17197 - [MINOR] acl: add the "wait_end" acl verb
17198 - [MEDIUM] acl: enforce ACL type checking
17199 - [MEDIUM] acl: set types on all currently known ACL verbs
17200 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
17201 - [CLEANUP] remove 65 useless NULL checks before free
17202 - [MEDIUM] memory: update pool_free2() to support NULL pointers
17203 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
17204 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
17205 - [MEDIUM] process_srv: don't rely at all on client state
17206 - [MEDIUM] process_cli: don't rely at all on server state
17207 - [BUG] fix segfault with url_param + check_post
17208 - [BUG] server timeout was not considered in some circumstances
17209 - [BUG] client timeout incorrectly rearmed while waiting for server
17210 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
17211 - [MAJOR] get rid of SV_STANALYZE (step 2)
17212 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
17213 - [MAJOR] completely separate HTTP and TCP states on the request path
17214 - [BUG] fix recently introduced loop when client closes early
17215 - [MAJOR] get rid of the SV_STHEADERS state
17216 - [MAJOR] better separation of response processing and server state
17217 - [MAJOR] clearly separate HTTP response processing from TCP server state
17218 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
17219 - [MINOR] term_trace: add better instrumentations to trace the code
17220 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
17221 - [BUG] process_response must not enable the read FD
17222 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
17223 - [BUG] process_response: do not touch srv_state
17224 - [BUG] maintain_proxies must not disable backends
17225 - [CLEANUP] get rid of BF_SHUT*_PENDING
17226 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
17227 - [MAJOR] process_session: rely only on buffer flags
17228 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
17229 - [MEDIUM] centralize buffer timeout checks at the top of process_session
17230 - [MINOR] ensure the termination flags are set by process_xxx
17231 - [MEDIUM] session: move the analysis bit field to the buffer
17232 - [OPTIM] process_cli/process_srv: reduce the number of tests
17233 - [BUG] regparm is broken on gcc < 3
17234 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
17235 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
17236 - [BUG] process_cli/process_srv: don't call shutdown when already done
17237 - [BUG] process_request: HTTP body analysis must return zero if missing data
17238 - [TESTS] test-fsm: 22 regression tests for state machines
17239 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
17240 - [BUG] fix harmless but wrong fd insertion sequence
17241 - [MEDIUM] make it possible for analysers to follow the whole session
17242 - [MAJOR] rework of the server FSM
17243 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
17244 - [MEDIUM] massive cleanup of process_srv()
17245 - [MEDIUM] second level of code cleanup for process_srv_data
17246 - [MEDIUM] third cleanup and optimization of process_srv_data()
17247 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
17248 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
17249 - [MAJOR] make the client side use stream_sock_process_data()
17250 - [MEDIUM] split stream_sock_process_data
17251 - [OPTIM] stream_sock_read must check for null-reads more often
17252 - [MINOR] only call flow analysers when their read side is connected.
17253 - [MEDIUM] reintroduce BF_HIJACK with produce_content
17254 - [MINOR] re-arrange buffer flags and rename some of them
17255 - [MINOR] do not check for BF_SHUTR when computing write timeout
17256 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
17257 - [OPTIM] reduce the number of calls to task_wakeup()
17258 - [OPTIM] force inlining of large functions with gcc >= 3
17259 - [MEDIUM] indicate a reason for a task wakeup
17260 - [MINOR] change type of fdtab[]->owner to void*
17261 - [MAJOR] make stream sockets aware of the stream interface
17262 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
17263 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
17264 - [MEDIUM] process_session: make use of the new buffer flags
17265 - [CLEANUP] process_session: move debug outputs out of the critical loop
17266 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
17267 - [OPTIM] add compiler hints in tick_is_expired()
17268 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
17269 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
17270 - [MINOR] add an expiration flag to the stream_sock_interface
17271 - [MAJOR] migrate the connection logic to stream interface
17272 - [MAJOR] add a connection error state to the stream_interface
17273 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
17274 - [MEDIUM] continue layering cleanups.
17275 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
17276 - [MEDIUM] remove stream_sock_update_data()
17277 - [MINOR] maintain a global session list in order to ease debugging
17278 - [BUG] shutw must imply close during a connect
17279 - [MEDIUM] process shutw during connection attempt
17280 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
17281 - [MAJOR] complete layer4/7 separation
17282 - [CLEANUP] move the session-related functions to session.c
17283 - [MINOR] call session->do_log() for logging
17284 - [MINOR] replace the ambiguous client_return function by stream_int_return
17285 - [MINOR] replace client_retnclose() with stream_int_retnclose()
17286 - [MINOR] replace srv_close_with_err() with http_server_error()
17287 - [MEDIUM] make the http server error function a pointer in the session
17288 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
17289 - [MINOR] stream_sock_data_finish() should not expose fd
17290 - [MEDIUM] extract TCP request processing from HTTP
17291 - [MEDIUM] extract the HTTP tarpit code from process_request().
17292 - [MEDIUM] move the HTTP request body analyser out of process_request().
17293 - [MEDIUM] rename process_request to http_process_request
17294 - [BUG] fix forgotten server session counter
17295 - [MINOR] declare process_session in session.h, not proto_http.h
17296 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
17297 - [MINOR] add an analyser code for UNIX stats request
17298 - [MINOR] pre-set analyser flags on the listener at registration time
17299 - [BUG] do not forward close from cons to prod with analysers
17300 - [MEDIUM] ensure that sock->shutw() also closes read for init states
17301 - [MINOR] add an analyser state in struct session
17302 - [MAJOR] make unix sockets work again with stats
17303 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
17304 - [MINOR] move the listener reference from fd to session
17305 - [MEDIUM] reference the current hijack function in the buffer itself
17306 - [MINOR] slightly rebalance stats_dump_{raw,http}
17307 - [MINOR] add a new back-reference type : struct bref
17308 - [MINOR] add back-references to sessions for later use by a dumper.
17309 - [MEDIUM] add support for "show sess" in unix stats socket
17310 - [BUG] do not release the connection slot during a retry
17311 - [BUG] dynamic connection throttling could return a max of zero conns
17312 - [BUG] do not try to pause backends during reload
17313 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
17314 - [BUG] acl-related keywords are not allowed in defaults sections
17315 - [BUG] cookie capture is declared in the frontend but checked on the backend
17316 - [BUG] critical errors should be reported even in daemon mode
17317 - [MINOR] redirect: add support for the "drop-query" option
17318 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
17319 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
17320 - [BUG] do not dequeue requests on a dead server
17321 - [BUG] do not dequeue the backend's pending connections on a dead server
17322 - [MINOR] stats: indicate if a task is running in "show sess"
17323 - [BUG] check timeout must not be changed if timeout.check is not set
17324 - [BUG] "option transparent" is for backend, not frontend !
17325 - [MINOR] transfer errors were not reported anymore in data phase
17326 - [MEDIUM] add a send limit to a buffer
17327 - [MEDIUM] don't report buffer timeout when there is I/O activity
17328 - [MEDIUM] indicate when we don't care about read timeout
17329 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
17330 - [MEDIUM] enable inter-stream_interface wakeup calls
17331 - [MAJOR] implement autonomous inter-socket forwarding
17332 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
17333 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
17334 - [MEDIUM] i/o: rework ->to_forward and ->send_max
17335 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
17336 - [OPTIM] buffer: replace rlim by max_len
17337 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
17338 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
17339 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
17340 - [MEDIUM] split stream_sock_write() into callback and core functions
17341 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
17342 - [MINOR] stream_sock: fix a few wrong empty calculations
17343 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
17344 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
17345 - [MEDIUM] splice: add configuration options and set global.maxpipes
17346 - [MINOR] introduce structures required to support Linux kernel splicing
17347 - [MEDIUM] add definitions for Linux kernel splicing
17348 - [MAJOR] complete support for linux 2.6 kernel splicing
17349 - [BUG] reserve some pipes for backends with splice enabled
17350 - [MEDIUM] splice: add hints to support older buggy kernels
17351 - [MEDIUM] introduce pipe pools
17352 - [MEDIUM] splice: make use of pipe pools
17353 - [STATS] report pipe usage in the statistics
17354 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
17355 - [BUILD] fix snapshot date extraction with negative timezones
17356 - [MEDIUM] move global tuning options to the global structure
17357 - [MEDIUM] splice: add the global "nosplice" option
17358 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
17359 - [BUG] we must not exit if protocol binding only returns a warning
17360 - [MINOR] add support for bind interface name
17361 - [BUG] inform the user when root is expected but not set
17362 - [MEDIUM] add support for source interface binding
17363 - [MEDIUM] add support for source interface binding at the server level
17364 - [MEDIUM] implement bind-process to limit service presence by process
17365 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
17366 - [DOC] filled the logging section of the configuration manual
17367 - [DOC] document HTTP status codes
17368 - [DOC] document a few missing info about errorfile
17369 - [BUG] fix random memory corruption using "show sess"
17370 - [BUG] fix unix socket processing of interrupted output
17371 - [DOC] add diagrams of queuing and future ACL design
17372 - [BUILD] proto_http did not build on gcc-2.95
17373 - [BUG] the "source" keyword must first clear optional settings
17374 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
17375 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
17376 - [MEDIUM] store a complete dump of request and response errors in proxies
17377 - [MEDIUM] implement error dump on unix socket with "show errors"
17378 - [DOC] document "show errors"
17379 - [MINOR] errors dump must use user-visible date, not internal date.
17380 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
17381 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
17382 - [MEDIUM] measure and report session rate on frontend, backends and servers
17383 - [BUG] the "connslots" keyword was matched as "connlots"
17384 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
17385 - [MEDIUM] implement "rate-limit sessions" for the frontend
17386 - [BUG] interface binding: length must include the trailing zero
17387 - [BUG] typo in timeout error reporting : report *res and not *err
17388 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
17389 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
17390 - [BUG] switch server-side stream interface to close in case of abort
17391 - [CLEANUP] remove last references to term_trace
17392 - [OPTIM] freq_ctr: do not rotate the counters when reading
17393 - [BUG] disable any analysers for monitoring requests
17394 - [BUG] rate-limit in defaults section was ignored
17395 - [BUG] task: fix handling of duplicate keys
17396 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
17397 - [OPTIM] displace tasks in the wait queue only if absolutely needed
17398 - [MEDIUM] minor update to the task api: let the scheduler queue itself
17399 - [BUG] event_accept() must always wake the task up, even in health mode
17400 - [CLEANUP] task: distinguish between clock ticks and timers
17401 - [OPTIM] task: reduce the number of calls to task_queue()
17402 - [OPTIM] do not re-check req buffer when only response has changed
17403 - [CLEANUP] don't enable kernel splicing when socket is closed
17404 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
17405 - [MINOR] buffers: implement buffer_flush()
17406 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
17407 - [BUILD] build fixes for Solaris
17408 - [BUILD] proto_http did not build on gcc-2.95 (again)
17409 - [CONTRIB] halog: fast log parser for haproxy
17410 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
17411
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200174122008/04/19 : 1.3.15
17413 - [BUILD] Added support for 'make install'
17414 - [BUILD] Added 'install-man' make target for installing the man page
17415 - [BUILD] Added 'install-bin' make target
17416 - [BUILD] Added 'install-doc' make target
17417 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
17418 - [BUILD] Changed 'install' target to install the binaries first
17419 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
17420 - [MEDIUM]: Inversion for options
17421 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
17422 - [BUG]: Restore clearing t->logs.bytes
17423 - [MEDIUM]: rework checks handling
17424 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
17425 - [MEDIUM] Implement "track [<backend>/]<server>"
17426 - [MINOR] Implement persistent id for proxies and servers
17427 - [BUG] Don't increment server connections too much + fix retries
17428 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
17429 - [MAJOR] proto_uxst rework -> SNMP support
17430 - [BUG] appsession lookup in URL does not work
17431 - [BUG] transparent proxy address was ignored in backend
17432 - [BUG] hot reconfiguration failed because of a wrong error check
17433 - [DOC] big update to the configuration manual
17434 - [DOC] large update to the configuration manual
17435 - [DOC] document more options
17436 - [BUILD] major rework of the GNU Makefile
17437 - [STATS] add support for "show info" on the unix socket
17438 - [DOC] document options forwardfor to logasap
17439 - [MINOR] add support for the "backlog" parameter
17440 - [OPTIM] introduce global parameter "tune.maxaccept"
17441 - [MEDIUM] introduce "timeout http-request" in frontends
17442 - [MINOR] tarpit timeout is also allowed in backends
17443 - [BUG] increment server connections for each connect()
17444 - [MEDIUM] add a turn-around state of one second after a connection failure
17445 - [BUG] fix typo in redispatched connection
17446 - [DOC] document options nolinger to ssl-hello-chk
17447 - [DOC] added documentation for "option tcplog" to "use_backend"
17448 - [BUG] connect_server: server might not exist when sending error report
17449 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
17450 - [MEDIUM] add non-local bind to connect() on Linux
17451 - [MINOR] add transparent proxy support for balabit's Tproxy v4
17452 - [BUG] use backend's source and not server's source with tproxy
17453 - [BUG] fix overlapping server flags
17454 - [MEDIUM] fix server health checks source address selection
17455 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
17456 - [DOC] added "server", "source" and "stats" keywords
17457 - [DOC] all server parameters have been documented
17458 - [DOC] document all req* and rsp* keywords.
17459 - [DOC] added documentation about HTTP header manipulations
17460 - [BUG] log response byte count, not request
17461 - [BUILD] code did not build in full debug mode
17462 - [BUG] fix truncated responses with sepoll
17463 - [MINOR] use s->frt_addr as the server's address in transparent proxy
17464 - [MINOR] fix configuration hint about timeouts
17465 - [DOC] minor cleanup of the doc and notice to contributors
17466 - [MINOR] report correct section type for unknown keywords.
17467 - [BUILD] update MacOS Makefile to build on newer versions
17468 - [DOC] fix erroneous "useallbackups" option in the doc
17469 - [DOC] applied small fixes from early readers
17470 - [MINOR] add configuration support for "redir" server keyword
17471 - [MEDIUM] completely implement the server redirection method
17472 - [TESTS] add a test case for the server redirection mechanism
17473 - [DOC] add a configuration entry for "server ... redir <prefix>"
17474 - [BUILD] backend.c and checks.c did not build without tproxy !
17475 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
17476 - [BUILD] backend.c and checks.c did not build without tproxy !
17477 - [OPTIM] used unsigned ints for HTTP state and message offsets
17478 - [OPTIM] GCC4's builtin_expect() is suboptimal
17479 - [BUG] failed conns were sometimes incremented in the frontend!
17480 - [BUG] timeout.check was not pre-set to eternity
17481 - [TESTS] add test-pollers.cfg to easily report pollers in use
17482 - [BUG] do not apply timeout.connect in checks if unset
17483 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
17484 - [MINOR] silent gcc for a wrong warning
17485 - [CLEANUP] update .gitignore to ignore more temporary files
17486 - [CLEANUP] report dlmalloc's source path only if explictly specified
17487 - [BUG] str2sun could leak a small buffer in case of error during parsing
17488 - [BUG] option allbackups was not working anymore in roundrobin mode
17489 - [MAJOR] implementation of the "leastconn" load balancing algorithm
17490 - [BUILD] ensure that users don't build without setting the target anymore.
17491 - [DOC] document the leastconn LB algo
17492 - [MEDIUM] fix stats socket limitation to 16 kB
17493 - [DOC] fix unescaped space in httpchk example.
17494 - [BUG] fix double-decrement of server connections
17495 - [TESTS] add a test case for port mapping
17496 - [TESTS] add a benchmark for integer hashing
17497 - [TESTS] add new methods in ip-hash test file
17498 - [MAJOR] implement parameter hashing for POST requests
17499
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100175002007/12/06 : 1.3.14
17501 - New option http_proxy (Alexandre Cassen)
17502 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
17503 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
17504 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
17505 - use backends only with use_backend directive (Krzysztof Oledzki)
17506 - Handle long lines properly (Krzysztof Oledzki)
17507 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
17508 - continous statistics (Krzysztof Oledzki)
17509 - add support for logging via a UNIX socket (Robert Tsai)
17510 - fix error checking in strl2ic/strl2uic()
17511 - fix calls to localtime()
17512 - provide easier-to-use ultoa_* functions
17513 - provide easy-to-use limit_r and LIM2A* macros
17514 - add a simple test for the status page
17515 - move error codes to common/errors.h
17516 - silent warning about LIST_* being redefined on OpenBSD
17517 - add socket address length to the protocols
17518 - group PR_O_BALANCE_* bits into a checkable value
17519 - externalize the "balance" option parser to backend.c
17520 - introduce the "url_param" balance method
17521 - make default_backend work in TCP mode too
17522 - disable warning about localtime_r on Solaris
17523 - adjust error messages about conflicting proxies
17524 - avoid calling some layer7 functions if not needed
17525 - simplify error path in event_accept()
17526 - add an options field to the listeners
17527 - added a new state to listeners
17528 - unbind_listener() must use fd_delete() and not close()
17529 - add a generic unbind_listener() primitive
17530 - add a generic delete_listener() primitive
17531 - add a generic unbind_all_listeners() primitive
17532 - create proto_tcp and move initialization of proxy listeners
17533 - stats: report numerical process ID, proxy ID and server ID
17534 - relative_pid was not initialized
17535 - missing header names in raw stats output
17536 - fix missing parenthesis in check_response_for_cacheability
17537 - small optimization on session_process_counters()
17538 - merge ebtree version 3.0
17539 - make ebtree headers multiple-include compatible
17540 - ebtree: include config.h for REGPRM*
17541 - differentiate between generic LB params and map-specific ones
17542 - add a weight divisor to the struct proxy
17543 - implement the Fast Weighted Round Robin (FWRR) algo
17544 - include filltab25.c to experiment on FWRR for dynamic weights
17545 - merge test-fwrr.cfg to validate dynamic weights
17546 - move the load balancing algorithm to be->lbprm.algo
17547 - change server check result to a bit field
17548 - implement "http-check disable-on-404" for graceful shutdown
17549 - secure the calling conditions of ->set_server_status_{up,down}
17550 - report disabled servers as "NOLB" when they are still UP
17551 - document the "http-check disable-on-404" option
17552 - http-check disable-on-404 is not limited to HTTP mode
17553 - add a test file for disable-on-404
17554 - use distinct bits per load-balancing algorithm type
17555 - implement the slowstart parameter for servers
17556 - document the server's slowstart parameter
17557 - stats: report the server warm up status in a "throttle" column
17558 - fix 2 minor issues on AIX
17559 - add the "nbsrv" ACL verb
17560 - add the "fail" condition to monitor requests
17561 - remove a warning from gcc due to htons() in standard.c
17562 - fwrr: ensure that we never overflow in placements
17563 - store the build options to report with -vv
17564 - fix the status return of the init script (R.I. Pienaar)
17565 - stats: real time monitoring script for unix socket (Prizee)
17566 - document "nbsrv" and "monitor fail"
17567 - restrict the set of allowed characters for identifiers
17568 - implement a time parsing function
17569 - add support for time units in the configuration
17570 - add a bit of documentation about timers
17571 - introduce separation between contimeout, and tarpit + queue
17572 - introduce the "timeout" keyword
17573 - grouped all timeouts in one structure
17574 - slowstart is in ms, not seconds
17575 - slowstart: ensure we don't start with a null weight
17576 - report the number of times each server was selected
17577 - fix build on AIX due to recent log changes
17578 - fix build on Solaris due to recent log changes
17579
Willy Tarreaue855f422007-10-18 22:38:22 +0200175802007/10/18 : 1.3.13
17581 - replace the code under O'Reilly license (Arnaud Cornet)
17582 - add a small man page (Arnaud Cornet)
17583 - stats: report haproxy's version by default (Krzysztof Oledzki)
17584 - stats: count server retries and redispatches (Krzysztof Oledzki)
17585 - core: added easy support for Doug Lea's malloc (dlmalloc)
17586 - core: fade out memory usage when stopping proxies
17587 - core: moved the sockaddr pointer to the fdtab structure
17588 - core: add generic protocol support
17589 - core: implement client-side support for PF_UNIX sockets
17590 - stats: implement the CSV output
17591 - stats: add a link to the CSV export HTML page
17592 - stats: implement the statistics output on a unix socket
17593 - config: introduce the "stats" keyword in global section
17594 - build: centralize version and date into one file for each
17595 - tests: added a new hash algorithm
17596
175972007/10/18 : 1.3.12.3
17598 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
17599 - fix double-free during clean exit (Krzysztof Oledzki)
17600 - prevent the system from sending an RST when closing health-checks
17601 (Krzysztof Oledzki)
17602 - do not add a cache-control header when on non-cacheable responses
17603 (Krzysztof Oledzki)
17604 - spread health checks even more (Krzysztof Oledzki)
17605 - stats: scope "." must match the backend and not the frontend
17606 - fixed call to chroot() during startup
17607 - fix wrong timeout computation in event_accept()
17608 - remove condition for exit() under fork() failure
17609
176102007/09/20 : 1.3.12.2
17611 - fix configuration sanity checks for TCP listeners
17612 - set the log socket receive window to zero bytes
17613 - pre-initialize timeouts to infinity, not zero
17614 - fix the SIGHUP message not to alert on server-less proxies
17615 - timeouts and retries could be ignored when switching backend
17616 - added a file to check that "retries" works.
17617 - O'Reilly has clarified its license
17618
176192007/09/05 : 1.3.12.1
17620 - spec I/O: fix allocations of spec entries for an FD
17621 - ensure we never overflow in chunk_printf()
17622 - improve behaviour with large number of servers per proxy
17623 - add support for "stats refresh <interval>"
17624 - stats page: added links for 'refresh' and 'hide down'
17625 - fix backend's weight in the stats page.
17626 - the "stats" keyword is not allowed in a pure frontend.
17627 - provide a test configuration file for stats and checks
17628
Willy Tarreaub21152b2007-06-17 23:41:40 +0200176292007/06/17 : 1.3.12
17630 - fix segfault at exit when using captures
17631 - bug: negation in ACL conds was not cleared between terms
17632 - errorfile: use a local file to feed error messages
17633 - acl: support '-i' to ignore case when matching
17634 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
17635 - acl: support maching on 'path' component
17636 - acl: implement matching on header values
17637 - acl: distinguish between request and response headers
17638 - acl: permit to return any header when no name specified
17639 - acl: provide default ACLs
17640 - added the 'use_backend' keyword for full content-switching
17641 - acl: specify the direction during fetches
17642 - acl: provide the argument length for fetch functions
17643 - acl: provide a reference to the expr to fetch()
17644 - improve memory freeing upon exit
17645 - str2net() must not change the const char *
17646 - shut warnings 'is*' macros from ctype.h on solaris
17647
Willy Tarreaua3503e02007-06-03 17:27:07 +0200176482007/06/03 : 1.3.11.4
17649 - do not re-arm read timeout in SHUTR state !
17650 - optimize I/O by detecting system starvation
17651 - the epoll FD must not be shared between processes
17652 - limit the number of events returned by *poll*
17653
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200176542007/05/14 : 1.3.11.3
17655 - pre-initialize timeouts with tv_eternity during parsing
17656
Willy Tarreaufc273c22007-05-14 03:42:47 +0200176572007/05/14 : 1.3.11.2
17658 - fixed broken health-checks since switch to timeval
17659
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200176602007/05/14 : 1.3.11.1
17661 - fixed ev_kqueue which was forgotten during the switch to timeval
17662 - allowed null timeouts for past events in select
17663
Willy Tarreau544eb402007-05-14 02:42:33 +0200176642007/05/14 : 1.3.11
17665 - fixed ev_sepoll again by rewriting the state machine
17666 - switched all timeouts to timevals instead of milliseconds
17667 - improved memory management using mempools v2.
17668 - several minor optimizations
17669
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200176702007/05/09 : 1.3.10.2
17671 - fixed build on OpenBSD (missing types.h)
17672
Willy Tarreau13398d32007-05-09 22:58:28 +0200176732007/05/09 : 1.3.10.1
17674 - fixed sepoll transition matrix (two states were missing)
17675
Willy Tarreau61beedf2007-05-09 01:44:58 +0200176762007/05/08 : 1.3.10
17677 - several fixes in ev_sepoll
17678 - fixed some expiration dates on some tasks
17679 - fixed a bug in connection establishment detection due to speculative I/O
17680 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
17681 - implemented URI hashing algorithm (Guillaume Dallaire)
17682 - implemented SMTP health checks (Peter van Dijk)
17683 - replaced the rbtree with ul2tree from old scheduler project
17684 - new framework for generic ACL support
17685 - added the 'acl' and 'block' keywords to the config language
17686 - added several ACL criteria and matches (IP, port, URI, ...)
17687 - cleaned up and better modularization for some time functions
17688 - fixed list macros
17689 - fixed useless memory allocation in str2net()
17690 - store the original destination address in the session
17691
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200176922007/04/15 : 1.3.9
17693 - modularized the polling mechanisms and use function pointers instead
17694 of macros at many places
17695 - implemented support for FreeBSD's kqueue() polling mechanism
17696 - fixed a warning on OpenBSD : MIN/MAX redefined
17697 - change socket registration order at startup to accomodate kqueue.
17698 - several makefile cleanups to support old shells
17699 - fix build with limits.h once for all
17700 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
17701 - fdtab now holds the results of polling
17702 - implemented support for speculative I/O processing with epoll()
17703 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
17704 - auto-registering of pollers at load time
17705
Willy Tarreau42c76592007-04-03 20:30:13 +0200177062007/04/03 : 1.3.8.2
17707 - rewriting either the status line or request line could crash the
17708 process due to a pointer which ought to be reset before parsing.
17709 - rewriting the status line in the response did not work, it caused
17710 a 502 Bad Gateway due to an erroneous state during parsing
17711
Willy Tarreauef6d7612007-04-01 11:06:22 +0200177122007/04/01 : 1.3.8.1
17713 - fix reqadd when no option httpclose is used.
17714 - removed now unused fiprm and beprm from proxies
17715 - split logs into two versions : TCP and HTTP
17716 - added some docs about http headers storage and acls
17717 - added a VIM script for syntax color highlighting (Bruno Michel)
17718
Willy Tarreaud661cc02007-03-26 00:24:56 +0200177192007/03/25 : 1.3.8
17720 - fixed several bugs which might have caused a crash with bad configs
17721 - several optimizations in header processing
17722 - many progresses towards transaction-based processing
17723 - option forwardfor may be used in frontends
17724 - completed HTTP response processing
17725 - some code refactoring between request and response processing
17726 - new HTTP header manipulation functions
17727 - optimizations on the recv() patch to reduce CPU usage under very
17728 high data rates.
17729 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
17730 - username/groupname support from Marcus Rueckert
17731 - added the "except" keyword to the "forwardfor" option (Bryan German)
17732 - support for health-checks on other addresses (Fabrice Dulaunoy)
17733 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
17734 - do not insert "Connection: close" in HTTP/1.0 messages
17735
Willy Tarreau9cabf702007-01-26 23:49:01 +0100177362007/01/26 : 1.3.7
17737 - fix critical bug introduced with 1.3.6 : an empty request header
17738 may lead to a crash due to missing pointer assignment
17739 - hdr_idx might be left uninitialized in debug mode
17740 - fixed build on FreeBSD due to missing fd_set declaration
17741
Willy Tarreaue7a24382007-01-22 08:57:44 +0100177422007/01/22 : 1.3.6.1
17743 - change in the header chaining broke cookies and authentication
17744
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100177452007/01/22 : 1.3.6
17746 - stats now support the HEAD method too
17747 - extracted http request from the session
17748 - huge rework of the HTTP parser which is now a 28-state FSM.
17749 - linux-style likely/unlikely macros for optimization hints
17750 - do not create a server socket when there's no server
17751 - imported lots of docs
17752
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100177532007/01/07 : 1.3.5
17754 - stats: swap color sets for active and backup servers
17755 - try to guess server check port when unset
17756 - added complete support and doc for TCP Splicing
17757 - replace the wait-queue linked list with an rbtree.
17758 - a few bugfixes and cleanups
17759
Willy Tarreau85270da2007-01-02 00:59:39 +0100177602007/01/02 : 1.3.4
17761 - support for cttproxy on the server side to present the client
17762 address to the server.
17763 - added support for SO_REUSEPORT on Linux (needs kernel patch)
17764 - new RFC2616-compliant HTTP request parser with header indexing
17765 - split proxies in frontends, rulesets and backends
17766 - implemented the 'req[i]setbe' to select a backend depending
17767 on the contents
17768 - added the 'default_backend' keyword to select a default BE.
17769 - new stats page featuring FEs and BEs + bytes in both dirs
17770 - improved log format to indicate the backend and the time in ms.
17771 - lots of cleanups
17772
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200177732006/10/15 : 1.3.3
17774 - fix broken redispatch option in case the connection has already
17775 been marked "in progress" (ie: nearly always).
17776 - support regparm on x86 to speed up some often called functions
17777 - removed a few useless calls to gettimeofday() in log functions.
17778 - lots of 'const char*' cleanups
17779 - turn every FD_* into functions which are faster on recent CPUs
17780
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200177812006/09/03 : 1.3.2
17782 - started the changes towards I/O completion callbacks. stream_sock* have
17783 replaced event_*.
17784 - added the new "reqtarpit" and "reqitarpit" protection features
17785
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200177862006/07/09 : 1.3.1 (1.2.15)
17787 - now, haproxy warns about missing timeout during startup to try to
17788 eliminate all those buggy configurations.
17789 - added "Content-Type: text/html" in responses wherever appropriate, as
17790 suggested by Cameron Simpson.
17791 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
17792 test server's health
17793 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
17794 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
17795 at once.
17796
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200177972006/06/29 : 1.3.0
17798 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020017799 difference is expected at all.
17800 - fixed a bug by which neither stats nor error messages could be returned if
17801 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020017802
willy tarreau7e6328d2006-05-21 23:26:20 +0200178032006/05/21 : 1.2.14
17804 - new HTML status report with the 'stats' keyword.
17805 - added the 'abortonclose' option to better resist traffic surges
17806 - implemented dynamic traffic regulation with the 'minconn' option
17807 - show request time on denied requests
17808 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
17809 - now a proxy instance is allowed to run without servers, which is
17810 useful to dedicate one instance to stats
17811 - added lots of error counters
17812 - a missing parenthesis preventd matching of cacheable cookies
17813 - a missing parenthesis in poll_loop() might have caused missed events.
17814
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200178152006/05/14 : 1.2.13.1
17816 - an uninitialized field in the struct session could cause a crash when
17817 the session was freed. This has been encountered on Solaris only.
17818 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
17819 be nice to them by performing a soft stop if pause fails.
17820
willy tarreauc3a2e072006-05-13 18:51:38 +0200178212006/05/13 : 1.2.13
17822 - 'maxconn' server parameter to do per-server session limitation
17823 - queueing to support non-blocking session limitation
17824 - fixed removal of cookies for cookie-less servers such as backup servers
17825 - two separate wait queues for expirable and non-expirable tasks provide
17826 better performance with lots of sessions.
17827 - some code cleanups and performance improvements
17828 - made state dumps a bit more verbose
17829 - fixed missing checks for NULL srv in dispatch mode
17830 - load balancing on backup servers was not possible in source hash mode.
17831 - two session flags shared the same bit, but fortunately they were not
17832 compatible.
17833
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200178342006/04/15 : 1.2.12
17835 Very few changes preparing for more important changes to support per-server
17836 session limitations and queueing :
17837 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
17838 - added the 'weight' parameter to the servers, limited to 1..256. It applies
17839 to roundrobin and source hash.
17840 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
17841
willy tarreaue0dd2692006-03-30 16:27:34 +0200178422006/03/30 : 1.2.11.1
17843 - under some conditions, it might have been possible that when the
17844 last dead server became available, it would not have been used
17845 till another one would have changed state. Could not be reproduced
17846 at all, however seems possible from the code.
17847
willy tarreaud2058dc2006-03-25 20:35:41 +0100178482006/03/25 : 1.2.11
17849 - added the '-db' command-line option to disable backgrounding.
17850 - added the -sf/-st command-line arguments which are used to specify
17851 a list of pids to send a FINISH or TERMINATE signal upon startup.
17852 They will also be asked to release their port if a bind fails.
17853 - reworked the startup mechanism to allow the sending of a signal to a list
17854 of old pids if a socket cannot be bound, with a retry for a limited amount
17855 of time (1 second by default).
17856 - added the ability to enforce limits on memory usage.
17857 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
17858 - re-architectured the server round-robin mechanism to ease integration of
17859 other algorithms. It now relies on the number of active and backup servers.
17860 - added a counter for the number of active and backup servers, and report
17861 these numbers upon SIGHUP or state change.
17862
willy tarreaubfad5742006-03-23 14:19:11 +0100178632006/03/23 : 1.2.10.1
17864 - while fixing the backup server round-robin "feature", a new bug was
17865 introduced which could miss some backup servers.
17866 - the displayed proxy name was wrong when dumping upon SIGHUP.
17867
willy tarreauaaff30e2006-03-19 21:30:41 +0100178682006/03/19 : 1.2.10
17869 - assert.h is needed when DEBUG is defined.
17870 - ENORMOUS long standing bug affecting the epoll polling system :
17871 event_data is a union, not a structure !
17872 - Make fd management more robust and easier to debug. Also some
17873 micro-optimisations.
17874 - Limit the number of consecutive accept() in multi-process mode.
17875 This produces a more evenly distributed load across the processes and
17876 slightly improves performance by reducing bottlenecks.
17877 - Make health-checks be more regular, and faster to retry after a timeout.
17878 - Fixed some messages to ease parsing of alerts.
17879 - provided a patch to enable epoll on RHEL3 kernels.
17880 - Separated OpenBSD build from the main Makefile into a new one.
17881
willy tarreau50be0172006-03-15 19:41:19 +0100178822006/03/15 : 1.2.9
17883 - haproxy could not be stopped after being paused, it had to be woken up
17884 first. This has been fixed.
17885 - the 'ulimit-n' parameter is now optional and by default computed from
17886 maxconn + the number of listeners + the number of health-checks.
17887 - it is now possible to specify a maximum number of connections at build
17888 time with the SYSTEM_MAXCONN define. The value set in the configuration
17889 file will then be limited to this value, and only the command-line '-n'
17890 option will be able to bypass it. It will prevent against accidental
17891 high memory usage on small systems.
17892 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
17893 versions did not detect a line beginning with a space as the continuation
17894 of previous header. It is now correct.
17895 - health checks sent to servers configured with identical intervals were
17896 sent in perfect synchronisation because the initial time was the same
17897 for all. This could induce high load peaks when fragile servers were
17898 hosting tens of instances for the same application. Now the load is
17899 spread evenly across the smallest interval amongst a listener.
17900 - a new 'forceclose' option was added to make the proxy close the outgoing
17901 channel to the server once it has sent all its headers and the server
17902 starts responding. This helps some servers which don't close upon the
17903 'Connection: close' header. It implies 'option httpclose'.
17904 - there was a bug in the way the backup servers were handled. They were
17905 erroneously load-balanced while the doc said the opposite. Since
17906 load-balanced backup servers is one of the features some people have
17907 been asking for, the problem was fixed to reflect the documented
17908 behaviour and a new option 'allbackups' was introduced to provide the
17909 feature to those who need it.
17910 - a never ending connect() could lead to a fast select() loop if its
17911 timeout times the number of retransmits exceeded the server read or write
17912 timeout, because the later was used to compute select()'s timeout while
17913 the connection timeout was not reached.
17914 - now we initialize the libc's localtime structures very early so that even
17915 under OOM conditions, we can still send dated error messages without
17916 segfaulting.
17917 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
17918 descriptors are closed.
17919
willy tarreau065f1c02006-01-29 22:10:07 +0100179202006/01/29 : 1.2.8
17921 - fixed a nasty bug affecting poll/epoll which could return unmodified data
17922 from the server to the client, and sometimes lead to memory corruption
17923 crashing the process.
17924 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
17925
179262005/12/18 : 1.2.7.1
17927 - the "retries" option was ignored because connect() could not return an
17928 error if the connection failed before the timeout.
17929 - TCP health-checks could not detect a connection refused in poll/epoll
17930 mode.
17931
willy tarreaua56eca72005-12-18 01:34:42 +0100179322005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010017933 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
17934 least on Solaris, this caused the libc's regex primitives to be used instead
17935 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010017936 - delayed the quiet mode during startup so that most of the startup alerts can
17937 be displayed even in quiet mode.
17938 - display an alert when a listener has no address, invalid or no port, or when
17939 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010017940 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010017941
willy tarreaub952e1d2005-12-18 01:31:20 +0100179422005/10/09 : 1.2.7rc (1.1.33rc)
17943 - second batch of socklen_t changes.
17944 - clean-ups from Cameron Simpson.
17945 - because tv_remain() does not know about eternity, using no timeout can
17946 make select() spin around a null time-out. Bug reported by Cameron Simpson.
17947 - client read timeout was not properly set to eternity initialized after an
17948 accept() if it was not set in the config. It remained undetected so long
17949 because eternity is 0 and newly allocated pages are zeroed by the system.
17950 - do not call get_original_dst() when not in transparent mode.
17951 - implemented a workaround for a bug in certain epoll() implementations on
17952 linux-2.4 kernels (epoll-lt <= 0.21).
17953 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
17954
willy tarreauc5f73ed2005-12-18 01:26:38 +0100179552005/08/07 : 1.2.6
17956 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
17957
179582005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010017959 - added the number of active sessions (proxy/process) in the logs
17960
179612005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010017962 - the time-out fix introduced in 1.1.25 caused a corner case where it was
17963 possible for a client to keep a connection maintained regardless of the
17964 timeout if the server closed the connection during the HEADER phase,
17965 while the client ignored the close request while doing nothing in the
17966 other direction. This has been fixed now by ensuring that read timeouts
17967 are re-armed when switching to any SHUTW state.
17968
179692005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
17970 - enhanced error reporting in the logs. Now the proxy will precisely detect
17971 various error conditions related to the system and/or process limits, and
17972 generate LOG_EMERG logs indicating that a resource has been exhausted.
17973 - logs will contain two new characters for the error cause : 'R' indicates
17974 a resource exhausted, and 'I' indicates an internal error, though this
17975 one should never happen.
17976 - server connection timeouts can now be reported in the logs (sC), as well
17977 as connections refused because of maxconn limitations (PC).
17978
179792005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
17980 - new global configuration keyword "ulimit-n" may be used to raise the FD
17981 limit to usable values.
17982 - a warning is now displayed on startup if the FD limit is lower than the
17983 configured maximum number of sockets.
17984
179852005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
17986 - new configuration keyword "monitor-net" makes it possible to be monitored
17987 by external devices which connect to the proxy without being logged nor
17988 forwarded to any server. Particularly useful on generic TCPv4 relays.
17989
willy tarreau5dffb602005-12-18 01:15:23 +0100179902005/06/21 : 1.2.5.2
17991 - fixed build on PPC where chars are unsigned by default
17992
willy tarreau08dedbe2005-12-18 01:13:48 +0100179932005/05/02 : 1.2.5.1
17994 - dirty hack to fix a bug introduced with epoll : if we close an FD and
17995 immediately reassign it to another session through a connect(), the
17996 Prev{Read,Write}Events are not updated, which causes trouble detecting
17997 changes, thus leading to many timeouts at high loads.
17998
willy tarreau64a3cc32005-12-18 01:13:11 +0100179992005/04/30 : 1.2.5 (1.1.31)
18000 - changed the runtime argument to disable epoll() to '-de'
18001 - changed the runtime argument to disable poll() to '-dp'
18002 - added global options 'nopoll' and 'noepoll' to do the same at the
18003 configuration level.
18004 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
18005 support epoll().
18006 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
18007 - conditionned signals redirection to #ifdef DEBUG_MEMORY
18008
willy tarreau1c2ad212005-12-18 01:11:29 +0100180092005/04/26 : 1.2.5-pre4
18010 - made epoll() support a compile-time option : ENABLE_EPOLL
18011 - provided a very little libc replacement for a possibly missing epoll()
18012 implementation which can be enabled by -DUSE_MY_EPOLL
18013 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
18014 The equivalent runtime argument becomes '-P'. A few tests show that it
18015 performs like select() with many fds, but slightly slower (certainly
18016 because of the higher amount of memory involved).
18017 - separated the 3 polling methods and the tasks scheduler into 4 distinct
18018 functions which makes the code a lot more modular.
18019 - moved some event tables to private static declarations inside the poller
18020 functions.
18021 - the poller functions can now initialize themselves, run, and cleanup.
18022 - changed the runtime argument to enable epoll() to '-E'.
18023 - removed buggy epoll_ctl() code in the client_retnclose() function. This
18024 function was never meant to remove anything.
18025 - fixed a typo which caused glibc to yell about a double free on exit.
18026 - removed error checking after epoll_ctl(DEL) because we can never know if
18027 the fd is still active or already closed.
18028 - added a few entries in the makefile
18029
willy tarreauad90a0c2005-12-18 01:09:15 +0100180302005/04/25 : 1.2.5-pre3
18031 - experimental epoll() support (use temporary '-e' argument)
18032
180332005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010018034 - implemented the HTTP 303 code for error redirection. This forces the
18035 browser to fetch the given URI with a GET request. The new keyword for
18036 this is 'errorloc303', and a new 'errorloc302' keyword has been created
18037 to make them easily distinguishable.
18038 - added more controls in the parser for valid use of '\x' sequence.
18039 - few fixes from Alex & Klaus
18040
willy tarreauad90a0c2005-12-18 01:09:15 +0100180412005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010018042 - fixed a few errors in the documentation
18043
180442005/02/13
18045 - do not pre-initialize unused file-descriptors before select() anymore.
18046
willy tarreau12350152005-12-18 01:03:27 +0100180472005/01/22 : 1.2.4
18048 - merged Alexander Lazic's and Klaus Wagner's work on application
18049 cookie-based persistence. Since this is the first merge, this version is
18050 not intended for general use and reports are more than welcome. Some
18051 documentation is really needed though.
18052
willy tarreau0174f312005-12-18 01:02:42 +0100180532005/01/22 : 1.2.3 (1.1.30)
18054 - add an architecture guide to the documentation
18055 - released without any changes
18056
180572004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
18058 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
18059 compatible with Apache. This limit can be configured in the makefile now.
18060 Thanks to Eric Fehr for the checks.
18061 - added a per-server "source" option which now makes it possible to bind to
18062 a different source for each (potentially identical) server.
18063 - changed cookie-based server selection slightly to allow several servers to
18064 share a same cookie, thus making it possible to associate backup servers to
18065 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
18066 - added the cookie 'prefix' mode which makes it possible to use persistence
18067 with thin clients which support only one cookie. The server name is prefixed
18068 before the application cookie, and restore back.
18069 - fixed the order of servers within an instance to match documentation. Now
18070 the servers are *really* used in the order of their declaration. This is
18071 particularly important when multiple backup servers are in use.
18072
willy tarreau4302f492005-12-18 01:00:37 +0100180732004/10/18 : 1.2.2 (1.1.29)
18074 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
18075 option was enabled without the 'tcplog' option.
18076 - encode_string() would use hdr_encode_map instead of the map argument.
18077
180782004/08/10 : (1.1.29-pre2)
18079 - the logged request is now encoded with '#XX' for unprintable characters
18080 - new keywords 'capture request header' and 'capture response header' enable
18081 logging of arbitrary HTTP headers in requests and responses
18082 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
18083
willy tarreau982249e2005-12-18 00:57:06 +0100180842004/06/06 : 1.2.1 (1.1.28)
18085 - added the '-V' command line option to verbosely report errors even though
18086 the -q or 'quiet' options are specified. This is useful with '-c'.
18087 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010018088
willy tarreau982249e2005-12-18 00:57:06 +0100180892004/06/05 :
18090 - added the "logasap" option which produces a log without waiting for the data
18091 to be transferred from the server to the client.
18092 - added the "httpclose" option which removes any "connection:" header and adds
18093 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010018094 - added the 'checkcache' option which blocks cacheable responses containing
18095 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010018096 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
18097 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010018098
180992004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010018100 - send an EMERG log when no server is available for a given proxy
18101 - added the '-c' command line option to syntactically check the
18102 configuration file without starting the service.
18103
willy tarreau8a86dbf2005-12-18 00:45:59 +0100181042003/11/09 : 1.2.0
18105 - the same as 1.1.27 + IPv6 support on the client side
18106
willy tarreaufe2c5c12005-12-17 14:14:34 +0100181072003/10/27 : 1.1.27
18108 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
18109 bug : the code still assumed that HTTP requests were the same size as the
18110 original ones (22 bytes), and failed if they were not.
18111 - added support for pidfiles.
18112
willy tarreauc58fc692005-12-17 14:13:08 +0100181132003/10/22 : 1.1.26
18114 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
18115 broke almost all compatibility with POST requests, because the proxy
18116 stopped to read anything from the client as soon as it got all of its
18117 headers.
18118
willy tarreauc1cae632005-12-17 14:12:23 +0100181192003/10/15 : 1.1.25
18120 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
18121 generic TCP proxies, or lighter logs for HTTP proxies.
18122 - fixed a time-out condition wrongly reported as client time-out in data
18123 phase if the client timeout was lower than the connect timeout times the
18124 number of retries.
18125
willy tarreau197e8ec2005-12-17 14:10:59 +0100181262003/09/21 : 1.1.24
18127 - if a client sent a full request then shut its write connection down, then
18128 the request was aborted. This case was detected only when using haproxy
18129 both as health-check client and as a server.
18130 - if 'option httpchk' is used in a 'health' mode server, then responses will
18131 change from 'OK' to 'HTTP/1.0 200 OK'.
18132 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
18133 server response followed by a close could be ignored, and the server seen
18134 as failed.
18135
willy tarreaueedaa9f2005-12-17 14:08:03 +0100181362003/09/19 : 1.1.23
18137 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
18138 'default' sections to keep previous parameters, and not initialize logs
18139 correctly.
18140 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
18141 relying on 'dispatch' mode to segfault at the first connection.
18142 - 'option httpchk' now supports method, HTTP version and a few headers.
18143 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
18144 'defaults' section
18145
181462003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010018147 - 'listen' now supports optionnal address:port-range lists
18148 - 'bind' introduced to add new listen addresses
18149 - fixed a bug which caused a session to be kept established on a server till
18150 it timed out if the client closed during the DATA phase.
18151 - the port part of each server address can now be empty to make the proxy
18152 connect to the server on the same port it was connected to, be an absolute
18153 unsigned number to reflect a single port (as in older versions), or an
18154 explicitly signed number (+N/-N) to indicate that this offset must be
18155 applied to the port the proxy was connected to, when connecting to the
18156 server.
18157 - the 'port' server option allows the user to specify a different
18158 health-check port than the service one. It is mandatory when only relative
18159 ports have been specified and check is required. By default, the checks are
18160 sent to the service port.
18161 - new 'defaults' section which is rather similar to 'listen' except that all
18162 values are only used as default values for future 'listen' sections, until
18163 a new 'defaults' resets them. At the moment, server options, regexes,
18164 cookie names and captures cannot be set in the 'defaults' section.
18165
willy tarreau2f6ba652005-12-17 13:57:42 +0100181662003/05/06 : 1.1.21
18167 - changed the debug output format so that it now includes the session unique
18168 ID followed by the instance name at the beginning of each line.
18169 - in debug mode, accept now shows the client's IP and port.
18170 - added one 3 small debugging scripts to search and pretty print debug output
18171 - changed the default health check request to "OPTIONS /" instead of
18172 "OPTIONS *" since not all servers implement the later one.
18173 - "option httpchk" now accepts an optional parameter allowing the user to
18174 specify and URI other than '/' during health-checks.
18175
willy tarreaub1ff9db2005-12-17 13:51:03 +0100181762003/04/21 : 1.1.20
18177 - fixed two problems with time-outs, one where a server would be logged as
18178 timed out during transfer that take longer to complete than the fixed
18179 time-out, and one where clients were logged as timed-out during the data
18180 phase because they didn't have anything to send. This sometimes caused
18181 slow client connections to close too early while in fact there was no
18182 problem. The proper fix would be to have a per-fd time-out with
18183 conditions depending on the state of the HTTP FSM.
18184
willy tarreau906b2682005-12-17 13:49:52 +0100181852003/04/16 : 1.1.19
18186 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
18187 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
18188 cookie persistence because it uses "cookie:". Two memcmp() have been
18189 replaced with strncasecmp().
18190
willy tarreau036e1ce2005-12-17 13:46:33 +0100181912003/04/02 : 1.1.18
18192 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
18193 REGEX=pcre on the make command line.
18194 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
18195 - when explicit source address binding is required, it is now also used for
18196 health-checks.
18197 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
18198 itself.
18199 - factored several strings to reduce binary size by about 2 kB.
18200 - replaced setreuid() and setregid() with more standard setuid() and setgid().
18201 - added 4 status flags to the log line indicating who ended the connection
18202 first, the sessions state, the validity of the cookie, and action taken on
18203 the set-cookie header.
18204
182052002/10/18 : 1.1.17
18206 - add the notion of "backup" servers, which are used only when all other
18207 servers are down.
18208 - make Set-Cookie return "" instead of "(null)" when the server has no
18209 cookie assigned (useful for backup servers).
18210 - "log" now supports an optionnal level name (info, notice, err ...) above
18211 which nothing is sent.
18212 - replaced some strncmp() with memcmp() for better efficiency.
18213 - added "capture cookie" option which logs client and/or server cookies
18214 - cleaned up/down messages and dump servers states upon SIGHUP
18215 - added a redirection feature for errors : "errorloc <errnum> <url>"
18216 - now we won't insist on connecting to a dead server, even with a cookie,
18217 unless option "persist" is specified.
18218 - added HTTP/408 response for client request time-out and HTTP/50[234] for
18219 server reply time-out or errors.
18220
182212002/09/01 : 1.1.16
18222 - implement HTTP health checks when option "httpchk" is specified.
18223
182242002/08/07 : 1.1.15
18225 - replaced setpgid()/setpgrp() with setsid() for better portability, because
18226 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
18227
182282002/07/20 : 1.1.14
18229 - added "postonly" cookie mode
18230
182312002/07/15 : 1.1.13
18232 - tv_diff used inverted parameters which led to negative times !
18233
182342002/07/13 : 1.1.12
18235 - fixed stats monitoring, and optimized some tv_* for most common cases.
18236 - replaced temporary 'newhdr' with 'trash' to reduce stack size
18237 - made HTTP errors more HTML-fiendly.
18238 - renamed strlcpy() to strlcpy2() because of a slightly difference between
18239 their behaviour (return value), to avoid confusion.
18240 - restricted HTTP messages to HTTP proxies only
18241 - added a 502 message when the connection has been refused by the server,
18242 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
18243 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
18244 inserting a cookie, because some caches (apache) don't understand it.
18245 - fixed processing of server headers when client is in SHUTR state
18246
182472002/07/04 :
18248 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
18249 setpgid()
18250
182512002/06/04 : 1.1.11
18252 - fixed multi-cookie handling in client request to allow clean deletion
18253 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010018254 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010018255 - added a "nocache" option to "cookie" to specify that we explicitly want
18256 to add a "cache-control" header when we add a cookie.
18257 It is also possible to add an "Expires: <old-date>" to keep compatibility
18258 with old/broken caches.
18259
182602002/05/10 : 1.1.10
18261 - if a cookie is used in insert+indirect mode, it's desirable that the
18262 the servers don't see it. It was not possible to remove it correctly
18263 with regexps, so now it's removed automatically.
18264
182652002/04/19 : 1.1.9
18266 - don't use snprintf()'s return value as an end of message since it may
18267 be larger. This caused bus errors and segfaults in internal libc's
18268 getenv() during localtime() in send_log().
18269 - removed dead insecure send_syslog() function and all references to it.
18270 - fixed warnings on Solaris due to buggy implementation of isXXXX().
18271
182722002/04/18 : 1.1.8
18273 - option "dontlognull"
18274 - fixed "double space" bug in config parser
18275 - fixed an uninitialized server field in case of dispatch
18276 with no existing server which could cause a segfault during
18277 logging.
18278 - the pid logged was always the father's, which was wrong for daemons.
18279 - fixed wrong level "LOG_INFO" for message "proxy started".
18280
182812002/04/13 :
18282 - http logging is now complete :
18283 - ip:port, date, proxy, server
18284 - req_time, conn_time, hdr_time, tot_time
18285 - status, size, request
18286 - source address
18287
182882002/04/12 : 1.1.7
18289 - added option forwardfor
18290 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
18291 - added "log global" in "listen" section.
18292
182932002/04/09 :
18294 - added a new "global" section :
18295 - logs
18296 - debug, quiet, daemon modes
18297 - uid, gid, chroot, nbproc, maxconn
18298
182992002/04/08 : 1.1.6
18300 - regex are now chained and not limited anymore.
18301 - unavailable server now returns HTTP/502.
18302 - increased per-line args limit to 40
18303 - added reqallow/reqdeny to block some request on matches
18304 - added HTTP 400/403 responses
18305
183062002/04/03 : 1.1.5
18307 - connection logging displayed incorrect source address.
18308 - added proxy start/stop and server up/down log events.
18309 - replaced log message short buffers with larger trash.
18310 - enlarged buffer to 8 kB and replace buffer to 4 kB.
18311
183122002/03/25 : 1.1.4
18313 - made rise/fall/interval time configurable
18314
183152002/03/22 : 1.1.3
18316 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
18317 which could lead to loops.
18318
183192002/03/21 : 1.1.2
18320 - fixed a bug in buffer management where we could have a loop
18321 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
18322 => implemented an adjustable buffer limit.
18323 - fixed a bug : expiration of tasks in wait queue timeout is used again,
18324 and running tasks are skipped.
18325 - added some debug lines for accept events.
18326 - send warnings for servers up/down.
18327
183282002/03/12 : 1.1.1
18329 - fixed a bug in total failure handling
18330 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
18331
183322002/03/10 : 1.1.0
18333 - fixed a few timeout bugs
18334 - rearranged the task scheduler subsystem to improve performance,
18335 add new tasks, and make it easier to later port to librt ;
18336 - allow multiple accept() for one select() wake up ;
18337 - implemented internal load balancing with basic health-check ;
18338 - cookie insertion and header add/replace/delete, with better strings
18339 support.
18340
183412002/03/08
18342 - reworked buffer handling to fix a few rewrite bugs, and
18343 improve overall performance.
18344 - implement the "purge" option to delete server cookies in direct mode.
18345
183462002/03/07
18347 - fixed some error cases where the maxfd was not decreased.
18348
183492002/02/26
18350 - now supports transparent proxying, at least on linux 2.4.
18351
183522002/02/12
18353 - soft stop works again (fixed select timeout computation).
18354 - it seems that TCP proxies sometimes cannot timeout.
18355 - added a "quiet" mode.
18356 - enforce file descriptor limitation on socket() and accept().
18357
183582001/12/30 : release of version 1.0.2 : fixed a bug in header processing
183592001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
183602001/12/16 : release of version 1.0.0.
183612001/12/16 : added syslog capability for each accepted connection.
183622001/11/19 : corrected premature end of files and occasional SIGPIPE.
183632001/10/31 : added health-check type servers (mode health) which replies OK then closes.
183642001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
18365 with or without cookies (use keyword http for this).
183662001/09/01 : added client/server header replacing with regexps.
18367 eg:
18368 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
18369 srvexp ^Server:\ .* Server:\ Apache
183702000/11/29 : first fully working release with complete FSMs and timeouts.
183712000/11/28 : major rewrite
183722000/11/26 : first write