blob: 8f6228c3883d029c7e8164f26793078380b08a6c [file] [log] [blame]
willy tarreau036e1ce2005-12-17 13:46:33 +01001ChangeLog :
2===========
willy tarreau4302f492005-12-18 01:00:37 +01003
Willy Tarreaufdd81542023-05-31 16:24:38 +020042023/05/31 : 2.8.0
5 - MINOR: compression: Improve the way Vary header is added
6 - BUILD: makefile: search for SSL_INC/wolfssl before SSL_INC
7 - MINOR: init: pre-allocate kernel data structures on init
8 - DOC: install: add details about WolfSSL
9 - BUG/MINOR: ssl_sock: add check for ha_meth
10 - BUG/MINOR: thread: add a check for pthread_create
11 - BUILD: init: print rlim_cur as regular integer
12 - DOC: install: specify the minimum openssl version recommended
13 - CLEANUP: mux-quic: remove unneeded fields in qcc
14 - MINOR: mux-quic: remove nb_streams from qcc
15 - MINOR: quic: fix stats naming for flow control BLOCKED frames
16 - BUG/MEDIUM: mux-quic: only set EOI on FIN
17 - BUG/MEDIUM: threads: fix a tiny race in thread_isolate()
18 - DOC: config: fix rfc7239 converter examples
19 - DOC: quic: remove experimental status for QUIC
20 - CLEANUP: mux-quic: rename functions for mux_ops
21 - CLEANUP: mux-quic: rename internal functions
22 - BUG/MINOR: mux-h2: refresh the idle_timer when the mux is empty
23 - DOC: config: Fix bind/server/peer documentation in the peers section
24 - BUILD: Makefile: use -pthread not -lpthread when threads are enabled
25 - CLEANUP: doc: remove 21 totally obsolete docs
26 - DOC: install: mention the common strict-aliasing warning on older compilers
27 - DOC: install: clarify a few points on the wolfSSL build method
28 - MINOR: quic: Add QUIC connection statistical counters values to "show quic"
29 - EXAMPLES: update the basic-config-edge file for 2.8
30 - MINOR: quic/cli: clarify the "show quic" help message
31 - MINOR: version: mention that it's LTS now.
32
Willy Tarreauc8bb9ae2023-05-24 22:53:55 +0200332023/05/24 : 2.8-dev13
34 - DOC: add size format section to manual
35 - CLEANUP: mux-quic/h3: complete BUG_ON with comments
36 - MINOR: quic: remove return val of quic_aead_iv_build()
37 - MINOR: quic: use WARN_ON for encrypt failures
38 - BUG/MINOR: quic: handle Tx packet allocation failure properly
39 - MINOR: quic: fix alignment of oneline show quic
40 - MEDIUM: stconn/applet: Allow SF_SL_EOS flag alone
41 - MEDIUM: stconn: make the SE_FL_ERR_PENDING to ERROR transition systematic
42 - DOC: internal: add a bit of documentation for the stconn closing conditions
43 - DOC/MINOR: config: Fix typo in description for `ssl_bc` in configuration.txt
44 - BUILD: quic: re-enable chacha20_poly1305 for libressl
45 - MINOR: mux-quic: set both EOI EOS for stream fin
46 - MINOR: mux-quic: only set EOS on RESET_STREAM recv
47 - MINOR: mux-quic: report error on stream-endpoint earlier
48 - BUILD: makefile: fix build issue on GNU make < 3.82
49 - BUG/MINOR: mux-h2: Check H2_SF_BODY_TUNNEL on H2S flags and not demux frame ones
50 - MINOR: mux-h2: Set H2_SF_ES_RCVD flag when decoding the HEADERS frame
51 - MINOR: mux-h2: Add a function to propagate termination flags from h2s to SE
52 - BUG/MEDIUM: mux-h2: Propagate termination flags when frontend SC is created
53 - DEV: add a Lua helper script for SSL keys logging
54 - CLEANUP: makefile: don't display a dummy features list without a target
55 - BUILD: makefile: do not erase build options for some build options
56 - MINOR: quic: Add low level traces (addresses, DCID)
57 - BUG/MINOR: quic: Wrong token length check (quic_generate_retry_token())
58 - BUG/MINOR: quic: Missing Retry token length on receipt
59 - MINOR: quic: Align "show quic" command help information
60 - CLEANUP: quic: Indentation fix quic_rx_pkt_retrieve_conn()
61 - CLEANUP: quic: Useless tests in qc_rx_pkt_handle()
62 - MINOR: quic: Add some counters at QUIC connection level
63 - MINOR: quic: Add a counter for sent packets
64 - MINOR: hlua: hlua_smp2lua_str() may LJMP
65 - MINOR: hlua: hlua_smp2lua() may LJMP
66 - MINOR: hlua: hlua_arg2lua() may LJMP
67 - DOC: hlua: document hlua_lua2arg() function
68 - DOC: hlua: document hlua_lua2smp() function
69 - BUG/MINOR: hlua: unsafe hlua_lua2smp() usage
70 - BUILD: makefile: commit the tiny FreeBSD makefile stub
71 - BUILD: makefile: fix build options when building tools first
72 - BUILD: ist: do not put a cast in an array declaration
73 - BUILD: ist: use the literal declaration for ist_lc/ist_uc under TCC
74 - BUILD: compiler: systematically set USE_OBSOLETE_LINKER with TCC
75 - DOC: install: update reference to known supported versions
76 - SCRIPTS: publish-release: update the umask to keep group write access
77
Christopher Fauletf48b23f2023-05-17 17:10:12 +0200782023/05/17 : 2.8-dev12
79 - BUILD: mjson: Fix warning about unused variables
80 - MINOR: spoe: Don't stop disabled proxies
81 - BUG/MEDIUM: filters: Don't deinit filters for disabled proxies during startup
82 - BUG/MINOR: hlua_fcn/queue: fix broken pop_wait()
83 - BUG/MINOR: hlua_fcn/queue: fix reference leak
84 - CLEANUP: hlua_fcn/queue: make queue:push() easier to read
85 - BUG/MINOR: quic: Buggy acknowlegments of acknowlegments function
86 - DEBUG: list: add DEBUG_LIST to purposely corrupt list heads after delete
87 - MINOR: stats: report the total number of warnings issued
88 - MINOR: stats: report the number of times the global maxconn was reached
89 - BUG/MINOR: mux-quic: do not prevent shutw on error
90 - BUG/MINOR: mux-quic: do not free frame already released by quic-conn
91 - BUG/MINOR: mux-quic: no need to subscribe for detach streams
92 - MINOR: mux-quic: add traces for stream wake
93 - MINOR: mux-quic: do not send STREAM frames if already subscribe
94 - MINOR: mux-quic: factorize send subscribing
95 - MINOR: mux-quic: simplify return path of qc_send()
96 - MEDIUM: quic: streamline error notification
97 - MEDIUM: mux-quic: adjust transport layer error handling
98 - MINOR: stats: report the listener's protocol along with the address in stats
99 - BUG/MEDIUM: mux-fcgi: Never set SE_FL_EOS without SE_FL_EOI or SE_FL_ERROR
100 - BUG/MEDIUM: mux-fcgi: Don't request more room if mux is waiting for more data
101 - MINOR: stconn: Add a cross-reference between SE descriptor
102 - BUG/MINOR: proxy: missing free in free_proxy for redirect rules
103 - MINOR: proxy: add http_free_redirect_rule() function
104 - BUG/MINOR: http_rules: fix errors paths in http_parse_redirect_rule()
105 - CLEANUP: http_act: use http_free_redirect_rule() to clean redirect act
106 - MINOR: tree-wide: use free_acl_cond() where relevant
107 - CLEANUP: acl: discard prune_acl_cond() function
108 - BUG/MINOR: cli: don't complain about empty command on empty lines
109 - MINOR: cli: add an option to display the uptime in the CLI's prompt
110 - MINOR: master/cli: also implement the timed prompt on the master CLI
111 - MINOR: cli: make "show fd" identify QUIC connections and listeners
112 - MINOR: httpclient: allow to disable the DNS resolvers of the httpclient
113 - BUILD: debug: fix build issue on 32-bit platforms in "debug dev task"
114 - MINOR: ncbuf: missing malloc checks in standalone code
115 - DOC: lua: fix core.{proxies,frontends,backends} visibility
116 - EXAMPLES: fix race condition in lua mailers script
117 - BUG/MINOR: errors: handle malloc failure in usermsgs_put()
118 - BUG/MINOR: log: fix memory error handling in parse_logsrv()
119 - BUG/MINOR: quic: Wrong redispatch for external data on connection socket
120 - MINOR: htx: add function to set EOM reliably
121 - MINOR: mux-quic: remove dedicated function to handle standalone FIN
122 - BUG/MINOR: mux-quic: properly handle buf alloc failure
123 - BUG/MINOR: mux-quic: handle properly recv ncbuf alloc failure
124 - BUG/MINOR: quic: do not alloc buf count on alloc failure
125 - BUG/MINOR: mux-quic: differentiate failure on qc_stream_desc alloc
126 - BUG/MINOR: mux-quic: free task on qc_init() app ops failure
127 - MEDIUM: session/ssl: return the SSL error string during a SSL handshake error
128 - CI: enable monthly Fedora Rawhide clang builds
129 - MEDIUM: mworker/cli: does not disconnect the master CLI upon error
130 - MINOR: stconn: Remove useless test on sedesc on detach to release the xref
131 - MEDIUM: proxy: stop emitting logs for internal proxies when stopping
132 - MINOR: ssl: add new sample ssl_c_r_dn
133 - BUG/MEDIUM: mux-h2: make sure control frames do not refresh the idle timeout
134 - BUILD: ssl: ssl_c_r_dn fetches uses functiosn only available since 1.1.1
135 - BUG/MINOR: mux-quic: handle properly Tx buf exhaustion
136 - BUG/MINOR: h3: missing goto on buf alloc failure
137 - BUILD: ssl: get0_verified chain is available on libreSSL
138 - BUG/MINOR: makefile: use USE_LIBATOMIC instead of USE_ATOMIC
139 - MINOR: mux-quic: add trace to stream rcv_buf operation
140 - MINOR: mux-quic: properly report end-of-stream on recv
141 - MINOR: mux-quic: uninline qc_attach_sc()
142 - BUG/MEDIUM: mux-quic: fix EOI for request without payload
143 - MINOR: checks: make sure spread-checks is used also at boot time
144 - BUG/MINOR: tcp-rules: Don't shortened the inspect-delay when EOI is set
145 - REGTESTS: log: Reduce response inspect-delay for last_rule.vtc
146 - DOC: config: Clarify conditions to shorten the inspect-delay for TCP rules
147 - CLEANUP: server: remove useless tmptrash assigments in srv_update_status()
148 - BUG/MINOR: server: memory leak in _srv_update_status_op() on server DOWN
149 - CLEANUP: check; Remove some useless assignments to NULL
150 - CLEANUP: stats: update the trash chunk where it's used
151 - MINOR: clock: measure the total boot time
152 - MINOR: stats: report the boot time in "show info"
153 - BUG/MINOR: checks: postpone the startup of health checks by the boot time
154 - MINOR: clock: provide a function to automatically adjust now_offset
155 - BUG/MINOR: clock: automatically adjust the internal clock with the boot time
156 - CLEANUP: fcgi-app; Remove useless assignment to NULL
157 - REGTESTS: log: Reduce again response inspect-delay for last_rule.vtc
158 - CI: drop Fedora m32 pipeline in favour of cross matrix
159 - MEDIUM: checks: Stop scheduling healthchecks during stopping stage
160 - MEDIUM: resolvers: Stop scheduling resolution during stopping stage
161 - BUG/MINOR: hlua: SET_SAFE_LJMP misuse in hlua_event_runner()
162 - BUG/MINOR: debug: fix pointer check in debug_parse_cli_task()
163
Willy Tarreauf0e8e792023-05-11 05:33:21 +02001642023/05/11 : 2.8-dev11
165 - BUILD: debug: do not check the isolated_thread variable in non-threaded builds
166 - BUILD: quic: fix build warning when threads are disabled
167 - CI: more granular failure on generating build matrix
168 - CLEANUP: quic: No more used q_buf structure
169 - CLEANUP: quic: Rename several <buf> variables in quic_frame.(c|h)
170 - CLEANUP: quic: Typo fix for quic_connection_id pool
171 - BUG/MINOR: quic: Wrong key update cipher context initialization for encryption
172 - BUG/MEDIUM: cache: Don't request more room than the max allowed
173 - MEDIUM: stconn: Be sure to always be able to unblock a SC that needs room
174 - EXAMPLES: fix IPV6 support for lua mailers script
175 - BUILD: ssl: buggy -Werror=dangling-pointer since gcc 13.0
176 - DOC: stconn: Update comments about ABRT/SHUT for stconn structure
177 - BUG/MEDIUM: stats: Require more room if buffer is almost full
178 - DOC: configuration: add info about ssl-engine for 2.6
179 - BUG/MINOR: mux-quic: fix transport VS app CONNECTION_CLOSE
180 - BUG/MEDIUM: mux-quic: wakeup tasklet to close on error
181 - DEV: flags: add a script to decode most flags in the "show sess all" output
182 - BUG/MINOR: quic: Possible crash when dumping version information
183 - BUG/MINOR: config: make compression work again in defaults section
184 - BUG/MEDIUM: stream: Forward shutdowns when unhandled errors are caught
185 - MEDIUM: stream: Resync analyzers at the end of process_stream() on change
186 - DEV: flags: add missing stream flags to show-sess-to-flags
187 - DEV: flags/show-sess-to-flags: only retrieve hex digits from hex fields
188 - DEV: flags/show-sess-to-flags: add support for color output
189 - CLEANUP: src/listener.c: remove redundant NULL check
190
Willy Tarreaud8cbfa52023-05-07 07:31:54 +02001912023/05/07 : 2.8-dev10
192 - BUG/MINOR: stats: fix typo in `TotalSplicedBytesOut` field name
193 - REGTESTS: add success test, "set server" via fqdn
194 - MINOR: ssl: disable CRL checks with WolfSSL when no CRL file
195 - BUG/MINOR: stream/cli: fix stream age calculation in "show sess"
196 - MINOR: debug: clarify "debug dev stream" help message
197 - DEBUG: cli: add "debug dev task" to show/wake/expire/kill tasks and tasklets
198 - BUG/MINOR: ssl/sample: x509_v_err_str converter output when not found
199 - REGTESTS: ssl: simplify X509_V code check in ssl_client_auth.vtc
200 - BUILD: cli: fix build on Windows due to isalnum() implemented as a macro
201 - MINOR: activity: use a single macro to iterate over all fields
202 - MINOR: activity: show the line header inside the SHOW_VAL macro
203 - MINOR: activity: iterate over all fields in a main loop for dumping
204 - MINOR: activity: allow "show activity" to restart dumping on any line
205 - MINOR: activity: allow "show activity" to restart in the middle of a line
206 - DEV: haring: automatically disable DEBUG_STRICT
207 - DEV: haring: update readme to suggest using the same build options for haring
208 - BUG/MINOR: debug: fix incorrect profiling status reporting in show threads
209 - MINOR: debug: permit the "debug dev loop" to run under isolation
210 - BUG/MEDIUM: mux-h2: Properly handle end of request to expect data from server
211 - BUG/MINOR: mux-quic: prevent quic_conn error code to be overwritten
212 - MINOR: mux-quic: add trace event for local error
213 - MINOR: mux-quic: wake up after recv only if avail data
214 - MINOR: mux-quic: adjust local error API
215 - MINOR: mux-quic: report local error on stream endpoint asap
216 - MINOR: mux-quic: close connection asap on local error
217 - BUG/MINOR: debug: do not emit empty lines in thread dumps
218 - BUG/MINOR: mux-h2: Also expect data when waiting for a tunnel establishment
219 - BUG/MINOR: time: fix NS_TO_TV macro
220 - MEDIUM: debug: simplify the thread dump mechanism
221 - MINOR: debug: write panic dump to stderr one thread at a time
222 - MINOR: debug: make "show threads" properly iterate over all threads
223 - CLEANUP: debug: remove the now unused ha_thread_dump_all_to_trash()
224 - MINOR: ssl: allow to change the server signature algorithm
225 - MINOR: ssl: allow to change the signature algorithm for client authentication
226 - MINOR: cli: Use applet API to write output message
227 - MINOR: stats: Use the applet API to write data
228 - MINOR: peers: Use the applet API to send message
229 - MINOR: stconn: Add a field to specify the room needed by the SC to progress
230 - MEDIUM: tree-wide: Change sc API to specify required free space to progress
231 - BUG/MEDIUM: stconn: Unblock SC from stream if there is enough room to progrees
232 - MEDIUM: applet: Check room needed to unblock opposite SC when data was consumed
233 - MEDIUM: stconn: Check room needed to unblock SC on fast-forward
234 - MEDIUM: stconn: Check room needed to unblock opposite SC when data was sent
235 - MINOR: hlua_fcn: fix Server.is_draining() return type
236 - MINOR: hlua_fcn: add Server.is_backup()
237 - MINOR: hlua_fcn: add Server.is_dynamic()
238 - MINOR: hlua_fcn: add Server.tracking()
239 - MINOR: hlua_fcn: add Server.get_trackers()
240 - MINOR: hlua_fcn: add Server.get_proxy()
241 - MINOR: hlua_fcn: add Server.get_pend_conn() and Server.get_cur_sess()
242 - MINOR: hlua_fcn: add Proxy.get_srv_act() and Proxy.get_srv_bck()
243 - DOC: lua/event: add ServerEvent class header
244 - MINOR: server/event_hdl: publish macro helper
245 - MINOR: server/event_hdl: add SERVER_STATE event
246 - OPTIM: server: publish UP/DOWN events from STATE change
247 - MINOR: hlua: expose SERVER_STATE event
248 - MINOR: server/event_hdl: add SERVER_ADMIN event
249 - MINOR: hlua: expose SERVER_ADMIN event
250 - MINOR: checks/event_hdl: SERVER_CHECK event
251 - MINOR: hlua/event_hdl: expose SERVER_CHECK event
252 - MINOR: mailers/hlua: disable email sending from lua
253 - MINOR: hlua: expose proxy mailers
254 - EXAMPLES: add lua mailers script to replace tcpcheck mailers
255 - BUG/MINOR: hlua: spinning loop in hlua_socket_handler()
256 - MINOR: server: fix message report when IDRAIN is set and MAINT is cleared
257 - CLEANUP: hlua: hlua_register_task() may longjmp
258 - REGTESTS: use lua mailer script for mailers tests
259 - MINOR: hlua: declare hlua_{ref,pushref,unref} functions
260 - MINOR: hlua: declare hlua_gethlua() function
261 - MINOR: hlua: declare hlua_yieldk() function
262 - MINOR: hlua_fcn: add Queue class
263 - EXAMPLES: mailqueue for lua mailers script
264 - MINOR: quic: add format argument for "show quic"
265 - MINOR: quic: implement oneline format for "show quic"
266 - MINOR: config: allow cpu-map to take commas in lists of ranges
267 - CLEANUP: fix a few reported typos in code comments
268 - DOC: fix a few reported typos in the config and install doc
269
Willy Tarreau9de10ce2023-04-28 21:52:13 +02002702023/04/28 : 2.8-dev9
271 - MINOR: quic: Move traces at proto level
272 - BUG/MINOR: quic: Possible memory leak from TX packets
273 - BUG/MINOR: quic: Possible leak during probing retransmissions
274 - BUG/MINOR: quic: Useless probing retransmission in draining or killing state
275 - BUG/MINOR: quic: Useless I/O handler task wakeups (draining, killing state)
276 - CLEANUP: quic: rename frame types with an explicit prefix
277 - CLEANUP: quic: rename frame variables
278 - CLEANUP: quic: Remove useless parameters passes to qc_purge_tx_buf()
279 - CLEANUP: quic: Rename <buf> variable to <token> in quic_generate_retry_token()
280 - CLEANUP: quic: Rename <buf> variable into quic_padding_check()
281 - CLEANUP: quic: Rename <buf> variable into quic_rx_pkt_parse()
282 - CLEANUP: quic: Rename <buf> variable for several low level functions
283 - CLEANUP: quic: Make qc_build_pkt() be more readable
284 - CLEANUP: quic: Rename quic_get_dgram_dcid() <buf> variable
285 - CLEANUP: quic: Rename several <buf> variables at low level
286 - CLEANUP: quic: Rename <buf> variable into quic_packet_read_long_header()
287 - CLEANUP: quic: Rename <buf> variable into qc_parse_hd_form()
288 - CLEANUP: quic: Rename several <buf> variables into quic_sock.c
289 - DEBUG: crash using an invalid opcode on x86/x86_64 instead of an invalid access
290 - DEBUG: crash using an invalid opcode on aarch64 instead of an invalid access
291 - DEV: h2: add a script "mkhdr" to build h2 frames from scratch
292 - DEV: h2: support reading frame payload from a file
293 - MINOR: acme.sh: add the deploy script for acme.sh in admin directory
294 - BUG/MEDIUM: mux-quic: do not emit RESET_STREAM for unknown length
295 - BUG/MEDIUM: mux-quic: improve streams fairness to prevent early timeout
296 - BUG/MINOR: quic: prevent buggy memcpy for empty STREAM
297 - MINOR: mux-quic: do not set buffer for empty STREAM frame
298 - MINOR: mux-quic: do not allocate Tx buf for empty STREAM frame
299 - MINOR: quic: finalize affinity change as soon as possible
300 - BUG/MINOR: quic: fix race on quic_conns list during affinity rebind
301 - CI: switch to Fastly CDN to download LibreSSL
302 - BUILD: ssl: switch LibreSSL to Fastly CDN
303 - BUG/MINOR: clock: fix a few occurrences of 'now' being used in place of 'date'
304 - BUG/MINOR: spoe: use "date" not "now" in debug messages
305 - BUG/MINOR: activity: show wall-clock date, not internal date in show activity
306 - BUG/MINOR: opentracing: use 'date' instead of 'now' in debug output
307 - Revert "BUG/MINOR: clock: fix a few occurrences of 'now' being used in place of 'date'"
308 - BUG/MINOR: calltrace: fix 'now' being used in place of 'date'
309 - BUG/MINOR: trace: show wall-clock date, not internal date in show activity
310 - BUG/MINOR: hlua: return wall-clock date, not internal date in core.now()
311 - BUG/MEDIUM: spoe: Don't start new applet if there are enough idle ones
312 - BUG/MINOR: stconn: Fix SC flags with same value
313 - BUG/MINOR: resolvers: Use sc_need_room() to wait more room when dumping stats
314 - BUG/MEDIUM: tcpcheck: Don't eval custom expect rule on an empty buffer
315 - BUG/MINOR: stats: report the correct start date in "show info"
316 - MINOR: time: add conversions to/from nanosecond timestamps
317 - MINOR: time: replace calls to tv_ms_elapsed() with a linear subtract
318 - MINOR: spoe: switch the timeval-based timestamps to nanosecond timestamps
319 - MEDIUM: tree-wide: replace timeval with nanoseconds in tv_accept and tv_request
320 - MINOR: stats: use nanoseconds, not timeval to compute uptime
321 - MINOR: activity: use nanoseconds, not timeval to compute uptime
322 - MINOR: checks: use a nanosecond counters instead of timeval for checks->start
323 - MINOR: clock: do not use now.tv_sec anymore
324 - MEDIUM: clock: replace timeval "now" with integer "now_ns"
325 - MINOR: clock: replace the timeval start_time with start_time_ns
326 - MINOR: sample: Add bc_rtt and bc_rttvar
327 - MINOR: quic: use real sending rate measurement
328 - MINOR: proxy: factorize send rate measurement
329
Willy Tarreau3b50e5c2023-04-23 10:21:37 +02003302023/04/23 : 2.8-dev8
331 - BUG/MEDIUM: cli: Set SE_FL_EOI flag for '_getsocks' and 'quit' commands
332 - BUG/MEDIUM: cli: Eat output data when waiting for appctx shutdown
333 - BUG/MEDIUM: http-client: Eat output data when waiting for appctx shutdown
334 - BUG/MEDIUM: stats: Eat output data when waiting for appctx shutdown
335 - BUG/MEDIUM: log: Eat output data when waiting for appctx shutdown
336 - BUG/MEDIUM: dns: Kill idle DNS sessions during stopping stage
337 - BUG/MINOR: resolvers: Wakeup DNS idle task on stopping
338 - BUG/MEDIUM: resolvers: Force the connect timeout for DNS resolutions
339 - MINOR: hlua: Stop to check the SC state when executing a hlua cli command
340 - BUG/MEDIUM: mux-h1: Report EOI when a TCP connection is upgraded to H2
341 - BUG/MEDIUM: mux-h2: Never set SE_FL_EOS without SE_FL_EOI or SE_FL_ERROR
342 - MINOR: quic: Trace fix in quic_pto_pktns() (handshaske status)
343 - BUG/MINOR: quic: Wrong packet number space probing before confirmed handshake
344 - MINOR: quic: Modify qc_try_rm_hp() traces
345 - MINOR: quic: Dump more information at proto level when building packets
346 - MINOR: quic: Add a trace for packet with an ACK frame
347 - MINOR: activity: add a line reporting the average CPU usage to "show activity"
348 - BUG/MINOR: stick_table: alert when type len has incorrect characters
349 - MINOR: thread: keep a bitmask of enabled groups in thread_set
350 - MINOR: fd: optimize fd_claim_tgid() for use in fd_insert()
351 - MINOR: fd: add a lock bit with the tgid
352 - MINOR: fd: implement fd_migrate_on() to migrate on a non-local thread
353 - MINOR: receiver: reserve special values for "shards"
354 - MINOR: bind-conf: support a new shards value: "by-group"
355 - BUG/MEDIUM: fd: don't wait for tmask to stabilize if we're not in it.
356 - MINOR: quic: Add packet loss and maximum cc window to "show quic"
357 - BUG/MINOR: quic: Ignored less than 1ms RTTs
358 - MINOR: quic: Add connection flags to traces
359 - BUG/MEDIUM: quic: Code sanitization about acknowledgements requirements
360 - BUG/MINOR: quic: Possible wrapped values used as ACK tree purging limit.
361 - BUG/MINOR: quic: SIGFPE in quic_cubic_update()
362 - MINOR: quic: Display the packet number space flags in traces
363 - MINOR: quic: Remove a useless test about probing in qc_prep_pkts()
364 - BUG/MINOR: quic: Wrong Application encryption level selection when probing
365 - CI: bump "actions/checkout" to v3 for cross zoo matrix
366 - CI: enable monthly test on Fedora Rawhide
367 - BUG/MINOR: stream: Fix test on SE_FL_ERROR on the wrong entity
368 - BUG/MEDIUM: stream: Report write timeouts before testing the flags
369 - BUG/MEDIUM: stconn: Do nothing in sc_conn_recv() when the SC needs more room
370 - MINOR: stream: Uninline and export sess_set_term_flags() function
371 - MINOR: filters: Review and simplify errors handling
372 - REGTESTS: fix the race conditions in log_uri.vtc
373 - MINOR: channel: Forwad close to other side on abort
374 - MINOR: stream: Introduce stream_abort() to abort on both sides in same time
375 - MINOR: stconn: Rename SC_FL_SHUTR_NOW in SC_FL_ABRT_WANTED
376 - MINOR: channel/stconn: Replace channel_shutr_now() by sc_schedule_abort()
377 - MINOR: stconn: Rename SC_FL_SHUTW_NOW in SC_FL_SHUT_WANTED
378 - MINOR: channel/stconn: Replace channel_shutw_now() by sc_schedule_shutdown()
379 - MINOR: stconn: Rename SC_FL_SHUTR in SC_FL_ABRT_DONE
380 - MINOR: channel/stconn: Replace sc_shutr() by sc_abort()
381 - MINOR: stconn: Rename SC_FL_SHUTW in SC_FL_SHUT_DONE
382 - MINOR: channel/stconn: Replace sc_shutw() by sc_shutdown()
383 - MINOR: tree-wide: Replace several chn_cons() by the corresponding SC
384 - MINOR: tree-wide: Replace several chn_prod() by the corresponding SC
385 - BUG/MINOR: cli: Don't close when SE_FL_ERR_PENDING is set in cli analyzer
386 - MINOR: stconn: Stop to set SE_FL_ERROR on sending path
387 - MEDIUM: stconn: Forbid applets with more to deliver if EOI was reached
388 - MINOR: stconn: Don't clear SE_FL_ERROR when endpoint is reset
389 - MINOR: stconn: Add a flag to ack endpoint errors at SC level
390 - MINOR: backend: Set SC_FL_ERROR on connection error
391 - MINOR: stream: Set SC_FL_ERROR on channels' buffer allocation error
392 - MINOR: tree-wide: Test SC_FL_ERROR with SE_FL_ERROR from upper layer
393 - MEDIUM: tree-wide: Stop to set SE_FL_ERROR from upper layer
394 - MEDIUM: backend: Stop to use SE flags to detect connection errors
395 - MEDIUM: stream: Stop to use SE flags to detect read errors from analyzers
396 - MEDIUM: stream: Stop to use SE flags to detect endpoint errors
397 - MEDIUM: stconn: Rely on SC flags to handle errors instead of SE flags
398 - BUG/MINOR: stconn: Don't set SE_FL_ERROR at the end of sc_conn_send()
399 - BUG/MINOR: quic: Do not use ack delay during the handshakes
400 - CLEANUP: use "offsetof" where appropriate
401 - MINOR: ssl: remove OpenSSL 1.0.2 mention into certificate loading error
402 - BUG/MEDIUM: http-ana: Properly switch the request in tunnel mode on upgrade
403 - BUG/MEDIUM: log: Properly handle client aborts in syslog applet
404 - MINOR: stconn: Add a flag to report EOS at the stream-connector level
405 - MINOR: stconn: Propagate EOS from a mux to the attached stream-connector
406 - MINOR: stconn: Propagate EOS from an applet to the attached stream-connector
407 - MINOR: mux-h2: make the initial window size configurable per side
408 - MINOR: mux-h2: make the max number of concurrent streams configurable per side
409 - BUG/MINOR: task: allow to use tasklet_wakeup_after with tid -1
410 - CLEANUP: quic: remove unused QUIC_LOCK label
411 - CLEANUP: quic: remove unused scid_node
412 - CLEANUP: quic: remove unused qc param on stateless reset token
413 - CLEANUP: quic: rename quic_connection_id vars
414 - MINOR: quic: remove uneeded tasklet_wakeup after accept
415 - MINOR: quic: adjust Rx packet type parsing
416 - MINOR: quic: adjust quic CID derive API
417 - MINOR: quic: remove TID ref from quic_conn
418 - MEDIUM: quic: use a global CID trees list
419 - MINOR: quic: remove TID encoding in CID
420 - MEDIUM: quic: handle conn bootstrap/handshake on a random thread
421 - MINOR: quic: do not proceed to accept for closing conn
422 - MINOR: protocol: define new callback set_affinity
423 - MINOR: quic: delay post handshake frames after accept
424 - MEDIUM: quic: implement thread affinity rebinding
425 - BUG/MINOR: quic: transform qc_set_timer() as a reentrant function
426 - MINOR: quic: properly finalize thread rebinding
427 - MAJOR: quic: support thread balancing on accept
428 - MINOR: listener: remove unneeded local accept flag
429 - BUG/MINOR: http-ana: Update analyzers on both sides when switching in TUNNEL mode
430 - CLEANUP: backend: Remove useless debug message in assign_server()
431 - CLEANUP: cli: Remove useless debug message in cli_io_handler()
432 - BUG/MEDIUM: stconn: Propagate error on the SC on sending path
433 - MINOR: config: add "no-alpn" support for bind lines
434 - REGTESTS: add a new "ssl_alpn" test to test ALPN negotiation
435 - DOC: add missing documentation for "no-alpn" on bind lines
436 - MINOR: ssl: do not set ALPN callback with the empty string
437 - MINOR: ssl_crtlist: dump "no-alpn" on "show crtlist" when "no-alpn" was set
438 - MEDIUM: config: set useful ALPN defaults for HTTPS and QUIC
439 - BUG/MEDIUM: quic: prevent crash on Retry sending
440 - BUG/MINOR: cfgparse: make sure to include openssl-compat
441 - MINOR: clock: add now_mono_time_fast() function
442 - MINOR: clock: add now_cpu_time_fast() function
443 - MEDIUM: hlua: reliable timeout detection
444 - MEDIUM: hlua: introduce tune.lua.burst-timeout
445 - CLEANUP: hlua: avoid confusion between internal timers and tick based timers
446 - MINOR: hlua: hook yield on known lua state
447 - MINOR: hlua: safe coroutine.create()
448 - BUG/MINOR: quic: Stop removing ACK ranges when building packets
449 - MINOR: quic: Do not allocate too much ack ranges
450 - BUG/MINOR: quic: Unchecked buffer length when building the token
451 - BUG/MINOR: quic: Wrong Retry token generation timestamp computing
452 - BUG/MINOR: mux-quic: fix crash with app ops install failure
453 - BUG/MINOR: mux-quic: properly handle STREAM frame alloc failure
454 - BUG/MINOR: h3: fix crash on h3s alloc failure
455 - BUG/MINOR: quic: prevent crash on qc_new_conn() failure
456 - BUG/MINOR: quic: consume Rx datagram even on error
457 - CLEANUP: errors: fix obsolete function comments
458 - CLEANUP: server: fix update_status() function comment
459 - MINOR: server/event_hdl: add proxy_uuid to event_hdl_cb_data_server
460 - MINOR: hlua/event_hdl: rely on proxy_uuid instead of proxy_name for lookups
461 - MINOR: hlua/event_hdl: expose proxy_uuid variable in server events
462 - MINOR: hlua/event_hdl: fix return type for hlua_event_hdl_cb_data_push_args
463 - MINOR: server/event_hdl: prepare for upcoming refactors
464 - BUG/MINOR: event_hdl: don't waste 1 event subtype slot
465 - CLEANUP: event_hdl: updating obsolete comment for EVENT_HDL_CB_DATA
466 - CLEANUP: event_hdl: fix comment typo about _sync assertion
467 - MINOR: event_hdl: dynamically allocated event data members
468 - MINOR: event_hdl: provide event->when for advanced handlers
469 - MINOR: hlua/event_hdl: timestamp for events
470 - DOC: lua: restore 80 char limitation
471 - BUG/MINOR: server: incorrect report for tracking servers leaving drain
472 - MINOR: server: explicitly commit state change in srv_update_status()
473 - BUG/MINOR: server: don't miss proxy stats update on server state transitions
474 - BUG/MINOR: server: don't miss server stats update on server state transitions
475 - BUG/MINOR: server: don't use date when restoring last_change from state file
476 - MINOR: server: central update for server counters on state change
477 - MINOR: server: propagate server state change to lb through single function
478 - MINOR: server: propagate lb changes through srv_lb_propagate()
479 - MINOR: server: change adm_st_chg_cause storage type
480 - MINOR: server: srv_append_status refacto
481 - MINOR: server: change srv_op_st_chg_cause storage type
482 - CLEANUP: server: remove unused variables in srv_update_status()
483 - CLEANUP: server: fix srv_set_{running, stopping, stopped} function comment
484 - MINOR: server: pass adm and op cause to srv_update_status()
485 - MEDIUM: server: split srv_update_status() in two functions
486 - MINOR: server/event_hdl: prepare for server event data wrapper
487 - MINOR: quic: support migrating the listener as well
488 - MINOR: quic_sock: index li->per_thr[] on local thread id, not global one
489 - MINOR: listener: support another thread dispatch mode: "fair"
490 - MINOR: receiver: add a struct shard_info to store info about each shard
491 - MINOR: receiver: add RX_F_MUST_DUP to indicate that an rx must be duped
492 - MEDIUM: proto: duplicate receivers marked RX_F_MUST_DUP
493 - MINOR: proto: skip socket setup for duped FDs
494 - MEDIUM: config: permit to start a bind on multiple groups at once
495 - MINOR: listener: make accept_queue index atomic
496 - MEDIUM: listener: rework thread assignment to consider all groups
497 - MINOR: listener: use a common thr_idx from the reference listener
498 - MINOR: listener: resync with the thread index before heavy calculations
499 - MINOR: listener: make sure to avoid ABA updates in per-thread index
500 - MINOR: listener: always compare the local thread as well
501 - MINOR: Make `tasklet_free()` safe to be called with `NULL`
502 - CLEANUP: Stop checking the pointer before calling `tasklet_free()`
503 - CLEANUP: Stop checking the pointer before calling `pool_free()`
504 - CLEANUP: Stop checking the pointer before calling `task_free()`
505 - CLEANUP: Stop checking the pointer before calling `ring_free()`
506 - BUG/MINOR: cli: clarify error message about stats bind-process
507 - CI: cirrus-ci: bump FreeBSD image to 13-1
508 - REGTESTS: remove unsupported "stats bind-process" keyword
509 - CI: extend spellchecker whitelist, add "clen" as well
510 - CLEANUP: assorted typo fixes in the code and comments
511 - BUG/MINOR: sock_inet: use SO_REUSEPORT_LB where available
512 - BUG/MINOR: tools: check libssl and libcrypto separately
513 - BUG/MINOR: config: fix NUMA topology detection on FreeBSD
514 - BUILD: sock_inet: forward-declare struct receiver
515 - BUILD: proto_tcp: export the correct names for proto_tcpv[46]
516 - CLEANUP: protocol: move the l3_addrlen to plug a hole in proto_fam
517 - CLEANUP: protocol: move the nb_receivers to plug a hole in protocol
518 - REORG: listener: move the bind_conf's thread setup code to listener.c
519 - MINOR: proxy: make proxy_type_str() recognize peers sections
520 - MEDIUM: peers: call bind_complete_thread_setup() to finish the config
521 - MINOR: protocol: add a flags field to store info about protocols
522 - MINOR: protocol: move the global reuseport flag to the protocols
523 - MINOR: listener: automatically adjust shards based on support for SO_REUSEPORT
524 - MINOR: protocol: add a function to check if some features are supported
525 - MINOR: sock: add a function to check for SO_REUSEPORT support at runtime
526 - MINOR: protocol: perform a live check for SO_REUSEPORT support
527 - MINOR: listener: do not restrict CLI to first group anymore
528 - MINOR: listener: add a new global tune.listener.default-shards setting
529 - MEDIUM: listener: switch the default sharding to by-group
530
Willy Tarreau768b6282023-04-08 17:38:39 +02005312023/04/08 : 2.8-dev7
532 - BUG/MINOR: stats: Don't replace sc_shutr() by SE_FL_EOS flag yet
533 - BUG/MEDIUM: mux-h2: Be able to detect connection error during handshake
534 - BUG/MINOR: quic: Missing padding in very short probe packets
535 - MINOR: proxy/pool: prevent unnecessary calls to pool_gc()
536 - CLEANUP: proxy: remove stop_time related dead code
537 - DOC/MINOR: reformat configuration.txt's "quoting and escaping" table
538 - MINOR: http_fetch: Add support for empty delim in url_param
539 - MINOR: http_fetch: add case insensitive support for smp_fetch_url_param
540 - MINOR: http_fetch: Add case-insensitive argument for url_param/urlp_val
541 - REGTESTS : Add test support for case insentitive for url_param
542 - BUG/MEDIUM: proxy/sktable: prevent watchdog trigger on soft-stop
543 - BUG/MINOR: backend: make be_usable_srv() consistent when stopping
544 - BUG/MINOR: ssl: Remove dead code in cli_parse_update_ocsp_response
545 - BUG/MINOR: ssl: Fix potential leak in cli_parse_update_ocsp_response
546 - BUG/MINOR: ssl: ssl-(min|max)-ver parameter not duplicated for bundles in crt-list
547 - BUG/MINOR: quic: Wrong use of now_ms timestamps (cubic algo)
548 - MINOR: quic: Add recovery related information to "show quic"
549 - BUG/MINOR: quic: Wrong use of now_ms timestamps (newreno algo)
550 - BUG/MINOR: quic: Missing max_idle_timeout initialization for the connection
551 - MINOR: quic: Implement cubic state trace callback
552 - MINOR: quic: Adjustments for generic control congestion traces
553 - MINOR: quic: Traces adjustments at proto level.
554 - MEDIUM: quic: Ack delay implementation
555 - BUG/MINOR: quic: Wrong rtt variance computing
556 - MINOR: cli: support filtering on FD types in "show fd"
557 - MINOR: quic: Add a fake congestion control algorithm named "nocc"
558 - CI: run smoke tests on config syntax to check memory related issues
559 - CLEANUP: assorted typo fixes in the code and comments
560 - CI: exclude doc/{design-thoughts,internals} from spell check
561 - BUG/MINOR: quic: Remaining useless statements in cubic slow start callback
562 - BUG/MINOR: quic: Cubic congestion control window may wrap
563 - MINOR: quic: Add missing traces in cubic algorithm implementation
564 - BUG/MAJOR: quic: Congestion algorithms states shared between the connection
565 - BUG/MINOR: ssl: Undefined reference when building with OPENSSL_NO_DEPRECATED
566 - BUG/MINOR: quic: Remove useless BUG_ON() in newreno and cubic algo implementation
567 - MINOR: http-act: emit a warning when a header field name contains forbidden chars
568 - DOC: config: strict-sni allows to start without certificate
569 - MINOR: quic: Add trace to debug idle timer task issues
570 - BUG/MINOR: quic: Unexpected connection closures upon idle timer task execution
571 - BUG/MINOR: quic: Wrong idle timer expiration (during 20s)
572 - BUILD: quic: 32bits compilation issue in cli_io_handler_dump_quic()
573 - BUG/MINOR: quic: Possible wrong PTO computing
574 - BUG/MINOR: tcpcheck: Be able to expect an empty response
575 - BUG/MEDIUM: stconn: Add a missing return statement in sc_app_shutr()
576 - BUG/MINOR: stream: Fix test on channels flags to set clientfin/serverfin touts
577 - MINOR: applet: Uninline appctx_free()
578 - MEDIUM: applet/trace: Register a new trace source with its events
579 - CLEANUP: stconn: Remove remaining debug messages
580 - BUG/MEDIUM: channel: Improve reports for shut in co_getblk()
581 - BUG/MEDIUM: dns: Properly handle error when a response consumed
582 - MINOR: stconn: Remove unecessary test on SE_FL_EOS before receiving data
583 - MINOR: stconn/channel: Move CF_READ_DONTWAIT into the SC and rename it
584 - MINOR: stconn/channel: Move CF_SEND_DONTWAIT into the SC and rename it
585 - MINOR: stconn/channel: Move CF_NEVER_WAIT into the SC and rename it
586 - MINOR: stconn/channel: Move CF_EXPECT_MORE into the SC and rename it
587 - MINOR: mux-pt: Report end-of-input with the end-of-stream after a read
588 - BUG/MINOR: mux-h1: Properly report EOI/ERROR on read0 in h1_rcv_pipe()
589 - CLEANUP: mux-h1/mux-pt: Remove useless test on SE_FL_SHR/SE_FL_SHW flags
590 - MINOR: mux-h1: Report an error to the SE descriptor on truncated message
591 - MINOR: stconn: Always ack EOS at the end of sc_conn_recv()
592 - MINOR: stconn/applet: Handle EOI in the applet .wake callback function
593 - MINOR: applet: No longer set EOI on the SC
594 - MINOR: stconn/applet: Handle EOS in the applet .wake callback function
595 - MEDIUM: cache: Use the sedesc to report and detect end of processing
596 - MEDIUM: cli: Use the sedesc to report and detect end of processing
597 - MINOR: dns: Remove the test on the opposite SC state to send requests
598 - MEDIUM: dns: Use the sedesc to report and detect end of processing
599 - MEDIUM: spoe: Use the sedesc to report and detect end of processing
600 - MEDIUM: hlua/applet: Use the sedesc to report and detect end of processing
601 - MEDIUM: log: Use the sedesc to report and detect end of processing
602 - MEDIUM: peers: Use the sedesc to report and detect end of processing
603 - MINOR: sink: Remove the tests on the opposite SC state to process messages
604 - MEDIUM: sink: Use the sedesc to report and detect end of processing
605 - MEDIUM: stats: Use the sedesc to report and detect end of processing
606 - MEDIUM: promex: Use the sedesc to report and detect end of processing
607 - MEDIUM: http_client: Use the sedesc to report and detect end of processing
608 - MINOR: stconn/channel: Move CF_EOI into the SC and rename it
609 - MEDIUM: tree-wide: Move flags about shut from the channel to the SC
610 - MINOR: tree-wide: Simplifiy some tests on SHUT flags by accessing SCs directly
611 - MINOR: stconn/applet: Add BUG_ON_HOT() to be sure SE_FL_EOS is never set alone
612 - MINOR: server: add SRV_F_DELETED flag
613 - BUG/MINOR: server/del: fix srv->next pointer consistency
614 - BUG/MINOR: stats: properly handle server stats dumping resumption
615 - BUG/MINOR: sink: free forward_px on deinit()
616 - BUG/MINOR: log: free log forward proxies on deinit()
617 - MINOR: server: always call ssl->destroy_srv when available
618 - MINOR: server: correctly free servers on deinit()
619 - BUG/MINOR: hlua: hook yield does not behave as expected
620 - MINOR: hlua: properly handle hlua_process_task HLUA_E_ETMOUT
621 - BUG/MINOR: hlua: enforce proper running context for register_x functions
622 - MINOR: hlua: Fix two functions that return nothing useful
623 - MEDIUM: hlua: Dynamic list of frontend/backend in Lua
624 - MINOR: hlua_fcn: alternative to old proxy and server attributes
625 - MEDIUM: hlua_fcn: dynamic server iteration and indexing
626 - MEDIUM: hlua_fcn/api: remove some old server and proxy attributes
627 - CLEANUP: hlua: fix conflicting comment in hlua_ctx_destroy()
628 - MINOR: hlua: add simple hlua reference handling API
629 - MINOR: hlua: fix return type for hlua_checkfunction() and hlua_checktable()
630 - BUG/MINOR: hlua: fix reference leak in core.register_task()
631 - BUG/MINOR: hlua: fix reference leak in hlua_post_init_state()
632 - BUG/MINOR: hlua: prevent function and table reference leaks on errors
633 - CLEANUP: hlua: use hlua_ref() instead of luaL_ref()
634 - CLEANUP: hlua: use hlua_pushref() instead of lua_rawgeti()
635 - CLEANUP: hlua: use hlua_unref() instead of luaL_unref()
636 - MINOR: hlua: simplify lua locking
637 - BUG/MEDIUM: hlua: prevent deadlocks with main lua lock
638 - MINOR: hlua_fcn: add server->get_rid() method
639 - MINOR: hlua: support for optional arguments to core.register_task()
640 - DOC: lua: silence "literal block ends without a blank line" Sphinx warnings
641 - DOC: lua: silence "Unexpected indentation" Sphinx warnings
642 - BUG/MINOR: event_hdl: fix rid storage type
643 - BUG/MINOR: event_hdl: make event_hdl_subscribe thread-safe
644 - MINOR: event_hdl: global sublist management clarification
645 - BUG/MEDIUM: event_hdl: clean soft-stop handling
646 - BUG/MEDIUM: event_hdl: fix async data refcount issue
647 - MINOR: event_hdl: normal tasks support for advanced async mode
648 - MINOR: event_hdl: add event_hdl_async_equeue_isempty() function
649 - MINOR: event_hdl: add event_hdl_async_equeue_size() function
650 - MINOR: event_hdl: pause/resume for subscriptions
651 - MINOR: proxy: add findserver_unique_id() and findserver_unique_name()
652 - MEDIUM: hlua/event_hdl: initial support for event handlers
653 - MINOR: hlua/event_hdl: per-server event subscription
654 - EXAMPLES: add basic event_hdl lua example script
655 - MINOR: http-ana: Add a HTTP_MSGF flag to state the Expect header was checked
656 - BUG/MINOR: http-ana: Don't switch message to DATA when waiting for payload
657 - BUG/MINOR: quic: Possible crashes in qc_idle_timer_task()
658 - MINOR: quic: derive first DCID from client ODCID
659 - MINOR: quic: remove ODCID dedicated tree
660 - MINOR: quic: remove address concatenation to ODCID
661 - BUG/MINOR: mworker: unset more internal variables from program section
662 - BUG/MINOR: errors: invalid use of memprintf in startup_logs_init()
663 - MINOR: applet: Use unsafe version to get stream from SC in the trace function
664 - BUG/MUNOR: http-ana: Use an unsigned integer for http_msg flags
665 - MINOR: compression: Make compression offload a flag
666 - MINOR: compression: Prepare compression code for request compression
667 - MINOR: compression: Store algo and type for both request and response
668 - MINOR: compression: Count separately request and response compression
669 - MEDIUM: compression: Make it so we can compress requests as well.
670 - BUG/MINOR: lua: remove incorrect usage of strncat()
671 - CLEANUP: tcpcheck: remove the only occurrence of sprintf() in the code
672 - CLEANUP: ocsp: do no use strpcy() to copy a path!
673 - CLEANUP: tree-wide: remove strpcy() from constant strings
674 - CLEANUP: opentracing: remove the last two occurrences of strncat()
675 - BUILD: compiler: fix __equals_1() on older compilers
676 - MINOR: compiler: define a __attribute__warning() macro
677 - BUILD: bug.h: add a warning in the base API when unsafe functions are used
678 - BUG/MEDIUM: listeners: Use the right parameters for strlcpy2().
679
Willy Tarreau4c7588d2023-03-28 13:58:56 +02006802023/03/28 : 2.8-dev6
681 - BUG/MEDIUM: mux-pt: Set EOS on error on sending path if read0 was received
682 - MINOR: ssl: Change the ocsp update log-format
683 - MINOR: ssl: Use ocsp update task for "update ssl ocsp-response" command
684 - BUG/MINOR: ssl: Fix double free in ocsp update deinit
685 - MINOR: ssl: Accept certpath as param in "show ssl ocsp-response" CLI command
686 - MINOR: ssl: Add certificate path to 'show ssl ocsp-response' output
687 - BUG/MEDIUM: proxy: properly stop backends on soft-stop
688 - BUG/MEDIUM: resolvers: Properly stop server resolutions on soft-stop
689 - DEBUG: cli/show_fd: Display connection error code
690 - DEBUG: ssl-sock/show_fd: Display SSL error code
691 - BUG/MEDIUM: mux-h1: Don't block SE_FL_ERROR if EOS is not reported on H1C
692 - BUG/MINOR: tcp_sample: fix a bug in fc_dst_port and fc_dst_is_local sample fetches
693 - BUG/MINOR: quic: Missing STREAM frame length updates
694 - BUG/MEDIUM: connection: Preserve flags when a conn is removed from an idle list
695 - BUG/MINOR: mux-h2: make sure the h2c task exists before refreshing it
696 - MINOR: buffer: add br_count() to return the number of allocated bufs
697 - MINOR: buffer: add br_single() to check if a buffer ring has more than one buf
698 - BUG/MEDIUM: mux-h2: only restart sending when mux buffer is decongested
699 - BUG/MINOR: mux-h2: set CO_SFL_STREAMER when sending lots of data
700 - BUG/MINOR: quic: Missing STREAM frame data pointer updates
701 - MINOR: stick-table: add sc-add-gpc() to http-after-response
702 - MINOR: doc: missing entries for sc-add-gpc()
703 - BUG/MAJOR: qpack: fix possible read out of bounds in static table
704 - OPTIM: mux-h1: limit first read size to avoid wrapping
705 - MINOR: mux-h2: set CO_SFL_MSG_MORE when sending multiple buffers
706 - MINOR: ssl-sock: pass the CO_SFL_MSG_MORE info down the stack
707 - MINOR: quic: Stop stressing the acknowledgments process (RX ACK frames)
708 - BUG/MINOR: quic: Dysfunctional 01RTT packet number space probing
709 - BUG/MEDIUM: stream: do not try to free a failed stream-conn
710 - BUG/MEDIUM: mux-h2: do not try to free an unallocated h2s->sd
711 - BUG/MEDIUM: mux-h2: erase h2c->wait_event.tasklet on error path
712 - BUG/MEDIUM: stconn: don't set the type before allocation succeeds
713 - BUG/MINOR: stconn: fix sedesc memory leak on stream allocation failure
714 - MINOR: dynbuf: set POOL_F_NO_FAIL on buffer allocation
715 - MINOR: pools: preset the allocation failure rate to 1% with -dMfail
716 - BUG/MEDIUM: mux-h1: properly destroy a partially allocated h1s
717 - BUG/MEDIUM: applet: only set appctx->sedesc on successful allocation
718 - BUG/MINOR: quic: wake up MUX on probing only for 01RTT
719 - BUG/MINOR: quic: ignore congestion window on probing for MUX wakeup
720 - BUILD: thread: implement thread_harmless_end_sig() for threadless builds
721 - BUILD: thread: silence a build warning when threads are disabled
722 - MINOR: debug: support dumping the libs addresses when running in verbose mode
723 - BUG/MINOR: illegal use of the malloc_trim() function if jemalloc is used
724 - BUG/MINOR: trace: fix hardcoded level for TRACE_PRINTF
725 - BUG/MEDIUM: mux-quic: release data from conn flow-control on qcs reset
726 - MINOR: mux-quic: complete traces for qcs emission
727 - MINOR: mux-quic: adjust trace level for MAX_DATA/MAX_STREAM_DATA recv
728 - MINOR: mux-quic: add flow-control info to minimal trace level
729 - MINOR: pools: make sure 'no-memory-trimming' is always used
730 - MINOR: pools: intercept malloc_trim() instead of trying to plug holes
731 - MEDIUM: pools: move the compat code from trim_all_pools() to malloc_trim()
732 - MINOR: pools: export trim_all_pools()
733 - MINOR: pattern: use trim_all_pools() instead of a conditional malloc_trim()
734 - MINOR: tools: relax dlopen() on malloc/free checks
735 - MEDIUM: tools: further relax dlopen() checks too consider grouped symbols
736 - BUG/MINOR: pools: restore detection of built-in allocator
737 - MINOR: pools: report a replaced memory allocator instead of just malloc_trim()
738 - BUG/MINOR: h3: properly handle incomplete remote uni stream type
739 - BUG/MINOR: mux-quic: prevent CC status to be erased by shutdown
740 - MINOR: mux-quic: interrupt qcc_recv*() operations if CC scheduled
741 - MINOR: mux-quic: ensure CONNECTION_CLOSE is scheduled once per conn
742 - MINOR: mux-quic: close on qcs allocation failure
743 - MINOR: mux-quic: close on frame alloc failure
744 - BUG/MINOR: syslog: Request for more data if message was not fully received
745 - BUG/MEDIUM: stats: Consume the request except when parsing the POST payload
746 - DOC: config: set-var() dconv rendering issues
747 - BUG/MEDIUM: mux-h1: Wakeup H1C on shutw if there is no I/O subscription
748 - BUG/MINOR: applet/new: fix sedesc freeing logic
749 - BUG/MINOR: quic: Missing STREAM frame type updated
750 - BUILD: da: extends CFLAGS to support API v3 from 3.1.7 and onwards.
751 - BUG/MINOR: ssl: Stop leaking `err` in ssl_sock_load_ocsp()
752
Willy Tarreaufc0ad292023-03-10 16:28:37 +01007532023/03/10 : 2.8-dev5
754 - MINOR: ssl: rename confusing ssl_bind_kws
755 - BUG/MINOR: config: crt-list keywords mistaken for bind ssl keywords
756 - BUG/MEDIUM: http-ana: Detect closed SC on opposite side during body forwarding
757 - BUG/MEDIUM: stconn: Don't rearm the read expiration date if EOI was reached
758 - MINOR: global: Add an option to disable the data fast-forward
759 - MINOR: haproxy: Add an command option to disable data fast-forward
760 - REGTESTS: Remove unsupported feature command in http_splicing.vtc
761 - BUG/MEDIUM: wdt: fix wrong thread being checked for sleeping
762 - BUG/MINOR: sched: properly report long_rq when tasks remain in the queue
763 - BUG/MEDIUM: sched: allow a bit more TASK_HEAVY to be processed when needed
764 - MINOR: threads: add flags to know if a thread is started and/or running
765 - MINOR: h3/hq-interop: handle no data in decode_qcs() with FIN set
766 - BUG/MINOR: mux-quic: transfer FIN on empty STREAM frame
767 - BUG/MINOR: mworker: prevent incorrect values in uptime
768 - MINOR: h3: add traces on decode_qcs callback
769 - BUG/MINOR: quic: Possible unexpected counter incrementation on send*() errors
770 - MINOR: quic: Add new traces about by connection RX buffer handling
771 - MINOR: quic: Move code to wakeup the timer task to avoid anti-amplication deadlock
772 - BUG/MINOR: quic: Really cancel the connection timer from qc_set_timer()
773 - MINOR: quic: Simplication for qc_set_timer()
774 - MINOR: quic: Kill the connections on ICMP (port unreachable) packet receipt
775 - MINOR: quic: Add traces to qc_kill_conn()
776 - MINOR: quic: Make qc_dgrams_retransmit() return a status.
777 - BUG/MINOR: quic: Missing call to task_queue() in qc_idle_timer_do_rearm()
778 - MINOR: quic: Add a trace to identify connections which sent Initial packet.
779 - MINOR: quic: Add <pto_count> to the traces
780 - BUG/MINOR: quic: Do not probe with too little Initial packets
781 - BUG/MINOR: quic: Wrong initialization for io_cb_wakeup boolean
782 - BUG/MINOR: quic: Do not drop too small datagrams with Initial packets
783 - BUG/MINOR: quic: Missing padding for short packets
784 - MINOR: quic: adjust request reject when MUX is already freed
785 - BUG/MINOR: quic: also send RESET_STREAM if MUX released
786 - BUG/MINOR: quic: acknowledge STREAM frame even if MUX is released
787 - BUG/MINOR: h3: prevent hypothetical demux failure on int overflow
788 - MEDIUM: h3: enforce GOAWAY by resetting higher unhandled stream
789 - MINOR: mux-quic: define qc_shutdown()
790 - MINOR: mux-quic: define qc_process()
791 - MINOR: mux-quic: implement client-fin timeout
792 - MEDIUM: mux-quic: properly implement soft-stop
793 - MINOR: quic: mark quic-conn as jobs on socket allocation
794 - MEDIUM: quic: trigger fast connection closing on process stopping
795 - MINOR: mux-h2/traces: do not log h2s pointer for dummy streams
796 - MINOR: mux-h2/traces: add a missing TRACE_LEAVE() in h2s_frt_handle_headers()
797 - BUG/MEDIUM: quic: Missing TX buffer draining from qc_send_ppkts()
798 - DEBUG: stream: Add a BUG_ON to never exit process_stream with an expired task
799 - DOC: config: Fix description of options about HTTP connection modes
800 - MINOR: proxy: Only consider backend httpclose option for server connections
801 - BUG/MINOR: haproxy: Fix option to disable the fast-forward
802 - DOC: config: Add the missing tune.fail-alloc option from global listing
803 - MINOR: cfgcond: Implement strstr condition expression
804 - MINOR: cfgcond: Implement enabled condition expression
805 - REGTESTS: Skip http_splicing.vtc script if fast-forward is disabled
806 - REGTESTS: Fix ssl_errors.vtc script to wait for connections close
807 - BUG/MINOR: mworker: stop doing strtok directly from the env
808 - BUG/MEDIUM: mworker: prevent inconsistent reload when upgrading from old versions
809 - BUG/MEDIUM: mworker: don't register mworker_accept_wrapper() when master FD is wrong
810 - MINOR: startup: HAPROXY_STARTUP_VERSION contains the version used to start
811 - BUG/MINOR: cache: Cache response even if request has "no-cache" directive
812 - BUG/MINOR: cache: Check cache entry is complete in case of Vary
813 - MINOR: compiler: add a TOSTR() macro to turn a value into a string
814 - BUG/MINOR: lua/httpclient: missing free in hlua_httpclient_send()
815 - BUG/MEDIUM: httpclient/lua: fix a race between lua GC and hlua_ctx_destroy
816 - MEDIUM: channel: Remove CF_READ_NOEXP flag
817 - MAJOR: channel: Remove flags to report READ or WRITE errors
818 - DEBUG: stream/trace: Add sedesc flags in trace messages
819 - MINOR: channel/stconn: Move rto/wto from the channel to the stconn
820 - MEDIUM: channel/stconn: Move rex/wex timer from the channel to the sedesc
821 - MEDIUM: stconn: Don't requeue the stream's task after I/O
822 - MEDIUM: stconn: Replace read and write timeouts by a unique I/O timeout
823 - MEDIUM: stconn: Add two date to track successful reads and blocked sends
824 - MINOR: applet/stconn: Add a SE flag to specify an endpoint does not expect data
825 - MAJOR: stream: Use SE descriptor date to detect read/write timeouts
826 - MINOR: stream: Dump the task expiration date in trace messages
827 - MINOR: stream: Report rex/wex value using the sedesc date in trace messages
828 - MINOR: stream: Use relative expiration date in trace messages
829 - MINOR: stconn: Always report READ/WRITE event on shutr/shutw
830 - CLEANUP: stconn: Remove old read and write expiration dates
831 - MINOR: stconn: Set half-close timeout using proxy settings
832 - MINOR: stconn: Remove half-closed timeout
833 - REGTESTS: cache: Use rxresphdrs to only get headers for 304 responses
834 - MINOR: stconn: Add functions to set/clear SE_FL_EXP_NO_DATA flag from endpoint
835 - BUG/MINOR: proto_ux: report correct error when bind_listener fails
836 - BUG/MINOR: protocol: fix minor memory leak in protocol_bind_all()
837 - MINOR: proto_uxst: add resume method
838 - MINOR: listener/api: add lli hint to listener functions
839 - MINOR: listener: add relax_listener() function
840 - MINOR: listener: workaround for closing a tiny race between resume_listener() and stopping
841 - MINOR: listener: make sure we don't pause/resume bypassed listeners
842 - BUG/MEDIUM: listener: fix pause_listener() suspend return value handling
843 - BUG/MINOR: listener: fix resume_listener() resume return value handling
844 - BUG/MEDIUM: resume from LI_ASSIGNED in default_resume_listener()
845 - MINOR: listener: pause_listener() becomes suspend_listener()
846 - BUG/MEDIUM: listener/proxy: fix listeners notify for proxy resume
847 - BUG/MINOR: sock_unix: match finalname with tempname in sock_unix_addrcmp()
848 - MEDIUM: proto_ux: properly suspend named UNIX listeners
849 - MINOR: proto_ux: ability to dump ABNS names in error messages
850 - MINOR: haproxy: always protocol unbind on startup error path
851 - BUILD: quic: 32-bits compilation issue with %zu in quic_rx_pkts_del()
852 - BUG/MINOR: ring: do not realign ring contents on resize
853 - MEDIUM: ring: make the offset relative to the head/tail instead of absolute
854 - CLEANUP: ring: remove the now unused ring's offset
855 - MINOR: config: add HAPROXY_BRANCH environment variable
856 - BUILD: thead: Fix several 32 bits compilation issues with uint64_t variables
857 - BUG/MEDIUM: fd: avoid infinite loops in fd_add_to_fd_list and fd_rm_from_fd_list
858 - BUG/MEDIUM: h1-htx: Never copy more than the max data allowed during parsing
859 - BUG/MINOR: stream: Remove BUG_ON about the task expiration in process_stream()
860 - MINOR: stream: Handle stream's timeouts in a dedicated function
861 - MEDIUM: stream: Eventually handle stream timeouts when exiting process_stream()
862 - MINOR: stconn: Report a send activity when endpoint is willing to consume data
863 - BUG/MEDIUM: stconn: Report a blocked send if some output data are not consumed
864 - MEDIUM: mux-h1: Don't expect data from server as long as request is unfinished
865 - MEDIUM: mux-h2: Don't expect data from server as long as request is unfinished
866 - MEDIUM: mux-quic: Don't expect data from server as long as request is unfinished
867 - DOC: config: Clarify the meaning of 'hold' in the 'resolvers' section
868 - DOC: config: Replace TABs by spaces
869 - BUG/MINOR: fd: used the update list from the fd's group instead of tgid
870 - BUG/MEDIUM: fd: make fd_delete() support being called from a different group
871 - CLEANUP: listener: only store conn counts for local threads
872 - MINOR: tinfo: make thread_set functions return nth group/mask instead of first
873 - MEDIUM: quic: improve fatal error handling on send
874 - MINOR: quic: consider EBADF as critical on send()
875 - BUG/MEDIUM: connection: Clear flags when a conn is removed from an idle list
876 - BUG/MINOR: mux-h1: Don't report an error on an early response close
877 - BUG/MINOR: http-check: Don't set HTX_SL_F_BODYLESS flag with a log-format body
878 - BUG/MINOR: http-check: Skip C-L header for empty body when it's not mandatory
879 - BUG/MINOR: http-fetch: recognize IPv6 addresses in square brackets in req.hdr_ip()
880 - REGTEST: added tests covering smp_fetch_hdr_ip()
881 - MINOR: quic: simplify return path in send functions
882 - MINOR: quic: implement qc_notify_send()
883 - MINOR: quic: purge txbuf before preparing new packets
884 - MEDIUM: quic: implement poller subscribe on sendto error
885 - MINOR: quic: notify on send ready
886 - BUG/MINOR: http-ana: Don't increment conn_retries counter before the L7 retry
887 - BUG/MINOR: http-ana: Do a L7 retry on read error if there is no response
888 - BUG/MEDIUM: http-ana: Don't close request side when waiting for response
889 - BUG/MINOR: mxu-h1: Report a parsing error on abort with pending data
890 - MINOR: ssl: Destroy ocsp update http_client during cleanup
891 - MINOR: ssl: Reinsert ocsp update entries later in case of unknown error
892 - MINOR: ssl: Add ocsp update success/failure counters
893 - MINOR: ssl: Store specific ocsp update errors in response and update ctx
894 - MINOR: ssl: Add certificate's path to certificate_ocsp structure
895 - MINOR: ssl: Add 'show ssl ocsp-updates' CLI command
896 - MINOR: ssl: Add sample fetches related to OCSP update
897 - MINOR: ssl: Use dedicated proxy and log-format for OCSP update
898 - MINOR: ssl: Reorder struct certificate_ocsp members
899 - MINOR: ssl: Increment OCSP update replay delay in case of failure
900 - MINOR: ssl: Add way to dump ocsp response in base64
901 - MINOR: ssl: Add global options to modify ocsp update min/max delay
902 - REGTESTS: ssl: Fix ocsp update crt-lists
903 - REGTESTS: ssl: Add test for new ocsp update cli commands
904 - MINOR: ssl: Add ocsp-update information to "show ssl crt-list"
905 - BUG/MINOR: ssl: Fix ocsp-update when using "add ssl crt-list"
906 - MINOR: ssl: Replace now.tv_sec with date.tv_sec in ocsp update task
907 - BUG/MINOR: ssl: Use 'date' instead of 'now' in ocsp stapling callback
908 - BUG/MEDIUM: quic: properly handle duplicated STREAM frames
909 - BUG/MINOR: cli: fix CLI handler "set anon global-key" call
910 - MINOR: http_ext: adding some documentation, forgot to inline function
911 - BUG/MINOR: quic: Do not send too small datagrams (with Initial packets)
912 - MINOR: quic: Add a BUG_ON_HOT() call for too small datagrams
913 - BUG/MINOR: quic: Ensure to be able to build datagrams to be retransmitted
914 - BUG/MINOR: quic: v2 Initial packets decryption failed
915 - MINOR: quic: Add traces about QUIC TLS key update
916 - BUG/MINOR: quic: Remove force_ack for Initial,Handshake packets
917 - BUG/MINOR: quic: Ensure not to retransmit packets with no ack-eliciting frames
918 - BUG/MINOR: quic: Do not resend already acked frames
919 - BUG/MINOR: quic: Missing detections of amplification limit reached
920 - MINOR: quic: Send PING frames when probing Initial packet number space
921 - BUG/MEDIUM: quic: do not crash when handling STREAM on released MUX
922 - BUG/MAJOR: fd/thread: fix race between updates and closing FD
923 - BUG/MEDIUM: dns: ensure ring offset is properly reajusted to head
924 - BUG/MINOR: mux-quic: properly init STREAM frame as not duplicated
925 - MINOR: quic: Do not accept wrong active_connection_id_limit values
926 - MINOR: quic: Store the next connection IDs sequence number in the connection
927 - MINOR: quic: Typo fix for ACK_ECN frame
928 - MINOR: quic: RETIRE_CONNECTION_ID frame handling (RX)
929 - MINOR: quic: Useless TLS context allocations in qc_do_rm_hp()
930 - MINOR: quic: Add spin bit support
931 - MINOR: quic: Add transport parameters to "show quic"
932 - BUG/MEDIUM: sink/forwarder: ensure ring offset is properly readjusted to head
933 - BUG/MINOR: dns: fix ring offset calculation on first read
934 - BUG/MINOR: dns: fix ring offset calculation in dns_resolve_send()
935 - MINOR: jwt: Add support for RSA-PSS signatures (PS256 algorithm)
936 - MINOR: h3: add traces on h3_init_uni_stream() error paths
937 - MINOR: quic: create a global list dedicated for closing QUIC conns
938 - MINOR: quic: handle new closing list in show quic
939 - MEDIUM: quic: release closing connections on stopping
940 - BUG/MINOR: quic: Wrong RETIRE_CONNECTION_ID sequence number check
941 - MINOR: fd/cli: report the polling mask in "show fd"
942 - CLEANUP: sock: always perform last connection updates before wakeup
943 - MINOR: quic: Do not stress the peer during retransmissions of lost packets
944 - BUG/MINOR: init: properly detect NUMA bindings on large systems
945 - BUG/MINOR: thread: report thread and group counts in the correct order
946 - BUG/MAJOR: fd/threads: close a race on closing connections after takeover
947 - MINOR: debug: add random delay injection with "debug dev delay-inj"
948 - BUG/MINOR: mworker: use MASTER_MAXCONN as default maxconn value
949 - BUG/MINOR: quic: Missing listener accept queue tasklet wakeups
950 - MINOR: quic_sock: un-statify quic_conn_sock_fd_iocb()
951 - DOC: config: fix typo "dependeing" in bind thread description
952 - DOC/CLEANUP: fix typos
953
Willy Tarreauc80560b2023-02-14 16:55:17 +01009542023/02/14 : 2.8-dev4
955 - BUG/MINOR: stats: fix source buffer size for http dump
956 - BUG/MEDIUM: stats: fix resolvers dump
957 - BUG/MINOR: stats: fix ctx->field update in stats_dump_proxy_to_buffer()
958 - BUG/MINOR: stats: fix show stats field ctx for servers
959 - BUG/MINOR: stats: fix STAT_STARTED behavior with full htx
960 - MINOR: quic: Update version_information transport parameter to draft-14
961 - BUG/MINOR: stats: Prevent HTTP "other sessions" counter underflows
962 - BUG/MEDIUM: thread: fix extraneous shift in the thread_set parser
963 - BUG/MEDIUM: listener/thread: bypass shards setting on failed thread resolution
964 - BUG/MINOR: ssl/crt-list: warn when a line is malformated
965 - BUG/MEDIUM: stick-table: do not leave entries in end of window during purge
966 - BUG/MINOR: clock: do not mix wall-clock and monotonic time in uptime calculation
967 - BUG/MEDIUM: cache: use the correct time reference when comparing dates
968 - MEDIUM: clock: force internal time to wrap early after boot
969 - BUILD: ssl/ocsp: ssl_ocsp-t.h depends on ssl_sock-t.h
970 - MINOR: ssl/ocsp: add a function to check the OCSP update configuration
971 - MINOR: cfgparse/server: move (min/max)conn postparsing logic into dedicated function
972 - BUG/MINOR: server/add: ensure minconn/maxconn consistency when adding server
973 - BUG/MEDIUM: stconn: Schedule a shutw on shutr if data must be sent first
974 - BUG/MEDIUM: quic: fix crash when "option nolinger" is set in the frontend
975 - MINOR: quic: implement a basic "show quic" CLI handler
976 - MINOR: quic: display CIDs and state in "show quic"
977 - MINOR: quic: display socket info on "show quic"
978 - MINOR: quic: display infos about various encryption level on "show quic"
979 - MINOR: quic: display Tx stream info on "show quic"
980 - MINOR: quic: filter closing conn on "show quic"
981 - BUG/MINOR: quic: fix filtering of closing connections on "show quic"
982 - BUG/MEDIUM: stconn: Don't needlessly wake the stream on send during fast-forward
983 - BUG/MINOR: quic: fix type bug on "show quic" for 32-bits arch
984 - BUG/MINOR: mworker: fix uptime for master process
985 - BUG/MINOR: clock/stats: also use start_time not start_date in HTML info
986 - BUG/MEDIUM: stconn: stop to enable/disable reads from streams via si_update_rx
987 - BUG/MEDIUM: quic: Buffer overflow when looking through QUIC CLI keyword list
988 - DOC: proxy-protocol: fix wrong byte in provided example
989 - MINOR: ssl-ckch: Stop to test CF_WRITE_ERROR to commit CA/CRL file
990 - MINOR: bwlim: Remove useless test on CF_READ_ERROR to detect the last packet
991 - BUG/MINOR: http-ana: Fix condition to set LAST termination flag
992 - BUG/MINOR: mux-h1: Don't report an H1C error on client timeout
993 - BUG/MEDIUM: spoe: Don't set the default traget for the SPOE agent frontend
994 - BUG/MINOR: quic: Wrong datagram dispatch because of qc_check_dcid()
995 - BUG/CRITICAL: http: properly reject empty http header field names
996
Willy Tarreaue74d77b2023-02-04 10:51:05 +01009972023/02/04 : 2.8-dev3
998 - BUG/MINOR: sink: make sure to always properly unmap a file-backed ring
999 - DEV: haring: add a new option "-r" to automatically repair broken files
1000 - BUG/MINOR: ssl: Fix leaks in 'update ssl ocsp-response' CLI command
1001 - MINOR: ssl: Remove debug fprintf in 'update ssl ocsp-response' cli command
1002 - MINOR: connection: add a BUG_ON() to detect destroying connection in idle list
1003 - MINOR: mux-quic/h3: send SETTINGS as soon as transport is ready
1004 - BUG/MINOR: h3: fix GOAWAY emission
1005 - BUG/MEDIUM: mux-quic: fix crash on H3 SETTINGS emission
1006 - BUG/MEDIUM: hpack: fix incorrect huffman decoding of some control chars
1007 - BUG/MINOR: log: release global log servers on exit
1008 - BUG/MINOR: ring: release the backing store name on exit
1009 - BUG/MINOR: sink: free the forwarding task on exit
1010 - CLEANUP: trace: remove the QUIC-specific ifdefs
1011 - MINOR: trace: add a TRACE_ENABLED() macro to determine if a trace is active
1012 - MINOR: trace: add a trace_no_cb() dummy callback for when to use no callback
1013 - MINOR: trace: add the long awaited TRACE_PRINTF()
1014 - MINOR: h2: add h2_phdr_to_ist() to make ISTs from pseudo headers
1015 - MEDIUM: mux-h2/trace: add tracing support for headers
1016 - CLEANUP: mux-h2/trace: shorten the name of the header enc/dec functions
1017 - DEV: hpack: fix `trash` build regression
1018 - MINOR: http_htx: add http_append_header() to append value to header
1019 - MINOR: http_htx: add http_prepend_header() to prepend value to header
1020 - MINOR: sample: add ARGC_OPT
1021 - MINOR: proxy: introduce http only options
1022 - MINOR: proxy/http_ext: introduce proxy forwarded option
1023 - REGTEST: add ifnone-forwardfor test
1024 - MINOR: proxy: move 'forwardfor' option to http_ext
1025 - MINOR: proxy: move 'originalto' option to http_ext
1026 - MINOR: http_ext: introduce http ext converters
1027 - MINOR: http_ext: add rfc7239_is_valid converter
1028 - MINOR: http_ext: add rfc7239_field converter
1029 - MINOR: http_ext: add rfc7239_n2nn converter
1030 - MINOR: http_ext: add rfc7239_n2np converter
1031 - REGTEST: add RFC7239 forwarded header tests
1032 - OPTIM: http_ext/7239: introduce c_mode to save some space
1033 - MINOR: http_ext/7239: warn the user when fetch is not available
1034 - MEDIUM: proxy/http_ext: implement dynamic http_ext
1035 - MINOR: cfgparse/http_ext: move post-parsing http_ext steps to http_ext
1036 - DOC: config: fix option spop-check proxy compatibility
1037 - BUG/MINOR: fcgi-app: prevent 'use-fcgi-app' in default section
1038 - DOC: config: 'http-send-name-header' option may be used in default section
1039 - BUG/MINOR: mux-h2: Fix possible null pointer deref on h2c in _h2_trace_header()
1040 - BUG/MINOR: http_ext/7239: ipv6 dumping relies on out of scope variables
1041 - BUG/MEDIUM: h3: do not crash if no buf space for trailers
1042 - OPTIM: h3: skip buf realign if no trailer to encode
1043 - MINOR: mux-quic/h3: define stream close callback
1044 - BUG/MEDIUM: h3: handle STOP_SENDING on control stream
1045 - BUG/MINOR: h3: reject RESET_STREAM received for control stream
1046 - MINOR: h3: add missing traces on closure
1047 - BUG/MEDIUM: ssl: wrong eviction from the session cache tree
1048 - BUG/MINOR: h3: fix crash due to h3 traces
1049 - BUG/MINOR: h3: fix crash due to h3 traces
1050 - BUG/MEDIUM: thread: consider secondary threads as idle+harmless during boot
1051 - BUG/MINOR: stats: use proper buffer size for http dump
1052 - BUILD: makefile: fix PCRE overriding specific lib path
1053 - MINOR: quic: remove fin from quic_stream frame type
1054 - MINOR: quic: ensure offset is properly set for STREAM frames
1055 - MINOR: quic: define new functions for frame alloc
1056 - MINOR: quic: refactor frame deallocation
1057 - MEDIUM: quic: implement a retransmit limit per frame
1058 - MINOR: quic: add config for retransmit limit
1059 - OPTIM: htx: inline the most common memcpy(8)
1060 - CLEANUP: quic: no need for atomics on packet refcnt
1061 - MINOR: stats: add by HTTP version cumulated number of sessions and requests
1062 - BUG/MINOR: quic: Possible stream truncations under heavy loss
1063 - BUG/MINOR: quic: Too big PTO during handshakes
1064 - MINOR: quic: Add a trace about variable states in qc_prep_fast_retrans()
1065 - BUG/MINOR: quic: Do not ignore coalesced packets in qc_prep_fast_retrans()
1066 - MINOR: quic: When probing Handshake packet number space, also probe the Initial one
1067 - BUG/MAJOR: quic: Possible crash when processing 1-RTT during 0-RTT session
1068 - MEDIUM: quic: Remove qc_conn_finalize() from the ClientHello TLS callbacks
1069 - BUG/MINOR: quic: Unchecked source connection ID
1070 - MEDIUM: listener: move the analysers mask to the bind_conf
1071 - MINOR: listener: move maxseg and tcp_ut to bind_conf
1072 - MINOR: listener: move maxaccept from listener to bind_conf
1073 - MINOR: listener: move the backlog setting from listener to bind_conf
1074 - MINOR: listener: move the maxconn parameter to the bind_conf
1075 - MINOR: listener: move the ->accept callback to the bind_conf
1076 - MINOR: listener: remove the useless ->default_target field
1077 - MINOR: listener: move the nice field to the bind_conf
1078 - MINOR: listener: move the NOLINGER option to the bind_conf
1079 - MINOR: listener: move the NOQUICKACK option to the bind_conf
1080 - MINOR: listener: move the DEF_ACCEPT option to the bind_conf
1081 - MINOR: listener: move TCP_FO to bind_conf
1082 - MINOR: listener: move the ACC_PROXY and ACC_CIP options to bind_conf
1083 - MINOR: listener: move LI_O_UNLIMITED and LI_O_NOSTOP to bind_conf
1084 - MINOR: listener: get rid of LI_O_TCP_L4_RULES and LI_O_TCP_L5_RULES
1085 - CLEANUP: listener: remove the now unused options field
1086 - MINOR: listener: remove the now useless LI_F_QUIC_LISTENER flag
1087 - CLEANUP: config: remove test for impossible case regarding bind thread mask
1088 - MINOR: thread: add a simple thread_set API
1089 - MEDIUM: listener/config: make the "thread" parser rely on thread_sets
1090 - CLEANUP: config: stop using bind_tgroup and bind_thread
1091 - CLEANUP: listener/thread: remove now unused bind_conf's bind_tgroup/bind_thread
1092 - CLEANUP: listener/config: remove the special case for shards==1
1093 - MEDIUM: config: restrict shards, not bind_conf to one group each
1094 - BUG/MEDIUM: quic: do not split STREAM frames if no space
1095 - BUILD: thread: fix build warnings with older gcc compilers
1096
Willy Tarreau0f29b342023-01-22 14:20:57 +010010972023/01/22 : 2.8-dev2
1098 - CLEANUP: htx: fix a typo in an error message of http_str_to_htx
1099 - DOC: config: added optional rst-ttl argument to silent-drop in action lists
1100 - BUG/MINOR: ssl: Fix crash in 'update ssl ocsp-response' CLI command
1101 - BUG/MINOR: ssl: Crash during cleanup because of ocsp structure pointer UAF
1102 - MINOR: ssl: Create temp X509_STORE filled with cert chain when checking ocsp response
1103 - MINOR: ssl: Only set ocsp->issuer if issuer not in cert chain
1104 - MINOR: ssl: Release ssl_ocsp_task_ctx.cur_ocsp when destroying task
1105 - MINOR: ssl: Detect more OCSP update inconsistencies
1106 - BUG/MINOR: ssl: Fix OCSP_CERTID leak when same certificate is used multiple times
1107 - MINOR: ssl: Limit ocsp_uri buffer size to minimum
1108 - MINOR: ssl: Remove mention of ckch_store in error message of cli command
1109 - MINOR: channel: Don't test CF_READ_NULL while CF_SHUTR is enough
1110 - REORG: channel: Rename CF_READ_NULL to CF_READ_EVENT
1111 - REORG: channel: Rename CF_WRITE_NULL to CF_WRITE_EVENT
1112 - MEDIUM: channel: Use CF_READ_EVENT instead of CF_READ_PARTIAL
1113 - MEDIUM: channel: Use CF_WRITE_EVENT instead of CF_WRITE_PARTIAL
1114 - MINOR: channel: Remove CF_READ_ACTIVITY
1115 - MINOR: channel: Remove CF_WRITE_ACTIVITY
1116 - MINOR: channel: Remove CF_ANA_TIMEOUT and report CF_READ_EVENT instead
1117 - MEDIUM: channel: Remove CF_READ_ATTACHED and report CF_READ_EVENT instead
1118 - MINOR: channel: Stop to test CF_READ_ERROR flag if CF_SHUTR is enough
1119 - MINOR: channel/applets: Stop to test CF_WRITE_ERROR flag if CF_SHUTW is enough
1120 - DOC: management: add details on "Used" status
1121 - DOC: management: add details about @system-ca in "show ssl ca-file"
1122 - BUG/MINOR: mux-quic: fix transfer of empty HTTP response
1123 - MINOR: mux-quic: add traces for flow-control limit reach
1124 - MAJOR: mux-quic: rework stream sending priorization
1125 - MEDIUM: h3: send SETTINGS before STREAM frames
1126 - MINOR: mux-quic: use send-list for STOP_SENDING/RESET_STREAM emission
1127 - MINOR: mux-quic: use send-list for immediate sending retry
1128 - BUG/MINOR: h1-htx: Remove flags about protocol upgrade on non-101 responses
1129 - BUG/MINOR: hlua: Fix Channel.line and Channel.data behavior regarding the doc
1130 - BUG/MINOR: resolvers: Wait the resolution execution for a do_resolv action
1131 - BUG/MINOR: ssl: Remove unneeded pointer check in ocsp cli release function
1132 - BUG/MINOR: ssl: Missing ssl_conf pointer check when checking ocsp update inconsistencies
1133 - DEV: tcploop: add minimal support for unix sockets
1134 - BUG/MEDIUM: listener: duplicate inherited FDs if needed
1135 - BUG/MINOR: ssl: OCSP minimum update threshold not properly set
1136 - MINOR: ssl: Treat ocsp-update inconsistencies as fatal errors
1137 - MINOR: ssl: Do not wake ocsp update task if update tree empty
1138 - MINOR: ssl: Reinsert updated ocsp response later in tree in case of http error
1139 - REGTEST: ssl: Add test for 'update ssl ocsp-response' CLI command
1140 - OPTIM: global: move byte counts out of global and per-thread
1141 - BUG/MEDIUM: peers: make "show peers" more careful about partial initialization
1142 - BUG/MINOR: promex: Don't forget to consume the request on error
1143 - MINOR: http-ana: Add a function to set HTTP termination flags
1144 - MINOR: http-ana: Use http_set_term_flags() in most of HTTP analyzers
1145 - BUG/MINOR: http-ana: Report SF_FINST_R flag on error waiting the request body
1146 - MINOR: http-ana: Use http_set_term_flags() when waiting the request body
1147 - BUG/MINOR: http-fetch: Don't block HTTP sample fetch eval in HTTP_MSG_ERROR state
1148 - MAJOR: http-ana: Review error handling during HTTP payload forwarding
1149 - CLEANUP: http-ana: Remove HTTP_MSG_ERROR state
1150 - BUG/MEDIUM: mux-h2: Don't send CANCEL on shutw when response length is unkown
1151 - MINOR: htx: Add an HTX value for the extra field is payload length is unknown
1152 - BUG/MINOR: http-ana: make set-status also update txn->status
1153 - BUG/MINOR: listeners: fix suspend/resume of inherited FDs
1154 - DOC: config: fix wrong section number for "protocol prefixes"
1155 - DOC: config: fix aliases for protocol prefixes "udp4@" and "udp6@"
1156 - DOC: config: mention the missing "quic4@" and "quic6@" in protocol prefixes
1157 - MINOR: listener: also support "quic+" as an address prefix
1158 - CLEANUP: stconn: always use se_fl_set_error() to set the pending error
1159 - BUG/MEDIUM: stconn: also consider SE_FL_EOI to switch to SE_FL_ERROR
1160 - MINOR: quic: Useless test about datagram destination addresses
1161 - MINOR: quic: Disable the active connection migrations
1162 - MINOR: quic: Add "no-quic" global option
1163 - MINOR: sample: Add "quic_enabled" sample fetch
1164 - MINOR: quic: Replace v2 draft definitions by those of the final 2 version
1165 - BUG/MINOR: mux-fcgi: Correctly set pathinfo
1166 - DOC: config: fix "Address formats" chapter syntax
1167 - BUG/MEDIUM: jwt: Properly process ecdsa signatures (concatenated R and S params)
1168 - BUILD: ssl: add ECDSA_SIG_set0() for openssl < 1.1 or libressl < 2.7
1169 - Revert "BUILD: ssl: add ECDSA_SIG_set0() for openssl < 1.1 or libressl < 2.7"
1170 - BUG/MINOR: ssl: Fix compilation with OpenSSL 1.0.2 (missing ECDSA_SIG_set0)
1171 - BUG/MINOR: listener: close tiny race between resume_listener() and stopping
1172 - BUG/MINOR: h3: properly handle connection headers
1173 - MINOR: h3: extend function for QUIC varint encoding
1174 - MINOR: h3: implement TRAILERS encoding
1175 - BUG/MINOR: bwlim: Check scope for period expr for set-bandwitdh-limit actions
1176 - MEDIUM: bwlim: Support constants limit or period on set-bandwidth-limit actions
1177 - BUG/MINOR: bwlim: Fix parameters check for set-bandwidth-limit actions
1178 - MINOR: h3: implement TRAILERS decoding
1179 - BUG/MEDIUM: fd/threads: fix again incorrect thread selection in wakeup broadcast
1180 - BUG/MINOR: thread: always reload threads_enabled in loops
1181 - MINOR: threads: add a thread_harmless_end() version that doesn't wait
1182 - BUG/MEDIUM: debug/thread: make the debug handler not wait for !rdv_requests
1183 - BUG/MINOR: mux-h2: make sure to produce a log on invalid requests
1184 - BUG/MINOR: mux-h2: add missing traces on failed headers decoding
1185 - BUILD: hpack: include global.h for the trash that is needed in debug mode
1186 - BUG/MINOR: jwt: Wrong return value checked
1187 - BUG/MINOR: quic: Do not request h3 clients to close its unidirection streams
1188 - MEDIUM: quic-sock: fix udp source address for send on listener socket
1189
Willy Tarreau40c88f92023-01-07 09:45:17 +010011902023/01/07 : 2.8-dev1
1191 - MEDIUM: 51d: add support for 51Degrees V4 with Hash algorithm
1192 - MINOR: debug: support pool filtering on "debug dev memstats"
1193 - MINOR: debug: add a balance of alloc - free at the end of the memstats dump
1194 - LICENSE: wurfl: clarify the dummy library license.
1195 - MINOR: event_hdl: add event handler base api
1196 - DOC/MINOR: api: add documentation for event_hdl feature
1197 - MEDIUM: ssl: rename the struct "cert_key_and_chain" to "ckch_data"
1198 - MINOR: quic: remove qc from quic_rx_packet
1199 - MINOR: quic: complete traces in qc_rx_pkt_handle()
1200 - MINOR: quic: extract datagram parsing code
1201 - MINOR: tools: add port for ipcmp as optional criteria
1202 - MINOR: quic: detect connection migration
1203 - MINOR: quic: ignore address migration during handshake
1204 - MINOR: quic: startup detect for quic-conn owned socket support
1205 - MINOR: quic: test IP_PKTINFO support for quic-conn owned socket
1206 - MINOR: quic: define config option for socket per conn
1207 - MINOR: quic: allocate a socket per quic-conn
1208 - MINOR: quic: use connection socket for emission
1209 - MEDIUM: quic: use quic-conn socket for reception
1210 - MEDIUM: quic: move receive out of FD handler to quic-conn io-cb
1211 - MINOR: mux-quic: rename duplicate function names
1212 - MEDIUM: quic: requeue datagrams received on wrong socket
1213 - MINOR: quic: reconnect quic-conn socket on address migration
1214 - MINOR: quic: activate socket per conn by default
1215 - BUG/MINOR: ssl: initialize SSL error before parsing
1216 - BUG/MINOR: ssl: initialize WolfSSL before parsing
1217 - BUG/MINOR: quic: fix fd leak on startup check quic-conn owned socket
1218 - BUG/MEDIIM: stconn: Flush output data before forwarding close to write side
1219 - MINOR: server: add srv->rid (revision id) value
1220 - MINOR: stats: add server revision id support
1221 - MINOR: server/event_hdl: add support for SERVER_ADD and SERVER_DEL events
1222 - MINOR: server/event_hdl: add support for SERVER_UP and SERVER_DOWN events
1223 - BUG/MEDIUM: checks: do not reschedule a possibly running task on state change
1224 - BUG/MINOR: checks: make sure fastinter is used even on forced transitions
1225 - CLEANUP: assorted typo fixes in the code and comments
1226 - MINOR: mworker: display an alert upon a wait-mode exit
1227 - BUG/MEDIUM: mworker: fix segv in early failure of mworker mode with peers
1228 - BUG/MEDIUM: mworker: create the mcli_reload socketpairs in case of upgrade
1229 - BUG/MINOR: checks: restore legacy on-error fastinter behavior
1230 - MINOR: check: use atomic for s->consecutive_errors
1231 - MINOR: stats: properly handle ST_F_CHECK_DURATION metric
1232 - MINOR: mworker: remove unused legacy code in mworker_cleanlisteners
1233 - MINOR: peers: unused code path in process_peer_sync
1234 - BUG/MINOR: init/threads: continue to limit default thread count to max per group
1235 - CLEANUP: init: remove useless assignment of nbthread
1236 - BUILD: atomic: atomic.h may need compiler.h on ARMv8.2-a
1237 - BUILD: makefile/da: also clean Os/ in Device Atlas dummy lib dir
1238 - BUG/MEDIUM: httpclient/lua: double LIST_DELETE on end of lua task
1239 - CLEANUP: pools: move the write before free to the uaf-only function
1240 - CLEANUP: pool: only include pool-os from pool.c not pool.h
1241 - REORG: pool: move all the OS specific code to pool-os.h
1242 - CLEANUP: pools: get rid of CONFIG_HAP_POOLS
1243 - DEBUG: pool: show a few examples in -dMhelp
1244 - MINOR: pools: make DEBUG_UAF a runtime setting
1245 - BUG/MINOR: promex: create haproxy_backend_agg_server_status
1246 - MINOR: promex: introduce haproxy_backend_agg_check_status
1247 - DOC: promex: Add missing backend metrics
1248 - BUG/MAJOR: fcgi: Fix uninitialized reserved bytes
1249 - REGTESTS: fix the race conditions in iff.vtc
1250 - CI: github: reintroduce openssl 1.1.1
1251 - BUG/MINOR: quic: properly handle alloc failure in qc_new_conn()
1252 - BUG/MINOR: quic: handle alloc failure on qc_new_conn() for owned socket
1253 - CLEANUP: mux-quic: remove unused attribute on qcs_is_close_remote()
1254 - BUG/MINOR: mux-quic: remove qcs from opening-list on free
1255 - BUG/MINOR: mux-quic: handle properly alloc error in qcs_new()
1256 - CI: github: split ssl lib selection based on git branch
1257 - REGTESTS: startup: check maxconn computation
1258 - BUG/MINOR: startup: don't use internal proxies to compute the maxconn
1259 - REGTESTS: startup: change the expected maxconn to 11000
1260 - CI: github: set ulimit -n to a greater value
1261 - REGTESTS: startup: activate automatic_maxconn.vtc
1262 - MINOR: sample: add param converter
1263 - CLEANUP: ssl: remove check on srv->proxy
1264 - BUG/MEDIUM: freq-ctr: Don't compute overshoot value for empty counters
1265 - BUG/MEDIUM: resolvers: Use tick_first() to update the resolvers task timeout
1266 - REGTESTS: startup: add alternatives values in automatic_maxconn.vtc
1267 - BUG/MEDIUM: h3: reject request with invalid header name
1268 - BUG/MEDIUM: h3: reject request with invalid pseudo header
1269 - MINOR: http: extract content-length parsing from H2
1270 - BUG/MEDIUM: h3: parse content-length and reject invalid messages
1271 - CI: github: remove redundant ASAN loop
1272 - CI: github: split matrix for development and stable branches
1273 - BUG/MEDIUM: mux-h1: Don't release H1 stream upgraded from TCP on error
1274 - BUG/MINOR: mux-h1: Fix test instead a BUG_ON() in h1_send_error()
1275 - MINOR: http-htx: add BUG_ON to prevent API error on http_cookie_register
1276 - BUG/MEDIUM: h3: fix cookie header parsing
1277 - BUG/MINOR: h3: fix memleak on HEADERS parsing failure
1278 - MINOR: h3: check return values of htx_add_* on headers parsing
1279 - MINOR: ssl: Remove unneeded buffer allocation in show ocsp-response
1280 - MINOR: ssl: Remove unnecessary alloc'ed trash chunk in show ocsp-response
1281 - BUG/MINOR: ssl: Fix memory leak of find_chain in ssl_sock_load_cert_chain
1282 - MINOR: stats: provide ctx for dumping functions
1283 - MINOR: stats: introduce stats field ctx
1284 - BUG/MINOR: stats: fix show stat json buffer limitation
1285 - MINOR: stats: make show info json future-proof
1286 - BUG/MINOR: quic: fix crash on PTO rearm if anti-amplification reset
1287 - BUILD: 51d: fix build issue with recent compilers
1288 - REGTESTS: startup: disable automatic_maxconn.vtc
1289 - BUILD: peers: peers-t.h depends on stick-table-t.h
1290 - BUG/MEDIUM: tests: use tmpdir to create UNIX socket
1291 - BUG/MINOR: mux-h1: Report EOS on parsing/internal error for not running stream
1292 - BUG/MINOR:: mux-h1: Never handle error at mux level for running connection
1293 - BUG/MEDIUM: stats: Rely on a local trash buffer to dump the stats
1294 - OPTIM: pool: split the read_mostly from read_write parts in pool_head
1295 - MINOR: pool: make the thread-local hot cache size configurable
1296 - MINOR: freq_ctr: add opportunistic versions of swrate_add()
1297 - MINOR: pool: only use opportunistic versions of the swrate_add() functions
1298 - REGTESTS: ssl: enable the ssl_reuse.vtc test for WolfSSL
1299 - BUG/MEDIUM: mux-quic: fix double delete from qcc.opening_list
1300 - BUG/MEDIUM: quic: properly take shards into account on bind lines
1301 - BUG/MINOR: quic: do not allocate more rxbufs than necessary
1302 - MINOR: ssl: Add a lock to the OCSP response tree
1303 - MINOR: httpclient: Make the CLI flags public for future use
1304 - MINOR: ssl: Add helper function that extracts an OCSP URI from a certificate
1305 - MINOR: ssl: Add OCSP request helper function
1306 - MINOR: ssl: Add helper function that checks the validity of an OCSP response
1307 - MINOR: ssl: Add "update ssl ocsp-response" cli command
1308 - MEDIUM: ssl: Add ocsp_certid in ckch structure and discard ocsp buffer early
1309 - MINOR: ssl: Add ocsp_update_tree and helper functions
1310 - MINOR: ssl: Add crt-list ocsp-update option
1311 - MINOR: ssl: Store 'ocsp-update' mode in the ckch_data and check for inconsistencies
1312 - MEDIUM: ssl: Insert ocsp responses in update tree when needed
1313 - MEDIUM: ssl: Add ocsp update task main function
1314 - MEDIUM: ssl: Start update task if at least one ocsp-update option is set to on
1315 - DOC: ssl: Add documentation for ocsp-update option
1316 - REGTESTS: ssl: Add tests for ocsp auto update mechanism
1317 - MINOR: ssl: Move OCSP code to a dedicated source file
1318 - BUG/MINOR: ssl/ocsp: check chunk_strcpy() in ssl_ocsp_get_uri_from_cert()
1319 - CLEANUP: ssl/ocsp: add spaces around operators
1320 - BUG/MEDIUM: mux-h2: Refuse interim responses with end-stream flag set
1321 - BUG/MINOR: pool/stats: Use ullong to report total pool usage in bytes in stats
1322 - BUG/MINOR: ssl/ocsp: httpclient blocked when doing a GET
1323 - MINOR: httpclient: don't add body when istlen is empty
1324 - MEDIUM: httpclient: change the default log format to skip duplicate proxy data
1325 - BUG/MINOR: httpclient/log: free of invalid ptr with httpclient_log_format
1326 - MEDIUM: mux-quic: implement shutw
1327 - MINOR: mux-quic: do not count stream flow-control if already closed
1328 - MINOR: mux-quic: handle RESET_STREAM reception
1329 - MEDIUM: mux-quic: implement STOP_SENDING emission
1330 - MINOR: h3: use stream error when needed instead of connection
1331 - CI: github: enable github api authentication for OpenSSL tags read
1332 - BUG/MINOR: mux-quic: ignore remote unidirectional stream close
1333 - CI: github: use the GITHUB_TOKEN instead of a manually generated token
1334 - BUILD: makefile: build the features list dynamically
1335 - BUILD: makefile: move common options-oriented macros to include/make/options.mk
1336 - BUILD: makefile: sort the features list
1337 - BUILD: makefile: initialize all build options' variables at once
1338 - BUILD: makefile: add a function to collect all options' CFLAGS/LDFLAGS
1339 - BUILD: makefile: start to automatically collect CFLAGS/LDFLAGS
1340 - BUILD: makefile: ensure that all USE_* handlers appear before CFLAGS are used
1341 - BUILD: makefile: clean the wolfssl include and lib generation rules
1342 - BUILD: makefile: make sure to also ignore SSL_INC when using wolfssl
1343 - BUILD: makefile: reference libdl only once
1344 - BUILD: makefile: make sure LUA_INC and LUA_LIB are always initialized
1345 - BUILD: makefile: do not restrict Lua's prepend path to empty LUA_LIB_NAME
1346 - BUILD: makefile: never force -latomic, set USE_LIBATOMIC instead
1347 - BUILD: makefile: add an implicit USE_MATH variable for -lm
1348 - BUILD: makefile: properly report USE_PCRE/USE_PCRE2 in features
1349 - CLEANUP: makefile: properly indent ifeq/ifneq conditional blocks
1350 - BUILD: makefile: rework 51D to split v3/v4
1351 - BUILD: makefile: support LIBCRYPT_LDFLAGS
1352 - BUILD: makefile: support RT_LDFLAGS
1353 - BUILD: makefile: support THREAD_LDFLAGS
1354 - BUILD: makefile: support BACKTRACE_LDFLAGS
1355 - BUILD: makefile: support SYSTEMD_LDFLAGS
1356 - BUILD: makefile: support ZLIB_CFLAGS and ZLIB_LDFLAGS
1357 - BUILD: makefile: support ENGINE_CFLAGS
1358 - BUILD: makefile: support OPENSSL_CFLAGS and OPENSSL_LDFLAGS
1359 - BUILD: makefile: support WOLFSSL_CFLAGS and WOLFSSL_LDFLAGS
1360 - BUILD: makefile: support LUA_CFLAGS and LUA_LDFLAGS
1361 - BUILD: makefile: support DEVICEATLAS_CFLAGS and DEVICEATLAS_LDFLAGS
1362 - BUILD: makefile: support PCRE[2]_CFLAGS and PCRE[2]_LDFLAGS
1363 - BUILD: makefile: refactor support for 51DEGREES v3/v4
1364 - BUILD: makefile: support WURFL_CFLAGS and WURFL_LDFLAGS
1365 - BUILD: makefile: make all OpenSSL variants use the same settings
1366 - BUILD: makefile: remove the special case of the SSL option
1367 - BUILD: makefile: only consider settings from enabled options
1368 - BUILD: makefile: also list per-option settings in 'make opts'
1369 - BUG/MINOR: debug: don't mask the TH_FL_STUCK flag before dumping threads
1370 - MINOR: cfgparse-ssl: avoid a possible crash on OOM in ssl_bind_parse_npn()
1371 - BUG/MINOR: ssl: Missing goto in error path in ocsp update code
1372 - BUG/MINOR: stick-table: report the correct action name in error message
1373 - CI: Improve headline in matrix.py
1374 - CI: Add in-memory cache for the latest OpenSSL/LibreSSL
1375 - CI: Use proper `if` blocks instead of conditional expressions in matrix.py
1376 - CI: Unify the `GITHUB_TOKEN` name across matrix.py and vtest.yml
1377 - CI: Explicitly check environment variable against `None` in matrix.py
1378 - CI: Reformat `matrix.py` using `black`
1379 - MINOR: config: add environment variables for default log format
1380 - REGTESTS: Remove REQUIRE_VERSION=1.9 from all tests
1381 - REGTESTS: Remove REQUIRE_VERSION=2.0 from all tests
1382 - REGTESTS: Remove tests with REQUIRE_VERSION_BELOW=1.9
1383 - BUG/MINOR: http-fetch: Only fill txn status during prefetch if not already set
1384 - BUG/MAJOR: buf: Fix copy of wrapping output data when a buffer is realigned
1385 - DOC: config: fix alphabetical ordering of http-after-response rules
1386 - MINOR: http-rules: Add missing actions in http-after-response ruleset
1387 - DOC: config: remove duplicated "http-response sc-set-gpt0" directive
1388 - BUG/MINOR: proxy: free orgto_hdr_name in free_proxy()
1389 - REGTEST: fix the race conditions in json_query.vtc
1390 - REGTEST: fix the race conditions in add_item.vtc
1391 - REGTEST: fix the race conditions in digest.vtc
1392 - REGTEST: fix the race conditions in hmac.vtc
1393 - BUG/MINOR: fd: avoid bad tgid assertion in fd_delete() from deinit()
1394 - BUG/MINOR: http: Memory leak of http redirect rules' format string
1395 - MEDIUM: stick-table: set the track-sc limit at boottime via tune.stick-counters
1396 - MINOR: stick-table: implement the sc-add-gpc() action
1397
Willy Tarreaueaded982022-12-01 15:25:34 +010013982022/12/01 : 2.8-dev0
1399 - MINOR: version: mention that it's development again
1400
Willy Tarreau437fd282022-12-01 15:16:46 +010014012022/12/01 : 2.7.0
1402 - MINOR: ssl: forgotten newline in error messages on ca-file
1403 - BUG/MINOR: ssl: shut the ca-file errors emitted during httpclient init
1404 - DOC: config: provide some configuration hints for "http-reuse"
1405 - DOC: config: refer to section about quoting in the "add_item" converter
1406 - DOC: halog: explain how to use -ac and -ad in the help message
1407 - DOC: config: clarify the fact that SNI should not be used in HTTP scenarios
1408 - DOC: config: mention that a single monitor-uri rule is supported
1409 - DOC: config: explain how default matching method for ACL works
1410 - DOC: config: clarify the fact that "retries" is not just for connections
1411 - BUILD: halog: fix missing double-quote at end of help line
1412 - DOC: config: clarify the -m dir and -m dom pattern matching methods
1413 - MINOR: activity: report uptime in "show activity"
1414 - REORG: activity/cli: move the "show activity" handler to activity.c
1415 - DEV: poll: add support for epoll
1416 - DEV: tcploop: centralize the polling code into wait_for_fd()
1417 - DEV: tcploop: add support for POLLRDHUP when supported
1418 - DEV: tcploop: do not report an error on POLLERR
1419 - DEV: tcploop: add optional support for epoll
1420 - SCRIPTS: announce-release: add a link to the data plane API
1421 - CLEANUP: stick-table: fill alignment holes in the stktable struct
1422 - MINOR: stick-table: store a per-table hash seed and use it
1423 - MINOR: stick-table: show the shard number in each entry's "show table" output
1424 - CLEANUP: ncbuf: remove ncb_blk args by value
1425 - CLEANUP: ncbuf: inline small functions
1426 - CLEANUP: ncbuf: use standard BUG_ON with DEBUG_STRICT
1427 - BUG/MINOR: quic: Endless loop during retransmissions
1428 - MINOR: mux-h2: add the expire task and its expiration date in "show fd"
1429 - BUG/MINOR: peers: always initialize the stksess shard value
1430 - REGTESTS: fix peers-related regtests regarding "show table"
1431 - BUG/MEDIUM: mux-h1: Close client H1C on EOS when there is no output data
1432 - MINOR: stick-table: change the API of the function used to calculate the shard
1433 - CLEANUP: peers: factor out the key len calculation in received updates
1434 - BUG/MINOR: peers: always update the stksess shard number on incoming updates
1435 - CLEANUP: assorted typo fixes in the code and comments
1436 - MINOR: mux-h1: add the expire task and its expiration date in "show fd"
1437 - MINOR: debug: improve error handling on the memstats command parser
1438 - BUILD: quic: allow build with USE_QUIC and USE_OPENSSL_WOLFSSL
1439 - CLEANUP: anon: clarify the help message on "debug dev hash"
1440 - MINOR: debug: relax access restrictions on "debug dev hash" and "memstats"
1441 - SCRIPTS: run-regtests: add a version check
1442 - MINOR: version: mention that it's stable now
1443
Willy Tarreau0279df92022-11-24 17:13:05 +010014442022/11/24 : 2.7-dev10
1445 - MEDIUM: tcp-act: add parameter rst-ttl to silent-drop
1446 - BUG/MAJOR: quic: Crash upon retransmission of dgrams with several packets
1447 - MINOR: cli: print parsed command when not found
1448 - BUG/MAJOR: quic: Crash after discarding packet number spaces
1449 - CLEANUP: quic: replace "choosen" with "chosen" all over the code
1450 - MINOR: cli/pools: store "show pools" results into a temporary array
1451 - MINOR: cli/pools: add sorting capabilities to "show pools"
1452 - MINOR: cli/pools: add pool name filtering capability to "show pools"
1453 - DOC: configuration: fix quic prefix typo
1454 - MINOR: quic: report error if force-retry without cluster-secret
1455 - MINOR: global: generate random cluster.secret if not defined
1456 - BUG/MINOR: resolvers: do not run the timeout task when there's no resolution
1457 - BUG/MINOR: server/idle: at least use atomic stores when updating max_used_conns
1458 - MINOR: server/idle: make the next_takeover index per-tgroup
1459 - BUILD: listener: fix build warning on global_listener_rwlock without threads
1460 - BUG/MAJOR: sched: protect task during removal from wait queue
1461 - BUILD: sched: fix build with DEBUG_THREAD with the previous commit
1462 - DOC: quic: add note on performance issue with listener contention
1463 - BUG/MINOR: cfgparse-listen: fix ebpt_next_dup pointer dereference on proxy "from" inheritance
1464 - BUG/MINOR: log: fix parse_log_message rfc5424 size check
1465 - CLEANUP: arg: remove extra check in make_arg_list arg escaping
1466 - CLEANUP: tools: extra check in utoa_pad
1467 - MINOR: h1: Consider empty port as invalid in authority for CONNECT
1468 - MINOR: http: Considere empty ports as valid default ports
1469 - BUG/MINOR: http-htx: Normalized absolute URIs with an empty port
1470 - BUG/MINOR: h1: Replace authority validation to conform RFC3986
1471 - REG-TESTS: http: Add more tests about authority/host matching
1472 - BUG/MINOR: http-htx: Don't consider an URI as normalized after a set-uri action
1473 - BUG/MEDIUM: mux-h1: Don't release H1C on timeout if there is a SC attached
1474 - BUG/MEDIUM: mux-h1: Subscribe for reads on error on sending path
1475 - BUILD: http-htx: Silent build error about a possible NULL start-line
1476 - DOC: configuration.txt: add default_value for table_idle signature
1477 - BUILD: ssl-sock: Silent error about NULL deref in ssl_sock_bind_verifycbk()
1478 - BUG/MEDIUM: mux-h1: Remove H1C_F_WAIT_NEXT_REQ flag on a next request
1479 - BUG/MINOR: mux-h1: Fix handling of 408-Request-Time-Out
1480 - MINOR: mux-h1: Remove H1C_F_WAIT_NEXT_REQ in functions handling errors
1481 - MINOR: mux-h1: Avoid useless call to h1_send() if no error is sent
1482 - DOC: configuration.txt: fix typo in table_idle signature
1483 - BUILD: stick-tables: fix build breakage in xxhash on older compilers
1484 - BUILD: compiler: include compiler's definitions before ours
1485 - BUILD: quic: global.h is needed in cfgparse-quic
1486 - CLEANUP: tools: do not needlessly include xxhash nor cli from tools.h
1487 - BUILD: flags: really restrict the cases where flags are exposed
1488 - BUILD: makefile: minor reordering of objects by build time
1489 - BUILD: quic: silence two invalid build warnings at -O1 with gcc-6.5
1490 - BUILD: quic: use openssl-compat.h instead of openssl/ssl.h
1491 - MEDIUM: ssl: add minimal WolfSSL support with OpenSSL compatibility mode
1492 - MINOR: sample: make the rand() sample fetch function use the statistical_prng
1493 - MINOR: auth: silence null dereference warning in check_user()
1494 - CLEANUP: peers: fix format string for status messages (int signedness)
1495 - CLEANUP: qpack: fix format string in debugging code (int signedness)
1496 - CLEANUP: qpack: properly use the QPACK macros not HPACK ones in debug code
1497 - BUG/MEDIUM: quic: fix datagram dropping on queueing failed
1498
Willy Tarreaua0abec82022-11-18 17:48:49 +010014992022/11/18 : 2.7-dev9
1500 - BUILD: quic: QUIC mux build fix for 32-bit build
1501 - BUILD: scripts: disable tests build on QuicTLS build
1502 - BUG/MEDIUM: httpclient: segfault when the httpclient parser fails
1503 - BUILD: ssl_sock: fix null dereference for QUIC build
1504 - BUILD: quic: Fix build for m68k cross-compilation
1505 - BUG/MINOR: quic: fix buffer overflow on retry token generation
1506 - MINOR: quic: add version field on quic_rx_packet
1507 - MINOR: quic: extend pn_offset field from quic_rx_packet
1508 - MINOR: quic: define first packet flag
1509 - MINOR: quic: extract connection retrieval
1510 - MINOR: quic: split and rename qc_lstnr_pkt_rcv()
1511 - MINOR: quic: refactor packet drop on reception
1512 - MINOR: quic: extend Retry token check function
1513 - BUG/MINOR: log: Preserve message facility when the log target is a ring buffer
1514 - BUG/MINOR: ring: Properly parse connect timeout
1515 - BUG/MEDIUM: httpclient/lua: crash when the lua task timeout before the httpclient
1516 - BUG/MEDIUM: httpclient: check if the httpclient was released in the IO handler
1517 - REGTESTS: httpclient/lua: test the lua task timeout with the httpclient
1518 - CI: github: dump the backtrace of coredumps in the alpine container
1519 - BUILD: Makefile: add "USE_SHM_OPEN" on the linux-musl target
1520 - DOC: lua: add a note about compression w/ httpclient
1521 - CLEANUP: mworker/cli: rename the status function to loadstatus
1522 - MINOR: mworker/cli: does no try to dump the startup-logs w/o USE_SHM_OPEN
1523 - MINOR: list: fixing typo in MT_LIST_LOCK_ELT
1524 - DOC/MINOR: list: fixing MT_LIST_LOCK_ELT macro documentation
1525 - MINOR: list: adding MT_LIST_APPEND_LOCKED macro
1526 - BUG/MINOR: mux-quic: complete flow-control for uni streams
1527 - BUG/MEDIUM: compression: handle rewrite errors when updating response headers
1528 - MINOR: quic: do not crash on unhandled sendto error
1529 - MINOR: quic: display unknown error sendto counter on stat page
1530 - MINOR: peers: Support for peer shards
1531 - MINOR: peers: handle multiple resync requests using shards
1532 - BUG/MINOR: sink: Only use backend capability for the sink proxies
1533 - BUG/MINOR: sink: Set default connect/server timeout for implicit ring buffers
1534 - MINOR: ssl: add the SSL error string when failing to load a certificate
1535 - MINOR: ssl: add the SSL error string before the chain
1536 - MEDIUM: ssl: be stricter about chain error
1537 - BUG/MAJOR: stick-table: don't process store-response rules for applets
1538 - MINOR: quic: remove unnecessary quic_session_accept()
1539 - BUG/MINOR: quic: fix subscribe operation
1540 - BUG/MINOR: log: fixing bug in tcp syslog_io_handler Octet-Counting
1541 - MINOR: ssl: dump the SSL string error when SSL_CTX_use_PrivateKey() failed.
1542 - MINOR: quic: add counter for interrupted reception
1543 - BUG/MINOR: quic: fix race condition on datagram purging
1544 - CI: add monthly gcc cross compile jobs
1545 - CLEANUP: assorted typo fixes in the code and comments
1546 - CLEANUP: ssl: remove dead code in ssl_sock_load_pem_into_ckch()
1547 - BUG/MINOR: httpclient: fixed memory allocation for the SSL ca_file
1548 - BUG/MINOR: ssl: Memory leak of DH BIGNUM fields
1549 - BUG/MINOR: ssl: Memory leak of AUTHORITY_KEYID struct when loading issuer
1550 - BUG/MINOR: ssl: ocsp structure not freed properly in case of error
1551 - CI: switch to the "latest" LibreSSL
1552 - CI: enable QUIC for LibreSSL builds
1553 - BUG/MEDIUM: ssl: Verify error codes can exceed 63
1554 - MEDIUM: ssl: {ca,crt}-ignore-err can now use error constant name
1555 - MINOR: ssl: x509_v_err_str converter transforms an integer to a X509_V_ERR name
1556 - CLEANUP: cli: rename dynamic error printing state
1557 - MINOR: cli: define usermsgs print context
1558 - MINOR: server: clear prefix on stderr logs after add server
1559 - BUG/MINOR: ssl: bind_conf is uncorrectly accessed when using QUIC
1560 - BUILD: ssl_utils: fix build on gcc versions before 8
1561 - BUILD: debug: remove unnecessary quotes in HA_WEAK() calls
1562 - CI: emit the compiler's version in the build reports
1563 - IMPORT: xxhash: update xxHash to version 0.8.1
1564 - IMPORT: slz: declare len to fix debug build when optimal match is enabled
1565 - IMPORT: slz: mention the potential header in slz_finish()
1566 - IMPORT: slz: define and use a __fallthrough statement for switch/case
1567 - BUILD: compiler: add a macro to detect if another one is set and equals 1
1568 - BUILD: compiler: add a default definition for __has_attribute()
1569 - BUILD: compiler: define a __fallthrough statement for switch/case
1570 - BUILD: sample: use __fallthrough in smp_is_rw() and smp_dup()
1571 - BUILD: quic: use __fallthrough in quic_connect_server()
1572 - BUILD: ssl/crt-list: use __fallthrough in cli_io_handler_add_crtlist()
1573 - BUILD: ssl: use __fallthrough in cli_io_handler_commit_{cert,cafile_crlfile}()
1574 - BUILD: ssl: use __fallthrough in cli_io_handler_tlskeys_files()
1575 - BUILD: hlua: use __fallthrough in hlua_post_init_state()
1576 - BUILD: stream: use __fallthrough in stats_dump_full_strm_to_buffer()
1577 - BUILD: tcpcheck: use __fallthrough in check_proxy_tcpcheck()
1578 - BUILD: stats: use __fallthrough in stats_dump_proxy_to_buffer()
1579 - BUILD: peers: use __fallthrough in peer_io_handler()
1580 - BUILD: hash: use __fallthrough in hash_djb2()
1581 - BUILD: tools: use __fallthrough in url_decode()
1582 - BUILD: args: use __fallthrough in make_arg_list()
1583 - BUILD: acl: use __fallthrough in parse_acl_expr()
1584 - BUILD: spoe: use __fallthrough in spoe_handle_appctx()
1585 - BUILD: logs: use __fallthrough in build_log_header()
1586 - BUILD: check: use __fallthrough in __health_adjust()
1587 - BUILD: http_act: use __fallthrough in parse_http_del_header()
1588 - BUILD: h1_htx: use __fallthrough in h1_parse_chunk()
1589 - BUILD: vars: use __fallthrough in var_accounting_{diff,add}()
1590 - BUILD: map: use __fallthrough in cli_io_handler_*()
1591 - BUILD: compression: use __fallthrough in comp_http_payload()
1592 - BUILD: stconn: use __fallthrough in various shutw() functions
1593 - BUILD: prometheus: use __fallthrough in promex_dump_metrics() and IO handler()
1594 - CLEANUP: ssl: remove printf in bind_parse_ignore_err
1595 - BUG/MINOR: ssl: crt-ignore-err memory leak with 'all' parameter
1596 - BUG/MINOR: ssl: Fix potential overflow
1597 - CLEANUP: stick-table: remove the unused table->exp_next
1598 - OPTIM: stick-table: avoid atomic ops in stktable_requeue_exp() when possible
1599 - BUG/MEDIUM: stick-table: fix a race condition when updating the expiration task
1600 - MEDIUM: http-ana: remove set-cookie2 support
1601 - BUG/MEDIUM: wdt/clock: properly handle early task hangs
1602 - MINOR: deinit: add a "quick-exit" option to bypass the deinit step
1603 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's pfx
1604 - OPTIM: ebtree: make ebmb_insert_prefix() keep a copy the new node's key
1605 - MINOR: ssl: ssl_sock_load_cert_chain() display error strings
1606 - MINOR: ssl: reintroduce ERR_GET_LIB(ret) == ERR_LIB_PEM in ssl_sock_load_pem_into_ckch()
1607 - BUG/MINOR: http-htx: Fix error handling during parsing http replies
1608 - BUG/MINOR: resolvers: Don't wait periodic resolution on healthcheck failure
1609 - BUG/MINOR: resolvers: Set port before IP address when processing SRV records
1610 - BUG/MINOR: mux-fcgi: Be sure to send empty STDING record in case of zero-copy
1611 - BUG/MEDIUM: mux-fcgi: Avoid value length overflow when it doesn't fit at once
1612 - BUG/MINOR: ssl: SSL_load_error_strings might not be defined
1613 - MINOR: pool/debug: create a new pool_alloc_flag() macro
1614 - MINOR: dynbuf: switch allocation and release to macros to better track users
1615 - BUG/MINOR: mux-h1: Do not send a last null chunk on body-less answers
1616 - REG-TESTS: cache: Remove T-E header for 304-Not-Modified responses
1617 - DOC: config: fix alphabetical ordering of global section
1618 - MINOR: trace: split the CLI "trace" parser in CLI vs statement
1619 - MEDIUM: trace: create a new "trace" statement in the "global" section
1620 - BUG/MEDIUM: ring: fix creation of server in uninitialized ring
1621 - BUILD: quic: fix dubious 0-byte overflow on qc_release_lost_pkts
1622 - BUILD: makefile: mark poll and tcploop targets as phony
1623 - BUILD: makefile: properly pass CC to sub-projects
1624 - BUILD: makefile: move default verbosity settings to include/make/verbose.mk
1625 - BUILD: makefile: use $(cmd_MAKE) in quiet mode
1626 - BUILD: makefile: move the compiler option detection stuff to compiler.mk
1627 - DEV: poll: make the connect() step an action as well
1628 - DEV: poll: strip the "do_" prefix from reported function names
1629 - DEV: poll: indicate the FD's side in front of its value
1630 - BUG/MINOR: pool/cli: use ullong to report total pool usage in bytes
1631 - MINOR: mux-h1: Remove usless code inside shutr callback
1632 - CLEANUP: mux-h1; Rename H1S_F_ERROR flag into H1S_F_ERROR_MASK
1633 - REORG: mux-h1: Reorg the H1C structure
1634 - CLEANUP: mux-h1: Rename H1C_F_ST_ERROR and H1C_F_ST_SILENT_SHUT flags
1635 - MINOR: mux-h1: Add a dedicated enum to deal with H1 connection state
1636 - MEDIUM: mux-h1: Handle H1C states via its state field instead of H1C_F_ST_*
1637 - MINOR: mux-h1: Don't handle subscribe for reads in h1_process_demux()
1638 - CLEANUP: mux-h1: Rename H1C_F_ERR_PENDING into H1C_F_ABRT_PENDING
1639 - MINOR: mux-h1: Add flag on H1 stream to deal with internal errors
1640 - MEDIUM: mux-h1: Rely on the H1C to deal with shutdown for reads
1641 - CLEANUP: mux-h1: Reorder H1 connection flags to avoid holes
1642 - MEDIUM: mux-h1: Don't report a final error whe a message is aborted
1643 - MEDIUM: mux-pt: Don't always set a final error on SE on the sending path
1644 - MEDIUM: mux-h2: Introduce flags to deal with connection read/write errors
1645 - CLEANUP: mux-h2: Remove unused fields in h2c structures
1646 - MEDIUM: mux-fcgi: Introduce flags to deal with connection read/write errors
1647 - MINOR: sconn: Set SE_FL_ERROR only when there is no more data to read
1648 - MINOR: mux-h1: Rely on a H1S flag to know a WS key was found or not
1649 - DOC: lua-api: Remove warning about the lua filters
1650 - BUG/MEDIUM: listener: Fix race condition when updating the global mngmt task
1651 - CLEANUP: listener: Remove useless task_queue from manage_global_listener_queue
1652 - BUG/MINOR: mux-h1: Fix error handling when H1S allocation failed on client side
1653 - DOC: internal: commit notes about polling states and flags
1654 - DOC: internal: commit notes about polling states and flags on connect()
1655 - CLEANUP: mux-h1: Don't test h1c in h1_shutw_conn()
1656 - BUG/MINOR: http_ana/txn: don't re-initialize txn and req var lists
1657 - BUG/MEDIUM: raw-sock: Don't report connection error if something was received
1658 - BUG/MINOR: ssl: don't initialize the keylog callback when not required
1659 - BUILD: Makefile: enable USE_SHM_OPEN by default on freebsd
1660 - BUG/MEDIUM: peers: messages about unkown tables not correctly ignored
1661 - MINOR: cfgparse: Always check the section position
1662 - MEDIUM: thread: Restric nbthread/thread-group(s) to very first global sections
1663 - BUILD: peers: Remove unused variables
1664 - MINOR: ncbuf: complete doc for ncb_advance()
1665 - BUG/MEDIUM: quic: fix unsuccessful handshakes on ncb_advance error
1666 - BUG/MEDIUM: quic: fix memleak for out-of-order crypto data
1667 - MINOR: quic: complete traces/debug for handshake
1668
Willy Tarreauea8aebe2022-10-14 20:45:23 +020016692022/10/14 : 2.7-dev8
1670 - BUG/MINOR: checks: update pgsql regex on auth packet
1671 - DOC: config: Fix pgsql-check documentation to make user param mandatory
1672 - CLEANUP: mux-quic: remove usage of non-standard ull type
1673 - CLEANUP: quic: remove global var definition in quic_tls header
1674 - BUG/MINOR: quic: adjust quic_tls prototypes
1675 - CLEANUP: quic: fix headers
1676 - CLEANUP: quic: remove unused function prototype
1677 - CLEANUP: quic: remove duplicated varint code from xprt_quic.h
1678 - CLEANUP: quic: create a dedicated quic_conn module
1679 - BUG/MINOR: mux-quic: ignore STOP_SENDING for locally closed stream
1680 - BUG/MEDIUM: lua: Don't crash in hlua_lua2arg_check on failure
1681 - BUG/MEDIUM: lua: handle stick table implicit arguments right.
1682 - BUILD: h1: silence an initiialized warning with gcc-4.7 and -Os
1683 - MINOR: fd: add a new function to only raise RLIMIT_NOFILE
1684 - MINOR: init: do not try to shrink existing RLIMIT_NOFIlE
1685 - BUG/MINOR: http-fetch: Update method after a prefetch in smp_fetch_meth()
1686 - BUILD: http_fetch: silence an uninitiialized warning with gcc-4/5/6 at -Os
1687 - BUG/MINOR: hlua: hlua_channel_insert_data() behavior conflicts with documentation
1688 - MINOR: quic: limit usage of ssl_sock_ctx in favor of quic_conn
1689 - MINOR: mux-quic: check quic-conn return code on Tx
1690 - CLEANUP: quic: fix indentation
1691 - MEDIUM: quic: retrieve frontend destination address
1692 - CLEANUP: Reapply ist.cocci (2)
1693 - CLEANUP: Reapply strcmp.cocci
1694 - CLEANUP: quic/receiver: remove the now unused tx_qring list
1695 - BUG/MINOR: quic: set IP_PKTINFO socket option for QUIC receivers only
1696 - MINOR: hlua: some luaL_checktype() calls were not guarded with MAY_LJMP
1697 - DOC: configuration: missing 'if' in tcp-request content example
1698 - MINOR: hlua: removing ambiguous lua_pushvalue with 0 index
1699 - BUG/MAJOR: stick-tables: do not try to index a server name for applets
1700 - MINOR: plock: support disabling exponential back-off
1701 - MINOR: freq_ctr: use the thread's local time whenever possible
1702 - MEDIUM: stick-table: switch the table lock to rwlock
1703 - MINOR: stick-table: do not take an exclusive lock when downing ref_cnt
1704 - MINOR: stick-table: move the write lock inside stktable_touch_with_exp()
1705 - MEDIUM: stick-table: only take the lock when needed in stktable_touch_with_exp()
1706 - MEDIUM: stick-table: make stksess_kill_if_expired() avoid the exclusive lock
1707 - MEDIUM: stick-table: return inserted entry in __stktable_store()
1708 - MEDIUM: stick-table: free newly allocated stkess if it couldn't be inserted
1709 - MEDIUM: stick-table: switch to rdlock in stktable_lookup() and lookup_key()
1710 - MEDIUM: stick-table: make stktable_get_entry() look up under a read lock
1711 - MEDIUM: stick-table: do not take a lock to update t->current anymore.
1712 - MEDIUM: stick-table: make stktable_set_entry() look up under a read lock
1713 - MEDIUM: stick-table: requeue the expiration task out of the exclusive lock
1714 - MINOR: stick-table: split stktable_store() between key and requeue
1715 - MEDIUM: stick-table: always use atomic ops to requeue the table's task
1716 - MEDIUM: stick-table: requeue the wakeup task out of the write lock
1717 - BUG/MINOR: stick-table: fix build with DEBUG_THREAD
1718 - REORG: mux-fcgi: Extract flags and enums into mux_fcgi-t.h
1719 - MINOR: flags/mux-fcgi: Decode FCGI connection and stream flags
1720 - BUG/MEDIUM: mux-h1: Add connection error handling when reading/sending on a pipe
1721 - BUG/MEDIUM: mux-h1: Handle abort with an incomplete message during parsing
1722 - BUG/MINOR: server: make sure "show servers state" hides private bits
1723 - MINOR: checks: use the lighter PRNG for spread checks
1724 - MEDIUM: checks: spread the checks load over random threads
1725 - CI: SSL: use proper version generating when "latest" semantic is used
1726 - CI: SSL: temporarily stick to LibreSSL=3.5.3
1727 - MINOR: quic: New quic_cstream object implementation
1728 - MINOR: quic: Extract CRYPTO frame parsing from qc_parse_pkt_frms()
1729 - MINOR: quic: Use a non-contiguous buffer for RX CRYPTO data
1730 - BUG/MINOR: quic: Stalled 0RTT connections with big ClientHello TLS message
1731 - MINOR: quic: Split the secrets key allocation in two parts
1732 - CLEANUP: quic: remove unused rxbufs member in receiver
1733 - CLEANUP: quic: improve naming for rxbuf/datagrams handling
1734 - MINOR: quic: implement datagram cleanup for quic_receiver_buf
1735 - MINOR: ring: ring_cast_from_area() cast from an allocated area
1736 - MINOR: buffers: split b_force_xfer() into b_cpy() and b_force_xfer()
1737 - MINOR: logs: startup-logs can use a shm for logging the reload
1738 - MINOR: mworker/cli: reload command displays the startup-logs
1739 - MEDIUM: quic: respect the threads assigned to a bind line
1740 - DOC: management: update the "reload" command of the master CLI
1741 - BUILD: ssl_sock: bind_conf uninitialized in ssl_sock_bind_verifycbk()
1742 - BUG/MEDIUM: httpclient: Don't set EOM flag on an empty HTX message
1743 - MINOR: httpclient/lua: Don't set req_payload callback if body is empty
1744 - DOC/CLEANUP: lua-api: some minor corrections
1745 - DOC: lua-api: updating toolbox link
1746 - DOC/CLEANUP: lua-api: removing duplicate core.proxies attribute
1747 - DOC: management: add forgotten "show startup-logs"
1748 - DOC: management: "show startup-logs" for master CLI
1749 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in matrix.py
1750 - CI: Replace the deprecated `::set-output` command by writing to $GITHUB_OUTPUT in workflow definition
1751
Willy Tarreaudd4a2a62022-10-03 15:20:38 +020017522022/10/03 : 2.7-dev7
1753 - BUG/MEDIUM: mux-quic: fix nb_hreq decrement
1754 - CLEANUP: httpclient: deleted unused variables
1755 - MINOR: httpclient: enabled the use of SNI presets
1756 - OPTIM: hpack-huff: reduce the cache footprint of the huffman decoder
1757 - BUG/MINOR: mux-quic: do not keep detached qcs with empty Tx buffers
1758 - REORG: mux-quic: extract traces in a dedicated source file
1759 - REORG: mux-quic: export HTTP related function in a dedicated file
1760 - MINOR: mux-quic: refactor snd_buf
1761 - BUG/MEDIUM: mux-quic: properly trim HTX buffer on snd_buf reset
1762 - BUG/MINOR: mux-h1: Account consumed output data on synchronous connection error
1763 - BUG/MINOR: log: improper behavior when escaping log data
1764 - CLEANUP: tools: removing escape_chunk() function
1765 - MINOR: clock: split local and global date updates
1766 - MINOR: pollers: only update the local date during busy polling
1767 - MINOR: clock: do not update the global date too often
1768 - REGTESTS: 4be_1srv_smtpchk_httpchk_layer47errors: Return valid SMTP replies
1769 - MINOR: smtpchk: Update expect rule to fully match replies to EHLO commands
1770 - BUG/MINOR: smtpchk: SMTP Service check should gracefully close SMTP transaction
1771 - MINOR: list: documenting mt_list_for_each_entry_safe() macro
1772 - CLEANUP: list: Fix mt_list_for_each_entry_safe indentation
1773 - BUG/MINOR: hlua: Remove \n in Lua error message built with memprintf
1774 - MINOR: hlua: Allow argument on lua-lod(-per-thread) directives
1775 - BUG/MINOR: anon: memory illegal accesses in tools.c with hash_anon and hash_ipanon
1776 - MEDIUM: mworker/cli: keep the connection of the FD that ask for a reload
1777 - BUG/MINOR: hlua: fixing ambiguous sizeof in hlua_load_per_thread
1778 - MINOR: mworker/cli: replace close() by fd_delete()
1779 - MINOR: mworker: store and shows loading status
1780 - MINOR: mworker: mworker_cli_proxy_new_listener() returns a bind_conf
1781 - MINOR: mworker: stores the mcli_reload bind_conf
1782 - MINOR: mworker/cli: the mcli_reload bind_conf only send the reload status
1783 - DOC: management: describe the new reload command behavior
1784 - CLEANUP: list: fix again some style issues in the recent comments
1785 - BUG/MINOR: stream: Perform errors handling in right order in stream_new()
1786 - BUG/MEDIUM: stconn: Reset SE descriptor when we fail to create a stream
1787 - BUG/MEDIUM: resolvers: Remove aborted resolutions from query_ids tree
1788 - DOC: management: add timeout on the "reload" command
1789 - BUG/MINOR: ring: fix the size check in ring_make_from_area()
1790 - BUG/MINOR: config: don't count trailing spaces as empty arg
1791 - Revert "BUG/MINOR: config: don't count trailing spaces as empty arg"
1792 - BUG/MINOR: hlua: fixing hlua_http_msg_del_data behavior
1793 - BUG/MINOR: hlua: fixing hlua_http_msg_insert_data behavior
1794 - MINOR: cli: Add anonymization on a missed element for 'show sess all'
1795 - MINOR: cli: remove error message with 'set anon on|off'
1796 - MINOR: tools: modify hash_ipanon in order to use it in cli
1797 - MINOR: cli: use hash_ipanon to anonymized address
1798 - MINOR: cli: Add an anonymization on a missed element in 'show server state'
1799 - MINOR: config: correct errors about argument number in condition in cfgparse.c
1800 - MINOR: config: Add other keywords when dump the anonymized configuration file
1801 - MINOR: config: Add option line when the configuration file is dumped
1802 - MINOR: cli: correct commentary and replace 'set global-key' name
1803 - MINOR: tools: Impprove hash_ipanon to support dgram sockets and port offsets
1804 - MINOR: tools: Impprove hash_ipanon to not hash FD-based addresses
1805 - BUG/MINOR: hlua: _hlua_http_msg_delete incorrect behavior when offset is used
1806 - DOC: management: httpclient can resolve server names in URLs
1807 - BUG/MINOR: hlua: prevent crash when loading numerous arguments using lua-load(per-thread)
1808 - DOC/CLEANUP: lua-api: removing duplicate date functions doc
1809 - MINOR: hlua: ambiguous lua_pushvalue with 0 index
1810 - BUG/MINOR: config: don't count trailing spaces as empty arg (v2)
1811 - BUG/MEDIUM: config: count line arguments without dereferencing the output
1812 - BUG/MAJOR: conn-idle: fix hash indexing issues on idle conns
1813 - BUG/MINOR: config: insufficient syntax check of the global "maxconn" value
1814 - BUG/MINOR: backend: only enforce turn-around state when not redispatching
1815
Willy Tarreau4b10a5c2022-09-17 12:24:53 +020018162022/09/17 : 2.7-dev6
1817 - MINOR: Revert part of clarifying samples support per os commit
1818 - BUILD: makefile: enable crypt(3) for NetBSD
1819 - BUG/MINOR: quic: Retransmitted frames marked as acknowledged
1820 - BUG/MINOR: quic: Possible crash with "tls-ticket-keys" on QUIC bind lines
1821 - MINOR: http-check: Remove support for headers/body in "option httpchk" version
1822 - BUG/MINOR: h1: Support headers case adjustment for TCP proxies
1823 - BUG/MINOR: quic: Possible crash when verifying certificates
1824 - BUILD: quic: add some ifdef around the SSL_ERROR_* for libressl
1825 - BUILD: ssl: fix ssl_sock_switchtx_cbk when no client_hello_cb
1826 - BUILD: quic: temporarly ignore chacha20_poly1305 for libressl
1827 - BUILD: quic: enable early data only with >= openssl 1.1.1
1828 - BUILD: ssl: fix the ifdef mess in ssl_sock_initial_ctx
1829 - BUILD: quic: fix the #ifdef in ssl_quic_initial_ctx()
1830 - MINOR: quic: add QUIC support when no client_hello_cb
1831 - MINOR: quic: Add traces about sent or resent TX frames
1832 - MINOR: quic: No TRACE_LEAVE() in retrieve_qc_conn_from_cid()
1833 - BUG/MINOR: quic: Wrong connection ID to thread ID association
1834 - BUG/MINOR: task: always reset a new tasklet's call date
1835 - BUG/MINOR: task: make task_instant_wakeup() work on a task not a tasklet
1836 - MINOR: task: permanently enable latency measurement on tasklets
1837 - CLEANUP: task: rename ->call_date to ->wake_date
1838 - BUG/MINOR: sched: properly account for the CPU time of dying tasks
1839 - MINOR: sched: store the current profile entry in the thread context
1840 - BUG/MINOR: stream/sched: take into account CPU profiling for the last call
1841 - MINOR: tasks: do not keep cpu and latency times in struct task
1842 - MINOR: tools: add generic pointer hashing functions
1843 - CLEANUP: activity: make memprof use the generic ptr_hash() function
1844 - CLEANUP: activity: make taskprof use ptr_hash()
1845 - MINOR: debug: add struct ha_caller to describe a calling location
1846 - CLEANUP: debug: use struct ha_caller for memstat
1847 - DEBUG: task: define a series of wakeup types for tasks and tasklets
1848 - DEBUG: task: use struct ha_caller instead of arrays of file:line
1849 - DEBUG: applet: instrument appctx_wakeup() to log the caller's location
1850 - DEBUG: task: simplify the caller recording in DEBUG_TASK
1851 - CLEANUP: task: move tid and wake_date into the common part
1852 - CLEANUP: sched: remove duplicate code in run_tasks_from_list()
1853 - CLEANUP: activity: make the number of sched activity entries more configurable
1854 - DEBUG: resolvers: unstatify process_resolvers() to make it appear in profiling
1855 - DEBUG: quic: export the few task handlers that often appear in task dumps
1856 - MEDIUM: tasks/activity: combine the called function with the caller
1857 - MINOR: tasks/activity: improve the caller-callee activity hash
1858 - MINOR: activity/cli: support aggregating task profiling outputs
1859 - MINOR: activity/cli: support sorting task profiling by total CPU time
1860 - BUG/MINOR: signals/poller: set the poller timeout to 0 when there are signals
1861 - BUG/MINOR: quic: Speed up the handshake completion only one time
1862 - BUG/MINOR: quic: Trace fix about packet number space information.
1863 - BUG/MINOR: h3: Crash when h3 trace verbosity is "minimal"
1864 - MINOR: h3: Add the quic_conn object to h3 traces
1865 - MINOR: h3: Missing connection argument for a TRACE_LEAVE() argument
1866 - MINOR: h3: Send the h3 settings with others streams (requests)
1867 - MINOR: dev/udp: Apply the corruption to both directions
1868 - BUILD: udp-perturb: Add a make target for udp-perturb tool
1869 - BUG/MINOR: signals/poller: ensure wakeup from signals
1870 - CI: cirrus-ci: bump FreeBSD image to 13-1
1871 - DEV: flags: fix usage message to reflect available options
1872 - DEV: flags: add missing CO_FL_FDLESS connection flag
1873 - MINOR: flags: add a new file to host flag dumping macros
1874 - MINOR: flags: implement a macro used to dump enums inside masks
1875 - MINOR: flags/channel: use flag dumping for channel flags and analysers
1876 - MINOR: flags/connection: use flag dumping for connection flags
1877 - MINOR: flags/stconn: use flag dumping for stconn and sedesc flags
1878 - MINOR: flags/stream: use flag dumping for stream error type
1879 - MINOR: flags/stream: use flag dumping for stream flags
1880 - MINOR: flags/task: use flag dumping for task state
1881 - MINOR: flags/http_ana: use flag dumping for txn flags
1882 - DEV: flags: remove the now unused SHOW_FLAG() definition
1883 - DEV: flags: remove the now useless intermediary functions
1884 - MINOR: flags/htx: use flag dumping to show htx and start-line flags
1885 - MINOR: flags/http_ana: use flag dumping to show http msg states
1886 - BUG/MEDIUM: proxy: ensure pause_proxy() and resume_proxy() own PROXY_LOCK
1887 - MINOR: listener: small API change
1888 - MINOR: proxy/listener: support for additional PAUSED state
1889 - BUG/MINOR: stats: fixing stat shows disabled frontend status as 'OPEN'
1890 - BUILD: flags: fix build warning in some macros used by show_flags
1891 - BUILD: flags: fix the fallback macros for missing stdio
1892 - CLEANUP: pollers: remove dead code in the polling loop
1893 - BUG/MINOR: mux-h1: Increment open_streams counter when H1 stream is created
1894 - REGTESTS: healthcheckmail: Relax matching on the healthcheck log message
1895 - CLEANUP: listener: function comment typo in stop_listener()
1896 - BUG/MINOR: listener: null pointer dereference suspected by coverity
1897 - MINOR: flags/fd: decode FD flags states
1898 - REORG: mux-h2: extract flags and enums into mux_h2-t.h
1899 - MINOR: flags/mux-h2: decode H2C and H2S flags
1900 - REGTESTS: log: test the log-forward feature
1901 - BUG/MEDIUM: sink: bad init sequence on tcp sink from a ring.
1902 - REGTESTS: ssl/log: test the log-forward with SSL
1903 - MEDIUM: httpclient: httpclient_create_proxy() creates a proxy for httpclient
1904 - MEDIUM: httpclient: allow to use another proxy
1905 - DOC: fix TOC in starter guide for subsection 3.3.8. Statistics
1906 - MINOR: httpclient: export httpclient_create_proxy()
1907 - MEDIUM: quic: separate path for rx and tx with set_encryption_secrets
1908 - BUG/MEDIUM: mux-quic: fix crash on early app-ops release
1909 - REORG: mux-h1: extract flags and enums into mux_h1-t.h
1910 - MINOR: flags/mux-h1: decode H1C and H1S flags
1911 - CLEANUP: mux-quic: remove stconn usage in h3/hq
1912 - BUG/MINOR: mux-quic: do not remotely close stream too early
1913 - CLEANUP: exclude udp-perturb with .gitignore
1914 - BUG/MEDIUM: server: segv when adding server with hostname from CLI
1915 - CLEANUP: quic,ssl: fix tiny typos in C comments
1916 - BUG/MEDIUM: captures: free() an error capture out of the proxy lock
1917 - BUILD: fd: fix a build warning on the DWCAS
1918 - MINOR: anon: add new macros and functions to anonymize contents
1919 - MINOR: anon: store the anonymizing key in the global structure
1920 - MINOR: anon: store the anonymizing key in the CLI's appctx
1921 - MINOR: cli: anonymize commands 'show sess' and 'show sess all'
1922 - MINOR: cli: anonymize 'show servers state' and 'show servers conn'
1923 - MINOR: config: add command-line -dC to dump the configuration file
1924 - SCRIPTS: announce-release: update some URLs to https
1925
Willy Tarreau3bb2b5d2022-09-02 19:36:50 +020019262022/09/02 : 2.7-dev5
1927 - BUG/MINOR: mux-quic: Fix memleak on QUIC stream buffer for unacknowledged data
1928 - BUG/MEDIUM: cpu-map: fix thread 1's affinity affecting all threads
1929 - MINOR: cpu-map: remove obsolete diag warning about combined ranges
1930 - BUG/MAJOR: mworker: fix infinite loop on master with no proxies.
1931 - REGTESTS: launch http_reuse_always in mworker mode
1932 - BUG/MINOR: quix: Memleak for non in flight TX packets
1933 - BUG/MINOR: quic: Wrong list_for_each_entry() use when building packets from qc_do_build_pkt()
1934 - BUG/MINOR: quic: Safer QUIC frame builders
1935 - MINOR: quic: Replace MT_LISTs by LISTs for RX packets.
1936 - BUG/MEDIUM: applet: fix incorrect check for abnormal return condition from handler
1937 - BUG/MINOR: applet: make the call_rate only count the no-progress calls
1938 - MEDIUM: peers: limit the number of updates sent at once
1939 - BUILD: tcp_sample: fix build of get_tcp_info() on OpenBSD
1940 - BUG/MINOR: resolvers: return the correct value in resolvers_finalize_config()
1941 - BUG/MINOR: mworker: does not create the "default" resolvers in wait mode
1942 - BUG/MINOR: tcpcheck: Disable QUICKACK only if data should be sent after connect
1943 - REGTESTS: Fix prometheus script to perform HTTP health-checks
1944 - MINOR: resolvers: shut the warning when "default" resolvers is implicit
1945 - Revert "BUG/MINOR: quix: Memleak for non in flight TX packets"
1946 - BUG/MINOR: quic: Leak in qc_release_lost_pkts() for non in flight TX packets
1947 - BUG/MINOR: quic: Stalled connections (missing I/O handler wakeup)
1948 - CLEANUP: quic: No more use ->rx_list MT_LIST entry point (quic_rx_packet)
1949 - CLEANUP: quic: Remove a useless check in qc_lstnr_pkt_rcv()
1950 - MINOR: quic: Remove useless traces about references to TX packets
1951 - Revert "MINOR: quic: Remove useless traces about references to TX packets"
1952 - DOC: configuration: do-resolve doesn't work with a port in the string
1953 - MINOR: sample: add the host_only and port_only converters
1954 - BUG/MINOR: httpclient: fix resolution with port
1955 - DOC: configuration.txt: do-resolve must use host_only to remove its port.
1956 - BUG/MINOR: quic: Null packet dereferencing from qc_dup_pkt_frms() trace
1957 - BUG/MINOR: quic: Frames added to packets even if not built.
1958 - BUG/MEDIUM: spoe: Properly update streams waiting for a ACK in async mode
1959 - BUG/MEDIUM: peers: Add connect and server timeut to peers proxy
1960 - BUG/MEDIUM: peers: Don't use resync timer when local resync is in progress
1961 - BUG/MEDIUM: peers: Don't start resync on reload if local peer is not up-to-date
1962 - BUG/MINOR: hlua: Rely on CF_EOI to detect end of message in HTTP applets
1963 - BUG/MEDIUM: mux-h1: do not refrain from signaling errors after end of input
1964 - BUG/MINOR: epoll: do not actively poll for Rx after an error
1965 - MINOR: raw-sock: don't try to send if an error was already reported
1966 - BUG/MINOR: quic: Missing header protection AES cipher context initialisations (draft-v2)
1967 - MINOR: quic: Add a trace to distinguish the datagram from the packets inside
1968 - BUG/MINOR: ssl: fix deinit of the ca-file tree
1969 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free()
1970 - BUG/MINOR: tcpcheck: Disable QUICKACK for default tcp-check (with no rule)
1971 - BUG/MEDIUM: ssl: Fix a UAF when old ckch instances are released
1972 - BUG/MINOR: ssl: revert two wrong fixes with ckhi_link
1973 - BUG/MINOR: dev/udp: properly preset the rx address size
1974 - BUILD: debug: make sure debug macros are never empty
1975 - MINOR: quic: Move traces about RX/TX bytes from QUIC_EV_CONN_PRSAFRM event
1976 - BUG/MINOR: quic: TX frames memleak
1977 - BUG/MINOR: ssl: leak of ckch_inst_link in ckch_inst_free() v2
1978 - MINOR: sink/ring: rotate non-empty file-backed contents only
1979 - BUG/MINOR: regex: Properly handle PCRE2 lib compiled without JIT support
1980 - REGTESTS: http_request_buffer: Add a barrier to not mix up log messages
1981 - BUG/MEDIUM: mux-h1: always use RST to kill idle connections in pools
1982 - MINOR: backend: always satisfy the first req reuse rule with l7 retries
1983 - BUG/MINOR: quic: Do not ack when probing
1984 - MINOR: quic: Add TX frames addresses to traces to several trace events
1985 - MINOR: quic: Trace typo fix in qc_release_frm()
1986 - BUG/MINOR: quic: Frames leak during retransmissions
1987 - BUG/MINOR: h2: properly set the direction flag on HTX response
1988 - BUG/MEDIUM: httpclient: always detach the caller before self-killing
1989 - BUG/MINOR: httpclient: only ask for more room on failed writes
1990 - BUG/MINOR: httpclient: keep-alive was accidentely disabled
1991 - MEDIUM: httpclient: enable ALPN support on outgoing https connections
1992 - BUG/MINOR: mux-h2: fix the "show fd" dest buffer for the subscriber
1993 - BUG/MINOR: mux-h1: fix the "show fd" dest buffer for the subscriber
1994 - BUG/MINOR: mux-fcgi: fix the "show fd" dest buffer for the subscriber
1995 - DEBUG: stream: minor rearrangement of a few fields in struct stream.
1996 - MINOR: debug: report applet pointer and handler in crashes when known
1997 - MINOR: mux-h2: extract the stream dump function out of h2_show_fd()
1998 - MINOR: mux-h2: extract the connection dump function out of h2_show_fd()
1999 - MINOR: muxes: add a "show_sd" helper to complete "show sess" dumps
2000 - MINOR: mux-h2: provide a "show_sd" helper to output stream debugging info
2001 - MINOR: mux-h2: insert line breaks in "show sess all" output for legibility
2002 - MINOR: mux-quic: provide a "show_sd" helper to output stream debugging info
2003 - MINOR: mux-h1: split "show_fd" into connection and stream
2004 - MINOR: mux-h1: provide a "show_sd" helper to output stream debugging info
2005 - BUG/MINOR: http-act: initialize http fmt head earlier
2006
Willy Tarreauf5320192022-08-20 15:56:31 +020020072022/08/20 : 2.7-dev4
2008 - BUG/MEDIUM: quic: Wrong packet length check in qc_do_rm_hp()
2009 - MINOR: quic: Too much useless traces in qc_build_frms()
2010 - BUG/MEDIUM: quic: Missing AEAD TAG check after removing header protection
2011 - MINOR: quic: Replace pool_zalloc() by pool_malloc() for fake datagrams
2012 - MINOR: debug: make the mem_stats section aligned to void*
2013 - MINOR: debug: store and report the pool's name in struct mem_stats
2014 - MINOR: debug: also store the function name in struct mem_stats
2015 - MINOR: debug/memstats: automatically determine first column size
2016 - MINOR: debug/memstats: permit to pass the size to free()
2017 - CLEANUP: mux-quic: remove loop on sending frames
2018 - MINOR: quic: replace custom buf on Tx by default struct buffer
2019 - MINOR: quic: release Tx buffer on each send
2020 - MINOR: quic: refactor datagram commit in Tx buffer
2021 - MINOR: quic: skip sending if no frame to send in io-cb
2022 - BUG/MINOR: mux-quic: open stream on STOP_SENDING
2023 - BUG/MINOR: quic: fix crash on handshake io-cb for null next enc level
2024 - BUG/MEDIUM: quic: always remove the connection from the accept list on close
2025 - BUG/MEDIUM: poller: use fd_delete() to release the poller pipes
2026 - BUG/MEDIUM: task: relax one thread consistency check in task_unlink_wq()
2027 - MEDIUM: quic: xprt traces rework
2028 - BUILD: stconn: fix build warning at -O3 about possible null sc
2029 - MINOR: quic: Remove useless lock for RX packets
2030 - BUG/MINOR: quic: Possible infinite loop in quic_build_post_handshake_frames()
2031 - CLEANUP: quic: Remove trailing spaces
2032 - MINOR: mux-quic: adjust enter/leave traces
2033 - MINOR: mux-quic: define protocol error traces
2034 - CLEANUP: mux-quic: adjust traces level
2035 - MINOR: mux-quic: define new traces
2036 - BUG/MEDIUM: mux-quic: fix crash due to invalid trace arg
2037 - BUG/MEDIUM: quic: Possible use of uninitialized <odcid> variable in qc_lstnr_params_init()
2038 - BUG/MEDIUM: ring: fix too lax 'size' parser
2039 - BUG/MEDIUM: quic: Wrong use of <token_odcid> in qc_lsntr_pkt_rcv()
2040 - BUILD: ring: forward-declare struct appctx to avoid a build warning
2041 - MINOR: ring: support creating a ring from a linear area
2042 - MINOR: ring: add support for a backing-file
2043 - DEV: haring: add a simple utility to read file-backed rings
2044 - DEV: haring: support remapping LF in contents with CR VT
2045 - BUG/MINOR: quic: memleak on wrong datagram receipt
2046 - BUILD: sink: replace S_IRUSR, S_IWUSR with their octal value
2047 - MINOR: ring: archive a previous file-backed ring on startup
2048 - BUG/MINOR: mux-quic: fix crash with traces in qc_detach()
2049 - BUG/MINOR: quic: MIssing check when building TX packets
2050 - BUG/MINOR: quic: Wrong status returned by qc_pkt_decrypt()
2051 - MINOR: memprof: export the minimum definitions for memory profiling
2052 - MINOR: pool/memprof: report pool alloc/free in memory profiling
2053 - MINOR: pools/memprof: store and report the pool's name in each bin
2054 - MINOR: chunk: inline alloc_trash_chunk()
2055 - MINOR: stick-table: Add table_expire() and table_idle() new converters
2056 - CLEANUP: exclude haring with .gitignore
2057 - MINOR: quic: adjust quic_frame flag manipulation
2058 - MINOR: h3: report error on control stream close
2059 - MINOR: qpack: report error on enc/dec stream close
2060 - BUG/MEDIUM: mux-quic: reject uni stream ID exceeding flow control
2061 - MINOR: mux-quic: adjust traces on stream init
2062 - MINOR: mux-quic: add missing args on some traces
2063 - MINOR: quic: refactor application send
2064 - BUG/MINOR: quic: do not notify MUX on frame retransmit
2065 - BUG/MEDIUM: http-ana: fix crash or wrong header deletion by http-restrict-req-hdr-names
2066 - BUG/MINOR: quic: Missing initializations for ducplicated frames.
2067 - BUG/MEDIUM: quic: fix crash on MUX send notification
2068 - REORG: h2: extract cookies concat function in http_htx
2069 - REGTESTS: add test for HTTP/2 cookies concatenation
2070 - MEDIUM: h3: concatenate multiple cookie headers
2071 - MINOR: applet: add a function to reset the svcctx of an applet
2072 - BUG/MEDIUM: cli: always reset the service context between commands
2073 - BUG/MEDIUM: mux-h2: do not fiddle with ->dsi to indicate demux is idle
2074 - MINOR: mux-h2/traces: report transition to SETTINGS1 before not after
2075 - MINOR: mux-h2: make streams know if they need to send more data
2076 - BUG/MINOR: mux-h2: send a CANCEL instead of ES on truncated writes
2077 - BUG/MINOR: quic: Possible crashes when dereferencing ->pkt quic_frame struct member
2078 - MINOR: quic: Add frame addresses to QUIC_EV_CONN_PRSAFRM event traces
2079 - BUG/MINOR: quic: Wrong splitted duplicated frames handling
2080 - MINOR: quic: Add the QUIC connection to mux traces
2081 - MINOR: quic: Trace fix in qc_release_frm()
2082 - BUG/MAJOR: log-forward: Fix log-forward proxies not fully initialized
2083 - BUG/MAJOR: log-forward: Fix ssl layer not initialized on bind even if configured
2084 - MINOR: quic: Add reusable cipher contexts for header protection
2085 - BUG/MINOR: ssl/cli: error when the ca-file is empty
2086 - MINOR: ssl: handle ca-file appending in cafile_entry
2087 - MINOR: ssl/cli: implement "add ssl ca-file"
2088
Willy Tarreau87e95d32022-08-07 17:28:59 +020020892022/08/07 : 2.7-dev3
2090 - BUILD: makefile: Fix install(1) handling for OpenBSD/NetBSD/Solaris/AIX
2091 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds (try 2)
2092 - MINOR: resolvers: resolvers_destroy() deinit and free a resolver
2093 - BUG/MINOR: resolvers: shut off the warning for the default resolvers
2094 - BUG/MINOR: ssl: allow duplicate certificates in ca-file directories
2095 - BUG/MINOR: tools: fix statistical_prng_range()'s output range
2096 - BUG/MINOR: quic: do not send CONNECTION_CLOSE_APP in initial/handshake
2097 - BUILD: debug: Add braces to if statement calling only CHECK_IF()
2098 - BUG/MINOR: fd: Properly init the fd state in fd_insert()
2099 - BUG/MEDIUM: fd/threads: fix incorrect thread selection in wakeup broadcast
2100 - MINOR: init: load OpenSSL error strings
2101 - MINOR: ssl: enhance ca-file error emitting
2102 - BUG/MINOR: mworker/cli: relative pid prefix not validated anymore
2103 - BUG/MAJOR: mux_quic: fix invalid PROTOCOL_VIOLATION on POST data overlap
2104 - BUG/MEDIUM: mworker: proc_self incorrectly set crashes upon reload
2105 - BUILD: add detection for unsupported compiler models
2106 - BUG/MEDIUM: stconn: Only reset connect expiration when processing backend side
2107 - BUG/MINOR: backend: Fallback on RR algo if balance on source is impossible
2108 - BUG/MEDIUM: master: force the thread count earlier
2109 - BUG/MAJOR: poller: drop FD's tgid when masks don't match
2110 - DEBUG: fd: detect possibly invalid tgid in fd_insert()
2111 - BUG/MINOR: sockpair: wrong return value for fd_send_uxst()
2112 - MINOR: sockpair: move send_fd_uxst() error message in caller
2113 - Revert "BUG/MINOR: peers: set the proxy's name to the peers section name"
2114 - DEBUG: fd: split the fd check
2115 - MEDIUM: resolvers: continue startup if network is unavailable
2116 - BUG/MINOR: fd: always remove late updates when freeing fd_updt[]
2117 - MINOR: cli: emit a warning when _getsocks was used more than once
2118 - BUG/MINOR: mworker: PROC_O_LEAVING used but not updated
2119 - Revert "MINOR: cli: emit a warning when _getsocks was used more than once"
2120 - MINOR: cli: warning on _getsocks when socket were closed
2121 - BUG/MEDIUM: mux-quic: fix missing EOI flag to prevent streams leaks
2122 - MINOR: quic: Congestion control architecture refactoring
2123 - MEDIUM: quic: Cubic congestion control algorithm implementation
2124 - MINOR: quic: New "quic-cc-algo" bind keyword
2125 - BUG/MINOR: quic: loss time limit variable computed but not used
2126 - MINOR: quic: Stop looking for packet loss asap
2127 - BUG/MAJOR: quic: Useless resource intensive loop qc_ackrng_pkts()
2128 - MINOR: quic: Send packets as much as possible from qc_send_app_pkts()
2129 - BUG/MEDIUM: queue/threads: limit the number of entries dequeued at once
2130 - MAJOR: threads/plock: update the embedded library
2131 - MINOR: thread: provide an alternative to pthread's rwlock
2132 - DEBUG: tools: provide a tree dump function for ebmbtrees as well
2133 - MINOR: ebtree: add ebmb_lookup_shorter() to pursue lookups
2134 - BUG/MEDIUM: pattern: only visit equivalent nodes when skipping versions
2135 - BUG/MINOR: mux-quic: prevent crash if conn released during IO callback
2136 - CLEANUP: mux-quic: remove useless app_ops is_active callback
2137 - BUG/MINOR: mux-quic: do not free conn if attached streams
2138 - MINOR: mux-quic: save proxy instance into qcc
2139 - MINOR: mux-quic: use timeout server for backend conns
2140 - MEDIUM: mux-quic: adjust timeout refresh
2141 - MINOR: mux-quic: count in-progress requests
2142 - MEDIUM: mux-quic: implement http-keep-alive timeout
2143 - MINOR: peers: Add a warning about incompatible SSL config for the local peer
2144 - MINOR: peers: Use a dedicated reconnect timeout when stopping the local peer
2145 - BUG/MEDIUM: peers: limit reconnect attempts of the old process on reload
2146 - BUG/MINOR: peers: Use right channel flag to consider the peer as connected
2147 - BUG/MEDIUM: dns: Properly initialize new DNS session
2148 - BUG/MINOR: backend: Don't increment conn_retries counter too early
2149 - MINOR: server: Constify source server to copy its settings
2150 - REORG: server: Export srv_settings_cpy() function
2151 - BUG/MEDIUM: proxy: Perform a custom copy for default server settings
2152 - BUG/MINOR: quic: Missing in flight ack eliciting packet counter decrement
2153 - BUG/MEDIUM: quic: Floating point exception in cubic_root()
2154 - MINOR: h3: support HTTP request framing state
2155 - MINOR: mux-quic: refresh timeout on frame decoding
2156 - MINOR: mux-quic: refactor refresh timeout function
2157 - MEDIUM: mux-quic: implement http-request timeout
2158 - BUG/MINOR: quic: Avoid sending truncated datagrams
2159 - BUG/MINOR: ring/cli: fix a race condition between the writer and the reader
2160 - BUG/MEDIUM: sink: Set the sink ref for forwarders created during ring parsing
2161 - BUG/MINOR: sink: fix a race condition between the writer and the reader
2162 - BUG/MINOR: quic: do not reject datagrams matching minimum permitted size
2163 - MINOR: quic: Add two new stats counters for sendto() errors
2164 - BUG/MINOR: quic: Missing Initial packet dropping case
2165 - MINOR: quic: explicitely ignore sendto error
2166 - BUG/MINOR: quic: adjust errno handling on sendto
2167 - BUG/MEDIUM: quic: break out of the loop in quic_lstnr_dghdlr
2168 - MINOR: threads: report the number of thread groups in build options
2169 - MINOR: config: automatically preset MAX_THREADS based on MAX_TGROUPS
2170 - BUILD: SSL: allow to pass additional configure args to QUICTLS
2171 - CI: enable weekly "m32" builds on x86_64
2172 - CLEANUP: assorted typo fixes in the code and comments
2173 - BUG/MEDIUM: fix DH length when EC key is used
2174 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
2175 - REGTESTS: ssl: adopt tests to OpenSSL-3.0.N
2176 - REGTESTS: ssl: fix grep invocation to use extended regex in ssl_generate_certificate.vtc
2177 - BUILD: cfgparse: always defined _GNU_SOURCE for sched.h and crypt.h
2178
Willy Tarreau2200a9c2022-07-16 17:17:22 +020021792022/07/16 : 2.7-dev2
2180 - BUG/MINOR: qpack: fix build with QPACK_DEBUG
2181 - MINOR: h3: handle errors on HEADERS parsing/QPACK decoding
2182 - BUG/MINOR: qpack: abort on dynamic index field line decoding
2183 - MINOR: qpack: properly handle invalid dynamic table references
2184 - MINOR: task: Add tasklet_wakeup_after()
2185 - BUG/MINOR: quic: Dropped packets not counted (with RX buffers full)
2186 - MINOR: quic: Add new stats counter to diagnose RX buffer overrun
2187 - MINOR: quic: Duplicated QUIC_RX_BUFSZ definition
2188 - MINOR: quic: Improvements for the datagrams receipt
2189 - CLEANUP: h2: Typo fix in h2_unsubcribe() traces
2190 - MINOR: quic: Increase the QUIC connections RX buffer size (upto 64Kb)
2191 - CLEANUP: mux-quic: adjust comment on qcs_consume()
2192 - MINOR: ncbuf: implement ncb_is_fragmented()
2193 - BUG/MINOR: mux-quic: do not signal FIN if gap in buffer
2194 - MINOR: fd: add a new FD_DISOWN flag to prevent from closing a deleted FD
2195 - BUG/MEDIUM: ssl/fd: unexpected fd close using async engine
2196 - MINOR: tinfo: make tid temporarily still reflect global ID
2197 - CLEANUP: config: remove unused proc_mask()
2198 - MINOR: debug: remove mask support from "debug dev sched"
2199 - MEDIUM: task: add and preset a thread ID in the task struct
2200 - MEDIUM: task/debug: move the ->thread_mask integrity checks to ->tid
2201 - MAJOR: task: use t->tid instead of ffsl(t->thread_mask) to take the thread ID
2202 - MAJOR: task: replace t->thread_mask with 1<<t->tid when thread mask is needed
2203 - CLEANUP: task: remove thread_mask from the struct task
2204 - MEDIUM: applet: only keep appctx_new_*() and drop appctx_new()
2205 - MEDIUM: task: only keep task_new_*() and drop task_new()
2206 - MINOR: applet: always use task_new_on() on applet creation
2207 - MEDIUM: task: remove TASK_SHARED_WQ and only use t->tid
2208 - MINOR: task: replace task_set_affinity() with task_set_thread()
2209 - CLEANUP: task: remove the unused task_unlink_rq()
2210 - CLEANUP: task: remove the now unused TASK_GLOBAL flag
2211 - MINOR: task: make rqueue_ticks atomic
2212 - MEDIUM: task: move the shared runqueue to one per thread
2213 - MEDIUM: task: replace the global rq_lock with a per-rq one
2214 - MINOR: task: remove grq_total and use rq_total instead
2215 - MINOR: task: replace global_tasks_mask with a check for tree's emptiness
2216 - MEDIUM: task: use regular eb32 trees for the run queues
2217 - MEDIUM: queue: revert to regular inter-task wakeups
2218 - MINOR: thread: make wake_thread() take care of the sleeping threads mask
2219 - MINOR: thread: move the flags to the shared cache line
2220 - MINOR: thread: only use atomic ops to touch the flags
2221 - MINOR: poller: centralize poll return handling
2222 - MEDIUM: polling: make update_fd_polling() not care about sleeping threads
2223 - MINOR: poller: update_fd_polling: wake a random other thread
2224 - MEDIUM: thread: add a new per-thread flag TH_FL_NOTIFIED to remember wakeups
2225 - MEDIUM: tasks/fd: replace sleeping_thread_mask with a TH_FL_SLEEPING flag
2226 - MINOR: tinfo: add the tgid to the thread_info struct
2227 - MINOR: tinfo: replace the tgid with tgid_bit in tgroup_info
2228 - MINOR: tinfo: add the mask of enabled threads in each group
2229 - MINOR: debug: use ltid_bit in ha_thread_dump()
2230 - MINOR: wdt: use ltid_bit in wdt_handler()
2231 - MINOR: clock: use ltid_bit in clock_report_idle()
2232 - MINOR: thread: use ltid_bit in ha_tkillall()
2233 - MINOR: thread: add a new all_tgroups_mask variable to know about active tgroups
2234 - CLEANUP: thread: remove thread_sync_release() and thread_sync_mask
2235 - MEDIUM: tinfo: add a dynamic thread-group context
2236 - MEDIUM: thread: make stopping_threads per-group and add stopping_tgroups
2237 - MAJOR: threads: change thread_isolate to support inter-group synchronization
2238 - MINOR: thread: add is_thread_harmless() to know if a thread already is harmless
2239 - MINOR: debug: mark oneself harmless while waiting for threads to finish
2240 - MINOR: wdt: do not rely on threads_to_dump anymore
2241 - MEDIUM: debug: make the thread dumper not rely on a thread mask anymore
2242 - BUILD: debug: fix build issue on clang with previous commit
2243 - BUILD: debug: re-export thread_dump_state
2244 - BUG/MEDIUM: threads: fix incorrect thread group being used on soft-stop
2245 - BUG/MEDIUM: thread: check stopping thread against local bit and not global one
2246 - MINOR: proxy: use tg->threads_enabled in hard_stop() to detect stopped threads
2247 - BUILD: Makefile: Add Lua 5.4 autodetect
2248 - CI: re-enable gcc asan builds
2249 - MEDIUM: mworker: set the iocb of the socketpair without using fd_insert()
2250 - MINOR: fd: Add BUG_ON checks on fd_insert()
2251 - CLEANUP: mworker: rename mworker_pipe to mworker_sockpair
2252 - CLEANUP: mux-quic: do not export qc_get_ncbuf
2253 - REORG: mux-quic: reorganize flow-control fields
2254 - MINOR: mux-quic: implement accessor for sedesc
2255 - MEDIUM: mux-quic: refactor streams opening
2256 - MINOR: mux-quic: rename qcs flag FIN_RECV to SIZE_KNOWN
2257 - MINOR: mux-quic: emit FINAL_SIZE_ERROR on invalid STREAM size
2258 - BUG/MINOR: peers/config: always fill the bind_conf's argument
2259 - BUG/MEDIUM: peers/config: properly set the thread mask
2260 - CLEANUP: bwlim: Set pointers to NULL when memory is released
2261 - BUG/MINOR: http-check: Preserve headers if not redefined by an implicit rule
2262 - BUG/MINOR: http-act: Properly generate 103 responses when several rules are used
2263 - BUG/MEDIUM: thread: mask stopping_threads with threads_enabled when checking it
2264 - CLEANUP: thread: also remove a thread's bit from stopping_threads on stop
2265 - BUG/MINOR: peers: fix possible NULL dereferences at config parsing
2266 - BUG/MINOR: http-htx: Fix scheme based normalization for URIs wih userinfo
2267 - MINOR: http: Add function to get port part of a host
2268 - MINOR: http: Add function to detect default port
2269 - BUG/MEDIUM: h1: Improve authority validation for CONNCET request
2270 - MINOR: http-htx: Use new HTTP functions for the scheme based normalization
2271 - BUG/MEDIUM: http-fetch: Don't fetch the method if there is no stream
2272 - REGTEESTS: filters: Fix CONNECT request in random-forwarding script
2273 - MEDIUM: mworker/systemd: send STATUS over sd_notify
2274 - BUG/MINOR: mux-h1: Be sure to commit htx changes in the demux buffer
2275 - BUG/MEDIUM: http-ana: Don't wait to have an empty buf to switch in TUNNEL state
2276 - BUG/MEDIUM: mux-h1: Handle connection error after a synchronous send
2277 - MEDIUM: epoll: don't synchronously delete migrated FDs
2278 - BUILD: debug: silence warning on gcc-5
2279 - BUILD: http: silence an uninitialized warning affecting gcc-5
2280 - BUG/MEDIUM: mux-quic: fix server chunked encoding response
2281 - REORG: mux-quic: rename stream initialization function
2282 - MINOR: mux-quic: rename stream purge function
2283 - MINOR: mux-quic: add traces on frame parsing functions
2284 - MINOR: mux-quic: implement qcs_alert()
2285 - MINOR: mux-quic: filter send/receive-only streams on frame parsing
2286 - MINOR: mux-quic: do not ack STREAM frames on unrecoverable error
2287 - MINOR: mux-quic: support stream opening via MAX_STREAM_DATA
2288 - MINOR: mux-quic: define basic stream states
2289 - MINOR: mux-quic: use stream states to mark as detached
2290 - MEDIUM: mux-quic: implement RESET_STREAM emission
2291 - MEDIUM: mux-quic: implement STOP_SENDING handling
2292 - BUG/MEDIUM: debug: fix possible hang when multiple threads dump at once
2293 - BUG/MINOR: quic: fix closing state on NO_ERROR code sent
2294 - CLEANUP: quic: clean up include on quic_frame-t.h
2295 - MINOR: quic: define a generic QUIC error type
2296 - MINOR: mux-quic: support app graceful shutdown
2297 - MINOR: mux-quic/h3: prepare CONNECTION_CLOSE on release
2298 - MEDIUM: quic: send CONNECTION_CLOSE on released MUX
2299 - CLEANUP: mux-quic: move qc_release()
2300 - MINOR: mux-quic: send one last time before release
2301 - MINOR: h3: store control stream in h3c
2302 - MINOR: h3: implement graceful shutdown with GOAWAY
2303 - BUG/MINOR: threads: produce correct global mask for tgroup > 1
2304 - BUG/MEDIUM: cli/threads: make "show threads" more robust on applets
2305 - BUG/MINOR: thread: use the correct thread's group in ha_tkillall()
2306 - BUG/MINOR: debug: enter ha_panic() only once
2307 - BUG/MEDIUM: debug: fix parallel thread dumps again
2308 - MINOR: cli/streams: show a stream's tgid next to its thread ID
2309 - DEBUG: cli: add a new "debug dev deadlock" expert command
2310 - MINOR: cli/activity: add a thread number argument to "show activity"
2311 - CLEANUP: applet: remove the obsolete command context from the appctx
2312 - MEDIUM: config: remove deprecated "bind-process" directives from frontends
2313 - MEDIUM: config: remove the "process" keyword on "bind" lines
2314 - MINOR: listener/config: make "thread" always support up to LONGBITS
2315 - CLEANUP: fd: get rid of the __GET_{NEXT,PREV} macros
2316 - MEDIUM: debug/threads: make the lock debugging take tgroups into account
2317 - MEDIUM: proto: stop protocols under thread isolation during soft stop
2318 - MEDIUM: poller: program the update in fd_update_events() for a migrated FD
2319 - MEDIUM: poller: disable thread-groups for poll() and select()
2320 - MINOR: thread: remove MAX_THREADS limitation
2321 - MEDIUM: cpu-map: replace the process number with the thread group number
2322 - MINOR: mworker/threads: limit the mworker sockets to group 1
2323 - MINOR: cli/threads: always bind CLI to thread group 1
2324 - MINOR: fd/thread: get rid of thread_mask()
2325 - MEDIUM: task/thread: move the task shared wait queues per thread group
2326 - MINOR: task: move the niced_tasks counter to the thread group context
2327 - DOC: design: add some thoughts about how to handle the update_list
2328 - MEDIUM: conn: make conn_backend_get always scan the same group
2329 - MAJOR: fd: remove pending updates upon real close
2330 - MEDIUM: fd/poller: make the update-list per-group
2331 - MINOR: fd: delete unused updates on close()
2332 - MINOR: fd: make fd_insert() apply the thread mask itself
2333 - MEDIUM: fd: add the tgid to the fd and pass it to fd_insert()
2334 - MINOR: cli/fd: show fd's tgid and refcount in "show fd"
2335 - MINOR: fd: add functions to manipulate the FD's tgid
2336 - MINOR: fd: add fd_get_running() to atomically return the running mask
2337 - MAJOR: fd: grab the tgid before manipulating running
2338 - MEDIUM: fd/poller: turn polled_mask to group-local IDs
2339 - MEDIUM: fd/poller: turn update_mask to group-local IDs
2340 - MEDIUM: fd/poller: turn running_mask to group-local IDs
2341 - MINOR: fd: make fd_clr_running() return the previous value instead
2342 - MEDIUM: fd: make thread_mask now represent group-local IDs
2343 - MEDIUM: fd: make fd_insert() take local thread masks
2344 - MEDIUM: fd: make fd_insert/fd_delete atomically update fd.tgid
2345 - MEDIUM: fd: quit fd_update_events() when FD is closed
2346 - MEDIUM: thread: change thread_resolve_group_mask() to return group-local values
2347 - MEDIUM: listener: switch bind_thread from global to group-local
2348 - MINOR: fd: add fd_reregister_all() to deal with boot-time FDs
2349 - MEDIUM: fd: support stopping FDs during starting
2350 - MAJOR: pollers: rely on fd_reregister_all() at boot time
2351 - MAJOR: poller: only touch/inspect the update_mask under tgid protection
2352 - MEDIUM: fd: support broadcasting updates for foreign groups in updt_fd_polling
2353 - CLEANUP: threads: remove the now unused all_threads_mask and tid_bit
2354 - MINOR: config: change default MAX_TGROUPS to 16
2355 - BUG/MEDIUM: tools: avoid calling dlsym() in static builds
2356
Willy Tarreauf9de4e92022-06-24 22:09:05 +020023572022/06/24 : 2.7-dev1
2358 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a cert entry fails
2359 - BUG/MINOR: ssl_ckch: Free error msg if commit changes on a CA/CRL entry fails
2360 - BUG/MEDIUM: ssl_ckch: Don't delete a cert entry if it is being modified
2361 - BUG/MEDIUM: ssl_ckch: Don't delete CA/CRL entry if it is being modified
2362 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a cert entry
2363 - BUG/MINOR: ssl_ckch: Don't duplicate path when replacing a CA/CRL entry
2364 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl cert' to handle full buffer cases
2365 - BUG/MEDIUM: ssl_ckch: Rework 'commit ssl ca-file' to handle full buffer cases
2366 - BUG/MEDIUM: ssl/crt-list: Rework 'add ssl crt-list' to handle full buffer cases
2367 - BUG/MEDIUM: httpclient: Don't remove HTX header blocks before duplicating them
2368 - BUG/MEDIUM: httpclient: Rework CLI I/O handler to handle full buffer cases
2369 - MEDIUM: httpclient: Don't close CLI applet at the end of a response
2370 - MEDIUM: http-ana: Always report rewrite failures as PRXCOND in logs
2371 - CLEANUP: Re-apply xalloc_size.cocci (2)
2372 - REGTESTS: abortonclose: Add a barrier to not mix up log messages
2373 - REGTESTS: http_request_buffer: Increase client timeout to wait "slow" clients
2374 - CLEANUP: ssl_ckch: Use corresponding enum for commit_cacrlfile_ctx.cafile_type
2375 - MINOR: ssl_ckch: Simplify I/O handler to commit changes on CA/CRL entry
2376 - BUG/MINOR: ssl_ckch: Use right type for old entry in show_crlfile_ctx
2377 - BUG/MINOR: ssl_ckch: Dump CRL transaction only once if show command yield
2378 - BUG/MINOR: ssl_ckch: Dump CA transaction only once if show command yield
2379 - BUG/MINOR: ssl_ckch: Dump cert transaction only once if show command yield
2380 - BUG/MINOR: ssl_ckch: Init right field when parsing "commit ssl crl-file" cmd
2381 - CLEANUP: ssl_ckch: Remove unused field in commit_cacrlfile_ctx structure
2382 - MINOR: ssl_ckch: Simplify structure used to commit changes on CA/CRL entries
2383 - MINOR: ssl_ckch: Remove service context for "set ssl cert" command
2384 - MINOR: ssl_ckch: Remove service context for "set ssl ca-file" command
2385 - MINOR: ssl_ckch: Remove service context for "set ssl crl-file" command
2386 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cert I/O handler
2387 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_cafile I/O handler
2388 - BUG/MINOR: ssl_ckch: Fix possible uninitialized value in show_crlfile I/O handler
2389 - BUILD: ssl_ckch: Fix build error about a possible uninitialized value
2390 - BUG/MINOR: ssl_ckch: Fix another possible uninitialized value
2391 - REGTESTS: http_abortonclose: Extend supported versions
2392 - REGTESTS: restrict_req_hdr_names: Extend supported versions
2393 - MINOR: connection: support HTTP/3.0 for smp_*_http_major fetch
2394 - MINOR: h3: add h3c pointer into h3s instance
2395 - MINOR: mux-quic: simplify decode_qcs API
2396 - MINOR: mux-quic/h3: adjust demuxing function return values
2397 - BUG/MINOR: h3: fix return value on decode_qcs on error
2398 - BUILD: quic: fix anonymous union for gcc-4.4
2399 - BUILD: compiler: implement unreachable for older compilers too
2400 - DEV: tcploop: reorder options in the usage message
2401 - DEV: tcploop: make the current address the default address
2402 - DEV: tcploop: make it possible to change the target address of a connect()
2403 - DEV: tcploop: factor out the socket creation
2404 - DEV: tcploop: permit port 0 to ease handling of default options
2405 - DEV: tcploop: add a new "bind" command to bind to ip/port.
2406 - DEV: tcploop: add minimal UDP support
2407 - BUG/MINOR: trace: Test server existence for health-checks to get proxy
2408 - BUG/MINOR: checks: Properly handle email alerts in trace messages
2409 - BUG/MEDIUM: mailers: Set the object type for check attached to an email alert
2410 - REGTESTS: healthcheckmail: Update the test to be functionnal again
2411 - REGTESTS: healthcheckmail: Relax health-check failure condition
2412 - BUG/MINOR: h3: fix incorrect BUG_ON assert on SETTINGS parsing
2413 - MEDIUM: mux-h2: try to coalesce outgoing WINDOW_UPDATE frames
2414 - OPTIM: mux-h2: increase h2_settings_initial_window_size default to 64k
2415 - BUG/MINOR: h3: fix frame type definition
2416 - BUG/MEDIUM: h3: fix SETTINGS parsing
2417 - BUG/MINOR: cli/stats: add missing trailing LF after JSON outputs
2418 - BUG/MINOR: server: do not enable DNS resolution on disabled proxies
2419 - BUG/MINOR: cli/stats: add missing trailing LF after "show info json"
2420 - DOC: design: update the notes on thread groups
2421 - BUG/MEDIUM: mux-quic: fix flow control connection Tx level
2422 - MINOR: mux-quic: complete BUG_ON on TX flow-control enforcing
2423 - BUG/MINOR: mux-quic: fix memleak on frames rejected by transport
2424 - BUG/MINOR: tcp-rules: Make action call final on read error and delay expiration
2425 - CLEANUP: check: Remove useless tests on check's stream-connector
2426 - BUG/MEDIUM: stconn: Don't wakeup applet for send if it won't consume data
2427 - BUG/MEDIUM: cli: Notify cli applet won't consume data during request processing
2428 - BUG/MEDIUM: mux-quic: fix segfault on flow-control frame cleanup
2429 - MINOR: task: move profiling bit to per-thread
2430 - CLEANUP: quic: use task_new_on() for single-threaded tasks
2431 - MINOR: tinfo: remove the global thread ID bit (tid_bit)
2432 - CLEANUP: hlua: check for at least 2 threads on a task
2433 - MINOR: thread: get rid of MAX_THREADS_MASK
2434 - OPTIM: task: do not consult shared WQ when we're already full
2435 - DOC: design: update the task vs thread affinity requirements
2436 - MINOR: qpack: add comments and remove a useless trace
2437 - MINOR: qpack: reduce dependencies on other modules
2438 - BUG/MINOR: qpack: support header litteral name decoding
2439 - MINOR: qpack: add ABORT_NOW on unimplemented decoding
2440 - BUG/MINOR: h3/qpack: deal with too many headers
2441 - MINOR: qpack: improve decoding function
2442 - MINOR: qpack: implement standalone decoder tool
2443 - BUG/BUILD: h3: fix wrong label name
2444 - BUG/MINOR: quic: Stop hardcoding Retry packet Version field
2445 - MINOR: quic: Add several nonce and key definitions for Retry tag
2446 - BUG/MINOR: quic: Wrong PTO calculation
2447 - MINOR: quic: Parse long packet version from qc_parse_hd_form()
2448 - CLEANUP: quid: QUIC draft-28 no more supported
2449 - MEDIUM: quic: Add QUIC v2 draft support
2450 - MINOR: quic: Released QUIC TLS extension for QUIC v2 draft
2451 - MEDIUM: quic: Compatible version negotiation implementation (draft-08)
2452 - CLEANUP: quic: Remove any reference to boringssl
2453 - BUG/MINOR: task: fix thread assignment in tasklet_kill()
2454 - BUG/MEDIUM: stream: Properly handle destructive client connection upgrades
2455 - MINOR: stream: Rely on stconn flags to abort stream destructive upgrade
2456 - CLEANUP: stconn: Don't expect to have no sedesc on detach
2457 - BUG/MINOR: log: Properly test connection retries to fix dontlog-normal option
2458 - MINOR: hlua: don't dump empty entries in hlua_traceback()
2459 - MINOR: hlua: add a new hlua_show_current_location() function
2460 - MEDIUM: debug: add a tainted flag when a shared library is loaded
2461 - MEDIUM: debug: detect redefinition of symbols upon dlopen()
2462 - BUILD: quic: Wrong HKDF label constant variable initializations
2463 - BUG/MINOR: quic: Unexpected half open connection counter wrapping
2464 - BUG/MINOR: quic_stats: Duplicate "quic_streams_data_blocked_bidi" field name
2465 - BUG/MINOR: quic: purge conn Rx packet list on release
2466 - BUG/MINOR: quic: free rejected Rx packets
2467 - BUG/MINOR: qpack: abort on dynamic index field line decoding
2468 - BUG/MEDIUM: ssl/cli: crash when crt inserted into a crt-list
2469 - REGTESTS: ssl: add the same cert for client/server
2470 - BUG/MINOR: quic: Acknowledgement must be forced during handshake
2471 - MINOR: quic: Dump version_information transport parameter
2472 - BUG/MEDIUM: mworker: use default maxconn in wait mode
2473 - MINOR: intops: add a function to return a valid bit position from a mask
2474 - TESTS: add a unit test for one_among_mask()
2475 - BUILD: ssl_ckch: fix "maybe-uninitialized" build error on gcc-9.4 + ARM
2476 - BUG/MINOR: ssl: Do not look for key in extra files if already in pem
2477 - BUG/MINOR: quic: Missing acknowledgments for trailing packets
2478 - BUG/MINOR: http-ana: Set method to HTTP_METH_OTHER when an HTTP txn is created
2479 - BUG/MINOR: http-fetch: Use integer value when possible in "method" sample fetch
2480 - MINOR: freq_ctr: Add a function to get events excess over the current period
2481 - BUG/MINOR: stream: only free the req/res captures when set
2482 - CLEANUP: pool/tree-wide: remove suffix "_pool" from certain pool names
2483 - MEDIUM: debug: improve DEBUG_MEM_STATS to also report pool alloc/free
2484 - BUG/MINOR: quic: Wrong reuse of fulfilled dgram RX buffer
2485 - BUG/MAJOR: quic: Big RX dgrams leak when fulfilling a buffer
2486 - BUG/MAJOR: quic: Big RX dgrams leak with POST requests
2487 - BUILD: quic+h3: 32-bit compilation errors fixes
2488 - MEDIUM: bwlim: Add support of bandwith limitation at the stream level
2489
Willy Tarreau29698e32022-05-31 17:05:27 +020024902022/05/31 : 2.7-dev0
2491 - MINOR: version: it's development again
2492
Willy Tarreaua1efc042022-05-31 16:58:21 +020024932022/05/31 : 2.6.0
2494 - DOC: Fix formatting in configuration.txt to fix dconv
2495 - CLEANUP: tcpcheck: Remove useless test on the stream-connector in tcpcheck_main
2496 - CLEANUP: muxes: Consider stream's sd as defined in .show_fd callback functions
2497 - MINOR: quic: Ignore out of packet padding.
2498 - CLEANUP: quic: Useless QUIC_CONN_TX_BUF_SZ definition
2499 - CLEANUP: quic: No more used handshake output buffer
2500 - MINOR: quic: QUIC transport parameters split.
2501 - MINOR: quic: Transport parameters dump
2502 - DOC: quic: Update documentation for QUIC Retry
2503 - MINOR: quic: Tunable "max_idle_timeout" transport parameter
2504 - MINOR: quic: Tunable "initial_max_streams_bidi" transport parameter
2505 - MINOR: quic: Clarifications about transport parameters value
2506 - MINOIR: quic_stats: add QUIC connection errors counters
2507 - BUG/MINOR: quic: Largest RX packet numbers mixing
2508 - MINOR: quic_stats: Add transport new counters (lost, stateless reset, drop)
2509 - DOC: quic: Documentation update for QUIC
2510 - MINOR: quic: Connection TX buffer setting renaming.
2511 - MINOR: h3: Add a statistics module for h3
2512 - MINOR: quic: Send STOP_SENDING frames if mux is released
2513 - MINOR: quic: Do not drop packets with RESET_STREAM frames
2514 - BUG/MINOR: qpack: fix buffer API usage on prefix integer encoding
2515 - BUG/MINOR: qpack: support bigger prefix-integer encoding
2516 - BUG/MINOR: h3: do not report bug on unknown method
2517 - SCRIPTS: add make-releases-json to recreate a releases.json file in download dirs
2518 - SCRIPTS: make publish-release try to launch make-releases-json
2519 - MINOR: htx: add an unchecked version of htx_get_head_blk()
2520 - BUILD: htx: use the unchecked version of htx_get_head_blk() where needed
2521 - BUILD: quic: use inttypes.h instead of stdint.h
2522 - DOC: internal: remove totally outdated diagrams
2523 - DOC: remove the outdated ROADMAP file
2524 - DOC: add maintainers for QUIC and HTTP/3
2525 - MINOR: h3: define h3 trace module
2526 - MINOR: h3: add traces on frame recv
2527 - MINOR: h3: add traces on frame send
2528 - MINOR: h3: add traces on h3s init/end
2529 - EXAMPLES: remove completely outdated acl-content-sw.cfg
2530 - BUILD: makefile: reorder objects by build time
2531 - DOC: fix a few spelling mistakes in the docs
2532 - BUG/MEDIUM: peers/cli: fix "show peers" crash
2533 - CLEANUP: peers/cli: stop misusing the appctx local variable
2534 - CLEANUP: peers/cli: make peers_dump_peer() take an appctx instead of an stconn
2535 - BUG/MINOR: peers: set the proxy's name to the peers section name
2536 - MINOR: server: indicate when no address was expected for a server
2537 - BUG/MINOR: peers: detect and warn on init_addr/resolvers/check/agent-check
2538 - DOC: peers: indicate that some server settings are not usable
2539 - DOC: peers: clarify when entry expiration date is renewed.
2540 - DOC: peers: fix port number and addresses on new peers section format
2541 - DOC: gpc/gpt: add commments of gpc/gpt array definitions on stick tables.
2542 - DOC: install: update supported OpenSSL versions in the INSTALL doc
2543 - MINOR: ncbuf: adjust ncb_data with NCBUF_NULL
2544 - BUG/MINOR: h3: fix frame demuxing
2545 - BUG/MEDIUM: h3: fix H3_EXCESSIVE_LOAD when receiving H3 frame header only
2546 - BUG/MINOR: quic: Fix QUIC_EV_CONN_PRSAFRM event traces
2547 - CLEANUP: quic: remove useless check on local UNI stream reception
2548 - BUG/MINOR: qpack: do not consider empty enc/dec stream as error
2549 - DOC: intro: adjust the numbering of paragrams to keep the output ordered
2550 - MINOR: version: mention that it's LTS now.
2551
Willy Tarreau0edb9972022-05-27 19:49:31 +020025522022/05/27 : 2.6-dev12
2553 - CLEANUP: tools: Clean up non-QUIC error message handling in str2sa_range()
2554 - BUG/MEDIUM: tools: Fix `inet_ntop` usage in sa2str
2555 - CLEANUP: tools: Crash if inet_ntop fails due to ENOSPC in sa2str
2556 - BUG/MEDIUM: mux-quic: adjust buggy proxy closing support
2557 - Revert "MINOR: quic: activate QUIC traces at compilation"
2558 - Revert "MINOR: mux-quic: activate qmux traces on stdout via macro"
2559 - CLEANUP: init: address a coverity warning about possible multiply overflow
2560 - BUG/MEDIUM: http: Properly reject non-HTTP/1.x protocols
2561 - MEDIUM: h1: enlarge the scope of accepted version chars with accept-invalid-http-request
2562 - BUG/MEDIUM: resolvers: Don't defer resolutions release in deinit function
2563 - BUG/MEDIUM: peers: fix segfault using multiple bind on peers sections
2564 - BUG/MEDIUM: peers: prevent unitialized multiple listeners on peers section
2565 - BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping
2566 - MINOR: h3: mark ncbuf as const on h3_b_dup
2567 - MINOR: mux-quic: do not alloc quic_stream_desc for uni remote stream
2568 - MINOR: mux-quic: delay cs_endpoint allocation
2569 - MINOR: mux-quic: add traces in qc_recv()
2570 - MINOR: mux-quic: adjust return value of decode_qcs
2571 - CLEANUP: h3: rename struct h3 -> h3c
2572 - CLEANUP: h3: rename uni stream type constants
2573 - BUG/MINOR: h3: prevent overflow when parsing SETTINGS
2574 - MINOR: h3: refactor h3_control_send()
2575 - MINOR: quic: support CONNECTION_CLOSE_APP emission
2576 - MINOR: mux-quic: disable read on CONNECTION_CLOSE emission
2577 - MINOR: h3: reject too big frames
2578 - MINOR: mux-quic: emit STREAM_STATE_ERROR in qcc_recv
2579 - BUG/MINOR: mux-quic: refactor uni streams TX/send H3 SETTINGS
2580 - MINOR: h3/qpack: use qcs as type in decode callbacks
2581 - MINOR: h3: define stream type
2582 - MINOR: h3: refactor uni streams initialization
2583 - MINOR: h3: check if frame is valid for stream type
2584 - MINOR: h3: define non-h3 generic parsing function
2585 - MEDIUM: quic: refactor uni streams RX
2586 - CLEANUP: h3: remove h3 uni tasklet
2587 - MINOR: h3: abort read on unknown uni stream
2588 - MINOR: h3: refactor SETTINGS parsing/error reporting
2589 - Revert "BUG/MINOR: task: Don't defer tasks release when HAProxy is stopping"
2590 - DOC: configuration: add a warning for @system-ca on bind
2591 - CLEANUP: init: address another coverity warning about a possible multiply overflow
2592 - BUG/MINOR: ssl/lua: use correctly cert_ext in CertCache.set()
2593 - BUG/MEDIUM: sample: Fix adjusting size in word converter
2594 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+ (2)
2595 - CLEANUP: conn_stream: remove unneeded exclusion of RX_WAIT_EP from RXBLK_ANY
2596 - CLEANUP: conn_stream: rename the cs_endpoint's context to "conn"
2597 - MINOR: conn_stream: add new sets of functions to set/get endpoint flags
2598 - DEV: coccinelle: add cs_endp_flags.cocci
2599 - CLEANUP: conn_stream: apply cs_endp_flags.cocci tree-wide
2600 - DEV: coccinelle: add endp_flags.cocci
2601 - CLEANUP: conn_stream: apply endp_flags.cocci tree-wide
2602 - CLEANUP: conn_stream: rename the stream endpoint flags CS_EP_* to SE_FL_*
2603 - CLEANUP: conn_stream: rename the cs_endpoint's target to "se"
2604 - CLEANUP: conn_stream: rename cs_endpoint to sedesc (stream endpoint descriptor)
2605 - CLEANUP: applet: rename the sedesc pointer from "endp" to "sedesc"
2606 - CLEANUP: conn_stream: rename the conn_stream's endp to sedesc
2607 - CLEANUP: conn_stream: rename cs_app_* to sc_app_*
2608 - CLEANUP: conn_stream: tree-wide rename to stconn (stream connector)
2609 - CLEANUP: mux-h1: add and use h1s_sc() to retrieve the stream connector
2610 - CLEANUP: mux-h2: add and use h2s_sc() to retrieve the stream connector
2611 - CLEANUP: mux-fcgi: add and use fcgi_strm_sc() to retrieve the stream connector
2612 - CLEANUP: mux-pt: add and use pt_sc() to retrieve the stream connector
2613 - CLEANUP: stdesc: rename the stream connector ->cs field to ->sc
2614 - CLEANUP: stream: rename "csf" and "csb" to "scf" and "scb"
2615 - CLEANUP: stconn: tree-wide rename stream connector flags CS_FL_* to SC_FL_*
2616 - CLEANUP: stconn: tree-wide rename stconn states CS_ST/SB_* to SC_ST/SB_*
2617 - MINOR: check: export wake_srv_chk()
2618 - MINOR: conn_stream: test the various ops functions before calling them
2619 - MEDIUM: stconn: merge the app_ops and the data_cb fields
2620 - MINOR: applet: add new wrappers to put chk/blk/str/chr to channel from appctx
2621 - CLEANUP: applet: use applet_put*() everywhere possible
2622 - CLEANUP: stconn: rename cs_{i,o}{b,c} to sc_{i,o}{b,c}
2623 - CLEANUP: stconn: rename cs_{check,strm,strm_task} to sc_strm_*
2624 - CLEANUP: stconn: rename cs_conn() to sc_conn()
2625 - CLEANUP: stconn: rename cs_mux() to sc_mux_strm()
2626 - CLEANUP: stconn: rename cs_conn_mux() to sc_mux_ops()
2627 - CLEANUP: stconn: rename cs_appctx() to sc_appctx()
2628 - CLEANUP: stconn: rename __cs_endp_target() to __sc_endp()
2629 - CLEANUP: stconn: rename cs_get_data_name() to sc_get_data_name()
2630 - CLEANUP: stconn: rename cs_conn_*() to sc_conn_*()
2631 - CLEANUP: stconn: rename cs_conn_get_first() to conn_get_first_sc()
2632 - CLEANUP: stconn: rename cs_ep_set_error() to se_fl_set_error()
2633 - CLEANUP: stconn: make a few functions take a const argument
2634 - CLEANUP: stconn: use a single function to know if SC may send to SE
2635 - MINOR: stconn: consider CF_SHUTW for sc_is_send_allowed()
2636 - MINOR: stconn: remove calls to cs_done_get()
2637 - MEDIUM: stconn: always rely on CF_SHUTR in addition to cs_rx_blocked()
2638 - MEDIUM: stconn: remove SE_FL_RXBLK_SHUT
2639 - MINOR: stconn: rename SE_FL_RXBLK_CONN to SE_FL_APPLET_NEED_CONN
2640 - MEDIUM: stconn: take SE_FL_APPLET_NEED_CONN out of the RXBLK_ANY flags
2641 - CLEANUP: stconn: rename cs_rx_room_{blk,rdy} to sc_{need,have}_room()
2642 - CLEANUP: stconn: rename cs_rx_chan_{blk,rdy} to sc_{wont,will}_read()
2643 - CLEANUP: stconn: rename cs_rx_buff_{blk,rdy} to sc_{need,have}_buff()
2644 - MINOR: stconn: start to rename cs_rx_endp_{more,done}() to se_have_{no_,}more_data()
2645 - MINOR: stconn: add sc_is_recv_allowed() to check for ability to receive
2646 - CLEANUP: stconn: rename SE_FL_RX_WAIT_EP to SE_FL_HAVE_NO_DATA
2647 - MEDIUM: stconn: move the RXBLK flags to the stream connector
2648 - CLEANUP: stconn: rename SE_FL_WANT_GET to SE_FL_WILL_CONSUME
2649 - CLEANUP: stconn: remove cs_tx_blocked() and cs_tx_endp_ready()
2650 - CLEANUP: stconn: rename cs_{want,stop}_get() to se_{will,wont}_consume()
2651 - CLEANUP: stconn: rename cs_cant_get() to se_need_more_data()
2652 - CLEANUP: stconn: rename cs_{new,create,free,destroy}_* to sc_*
2653 - CLEANUP: stconn: rename remaining management functions from cs_* to sc_*
2654 - CLEANUP: stconn: rename cs{,_get}_{src,dst} to sc_*
2655 - CLEANUP: stconn: rename cs_{shut,chk}* to sc_*
2656 - CLEANUP: stconn: rename final state manipulation functions from cs_* to sc_*
2657 - CLEANUP: quic: drop the name "conn_stream" from the pool variable names
2658 - REORG: rename cs_utils.h to sc_strm.h
2659 - REORG: stconn: rename conn_stream.{c,h} to stconn.{c,h}
2660 - CLEANUP: muxes: rename "get_first_cs" to "get_first_sc"
2661 - DEV: flags: use "sc" for stream conns instead of "cs"
2662 - CLEANUP: check: rename all occurrences of stconn "cs" to "sc"
2663 - CLEANUP: connection: rename all occurrences of stconn "cs" to "sc"
2664 - CLEANUP: stconn: rename all occurrences of stconn "cs" to "sc"
2665 - CLEANUP: quic/h3: rename all occurrences of stconn "cs" to "sc"
2666 - CLEANUP: stream: rename all occurrences of stconn "cs" to "sc"
2667 - CLEANUP: promex: rename all occurrences of stconn "cs" to "sc"
2668 - CLEANUP: stats: rename all occurrences of stconn "cs" to "sc"
2669 - CLEANUP: cli: rename all occurrences of stconn "cs" to "sc"
2670 - CLEANUP: applet: rename all occurrences of stconn "cs" to "sc"
2671 - CLEANUP: cache: rename all occurrences of stconn "cs" to "sc"
2672 - CLEANUP: dns: rename all occurrences of stconn "cs" to "sc"
2673 - CLEANUP: spoe: rename all occurrences of stconn "cs" to "sc"
2674 - CLEANUP: hlua: rename all occurrences of stconn "cs" to "sc"
2675 - CLEANUP: log-forward: rename all occurrences of stconn "cs" to "sc"
2676 - CLEANUP: http-client: rename all occurrences of stconn "cs" to "sc"
2677 - CLEANUP: mux-fcgi: rename all occurrences of stconn "cs" to "sc"
2678 - CLEANUP: mux-h1: rename all occurrences of stconn "cs" to "sc"
2679 - CLEANUP: mux-h2: rename all occurrences of stconn "cs" to "sc"
2680 - CLEANUP: mux-pt: rename all occurrences of stconn "cs" to "sc"
2681 - CLEANUP: peers: rename all occurrences of stconn "cs" to "sc"
2682 - CLEANUP: sink: rename all occurrences of stconn "cs" to "sc"
2683 - CLEANUP: sslsock: remove only occurrence of local variable "cs"
2684 - CLEANUP: applet: rename appctx_cs() to appctx_sc()
2685 - CLEANUP: stream: rename stream_upgrade_from_cs() to stream_upgrade_from_sc()
2686 - CLEANUP: obj_type: rename OBJ_TYPE_CS to OBJ_TYPE_SC
2687 - CLEANUP: stconn: replace a few remaining occurrences of CS in comments or traces
2688 - DOC: internal: update the muxes doc to mention the stconn
2689 - CLEANUP: mux-quic: rename the "endp" field to "sd"
2690 - CLEANUP: mux-h1: rename the "endp" field to "sd"
2691 - CLEANUP: mux-h2: rename the "endp" field to "sd"
2692 - CLEANUP: mux-fcgi: rename the "endp" field to "sd"
2693 - CLEANUP: mux-pt: rename the "endp" field to "sd"
2694 - CLEANUP: stconn: rename a few "endp" arguments and variables to "sd"
2695 - MINOR: stconn: turn SE_FL_WILL_CONSUME to SE_FL_WONT_CONSUME
2696 - CLEANUP: stream: remove unneeded test on appctx during initialization
2697 - CLEANUP: stconn: remove the new unneeded SE_FL_APP_MASK
2698 - DEV: flags: fix "siet" shortcut name
2699 - DEV: flags: rename the "endp" shortcut to "sd" for "stream descriptor"
2700 - DEV: flags: reorder a few SC/SE flags
2701 - DOC: internal: add a description of the stream connectors and descriptors
2702
Willy Tarreau137c8fd2022-05-20 23:31:51 +020027032022/05/20 : 2.6-dev11
2704 - CI: determine actual LibreSSL version dynamically
2705 - BUG/MEDIUM: ncbuf: fix null buffer usage
2706 - MINOR: ncbuf: fix warnings for testing build
2707 - MEDIUM: http-ana: Add a proxy option to restrict chars in request header names
2708 - MEDIUM: ssl: Delay random generator initialization after config parsing
2709 - MINOR: ssl: Add 'ssl-propquery' global option
2710 - MINOR: ssl: Add 'ssl-provider' global option
2711 - CLEANUP: Add missing header to ssl_utils.c
2712 - CLEANUP: Add missing header to hlua_fcn.c
2713 - CLEANUP: Remove unused function hlua_get_top_error_string
2714 - BUILD: fix build warning on solaris based systems with __maybe_unused.
2715 - MINOR: tools: add get_exec_path implementation for solaris based systems.
2716 - BUG/MINOR: ssl: Fix crash when no private key is found in pem
2717 - CLEANUP: conn-stream: Remove cs_applet_shut declaration from header file
2718 - MINOR: applet: Prepare appctx to own the session on frontend side
2719 - MINOR: applet: Let the frontend appctx release the session
2720 - MINOR: applet: Change return value for .init callback function
2721 - MINOR: stream: Export stream_free()
2722 - MINOR: applet: Add appctx_init() helper fnuction
2723 - MINOR: applet: Add a function to finalize frontend appctx startup
2724 - MINOR: applet: Add function to release appctx on error during init stage
2725 - MEDIUM: dns: Refactor dns appctx creation
2726 - MEDIUM: spoe: Refactor SPOE appctx creation
2727 - MEDIUM: lua: Refactor cosocket appctx creation
2728 - MEDIUM: httpclient: Refactor http-client appctx creation
2729 - MINOR: sink: Add a ref to sink in the sink_forward_target structure
2730 - MEDIUM: sink: Refactor sink forwarder appctx creation
2731 - MINOR: peers: Add a ref to peers section in the peer structure
2732 - MEDIUM: peers: Refactor peer appctx creation
2733 - MINOR: applet: Add API to start applet on a thread subset
2734 - MEDIUM: applet: Add support for async appctx startup on a thread subset
2735 - MINOR: peers: Track number of applets run by thread
2736 - MEDIUM: peers: Balance applets across threads
2737 - MINOR: conn-stream/applet: Stop setting appctx as the endpoint context
2738 - CLEANUP: proxy: Remove dead code when parsing "http-restrict-req-hdr-names" option
2739 - REGTESTS: abortonclose: Fix some race conditions
2740 - MINOR: ssl: Add 'ssl-provider-path' global option
2741 - CLEANUP: http_ana: Make use of the return value of stream_generate_unique_id()
2742 - BUG/MINOR: spoe: Fix error handling in spoe_init_appctx()
2743 - CLEANUP: peers: Remove unreachable code in peer_session_create()
2744 - CLEANUP: httpclient: Remove useless test on ss_dst in httpclient_applet_init()
2745 - BUG/MEDIUM: quic: fix Rx buffering
2746 - OPTIM: quic: realign empty Rx buffer
2747 - BUG/MINOR: ncbuf: fix ncb_is_empty()
2748 - MINOR: ncbuf: refactor ncb_advance()
2749 - BUG/MINOR: mux-quic: update session's idle delay before stream creation
2750 - MINOR: h3: do not wait a complete frame for demuxing
2751 - MINOR: h3: flag demux as full on HTX full
2752 - MEDIUM: mux-quic: implement recv on io-cb
2753 - MINOR: mux-quic: remove qcc_decode_qcs() call in XPRT
2754 - MINOR: mux-quic: reorganize flow-control frames emission
2755 - MINOR: mux-quic: implement MAX_STREAM_DATA emission
2756 - MINOR: mux-quic: implement MAX_DATA emission
2757 - BUG/MINOR: mux-quic: support nul buffer with qc_free_ncbuf()
2758 - MINOR: mux-quic: free RX buf if empty
2759 - BUG/MEDIUM: config: Reset outline buffer size on realloc error in readcfgfile()
2760 - BUG/MINOR: check: Reinit the buffer wait list at the end of a check
2761 - MEDIUM: check: No longer shutdown the connection in .wake callback function
2762 - REORG: check: Rename and export I/O callback function
2763 - MEDIUM: check: Use the CS to handle subscriptions for read/write events
2764 - BUG/MINOR: quic: break for error on sendto
2765 - MINOR: quic: abort on unlisted errno on sendto()
2766 - MINOR: quic: detect EBADF on sendto()
2767 - BUG/MEDIUM: quic: fix initialization for local/remote TPs
2768 - CLEANUP: quic: adjust comment/coding style for TPs init
2769 - BUG/MINOR: cfgparse: abort earlier in case of allocation error
2770 - MINOR: quic: Dump initial derived secrets
2771 - MINOR: quic_tls: Add quic_tls_derive_retry_token_secret()
2772 - MINOR: quic_tls: Add quic_tls_decrypt2() implementation
2773 - MINOR: quic: Retry implementation
2774 - MINOR: cfgparse: Update for "cluster-secret" keyword for QUIC Retry
2775 - MINOR: quic: Move quic_lstnr_dgram_dispatch() out of xprt_quic.c
2776 - BUILD: stats: Missing headers inclusions from stats.h
2777 - MINOR: quic_stats: Add a new stats module for QUIC
2778 - MINOR: quic: Attach proxy QUIC stats counters to the QUIC connection
2779 - BUG/MINOR: quic: Fix potential memory leak during QUIC connection allocations
2780 - MINOR: quic: QUIC stats counters handling
2781 - MINOR: quic: Add tune.quic.retry-threshold keyword
2782 - MINOR: quic: Dynamic Retry implementation
2783 - MINOR: quic/mux-quic: define CONNECTION_CLOSE send API
2784 - MINOR: mux-quic: emit FLOW_CONTROL_ERROR
2785 - MINOR: mux-quic: emit STREAM_LIMIT_ERROR
2786 - MINOR: mux-quic: close connection on error if different data at offset
2787 - BUG/MINOR: peers: fix error reporting of "bind" lines
2788 - CLEANUP: config: improve address parser error report for unmatched protocols
2789 - CLEANUP: config: provide cleare hints about unsupported QUIC addresses
2790 - MINOR: protocol: replace ctrl_type with xprt_type and clarify it
2791 - MINOR: listener: provide a function to process all of a bind_conf's arguments
2792 - MINOR: config: use the new bind_parse_args_list() to parse a "bind" line
2793 - CLEANUP: listener: add a comment about what the BC_SSL_O_* flags are for
2794 - MINOR: listener: add a new "options" entry in bind_conf
2795 - CLEANUP: listener: replace all uses of bind_conf->is_ssl with BC_O_USE_SSL
2796 - CLEANUP: listener: replace bind_conf->generate_cers with BC_O_GENERATE_CERTS
2797 - CLEANUP: listener: replace bind_conf->quic_force_retry with BC_O_QUIC_FORCE_RETRY
2798 - CLEANUP: listener: store stream vs dgram at the bind_conf level
2799 - MINOR: listener: detect stream vs dgram conflict during parsing
2800 - MINOR: listener: set the QUIC xprt layer immediately after parsing the args
2801 - MINOR: listener/ssl: set the SSL xprt layer only once the whole config is known
2802 - MINOR: connection: add flag MX_FL_FRAMED to mark muxes relying on framed xprt
2803 - MINOR: config: detect and report mux and transport incompatibilities
2804 - MINOR: listener: automatically select a QUIC mux with a QUIC transport
2805 - MINOR: listener: automatically enable SSL if a QUIC transport is found
2806 - BUG/MINOR: quic: Fixe a typo in qc_idle_timer_task()
2807 - BUG/MINOR: quic: Missing <conn_opening> stats counter decrementation
2808 - BUILD/MINOR: cpuset fix build for FreeBSD 13.1
2809 - CI: determine actual OpenSSL version dynamically
2810
Willy Tarreau37033252022-05-14 16:05:50 +020028112022/05/14 : 2.6-dev10
2812 - MINOR: ssl: ignore dotfiles when loading a dir w/ ca-file
2813 - MEDIUM: ssl: ignore dotfiles when loading a dir w/ crt
2814 - BUG/MINOR: ssl: Fix typos in crl-file related CLI commands
2815 - MINOR: compiler: add a new macro to set an attribute on an enum when possible
2816 - BUILD: stats: conditionally mark obsolete stats states as deprecated
2817 - BUILD: ssl: work around bogus warning in gcc 12's -Wformat-truncation
2818 - BUILD: debug: work around gcc-12 excessive -Warray-bounds warnings
2819 - BUILD: listener: shut report of possible null-deref in listener_accept()
2820 - BUG/MEDIUM: ssl: fix the gcc-12 broken fix :-(
2821 - DOC: install: update gcc version requirements
2822 - BUILD: makefile: add -Wfatal-errors to the default flags
2823 - BUG/MINOR: server: Make SRV_STATE_LINE_MAXLEN value from 512 to 2kB (2000 bytes).
2824 - BUG/MAJOR: dns: multi-thread concurrency issue on UDP socket
2825 - BUG/MINOR: mux-h2: mark the stream as open before processing it not after
2826 - MINOR: mux-h2: report a trace event when failing to create a new stream
2827 - DOC: configuration: add the httpclient keywords to the global keywords index
2828 - MINOR: quic: Add a debug counter for sendto() errors
2829 - BUG/MINOR: quic: Dropped peer transport parameters
2830 - BUG/MINOR: quic: Wrong unit for ack delay for incoming ACK frames
2831 - MINOR: quic: Congestion controller event trace fix (loss)
2832 - MINOR: quic: Add correct ack delay values to ACK frames
2833 - MINOR: config: Add "cluster-secret" new global keyword
2834 - MINOR: quic-tls: Add quic_hkdf_extract_and_expand() for HKDF
2835 - MINOR: quic: new_quic_cid() code moving
2836 - MINOR: quic: Initialize stateless reset tokens with HKDF secrets
2837 - MINOR: qc_new_conn() rework for stateless reset
2838 - MINOR: quic: Stateless reset token copy to transport parameters
2839 - MINOR: quic: Send stateless reset tokens
2840 - MINOR: quic: Short packets always embed a trailing AEAD TAG
2841 - CLEANUP: quic: wrong use of eb*entry() macro
2842 - CLEANUP: quic: Useless use of pointer for quic_hkdf_extract()
2843 - CLEANUP: quic_tls: QUIC_TLS_IV_LEN defined two times
2844 - MINOR: ncbuf: define non-contiguous buffer
2845 - MINOR: ncbuf: complete API and define block interal abstraction
2846 - MINOR: ncbuf: optimize storage for the last gap
2847 - MINOR: ncbuf: implement insertion
2848 - MINOR: ncbuf: define various insertion modes
2849 - MINOR: ncbuf: implement advance
2850 - MINOR: ncbuf: write unit tests
2851 - BUG/MEDIUM: lua: fix argument handling in data removal functions
2852 - DOC/MINOR: fix typos in the lua-api document
2853 - BUG/MEDIUM: wdt: don't trigger the watchdog when p is unitialized
2854 - MINOR: mux-h1: Add global option accpet payload for any HTTP/1.0 requests
2855 - CLEANUP: mux-h1: Fix comments and error messages for global options
2856 - MINOR: conn_stream: make cs_set_error() work on the endpoint instead
2857 - CLEANUP: mux-h1: always take the endp from the h1s not the cs
2858 - CLEANUP: mux-h2: always take the endp from the h2s not the cs
2859 - CLEANUP: mux-pt: always take the endp from the context not the cs
2860 - CLEANUP: mux-fcgi: always take the endp from the fstrm not the cs
2861 - CLEANUP: mux-quic: always take the endp from the qcs not the cs
2862 - CLEANUP: applet: use the appctx's endp instead of cs->endp
2863 - MINOR: conn_stream: add a pointer back to the cs from the endpoint
2864 - MINOR: mux-h1: remove the now unneeded h1s->cs
2865 - MINOR: mux-h2: make sure any h2s always has an endpoint
2866 - MINOR: mux-h2: remove the now unneeded conn_stream from the h2s
2867 - MINOR: mux-fcgi: make sure any stream always has an endpoint
2868 - MINOR: mux-fcgi: remove the now unneeded conn_stream from the fcgi_strm
2869 - MINOR: mux-quic: remove the now unneeded conn_stream from the qcs
2870 - MINOR: mux-pt: remove the now unneeded conn_stream from the context
2871 - CLEANUP: muxes: make mux->attach/detach take a conn_stream endpoint
2872 - MINOR: applet: replace cs_applet_shut() with appctx_shut()
2873 - MINOR: applet: add appctx_strm() and appctx_cs() to access common fields
2874 - CLEANUP: applet: remove the unneeded appctx->owner
2875 - CLEANUP: conn_stream: merge cs_new_from_{mux,applet} into cs_new_from_endp()
2876 - MINOR: ext-check: indicate the transport and protocol of a server
2877 - BUG/MEDIUM: mux-quic: fix a thinko in the latest cs/endpoint cleanup
2878 - MINOR: tools: improve error message accuracy in str2sa_range
2879 - MINOR: config: make sure never to mix dgram and stream protocols on a bind line
2880 - BUG/MINOR: ncbuf: fix coverity warning on uninit sz_data
2881 - MINOR: xprt_quic: adjust flow-control according to bufsize
2882 - MEDIUM: mux-quic/h3/hq-interop: use ncbuf for bidir streams
2883 - MEDIUM: mux-quic/h3/qpack: use ncbuf for uni streams
2884 - CLEANUP: mux-quic: remove unused fields for Rx
2885 - CLEANUP: quic: remove unused quic_rx_strm_frm
2886
Willy Tarreaue9797962022-05-08 11:44:15 +020028872022/05/08 : 2.6-dev9
2888 - MINOR: mux-quic: support full request channel buffer
2889 - BUG/MINOR: h3: fix parsing of unknown frame type with null length
2890 - CLEANUP: backend: make alloc_{bind,dst}_address() idempotent
2891 - MEDIUM: stream: remove the confusing SF_ADDR_SET flag
2892 - MINOR: conn_stream: remove the now unused CS_FL_ADDR_*_SET flags
2893 - CLEANUP: protocol: make sure the connect_* functions always receive a dst
2894 - MINOR: connection: get rid of the CO_FL_ADDR_*_SET flags
2895 - MINOR: session: get rid of the now unused SESS_FL_ADDR_*_SET flags
2896 - CLEANUP: mux: Useless xprt_quic-t.h inclusion
2897 - MINOR: quic: Make the quic_conn be aware of the number of streams
2898 - BUG/MINOR: quic: Dropped retransmitted STREAM frames
2899 - BUG/MINOR: mux_quic: Dropped packet upon retransmission for closed streams
2900 - MEDIUM: httpclient: remove url2sa to use a more flexible parser
2901 - MEDIUM: httpclient: http-request rules for resolving
2902 - MEDIUM: httpclient: allow address and port change for resolving
2903 - CLEANUP: httpclient: remove the comment about resolving
2904 - MINOR: httpclient: handle unix and other socket types in dst
2905 - MINOR: httpclient: rename dash by dot in global option
2906 - MINOR: init: exit() after pre-check upon error
2907 - MINOR: httpclient: cleanup the error handling in init
2908 - MEDIUM: httpclient: hard-error when SSL is configured
2909 - MINOR: httpclient: allow to configure the ca-file
2910 - MINOR: httpclient: configure the resolvers section to use
2911 - MINOR: httpclient: allow ipv4 or ipv6 preference for resolving
2912 - DOC: configuration: httpclient global option
2913 - MINOR: conn-stream: Add mask from flags set by endpoint or app layer
2914 - BUG/MEDIUM: conn-stream: Only keep app layer flags of the endpoint on reset
2915 - BUG/MEDIUM: mux-fcgi: Be sure to never set EOM flag on an empty HTX message
2916 - BUG/MEDIUM: mux-h1: Be able to handle trailers when C-L header was specified
2917 - DOC: config: Update doc for PR/PH session states to warn about rewrite failures
2918 - MINOR: resolvers: cleanup alert/warning in parse-resolve-conf
2919 - MINOR: resolvers: move the resolv.conf parser in parse_resolv_conf()
2920 - MINOR: resolvers: resolvers_new() create a resolvers with default values
2921 - BUILD: debug: unify the definition of ha_backtrace_to_stderr()
2922 - BUG/MINOR: tcp/http: release the expr of set-{src,dst}[-port]
2923 - MEDIUM: resolvers: create a "default" resolvers section at startup
2924 - DOC: resolvers: default resolvers section
2925 - BUG/MINOR: startup: usage() when no -cc arguments
2926 - BUG/MEDIUM: resolvers: make "show resolvers" properly yield
2927 - BUG/MEDIUM: cli: make "show cli sockets" really yield
2928 - BUG/MINOR: proxy/cli: don't enumerate internal proxies on "show backend"
2929 - BUG/MINOR: map/cli: protect the backref list during "show map" errors
2930 - BUG/MINOR: map/cli: make sure patterns don't vanish under "show map"'s init
2931 - BUG/MINOR: ssl/cli: fix "show ssl ca-file/crl-file" not to mix cli+ssl contexts
2932 - BUG/MINOR: ssl/cli: fix "show ssl ca-file <name>" not to mix cli+ssl contexts
2933 - BUG/MINOR: ssl/cli: fix "show ssl crl-file" not to mix cli+ssl contexts
2934 - BUG/MINOR: ssl/cli: fix "show ssl cert" not to mix cli+ssl contexts
2935 - CLEANUP: ssl/cli: do not loop on unknown states in "add ssl crt-list" handler
2936 - MINOR: applet: reserve some generic storage in the applet's context
2937 - CLEANUP: applet: make appctx_new() initialize the whole appctx
2938 - CLEANUP: stream/cli: take the "show sess" context definition out of the appctx
2939 - CLEANUP: stream/cli: stop using appctx->st2 for the dump state
2940 - CLEANUP: stream/cli: remove the unneeded init state from "show sess"
2941 - CLEANUP: stream/cli: remove the unneeded STATE_FIN state from "show sess"
2942 - CLEANUP: stream/cli: remove the now unneeded dump state from "show sess"
2943 - CLEANUP: proxy/cli: take the "show errors" context definition out of the appctx
2944 - CLEANUP: stick-table/cli: take the "show table" context definition out of the appctx
2945 - CLEANUP: stick-table/cli: stop using appctx->st2 for the dump state
2946 - CLEANUP: stick-table/cli: remove the unneeded STATE_INIT for "show table"
2947 - CLEANUP: map/cli: take the "show map" context definition out of the appctx
2948 - CLEANUP: map/cli: stop using cli.i0/i1 to store the generation numbers
2949 - CLEANUP: map/cli: stop using appctx->st2 for the dump state
2950 - CLEANUP: map/cli: always detach the backref from the list after "show map"
2951 - CLEANUP: peers/cli: take the "show peers" context definition out of the appctx
2952 - CLEANUP: peers/cli: stop using appctx->st2 for the dump state
2953 - CLEANUP: peers/cli: remove unneeded state STATE_INIT
2954 - CLEANUP: cli: initialize the whole appctx->ctx, not just the stats part
2955 - CLEANUP: promex: make the applet use its own context
2956 - CLEANUP: promex: stop using appctx->st2
2957 - CLEANUP: stats/cli: take the "show stat" context definition out of the appctx
2958 - CLEANUP: stats/cli: stop using appctx->st2
2959 - CLEANUP: hlua/cli: take the hlua_cli context definition out of the appctx
2960 - CLEANUP: ssl/cli: use a local context for "show cafile"
2961 - CLEANUP: ssl/cli: use a local context for "show crlfile"
2962 - CLEANUP: ssl/cli: use a local context for "show ssl cert"
2963 - CLEANUP: ssl/cli: use a local context for "commit ssl cert"
2964 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl cert"
2965 - CLEANUP: ssl/cli: use a local context for "set ssl cert"
2966 - CLEANUP: ssl/cli: use a local context for "set ssl cafile"
2967 - CLEANUP: ssl/cli: use a local context for "set ssl crlfile"
2968 - CLEANUP: ssl/cli: use a local context for "commit ssl {ca|crl}file"
2969 - CLEANUP: ssl/cli: stop using appctx->st2 for "commit ssl ca/crl"
2970 - CLEANUP: ssl/cli: stop using ctx.cli.i0/i1/p0 for "show tls-keys"
2971 - CLEANUP: ssl/cli: add a new "dump_entries" field to "show_keys_ref"
2972 - CLEANUP: ssl/cli: make "show tlskeys" not use appctx->st2 anymore
2973 - CLEANUP: ssl/cli: make "show ssl ocsp-response" not use cli.p0 anymore
2974 - CLEANUP: ssl/cli: make "{show|dump} ssl crtlist" use its own context
2975 - CLEANUP: ssl/cli: make "add ssl crtlist" use its own context
2976 - CLEANUP: ssl/cli: make "add ssl crtlist" not use st2 anymore
2977 - CLEANUP: dns: stop abusing the sink forwarder's context
2978 - CLEANUP: sink: use the generic context to store the forwarder's context
2979 - CLEANUP: activity/cli: make "show profiling" not use ctx.cli anymore
2980 - CLEANUP: debug/cli: make "debug dev fd" not use ctx.cli anymore
2981 - CLEANUP: debug/cli: make "debug dev memstats" not use ctx.cli anymore
2982 - CLEANUP: ring: pass the ring watch flags to ring_attach_cli(), not in ctx.cli
2983 - CLEANUP: ring/cli: use a locally-defined context instead of using ctx.cli
2984 - CLEANUP: resolvers/cli: make "show resolvers" use a locally-defined context
2985 - CLEANUP: resolvers/cli: remove the unneeded appctx->st2 from "show resolvers"
2986 - CLEANUP: cache/cli: make use of a locally defined context for "show cache"
2987 - CLEANUP: proxy/cli: make use of a locally defined context for "show servers"
2988 - CLEANUP: proxy/cli: get rid of appctx->st2 in "show servers"
2989 - CLEANUP: proxy/cli: make "show backend" only use the generic context
2990 - CLEANUP: cli: make "show fd" use its own context
2991 - CLEANUP: cli: make "show env" use its own context
2992 - CLEANUP: cli: simplify the "show cli sockets" I/O handler
2993 - CLEANUP: cli: make "show cli sockets" use its own context
2994 - CLEANUP: httpclient/cli: use a locally-defined context instead of ctx.cli
2995 - CLEANUP: httpclient: do not use the appctx.ctx anymore
2996 - CLEANUP: peers: do not use appctx.ctx anymore
2997 - CLEANUP: spoe: do not use appctx.ctx anymore
2998 - BUILD: applet: mark the CLI's generic variables as deprecated
2999 - BUILD: applet: mark the appctx's st2 variable as deprecated
3000 - CLEANUP: cache: take the context out of appctx.ctx
3001 - MEDIUM: lua: move the cosocket storage outside of appctx.ctx
3002 - MINOR: lua: move the tcp service storage outside of appctx.ctx
3003 - MINOR: lua: move the http service context out of appctx.ctx
3004 - CLEANUP: cli: move the status print context into its own context
3005 - CLEANUP: stats: rename the stats state values an mark the old ones deprecated
3006 - DOC: internal: document the new cleaner approach to the appctx
3007 - MINOR: tcp: socket translate TCP_KEEPIDLE for macOs equivalent
3008 - DOC: fix typo "ant" for "and" in INSTALL
3009 - CI: dynamically determine actual version of h2spec
3010
Willy Tarreau026fef92022-04-30 14:17:51 +020030112022/04/30 : 2.6-dev8
3012 - BUG/MINOR: quic: fix use-after-free with trace on ACK consume
3013 - BUG/MINOR: rules: Forbid captures in defaults section if used by a backend
3014 - BUG/MEDIUM: rules: Be able to use captures defined in defaults section
3015 - BUG/MINOR: rules: Fix check_capture() function to use the right rule arguments
3016 - BUG/MINOR: http-act: make release_http_redir() more robust
3017 - BUG/MINOR: sample: add missing use_backend/use-server contexts in smp_resolve_args
3018 - MINOR: sample: don't needlessly call c_none() in sample_fetch_as_type()
3019 - MINOR: sample: make the bool type cast to bin
3020 - MEDIUM: backend: add new "balance hash <expr>" algorithm
3021 - MINOR: init: add global setting "fd-hard-limit" to bound system limits
3022 - BUILD: pollers: use an initcall to register the pollers
3023 - BUILD: xprt: use an initcall to register the transport layers
3024 - BUILD: thread: use initcall instead of a constructor
3025 - BUILD: http: remove the two unused constructors in rules and ana
3026 - CLEANUP: compression: move the default setting of maxzlibmem to defaults
3027 - MINOR: tree-wide: always consider EWOULDBLOCK in addition to EAGAIN
3028 - BUG/MINOR: connection: "connection:close" header added despite 'close-spread-time'
3029 - MINOR: fd: add functions to set O_NONBLOCK and FD_CLOEXEC
3030 - CLEANUP: tree-wide: use fd_set_nonblock() and fd_set_cloexec()
3031 - CLEANUP: tree-wide: remove 25 occurrences of unneeded fcntl.h
3032 - REGTESTS: fix the race conditions in be2dec.vtc ad field.vtc
3033 - REGTESTS: webstats: remove unused stats socket in /tmp
3034 - MEDIUM: httpclient: disable SSL when the ca-file couldn't be loaded
3035 - BUG/MINOR: httpclient/lua: error when the httpclient_start() fails
3036 - BUG/MINOR: ssl: free the cafile entries on deinit
3037 - BUG/MINOR: ssl: memory leak when trying to load a directory with ca-file
3038 - MEDIUM: httpclient: re-enable the verify by default
3039 - BUG/MEDIUM: ssl/cli: fix yielding in show_cafile_detail
3040 - BUILD: compiler: properly distinguish weak and global symbols
3041 - MINOR: connection: Add way to disable active connection closing during soft-stop
3042 - BUG/MEDIUM: http-ana: Fix memleak in redirect rules with ignore-empty option
3043 - CLEANUP: Destroy `http_err_chunks` members during deinit
3044 - BUG/MINOR: resolvers: Fix memory leak in resolvers_deinit()
3045 - MINOR: Call deinit_and_exit(0) for `haproxy -vv`
3046 - BUILD: fd: disguise the fd_set_nonblock/cloexec result
3047 - BUG/MINOR: pools: make sure to also destroy shared pools in pool_destroy_all()
3048 - MINOR: ssl: add a new global option "tune.ssl.hard-maxrecord"
3049 - CLEANUP: errors: also call deinit_errors_buffers() on deinit()
3050 - CLEANUP: chunks: release trash also in deinit
3051 - CLEANUP: deinit: release the pre-check callbacks
3052 - CLEANUP: deinit: release the config postparsers
3053 - CLEANUP: listeners/deinit: release accept queue tasklets on deinit
3054 - CLEANUP: connections/deinit: destroy the idle_conns tasks
3055 - BUG/MINOR: mux-quic: fix build in release mode
3056 - MINOR: mux-quic: adjust comment on emission function
3057 - MINOR: mux-quic: remove unused bogus qcc_get_stream()
3058 - BUG/MINOR: mux-quic: fix leak if cs alloc failure
3059 - MINOR: mux-quic: count local flow-control stream limit on reception
3060 - BUG/MINOR: h3: fix incomplete POST requests
3061 - BUG/MEDIUM: h3: fix use-after-free on mux Rx buffer wrapping
3062 - MINOR: mux-quic: partially copy Rx frame if almost full buf
3063 - MINOR: h3: change frame demuxing API
3064 - MINOR: mux-quic: add a app-layer context in qcs
3065 - MINOR: h3: implement h3 stream context
3066 - MINOR: h3: support DATA demux if buffer full
3067 - MINOR: quic: decode as much STREAM as possible
3068 - MINOR: quic: Improve qc_prep_pkts() flexibility
3069 - MINOR: quic: Prepare quic_frame struct duplication
3070 - MINOR: quic: Do not retransmit frames from coalesced packets
3071 - MINOR: quic: Add traces about TX frame memory releasing
3072 - MINOR: quic: process_timer() rework
3073 - MEDIUM: quic: New functions for probing rework
3074 - MEDIUM: quic: Retransmission functions rework
3075 - MEDIUM: quic: qc_requeue_nacked_pkt_tx_frms() rework
3076 - MINOR: quic: old data distinction for qc_send_app_pkt()
3077 - MINOR: quic: Mark packets as probing with old data
3078 - MEDIUM: quic: Mark copies of acknowledged frames as acknowledged
3079 - MEDIUM: quic: Enable the new datagram probing process
3080 - MINOR: quic: Do not send ACK frames when probing
3081 - BUG/MINOR: quic: Wrong returned status by qc_build_frms()
3082 - BUG/MINOR: quic: Avoid sending useless PADDING frame
3083 - BUG/MINOR: quic: Traces fix about remaining frames upon packet build failure
3084 - MINOR: quic: Wake up the mux to probe with new data
3085 - BUG/MEDIUM: quic: Possible crash on STREAM frame loss
3086 - BUG/MINOR: quic: Missing Initial packet length check
3087 - CLEANUP: quic: Rely on the packet length set by qc_lstnr_pkt_rcv()
3088 - MINOR: quic: Drop 0-RTT packets if not allowed
3089 - BUG/MINOR: httpclient/ssl: use the correct verify constant
3090 - BUG/MEDIUM: conn-stream: Don't erase endpoint flags on reset
3091 - BUG/MEDIUM: httpclient: Fix loop consuming HTX blocks from the response channel
3092 - BUG/MINOR: httpclient: Count metadata in size to transfer via htx_xfer_blks()
3093 - MINOR: httpclient: Don't use co_set_data() to decrement output
3094 - BUG/MINOR: conn_stream: do not confirm a connection from the frontend path
3095 - MEDIUM: quic: do not ACK packet with STREAM if MUX not present
3096 - MEDIUM: quic: do not ack packet with invalid STREAM
3097 - MINOR: quic: Drop 0-RTT packets without secrets
3098 - CLEANUP: quic: Remaining fprintf() debug trace
3099 - MINOR: quic: moving code for QUIC loss detection
3100 - BUG/MINOR: quic: Missing time threshold multiplifier for loss delay computation
3101 - CI: github actions: update LibreSSL to 3.5.2
3102 - SCRIPTS: announce-release: add URL of dev packages
3103
Willy Tarreau3e69fcc2022-04-23 04:38:36 +020031042022/04/23 : 2.6-dev7
3105 - BUILD: calltrace: fix wrong include when building with TRACE=1
3106 - MINOR: ssl: Use DH parameters defined in RFC7919 instead of hard coded ones
3107 - MEDIUM: ssl: Disable DHE ciphers by default
3108 - BUILD: ssl: Fix compilation with OpenSSL 1.0.2
3109 - MINOR: mux-quic: split xfer and STREAM frames build
3110 - REORG: quic: use a dedicated module for qc_stream_desc
3111 - MINOR: quic-stream: use distinct tree nodes for quic stream and qcs
3112 - MINOR: quic-stream: add qc field
3113 - MEDIUM: quic: implement multi-buffered Tx streams
3114 - MINOR: quic-stream: refactor ack management
3115 - MINOR: quic: limit total stream buffers per connection
3116 - MINOR: mux-quic: implement immediate send retry
3117 - MINOR: cfg-quic: define tune.quic.conn-buf-limit
3118 - MINOR: ssl: Add 'show ssl providers' cli command and providers list in -vv option
3119 - REGTESTS: ssl: Update error messages that changed with OpenSSLv3.1.0-dev
3120 - BUG/MEDIUM: quic: Possible crash with released mux
3121 - BUG/MINOR: mux-quic: unsubscribe on release
3122 - BUG/MINOR: mux-quic: handle null timeout
3123 - BUG/MEDIUM: logs: fix http-client's log srv initialization
3124 - BUG/MINOR: mux-quic: remove dead code in qcs_xfer_data()
3125 - DEV: stream: Fix conn-streams dump in full stream message
3126 - CLEANUP: conn-stream: Rename cs_conn_close() and cs_conn_drain_and_close()
3127 - CLEANUP: conn-stream: Rename cs_applet_release()
3128 - MINOR: conn-stream: Rely on endpoint shutdown flags to shutdown an applet
3129 - BUG/MINOR: cache: Disable cache if applet creation fails
3130 - BUG/MINOR: backend: Don't allow to change backend applet
3131 - BUG/MEDIUM: conn-stream: Set back CS to RDY state when the appctx is created
3132 - MINOR: stream: Don't needlessly detach server endpoint on early client abort
3133 - MINOR: conn-stream: Make cs_detach_* private and use cs_destroy() from outside
3134 - MINOR: init: add the pre-check callback
3135 - MEDIUM: httpclient: change the init sequence
3136 - MEDIUM: httpclient/ssl: verify required
3137 - MINOR: httpclient/mworker: disable in the master process
3138 - MEDIUM: httpclient/ssl: verify is configurable and disabled by default
3139 - BUG/MAJOR: connection: Never remove connection from idle lists outside the lock
3140 - BUG/MEDIUM: mux-quic: fix stalled POST requets
3141 - BUG/MINOR: mux-quic: fix POST with abortonclose
3142 - MINOR: task: add a new task_instant_wakeup() function
3143 - MEDIUM: queue: use tasklet_instant_wakeup() to wake tasks
3144 - DOC: remove my name from the config doc
3145
Willy Tarreaua8b10652022-04-16 12:15:47 +020031462022/04/16 : 2.6-dev6
3147 - CLEANUP: connection: reduce the with of the mux dump output
3148 - CI: Update to actions/checkout@v3
3149 - CI: Update to actions/cache@v3
3150 - DOC: adjust QUIC instruction in INSTALL
3151 - BUG/MINOR: stats: define the description' background color in dark color scheme
3152 - BUILD: ssl: add USE_ENGINE and disable the openssl engine by default
3153 - BUILD: makefile: pass USE_ENGINE to cflags
3154 - BUILD: xprt-quic: replace ERR_func_error_string() with ERR_peek_error_func()
3155 - DOC: install: document the fact that SSL engines are not enabled by default
3156 - CI: github actions: disable -Wno-deprecated
3157 - BUILD: makefile: silence unbearable OpenSSL deprecation warnings
3158 - MINOR: sock: check configured limits at the sock layer, not the listener's
3159 - MINOR: connection: add a new flag CO_FL_FDLESS on fd-less connections
3160 - MINOR: connection: add conn_fd() to retrieve the FD only when it exists
3161 - MINOR: stream: only dump connections' FDs when they are valid
3162 - MINOR: connection: use conn_fd() when displaying connection errors
3163 - MINOR: connection: skip FD-based syscalls for FD-less connections
3164 - MEDIUM: connection: panic when calling FD-specific functions on FD-less conns
3165 - MINOR: mux-quic: properly set the flags and name fields
3166 - MINOR: connection: rearrange conn_get_src/dst to be a bit more extensible
3167 - MINOR: protocol: add get_src() and get_dst() at the protocol level
3168 - MINOR: quic-sock: provide a pair of get_src/get_dst functions
3169 - MEDIUM: ssl: improve retrieval of ssl_sock_ctx and SSL detection
3170 - MEDIUM: ssl: stop using conn->xprt_ctx to access the ssl_sock_ctx
3171 - MEDIUM: xprt-quic: implement get_ssl_sock_ctx()
3172 - MEDIUM: quic: move conn->qc into conn->handle
3173 - BUILD: ssl: fix build warning with previous changes to ssl_sock_ctx
3174 - BUILD: ssl: add an unchecked version of __conn_get_ssl_sock_ctx()
3175 - MINOR: ssl: refine the error testing for fc_err and fc_err_str
3176 - BUG/MINOR: sock: do not double-close the accepted socket on the error path
3177 - CI: cirrus: switch to FreeBSD-13.0
3178 - MINOR: log: add '~' to frontend when the transport layer provides SSL
3179 - BUILD/DEBUG: lru: fix printf format in debug code
3180 - BUILD: peers: adjust some printf format to silence cppcheck
3181 - BUILD/DEBUG: hpack-tbl: fix format string in standalone debug code
3182 - BUILD/DEBUG: hpack: use unsigned int in printf format in debug code
3183 - BUILD: halog: fix some incorrect signs in printf formats for integers
3184 - BUG/MINOR: h3: fix build with DEBUG_H3
3185 - BUG/MINOR: mux-h2: do not send GOAWAY if SETTINGS were not sent
3186 - BUG/MINOR: cache: do not display expired entries in "show cache"
3187 - BUG/MINOR: mux-h1: Don't release unallocated CS on error path
3188 - MINOR: applet: Make .init callback more generic
3189 - MINOR: conn-stream: Add flags to set the type of the endpoint
3190 - MEDIUM: applet: Set the appctx owner during allocation
3191 - MAJOR: conn-stream: Invert conn-stream endpoint and its context
3192 - REORG: Initialize the conn-stream by hand in cs_init()
3193 - MEDIUM: conn-stream: Add an endpoint structure in the conn-stream
3194 - MINOR: conn-stream: Move some CS flags to the endpoint
3195 - MEDIUM: conn-stream: Be able to pass endpoint to create a conn-stream
3196 - MEDIUM: conn-stream: Pre-allocate endpoint to create CS from muxes and applets
3197 - REORG: applet: Uninline appctx_new function
3198 - MAJOR: conn-stream: Share endpoint struct between the CS and the mux/applet
3199 - MEDIUM: conn-stream: Move remaning flags from CS to endpoint
3200 - MINOR: mux-pt: Rely on the endpoint instead of the conn-stream when possible
3201 - MINOR: conn-stream: Add ISBACK conn-stream flag
3202 - MINOR: conn-stream: Add header file with util functions related to conn-streams
3203 - MEDIUM: tree-wide: Use CS util functions instead of SI ones
3204 - MINOR: stream-int/txn: Move buffer for L7 retries in the HTTP transaction
3205 - CLEANUP: http-ana: Remove http_alloc_txn() function
3206 - MINOR: stream-int/stream: Move conn_retries counter in the stream
3207 - MINOR: stream: Simplify retries counter calculation
3208 - MEDIUM: stream-int/conn-stream: Move src/dst addresses in the conn-stream
3209 - MINOR: stream-int/conn-stream: Move half-close timeout in the conn-stream
3210 - MEDIUM: stream-int/stream: Use connect expiration instead of SI expiration
3211 - MINOR: stream-int/conn-stream: Report error to the CS instead of the SI
3212 - MEDIUM: conn-stream: Use endpoint error instead of conn-stream error
3213 - MINOR: channel: Use conn-streams as channel producer and consumer
3214 - MINOR: stream-int: Remove SI_FL_KILL_CON to rely on conn-stream endpoint only
3215 - MINOR: mux-h2/mux-fcgi: Fully rely on CS_EP_KILL_CONN
3216 - MINOR: stream-int: Remove SI_FL_NOLINGER/NOHALF to rely on CS flags instead
3217 - MINOR: stream-int: Remove SI_FL_DONT_WAKE to rely on CS flags instead
3218 - MINOR: stream-int: Remove SI_FL_INDEP_STR to rely on CS flags instead
3219 - MINOR: stream-int: Remove SI_FL_SRC_ADDR to rely on stream flags instead
3220 - CLEANUP: stream-int: Remove unused SI_FL_CLEAN_ABRT flag
3221 - MINOR: stream: Only save previous connection state for the server side
3222 - MEDIUM: stream-int: Move SI err_type in the stream
3223 - MEDIUM: stream-int/conn-stream: Move stream-interface state in the conn-stream
3224 - MINOR: stream-int/stream: Move si_retnclose() in the stream scope
3225 - MINOR: stream-int/backend: Move si_connect() in the backend scope
3226 - MINOR: stream-int/conn-stream: Move si_conn_ready() in the conn-stream scope
3227 - MINOR: conn-stream/connection: Move SHR/SHW modes in the connection scope
3228 - MEDIUM: conn-stream: Be prepared to fail to attach a cs to a mux
3229 - MEDIUM: stream-int/conn-stream: Handle I/O subscriptions in the conn-stream
3230 - MINOR: conn-stream: Rename CS functions dedicated to connections
3231 - MINOR: stream-int/conn-stream: Move si_shut* and si_chk* in conn-stream scope
3232 - MEDIUM: stream-int/conn-stream: Move si_ops in the conn-stream scope
3233 - MINOR: applet: Use the CS to register and release applets instead of SI
3234 - MINOR: connection: unconst mux's get_fist_cs() callback function
3235 - MINOR: stream-int/connection: Move conn_si_send_proxy() in the connection scope
3236 - REORG: stream-int: Export si_cs_recv(), si_cs_send() and si_cs_process()
3237 - REORG: stream-int: Move si_is_conn_error() in the header file
3238 - REORG: conn-stream: Move cs_shut* and cs_chk* in cs_utils
3239 - REORG: conn-stream: Move cs_app_ops in conn_stream.c
3240 - MINOR: stream-int-conn-stream: Move si_update_* in conn-stream scope
3241 - MINOR: stream-int/stream: Move si_update_both in stream scope
3242 - MEDIUM: conn-stream/applet: Add a data callback for applets
3243 - MINOR: stream-int/conn-stream: Move stream_int_read0() in the conn-stream scope
3244 - MINOR: stream-int/conn-stream: Move stream_int_notify() in the conn-stream scope
3245 - MINOR: stream-int/conn-stream: Move si_cs_io_cb() in the conn-stream scope
3246 - MINOR: stream-int/conn-stream: Move si_sync_recv/send() in conn-stream scope
3247 - MINOR: conn-stream: Move si_conn_cb in the conn-stream scope
3248 - MINOR: stream-int/conn-stream Move si_is_conn_error() in the conn-stream scope
3249 - MINOR: stream-int/conn-stream: Move si_alloc_ibuf() in the conn-stream scope
3250 - CLEANUP: stream-int: Remove unused SI functions
3251 - MEDIUM: stream-int/conn-stream: Move blocking flags from SI to CS
3252 - MEDIUM: stream-int/conn-stream: Move I/O functions to conn-stream
3253 - REORG: stream-int/conn-stream: Move remaining functions to conn-stream
3254 - MINOR: stream: Use conn-stream to report server error
3255 - MINOR: http-ana: Use CS to perform L7 retries
3256 - MEDIUM: stream: Don't use the stream-int anymore in process_stream()
3257 - MINOR: conn-stream: Remove the stream-interface from the conn-stream
3258 - DEV: flags: No longer dump SI flags
3259 - CLEANUP: tree-wide: Remove any ref to stream-interfaces
3260 - CLEANUP: conn-stream: Don't export internal functions
3261 - DOC: conn-stream: Add comments on functions of the new CS api
3262 - MEDIUM: check: Use a new conn-stream for each health-check run
3263 - CLEANUP: muxes: Remove MX_FL_CLEAN_ABRT flag
3264 - MINOR: conn-stream: Use a dedicated function to conditionally remove a CS
3265 - CLEANUP: conn-stream: rename cs_register_applet() to cs_applet_create()
3266 - MINOR: muxes: Improve show_fd callbacks to dump endpoint flags
3267 - MINOR: mux-h1: Rely on the endpoint instead of the conn-stream when possible
3268 - BUG/MINOR: quic: Avoid starting the mux if no ALPN sent by the client
3269 - BUILD: debug: mark the __start_mem_stats/__stop_mem_stats symbols as weak
3270 - BUILD: initcall: mark the __start_i_* symbols as weak, not global
3271 - BUG/MINOR: mux-h2: do not use timeout http-keep-alive on backend side
3272 - BUG/MINOR: mux-h2: use timeout http-request as a fallback for http-keep-alive
3273 - MINOR: muxes: Don't expect to have a mux without connection in destroy callback
3274 - MINOR: muxes: Don't handle proto upgrade for muxes not supporting it
3275 - MINOR: muxes: Don't expect to call release function with no mux defined
3276 - MINOR: conn-stream: Use unsafe functions to get conn/appctx in cs_detach_endp
3277 - BUG/MEDIUM: mux-h1: Don't request more room on partial trailers
3278 - BUILD: http-client: Avoid dead code when compiled without SSL support
3279 - BUG/MINOR: mux-quic: prevent a crash in session_free on mux.destroy
3280 - BUG/MINOR: quic-sock: do not double free session on conn init failure
3281 - BUG/MINOR: quic: fix return value for error in start
3282 - MINOR: quic: emit CONNECTION_CLOSE on app init error
3283 - BUILD: sched: workaround crazy and dangerous warning in Clang 14
3284 - BUILD: compiler: use a more portable set of asm(".weak") statements
3285 - BUG/MEDIUM: stream: do not abort connection setup too early
3286 - CLEANUP: extcheck: do not needlessly preset the server's address/port
3287 - MINOR: extcheck: fill in the server's UNIX socket address when known
3288 - BUG/MEDIUM: connection: Don't crush context pointer location if it is a CS
3289 - BUG/MEDIUM: quic: properly clean frames on stream free
3290 - BUG/MEDIUM: fcgi-app: Use http_msg flags to know if C-L header can be added
3291 - BUG/MEDIUM: compression: Don't forget to update htx_sl and http_msg flags
3292 - MINOR: tcp_sample: clarifying samples support per os, for further expansion.
3293 - MINOR: tcp_sample: extend support for get_tcp_info to macOs.
3294 - SCRIPTS: announce-release: update the doc's URL
3295 - DOC: lua: update a few doc URLs
3296 - SCRIPTS: announce-release: add shortened links to pending issues
3297
Willy Tarreaud3b4cd12022-04-09 11:31:40 +020032982022/04/09 : 2.6-dev5
3299 - DOC: reflect H2 timeout changes
3300 - BUG/MEDIUM: mux-fcgi: Properly handle return value of headers/trailers parsing
3301 - BUG/MEDIUM: mux-h1: Properly detect full buffer cases during message parsing
3302 - BUG/MINOR: log: Initialize the list element when allocating a new log server
3303 - BUG/MINOR: samples: add missing context names for sample fetch functions
3304 - MINOR: management: add some basic keyword dump infrastructure
3305 - MINOR: config: add a function to dump all known config keywords
3306 - MINOR: filters: extend flt_dump_kws() to dump to stdout
3307 - MINOR: services: extend list_services() to dump to stdout
3308 - MINOR: cli: add a new keyword dump function
3309 - MINOR: acl: add a function to dump the list of known ACL keywords
3310 - MINOR: samples: add a function to list register sample fetch keywords
3311 - MINOR: sample: list registered sample converter functions
3312 - MINOR: tools: add strordered() to check whether strings are ordered
3313 - MINOR: action: add a function to dump the list of actions for a ruleset
3314 - MINOR: config: alphanumerically sort config keywords output
3315 - MINOR: sample: alphanumerically sort sample & conv keyword dumps
3316 - MINOR: acl: alphanumerically sort the ACL dump
3317 - MINOR: cli: alphanumerically sort the dump of supported commands
3318 - MINOR: filters: alphabetically sort the list of filter names
3319 - MINOR: services: alphabetically sort service names
3320 - MEDIUM: httpclient/lua: be stricter with httpclient parameters
3321 - MINOR: ssl: split the cert commit io handler
3322 - MINOR: ssl: move the cert_exts and the CERT_TYPE enum
3323 - MINOR: ssl: simplify the certificate extensions array
3324 - MINOR: ssl: export ckch_inst_rebuild()
3325 - MINOR: ssl: add "crt" in the cert_exts array
3326 - MINOR: ssl/lua: CertCache.set() allows to update an SSL certificate file
3327 - BUILD: ssl/lua: CacheCert needs OpenSSL
3328 - DOC: lua: CertCache class documentation
3329 - BUG/MEDIUM: quic: do not use qcs from quic_stream on ACK parsing
3330 - MINOR: mux-quic: return qcs instance from qcc_get_qcs
3331 - MINOR: mux-quic: reorganize qcs free
3332 - MINOR: mux-quic: define release app-ops
3333 - BUG/MINOR: h3: release resources on close
3334 - BUG/MINOR: mux-quic: ensure to free all qcs on MUX release
3335 - CLEANUP: quic: complete comment on qcs_try_to_consume
3336 - MINOR: quic: implement stream descriptor for transport layer
3337 - MEDIUM: quic: move transport fields from qcs to qc_conn_stream
3338 - MEDIUM: mux-quic: remove qcs tree node
3339 - BUG/MINOR: cli/stream: fix "shutdown session" to iterate over all threads
3340 - DOC: management: add missing dot in 9.4.1
3341 - BUG/MAJOR: mux_pt: always report the connection error to the conn_stream
3342 - DOC: remove double blanks in configuration.txt
3343 - CI: github actions: update OpenSSL to 3.0.2
3344 - BUG/MEDIUM: quic: Possible crash in ha_quic_set_encryption_secrets()
3345 - CLEANUP: quic: Remove all atomic operations on quic_conn struct
3346 - CLEANUP: quic: Remove all atomic operations on packet number spaces
3347 - MEDIUM: quic: Send ACK frames asap
3348 - BUG/MINOR: quic: Missing probing packets when coalescing
3349 - BUG/MINOR: quic: Discard Initial packet number space only one time
3350 - MINOR: quic: Do not display any timer value from process_timer()
3351 - BUG/MINOR: quic: Do not probe from an already probing packet number space
3352 - BUG/MINOR: quic: Non duplicated frames upon fast retransmission
3353 - BUG/MINOR: quic: Too much prepared retransmissions due to anti-amplification
3354 - MINOR: quic: Useless call to SSL_CTX_set_default_verify_paths()
3355 - MINOR: quic: Add traces about list of frames
3356 - BUG/MINOR: h3: Missing wait event struct field initialization
3357 - BUG/MINOR: quic: QUIC TLS secrets memory leak
3358 - BUG/MINOR: quic: Missing ACK range deallocations
3359 - BUG/MINOR: quic: Missing TX packet deallocations
3360 - CLEANUP: hpack: be careful about integer promotion from uint8_t
3361 - OPTIM: hpack: read 32 bits at once when possible.
3362 - MEDIUM: ssl: allow loading of a directory with the ca-file directive
3363 - BUG/MINOR: ssl: continue upon error when opening a directory w/ ca-file
3364 - MINOR: ssl: ca-file @system-ca loads the system trusted CA
3365 - DOC: configuration: add the ca-file changes
3366 - MINOR: sample: converter: Add add_item convertor
3367 - BUG/MINOR: ssl: handle X509_get_default_cert_dir() returning NULL
3368 - BUG/MINOR: ssl/cli: Remove empty lines from CLI output
3369 - MINOR: httpclient: enable request buffering
3370 - MEDIUM: httpclient: enable l7-retry
3371 - BUG/MINOR: httpclient: end callback in applet release
3372 - MINOR: quic: Add draining connection state.
3373 - MINOR: quic: Add closing connection state
3374 - BUG/MEDIUM: quic: ensure quic-conn survives to the MUX
3375 - CLEANUP: quic: use static qualifer on quic_close
3376 - CLEANUP: mux-quic: remove unused QC_CF_CC_RECV
3377 - BUG/MINOR: fix memleak on quic-conn streams cleaning
3378 - MINOR: mux-quic: factorize conn-stream attach
3379 - MINOR: mux-quic: adjust timeout to accelerate closing
3380 - MINOR: mux-quic: define is_active app-ops
3381 - MINOR: mux-quic: centralize send operations in qc_send
3382 - MEDIUM: mux-quic: report CO_FL_ERROR on send
3383 - MEDIUM: mux-quic: report errors on conn-streams
3384 - MEDIUM: quic: report closing state for the MUX
3385 - BUG/MINOR: fcgi-app: Don't add C-L header on response to HEAD requests
3386 - BUG/MEDIUM: stats: Be sure to never set EOM flag on an empty HTX message
3387 - BUG/MEDIUM: hlua: Don't set EOM flag on an empty HTX message in HTTP applet
3388 - BUG/MEDIUM: promex: Be sure to never set EOM flag on an empty HTX message
3389 - BUG/MEDIUM: mux-h1: Set outgoing message to DONE when payload length is reached
3390 - BUG/MINOR: http_client: Don't add input data on an empty request buffer
3391 - BUG/MEDIUM: http-conv: Fix url_enc() to not crush const samples
3392 - BUG/MEDIUM: http-act: Don't replace URI if path is not found or invalid
3393 - CLEANUP: mux-quic: remove uneeded TODO in qc_detach
3394 - BUG/MEDIUM: mux-quic: properly release conn-stream on detach
3395 - BUG/MINOR: quic: set the source not the destination address on accept()
3396 - BUG/MEDIUM: quic: Possible crash from quic_free_arngs()
3397 - MINOR: quic_tls: Add reusable cipher contexts to QUIC TLS contexts
3398 - MINOR: quic_tls: Stop hardcoding cipher IV lengths
3399 - CLEANUP: quic: Do not set any cipher/group from ssl_quic_initial_ctx()
3400 - MINOR: quic: Add short packet key phase bit values to traces
3401 - MINOR: quic_tls: Make key update use of reusable cipher contexts
3402 - BUG/MINOR: opentracing: setting the return value in function flt_ot_var_set()
3403 - BUG/BUILD: opentracing: fixed OT_DEFINE variable setting
3404 - EXAMPLES: opentracing: refined shell scripts for testing filter performance
3405 - DOC: opentracing: corrected comments in function descriptions
3406 - CLEANUP: opentracing: removed unused function flt_ot_var_unset()
3407 - CLEANUP: opentracing: removed unused function flt_ot_var_get()
3408 - Revert "MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'"
3409 - MINOR: opentracing: only takes the variables lock on shared entries
3410 - CLEANUP: opentracing: added flt_ot_smp_init() function
3411 - CLEANUP: opentracing: added variable to store variable length
3412 - MINOR: opentracing: improved normalization of context variable names
3413 - DEBUG: opentracing: show return values of all functions in the debug output
3414 - CLEANUP: opentracing: added FLT_OT_PARSE_INVALID_enum enum
3415 - DEBUG: opentracing: display the contents of the err variable after setting
3416 - MAJOR: opentracing: reenable usage of vars to transmit opentracing context
3417 - Revert "BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time"
3418 - MEDIUM: global: Add a "close-spread-time" option to spread soft-stop on time window
3419
Willy Tarreau0541c2b2022-03-26 08:31:33 +010034202022/03/26 : 2.6-dev4
3421 - BUG/MEDIUM: httpclient: don't consume data before it was analyzed
3422 - CLEANUP: htx: remove unused co_htx_remove_blk()
3423 - BUG/MINOR: httpclient: consume partly the blocks when necessary
3424 - BUG/MINOR: httpclient: remove the UNUSED block when parsing headers
3425 - BUG/MEDIUM: httpclient: must manipulate head, not first
3426 - REGTESTS: fix the race conditions in be2hex.vtc
3427 - BUG/MEDIUM: quic: Blocked STREAM when retransmitted
3428 - BUG/MAJOR: quic: Possible crash with full congestion control window
3429 - BUG/MINOR: httpclient/lua: stuck when closing without data
3430 - BUG/MEDIUM: applet: Don't call .release callback function twice
3431 - BUG/MEDIUM: cli/debug: Properly get the stream-int in all debug I/O handlers
3432 - BUG/MEDIUM: sink: Properly get the stream-int in appctx callback functions
3433 - DEV: udp: switch parser to getopt() instead of positional arguments
3434 - DEV: udp: add support for random packet corruption
3435 - MINOR: server: export server_parse_sni_expr() function
3436 - BUG/MINOR: httpclient: send the SNI using the host header
3437 - BUILD: httpclient: fix build without SSL
3438 - BUG/MINOR: server/ssl: free the SNI sample expression
3439 - BUG/MINOR: logs: fix logsrv leaks on clean exit
3440 - MINOR: actions: add new function free_act_rule() to free a single rule
3441 - BUG/MINOR: tcp-rules: completely free incorrect TCP rules on error
3442 - BUG/MINOR: http-rules: completely free incorrect TCP rules on error
3443 - BUG/MINOR: httpclient: only check co_data() instead of HTTP_MSG_DATA
3444 - BUG/MINOR: httpclient: process the response when received before the end of the request
3445 - BUG/MINOR: httpclient: CF_SHUTW_NOW should be tested with channel_is_empty()
3446 - CI: github actions: switch to LibreSSL-3.5.1
3447 - BUG/MEDIUM: mux-h1: only turn CO_FL_ERROR to CS_FL_ERROR with empty ibuf
3448 - BUG/MEDIUM: stream-int: do not rely on the connection error once established
3449 - BUG/MEDIUM: trace: avoid race condition when retrieving session from conn->owner
3450 - MEDIUM: mux-h2: slightly relax timeout management rules
3451 - BUG/MEDIUM: mux-h2: make use of http-request and keep-alive timeouts
3452 - BUG/MINOR: rules: Initialize the list element when allocating a new rule
3453 - BUG/MINOR: http-rules: Don't free new rule on allocation failure
3454 - DEV: coccinelle: Fix incorrect replacement in ist.cocci
3455 - CLEANUP: Reapply ist.cocci with `--include-headers-for-types --recursive-includes`
3456 - DEV: coccinelle: Add a new pattern to ist.cocci
3457 - CLEANUP: Reapply ist.cocci
3458 - REGTESTS: Do not use REQUIRE_VERSION for HAProxy 2.5+
3459 - MINOR: quic: Code factorization (TX buffer reuse)
3460 - CLEANUP: quic: "largest_acked_pn" pktns struc member moving
3461 - MEDIUM: quic: Limit the number of ACK ranges
3462 - MEDIUM: quic: Rework of the TX packets memory handling
3463 - BUG/MINOR: quic: Possible crash in parse_retry_token()
3464 - BUG/MINOR: quic: Possible leak in quic_build_post_handshake_frames()
3465 - BUG/MINOR: quic: Unsent frame because of qc_build_frms()
3466 - BUG/MINOR: mux-quic: Access to empty frame list from qc_send_frames()
3467 - BUG/MINOR: mux-quic: Missing I/O handler events initialization
3468 - BUG/MINOR: quic: Missing TX packet initializations
3469 - BUG/MINOR: quic: 1RTT packets ignored after mux was released
3470 - BUG/MINOR: quic: Incorrect peer address validation
3471 - BUG/MINOR: quic: Non initialized variable in quic_build_post_handshake_frames()
3472 - BUG/MINOR: quic: Wrong TX packet related counters handling
3473 - MEDIUM: mqtt: support mqtt_is_valid and mqtt_field_value converters for MQTTv3.1
3474 - DOC: config: Explictly add supported MQTT versions
3475 - MINOR: quic: Add traces about stream TX buffer consumption
3476 - MINOR: quic: Add traces in qc_set_timer() (scheduling)
3477 - CLEANUP: mux-quic: change comment style to not mess with git conflict
3478 - CLEANUP: mux-quic: adjust comment for coding-style
3479 - MINOR: mux-quic: complete trace when stream is not found
3480 - MINOR: mux-quic: add comments for send functions
3481 - MINOR: mux-quic: use shorter name for flow-control fields
3482 - MEDIUM: mux-quic: respect peer bidirectional stream data limit
3483 - MEDIUM: mux-quic: respect peer connection data limit
3484 - MINOR: mux-quic: support MAX_STREAM_DATA frame parsing
3485 - MINOR: mux-quic: support MAX_DATA frame parsing
3486 - BUILD: stream-int: avoid a build warning when DEBUG is empty
3487 - BUG/MINOR: quic: Wrong buffer length passed to generate_retry_token()
3488 - BUG/MINOR: tools: fix url2sa return value with IPv4
3489 - MINOR: mux-quic: convert fin on push-frame as boolean
3490 - BUILD: quic: add missing includes
3491 - REORG: quic: use a dedicated quic_loss.c
3492 - MINOR: mux-quic: declare the qmux trace module
3493 - MINOR: mux-quic: replace printfs by traces
3494 - MINOR: mux-quic: add trace event for frame sending
3495 - MINOR: mux-quic: add trace event for qcs_push_frame
3496 - MINOR: mux-quic: activate qmux traces on stdout via macro
3497 - BUILD: qpack: fix unused value when not using DEBUG_HPACK
3498 - CLEANUP: qpack: suppress by default stdout traces
3499 - CLEANUP: h3: suppress by default stdout traces
3500 - BUG/MINOR: tools: url2sa reads too far when no port nor path
3501
Willy Tarreaubc8b7a12022-03-11 18:09:24 +010035022022/03/11 : 2.6-dev3
3503 - DEBUG: rename WARN_ON_ONCE() to CHECK_IF()
3504 - DEBUG: improve BUG_ON output message accuracy
3505 - DEBUG: implement 4 levels of choices between warn and crash.
3506 - DEBUG: add two new macros to enable debugging in hot paths
3507 - DEBUG: buf: replace some sensitive BUG_ON() with BUG_ON_HOT()
3508 - DEBUG: buf: add BUG_ON_HOT() to most buffer management functions
3509 - MINOR: channel: don't use co_set_data() to decrement output
3510 - DEBUG: channel: add consistency checks using BUG_ON_HOT() in some key functions
3511 - MINOR: conn-stream: Improve API to have safe/unsafe accessors
3512 - MEDIUM: tree-wide: Use unsafe conn-stream API when it is relevant
3513 - CLEANUP: stream-int: Make si_cs_send() function static
3514 - REORG: stream-int: Uninline si_sync_recv() and make si_cs_recv() private
3515 - BUG/MEDIUM: mux-fcgi: Don't rely on SI src/dst addresses for FCGI health-checks
3516 - BUG/MEDIUM: htx: Fix a possible null derefs in htx_xfer_blks()
3517 - REGTESTS: fix the race conditions in normalize_uri.vtc
3518 - DEBUG: stream-int: Fix BUG_ON used to test appctx in si_applet_ops callbacks
3519 - BUILD: debug: fix build warning on older compilers around DEBUG_STRICT_ACTION
3520 - CLEANUP: connection: Indicate unreachability to the compiler in conn_recv_proxy
3521 - MINOR: connection: Transform safety check in PROXYv2 parsing into BUG_ON()
3522 - DOC: install: it's DEBUG_CFLAGS, not DEBUG, which is set to -g
3523 - DOC: install: describe the DEP variable
3524 - DOC: install: describe how to choose options used in the DEBUG variable
3525 - MINOR: queue: Replace if() + abort() with BUG_ON()
3526 - CLEANUP: adjust indentation in bidir STREAM handling function
3527 - MINOR: quic: simplify copy of STREAM frames to RX buffer
3528 - MINOR: quic: handle partially received buffered stream frame
3529 - MINOR: mux-quic: define flag for last received frame
3530 - BUG/MINOR: quic: support FIN on Rx-buffered STREAM frames
3531 - MEDIUM: quic: rearchitecture Rx path for bidirectional STREAM frames
3532 - REGTESTS: fix the race conditions in secure_memcmp.vtc
3533 - CLEANUP: stream: Remove useless tests on conn-stream in stream_dump()
3534 - BUILD: ssl: another build warning on LIBRESSL_VERSION_NUMBER
3535 - MINOR: quic: Ensure PTO timer is not set in the past
3536 - MINOR: quic: Post handshake I/O callback switching
3537 - MINOR: quic: Drop the packets of discarded packet number spaces
3538 - CLEANUP: quic: Useless tests in qc_try_rm_hp()
3539 - CLEANUP: quic: Indentation fix in qc_prep_pkts()
3540 - MINOR: quic: Assemble QUIC TLS flags at the same level
3541 - BUILD: conn_stream: avoid null-deref warnings on gcc 6
3542 - BUILD: connection: do not declare register_mux_proto() inline
3543 - BUILD: http_rules: do not declare http_*_keywords_registre() inline
3544 - BUILD: trace: do not declare trace_registre_source() inline
3545 - BUILD: tcpcheck: do not declare tcp_check_keywords_register() inline
3546 - DEBUG: reduce the footprint of BUG_ON() calls
3547 - BUG/MEDIUM: httpclient/lua: infinite appctx loop with POST
3548 - BUG/MINOR: pool: always align pool_heads to 64 bytes
3549 - DEV: udp: add a tiny UDP proxy for testing
3550 - DEV: udp: implement pseudo-random reordering/loss
3551 - DEV: udp: add an optional argument to set the prng seed
3552 - BUG/MINOR: quic: fix segfault on CC if mux uninitialized
3553 - BUG/MEDIUM: pools: fix ha_free() on area in the process of being freed
3554 - CLEANUP: tree-wide: remove a few rare non-ASCII chars
3555 - CI: coverity: simplify debugging options
3556 - CLEANUP: quic: complete ABORT_NOW with a TODO comment
3557 - MINOR: quic: qc_prep_app_pkts() implementation
3558 - MINOR: quic: Send short packet from a frame list
3559 - MINOR: quic: Make qc_build_frms() build ack-eliciting frames from a list
3560 - MINOR: quic: Export qc_send_app_pkts()
3561 - MINOR: mux-quic: refactor transport parameters init
3562 - MINOR: mux-quic: complete functions to detect stream type
3563 - MINOR: mux-quic: define new unions for flow-control fields
3564 - MEDIUM: mux-quic: use direct send transport API for STREAMs
3565 - MINOR: mux-quic: retry send opportunistically for remaining frames
3566 - MEDIUM: mux-quic: implement MAX_STREAMS emission for bidir streams
3567 - BUILD: fix kFreeBSD build.
3568 - MINOR: quic: Retry on qc_build_pkt() failures
3569 - BUG/MINOR: quic: Missing recovery start timer reset
3570 - CLEANUP: quic: Remove QUIC path manipulations out of the congestion controller
3571 - MINOR: quic: Add a "slow start" callback to congestion controller
3572 - MINOR: quic: Persistent congestion detection outside of controllers
3573 - CLEANUP: quic: Remove useless definitions from quic_cc_event struct
3574 - BUG/MINOR: quic: Confusion betwen "in_flight" and "prep_in_flight" in quic_path_prep_data()
3575 - MINOR: quic: More precise window update calculation
3576 - CLEANUP: quic: Remove window redundant variable from NewReno algorithm state struct
3577 - MINOR: quic: Add quic_max_int_by_size() function
3578 - BUG/MAJOR: quic: Wrong quic_max_available_room() returned value
3579 - MINOR: pools: add a new global option "no-memory-trimming"
3580 - BUG/MINOR: add missing modes in proxy_mode_str()
3581 - BUG/MINOR: cli: shows correct mode in "show sess"
3582 - BUG/MEDIUM: quic: do not drop packet on duplicate stream/decoding error
3583 - MINOR: stats: Add dark mode support for socket rows
3584 - BUILD: fix recent build breakage of freebsd caused by kFreeBSD build fix
3585 - BUG/MINOR: httpclient: Set conn-stream/channel EOI flags at the end of request
3586 - BUG/MINOR: hlua: Set conn-stream/channel EOI flags at the end of request
3587 - BUG/MINOR: stats: Set conn-stream/channel EOI flags at the end of request
3588 - BUG/MINOR: cache: Set conn-stream/channel EOI flags at the end of request
3589 - BUG/MINOR: promex: Set conn-stream/channel EOI flags at the end of request
3590 - BUG/MEDIUM: stream: Use the front analyzers for new listener-less streams
3591 - DEBUG: cache: Update underlying buffer when loading HTX message in cache applet
3592 - BUG/MEDIUM: mcli: Properly handle errors and timeouts during reponse processing
3593 - DEBUG: stream: Add the missing descriptions for stream trace events
3594 - DEBUG: stream: Fix stream trace message to print response buffer state
3595 - MINOR: proxy: Store monitor_uri as a `struct ist`
3596 - MINOR: proxy: Store fwdfor_hdr_name as a `struct ist`
3597 - MINOR: proxy: Store orgto_hdr_name as a `struct ist`
3598 - MEDIUM: proxy: Store server_id_hdr_name as a `struct ist`
3599 - CLEANUP: fcgi: Replace memcpy() on ist by istcat()
3600 - CLEANUP: fcgi: Use `istadv()` in `fcgi_strm_send_params`
3601 - BUG/MAJOR: mux-pt: Always destroy the backend connection on detach
3602 - DOC: sample fetch methods: move distcc_* to the right locations
3603 - MINOR: rules: record the last http/tcp rule that gave a final verdict
3604 - MINOR: stream: add "last_rule_file" and "last_rule_line" samples
3605 - BUG/MINOR: session: fix theoretical risk of memleak in session_accept_fd()
3606 - MINOR: quic: Add max_idle_timeout advertisement handling
3607 - MEDIUM: quic: Remove the QUIC connection reference counter
3608 - BUG/MINOR: quic: ACK_REQUIRED and ACK_RECEIVED flag collision
3609 - BUG/MINOR: quic: Missing check when setting the anti-amplification limit as reached
3610 - MINOR: quic: Add a function to compute the current PTO
3611 - MEDIUM: quic: Implement the idle timeout feature
3612 - BUG/MEDIUM: quic: qc_prep_app_pkts() retries on qc_build_pkt() failures
3613 - CLEANUP: quic: Comments fix for qc_prep_(app)pkts() functions
3614 - MINOR: mux-quic: prevent push frame for unidir streams
3615 - MINOR: mux-quic: improve opportunistic retry sending for STREAM frames
3616 - MINOR: quic: implement sending confirmation
3617 - MEDIUM: mux-quic: improve bidir STREAM frames sending
3618 - MEDIUM: check: do not auto configure SSL/PROXY for dynamic servers
3619 - REGTESTS: server: test SSL/PROXY with checks for dynamic servers
3620 - MEDIUM: server: remove experimental-mode for dynamic servers
3621 - BUG/MINOR: buffer: fix debugging condition in b_peek_varint()
3622
Willy Tarreau3b1d1902022-02-25 17:12:11 +010036232022/02/25 : 2.6-dev2
3624 - DOC: management: rework the Master CLI section
3625 - DOC: management: add expert and experimental mode in 9.4.1
3626 - CLEANUP: cleanup a commentary in pcli_parse_request()
3627 - BUG/MINOR: mworker/cli: don't display help on master applet
3628 - MINOR: mworker/cli: mcli-debug-mode enables every command
3629 - MINOR: mworker/cli: add flags in the prompt
3630 - BUG/MINOR: httpclient: Revisit HC request and response buffers allocation
3631 - BUG/MEDIUM: httpclient: Xfer the request when the stream is created
3632 - MINOR: httpclient: Don't limit data transfer to 1024 bytes
3633 - BUILD: ssl: adjust guard for X509_get_X509_PUBKEY(x)
3634 - REGTESTS: ssl: skip show_ssl_ocspresponse.vtc when BoringSSL is used
3635 - MINOR: quic: Do not modify a marked as consumed datagram
3636 - MINOR: quic: Wrong datagram buffer passed to quic_lstnr_dgram_dispatch()
3637 - MINOR: quic: Remove a useless test in quic_get_dgram_dcid()
3638 - BUG/MINOR: ssl: Remove empty lines from "show ssl ocsp-response <id>" output
3639 - CLEANUP: ssl: Remove unused ssl_sock_create_cert function
3640 - MINOR: ssl: Use high level OpenSSL APIs in sha2 converter
3641 - MINOR: ssl: Remove EC_KEY related calls when preparing SSL context
3642 - REGTESTS: ssl: Add test for "curves" and "ecdhe" SSL options
3643 - MINOR: ssl: Remove EC_KEY related calls when creating a certificate
3644 - REGTESTS: ssl: Add test for "generate-certificates" SSL option
3645 - MINOR: ssl: Remove call to SSL_CTX_set_tlsext_ticket_key_cb with OpenSSLv3
3646 - MINOR: ssl: Remove call to HMAC_Init_ex with OpenSSLv3
3647 - MINOR: h3: hardcode the stream id of control stream
3648 - MINOR: mux-quic: remove quic_transport_params_update
3649 - MINOR: quic: rename local tid variable
3650 - MINOR: quic: remove unused xprt rcv_buf operation
3651 - MINOR: quic: take out xprt snd_buf operation
3652 - CI: enable QUIC for Coverity scan
3653 - BUG/MINOR: mworker: does not erase the pidfile upon reload
3654 - MINOR: ssl: Remove call to ERR_func_error_string with OpenSSLv3
3655 - MINOR: ssl: Remove call to ERR_load_SSL_strings with OpenSSLv3
3656 - REGTESTS: ssl: Add tests for DH related options
3657 - MINOR: ssl: Create HASSL_DH wrapper structure
3658 - MINOR: ssl: Add ssl_sock_get_dh_from_bio helper function
3659 - MINOR: ssl: Factorize ssl_get_tmp_dh and append a cbk to its name
3660 - MINOR: ssl: Add ssl_sock_set_tmp_dh helper function
3661 - MINOR: ssl: Add ssl_sock_set_tmp_dh_from_pkey helper function
3662 - MINOR: ssl: Add ssl_new_dh_fromdata helper function
3663 - MINOR: ssl: Build local DH of right size when needed
3664 - MINOR: ssl: Set default dh size to 2048
3665 - MEDIUM: ssl: Replace all DH objects by EVP_PKEY on OpenSSLv3 (via HASSL_DH type)
3666 - MINOR: ssl: Remove calls to SSL_CTX_set_tmp_dh_callback on OpenSSLv3
3667 - MINOR: quic: Remove an RX buffer useless lock
3668 - MINOR: quic: Variable used before being checked in ha_quic_add_handshake_data()
3669 - MINOR: quic: EINTR error ignored
3670 - MINOR: quic: Potential overflow expression in qc_parse_frm()
3671 - MINOR: quic: Possible overflow in qpack_get_varint()
3672 - CLEANUP: h3: Unreachable target in h3_uqs_init()
3673 - MINOR: quic: Possible memleak in qc_new_conn()
3674 - MINOR: quic: Useless statement in quic_crypto_data_cpy()
3675 - BUG/MEDIUM: pools: ensure items are always large enough for the pool_cache_item
3676 - BUG/MINOR: pools: always flush pools about to be destroyed
3677 - CLEANUP: pools: don't needlessly set a call mark during refilling of caches
3678 - DEBUG: pools: add extra sanity checks when picking objects from a local cache
3679 - DEBUG: pools: let's add reverse mapping from cache heads to thread and pool
3680 - DEBUG: pools: replace the link pointer with the caller's address on pool_free()
3681 - BUG/MAJOR: sched: prevent rare concurrent wakeup of multi-threaded tasks
3682 - MINOR: quic: use a global dghlrs for each thread
3683 - BUG/MEDIUM: quic: fix crash on CC if mux not present
3684 - MINOR: qpack: fix typo in trace
3685 - BUG/MINOR: quic: fix FIN stream signaling
3686 - BUG/MINOR: h3: fix the header length for QPACK decoding
3687 - MINOR: h3: remove transfer-encoding header
3688 - MINOR: h3: add documentation on h3_decode_qcs
3689 - MINOR: h3: set properly HTX EOM/BODYLESS on HEADERS parsing
3690 - MINOR: mux-quic: implement rcv_buf
3691 - MINOR: mux-quic: set EOS on rcv_buf
3692 - MINOR: h3: set CS_FL_NOT_FIRST
3693 - MINOR: h3: report frames bigger than rx buffer
3694 - MINOR: h3: extract HEADERS parsing in a dedicated function
3695 - MINOR: h3: implement DATA parsing
3696 - MINOR: quic: Wrong smoothed rtt initialization
3697 - MINOR: quic: Wrong loss delay computation
3698 - MINOR: quic: Code never reached in qc_ssl_sess_init()
3699 - MINOR: quic: ha_quic_set_encryption_secrets without server specific code
3700 - MINOR: quic: Avoid warning about NULL pointer dereferences
3701 - MINOR: quic: Useless test in quic_lstnr_dghdlr()
3702 - MINOR: quic: Non checked returned value for cs_new() in hq_interop_decode_qcs()
3703 - MINOR: h3: Dead code in h3_uqs_init()
3704 - MINOR: quic: Non checked returned value for cs_new() in h3_decode_qcs()
3705 - MINOR: quic: Possible frame parsers array overrun
3706 - MINOR: quic: Do not retransmit too much packets.
3707 - MINOR: quic: Move quic_rxbuf_pool pool out of xprt part
3708 - MINOR: h3: report error on HEADERS/DATA parsing
3709 - BUG/MINOR: jwt: Double free in deinit function
3710 - BUG/MINOR: jwt: Missing pkey free during cleanup
3711 - BUG/MINOR: jwt: Memory leak if same key is used in multiple jwt_verify calls
3712 - BUG/MINOR: httpclient/cli: display junk characters in vsn
3713 - MINOR: h3: remove unused return value on decode_qcs
3714 - BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies
3715 - BUG/MAJOR: spoe: properly detach all agents when releasing the applet
3716 - REGTESTS: server: close an occasional race on dynamic_server_ssl.vtc
3717 - REGTESTS: peers: leave a bit more time to peers to synchronize
3718 - BUG/MEDIUM: h2/hpack: fix emission of HPACK DTSU after settings change
3719 - BUG/MINOR: mux-h2: update the session's idle delay before creating the stream
3720 - BUG/MINOR: httpclient: reinit flags in httpclient_start()
3721 - BUG/MINOR: mailers: negotiate SMTP, not ESMTP
3722 - MINOR: httpclient: sets an alternative destination
3723 - MINOR: httpclient/lua: add 'dst' optionnal field
3724 - BUG/MINOR: ssl: Add missing return value check in ssl_ocsp_response_print
3725 - BUG/MINOR: ssl: Fix leak in "show ssl ocsp-response" CLI command
3726 - BUG/MINOR: ssl: Missing return value check in ssl_ocsp_response_print
3727 - CLEANUP: httpclient/cli: fix indentation alignment of the help message
3728 - BUG/MINOR: tools: url2sa reads ipv4 too far
3729 - BUG/MEDIUM: httpclient: limit transfers to the maximum available room
3730 - DEBUG: buffer: check in __b_put_blk() whether the buffer room is respected
3731 - MINOR: mux-quic: fix a possible null dereference in qc_timeout_task
3732 - BUG/MEDIUM: htx: Be sure to have a buffer to perform a raw copy of a message
3733 - BUG/MEDIUM: mux-h1: Don't wake h1s if mux is blocked on lack of output buffer
3734 - BUG/MAJOR: mux-h2: Be sure to always report HTX parsing error to the app layer
3735 - DEBUG: stream-int: Check CS_FL_WANT_ROOM is not set with an empty input buffer
3736 - MINOR: quic: do not modify offset node if quic_rx_strm_frm in tree
3737 - MINOR: h3: fix compiler warning variable set but not used
3738 - MINOR: mux-quic: fix uninitialized return on qc_send
3739 - MINOR: quic: fix handling of out-of-order received STREAM frames
3740 - MINOR: pools: mark most static pool configuration variables as read-mostly
3741 - CLEANUP: pools: remove the now unused pool_is_crowded()
3742 - REGTESTS: fix the race conditions in 40be_2srv_odd_health_checks
3743 - BUG/MEDIUM: stream: Abort processing if response buffer allocation fails
3744 - MINOR: httpclient/lua: ability to set a server timeout
3745 - BUG/MINOR: httpclient/lua: missing pop for new timeout parameter
3746 - DOC: httpclient/lua: fix the type of the dst parameter
3747 - CLEANUP: httpclient: initialize the client in stage INIT not REGISTER
3748 - CLEANUP: muxes: do not use a dynamic trash in list_mux_protos()
3749 - CLEANUP: vars: move the per-process variables initialization to vars.c
3750 - CLEANUP: init: remove the ifdef on HAPROXY_MEMMAX
3751 - MINOR: pools: disable redundant poisonning on pool_free()
3752 - MINOR: pools: introduce a new pool_debugging global variable
3753 - MINOR: pools: switch the fail-alloc test to runtime only
3754 - MINOR: pools: switch DEBUG_DONT_SHARE_POOLS to runtime
3755 - MINOR: pools: add a new debugging flag POOL_DBG_COLD_FIRST
3756 - MINOR: pools: add a new debugging flag POOL_DBG_INTEGRITY
3757 - MINOR: pools: make the global pools a runtime option.
3758 - MEDIUM: pools: replace CONFIG_HAP_POOLS with a runtime "NO_CACHE" flag.
3759 - MINOR: pools: store the allocated size for each pool
3760 - MINOR: pools: get rid of POOL_EXTRA
3761 - MINOR: pools: replace DEBUG_POOL_TRACING with runtime POOL_DBG_CALLER
3762 - MINOR: pools: replace DEBUG_MEMORY_POOLS with runtime POOL_DBG_TAG
3763 - MINOR: pools: add a debugging flag for memory poisonning option
3764 - MEDIUM: initcall: move STG_REGISTER earlier
3765 - MEDIUM: init: split the early initialization in its own function
3766 - MINOR: init: extract args parsing to their own function
3767 - MEDIUM: init: handle arguments earlier
3768 - MINOR: pools: delegate parsing of command line option -dM to a new function
3769 - MINOR: pools: support setting debugging options using -dM
3770 - BUILD: makefile: enable both DEBUG_STRICT and DEBUG_MEMORY_POOLS by default
3771 - CI: github: enable pool debugging by default
3772 - DOC: Fix usage/examples of deprecated ACLs
3773 - DOC: internal: update the pools API to mention boot-time settings
3774 - DOC: design: add design thoughts for later simplification of the pools
3775 - DOC: design: commit the temporary design notes on thread groups
3776 - MINOR: stream-int: Handle appctx case first when releasing the endpoint
3777 - MINOR: connection: Be prepared to handle conn-stream with no connection
3778 - MINOR: stream: Handle appctx case first when creating a new stream
3779 - MINOR: connection: Add a function to detach a conn-stream from the connection
3780 - MINOR: stream-int: Add function to reset a SI endpoint
3781 - MINOR: stream-int: Add function to attach a connection to a SI
3782 - MINOR: stream-int: Be able to allocate a CS without connection
3783 - MEDIUM: stream: No longer release backend conn-stream on connection retry
3784 - MEDIUM: stream: Allocate backend CS when the stream is created
3785 - REORG: conn_stream: move conn-stream stuff in dedicated files
3786 - MEDIUM: conn-stream: No longer access connection field directly
3787 - MEDIUM: conn-stream: Be prepared to use an appctx as conn-stream endpoint
3788 - MAJOR: conn_stream/stream-int: move the appctx to the conn-stream
3789 - MEDIUM: applet: Set the conn-stream as appctx owner instead of the stream-int
3790 - MEDIUM: conn_stream: Add a pointer to the app object into the conn-stream
3791 - MINOR: stream: Add pointer to front/back conn-streams into stream struct
3792 - MINOR: stream: Slightly rework stream_new to separate CS/SI initialization
3793 - MINOR: stream-int: Always access the stream-int via the conn-stream
3794 - MINOR: backend: Always access the stream-int via the conn-stream
3795 - MINOR: stream: Always access the stream-int via the conn-stream
3796 - MINOR: http-ana: Always access the stream-int via the conn-stream
3797 - MINOR: cli: Always access the stream-int via the conn-stream
3798 - MINOR: log: Always access the stream-int via the conn-stream
3799 - MINOR: frontend: Always access the stream-int via the conn-stream
3800 - MINOR: proxy: Always access the stream-int via the conn-stream
3801 - MINOR: peers: Always access the stream-int via the conn-stream
3802 - MINOR: debug: Always access the stream-int via the conn-stream
3803 - MINOR: hlua: Always access the stream-int via the conn-stream
3804 - MINOR: cache: Always access the stream-int via the conn-stream
3805 - MINOR: dns: Always access the stream-int via the conn-stream
3806 - MINOR: http-act: Always access the stream-int via the conn-stream
3807 - MINOR: httpclient: Always access the stream-int via the conn-stream
3808 - MINOR: tcp-act: Always access the stream-int via the conn-stream
3809 - MINOR: sink: Always access the stream-int via the conn-stream
3810 - MINOR: conn-stream: Rename cs_detach() to cs_detach_endp()
3811 - CLEANUP: conn-stream: Don't export conn-stream pool
3812 - MAJOR: stream/conn_stream: Move the stream-interface into the conn-stream
3813 - CLEANUP: stream-int: rename si_reset() to si_init()
3814 - MINOR: conn-stream: Release a CS when both app and endp are detached
3815 - MINOR: stream: Don't destroy conn-streams but detach app and endp
3816 - MAJOR: check: Use a persistent conn-stream for health-checks
3817 - CLEANUP: conn-stream: Remove cs_destroy()
3818 - CLEANUP: backend: Don't export connect_server anymore
3819 - BUG/MINOR: h3/hq_interop: Fix CS and stream creation
3820 - BUILD: tree-wide: Avoid warnings about undefined entities retrieved from a CS
3821 - BUG/MINOR: proxy: preset the error message pointer to NULL in parse_new_proxy()
3822 - BUG/MEDIUM: quic: fix received ACK stream calculation
3823 - BUILD: stream: fix build warning with older compilers
3824 - BUG/MINOR: debug: fix get_tainted() to properly read an atomic value
3825 - DEBUG: move the tainted stuff to bug.h for easier inclusion
3826 - DEBUG: cleanup back trace generation
3827 - DEBUG: cleanup BUG_ON() configuration
3828 - DEBUG: mark ABORT_NOW() as unreachable
3829 - DBEUG: add a new WARN_ON() macro
3830 - DEBUG: make the _BUG_ON() macro return the condition
3831 - DEBUG: add a new WARN_ON_ONCE() macro
3832 - DEBUG: report BUG_ON() and WARN_ON() in the tainted flags
3833 - MINOR: quic: adjust buffer handling for STREAM transmission
3834 - MINOR: quic: liberate the TX stream buffer after ACK processing
3835 - MINOR: quic: add a TODO for a memleak frame on ACK consume
3836
Willy Tarreau2454d6e2022-02-01 18:06:59 +010038372022/02/01 : 2.6-dev1
3838 - BUG/MINOR: cache: Fix loop on cache entries in "show cache"
3839 - BUG/MINOR: httpclient: allow to replace the host header
3840 - BUG/MINOR: lua: don't expose internal proxies
3841 - MEDIUM: mworker: seamless reload use the internal sockpairs
3842 - BUG/MINOR: lua: remove loop initial declarations
3843 - BUG/MINOR: mworker: does not add the -sf in wait mode
3844 - BUG/MEDIUM: mworker: FD leak of the eventpoll in wait mode
3845 - MINOR: quic: do not reject PADDING followed by other frames
3846 - REORG: quic: add comment on rare thread concurrence during CID alloc
3847 - CLEANUP: quic: add comments on CID code
3848 - MEDIUM: quic: handle CIDs to rattach received packets to connection
3849 - MINOR: qpack: support litteral field line with non-huff name
3850 - MINOR: quic: activate QUIC traces at compilation
3851 - MINOR: quic: use more verbose QUIC traces set at compile-time
3852 - MEDIUM: pool: refactor malloc_trim/glibc and jemalloc api addition detections.
3853 - MEDIUM: pool: support purging jemalloc arenas in trim_all_pools()
3854 - BUG/MINOR: mworker: deinit of thread poller was called when not initialized
3855 - BUILD: pools: only detect link-time jemalloc on ELF platforms
3856 - CI: github actions: add the output of $CC -dM -E-
3857 - BUG/MEDIUM: cli: Properly set stream analyzers to process one command at a time
3858 - BUILD: evports: remove a leftover from the dead_fd cleanup
3859 - MINOR: quic: Set "no_application_protocol" alert
3860 - MINOR: quic: More accurate immediately close.
3861 - MINOR: quic: Immediately close if no transport parameters extension found
3862 - MINOR: quic: Rename qc_prep_hdshk_pkts() to qc_prep_pkts()
3863 - MINOR: quic: Possible crash when inspecting the xprt context
3864 - MINOR: quic: Dynamically allocate the secrete keys
3865 - MINOR: quic: Add a function to derive the key update secrets
3866 - MINOR: quic: Add structures to maintain key phase information
3867 - MINOR: quic: Optional header protection key for quic_tls_derive_keys()
3868 - MINOR: quic: Add quic_tls_key_update() function for Key Update
3869 - MINOR: quic: Enable the Key Update process
3870 - MINOR: quic: Delete the ODCIDs asap
3871 - BUG/MINOR: vars: Fix the set-var and unset-var converters
3872 - MEDIUM: pool: Following up on previous pool trimming update.
3873 - BUG/MEDIUM: mux-h1: Fix splicing by properly detecting end of message
3874 - BUG/MINOR: mux-h1: Fix splicing for messages with unknown length
3875 - MINOR: mux-h1: Improve H1 traces by adding info about http parsers
3876 - MINOR: mux-h1: register a stats module
3877 - MINOR: mux-h1: add counters instance to h1c
3878 - MINOR: mux-h1: count open connections/streams on stats
3879 - MINOR: mux-h1: add stat for total count of connections/streams
3880 - MINOR: mux-h1: add stat for total amount of bytes received and sent
3881 - REGTESTS: h1: Add a script to validate H1 splicing support
3882 - BUG/MINOR: server: Don't rely on last default-server to init server SSL context
3883 - BUG/MEDIUM: resolvers: Detach query item on response error
3884 - MEDIUM: resolvers: No longer store query items in a list into the response
3885 - BUG/MAJOR: segfault using multiple log forward sections.
3886 - BUG/MEDIUM: h1: Properly reset h1m flags when headers parsing is restarted
3887 - BUG/MINOR: resolvers: Don't overwrite the error for invalid query domain name
3888 - BUILD: bug: Fix error when compiling with -DDEBUG_STRICT_NOCRASH
3889 - BUG/MEDIUM: sample: Fix memory leak in sample_conv_jwt_member_query
3890 - DOC: spoe: Clarify use of the event directive in spoe-message section
3891 - DOC: config: Specify %Ta is only available in HTTP mode
3892 - BUILD: tree-wide: avoid warnings caused by redundant checks of obj_types
3893 - IMPORT: slz: use the correct CRC32 instruction when running in 32-bit mode
3894 - MINOR: quic: fix segfault on CONNECTION_CLOSE parsing
3895 - MINOR: h3: add BUG_ON on control receive function
3896 - MEDIUM: xprt-quic: finalize app layer initialization after ALPN nego
3897 - MINOR: h3: remove duplicated FIN flag position
3898 - MAJOR: mux-quic: implement a simplified mux version
3899 - MEDIUM: mux-quic: implement release mux operation
3900 - MEDIUM: quic: detect the stream FIN
3901 - MINOR: mux-quic: implement subscribe on stream
3902 - MEDIUM: mux-quic: subscribe on xprt if remaining data after send
3903 - MEDIUM: mux-quic: wake up xprt on data transferred
3904 - MEDIUM: mux-quic: handle when sending buffer is full
3905 - MINOR: quic: RX buffer full due to wrong CRYPTO data handling
3906 - MINOR: quic: Race issue when consuming RX packets buffer
3907 - MINOR: quic: QUIC encryption level RX packets race issue
3908 - MINOR: quic: Delete remaining RX handshake packets
3909 - MINOR: quic: Remove QUIC TX packet length evaluation function
3910 - MINOR: hq-interop: fix tx buffering
3911 - MINOR: mux-quic: remove uneeded code to check fin on TX
3912 - MINOR: quic: add HTX EOM on request end
3913 - BUILD: mux-quic: fix compilation with DEBUG_MEM_STATS
3914 - MINOR: http-rules: Add capture action to http-after-response ruleset
3915 - BUG/MINOR: cli/server: Don't crash when a server is added with a custom id
3916 - MINOR: mux-quic: do not release qcs if there is remaining data to send
3917 - MINOR: quic: notify the mux on CONNECTION_CLOSE
3918 - BUG/MINOR: mux-quic: properly initialize flow control
3919 - MINOR: quic: Compilation fix for quic_rx_packet_refinc()
3920 - MINOR: h3: fix possible invalid dereference on htx parsing
3921 - DOC: config: retry-on list is space-delimited
3922 - DOC: config: fix error-log-format example
3923 - BUG/MEDIUM: mworker/cli: crash when trying to access an old PID in prompt mode
3924 - MINOR: hq-interop: refix tx buffering
3925 - REGTESTS: ssl: use X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY for cert check
3926 - MINOR: cli: "show version" displays the current process version
3927 - CLEANUP: cfgparse: modify preprocessor guards around numa detection code
3928 - MEDIUM: cfgparse: numa detect topology on FreeBSD.
3929 - BUILD: ssl: unbreak the build with newer libressl
3930 - MINOR: vars: Move UPDATEONLY flag test to vars_set_ifexist
3931 - MINOR: vars: Set variable type to ANY upon creation
3932 - MINOR: vars: Delay variable content freeing in var_set function
3933 - MINOR: vars: Parse optional conditions passed to the set-var converter
3934 - MINOR: vars: Parse optional conditions passed to the set-var actions
3935 - MEDIUM: vars: Enable optional conditions to set-var converter and actions
3936 - DOC: vars: Add documentation about the set-var conditions
3937 - REGTESTS: vars: Add new test for conditional set-var
3938 - MINOR: quic: Attach timer task to thread for the connection.
3939 - CLEANUP: quic_frame: Remove a useless suffix to STOP_SENDING
3940 - MINOR: quic: Add traces for STOP_SENDING frame and modify others
3941 - CLEANUP: quic: Remove cdata_len from quic_tx_packet struct
3942 - MINOR: quic: Enable TLS 0-RTT if needed
3943 - MINOR: quic: No TX secret at EARLY_DATA encryption level
3944 - MINOR: quic: Add quic_set_app_ops() function
3945 - MINOR: ssl_sock: Set the QUIC application from ssl_sock_advertise_alpn_protos.
3946 - MINOR: quic: Make xprt support 0-RTT.
3947 - MINOR: qpack: Missing check for truncated QPACK fields
3948 - CLEANUP: quic: Comment fix for qc_strm_cpy()
3949 - MINOR: hq_interop: Stop BUG_ON() truncated streams
3950 - MINOR: quic: Do not mix packet number space and connection flags
3951 - CLEANUP: quic: Shorten a litte bit the traces in lstnr_rcv_pkt()
3952 - MINOR: mux-quic: fix trace on stream creation
3953 - CLEANUP: quic: fix spelling mistake in a trace
3954 - CLEANUP: quic: rename quic_conn conn to qc in quic_conn_free
3955 - MINOR: quic: add missing lock on cid tree
3956 - MINOR: quic: rename constant for haproxy CIDs length
3957 - MINOR: quic: refactor concat DCID with address for Initial packets
3958 - MINOR: quic: compare coalesced packets by DCID
3959 - MINOR: quic: refactor DCID lookup
3960 - MINOR: quic: simplify the removal from ODCID tree
3961 - REGTESTS: vars: Remove useless ssl tunes from conditional set-var test
3962 - MINOR: ssl: Remove empty lines from "show ssl ocsp-response" output
3963 - MINOR: quic: Increase the RX buffer for each connection
3964 - MINOR: quic: Add a function to list remaining RX packets by encryption level
3965 - MINOR: quic: Stop emptying the RX buffer asap.
3966 - MINOR: quic: Do not expect to receive only one O-RTT packet
3967 - MINOR: quic: Do not forget STREAM frames received in disorder
3968 - MINOR: quic: Wrong packet refcount handling in qc_pkt_insert()
3969 - DOC: fix misspelled keyword "resolve_retries" in resolvers
3970 - CLEANUP: quic: rename quic_conn instances to qc
3971 - REORG: quic: move mux function outside of xprt
3972 - MINOR: quic: add reference to quic_conn in ssl context
3973 - MINOR: quic: add const qualifier for traces function
3974 - MINOR: trace: add quic_conn argument definition
3975 - MINOR: quic: use quic_conn as argument to traces
3976 - MINOR: quic: add quic_conn instance in traces for qc_new_conn
3977 - MINOR: quic: Add stream IDs to qcs_push_frame() traces
3978 - MINOR: quic: unchecked qc_retrieve_conn_from_cid() returned value
3979 - MINOR: quic: Wrong dropped packet skipping
3980 - MINOR: quic: Handle the cases of overlapping STREAM frames
3981 - MINOR: quic: xprt traces fixes
3982 - MINOR: quic: Drop asap Retry or Version Negotiation packets
3983 - MINOR: pools: work around possibly slow malloc_trim() during gc
3984 - DEBUG: ssl: make sure we never change a servername on established connections
3985 - MINOR: quic: Add traces for RX frames (flow control related)
3986 - MINOR: quic: Add CONNECTION_CLOSE phrase to trace
3987 - REORG: quic: remove qc_ prefix on functions which not used it directly
3988 - BUG/MINOR: quic: upgrade rdlock to wrlock for ODCID removal
3989 - MINOR: quic: remove unnecessary call to free_quic_conn_cids()
3990 - MINOR: quic: store ssl_sock_ctx reference into quic_conn
3991 - MINOR: quic: remove unnecessary if in qc_pkt_may_rm_hp()
3992 - MINOR: quic: replace usage of ssl_sock_ctx by quic_conn
3993 - MINOR: quic: delete timer task on quic_close()
3994 - MEDIUM: quic: implement refcount for quic_conn
3995 - BUG/MINOR: quic: fix potential null dereference
3996 - BUG/MINOR: quic: fix potential use of uninit pointer
3997 - BUG/MEDIUM: backend: fix possible sockaddr leak on redispatch
3998 - BUG/MEDIUM: peers: properly skip conn_cur from incoming messages
3999 - CI: Github Actions: do not show VTest failures if build failed
4000 - BUILD: opentracing: display warning in case of using OT_USE_VARS at compile time
4001 - MINOR: compat: detect support for dl_iterate_phdr()
4002 - MINOR: debug: add ability to dump loaded shared libraries
4003 - MINOR: debug: add support for -dL to dump library names at boot
4004 - BUG/MEDIUM: ssl: initialize correctly ssl w/ default-server
4005 - REGTESTS: ssl: fix ssl_default_server.vtc
4006 - BUG/MINOR: ssl: free the fields in srv->ssl_ctx
4007 - BUG/MEDIUM: ssl: free the ckch instance linked to a server
4008 - REGTESTS: ssl: update of a crt with server deletion
4009 - BUILD/MINOR: cpuset FreeBSD 14 build fix.
4010 - MINOR: pools: always evict oldest objects first in pool_evict_from_local_cache()
4011 - DOC: pool: document the purpose of various structures in the code
4012 - CLEANUP: pools: do not use the extra pointer to link shared elements
4013 - CLEANUP: pools: get rid of the POOL_LINK macro
4014 - MINOR: pool: allocate from the shared cache through the local caches
4015 - CLEANUP: pools: group list updates in pool_get_from_cache()
4016 - MINOR: pool: rely on pool_free_nocache() in pool_put_to_shared_cache()
4017 - MINOR: pool: make pool_is_crowded() always true when no shared pools are used
4018 - MINOR: pool: check for pool's fullness outside of pool_put_to_shared_cache()
4019 - MINOR: pool: introduce pool_item to represent shared pool items
4020 - MINOR: pool: add a function to estimate how many may be released at once
4021 - MEDIUM: pool: compute the number of evictable entries once per pool
4022 - MINOR: pools: prepare pool_item to support chained clusters
4023 - MINOR: pools: pass the objects count to pool_put_to_shared_cache()
4024 - MEDIUM: pools: centralize cache eviction in a common function
4025 - MEDIUM: pools: start to batch eviction from local caches
4026 - MEDIUM: pools: release cached objects in batches
4027 - OPTIM: pools: reduce local pool cache size to 512kB
4028 - CLEANUP: assorted typo fixes in the code and comments This is 29th iteration of typo fixes
4029 - CI: github actions: update OpenSSL to 3.0.1
4030 - BUILD/MINOR: tools: solaris build fix on dladdr.
4031 - BUG/MINOR: cli: fix _getsocks with musl libc
4032 - BUG/MEDIUM: http-ana: Preserve response's FLT_END analyser on L7 retry
4033 - MINOR: quic: Wrong traces after rework
4034 - MINOR: quic: Add trace about in flight bytes by packet number space
4035 - MINOR: quic: Wrong first packet number space computation
4036 - MINOR: quic: Wrong packet number space computation for PTO
4037 - MINOR: quic: Wrong loss time computation in qc_packet_loss_lookup()
4038 - MINOR: quic: Wrong ack_delay compution before calling quic_loss_srtt_update()
4039 - MINOR: quic: Remove nb_pto_dgrams quic_conn struct member
4040 - MINOR: quic: Wrong packet number space trace in qc_prep_pkts()
4041 - MINOR: quic: Useless test in qc_prep_pkts()
4042 - MINOR: quic: qc_prep_pkts() code moving
4043 - MINOR: quic: Speeding up Handshake Completion
4044 - MINOR: quic: Probe Initial packet number space more often
4045 - MINOR: quic: Probe several packet number space upon timer expiration
4046 - MINOR: quic: Comment fix.
4047 - MINOR: quic: Improve qc_prep_pkts() flexibility
4048 - MINOR: quic: Do not drop secret key but drop the CRYPTO data
4049 - MINOR: quic: Prepare Handshake packets asap after completed handshake
4050 - MINOR: quic: Flag asap the connection having reached the anti-amplification limit
4051 - MINOR: quic: PTO timer too often reset
4052 - MINOR: quic: Re-arm the PTO timer upon datagram receipt
4053 - MINOR: proxy: add option idle-close-on-response
4054 - MINOR: cpuset: switch to sched_setaffinity for FreeBSD 14 and above.
4055 - CI: refactor spelling check
4056 - CLEANUP: assorted typo fixes in the code and comments
4057 - BUILD: makefile: add -Wno-atomic-alignment to work around clang abusive warning
4058 - MINOR: quic: Only one CRYPTO frame by encryption level
4059 - MINOR: quic: Missing retransmission from qc_prep_fast_retrans()
4060 - MINOR: quic: Non-optimal use of a TX buffer
4061 - BUG/MEDIUM: mworker: don't use _getsocks in wait mode
4062 - BUG/MINOR: ssl: Store client SNI in SSL context in case of ClientHello error
4063 - BUG/MAJOR: mux-h1: Don't decrement .curr_len for unsent data
4064 - DOC: internals: document the pools architecture and API
4065 - CI: github actions: clean default step conditions
4066 - BUILD: cpuset: fix build issue on macos introduced by previous change
4067 - MINOR: quic: Remaining TRACEs with connection as firt arg
4068 - MINOR: quic: Reset ->conn quic_conn struct member when calling qc_release()
4069 - MINOR: quic: Flag the connection as being attached to a listener
4070 - MINOR: quic: Wrong CRYPTO frame concatenation
4071 - MINOR: quid: Add traces quic_close() and quic_conn_io_cb()
4072 - REGTESTS: ssl: Fix ssl_errors regtest with OpenSSL 1.0.2
4073 - MINOR: quic: Do not dereference ->conn quic_conn struct member
4074 - MINOR: quic: fix return of quic_dgram_read
4075 - MINOR: quic: add config parse source file
4076 - MINOR: quic: implement Retry TLS AEAD tag generation
4077 - MEDIUM: quic: implement Initial token parsing
4078 - MINOR: quic: define retry_source_connection_id TP
4079 - MEDIUM: quic: implement Retry emission
4080 - MINOR: quic: free xprt tasklet on its thread
4081 - BUG/MEDIUM: connection: properly leave stopping list on error
4082 - MINOR: pools: enable pools with DEBUG_FAIL_ALLOC as well
4083 - MINOR: quic: As server, skip 0-RTT packet number space
4084 - MINOR: quic: Do not wakeup the I/O handler before the mux is started
4085 - BUG/MEDIUM: htx: Adjust length to add DATA block in an empty HTX buffer
4086 - CI: github actions: use cache for OpenTracing
4087 - BUG/MINOR: httpclient: don't send an empty body
4088 - BUG/MINOR: httpclient: set default Accept and User-Agent headers
4089 - BUG/MINOR: httpclient/lua: don't pop the lua stack when getting headers
4090 - BUILD/MINOR: fix solaris build with clang.
4091 - BUG/MEDIUM: server: avoid changing healthcheck ctx with set server ssl
4092 - CI: refactor OpenTracing build script
4093 - DOC: management: mark "set server ssl" as deprecated
4094 - MEDIUM: cli: yield between each pipelined command
4095 - MINOR: channel: add new function co_getdelim() to support multiple delimiters
4096 - BUG/MINOR: cli: avoid O(bufsize) parsing cost on pipelined commands
4097 - MEDIUM: h2/hpack: emit a Dynamic Table Size Update after settings change
4098 - MINOR: quic: Retransmit the TX frames in the same order
4099 - MINOR: quic: Remove the packet number space TX MT_LIST
4100 - MINOR: quic: Splice the frames which could not be added to packets
4101 - MINOR: quic: Add the number of TX bytes to traces
4102 - CLEANUP: quic: Replace <nb_pto_dgrams> by <probe>
4103 - MINOR: quic: Send two ack-eliciting packets when probing packet number spaces
4104 - MINOR: quic: Probe regardless of the congestion control
4105 - MINOR: quic: Speeding up handshake completion
4106 - MINOR: quic: Release RX Initial packets asap
4107 - MINOR: quic: Release asap TX frames to be transmitted
4108 - MINOR: quic: Probe even if coalescing
4109 - BUG/MEDIUM: cli: Never wait for more data on client shutdown
4110 - BUG/MEDIUM: mcli: do not try to parse empty buffers
4111 - BUG/MEDIUM: mcli: always realign wrapping buffers before parsing them
4112 - BUG/MINOR: stream: make the call_rate only count the no-progress calls
4113 - MINOR: quic: do not use quic_conn after dropping it
4114 - MINOR: quic: adjust quic_conn refcount decrement
4115 - MINOR: quic: fix race-condition on xprt tasklet free
4116 - MINOR: quic: free SSL context on quic_conn free
4117 - MINOR: quic: Add QUIC_FT_RETIRE_CONNECTION_ID parsing case
4118 - MINOR: quic: Wrong packet number space selection
4119 - DEBUG: pools: add new build option DEBUG_POOL_INTEGRITY
4120 - MINOR: quic: add missing include in quic_sock
4121 - MINOR: quic: fix indentation in qc_send_ppkts
4122 - MINOR: quic: remove dereferencement of connection when possible
4123 - MINOR: quic: set listener accept cb on parsing
4124 - MEDIUM: quic/ssl: add new ex data for quic_conn
4125 - MINOR: quic: initialize ssl_sock_ctx alongside the quic_conn
4126 - MINOR: ssl: fix build in release mode
4127 - MINOR: pools: partially uninline pool_free()
4128 - MINOR: pools: partially uninline pool_alloc()
4129 - MINOR: pools: prepare POOL_EXTRA to be split into multiple extra fields
4130 - MINOR: pools: extend pool_cache API to pass a pointer to a caller
4131 - DEBUG: pools: add new build option DEBUG_POOL_TRACING
4132 - DEBUG: cli: add a new "debug dev fd" expert command
4133 - MINOR: fd: register the write side of the poller pipe as well
4134 - CI: github actions: use cache for SSL libs
4135 - BUILD: debug/cli: condition test of O_ASYNC to its existence
4136 - BUILD: pools: fix build error on DEBUG_POOL_TRACING
4137 - MINOR: quic: refactor header protection removal
4138 - MINOR: quic: handle app data according to mux/connection layer status
4139 - MINOR: quic: refactor app-ops initialization
4140 - MINOR: receiver: define a flag for local accept
4141 - MEDIUM: quic: flag listener for local accept
4142 - MINOR: quic: do not manage connection in xprt snd_buf
4143 - MINOR: quic: remove wait handshake/L6 flags on init connection
4144 - MINOR: listener: add flags field
4145 - MINOR: quic: define QUIC flag on listener
4146 - MINOR: quic: create accept queue for QUIC connections
4147 - MINOR: listener: define per-thr struct
4148 - MAJOR: quic: implement accept queue
4149 - CLEANUP: mworker: simplify mworker_free_child()
4150 - BUILD/DEBUG: lru: update the standalone code to support the revision
4151 - DEBUG: lru: use a xorshift generator in the testing code
4152 - BUG/MAJOR: compiler: relax alignment constraints on certain structures
4153 - BUG/MEDIUM: fd: always align fdtab[] to 64 bytes
4154 - MINOR: quic: No DCID length for datagram context
4155 - MINOR: quic: Comment fix about the token found in Initial packets
4156 - MINOR: quic: Get rid of a struct buffer in quic_lstnr_dgram_read()
4157 - MINOR: quic: Remove the QUIC haproxy server packet parser
4158 - MINOR: quic: Add new defintion about DCIDs offsets
4159 - MINOR: quic: Add a list to QUIC sock I/O handler RX buffer
4160 - MINOR: quic: Allocate QUIC datagrams from sock I/O handler
4161 - MINOR: proto_quic: Allocate datagram handlers
4162 - MINOR: quic: Pass CID as a buffer to quic_get_cid_tid()
4163 - MINOR: quic: Convert quic_dgram_read() into a task
4164 - CLEANUP: quic: Remove useless definition
4165 - MINOR: proto_quic: Wrong allocations for TX rings and RX bufs
4166 - MINOR: quic: Do not consume the RX buffer on QUIC sock i/o handler side
4167 - MINOR: quic: Do not reset a full RX buffer
4168 - MINOR: quic: Attach all the CIDs to the same connection
4169 - MINOR: quic: Make usage of by datagram handler trees
4170 - MEDIUM: da: new optional data file download scheduler service.
4171 - MEDIUM: da: update doc and build for new scheduler mode service.
4172 - MEDIUM: da: update module to handle schedule mode.
4173 - MINOR: quic: Drop Initial packets with wrong ODCID
4174 - MINOR: quic: Wrong RX buffer tail handling when no more contiguous data
4175 - MINOR: quic: Iterate over all received datagrams
4176 - MINOR: quic: refactor quic CID association with threads
4177 - BUG/MEDIUM: resolvers: Really ignore trailing dot in domain names
4178 - DEV: flags: Add missing flags
4179 - BUG/MINOR: sink: Use the right field in appctx context in release callback
4180 - MINOR: sock: move the unused socket cleaning code into its own function
4181 - BUG/MEDIUM: mworker: close unused transferred FDs on load failure
4182 - BUILD: atomic: make the old HA_ATOMIC_LOAD() support const pointers
4183 - BUILD: cpuset: do not use const on the source of CPU_AND/CPU_ASSIGN
4184 - BUILD: checks: fix inlining issue on set_srv_agent_[addr,port}
4185 - BUILD: vars: avoid overlapping field initialization
4186 - BUILD: server-state: avoid using not-so-portable isblank()
4187 - BUILD: mux_fcgi: avoid aliasing of a const struct in traces
4188 - BUILD: tree-wide: mark a few numeric constants as explicitly long long
4189 - BUILD: tools: fix warning about incorrect cast with dladdr1()
4190 - BUILD: task: use list_to_mt_list() instead of casting list to mt_list
4191 - BUILD: mworker: include tools.h for platforms without unsetenv()
4192 - BUG/MINOR: mworker: fix a FD leak of a sockpair upon a failed reload
4193 - MINOR: mworker: set the master side of ipc_fd in the worker to -1
4194 - MINOR: mworker: allocate and initialize a mworker_proc
4195 - CI: Consistently use actions/checkout@v2
4196 - REGTESTS: Remove REQUIRE_VERSION=1.8 from all tests
4197 - MINOR: mworker: sets used or closed worker FDs to -1
4198 - MINOR: quic: Try to accept 0-RTT connections
4199 - MINOR: quic: Do not try to treat 0-RTT packets without started mux
4200 - MINOR: quic: Do not try to accept a connection more than one time
4201 - MINOR: quic: Initialize the connection timer asap
4202 - MINOR: quic: Do not use connection struct xprt_ctx too soon
4203 - Revert "MINOR: mworker: sets used or closed worker FDs to -1"
4204 - BUILD: makefile: avoid testing all -Wno-* options when not needed
4205 - BUILD: makefile: validate support for extra warnings by batches
4206 - BUILD: makefile: only compute alternative options if required
4207 - DEBUG: fd: make sure we never try to insert/delete an impossible FD number
4208 - MINOR: mux-quic: add comment
4209 - MINOR: mux-quic: properly initialize qcc flags
4210 - MINOR: mux-quic: do not consider CONNECTION_CLOSE for the moment
4211 - MINOR: mux-quic: create a timeout task
4212 - MEDIUM: mux-quic: delay the closing with the timeout
4213 - MINOR: mux-quic: release idle conns on process stopping
4214 - MINOR: listener: replace the listener's spinlock with an rwlock
4215 - BUG/MEDIUM: listener: read-lock the listener during accept()
4216 - MINOR: mworker/cli: set expert/experimental mode from the CLI
4217
Willy Tarreau73dec762021-11-23 15:50:11 +010042182021/11/23 : 2.6-dev0
4219 - MINOR: version: it's development again
4220
Willy Tarreauf2e08332021-11-23 15:40:21 +010042212021/11/23 : 2.5.0
4222 - BUILD: SSL: add quictls build to scripts/build-ssl.sh
4223 - BUILD: SSL: add QUICTLS to build matrix
4224 - CLEANUP: sock: Wrap `accept4_broken = 1` into additional parenthesis
4225 - BUILD: cli: clear a maybe-unused warning on some older compilers
4226 - BUG/MEDIUM: cli: make sure we can report a warning from a bind keyword
4227 - BUG/MINOR: ssl: make SSL counters atomic
4228 - CLEANUP: assorted typo fixes in the code and comments
4229 - BUG/MINOR: ssl: free correctly the sni in the backend SSL cache
4230 - MINOR: version: mention that it's stable now
4231
Willy Tarreaua99cdfb2021-11-19 19:30:04 +010042322021/11/19 : 2.5-dev15
4233 - BUG/MINOR: stick-table/cli: Check for invalid ipv6 key
4234 - CLEANUP: peers: Remove useless test on peer variable in peer_trace()
4235 - DOC: log: Add comments to specify when session's listener is defined or not
4236 - BUG/MEDIUM: mux-h1: Handle delayed silent shut in h1_process() to release H1C
4237 - REGTESTS: ssl_crt-list_filters: feature cmd incorrectly set
4238 - DOC: internals: document the list API
4239 - BUG/MINOR: h3: ignore unknown frame types
4240 - MINOR: quic: redirect app_ops snd_buf through mux
4241 - MEDIUM: quic: inspect ALPN to install app_ops
4242 - MINOR: quic: support hq-interop
4243 - MEDIUM: quic: send version negotiation packet on unknown version
4244 - BUG/MEDIUM: mworker: cleanup the listeners when reexecuting
4245 - DOC: internals: document the scheduler API
4246 - BUG/MINOR: quic: fix version negotiation packet generation
4247 - CLEANUP: ssl: fix wrong #else commentary
4248 - MINOR: config: support default values for environment variables
4249 - SCRIPTS: run-regtests: reduce the number of processes needed to check options
4250 - SCRIPT: run-regtests: avoid several calls to grep to test for features
4251 - SCRIPT: run-regtests: avoid calling awk to compute the version
4252 - REGTEST: set retries count to zero for all tests that expect at 503
4253 - REGTESTS: make tcp-check_min-recv fail fast
4254 - REGTESTS: extend the default I/O timeouts and make them overridable
4255 - BUG/MEDIUM: ssl: backend TLS resumption with sni and TLSv1.3
4256 - BUG/MEDIUM: ssl: abort with the correct SSL error when SNI not found
4257 - REGTESTS: ssl: test the TLS resumption
4258 - BUILD: makefile: stop opening sub-shells for each and every command
4259 - BUILD: makefile: reorder objects by build time
4260 - BUG/MEDIUM: mux-h2: always process a pending shut read
4261 - MINOR: quic_sock: missing CO_FL_ADDR_TO_SET flag
4262 - MINOR: quic: Possible wrong connection identification
4263 - MINOR: quic: Correctly pad UDP datagrams
4264 - MINOR: quic: Support transport parameters draft TLS extension
4265 - MINOR: quic: Anti-amplification implementation
4266 - MINOR: quic: Wrong Initial packet connection initialization
4267 - MINOR: quic: Wrong ACK range building
4268 - MINOR: quic: Update some QUIC protocol errors
4269 - MINOR: quic: Send CONNECTION_CLOSE frame upon TLS alert
4270 - MINOR: quic: Wrong largest acked packet number parsing
4271 - MINOR: quic: Add minimalistic support for stream flow control frames
4272 - MINOR: quic: Wrong value for version negotiation packet 'Unused' field
4273 - MINOR: quic: Support draft-29 QUIC version
4274 - BUG/MINOR: quic: fix segfault on trace for version negotiation
4275 - BUG/MINOR: hq-interop: fix potential NULL dereference
4276 - BUILD: quic: fix potential NULL dereference on xprt_quic
4277 - DOC: lua: documentation about the httpclient API
4278 - BUG/MEDIUM: cache/cli: make "show cache" thread-safe
4279 - BUG/MEDIUM: shctx: leave the block allocator when enough blocks are found
4280 - BUG/MINOR: shctx: do not look for available blocks when the first one is enough
4281 - MINOR: shctx: add a few BUG_ON() for consistency checks
4282
Willy Tarreaud83f6e62021-11-14 16:04:57 +010042832021/11/14 : 2.5-dev14
4284 - DEV: coccinelle: Remove unused `expression e`
4285 - DEV: coccinelle: Add rule to use `istend()` where possible
4286 - CLEANUP: Apply ist.cocci
4287 - CLEANUP: Re-apply xalloc_size.cocci
4288 - CLEANUP: halog: make the default usage message fit in small screens
4289 - MINOR: h3/qpack: fix gcc11 warnings
4290 - MINOR: mux-quic: fix gcc11 warning
4291 - MINOR: h3: fix potential NULL dereference
4292 - MINOR: quic: Fix potential null pointer dereference
4293 - CLEANUP: halog: remove unused strl2ui()
4294 - OPTIM: halog: improve field parser speed for modern compilers
4295 - OPTIM: halog: skip fields 64 bits at a time when supported
4296 - DEV: coccinelle: Add rule to use `isttrim()` where possible
4297 - CLEANUP: Apply ist.cocci
4298 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_memcat()`
4299 - DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`
4300 - CLEANUP: Apply ist.cocci
4301 - CLEANUP: chunk: Remove duplicated chunk_Xcat implementation
4302 - CLEANUP: chunk: remove misleading chunk_strncat() function
4303 - BUG/MINOR: cache: properly ignore unparsable max-age in quotes
4304 - Revert "DEV: coccinelle: Add rule to use `chunk_istcat()` instead of `chunk_strncat()`"
4305 - DOC: stats: fix location of the text representation
4306 - DOC: internals: document the IST API
4307 - BUG/MINOR: httpclient/lua: rcv freeze when no request payload
4308 - BUG/MEDIUM: httpclient: channel_add_input() must use htx->data
4309 - MINOR: promex: backend aggregated server check status
4310 - DOC: config: Fix typo in ssl_fc_unique_id description
4311 - BUG/MINOR: http-ana: Apply stop to the current section for http-response rules
4312 - Revert "BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back"
4313 - DOC: config: Be more explicit in "allow" actions description
4314 - DOC: lua: Be explicit with the Reply object limits
4315 - MINOR: mux-h1: Slightly Improve H1 traces
4316 - BUG/MEDIUM: conn-stream: Don't reset CS flags on close
4317 - CLEANUP: mworker: remove any relative PID reference
4318 - MEDIUM: mworker: reexec in waitpid mode after successful loading
4319 - MINOR: mworker: clarify starting/failure messages
4320 - MINOR: mworker: only increment the number of reload in wait mode
4321 - MINOR: mworker: implement a reload failure counter
4322 - MINOR: mworker: ReloadFailed shown depending on failedreload
4323 - MINOR: mworker: change the way we set PROC_O_LEAVING
4324 - BUG/MINOR: mworker: doesn't launch the program postparser
4325 - DOC: management: edit the "show proc" example to show the current output
4326 - BUG/MEDIUM: httpclient/cli: free of unallocated hc->req.uri
4327 - REGTESTS: httpclient/lua: add greater body values
4328 - BUG/MINOR: mux-h2: Fix H2_CF_DEM_SHORT_READ value
4329 - BUG/MINOR: pools: don't mark ourselves as harmless in DEBUG_UAF mode
4330 - BUG/MEDIUM: connection: make cs_shutr/cs_shutw//cs_close() idempotent
4331 - BUILD: makefile: simplify detection of libatomic
4332
Willy Tarreau08d32202021-11-06 09:25:57 +010043332021/11/06 : 2.5-dev13
4334 - SCRIPTS: git-show-backports: re-enable file-based filtering
4335 - MINOR: jwt: Make invalid static JWT algorithms an error in `jwt_verify` converter
4336 - MINOR: mux-h2: add trace on extended connect usage
4337 - BUG/MEDIUM: mux-h2: reject upgrade if no RFC8441 support
4338 - MINOR: stream/mux: implement websocket stream flag
4339 - MINOR: connection: implement function to update ALPN
4340 - MINOR: connection: add alternative mux_ops param for conn_install_mux_be
4341 - MEDIUM: server/backend: implement websocket protocol selection
4342 - MINOR: server: add ws keyword
4343 - BUG/MINOR: resolvers: fix sent messages were counted twice
4344 - BUG/MINOR: resolvers: throw log message if trash not large enough for query
4345 - MINOR: resolvers/dns: split dns and resolver counters in dns_counter struct
4346 - MEDIUM: resolvers: rename dns extra counters to resolvers extra counters
4347 - BUG/MINOR: jwt: Fix jwt_parse_alg incorrectly returning JWS_ALG_NONE
4348 - DOC: add QUIC instruction in INSTALL
4349 - CLEANUP: halog: Remove dead stores
4350 - DEV: coccinelle: Add ha_free.cocci
4351 - CLEANUP: Apply ha_free.cocci
4352 - DEV: coccinelle: Add rule to use `istnext()` where possible
4353 - CLEANUP: Apply ist.cocci
4354 - REGTESTS: Use `feature cmd` for 2.5+ tests (2)
4355 - DOC: internals: move some API definitions to an "api" subdirectory
4356 - MINOR: quic: Allocate listener RX buffers
4357 - CLEANUP: quic: Remove useless code
4358 - MINOR: quic: Enhance the listener RX buffering part
4359 - MINOR: quic: Remove a useless lock for CRYPTO frames
4360 - MINOR: quic: Use QUIC_LOCK QUIC specific lock label.
4361 - MINOR: backend: Get client dst address to set the server's one only if needful
4362 - MINOR: compression: Warn for 'compression offload' in defaults sections
4363 - MEDIUM: connection: rename fc_conn_err and bc_conn_err to fc_err and bc_err
4364 - DOC: configuration: move the default log formats to their own section
4365 - MINOR: ssl: make the ssl_fc_sni() sample-fetch function always available
4366 - MEDIUM: log: add the client's SNI to the default HTTPS log format
4367 - DOC: config: add an example of reasonably complete error-log-format
4368 - DOC: config: move error-log-format before custom log format
4369
Willy Tarreau35dc13f2021-11-02 18:05:41 +010043702021/11/02 : 2.5-dev12
4371 - MINOR: httpclient: support payload within a buffer
4372 - MINOR: httpclient/lua: support more HTTP methods
4373 - MINOR: httpclient/lua: return an error when it can't generate the request
4374 - CLEANUP: lua: Remove any ambiguities about lua txn execution context flags
4375 - BUG/MEDIUM: lua: fix invalid return types in hlua_http_msg_get_body
4376 - CLEANUP: connection: No longer export make_proxy_line_v1/v2 functions
4377 - CLEANUP: tools: Use const address for get_net_port() and get_host_port()
4378 - CLEANUP: lua: Use a const address to retrieve info about a connection
4379 - MINOR: connection: Add function to get src/dst without updating the connection
4380 - MINOR: session: Add src and dst addresses to the session
4381 - MINOR: stream-int: Add src and dst addresses to the stream-interface
4382 - MINOR: frontend: Rely on client src and dst addresses at stream level
4383 - MINOR: log: Rely on client addresses at the appropriate level to log messages
4384 - MINOR: session: Rely on client source address at session level to log error
4385 - MINOR: http-ana: Rely on addresses at stream level to set xff and xot headers
4386 - MINOR: http-fetch: Rely on addresses at stream level in HTTP sample fetches
4387 - MINOR: mux-fcgi: Rely on client addresses at stream level to set default params
4388 - MEDIUM: tcp-sample: Rely on addresses at the appropriate level in tcp samples
4389 - MEDIUM: connection: Rely on addresses at stream level to make proxy line
4390 - MEDIUM: backend: Rely on addresses at stream level to init server connection
4391 - MEDIUM: connection: Assign session addresses when PROXY line is received
4392 - MEDIUM: connection: Assign session addresses when NetScaler CIP proto is parsed
4393 - MEDIUM: tcp-act: Set addresses at the apprioriate level in set-(src/dst) actions
4394 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
4395 - DOC: config: Fix alphabetical order of fc_* samples
4396 - MINOR: tcp-sample: Add samples to get original info about client connection
4397 - REGTESTS: Add script to test client src/dst manipulation at different levels
4398 - MINOR: stream: Use backend stream-interface dst address instead of target_addr
4399 - BUILD: log: Fix compilation without SSL support
4400 - DEBUG: protocol: yell loudly during registration of invalid sock_domain
4401 - MINOR: protocols: add a new protocol type selector
4402 - MINOR: protocols: make use of the protocol type to select the protocol
4403 - MINOR: protocols: replace protocol_by_family() with protocol_lookup()
4404 - MINOR: halog: Add -qry parameter allowing to preserve the query string in -uX
4405 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_hmac()
4406 - CLEANUP: jwt: Remove the use of a trash buffer in jwt_jwsverify_rsa_ecdsa()
4407 - DEV: coccinelle: Add realloc_leak.cocci
4408 - CLEANUP: hlua: Remove obsolete branch in `hlua_alloc()`
4409 - BUILD: atomic: prefer __atomic_compare_exchange_n() for __ha_cas_dw()
4410 - BUILD: atomic: fix build on mac/arm64
4411 - MINOR: atomic: remove the memcpy() call and dependency on string.h
4412 - MINOR: httpclient: request streaming with a callback
4413 - MINOR: httpclient/lua: handle the streaming into the lua applet
4414 - REGTESTS: lua: test httpclient with body streaming
4415 - DOC: halog: Move the `-qry` parameter into the correct section in help text
4416 - MINOR: halog: Rename -qry to -query
4417 - CLEANUP: halog: Use consistent indentation in help()
4418 - BUG/MINOR: halog: Add missing newlines in die() messages
4419 - MINOR: halog: Add support for extracting captures using -hdr
4420 - DOC: Typo fixed "it" should be "is"
4421 - BUG/MINOR: mux-h1: Save shutdown mode if the shutdown is delayed
4422 - BUG/MEDIUM: mux-h1: Perform a connection shutdown when the h1c is released
4423 - BUG/MEDIUM: resolvers: Don't recursively perform requester unlink
4424 - BUG/MEDIUM: http-ana: Drain request data waiting the tarpit timeout expiration
4425 - BUG/MINOR: http: Authorization value can have multiple spaces after the scheme
4426 - BUG/MINOR: http: http_auth_bearer fetch does not work on custom header name
4427 - BUG/MINOR: httpclient/lua: misplaced luaL_buffinit()
4428 - BUILD/MINOR: cpuset freebsd build fix
4429 - BUG/MINOR: httpclient: use a placeholder value for Host header
4430 - BUG/MEDIUM: stream-int: Block reads if channel cannot receive more data
4431 - BUG/MEDIUM: resolvers: Track api calls with a counter to free resolutions
4432 - MINOR: stream: Improve dump of bogus streams
4433 - DOC/peers: some grammar fixes for peers 2.1 spec
4434 - MEDIUM: vars: make the var() sample fetch function really return type ANY
4435 - MINOR: vars: add "set-var" for "tcp-request connection" rules.
4436
Willy Tarreaub4d0cd02021-10-22 19:40:44 +020044372021/10/22 : 2.5-dev11
4438 - DEV: coccinelle: Add strcmp.cocci
4439 - CLEANUP: Apply strcmp.cocci
4440 - CI: Add `permissions` to GitHub Actions
4441 - CI: Clean up formatting in GitHub Action definitions
4442 - MINOR: add ::1 to predefined LOCALHOST acl
4443 - CLEANUP: assorted typo fixes in the code and comments
4444 - CLEANUP: Consistently `unsigned int` for bitfields
4445 - MEDIUM: resolvers: lower-case labels when converting from/to DNS names
4446 - MEDIUM: resolvers: replace bogus resolv_hostname_cmp() with memcmp()
4447 - MINOR: jwt: Empty the certificate tree during deinit
4448 - MINOR: jwt: jwt_verify returns negative values in case of error
4449 - MINOR: jwt: Do not rely on enum order anymore
4450 - BUG/MEDIUM: stream: Keep FLT_END analyzers if a stream detects a channel error
4451 - MINOR: httpclient/cli: access should be only done from expert mode
4452 - DOC: management: doc about the CLI httpclient
4453 - BUG/MEDIUM: tcpcheck: Properly catch early HTTP parsing errors
4454 - BUG/MAJOR: dns: tcp session can remain attached to a list after a free
4455 - BUG/MAJOR: dns: attempt to lock globaly for msg waiter list instead of use barrier
4456 - CLEANUP: dns: always detach the appctx from the dns session on release
4457 - DEBUG: dns: add a few more BUG_ON at sensitive places
4458 - BUG/MAJOR: resolvers: add other missing references during resolution removal
4459 - CLEANUP: resolvers: do not export resolv_purge_resolution_answer_records()
4460 - BUILD: resolvers: avoid a possible warning on null-deref
4461 - BUG/MEDIUM: resolvers: always check a valid item in query_list
4462 - CLEANUP: always initialize the answer_list
4463 - CLEANUP: resolvers: simplify resolv_link_resolution() regarding requesters
4464 - CLEANUP: resolvers: replace all LIST_DELETE with LIST_DEL_INIT
4465 - MEDIUM: resolvers: use a kill list to preserve the list consistency
4466 - MEDIUM: resolvers: remove the last occurrences of the "safe" argument
4467 - BUG/MEDIUM: checks: fix the starting thread for external checks
4468 - MEDIUM: resolvers: replace the answer_list with a (flat) tree
4469 - MEDIUM: resolvers: hash the records before inserting them into the tree
4470 - BUG/MAJOR: buf: fix varint API post- vs pre- increment
4471 - OPTIM: resolvers: move the eb32 node before the data in the answer_item
4472 - MINOR: list: add new macro LIST_INLIST_ATOMIC()
4473 - OPTIM: dns: use an atomic check for the list membership
4474 - BUG/MINOR: task: do not set TASK_F_USR1 for no reason
4475 - BUG/MINOR: mux-h2: do not prevent from sending a final GOAWAY frame
4476 - MINOR: connection: add a new CO_FL_WANT_DRAIN flag to force drain on close
4477 - MINOR: mux-h2: perform a full cycle shutdown+drain on close
4478 - CLEANUP: resolvers: get rid of single-iteration loop in resolv_get_ip_from_response()
4479 - MINOR: quic: Increase the size of handshake RX UDP datagrams
4480 - BUG/MEDIUM: lua: fix memory leaks with realloc() on non-glibc systems
4481 - MINOR: memprof: report the delta between alloc and free on realloc()
4482 - MINOR: memprof: add one pointer size to the size of allocations
4483 - BUILD: fix compilation on NetBSD
4484 - MINOR: backend: add traces for idle connections reuse
4485 - BUG/MINOR: backend: fix improper insert in avail tree for always reuse
4486 - MINOR: backend: improve perf with tcp proxies skipping idle conns
4487 - MINOR: connection: remove unneeded memset 0 for idle conns
4488
Willy Tarreauf2b1b4d2021-10-16 15:24:22 +020044892021/10/16 : 2.5-dev10
4490 - MINOR: initcall: Rename __GLOBL and __GLOBL1.
4491 - MINOR: rules: add a new function new_act_rule() to allocate act_rules
4492 - MINOR: rules: add a file name and line number to act_rules
4493 - MINOR: stream: report the current rule in "show sess all" when known
4494 - MINOR: stream: report the current filter in "show sess all" when known
4495 - CLEANUP: stream: Properly indent current_rule line in "show sess all"
4496 - BUG/MINOR: lua: Fix lua error handling in `hlua_config_prepend_path()`
4497 - CI: github: switch to OpenSSL 3.0.0
4498 - REGTESTS: ssl: Fix references to removed option in test description
4499 - MINOR: ssl: Add ssllib_name_startswith precondition
4500 - REGTESTS: ssl: Fix ssl_errors test for OpenSSL v3
4501 - REGTESTS: ssl: Reenable ssl_errors test for OpenSSL only
4502 - REGTESTS: ssl: Use mostly TLSv1.2 in ssl_errors test
4503 - MEDIUM: mux-quic: rationalize tx buffers between qcc/qcs
4504 - MEDIUM: h3: properly manage tx buffers for large data
4505 - MINOR: mux-quic: standardize h3 settings sending
4506 - CLEANUP: h3: remove dead code
4507 - MINOR: mux-quic: implement standard method to detect if qcc is dead
4508 - MEDIUM: mux-quic: defer stream shut if remaining tx data
4509 - MINOR: mux: remove last occurences of qcc ring buffer
4510 - MINOR: quic: handle CONNECTION_CLOSE frame
4511 - REGTESTS: ssl: re-enable set_ssl_cert_bundle.vtc
4512 - MINOR: ssl: add ssl_fc_is_resumed to "option httpslog"
4513 - MINOR: http: Add http_auth_bearer sample fetch
4514 - MINOR: jwt: Parse JWT alg field
4515 - MINOR: jwt: JWT tokenizing helper function
4516 - MINOR: jwt: Insert public certificates into dedicated JWT tree
4517 - MINOR: jwt: jwt_header_query and jwt_payload_query converters
4518 - MEDIUM: jwt: Add jwt_verify converter to verify JWT integrity
4519 - REGTESTS: jwt: Add tests for the jwt_verify converter
4520 - BUILD: jwt: fix declaration of EVP_KEY in jwt-h.h
4521 - MINOR: proto_tcp: use chunk_appendf() to ouput socket setup errors
4522 - MINOR: proto_tcp: also report the attempted MSS values in error message
4523 - MINOR: inet: report the faulty interface name in "bind" errors
4524 - MINOR: protocol: report the file and line number for binding/listening errors
4525 - MINOR: protocol: uniformize protocol errors
4526 - MINOR: resolvers: fix the resolv_str_to_dn_label() API about trailing zero
4527 - BUG/MEDIUM: resolver: make sure to always use the correct hostname length
4528 - BUG/MINOR: resolvers: do not reject host names of length 255 in SRV records
4529 - MINOR: resolvers: fix the resolv_dn_label_to_str() API about trailing zero
4530 - MEDIUM: listeners: split the thread mask between receiver and bind_conf
4531 - MINOR: listeners: add clone_listener() to duplicate listeners at boot time
4532 - MEDIUM: listener: add the "shards" bind keyword
4533 - BUG/MEDIUM: resolvers: use correct storage for the target address
4534 - MINOR: resolvers: merge address and target into a union "data"
4535 - BUG/MEDIUM: resolvers: fix truncated TLD consecutive to the API fix
4536 - BUG/MEDIUM: jwt: fix base64 decoding error detection
4537 - BUG/MINOR: jwt: use CRYPTO_memcmp() to compare HMACs
4538 - DOC: jwt: fix a typo in the jwt_verify() keyword description
4539 - BUG/MEDIUM: sample/jwt: fix another instance of base64 error detection
4540 - BUG/MINOR: http-ana: Don't eval front after-response rules if stopped on back
4541 - BUG/MINOR: sample: Fix 'fix_tag_value' sample when waiting for more data
4542 - DOC: config: Move 'tcp-response content' at the right place
4543 - BUG/MINOR: proxy: Use .disabled field as a bitfield as documented
4544 - MINOR: proxy: Introduce proxy flags to replace disabled bitfield
4545 - MINOR: sample/arg: Be able to resolve args found in defaults sections
4546 - MEDIUM: proxy: Warn about ambiguous use of named defaults sections
4547 - MINOR: proxy: Be able to reference the defaults section used by a proxy
4548 - MINOR: proxy: Add PR_FL_READY flag on fully configured and usable proxies
4549 - MINOR: config: Finish configuration for referenced default proxies
4550 - MINOR: config: No longer remove previous anonymous defaults section
4551 - MINOR: tcpcheck: Support 2-steps args resolution in defaults sections
4552 - MEDIUM: rules/acl: Parse TCP/HTTP rules and acls defined in defaults sections
4553 - MEDIUM: tcp-rules: Eval TCP rules defined in defaults sections
4554 - MEDIUM: http-ana: Eval HTTP rules defined in defaults sections
4555 - BUG/MEDIUM: sample: Cumulate frontend and backend sample validity flags
4556 - REGTESTS: Add scripts to test support of TCP/HTTP rules in defaults sections
4557 - DOC: config: Add documentation about TCP/HTTP rules in defaults section
4558 - DOC: config: Rework and uniformize how TCP/HTTP rules are documented
4559 - BUG/MINOR: proxy: Release ACLs and TCP/HTTP rules of default proxies
4560 - BUG/MEDIUM: cpuset: fix cpuset size for FreeBSD
4561 - BUG/MINOR: sample: fix backend direction flags consecutive to last fix
4562 - BUG/MINOR: listener: fix incorrect return on out-of-memory
4563 - BUG/MINOR: listener: add an error check for unallocatable trash
4564 - CLEANUP: listeners: remove unreachable code in clone_listener()
4565
Willy Tarreau4c67bd62021-10-08 18:22:24 +020045662021/10/08 : 2.5-dev9
4567 - head-truc
4568 - REGTESTS: lua: test the httpclient:get() feature
4569 - Revert "head-truc"
4570 - BUG/MEDIUM: httpclient: replace ist0 by istptr
4571 - MINOR: config: use a standard parser for the "nbthread" keyword
4572 - CLEANUP: init: remove useless test against MAX_THREADS in affinity loop
4573 - MEDIUM: init: de-uglify the per-thread affinity setting
4574 - MINOR: init: extract the setup and end of threads to their own functions
4575 - MINOR: log: Try to get the status code when MUX_EXIT_STATUS is retrieved
4576 - MINOR: mux-h1: Set error code if possible when MUX_EXIT_STATUS is returned
4577 - MINOR: mux-h1: Be able to set custom status code on parsing error
4578 - MEDIUM: mux-h1: Reject HTTP/1.0 GET/HEAD/DELETE requests with a payload
4579 - MEDIUM: h1: Force close mode for invalid uses of T-E header
4580 - BUG/MINOR: mux-h1/mux-fcgi: Sanitize TE header to only send "trailers"
4581 - MINOR: http: Add 422-Unprocessable-Content error message
4582 - MINOR: h1: Change T-E header parsing to fail if chunked encoding is found twice
4583 - BUG/MEDIUM: mux-h1/mux-fcgi: Reject messages with unknown transfer encoding
4584 - REGTESTS: Add script to validate T-E header parsing
4585 - REORG: pools: move default settings to defaults.h
4586 - DOC: peers: fix doc "enable" statement on "peers" sections
4587 - MINOR: Makefile: add MEMORY_POOLS to the list of DEBUG_xxx options
4588 - MINOR: ssl: Set connection error code in case of SSL read or write fatal failure
4589 - MINOR: ssl: Rename ssl_bc_hsk_err to ssl_bc_err
4590 - MINOR: ssl: Store the last SSL error code in case of read or write failure
4591 - REGTESTS: ssl: enable show_ssl_ocspresponse.vtc again
4592 - REGTESTS: ssl: enable ssl_crt-list_filters.vtc again
4593 - BUG/MEDIUM: lua: fix wakeup condition from sleep()
4594 - BUG/MAJOR: lua: use task_wakeup() to properly run a task once
4595 - MINOR: arg: Be able to forbid unresolved args when building an argument list
4596 - BUG/MINOR: tcpcheck: Don't use arg list for default proxies during parsing
4597 - BUG/MINOR: tcp-rules: Stop content rules eval on read error and end-of-input
4598 - MINOR: tasks: catch TICK_ETERNITY with BUG_ON() in __task_queue()
4599 - REGTESTS: ssl: show_ssl_ocspresponse w/ freebsd won't use base64
4600 - REGTESTS: ssl: wrong feature cmd in show_ssl_ocspresponse.vtc
4601 - CLEANUP: tasks: remove the long-unused work_lists
4602 - MINOR: task: provide 3 task_new_* wrappers to simplify the API
4603 - MINOR: time: uninline report_idle() and move it to task.c
4604 - REORG: sched: move idle time calculation from time.h to task.h
4605 - REORG: sched: move the stolen CPU time detection to sched_entering_poll()
4606 - BUG/MEDIUM: filters: Fix a typo when a filter is attached blocking the release
4607 - BUG/MEDIUM: http-ana: Clear request analyzers when applying redirect rule
4608 - MINOR: httpclient: destroy() must free the headers and the ists
4609 - MINOR: httpclient: set HTTPCLIENT_F_ENDED only in release
4610 - MINOR: httpclient: stop_and_destroy() ask the applet to autokill
4611 - MINOR: httpclient: test if started during stop_and_destroy()
4612 - MINOR: httpclient/lua: implement garbage collection
4613 - BUG/MEDIUM: httpclient/lua: crash because of b_xfer and get_trash_chunk()
4614 - MINOR: httpclient: destroy checks if a client was started but not stopped
4615 - BUG/MINOR: httpclient/lua: does not process headers when failed
4616 - MINOR: httpclient/lua: supports headers via named arguments
4617 - CLEANUP: server: always include the storage for SSL settings
4618 - CLEANUP: sample: rename sample_conv_var2smp() to *_sint
4619 - CLEANUP: sample: uninline sample_conv_var2smp_str()
4620 - MINOR: sample: provide a generic var-to-sample conversion function
4621 - BUG/MEDIUM: sample: properly verify that variables cast to sample
4622 - BUILD: action: add the relevant structures for function arguments
4623 - BUILD: extcheck: needs to include stream-t.h
4624 - BUILD: hlua: needs to include stream-t.h
4625 - BUILD: stats: define several missing structures in stats.h
4626 - BUILD: resolvers: define missing types in resolvers.h
4627 - BUILD: httpclient: include missing ssl_sock-t
4628 - BUILD: sample: include openssl-compat
4629 - BUILD: http_ana: need to include proxy-t to get redirect_rule
4630 - BUILD: http_rules: requires http_ana-t.h for REDIRECT_*
4631 - BUILD: vars: need to include xxhash
4632 - BUILD: peers: need to include eb{32/mb/pt}tree.h
4633 - BUILD: ssl_ckch: include ebpttree.h in ssl_ckch.c
4634 - BUILD: compiler: add the container_of() and container_of_safe() macros
4635 - BUILD: idleconns: include missing ebmbtree.h at several places
4636 - BUILD: connection: connection.h needs list.h and server.h
4637 - BUILD: tree-wide: add missing http_ana.h from many places
4638 - BUILD: cfgparse-ssl: add missing errors.h
4639 - BUILD: tcp_sample: include missing errors.h and session-t.h
4640 - BUILD: mworker: mworker-prog needs time.h for the 'now' variable
4641 - BUILD: tree-wide: add several missing activity.h
4642 - BUILD: compat: fix -Wundef on SO_REUSEADDR
4643 - CLEANUP: pools: pools-t.h doesn't need to include thread-t.h
4644 - REORG: pools: uninline the UAF allocator and force-inline the rest
4645 - REORG: thread: uninline the lock-debugging code
4646 - MINOR: thread/debug: replace nsec_now() with now_mono_time()
4647 - CLEANUP: remove some unneeded includes from applet-t.h
4648 - REORG: listener: move bind_conf_alloc() and listener_state_str() to listener.c
4649 - CLEANUP: listeners: do not include openssl-compat
4650 - CLEANUP: servers: do not include openssl-compat
4651 - REORG: ssl: move ssl_sock_is_ssl() to connection.h and rename it
4652 - CLEANUP: mux_fcgi: remove dependency on ssl_sock
4653 - CLEANUP: ssl/server: move ssl_sock_set_srv() to srv_set_ssl() in server.c
4654 - REORG: ssl-sock: move the sslconns/totalsslconns counters to global
4655 - REORG: sample: move the crypto samples to ssl_sample.c
4656 - REORG: sched: moved samp_time and idle_time to task.c as well
4657 - REORG: time/ticks: move now_ms and global_now_ms definitions to ticks.h
4658 - CLEANUP: tree-wide: remove unneeded include time.h in ~20 files
4659 - REORG: activity: uninline activity_count_runtime()
4660 - REORG: acitvity: uninline sched_activity_entry()
4661 - CLEANUP: stream: remove many unneeded includes from stream-t.h
4662 - CLEANUP: stick-table: no need to include socket nor in.h
4663 - MINOR: connection: use uint64_t for the hashes
4664 - REORG: connection: move the hash-related stuff to connection.c
4665 - REORG: connection: uninline conn_notify_mux() and conn_delete_from_tree()
4666 - REORG: server: uninline the idle conns management functions
4667 - REORG: ebtree: split structures into their own file ebtree-t.h
4668 - CLEANUP: tree-wide: only include ebtree-t from type files
4669 - REORG: connection: move the largest inlines from connection.h to connection.c
4670 - CLEANUP: connection: do not include http_ana!
4671 - CLEANUP: connection: remove unneeded tcpcheck-t.h and use only session-t.h
4672 - REORG: connection: uninline the rest of the alloc/free stuff
4673 - REORG: task: uninline the loop time measurement code
4674 - CLEANUP: time: move a few configurable defines to defaults.h
4675 - CLEANUP: fd: do not include time.h
4676 - REORG: fd: uninline compute_poll_timeout()
4677 - CLENAUP: wdt: use ha_tkill() instead of accessing pthread directly
4678 - REORG: thread: move the thread init/affinity/stop to thread.c
4679 - REORG: thread: move ha_get_pthread_id() to thread.c
4680 - MINOR: thread: use a dedicated static pthread_t array in thread.c
4681 - CLEANUP: thread: uninline ha_tkill/ha_tkillall/ha_cpu_relax()
4682 - DOC: configuration: add clarification on escaping in keyword arguments
4683 - BUG/MINOR: task: fix missing include with DEBUG_TASK
4684 - MINOR: pools: report the amount used by thread caches in "show pools"
4685 - MINOR: quic: Distinguish packet and SSL read enc. level in traces
4686 - MINOR: quic: Add a function to dump SSL stack errors
4687 - MINOR: quic: BUG_ON() SSL errors.
4688 - MINOR: quic: Fix SSL error issues (do not use ssl_bio_and_sess_init())
4689 - BUG/MEDIUM: mux-quic: reinsert all streams in by_id tree
4690 - BUG/MAJOR: xprt-quic: do not queue qc timer if not set
4691 - MINOR: mux-quic: release connection if no more bidir streams
4692 - BUG/MAJOR: quic: remove qc from receiver cids tree on free
4693 - BUG/MEDIUM: mux_h2: Handle others remaining read0 cases on partial frames
4694 - MINOR: qpack: do not encode invalid http status code
4695 - MINOR: qpack: support non-indexed http status code encoding
4696 - MINOR: qpack: fix memory leak on huffman decoding
4697 - CLEANUP: mux-quic: remove unused code
4698 - BUG/MINOR: quic: fix includes for compilation
4699 - BUILD: connection: avoid a build warning on FreeBSD with SO_USER_COOKIE
4700 - BUILD: init: avoid a build warning on FreeBSD with USE_PROCCTL
4701 - REORG: time: move time-keeping code and variables to clock.c
4702 - REORG: clock: move the updates of cpu/mono time to clock.c
4703 - MINOR: activity: get the run_time from the clock updates
4704 - CLEANUP: clock: stop exporting before_poll and after_poll
4705 - REORG: clock: move the clock_id initialization to clock.c
4706 - REORG: clock/wdt: move wdt timer initialization to clock.c
4707 - MINOR: clock: move the clock_ids to clock.c
4708 - MINOR: wdt: move wd_timer to wdt.c
4709 - CLEANUP: wdt: do not remap SI_TKILL to SI_LWP, test the values directly
4710 - REORG: thread/sched: move the task_per_thread stuff to thread_ctx
4711 - REORG: thread/clock: move the clock parts of thread_info to thread_ctx
4712 - REORG: thread/sched: move the thread_info flags to the thread_ctx
4713 - REORG: thread/sched: move the last dynamic thread_info to thread_ctx
4714 - MINOR: thread: make "ti" a const pointer and clean up thread_info a bit
4715 - MINOR: threads: introduce a minimalistic notion of thread-group
4716 - MINOR: global: add a new "thread-groups" directive
4717 - MINOR: global: add a new "thread-group" directive
4718 - MINOR: threads: make tg point to the current thread's group
4719 - MEDIUM: threads: automatically assign threads to groups
4720 - MINOR: threads: set the group ID and its bit in the thread group
4721 - MINOR: threads: set the tid, ltid and their bit in thread_cfg
4722 - MEDIUM: threads: replace ha_set_tid() with ha_set_thread()
4723 - MINOR: threads: add the current group ID in thread-local "tgid" variable
4724 - MINOR: debug: report the group and thread ID in the thread dumps
4725 - MEDIUM: listeners: support the definition of thread groups on bind lines
4726 - MINOR: threads: add a new function to resolve config groups and masks
4727 - MEDIUM: config: resolve relative threads on bind lines to absolute ones
4728 - MEDIUM: stick-table: never learn the "conn_cur" value from peers
4729
Willy Tarreau538f3e02021-09-24 15:52:17 +020047302021/09/24 : 2.5-dev8
4731 - BUILD: compiler: fixed a missing test on defined(__GNUC__)
4732 - BUILD: halog: fix a -Wundef warning on non-glibc systems
4733 - BUILD: threads: fix -Wundef for _POSIX_PRIORITY_SCHEDULING on libmusl
4734 - BUG/MINOR: compat: make sure __WORDSIZE is always defined
4735 - BUILD: sample: fix format warning on 32-bit archs in sample_conv_be2dec_check()
4736 - CLEANUP: pools: factor all malloc_trim() calls into trim_all_pools()
4737 - MINOR: pools: automatically disable malloc_trim() with external allocators
4738 - MINOR: pools: report it when malloc_trim() is enabled
4739 - DOC: Add .mailmap
4740 - CLEANUP: tree-wide: fix prototypes for functions taking no arguments.
4741 - CLEANUP: Remove prototype for non-existent thread_get_default_count()
4742 - CLEANUP: acl: Remove unused variable when releasing an acl expression
4743 - BUG/MAJOR: mux-h1: Don't eval input data if an error was reported
4744 - DOC: update Tim's address in .mailmap
4745 - MINOR: pools: use mallinfo2() when available instead of mallinfo()
4746 - BUG/MINOR: tcpcheck: Improve LDAP response parsing to fix LDAP check
4747 - DOC: management: certificate files must be sanitized before injection
4748 - BUG/MINOR: connection: prevent null deref on mux cleanup task allocation
4749 - BUILD: ist: prevent gcc11 maybe-uninitialized warning on istalloc
4750 - BUG/MINOR: cli/payload: do not search for args inside payload
4751 - BUILD: sockpair: do not set unused flag
4752 - BUILD: proto_uxst: do not set unused flag
4753 - BUILD: fd: remove unused variable totlen in fd_write_frag_line()
4754 - MINOR: applet: remove the thread mask from appctx_new()
4755 - REORG: threads: move ha_get_pthread_id() to tinfo.h
4756 - CLEANUP: Apply ist.cocci
4757 - DEV: coccinelle: Add ist.cocci
4758 - CLEANUP: Apply bug_on.cocci
4759 - DEV: coccinelle: Add xalloc_size.cocci
4760 - DEV: coccinelle: Add bug_on.cocci
4761 - CLEANUP: Apply xalloc_size.cocci
4762 - DEV: coccinelle: Add xalloc_cast.cocci
4763 - BUG/MINOR: flt-trace: fix an infinite loop when random-parsing is set
4764 - MINOR: httpclient: add the EOH when no headers where provided
4765 - CLEANUP: Include check.h in flt_spoe.c
4766 - CLEANUP: Remove unreachable `break` from parse_time_err()
4767 - BUG/MINOR: server: allow 'enable health' only if check configured
4768 - BUG/MINOR: server: alloc dynamic srv ssl ctx if proxy uses ssl chk rule
4769 - MINOR: server: enable more keywords for ssl checks for dynamic servers
4770 - MINOR: server: enable more check related keywords for dynamic servers
4771 - REORG: server: move slowstart init outside of checks
4772 - MINOR: server: enable slowstart for dynamic server
4773 - MEDIUM: listener: deprecate "process" in favor of "thread" on bind lines
4774 - BUG/MEDIUM: leastconn: fix rare possibility of divide by zero
4775 - BUG/MINOR: quic: Possible NULL pointer dereferencing when dumping streams.
4776 - MINOR: quic: Move transport parmaters to anynomous struct.
4777 - MINOR: mux_quic: Add QUIC mux layer.
4778 - MINOR: connection: Add callbacks definitions for QUIC.
4779 - MINOR: quic: Attach QUIC mux connection objet to QUIC connection.
4780 - MINOR: quic: Add a new definition to store STREAM frames.
4781 - MINOR: h3: Add HTTP/3 definitions.
4782 - MINOR: qpack: Add QPACK compression.
4783 - MINOR: quic_sock: Finalize the QUIC connections.
4784 - MINOR: quic: Disable the action of ->rcv_buf() xprt callback
4785 - MINOR: quic: Add callbacks for (un)scribing to QUIC xprt.
4786 - MINOR: quic: Variable-length integer encoding/decoding into/from buffer struct.
4787 - BUG/MINOR: quic: Wrong ->accept() error handling
4788 - MINOR: quic: Add a wrapper function to update transport parameters.
4789 - MINOR: quic: Update the streams transport parameters.
4790 - MINOR: quic: Avoid header collisions
4791 - MINOR: quic: Replace max_packet_size by max_udp_payload size.
4792 - MINOR: quic: Enable some quic, h3 and qpack modules compilation.
4793 - MINOR: quic: Move an SSL func call from QUIC I/O handler to the xprt init.
4794 - MINOR: quic: Initialize the session before starting the xprt.
4795 - BUG/MINOR: quic: Do not check the acception of a new conn from I/O handler.
4796 - MINOR: quic: QUIC conn initialization from I/O handler
4797 - MINOR: quic: Remove header protection for conn with context
4798 - MINOR: quic: Derive the initial secrets asap
4799 - MINOR: quic: Remove header protection also for Initial packets
4800 - BUG/MINOR: quic: Wrong memory free in quic_update_ack_ranges_list()
4801 - MINOR: quic: quic_update_ack_ranges_list() code factorization
4802 - MINOR: quic: Useless test in quic_update_ack_ranges_list()
4803 - MINOR: quic: Remove a useless variable in quic_update_ack_ranges_list()
4804 - BUG/MINOR: quic: Missing cases treatement when updating ACK ranges
4805 - CLEAUNUP: quic: Usage of a useless variable in qc_treat_rx_pkts()
4806 - BUG/MINOR: quic: Wrong RX packet reference counter usage
4807 - MINOR: quic: Do not stop the packet parsing too early in qc_treat_rx_packets()
4808 - MINOR: quic: Add a lock for RX packets
4809 - MINOR: quic: Move the connection state
4810 - MINOR: quic: Replace quic_conn_ctx struct by ssl_sock_ctx struct
4811 - MINOR: quic: Replace the RX list of packet by a thread safety one.
4812 - MINOR: quic: Replace the RX unprotected packet list by a thread safety one.
4813 - MINOR: quic: Add useful traces for I/O dgram handler
4814 - MINOR: quic: Do not wakeup the xprt task on ACK receipt
4815 - MINOR: quic: Connection allocations rework
4816 - MINOR: quic: Move conn_prepare() to ->accept_conn() callback
4817 - MINOR: quic: Make qc_lstnr_pkt_rcv() be thread safe.
4818 - MINOR: quic: Add a ring buffer implementation for QUIC
4819 - MINOR: quic: Prefer x25519 as ECDH preferred parametes.
4820 - MINOR: quic: Add the QUIC v1 initial salt.
4821 - BUG/MINOR: quic: Too much reduced computed space to build handshake packets
4822 - MINOR: net_helper: add functions for pointers
4823 - MINOR: quic: Add ring buffer definition (struct qring) for QUIC
4824 - MINOR: proto_quic: Allocate TX ring buffers for listeners
4825 - MINOR: quic: Initialize pointers to TX ring buffer list
4826 - MINOR: quic: Make use of TX ring buffers to send QUIC packets
4827 - MINOR: quic_tls: Make use of the QUIC V1 salt.
4828 - MINOR: quic: Remove old TX buffer implementation
4829 - MINOR: Add function for TX packets reference counting
4830 - MINOR: quic: Add TX packets at the very last time to their tree.
4831 - MINOR: quic: Unitialized mux context upon Client Hello message receipt.
4832 - MINOR: quic: Missing encryption level rx.crypto member initialization and lock.
4833 - MINOR: quic: Rename ->rx.rwlock of quic_enc_level struct to ->rx.pkts_rwlock
4834 - MINOR: quic: Make qc_treat_rx_pkts() be thread safe.
4835 - MINOR: quic: Make ->tx.frms quic_pktns struct member be thread safe
4836 - MINOR: quic: Replace quic_tx_frm struct by quic_frame struct
4837 - MINOR: quic: Add a mask for TX frame builders and their authorized packet types
4838 - MINOR: quic: Add a useful function to compute any frame length.
4839 - MINOR: quic: Add the QUIC connection state to traces
4840 - MINOR: quic: Store post handshake frame in ->pktns.tx.frms MT_LIST
4841 - MINOR: quic: Add the packet type to quic_tx_packet struct
4842 - MINOR: quic: Modify qc_do_build_hdshk_pkt() to accept any packet type
4843 - MINOR: quic: Atomically handle packet number space ->largest_acked_pn variable
4844 - MINOR: quic: Modify qc_build_cfrms() to support any frame
4845 - MINOR: quic: quic_conn_io_cb() task rework
4846 - MINOR: quic: Make qc_build_hdshk_pkt() atomically consume a packet number
4847 - MINOR: quic: qc_do_build_hdshk_pkt() does not need to pass a copy of CRYPTO frame
4848 - MINOR: quic: Remove Application level related functions
4849 - MINOR: quic: Rename functions which do not build only Handshake packets
4850 - MINOR: quic: Make circular buffer internal buffers be variable-sized.
4851 - MINOR: quic: Add a pool for TX ring buffer internal buffer
4852 - MINOR: quic: Make use of the last cbuf API when initializing TX ring buffers
4853 - MINOR: quic: Missing acks encoded size updates.
4854 - MINOR: quic: Evaluate the packet lengths in advance
4855 - MINOR: quic: Update the TLS extension for QUIC transport parameters
4856 - MINOR: quic: Fix handshake state debug strings
4857 - MINOR: quic: Atomically get/set the connection state
4858 - MINOR: quic: Missing QUIC encryption level for qc_build_pkt()
4859 - MINOR: quic: Coalesce Application level packets with Handshake packets.
4860 - MINOR: quic: Wrong flags handling for acks
4861 - MINOR: quic: Missing case when discarding HANDSHAKE secrets
4862 - MINOR: quic: Post handshake packet building improvements
4863 - MINOR: quic: Prepare Application level packet asap.
4864 - MINOR: h3: Send h3 settings asap
4865 - MINOR: quic: Wrong STREAM frame length computing
4866 - MINOR: quic: Wrong short packet minimum length
4867 - MINOR: quic: Prepare STREAM frames to fill QUIC packets
4868 - MINOR: h3: change default settings
4869 - MINOR: quic-enc: fix varint encoding
4870 - MINOR: qpack: fix wrong comment
4871 - MINOR: qpack: generate headers list on decoder
4872 - MINOR: h3: parse headers to htx
4873 - MINOR: h3: allocate stream on headers
4874 - MEDIUM: mux-quic: implement ring buffer on stream tx
4875 - MINOR: mux-quic: send SETTINGS on uni stream
4876 - MINOR: h3: define snd_buf callback and divert mux ops
4877 - MINOR: mux-quic: define FIN stream flag
4878 - MINOR: qpack: create qpack-enc module
4879 - MINOR: qpack: encode headers functions
4880 - MINOR: h3: encode htx headers to QPACK
4881 - MINOR: h3: send htx data
4882 - MINOR: h3/mux: detect fin on last h3 frame of the stream
4883 - MINOR: quic: Shorten some handshakes
4884 - MINOR: quic: Make QUIC-TLS support at least two initial salts
4885 - MINOR: quic: Attach the QUIC connection to a thread.
4886 - MINOR: quic: Missing active_connection_id_limit default value
4887 - MINOR: quic_sock: Do not flag QUIC connections as being set
4888 - MINOR: buf: Add b_force_xfer() function
4889 - MINOR: quic: Make use of buffer structs to handle STREAM frames
4890 - MINOR: mux_quic: move qc_process() code to qc_send()
4891 - MINOR: quic: Add a typedef for unsigned long long
4892 - MINOR: quic: Confusion between TX/RX for the frame builders
4893 - MINOR: quic: Wrong packet flags settings during frame building
4894 - MINOR: quic: Constantness fixes for frame builders/parsers.
4895 - MINOR: quic_tls: Client/serveur state reordering
4896 - MINOR: quic: Wrong packet loss detection due to wrong pktns order
4897 - MINOR: quic: Wrong packet number space selection in quic_loss_pktns()
4898 - MINOR: quic: Initial packet number spaced not discarded
4899 - MINOR: quic: Add useful trace about pktns discarding
4900 - MINOR: mux_quic: Export the mux related flags
4901 - MINOR: quic: Implement quic_conn_subscribe()
4902 - MINOR: quic: Wake up the mux upon ACK receipt
4903 - MINOR: quic: Stream FIN bit fix in qcs_push_frame()
4904 - MINOR: quic: Implement qc_process_mux()
4905 - MINOR: quic: Wake up the xprt from mux
4906 - CLEANUP: quic: Remove useless inline functions
4907 - MINOR: quic: RX packets memory leak
4908 - MINOR: quic: Possible endless loop in qc_treat_rx_pkts()
4909 - MINOR: quic: Crash upon too big packets receipt
4910 - MINOR: quic: define close handler
4911 - MEDIUM: quic: implement mux release/conn free
4912 - MINOR: quic: fix qcc subs initialization
4913 - BUG/MINOR: h1-htx: Fix a typo when request parser is reset
4914 - BUG/MEDIUM: mux-h1: Adjust conditions to ask more space in the channel buffer
4915 - BUG/MEDIUM: stream-int: Notify stream that the mux wants more room to xfer data
4916 - BUG/MEDIUM: stream: Stop waiting for more data if SI is blocked on RXBLK_ROOM
4917 - MINOR: stream-int: Set CO_RFL transient/persistent flags apart in si_cs_rcv()
4918 - MINOR: htx: Add an HTX flag to know when a message is fragmented
4919 - MINOR: htx: Add a function to know if the free space wraps
4920 - BUG/MEDIUM: stream-int: Defrag HTX message in si_cs_recv() if necessary
4921 - MINOR: stream-int: Notify mux when the buffer is not stuck when calling rcv_buf
4922 - BUG/MINOR: http-ana: increment internal_errors counter on response error
4923 - MINOR: stats: Enable dark mode on stat web page
4924 - CLEANUP: stats: Fix some alignment mistakes
4925 - MINOR: httpclient: httpclient_data() returns the available data
4926 - MINOR: httpclient: httpclient_ended() returns 1 if the client ended
4927 - MINOR: httpclient/lua: httpclient:get() API in lua
4928 - MINOR: httpclient/lua: implement the headers in the response object
4929 - BUG/MINOR: httpclient/lua: return an error on argument check
4930 - CLEANUP: slz: Mark `reset_refs` as static
4931
Willy Tarreau4b3a9fe2021-09-12 11:36:38 +020049322021/09/12 : 2.5-dev7
4933 - BUG/MINOR: config: reject configs using HTTP with bufsize >= 256 MB
4934 - CLEANUP: htx: remove comments about "must be < 256 MB"
4935 - BUG/MAJOR: htx: fix missing header name length check in htx_add_header/trailer
4936 - Revert "BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive"
4937 - MINOR: proxy: add a global "grace" directive to postpone soft-stop
4938 - MINOR: vars: rename vars_init() to vars_init_head()
4939 - CLEANUP: vars: rename sample_clear_stream() to var_unset()
4940 - REORG: vars: remerge sample_store{,_stream}() into var_set()
4941 - MEDIUM: vars: make the ifexist variant of set-var only apply to the proc scope
4942 - MINOR: vars: add a VF_CREATEONLY flag for creation
4943 - MINOR: vars: support storing empty sample data with a variable
4944 - MINOR: vars: store flags into variables and add VF_PERMANENT
4945 - MEDIUM: vars: make var_clear() only reset VF_PERMANENT variables
4946 - MEDIUM: vars: pre-create parsed SCOPE_PROC variables as permanent ones
4947 - MINOR: vars: preset a random seed to hash variables names
4948 - MEDIUM: vars: replace the global name index with a hash
4949 - CLEANUP: vars: remove the now unused var_names array
4950 - MINOR: vars: centralize the lock/unlock into static inlines
4951 - OPTIM: vars: only takes the variables lock on shared entries
4952 - OPTIM: vars: remove internal bookkeeping for vars_global_size
4953 - OPTIM: vars: do not keep variables usage stats if no limit is set
4954 - BUILD: fix dragonfly build again on __read_mostly
4955 - CI: Github Actions: temporarily disable Opentracing
4956 - BUG/MEDIUM: mux-h1: Remove "Upgrade:" header for requests with payload
4957 - MINOR: htx: Skip headers with no value when adding a header list to a message
4958 - CLEANUP: mux-h1: Remove condition rejecting upgrade requests with payload
4959 - BUG/MEDIUM: stream-int: Don't block SI on a channel policy if EOI is reached
4960 - BUG/MEDIUM: http-ana: Reset channels analysers when returning an error
4961 - BUG/MINOR: filters: Set right FLT_END analyser depending on channel
4962 - CLEANUP: Add haproxy/xxhash.h to avoid modifying import/xxhash.h
4963 - CLEANUP: ebmbtree: Replace always-taken elseif by else
4964 - CLEANUP: Move XXH3 macro from haproxy/compat.h to haproxy/xxhash.h
4965 - BUILD: opentracing: exclude the use of haproxy variables for the OpenTracing context
4966 - BUG/MINOR: opentracing: enable the use of http headers without a set value
4967 - CLEANUP: opentracing: use the haproxy function to generate uuid
4968 - MINOR: opentracing: change the scope of the variable 'ot.uuid' from 'sess' to 'txn'
4969 - CI: Github Actions: re-enable Opentracing
4970 - CLEANUP: opentracing: simplify the condition on the empty header
4971 - BUG/MEDIUM lua: Add missing call to RESET_SAFE_LJMP in hlua_filter_new()
4972
Willy Tarreauf653e832021-09-03 15:19:56 +020049732021/09/03 : 2.5-dev6
4974 - BUG/MINOR threads: Use get_(local|gm)time instead of (local|gm)time
4975 - BUG/MINOR: tools: Fix loop condition in dump_text()
4976 - BUILD: ssl: next round of build warnings on LIBRESSL_VERSION_NUMBER
4977 - BUILD: ssl: fix two remaining occurrences of #if USE_OPENSSL
4978 - BUILD: tools: properly guard __GLIBC__ with defined()
4979 - BUILD: globally enable -Wundef
4980 - MINOR: log: Remove log-error-via-logformat option
4981 - MINOR: log: Add new "error-log-format" option
4982 - BUG/MAJOR: queue: better protect a pendconn being picked from the proxy
4983 - CLEANUP: Add missing include guard to signal.h
4984 - MINOR: ssl: Add new ssl_bc_hsk_err sample fetch
4985 - MINOR: connection: Add a connection error code sample fetch for backend side
4986 - REGTESTS: ssl: Add tests for bc_conn_err and ssl_bc_hsk_err sample fetches
4987 - MINOR: http-rules: add a new "ignore-empty" option to redirects.
4988 - CI: Github Actions: temporarily disable BoringSSL builds
4989 - BUG/MINOR: vars: fix set-var/unset-var exclusivity in the keyword parser
4990 - BUG/MINOR: vars: improve accuracy of the rules used to check expression validity
4991 - MINOR: sample: add missing ARGC_ entries
4992 - BUG/MINOR: vars: properly set the argument parsing context in the expression
4993 - DOC: configuration: remove wrong tcp-request examples in tcp-response
4994 - MEDIUM: vars: add a new "set-var-fmt" action
4995 - BUG/MEDIUM: vars: run over the correct list in release_store_rules()
4996 - BUG/MINOR: vars: truncate the variable name in error reports about scope.
4997 - BUG/MINOR: vars: do not talk about global section in CLI errors for set-var
4998 - CLEANUP: vars: name the temporary proxy "CFG" instead of "CLI" for global vars
4999 - MINOR: log: make log-format expressions completely usable outside of req/resp
5000 - MINOR: vars: add a "set-var-fmt" directive to the global section
5001 - MEDIUM: vars: also support format strings in CLI's "set var" command
5002 - CLEANUP: vars: factor out common code from vars_get_by_{desc,name}
5003 - MINOR: vars: make vars_get_by_* support an optional default value
5004 - MINOR: vars: make the vars() sample fetch function support a default value
5005 - BUILD: ot: add argument for default value to vars_get_by_name()
5006
Willy Tarreau446344c2021-08-28 13:46:11 +020050072021/08/28 : 2.5-dev5
5008 - MINOR: httpclient: initialize the proxy
5009 - MINOR: httpclient: implement a simple HTTP Client API
5010 - MINOR: httpclient/cli: implement a simple client over the CLI
5011 - MINOR: httpclient/cli: change the User-Agent to "HAProxy"
5012 - MEDIUM: ssl: Keep a reference to the client's certificate for use in logs
5013 - BUG/MEDIUM: h2: match absolute-path not path-absolute for :path
5014 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
5015 - MINOR: server: check if srv is NULL in free_server()
5016 - MINOR: proxy: check if p is NULL in free_proxy()
5017 - BUG/MEDIUM: cfgparse: do not allocate IDs to automatic internal proxies
5018 - BUG/MINOR: http_client: make sure to preset the proxy's default settings
5019 - REGTESTS: http_upgrade: fix incorrect expectation on TCP->H1->H2
5020 - REGTESTS: abortonclose: after retries, 503 is expected, not close
5021 - REGTESTS: server: fix agent-check syntax and expectation
5022 - BUG/MINOR: httpclient: fix uninitialized sl variable
5023 - BUG/MINOR: httpclient/cli: change the appctx test in the callbacks
5024 - BUG/MINOR: httpclient: check if hdr_num is not 0
5025 - MINOR: httpclient: cleanup the include files
5026 - MINOR: hlua: take the global Lua lock inside a global function
5027 - MINOR: tools: add FreeBSD support to get_exec_path()
5028 - BUG/MINOR: systemd: ExecStartPre must use -Ws
5029 - MINOR: systemd: remove the ExecStartPre line in the unit file
5030 - MINOR: ssl: add an openssl version string parser
5031 - MINOR: cfgcond: implements openssl_version_atleast and openssl_version_before
5032 - CLEANUP: ssl: remove useless check on p in openssl_version_parser()
5033 - BUG/MINOR: stick-table: fix the sc-set-gpt* parser when using expressions
5034 - BUG/MINOR: httpclient: remove deinit of the httpclient
5035 - BUG/MEDIUM: base64: check output boundaries within base64{dec,urldec}
5036 - MINOR: httpclient: set verify none on the https server
5037 - MINOR: httpclient: add the server to the proxy
5038 - BUG/MINOR: httpclient: fix Host header
5039 - BUILD: httpclient: fix build without OpenSSL
5040 - CI: github-actions: remove obsolete options
5041 - CLEANUP: assorted typo fixes in the code and comments
5042 - MINOR: proc: setting the process to produce a core dump on FreeBSD.
5043 - BUILD: adopt script/build-ssl.sh for OpenSSL-3.0.0beta2
5044 - MINOR: server: return the next srv instance on free_server
5045 - BUG/MINOR: stats: use refcount to protect dynamic server on dump
5046 - MEDIUM: server: extend refcount for all servers
5047 - MINOR: server: define non purgeable server flag
5048 - MINOR: server: mark referenced servers as non purgeable
5049 - MINOR: server: mark servers referenced by LUA script as non purgeable
5050 - MEDIUM: server: allow to remove servers at runtime except non purgeable
5051 - BUG/MINOR: base64: base64urldec() ignores padding in output size check
5052 - REGTEST: add missing lua requirements on server removal test
5053 - REGTEST: fix haproxy required version for server removal test
5054 - BUG/MINOR: proxy: don't dump servers of internal proxies
5055 - REGTESTS: Use `feature cmd` for 2.5+ tests
5056 - REGTESTS: Remove REQUIRE_VERSION=1.5 from all tests
5057 - BUG/MINOR: resolvers: mark servers with name-resolution as non purgeable
5058 - MINOR: compiler: implement an ONLY_ONCE() macro
5059 - BUG/MINOR: lua: use strlcpy2() not strncpy() to copy sample keywords
5060 - MEDIUM: ssl: Capture more info from Client Hello
5061 - MINOR: sample: Expose SSL captures using new fetchers
5062 - MINOR: sample: Add be2dec converter
5063 - MINOR: sample: Add be2hex converter
5064 - MEDIUM: config: Deprecate tune.ssl.capture-cipherlist-size
5065 - BUG/MINOR: time: fix idle time computation for long sleeps
5066 - MINOR: time: add report_idle() to report process-wide idle time
5067 - BUG/MINOR: ebtree: remove dependency on incorrect macro for bits per long
5068 - BUILD: activity: use #ifdef not #if on USE_MEMORY_PROFILING
5069 - BUILD/MINOR: defaults: eliminate warning on MAXHOSTNAMELEN with -Wundef
5070 - BUILD/MINOR: ssl: avoid a build warning on LIBRESSL_VERSION with -Wundef
5071 - IMPORT: slz: silence a build warning with -Wundef
5072 - BUILD/MINOR: regex: avoid a build warning on USE_PCRE2 with -Wundef
5073
Willy Tarreau08d0f232021-08-17 14:08:55 +020050742021/08/17 : 2.5-dev4
5075 - MINOR: log: rename 'dontloglegacyconnerr' to 'log-error-via-logformat'
5076 - MINOR: doc: rename conn_status in `option httsplog`
5077 - MINOR: proxy: disabled takes a stopping and a disabled state
5078 - MINOR: stats: shows proxy in a stopped state
5079 - BUG/MINOR: server: fix race on error path of 'add server' CLI if track
5080 - CLEANUP: thread: fix fantaisist indentation of thread_harmless_till_end()
5081 - MINOR: threads: make thread_release() not wait for other ones to complete
5082 - MEDIUM: threads: add a stronger thread_isolate_full() call
5083 - MEDIUM: servers: make the server deletion code run under full thread isolation
5084 - BUG/MINOR: server: remove srv from px list on CLI 'add server' error
5085 - MINOR: activity/fd: remove the dead_fd counter
5086 - MAJOR: fd: get rid of the DWCAS when setting the running_mask
5087 - CLEANUP: fd: remove the now unused fd_set_running()
5088 - CLEANUP: fd: remove the now unneeded fd_mig_lock
5089 - BUG/MINOR: server: update last_change on maint->ready transitions too
5090 - MINOR: spoe: Add a pointer on the filter config in the spoe_agent structure
5091 - BUG/MEDIUM: spoe: Create a SPOE applet if necessary when the last one is released
5092 - BUG/MEDIUM: spoe: Fix policy to close applets when SPOE connections are queued
5093 - MINOR: server: unmark deprecated on enable health/agent cli
5094 - MEDIUM: task: implement tasklet kill
5095 - MINOR: server: initialize fields for dynamic server check
5096 - MINOR: check: allocate default check ruleset for every backends
5097 - MINOR: check: export check init functions
5098 - MINOR: check: do not increment global maxsock at runtime
5099 - MINOR: server: implement a refcount for dynamic servers
5100 - MEDIUM: check: implement check deletion for dynamic servers
5101 - MINOR: check: enable safe keywords for dynamic servers
5102 - MEDIUM: server: implement check for dynamic servers
5103 - MEDIUM: server: implement agent check for dynamic servers
5104 - REGTESTS: server: add dynamic check server test
5105 - MINOR: doc: specify ulimit-n usage for dynamic servers
5106 - REGTESTS: server: fix dynamic server with checks test
5107 - CI: travis-ci: temporarily disable arm64 builds
5108 - BUG/MINOR: check: test if server is not null in purge
5109 - MINOR: global: define MODE_STOPPING
5110 - BUG/MINOR: server: do not use refcount in free_server in stopping mode
5111 - ADMIN: dyncookie: implement a simple dynamic cookie calculator
5112 - BUG/MINOR: check: do not reset check flags on purge
5113 - BUG/MINOR: check: fix leak on add dynamic server with agent-check error
5114 - BUG/MEDIUM: check: fix leak on agent-check purge
5115 - BUG/MEDIUM: server: support both check/agent-check on a dynamic instance
5116 - BUG/MINOR: buffer: fix buffer_dump() formatting
5117 - MINOR: channel: remove an htx block from a channel
5118 - BUG/MINOR: tcpcheck: Properly detect pending HTTP data in output buffer
5119 - BUG/MINOR: stream: Don't release a stream if FLT_END is still registered
5120 - MINOR: lua: Add a flag on lua context to know the yield capability at run time
5121 - BUG/MINOR: lua: Yield in channel functions only if lua context can yield
5122 - BUG/MINOR: lua: Don't yield in channel.append() and channel.set()
5123 - MINOR: filters/lua: Release filters before the lua context
5124 - MINOR: lua: Add a function to get a reference on a table in the stack
5125 - MEDIUM: lua: Process buffer data using an offset and a length
5126 - MEDIUM: lua: Improve/revisit the lua api to manipulate channels
5127 - DOC: Improve the lua documentation
5128 - MEDIUM: filters/lua: Add support for dummy filters written in lua
5129 - MINOR: lua: Add a function to get a filter attached to a channel class
5130 - MINOR: lua: Add flags on the lua TXN to know the execution context
5131 - MEDIUM: filters/lua: Be prepared to filter TCP payloads
5132 - MEDIUM: filters/lua: Support declaration of some filter callback functions in lua
5133 - MEDIUM: filters/lua: Add HTTPMessage class to help HTTP filtering
5134 - MINOR: filters/lua: Add request and response HTTP messages in the lua TXN
5135 - MINOR: filters/lua: Support the HTTP filtering from filters written in lua
5136 - DOC: config: Fix 'http-response send-spoe-group' documentation
5137 - BUG/MINOR: lua: Properly check negative offset in Channel/HttpMessage functions
5138 - BUG/MINOR: lua: Properly catch alloc errors when parsing lua filter directives
5139 - BUG/MEDIUM: cfgcheck: verify existing log-forward listeners during config check
5140 - MINOR: cli: delare the CLI frontend as an internal proxy
5141 - MINOR: proxy: disable warnings for internal proxies
5142 - BUG/MINOR: filters: Always set FLT_END analyser when CF_FLT_ANALYZE flag is set
5143 - BUG/MINOR: lua/filters: Return right code when txn:done() is called
5144 - DOC: lua-api: Add documentation about lua filters
5145 - CI: Remove obsolete USE_SLZ=1 CI job
5146 - CLEANUP: assorted typo fixes in the code and comments
5147 - CI: github actions: relax OpenSSL-3.0.0 version comparision
5148 - BUILD: tools: get the absolute path of the current binary on NetBSD.
5149 - DOC: Minor typo fix - 'question mark' -> 'exclamation mark'
5150 - DOC/MINOR: fix typo in management document
5151 - MINOR: http: add a new function http_validate_scheme() to validate a scheme
5152 - BUG/MAJOR: h2: verify early that non-http/https schemes match the valid syntax
5153 - BUG/MAJOR: h2: verify that :path starts with a '/' before concatenating it
5154 - BUG/MAJOR: h2: enforce stricter syntax checks on the :method pseudo-header
5155 - BUG/MEDIUM: h2: give :authority precedence over Host
5156 - REGTESTS: add a test to prevent h2 desync attacks
5157
Willy Tarreau8441deb2021-08-01 18:19:51 +020051582021/08/01 : 2.5-dev3
5159 - BUG/MINOR: arg: free all args on make_arg_list()'s error path
5160 - BUG/MINOR: cfgcond: revisit the condition freeing mechanism to avoid a leak
5161 - MEDIUM: proxy: remove long-broken 'option http_proxy'
5162 - CLEANUP: http_ana: Remove now unused label from http_process_request()
5163 - MINOR: deinit: always deinit the init_mutex on failed initialization
5164 - BUG/MEDIUM: cfgcond: limit recursion level in the condition expression parser
5165 - BUG/MEDIUM: mworker: do not register an exit handler if exit is expected
5166 - BUG/MINOR: mworker: do not export HAPROXY_MWORKER_REEXEC across programs
5167 - BUILD/MINOR: memprof fix macOs build.
5168 - BUG/MEDIUM: ssl_sample: fix segfault for srv samples on invalid request
5169 - BUG/MINOR: stats: Add missing agent stats on servers
5170 - BUG/MINOR: check: fix the condition to validate a port-less server
5171 - BUILD: threads: fix pthread_mutex_unlock when !USE_THREAD
5172 - BUG/MINOR: resolvers: Use a null-terminated string to lookup in servers tree
5173 - MINOR: ssl: use __objt_* variant when retrieving counters
5174 - BUG/MINOR: systemd: must check the configuration using -Ws
5175 - BUG/MINOR: mux-h1: Obey dontlognull option for empty requests
5176 - BUG/MINOR: mux-h2: Obey dontlognull option during the preface
5177 - BUG/MINOR: mux-h1: Be sure to swap H1C to splice mode when rcv_pipe() is called
5178 - BUG/MEDIUM: mux-h2: Handle remaining read0 cases on partial frames
5179 - MINOR: proxy: rename PR_CAP_LUA to PR_CAP_INT
5180 - MINOR: mworker: the mworker CLI proxy is internal
5181 - MINOR: stats: don't output internal proxies (PR_CAP_INT)
5182 - CLEANUP: mworker: use the proxy helper functions in mworker_cli_proxy_create()
5183 - CLEANUP: mworker: PR_CAP already initialized with alloc_new_proxy()
5184 - BUG/MINOR: connection: Add missing error labels to conn_err_code_str
5185 - MINOR: connection: Add a connection error code sample fetch
5186 - MINOR: ssl: Enable error fetches in case of handshake error
5187 - MINOR: ssl: Add new ssl_fc_hsk_err sample fetch
5188 - MINOR: ssl: Define a default https log format
5189 - MEDIUM: connection: Add option to disable legacy error log
5190 - REGTESTS: ssl: Add tests for the connection and SSL error fetches
5191 - REGTESTS: ssl: ssl_errors.vtc does not work with old openssl version
5192 - BUG/MEDIUM: connection: close a rare race between idle conn close and takeover
5193 - BUG/MEDIUM: pollers: clear the sleeping bit after waking up, not before
5194 - BUG/MINOR: select: fix excess number of dead/skip reported
5195 - BUG/MINOR: poll: fix abnormally high skip_fd counter
5196 - BUG/MINOR: pollers: always program an update for migrated FDs
5197 - BUG/MINOR: fd: protect fd state harder against a concurrent takeover
5198 - DOC: internals: document the FD takeover process
5199 - MINOR: fd: update flags only once in fd_update_events()
5200 - MINOR: poll/epoll: move detection of RDHUP support earlier
5201 - REORG: fd: uninline fd_update_events()
5202 - MEDIUM: fd: rely more on fd_update_events() to detect changes
5203 - BUG/MINOR: freq_ctr: use stricter barriers between updates and readings
5204 - MEDIUM: atomic: simplify the atomic load/store/exchange operations
5205 - MEDIUM: atomic: relax the load/store barriers on x86_64
5206 - BUILD: opentracing: fixed build when using pkg-config utility
5207
Willy Tarreaubccc91d2021-07-17 12:35:11 +020052082021/07/17 : 2.5-dev2
5209 - BUILD/MEDIUM: tcp: set-mark support for OpenBSD
5210 - DOC: config: use CREATE USER for mysql-check
5211 - BUG/MINOR: stick-table: fix several printf sign errors dumping tables
5212 - BUG/MINOR: peers: fix data_type bit computation more than 32 data_types
5213 - MINOR: stick-table: make skttable_data_cast to use only std types
5214 - MEDIUM: stick-table: handle arrays of standard types into stick-tables
5215 - MEDIUM: peers: handle arrays of std types in peers protocol
5216 - DOC: stick-table: add missing documentation about gpt0 stored type
5217 - MEDIUM: stick-table: add the new array of gpt data_type
5218 - MEDIUM: stick-table: make the use of 'gpt' excluding the use of 'gpt0'
5219 - MEDIUM: stick-table: add the new arrays of gpc and gpc_rate
5220 - MEDIUM: stick-table: make the use of 'gpc' excluding the use of 'gpc0/1''
5221 - BUG/MEDIUM: sock: make sure to never miss early connection failures
5222 - BUG/MINOR: cli: fix server name output in "show fd"
5223 - Revert "MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules"
5224 - MEDIUM: stats: include disabled proxies that hold active sessions to stats
5225 - BUILD: stick-table: shut up invalid "uninitialized" warning in gcc 8.3
5226 - MINOR: http: implement http_get_scheme
5227 - MEDIUM: http: implement scheme-based normalization
5228 - MEDIUM: h1-htx: apply scheme-based normalization on h1 requests
5229 - MEDIUM: h2: apply scheme-based normalization on h2 requests
5230 - REGTESTS: add http scheme-based normalization test
5231 - BUILD: http_htx: fix ci compilation error with isdigit for Windows
5232 - MINOR: http: implement http uri parser
5233 - MINOR: http: use http uri parser for scheme
5234 - MINOR: http: use http uri parser for authority
5235 - REORG: http_ana: split conditions for monitor-uri in wait for request
5236 - MINOR: http: use http uri parser for path
5237 - BUG/MEDIUM: http_ana: fix crash for http_proxy mode during uri rewrite
5238 - MINOR: mux_h2: define config to disable h2 websocket support
5239 - CLEANUP: applet: remove unused thread_mask
5240 - BUG/MINOR: ssl: Default-server configuration ignored by server
5241 - BUILD: add detection of missing important CFLAGS
5242 - BUILD: lua: silence a build warning with TCC
5243 - MINOR: srv: extract tracking server config function
5244 - MINOR: srv: do not allow to track a dynamic server
5245 - MEDIUM: server: support track keyword for dynamic servers
5246 - REGTESTS: test track support for dynamic servers
5247 - MINOR: init: verify that there is a single word on "-cc"
5248 - MINOR: init: make -cc support environment variables expansion
5249 - MINOR: arg: add a free_args() function to free an args array
5250 - CLEANUP: config: use free_args() to release args array in cfg_eval_condition()
5251 - CLEANUP: hlua: use free_args() to release args arrays
5252 - REORG: config: move the condition preprocessing code to its own file
5253 - MINOR: cfgcond: start to split the condition parser to introduce terms
5254 - MEDIUM: cfgcond: report invalid trailing chars after expressions
5255 - MINOR: cfgcond: remerge all arguments into a single line
5256 - MINOR: cfgcond: support negating conditional expressions
5257 - MINOR: cfgcond: make the conditional term parser automatically allocate nodes
5258 - MINOR: cfgcond: insert an expression between the condition and the term
5259 - MINOR: cfgcond: support terms made of parenthesis around expressions
5260 - REGTEST: make check_condition.vtc fail as soon as possible
5261 - REGTESTS: add more complex check conditions to check_conditions.vtc
5262 - BUG/MEDIUM: init: restore behavior of command-line "-m" for memory limitation
5263
Willy Tarreau96a2f502021-06-30 16:16:14 +020052642021/06/30 : 2.5-dev1
5265 - CLEANUP: ssl: Move ssl_store related code to ssl_ckch.c
5266 - MINOR: ssl: Allow duplicated entries in the cafile_tree
5267 - MEDIUM: ssl: Chain ckch instances in ca-file entries
5268 - MINOR: ssl: Add reference to default ckch instance in bind_conf
5269 - MINOR: ssl: Add helper functions to create/delete cafile entries
5270 - MEDIUM: ssl: Add a way to load a ca-file content from memory
5271 - MINOR: ssl: Add helper function to add cafile entries
5272 - MINOR: ssl: Ckch instance rebuild and cleanup factorization in CLI handler
5273 - MEDIUM: ssl: Add "set+commit ssl ca-file" CLI commands
5274 - REGTESTS: ssl: Add new ca-file update tests
5275 - MINOR: ssl: Add "abort ssl ca-file" CLI command
5276 - MINOR: ssl: Add a cafile_entry type field
5277 - MINOR: ssl: Refactorize the "show certificate details" code
5278 - MEDIUM: ssl: Add "show ssl ca-file" CLI command
5279 - MEDIUM: ssl: Add "new ssl ca-file" CLI command
5280 - MINOR: ssl: Add "del ssl ca-file" CLI command
5281 - REGTESTS: ssl: Add "new/del ssl ca-file" tests
5282 - DOC: ssl: Add documentation about CA file hot update commands
5283 - DOC: internals: update the SSL architecture schema
5284 - MINOR: ssl: Chain instances in ca-file entries
5285 - MEDIUM: ssl: Add "set+commit ssl crl-file" CLI commands
5286 - MEDIUM: ssl: Add "new+del crl-file" CLI commands
5287 - MINOR: ssl: Add "abort ssl crl-file" CLI command
5288 - MEDIUM: ssl: Add "show ssl crl-file" CLI command
5289 - REGTESTS: ssl: Add "new/del ssl crl-file" tests
5290 - REGTESTS: ssl: Add "set/commit ssl crl-file" test
5291 - DOC: ssl: Add documentation about CRL file hot update commands
5292 - BUILD/MINOR: ssl: Fix compilation with SSL enabled
5293 - BUILD/MINOR: ssl: Fix compilation with OpenSSL 1.0.2
5294 - CI: introduce scripts/build-vtest.sh for installing VTest
5295 - CLEANUP: ssl: Fix coverity issues found in CA file hot update code
5296 - CI: github actions: add OpenTracing builds
5297 - BUG/MEDIUM: ebtree: Invalid read when looking for dup entry
5298 - BUG/MAJOR: server: prevent deadlock when using 'set maxconn server'
5299 - BUILD/MINOR: opentracing: fixed build when using clang
5300 - BUG/MEDIUM: filters: Exec pre/post analysers only one time per filter
5301 - BUG/MINOR: http-comp: Preserve HTTP_MSGF_COMPRESSIONG flag on the response
5302 - MINOR: map/acl: print the count of all the map/acl entries in "show map/acl"
5303 - CLEANUP: pattern: remove export of non-existent function pattern_delete()
5304 - MINOR: h1-htx: Update h1 parsing functions to return result as a size_t
5305 - MEDIUM: h1-htx: Adapt H1 data parsing to copy wrapping data in one call
5306 - MINOR: mux-h1/mux-fcgi: Don't needlessly loop on data parsing
5307 - MINOR: h1-htx: Move HTTP chunks parsing into a dedicated function
5308 - MEDIUM: h1-htx: Split function to parse a chunk and the loop on the buffer
5309 - MEDIUM: h1-htx: Add a function to parse contiguous small chunks
5310 - MINOR: h1-htx: Use a correlation table to speed-up small chunks parsing
5311 - MINOR: buf: Add function to realign a buffer with a specific head position
5312 - MINOR: muxes/h1-htx: Realign input buffer using b_slow_realign_ofs()
5313 - CLEANUP: mux-h1: Rename functions parsing input buf and filling output buf
5314 - Revert "MEDIUM: http-ana: Deal with L7 retries in HTTP analysers"
5315 - BUG/MINOR: http-ana: Send the right error if max retries is reached on L7 retry
5316 - BUG/MINOR: http-ana: Handle L7 retries on refused early data before K/A aborts
5317 - MINOR: http-ana: Perform L7 retries because of status codes in response analyser
5318 - MINOR: cfgparse: Fail when encountering extra arguments in macro
5319 - DOC: intro: Fix typo in starter guide
5320 - BUG/MINOR: server: Missing calloc return value check in srv_parse_source
5321 - BUG/MINOR: peers: Missing calloc return value check in peers_register_table
5322 - BUG/MINOR: ssl: Missing calloc return value check in ssl_init_single_engine
5323 - BUG/MINOR: http: Missing calloc return value check in parse_http_req_capture
5324 - BUG/MINOR: proxy: Missing calloc return value check in proxy_parse_declare
5325 - BUG/MINOR: proxy: Missing calloc return value check in proxy_defproxy_cpy
5326 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request/tcp-response
5327 - BUG/MINOR: http: Missing calloc return value check while parsing tcp-request rule
5328 - BUG/MINOR: compression: Missing calloc return value check in comp_append_type/algo
5329 - BUG/MINOR: worker: Missing calloc return value check in mworker_env_to_proc_list
5330 - BUG/MINOR: http: Missing calloc return value check while parsing redirect rule
5331 - BUG/MINOR: http: Missing calloc return value check in make_arg_list
5332 - BUG/MINOR: proxy: Missing calloc return value check in chash_init_server_tree
5333 - CLEANUP: http-ana: Remove useless if statement about L7 retries
5334 - BUG/MAJOR: stream-int: Release SI endpoint on server side ASAP on retry
5335 - MINOR: backend: Don't release SI endpoint anymore in connect_server()
5336 - BUG/MINOR: vars: Be sure to have a session to get checks variables
5337 - DOC/MINOR: move uuid in the configuration to the right alphabetical order
5338 - CLEANUP: mux-fcgi: Don't needlessly store result of data/trailers parsing
5339 - BUILD: fix compilation for OpenSSL-3.0.0-alpha17
5340 - MINOR: http-ana: Use -1 status for client aborts during queuing and connect
5341 - REGTESTS: Fix http_abortonclose.vtc to support -1 status for some client aborts
5342 - CLEANUP: backend: fix incorrect comments on locking conditions for lb functions
5343 - CLEANUP: reg-tests: Remove obsolete no-htx parameter for reg-tests
5344 - CI: github actions: add OpenSSL-3.0.0 builds
5345 - CI: github actions: -Wno-deprecated-declarations with OpenSSL 3.0.0
5346 - MINOR: errors: allow empty va_args for diag variadic macro
5347 - REORG: errors: split errors reporting function from log.c
5348 - CLEANUP: server: fix cosmetic of error message on sni parsing
5349 - MEDIUM: errors: implement user messages buffer
5350 - MINOR: log: do not discard stderr when starting is over
5351 - MEDIUM: errors: implement parsing context type
5352 - MINOR: errors: use user messages context in print_message
5353 - MINOR: log: display exec path on first warning
5354 - MINOR: errors: specify prefix "config" for parsing output
5355 - MINOR: log: define server user message format
5356 - REORG: server: use parsing ctx for server parsing
5357 - REORG: config: use parsing ctx for server config check
5358 - MINOR: server: use parsing ctx for server init addr
5359 - MINOR: server: use ha_alert in server parsing functions
5360 - DOC: use the req.ssl_sni in examples
5361 - CLEANUP: cfgparse: Remove duplication of `MAX_LINE_ARGS + 1`
5362 - CLEANUP: tools: Make errptr const in `parse_line()`
5363 - MINOR: haproxy: Add `-cc` argument
5364 - BUG: errors: remove printf positional args for user messages context
5365 - CI: Make matrix.py executable and add shebang
5366 - BUILD: make tune.ssl.keylog available again
5367 - BUG/MINOR: ssl: OCSP stapling does not work if expire too far in the future
5368 - Revert "BUG/MINOR: opentracing: initialization after establishing daemon mode"
5369 - BUG/MEDIUM: opentracing: initialization before establishing daemon and/or chroot mode
5370 - SCRIPTS: opentracing: enable parallel builds in build-ot.sh
5371 - BUG/MEDIUM: compression: Fix loop skipping unused blocks to get the next block
5372 - BUG/MEDIUM: compression: Properly get the next block to iterate on payload
5373 - BUG/MEDIUM: compression: Add a flag to know the filter is still processing data
5374 - MINOR: ssl: Keep the actual key length in the certificate_ocsp structure
5375 - MINOR: ssl: Add new "show ssl ocsp-response" CLI command
5376 - MINOR: ssl: Add the OCSP entry key when displaying the details of a certificate
5377 - MINOR: ssl: Add the "show ssl cert foo.pem.ocsp" CLI command
5378 - REGTESTS: ssl: Add "show ssl ocsp-response" test
5379 - BUG/MINOR: server: explicitly set "none" init-addr for dynamic servers
5380 - BUG/MINOR: pools: fix a possible memory leak in the lockless pool_flush()
5381 - BUG/MINOR: pools: make DEBUG_UAF always write to the to-be-freed location
5382 - MINOR: pools: do not maintain the lock during pool_flush()
5383 - MINOR: pools: call malloc_trim() under thread isolation
5384 - MEDIUM: pools: use a single pool_gc() function for locked and lockless
5385 - BUG/MAJOR: pools: fix possible race with free() in the lockless variant
5386 - CLEANUP: pools: remove now unused seq and pool_free_list
5387 - MEDIUM: pools: remove the locked pools implementation
5388 - BUILD: ssl: Fix compilation with BoringSSL
5389 - BUG/MEDIUM: errors: include missing obj_type file
5390 - REGTESTS: ssl: show_ssl_ocspresponce.vtc is broken with BoringSSL
5391 - BUG/MAJOR: htx: Fix htx_defrag() when an HTX block is expanded
5392 - BUG/MINOR: mux-fcgi: Expose SERVER_SOFTWARE parameter by default
5393 - BUG/MINOR: h1-htx: Fix a signess bug with char data type when parsing chunk size
5394 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
5395 - BUG/MINOR: resolvers: answser item list was randomly purged or errors
5396 - MEDIUM: resolvers: add a ref on server to the used A/AAAA answer item
5397 - MEDIUM: resolvers: add a ref between servers and srv request or used SRV record
5398 - BUG/MINOR: server-state: load SRV resolution only if params match the config
5399 - MINOR: config: remove support for deprecated option "tune.chksize"
5400 - MINOR: config: completely remove support for "no option http-use-htx"
5401 - MINOR: log: remove the long-deprecated early log-format tags
5402 - MINOR: http: remove the long deprecated "set-cookie()" sample fetch function
5403 - MINOR: config: reject long-deprecated "option forceclose"
5404 - MINOR: config: remove deprecated option "http-tunnel"
5405 - MEDIUM: proxy: remove the deprecated "grace" keyword
5406 - MAJOR: config: remove parsing of the global "nbproc" directive
5407 - BUILD: init: remove initialization of multi-process thread mappings
5408 - BUILD: log: remove unused fmt_directive()
5409 - REGTESTS: Remove REQUIRE_VERSION=1.6 from all tests
5410 - REGTESTS: Remove REQUIRE_VERSION=1.7 from all tests
5411 - CI: github actions: enable alpine/musl builds
5412 - BUG/MAJOR: resolvers: segfault using server template without SRV RECORDs
5413 - DOC: lua: Add a warning about buffers modification in HTTP
5414 - MINOR: ssl: Use OpenSSL's ASN1_TIME convertor when available
5415 - BUG/MINOR: stick-table: insert srv in used_name tree even with fixed id
5416 - BUG/MEDIUM: server: extend thread-isolate over much of CLI 'add server'
5417 - BUG/MEDIUM: server: clear dynamic srv on delete from proxy id/name trees
5418 - BUG/MEDIUM: server: do not forget to generate the dynamic servers ids
5419 - BUG/MINOR: server: do not keep an invalid dynamic server in px ids tree
5420 - BUG/MEDIUM: server: do not auto insert a dynamic server in px addr_node
5421 - BUG/MEDIUM: shctx: use at least thread-based locking on USE_PRIVATE_CACHE
5422 - BUG/MINOR: ssl: use atomic ops to update global shctx stats
5423 - BUG/MINOR: mworker: fix typo in chroot error message
5424 - CLEANUP: global: remove unused definition of stopping_task[]
5425 - MEDIUM: init: remove the loop over processes during init
5426 - MINOR: mworker: remove the initialization loop over processes
5427 - CLEANUP: global: remove the nbproc field from the global structure
5428 - CLEANUP: global: remove pid_bit and all_proc_mask
5429 - MEDIUM: global: remove dead code from nbproc/bind_proc removal
5430 - MEDIUM: config: simplify cpu-map handling
5431 - MEDIUM: cpu-set: make the proc a single bit field and not an array
5432 - CLEANUP: global: remove unused definition of MAX_PROCS
5433 - MEDIUM: global: remove the relative_pid from global and mworker
5434 - DOC: update references to process numbers in cpu-map and bind-process
5435 - MEDIUM: config: warn about "bind-process" deprecation
5436 - CLEANUP: shctx: remove the different inter-process locking techniques
5437 - BUG/MAJOR: queue: set SF_ASSIGNED when setting strm->target on dequeue
5438 - MINOR: backend: only skip LB when there are actual connections
5439 - BUG/MINOR: mux-h1: do not skip the error response on bad requests
5440 - MINOR: connection: add helper conn_append_debug_info()
5441 - MINOR: mux-h2/trace: report a few connection-level info during h2_init()
5442 - CLEANUP: mux-h2/traces: better align user messages
5443 - BUG/MINOR: stats: make "show stat typed desc" work again
5444 - MINOR: mux-h2: obey http-ignore-probes during the preface
5445 - BUG/MINOR: mux-h2/traces: bring back the lost "rcvd H2 REQ" trace
5446 - BUG/MINOR: mux-h2/traces: bring back the lost "sent H2 REQ/RES" traces
5447 - CLEANUP: assorted typo fixes in the code and comments
5448 - CI: Replace the requirement for 'sudo' with a call to 'ulimit -n'
5449 - REGTESTS: Replace REQUIRE_VERSION=2.5 with 'haproxy -cc'
5450 - REGTESTS: Replace REQUIRE_OPTIONS with 'haproxy -cc' for 2.5+ tests
5451 - REGTESTS: Replace REQUIRE_BINARIES with 'command -v'
5452 - REGTESTS: Remove support for REQUIRE_BINARIES
5453 - CI: ssl: enable parallel builds for OpenSSL on Linux
5454 - CI: ssl: do not needlessly build the OpenSSL docs
5455 - CI: ssl: keep the old method for ancient OpenSSL versions
5456 - CLEANUP: server: a separate function for initializing the per_thr field
5457 - BUG/MINOR: server: Forbid to set fqdn on the CLI if SRV resolution is enabled
5458 - BUG/MEDIUM: server/cli: Fix ABBA deadlock when fqdn is set from the CLI
5459 - MINOR: resolvers: Clean server in a dedicated function when removing a SRV item
5460 - MINOR: resolvers: Remove server from named_servers tree when removing a SRV item
5461 - BUG/MEDIUM: resolvers: Add a task on servers to check SRV resolution status
5462 - BUG/MINOR: backend: restore the SF_SRV_REUSED flag original purpose
5463 - BUG/MINOR: backend: do not set sni on connection reuse
5464 - BUG/MINOR: resolvers: Use resolver's lock in resolv_srvrq_expire_task()
5465 - BUG/MINOR: server/cli: Fix locking in function processing "set server" command
5466 - BUG/MINOR: cache: Correctly handle existing-but-empty 'accept-encoding' header
5467 - MINOR: ssl: fix typo in usage for 'new ssl ca-file'
5468 - MINOR: ssl: always initialize random generator
5469 - MINOR: ssl: check allocation in ssl_sock_init_srv
5470 - MINOR: ssl: check allocation in parse ciphers/ciphersuites/verifyhost
5471 - MINOR: ssl: check allocation in parse npn/sni
5472 - MINOR: server: disable CLI 'set server ssl' for dynamic servers
5473 - MINOR: ssl: render file-access optional on server crt loading
5474 - MINOR: ssl: split parse functions for alpn/check-alpn
5475 - MINOR: ssl: support ca-file arg for dynamic servers
5476 - MINOR: ssl: support crt arg for dynamic servers
5477 - MINOR: ssl: support crl arg for dynamic servers
5478 - MINOR: ssl: enable a series of ssl keywords for dynamic servers
5479 - MINOR: ssl: support ssl keyword for dynamic servers
5480 - REGTESTS: server: test ssl support for dynamic servers
5481 - MINOR: queue: update the stream's pend_pos before queuing it
5482 - CLEANUP: Prevent channel-t.h from being detected as C++ by GitHub
5483 - BUG/MAJOR: server: fix deadlock when changing maxconn via agent-check
5484 - REGTESTS: fix maxconn update with agent-check
5485 - MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn
5486 - MINOR: queue: update proxy->served once out of the loop
5487 - MEDIUM: queue: refine the locking in process_srv_queue()
5488 - MINOR: lb/api: remove the locked argument from take_conn/drop_conn
5489 - MINOR: queue: create a new structure type "queue"
5490 - MINOR: proxy: replace the pendconns-related stuff with a struct queue
5491 - MINOR: server: replace the pendconns-related stuff with a struct queue
5492 - MEDIUM: queue: use a dedicated lock for the queues
5493 - MEDIUM: queue: simplify again the process_srv_queue() API
5494 - MINOR: queue: factor out the proxy/server queuing code
5495 - MINOR: queue: use atomic-ops to update the queue's index
5496 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable
5497 - MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()
5498 - MEDIUM: queue: unlock as soon as possible
5499 - MINOR: queue: make pendconn_first() take the lock by itself
5500 - CLEANUP: backend: remove impossible case of round-robin + consistent hash
5501 - MINOR: tcp-act: Add set-src/set-src-port for "tcp-request content" rules
5502 - DOC: config: Add missing actions in "tcp-request session" documentation
5503 - CLEANUP: dns: Remove a forgotten debug message
5504 - DOC: Replace issue templates by issue forms
5505 - Revert "MINOR: queue: make pendconn_first() take the lock by itself"
5506 - Revert "MEDIUM: queue: unlock as soon as possible"
5507 - Revert "MEDIUM: queue: move the queue lock manipulation to pendconn_process_next_strm()"
5508 - Revert "MEDIUM: queue: determine in process_srv_queue() if the proxy is usable"
5509 - Revert "MINOR: queue: use atomic-ops to update the queue's index"
5510 - Revert "MINOR: queue: factor out the proxy/server queuing code"
5511 - Revert "MEDIUM: queue: simplify again the process_srv_queue() API"
5512 - Revert "MEDIUM: queue: use a dedicated lock for the queues"
5513 - Revert "MEDIUM: queue: refine the locking in process_srv_queue()"
5514 - Revert "MINOR: queue: update proxy->served once out of the loop"
5515 - Revert "MEDIUM: queue: make pendconn_process_next_strm() only return the pendconn"
5516 - MEDIUM: queue: update px->served and lb's take_conn once per loop
5517 - MEDIUM: queue: use a dedicated lock for the queues (v2)
5518 - MEDIUM: queue: simplify again the process_srv_queue() API (v2)
5519 - MEDIUM: queue: determine in process_srv_queue() if the proxy is usable (v2)
5520 - MINOR: queue: factor out the proxy/server queuing code (v2)
5521 - MINOR: queue: use atomic-ops to update the queue's index (v2)
5522 - MEDIUM: queue: take the proxy lock only during the px queue accesses
5523 - MEDIUM: queue: use a trylock on the server's queue
5524 - MINOR: queue: add queue_init() to initialize a queue
5525 - MINOR: queue: add a pointer to the server and the proxy in the queue
5526 - MINOR: queue: store a pointer to the queue into the pendconn
5527 - MINOR: queue: remove the px/srv fields from pendconn
5528 - MINOR: queue: simplify pendconn_unlink() regarding srv vs px
5529 - BUG: backend: stop looking for queued connections once there's no more
5530 - BUG/MINOR: queue/debug: use the correct lock labels on the queue lock
5531 - BUG/MINOR: resolvers: Always attach server on matching record on resolution
5532 - BUG/MINOR: resolvers: Reset server IP when no ip is found in the response
5533 - MINOR: resolvers: Reset server IP on error in resolv_get_ip_from_response()
5534 - BUG/MINOR: checks: return correct error code for srv_parse_agent_check
5535 - BUILD: Makefile: fix linkage for Haiku.
5536 - BUG/MINOR: tcpcheck: Fix numbering of implicit HTTP send/expect rules
5537 - MINOR: http-act/tcp-act: Add "set-log-level" for tcp content rules
5538 - MINOR: http-act/tcp-act: Add "set-nice" for tcp content rules
5539 - MINOR: http-act/tcp-act: Add "set-mark" and "set-tos" for tcp content rules
5540 - CLEANUP: tcp-act: Sort action lists
5541 - BUILD/MEDIUM: tcp: set-mark setting support for FreeBSD.
5542 - BUILD: tcp-act: avoid warning when set-mark / set-tos are not supported
5543 - BUG/MINOR: mqtt: Fix parser for string with more than 127 characters
5544 - BUG/MINOR: mqtt: Support empty client ID in CONNECT message
5545 - BUG/MEDIUM: resolvers: Make 1st server of a template take part to SRV resolution
5546 - CLEANUP: peers: re-write intdecode function comment.
5547
Willy Tarreau1f973062021-05-14 09:36:37 +020055482021/05/14 : 2.5-dev0
5549 - MINOR: version: it's development again
5550
Willy Tarreau6cbbecf2021-05-14 09:03:30 +020055512021/05/14 : 2.4.0
5552 - BUG/MINOR: http_fetch: fix possible uninit sockaddr in fetch_url_ip/port
5553 - CLEANUP: cli/activity: Remove double spacing in set profiling command
5554 - CI: Build VTest with clang
5555 - CI: extend spellchecker whitelist, add "ists" as well
5556 - CLEANUP: assorted typo fixes in the code and comments
5557 - BUG/MINOR: memprof: properly account for differences for realloc()
5558 - MINOR: memprof: also report the method used by each call
5559 - MINOR: memprof: also report the totals and delta alloc-free
5560 - CLEANUP: pattern: remove the unused and dangerous pat_ref_reload()
5561 - BUG/MINOR: http_act: Fix normalizer names in error messages
5562 - MINOR: uri_normalizer: Add `fragment-strip` normalizer
5563 - MINOR: uri_normalizer: Add `fragment-encode` normalizer
5564 - IMPORT: slz: use the generic function for the last bytes of the crc32
5565 - IMPORT: slz: do not produce the crc32_fast table when CRC is natively supported
5566 - BUILD/MINOR: opentracing: fixed compilation with filter enabled
5567 - BUILD: makefile: add a few popular ARMv8 CPU targets
5568 - BUG/MEDIUM: stick_table: fix crash when using tcp smp_fetch_src
5569 - REGTESTS: stick-table: add src_conn_rate test
5570 - CLEANUP: stick-table: remove a leftover of an old keyword declaration
5571 - BUG/MINOR: stats: fix lastchk metric that got accidently lost
5572 - EXAMPLES: add a "basic-config-edge" example config
5573 - EXAMPLES: add a trivial config for quick testing
5574 - DOC: management: Correct example reload command in the document
5575 - Revert "CI: Build VTest with clang"
5576 - MINOR: activity/cli: optionally support sorting by address on "show profiling"
5577 - DEBUG: ssl: export ssl_sock_close() to see its symbol resolved in profiling
5578 - BUG/MINOR: lua/vars: prevent get_var() from allocating a new name
5579 - DOC: config: Fix configuration example for mqtt
5580 - BUG/MAJOR: config: properly initialize cpu_map.thread[] up to MAX_THREADS
5581 - BUILD: config: avoid a build warning on numa_detect_topology() without threads
5582 - DOC: update min requirements in INSTALL
5583 - IMPORT: slz: use inttypes.h instead of stdint.h
5584 - BUILD: sample: use strtoll() instead of atoll()
5585 - MINOR: version: mention that it's LTS now.
5586
Willy Tarreau46b93af2021-05-10 07:50:26 +020055872021/05/10 : 2.4-dev19
5588 - BUG/MINOR: hlua: Don't rely on top of the stack when using Lua buffers
5589 - BUG/MEDIUM: cli: prevent memory leak on write errors
5590 - BUG/MINOR: ssl/cli: fix a lock leak when no memory available
5591 - MINOR: debug: add a new "debug dev sym" command in expert mode
5592 - MINOR: pools/debug: slightly relax DEBUG_DONT_SHARE_POOLS
5593 - CI: Github Actions: switch to LibreSSL-3.3.3
5594 - MINOR: srv: close all idle connections on shutdown
5595 - MINOR: connection: move session_list member in a union
5596 - MEDIUM: mux_h1: release idling frontend conns on soft-stop
5597 - MEDIUM: connection: close front idling connection on soft-stop
5598 - MINOR: tools: add functions to retrieve the address of a symbol
5599 - CLEANUP: activity: mark the profiling and task_profiling_mask __read_mostly
5600 - MINOR: activity: add a "memory" entry to "profiling"
5601 - MINOR: activity: declare the storage for memory usage statistics
5602 - MEDIUM: activity: collect memory allocator statistics with USE_MEMORY_PROFILING
5603 - MINOR: activity: clean up the show profiling io_handler a little bit
5604 - MINOR: activity: make "show profiling" support a few arguments
5605 - MINOR: activity: make "show profiling" also dump the memoery usage
5606 - MINOR: activity: add the profiling.memory global setting
5607 - BUILD: makefile: add new option USE_MEMORY_PROFILING
5608 - MINOR: channel: Rely on HTX version if appropriate in channel_may_recv()
5609 - BUG/MINOR: stream-int: Don't block reads in si_update_rx() if chn may receive
5610 - MINOR: conn-stream: Force mux to wait for read events if abortonclose is set
5611 - MEDIUM: mux-h1: Don't block reads when waiting for the other side
5612 - BUG/MEDIUM: mux-h1: Properly report client close if abortonclose option is set
5613 - REGTESTS: Add script to test abortonclose option
5614 - MINOR: mux-h1: clean up conditions to enabled and disabled splicing
5615 - MINOR: mux-h1: Subscribe for sends if output buffer is not empty in h1_snd_pipe
5616 - MINOR: mux-h1: Always subscribe for reads when splicing is disabled
5617 - MEDIUM: mux-h1: Wake H1 stream when both sides a synchronized
5618 - CLEANUP: mux-h1: rename WAIT_INPUT/WAIT_OUTPUT flags
5619 - MINOR: mux-h1: Manage processing blocking flags on the H1 stream
5620 - BUG/MINOR: stream: Decrement server current session counter on L7 retry
5621 - BUG/MINOR: config: fix uninitialized initial state in ".if" block evaluator
5622 - BUG/MINOR: config: add a missing "ELIF_TAKE" test for ".elif" condition evaluator
5623 - BUG/MINOR: config: .if/.elif should also accept negative integers
5624 - MINOR: config: centralize the ".if"/".elif" condition parser and evaluator
5625 - MINOR: config: keep up-to-date current file/line/section in the global struct
5626 - MINOR: config: support some pseudo-variables for file/line/section
5627 - BUILD: activity: do not include malloc.h
5628 - MINOR: arg: improve the error message on missing closing parenthesis
5629 - MINOR: global: export the build features string list
5630 - MINOR: global: add version comparison functions
5631 - MINOR: config: improve .if condition error reporting
5632 - MINOR: config: make cfg_eval_condition() support predicates with arguments
5633 - MINOR: config: add predicate "defined()" to conditional expression blocks
5634 - MINOR: config: add predicates "streq()" and "strneq()" to conditional expressions
5635 - MINOR: config: add predicate "feature" to detect certain built-in features
5636 - MINOR: config: add predicates "version_atleast" and "version_before" to cond blocks
5637 - BUG/MINOR: activity: use the new pointer to calculate the new size in realloc()
5638 - BUG/MINOR: stream: properly clear the previous error mask on L7 retries
5639 - MEDIUM: log: slightly refine the output format of alerts/warnings/etc
5640 - MINOR: config: add a new message directive: .diag
5641 - CLEANUP: cli/tree-wide: properly re-align the CLI commands' help messages
5642 - BUG/MINOR: stream: Reset stream final state and si error type on L7 retry
5643 - BUG/MINOR: checks: Handle synchronous connect when a tcpcheck is started
5644 - BUG/MINOR: checks: Reschedule check on observe mode only if fastinter is set
5645 - MINOR: global: define tainted flag
5646 - MINOR: cfgparse: add a new field flags in cfg_keyword
5647 - MINOR: cfgparse: implement experimental config keywords
5648 - MINOR: action: replace match_pfx by a keyword flags field
5649 - MINOR: action: implement experimental actions
5650 - MINOR: cli: set tainted when using CLI expert/experimental mode
5651 - MINOR: stats: report tainted on show info
5652 - MINOR: http_act: mark normalize-uri as experimental
5653 - BUILD: fix usage of ha_alert without format string
5654 - MINOR: proxy: define PR_CAP_LB
5655 - BUG/MINOR: server: do not report diag for peer servers with null weight
5656 - DOC: ssl: Extra files loading now works for backends too
5657 - ADDONS: make addons/ discoverable by git via .gitignore
5658 - DOC: ssl: Add information about crl-file option
5659 - MINOR: sample: improve error reporting on missing arg to strcmp() converter
5660 - DOC: management: mention that some fields may be emitted as floats
5661 - MINOR: tools: implement trimming of floating point numbers
5662 - MINOR: tools: add a float-to-ascii conversion function
5663 - MINOR: freq_ctr: add new functions to report float measurements
5664 - MINOR: stats: avoid excessive padding of float values with trailing zeroes
5665 - MINOR: stats: add the HTML conversion for float types
5666 - MINOR: stats: pass the appctx flags to stats_fill_info()
5667 - MINOR: stats: support an optional "float" option to "show info"
5668 - MINOR: stats: use tv_remain() to precisely compute the uptime
5669 - MINOR: stats: report uptime and start time as floats with subsecond resolution
5670 - MINOR: stats: make "show info" able to report rates as floats when asked
5671 - MINOR: config: mark tune.fd.edge-triggered as experimental
5672 - REORG: vars: move the "proc" scope variables out of the global struct
5673 - REORG: threads: move all_thread_mask() to thread.h
5674 - BUILD: wdt: include signal-t.h
5675 - BUILD: auth: include missing list.h
5676 - REORG: mworker: move proc_self from global to mworker
5677 - BUILD: ssl: ssl_utils requires chunk.h
5678 - BUILD: config: cfgparse-ssl.c needs tools.h
5679 - BUILD: wurfl: wurfl.c needs tools.h
5680 - BUILD: spoe: flt_spoe.c needs tools.h
5681 - BUILD: promex: service-prometheus.c needs tools.h
5682 - BUILD: resolvers: include tools.h
5683 - BUILD: config: include tools.h in cfgparse-listen.c
5684 - BUILD: htx: include tools.h in http_htx.c
5685 - BUILD: proxy: include tools.h in proxy.c
5686 - BUILD: session: include tools.h in session.c
5687 - BUILD: cache: include tools.h in cache.c
5688 - BUILD: sink: include tools.h in sink.c
5689 - BUILD: connection: include tools.h in connection.c
5690 - BUILD: server-state: include tools.h from server_state.c
5691 - BUILD: dns: include tools.h in dns.c
5692 - BUILD: payload: include tools.h in payload.c
5693 - BUILD: vars: include tools.h in vars.c
5694 - BUILD: compression: include tools.h in compression.c
5695 - BUILD: mworker: include tools.h from mworker.c
5696 - BUILD: queue: include tools.h from queue.c
5697 - BUILD: udp: include tools.h from proto_udp.c
5698 - BUILD: stick-table: include freq_ctr.h from stick_table.h
5699 - BUILD: server: include tools.h from server.c
5700 - BUILD: server: include missing proxy.h in server.c
5701 - BUILD: sink: include proxy.h in sink.c
5702 - BUILD: mworker: include proxy.h in mworker.c
5703 - BUILD: filters: include proxy.h in filters.c
5704 - BUILD: fcgi-app: include proxy.h in fcgi-app.c
5705 - BUILD: connection: move list_mux_proto() to connection.c
5706 - REORG: stick-table: uninline stktable_alloc_data_type()
5707 - REORG: stick-table: move composite address functions to stick_table.h
5708 - REORG: config: uninline warnifnotcap() and failifnotcap()
5709 - BUILD: task: remove unused includes from task.c
5710 - MINOR: task: stop including stream.h from task.c
5711 - BUILD: connection: stop including listener-t.h
5712 - BUILD: hlua: include proxy.h from hlua.c
5713 - BUILD: mux-h1: include proxy.h from mux-h1.c
5714 - BUILD: mux-fcgi: include proxy.h from mux-fcgi.c
5715 - BUILD: listener: include proxy.h from listener.c
5716 - BUILD: http-rules: include proxy.h from http_rules.c
5717 - BUILD: thread: include log.h from thread.c
5718 - BUILD: comp: include proxy.h from flt_http_comp.c
5719 - BUILD: fd: include log.h from fd.c
5720 - BUILD: config: do not include proxy.h nor errors.h anymore in cfgparse.h
5721 - BUILD: makefile: reorder object files by build time
5722 - DOC: Fix a few grammar/spelling issues and casing of HAProxy
5723 - REGTESTS: run-regtests: match both "HAProxy" and "HA-Proxy" in the version
5724 - MINOR: version: report "HAProxy" not "HA-Proxy" in the version output
5725 - DOC: remove last occurrences of "HA-Proxy" syntax
5726 - DOC: peers: fix the protocol tag name in the doc
5727 - ADMIN: netsnmp: report "HAProxy" and not "Haproxy" in output descriptions
5728 - MEDIUM: mailers: use "HAProxy" nor "HAproxy" in the subject of messages
5729 - DOC: fix a few remainig cases of "Haproxy" and "HAproxy" in doc and comments
5730 - MINOR: tools/rnd: compute the result outside of the CAS loop
5731 - BUILD: http_fetch: address a few aliasing warnings with older compilers
5732 - BUILD: ssl: define HAVE_CRYPTO_memcmp() based on the library version
5733 - BUILD: errors: include stdarg in errors.h
5734 - REGTESTS: disable inter-thread idle connection sharing on sensitive tests
5735 - MINOR: cli: make "help" support a command in argument
5736 - MINOR: cli: sort the output of the "help" keywords
5737 - CLEANUP: cli/mworker: properly align the help messages
5738 - BUILD: memprof: make the old caller pointer a const in get_prof_bin()
5739 - BUILD: compat: include malloc_np.h for USE_MEMORY_PROFILING on FreeBSD
5740 - CI: Github Actions: enable USE_QUIC=1 for BoringSSL builds
5741 - BUG/MEDIUM: quic: fix null deref on error path in qc_conn_init()
5742 - BUILD: cli: appease a null-deref warning in cli_gen_usage_msg()
5743
Willy Tarreau080347f2021-05-01 08:25:15 +020057442021/05/01 : 2.4-dev18
5745 - DOC: Fix indentation for `path-strip-dot` normalizer
5746 - DOC: Fix RFC reference for the percent-to-uppercase normalizer
5747 - DOC: Add RFC references for the path-strip-dot(dot)? normalizers
5748 - MINOR: uri_normalizer: Add a `percent-decode-unreserved` normalizer
5749 - BUG/MINOR: mux-fcgi: Don't send normalized uri to FCGI application
5750 - REORG: htx: Inline htx functions to add HTX blocks in a message
5751 - CLEANUP: assorted typo fixes in the code and comments
5752 - DOC: general: fix white spaces for HTML converter
5753 - BUG/MINOR: ssl: ssl_sock_prepare_ssl_ctx does not return an error code
5754 - BUG/MINOR: cpuset: move include guard at the very beginning
5755 - BUG/MAJOR: fix build on musl with cpu_set_t support
5756 - BUG/MEDIUM: cpuset: fix build on MacOS
5757 - BUG/MINOR: htx: Preserve HTX flags when draining data from an HTX message
5758 - MEDIUM: htx: Refactor htx_xfer_blks() to not rely on hdrs_bytes field
5759 - CLEANUP: htx: Remove unsued hdrs_bytes field from the HTX start-line
5760 - BUG/MINOR: mux-h2: Don't encroach on the reserve when decoding headers
5761 - MEDIUM: http-ana: handle read error on server side if waiting for response
5762 - MINOR: htx: Limit length of headers name/value when a HTX message is dumped
5763 - BUG/MINOR: applet: Notify the other side if data were consumed by an applet
5764 - BUG/MINOR: hlua: Don't consume headers when starting an HTTP lua service
5765 - BUG/MEDIUM: mux-h2: Handle EOM flag when sending a DATA frame with zero-copy
5766 - CLEANUP: channel: No longer notify the producer in co_skip()/co_htx_skip()
5767 - DOC: general: fix example in set-timeout
5768 - CLEANUP: cfgparse: de-uglify early file error handling in readcfgfile()
5769 - MINOR: config: add a new "default-path" global directive
5770 - BUG/MEDIUM: peers: initialize resync timer to get an initial full resync
5771 - BUG/MEDIUM: peers: register last acked value as origin receiving a resync req
5772 - BUG/MEDIUM: peers: stop considering ack messages teaching a full resync
5773 - BUG/MEDIUM: peers: reset starting point if peers appears longly disconnected
5774 - BUG/MEDIUM: peers: reset commitupdate value in new conns
5775 - BUG/MEDIUM: peers: re-work updates lookup during the sync on the fly
5776 - BUG/MEDIUM: peers: reset tables stage flags stages on new conns
5777 - MINOR: peers: add informative flags about resync process for debugging
5778 - BUG/MEDIUM: time: fix updating of global_now upon clock drift
5779 - CLEANUP: freq_ctr: make arguments of freq_ctr_total() const
5780 - CLEANUP: hlua: rename hlua_appctx* appctx to luactx
5781 - MINOR: server: fix doc/trace on lb algo for dynamic server creation
5782 - REGTESTS: server: fix cli_add_server due to previous trace update
5783 - REGTESTS: add minimal CLI "add map" tests
5784 - DOC: management: move "set var" to the proper place
5785 - CLEANUP: map: slightly reorder the add map function
5786 - MINOR: map: get rid of map_add_key_value()
5787 - MINOR: map: show the current and next pattern version in "show map"
5788 - MINOR: map/acl: add the possibility to specify the version in "show map/acl"
5789 - MINOR: pattern: support purging arbitrary ranges of generations
5790 - MINOR: map/acl: add the possibility to specify the version in "clear map/acl"
5791 - MINOR: map/acl: add the "prepare map/acl" CLI command
5792 - MINOR: map/acl: add the "commit map/acl" CLI command
5793 - MINOR: map/acl: make "add map/acl" support an optional version number
5794 - CLEANUP: map/cli: properly align the map/acl help
5795 - BUILD: compiler: do not use already defined __read_mostly on dragonfly
5796
Willy Tarreaubfd19d62021-04-23 19:11:10 +020057972021/04/23 : 2.4-dev17
5798 - MINOIR: mux-pt/trace: Register a new trace source with its events
5799 - BUG/MINOR: mux-pt: Fix a possible UAF because of traces in mux_pt_io_cb
5800 - CI: travis: Drastically clean up .travis.yml
5801 - CLEANUP: pattern: make all pattern tables read-only
5802 - MINOR: trace: replace the trace() inline function with an equivalent macro
5803 - MINOR: initcall: uniformize the section names between MacOS and other unixes
5804 - CLEANUP: initcall: rename HA_SECTION to HA_INIT_SECTION
5805 - MINOR: compiler: add macros to declare section names
5806 - CLEANUP: initcall: rely on HA_SECTION_* instead of defining its own
5807 - MINOR: global: declare a read_mostly section
5808 - MINOR: fd: move a few read-mostly variables to their own section
5809 - MINOR: epoll: move epoll_fd to read_mostly
5810 - MINOR: kqueue: move kqueue_fd to read_mostly
5811 - MINOR: pool: move pool declarations to read_mostly
5812 - MINOR: threads: mark all_threads_mask as read_mostly
5813 - MINOR: server: move idle_conn_task to read_mostly
5814 - MINOR: protocol: move __protocol_by_family to read_mostly
5815 - MINOR: pattern: make the pat_lru_seed read_mostly
5816 - MINOR: trace: make trace sources read_mostly
5817 - MINOR: freq_ctr: add a generic function to report the total value
5818 - MEDIUM: freq_ctr: make read_freq_ctr_period() use freq_ctr_total()
5819 - MEDIUM: freq_ctr: reimplement freq_ctr_remain_period() from freq_ctr_total()
5820 - MINOR: freq_ctr: add the missing next_event_delay_period()
5821 - MINOR: freq_ctr: unify freq_ctr and freq_ctr_period into freq_ctr
5822 - MEDIUM: freq_ctr: replace the per-second counters with the generic ones
5823 - MINOR: freq_ctr: add cpu_relax in the rotation loop of update_freq_ctr_period()
5824 - MINOR: freq_ctr: simplify and improve the update function
5825 - CLEANUP: time: remove the now unused ms_left_scaled
5826 - MINOR: time: move the time initialization out of tv_update_date()
5827 - MINOR: time: remove useless variable copies in tv_update_date()
5828 - MINOR: time: change the global timeval and the the global tick at once
5829 - MEDIUM: time: make the clock offset global and no per-thread
5830 - MINOR: atomic: reimplement the relaxed version of x86 BTS/BTR
5831 - MINOR: trace: Add the checks as a possible trace source
5832 - MINOIR: checks/trace: Register a new trace source with its events
5833 - MINOR: hlua: Add function to release a lua function
5834 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a task
5835 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a converter
5836 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a fetch
5837 - BUG/MINOR: hlua: Fix memory leaks on error path when parsing a lua action
5838 - BUG/MINOR: hlua: Fix memory leaks on error path when registering an action
5839 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a service
5840 - BUG/MINOR: hlua: Fix memory leaks on error path when registering a cli keyword
5841 - BUG/MINOR: cfgparse/proxy: Fix some leaks during proxy section parsing
5842 - BUG/MINOR: listener: Handle allocation error when allocating a new bind_conf
5843 - BUG/MINOR: cfgparse/proxy: Hande allocation errors during proxy section parsing
5844 - MINOR: cfgparse/proxy: Group alloc error handling during proxy section parsing
5845 - DOC: internals: update the SSL architecture schema
5846 - BUG/MEDIUM: sample: Fix adjusting size in field converter
5847 - MINOR: sample: add ub64dec and ub64enc converters
5848 - CLEANUP: sample: align samples list in sample.c
5849 - MINOR: ist: Add `istclear(struct ist*)`
5850 - CI: cirrus: install "pcre" package
5851 - MINOR: opentracing: correct calculation of the number of arguments in the args[]
5852 - MINOR: opentracing: transfer of context names without prefix
5853 - MINOR: sample: converter: Add mjson library.
5854 - MINOR: sample: converter: Add json_query converter
5855 - CI: travis-ci: enable weekly graviton2 builds
5856 - DOC: ssl: Certificate hot update only works on fronted certificates
5857 - DOC: ssl: Certificate hot update works on server certificates
5858 - BUG/MEDIUM: threads: Ignore current thread to end its harmless period
5859 - MINOR: threads: Only consider running threads to end a thread harmeless period
5860 - BUG/MINOR: checks: Set missing id to the dummy checks frontend
5861 - MINOR: logs: Add support of checks as session origin to format lf strings
5862 - BUG/MINOR: connection: Fix fc_http_major and bc_http_major for TCP connections
5863 - MINOR: connection: Make bc_http_major compatible with tcp-checks
5864 - BUG/MINOR: ssl-samples: Fix ssl_bc_* samples when called from a health-check
5865 - BUG/MINOR: http-fetch: Make method smp safe if headers were already forwarded
5866 - MINOR: tcp_samples: Add samples to get src/dst info of the backend connection
5867 - MINOR: tcp_samples: Be able to call bc_src/bc_dst from the health-checks
5868 - BUG/MINOR: http_htx: Remove BUG_ON() from http_get_stline() function
5869 - BUG/MINOR: logs: Report the true number of retries if there was no connection
5870 - BUILD: makefile: Redirect stderr to /dev/null when probing options
5871 - MINOR: uri_normalizer: Add uri_normalizer module
5872 - MINOR: uri_normalizer: Add `enum uri_normalizer_err`
5873 - MINOR: uri_normalizer: Add `http-request normalize-uri`
5874 - MINOR: uri_normalizer: Add a `merge-slashes` normalizer to http-request normalize-uri
5875 - MINOR: uri_normalizer: Add a `dotdot` normalizer to http-request normalize-uri
5876 - MINOR: uri_normalizer: Add support for supressing leading `../` for dotdot normalizer
5877 - MINOR: uri_normalizer: Add a `sort-query` normalizer
5878 - MINOR: uri_normalizer: Add a `percent-upper` normalizer
5879 - MEDIUM: http_act: Rename uri-normalizers
5880 - DOC: Add introduction to http-request normalize-uri
5881 - DOC: Note that URI normalization is experimental
5882 - BUG/MINOR: pools: maintain consistent ->allocated count on alloc failures
5883 - BUG/MINOR: pools/buffers: make sure to always reserve the required buffers
5884 - MINOR: pools: drop the unused static history of artificially failed allocs
5885 - CLEANUP: pools: remove unused arguments to pool_evict_from_cache()
5886 - MEDIUM: pools: move the cache into the pool header
5887 - MINOR: pool: remove the size field from pool_cache_head
5888 - MINOR: pools: rename CONFIG_HAP_LOCAL_POOLS to CONFIG_HAP_POOLS
5889 - MINOR: pools: enable the fault injector in all allocation modes
5890 - MINOR: pools: make the basic pool_refill_alloc()/pool_free() update needed_avg
5891 - MEDIUM: pools: unify pool_refill_alloc() across all models
5892 - CLEANUP: pools: re-merge pool_refill_alloc() and __pool_refill_alloc()
5893 - MINOR: pools: call pool_alloc_nocache() out of the pool's lock
5894 - CLEANUP: pools: move the lock to the only __pool_get_first() that needs it
5895 - CLEANUP: pools: rename __pool_get_first() to pool_get_from_shared_cache()
5896 - CLEANUP: pools: rename pool_*_{from,to}_cache() to *_local_cache()
5897 - CLEANUP: pools: rename __pool_free() to pool_put_to_shared_cache()
5898 - MINOR: tools: add statistical_prng_range() to get a random number over a range
5899 - MINOR: pools: use cheaper randoms for fault injections
5900 - MINOR: pools: move the fault injector to __pool_alloc()
5901 - MINOR: pools: split the OS-based allocator in two
5902 - MINOR: pools: always use atomic ops to maintain counters
5903 - MINOR: pools: move pool_free_area() out of the lock in the locked version
5904 - MINOR: pools: factor the release code into pool_put_to_os()
5905 - MEDIUM: pools: make CONFIG_HAP_POOLS control both local and shared pools
5906 - MINOR: pools: create unified pool_{get_from,put_to}_cache()
5907 - MINOR: pools: evict excess objects using pool_evict_from_local_cache()
5908 - MEDIUM: pools: make pool_put_to_cache() always call pool_put_to_local_cache()
5909 - CLEANUP: pools: make the local cache allocator fall back to the shared cache
5910 - CLEANUP: pools: merge pool_{get_from,put_to}_local_caches with generic ones
5911 - CLEANUP: pools: uninline pool_put_to_cache()
5912 - CLEANUP: pools: declare dummy pool functions to remove some ifdefs
5913 - BUILD: pools: fix build with DEBUG_FAIL_ALLOC
5914 - BUG/MINOR: server: make srv_alloc_lb() allocate lb_nodes for consistent hash
5915 - CONTRIB: mod_defender: import the minimal number of includes
5916 - CONTRIB: mod_defender: make the code build with the embedded includes
5917 - CONTRIB: modsecurity: import the minimal number of includes
5918 - CONTRIB: modsecurity: make the code build with the embedded includes
5919 - CLEANUP: sample: Improve local variables in sample_conv_json_query
5920 - CLEANUP: sample: Explicitly handle all possible enum values from mjson
5921 - CLEANUP: sample: Use explicit return for successful `json_query`s
5922 - CLEANUP: lists/tree-wide: rename some list operations to avoid some confusion
5923 - CONTRIB: move spoa_example out of the tree
5924 - BUG/MINOR: server: free srv.lb_nodes in free_server
5925 - BUG/MINOR: logs: free logsrv.conf.file on exit
5926 - BUG/MEDIUM: server: ensure thread-safety of server runtime creation
5927 - MINOR: server: add log on dynamic server creation
5928 - MINOR: server: implement delete server cli command
5929 - CONTRIB: move spoa_server out of the tree
5930 - CONTRIB: move modsecurity out of the tree
5931 - BUG/MINOR: server: fix potential null gcc error in delete server
5932 - BUG/MAJOR: mux-h2: Properly detect too large frames when decoding headers
5933 - BUG/MEDIUM: mux-h2: Fix dfl calculation when merging CONTINUATION frames
5934 - BUG/MINOR: uri_normalizer: Use delim parameter when building the sorted query in uri_normalizer_query_sort
5935 - CLEANUP: uri_normalizer: Remove trailing whitespace
5936 - MINOR: uri_normalizer: Add a `strip-dot` normalizer
5937 - CONTRIB: move mod_defender out of the tree
5938 - CLEANUP: contrib: remove the last references to the now dead contrib/ directory
5939 - BUG/MEDIUM: config: fix cpu-map notation with both process and threads
5940 - MINOR: config: add a diag for invalid cpu-map statement
5941 - BUG/MINOR: mworker/init: don't reset nb_oldpids in non-mworker cases
5942 - BUG/MINOR: mworker: don't use oldpids[] anymore for reload
5943 - BUILD: makefile: fix the "make clean" target on strict bourne shells
5944 - IMPORT: slz: import slz into the tree
5945 - BUILD: compression: switch SLZ from out-of-tree to in-tree
5946 - CI: github: do not build libslz any more
5947 - CLEANUP: compression: remove calls to SLZ init functions
5948 - BUG/MEDIUM: mux-h2: Properly handle shutdowns when received with data
5949 - MINOR: cpuset: define a platform-independent cpuset type
5950 - MINOR: cfgparse: use hap_cpuset for parse_cpu_set
5951 - MEDIUM: config: use platform independent type hap_cpuset for cpu-map
5952 - MINOR: thread: implement the detection of forced cpu affinity
5953 - MINOR: cfgparse: support the comma separator on parse_cpu_set
5954 - MEDIUM: cfgparse: detect numa and set affinity if needed
5955 - MINOR: global: add option to disable numa detection
5956 - BUG/MINOR: haproxy: fix compilation on macOS
5957 - BUG/MINOR: cpuset: fix compilation on platform without cpu affinity
5958 - MINOR: time: avoid unneeded updates to now_offset
5959 - MINOR: time: avoid overwriting the same values of global_now
5960 - CLEANUP: time: use __tv_to_ms() in tv_update_date() instead of open-coding
5961 - MINOR: time: avoid u64 needlessly expensive computations for the 32-bit now_ms
5962 - BUG/MINOR: peers: remove useless table check if initial resync is finished
5963 - BUG/MEDIUM: peers: re-work connection to new process during reload.
5964 - BUG/MEDIUM: peers: re-work refcnt on table to protect against flush
5965 - BUG/MEDIUM: config: fix missing initialization in numa_detect_topology()
5966
Willy Tarreau86512dd2021-04-09 17:10:39 +020059672021/04/09 : 2.4-dev16
5968 - CLEANUP: dev/flags: remove useless test in the stdin number parser
5969 - MINOR: No longer rely on deprecated sample fetches for predefined ACLs
5970 - MINOR: acl: Add HTTP_2.0 predefined macro
5971 - BUG/MINOR: hlua: Detect end of request when reading data for an HTTP applet
5972 - BUG/MINOR: tools: fix parsing "us" unit for timers
5973 - MINOR: server/bind: add support of new prefixes for addresses.
5974 - MINOR: log: register config file and line number on log servers.
5975 - MEDIUM: log: support tcp or stream addresses on log lines.
5976 - BUG/MEDIUM: log: fix config parse error logging on stdout/stderr or any raw fd
5977 - CLEANUP: fd: remove FD_POLL_DATA and FD_POLL_STICKY
5978 - MEDIUM: fd: prepare FD_POLL_* to move to bits 8-15
5979 - MEDIUM: fd: merge fdtab[].ev and state for FD_EV_* and FD_POLL_* into state
5980 - MINOR: fd: move .linger_risk into fdtab[].state
5981 - MINOR: fd: move .cloned into fdtab[].state
5982 - MINOR: fd: move .initialized into fdtab[].state
5983 - MINOR: fd: move .et_possible into fdtab[].state
5984 - MINOR: fd: move .exported into fdtab[].state
5985 - MINOR: fd: implement an exclusive syscall bit to remove the ugly "log" lock
5986 - MINOR: cli/show-fd: slightly reorganize the FD status flags
5987 - MINOR: atomic/arm64: detect and use builtins for the double-word CAS
5988 - CLEANUP: atomic: add an explicit _FETCH variant for add/sub/and/or
5989 - CLEANUP: atomic: make all standard add/or/and/sub operations return void
5990 - CLEANUP: atomic: add a fetch-and-xxx variant for common operations
5991 - CLEANUP: atomic: add HA_ATOMIC_INC/DEC for unit increments
5992 - CLEANUP: atomic/tree-wide: replace single increments/decrements with inc/dec
5993 - CLEANUP: atomic: use the __atomic variant of BTS/BTR on modern compilers
5994 - MINOR: atomic: implement native BTS/BTR for x86
5995 - MINOR: ist: Add `istappend(struct ist, char)`
5996 - MINOR: ist: Add `istshift(struct ist*)`
5997 - MINOR: ist: Add `istsplit(struct ist*, char)`
5998 - BUG/MAJOR: fd: switch temp values to uint in fd_stop_both()
5999 - MINOR: opentracing: register config file and line number on log servers
6000 - MEDIUM: resolvers: add support of tcp address on nameserver line.
6001 - MINOR: ist: Rename istappend() to __istappend()
6002 - CLEANUP: htx: Make http_get_stline take a `const struct`
6003 - CLEANUP: ist: Remove unused `count` argument from `ist2str*`
6004 - CLEANUP: Remove useless malloc() casts
6005
Willy Tarreau59fa1d12021-04-02 19:16:32 +020060062021/04/02 : 2.4-dev15
6007 - BUG/MINOR: payload: Wait for more data if buffer is empty in payload/payload_lv
6008 - BUG/MINOR: stats: Apply proper styles in HTML status page.
6009 - BUG/MEDIUM: time: make sure to always initialize the global tick
6010 - BUG/MINOR: tcp: fix silent-drop workaround for IPv6
6011 - BUILD: tcp: use IPPROTO_IPV6 instead of SOL_IPV6 on FreeBSD/MacOS
6012 - CLEANUP: socket: replace SOL_IP/IPV6/TCP with IPPROTO_IP/IPV6/TCP
6013 - BUG/MINOR: http_fetch: make hdr_ip() resistant to empty fields
6014 - BUG/MINOR: mux-h2: Don't emit log twice if an error occurred on the preface
6015 - MINOR: stream: Don't trigger errors on destructive HTTP upgrades
6016 - MINOR: frontend: Create HTTP txn for HTX streams
6017 - MINOR: stream: Be sure to set HTTP analysers when creating an HTX stream
6018 - BUG/MINOR: stream: Properly handle TCP>H1>H2 upgrades in http_wait_for_request
6019 - BUG/MINOR: config: Add warning for http-after-response rules in TCP mode
6020 - MINOR: muxes: Add a flag to notify a mux does not support any upgrade
6021 - MINOR: mux-h1: Don't perform implicit HTTP/2 upgrade if not supported by mux
6022 - MINOR: mux-pt: Don't perform implicit HTTP upgrade if not supported by mux
6023 - MEDIUM: mux-h1: Expose h1 in the list of supported mux protocols
6024 - MEDIUM: mux-pt: Expose passthrough in the list of supported mux protocols
6025 - MINOR: muxes: Show muxes flags when the mux list is displayed
6026 - DOC: config: Improve documentation about proto/check-proto keywords
6027 - MINOR: stream: Use stream type instead of proxy mode when appropriate
6028 - MINOR: filters/http-ana: Decide to filter HTTP headers in HTTP analysers
6029 - MINOR: http-ana: Simplify creation/destruction of HTTP transactions
6030 - MINOR: stream: Handle stream HTTP upgrade in a dedicated function
6031 - MEDIUM: Add tcp-request switch-mode action to perform HTTP upgrade
6032 - MINOR: config/proxy: Don't warn for HTTP rules in TCP if 'switch-mode http' set
6033 - MINOR: config/proxy: Warn if a TCP proxy without backend is upgradable to HTTP
6034 - DOC: config: Add documentation about TCP to HTTP upgrades
6035 - REGTESTS: Add script to tests TCP to HTTP upgrades
6036 - BUG/MINOR: payload/htx: Ingore L6 sample fetches for HTX streams/checks
6037 - MINOR: htx: Make internal.strm.is_htx an internal sample fetch
6038 - MINOR: action: Use a generic function to check validity of an action rule list
6039 - MINOR: payload/config: Warn if a L6 sample fetch is used from an HTTP proxy
6040 - MEDIUM: http-rules: Add wait-for-body action on request and response side
6041 - REGTESTS: Add script to tests the wait-for-body HTTP action
6042 - BUG/MINOR: http-fetch: Fix test on message state to capture the version
6043 - CLEANUP: vars: always pre-initialize smp in vars_parse_cli_get_var()
6044 - MINOR: global: define diagnostic mode of execution
6045 - MINOR: cfgparse: diag for multiple nbthread statements
6046 - MINOR: server: diag for 0 weight server
6047 - MINOR: diag: create cfgdiag module
6048 - MINOR: diag: diag if servers use the same cookie value
6049 - MINOR: config: diag if global section after non-global
6050 - TESTS: slightly reorganize the code in the tests/ directory
6051 - TESTS: move tests/*.cfg to tests/config
6052 - REGTESTS: ssl: "set ssl cert" and multi-certificates bundle
6053 - REGTESTS: ssl: mark set_ssl_cert_bundle.vtc as broken
6054 - CONTRIB: halog: fix issue with array of type char
6055 - CONTRIB: tcploop: add a shutr command
6056 - CONTRIB: debug: add the show-fd-to-flags script
6057 - CONTRIB: debug: split poll from flags
6058 - CONTRIB: move some dev-specific tools to dev/
6059 - BUILD: makefile: always build the flags utility
6060 - DEV: flags: replace the unneeded makefile with a README
6061 - BUILD: makefile: integrate the hpack tools
6062 - CONTRIB: merge ip6range with iprange
6063 - CONTRIB: move some admin-related sub-projects to admin/
6064 - CONTRIB: move halog to admin/
6065 - ADMIN: halog: automatically enable USE_MEMCHR on the right glibc version
6066 - BUILD: makefile: build halog with the correct flags
6067 - BUILD: makefile: add a "USE_PROMEX" variable to ease building prometheus-exporter
6068 - CONTRIB: move prometheus-exporter to addons/promex
6069 - DOC: add a few words about USE_* and the addons directory
6070 - CONTRIB: move 51Degrees to addons/51degrees
6071 - CONTRIB: move src/da.c and contrib/deviceatlas to addons/deviceatlas
6072 - CONTRIB: move src/wurfl.c and contrib/wurfl to addons/wurfl
6073 - CONTRIB: move contrib/opentracing to addons/ot
6074 - BUG/MINOR: opentracing: initialization after establishing daemon mode
6075 - DOC: clarify that compression works for HTTP/2
6076
Willy Tarreauaf6d88b2021-03-27 09:42:09 +010060772021/03/27 : 2.4-dev14
6078 - MEDIUM: quic: Fix build.
6079 - MEDIUM: quic: Fix build.
6080 - CI: codespell: whitelist "Dragan Dosen"
6081 - CLEANUP: assorted typo fixes in the code and comments
6082 - CI: github actions: update LibreSSL to 3.2.5
6083 - REGTESTS: revert workaround for a crash with recent libressl on http-reuse sni
6084 - CLEANUP: mark defproxy as const on parse tune.fail-alloc
6085 - REGTESTS: remove unneeded experimental-mode in cli add server test
6086 - REGTESTS: wait for proper return of enable server in cli add server test
6087 - MINOR: compression: use pool_alloc(), not pool_alloc_dirty()
6088 - MINOR: spoe: use pool_alloc(), not pool_alloc_dirty()
6089 - MINOR: fcgi-app: use pool_alloc(), not pool_alloc_dirty()
6090 - MINOR: cache: use pool_alloc(), not pool_alloc_dirty()
6091 - MINOR: ssl: use pool_alloc(), not pool_alloc_dirty()
6092 - MINOR: opentracing: use pool_alloc(), not pool_alloc_dirty()
6093 - MINOR: dynbuf: make b_alloc() always check if the buffer is allocated
6094 - CLEANUP: compression: do not test for buffer before calling b_alloc()
6095 - CLEANUP: l7-retries: do not test the buffer before calling b_alloc()
6096 - MINOR: channel: simplify the channel's buffer allocation
6097 - MEDIUM: dynbuf: remove last usages of b_alloc_margin()
6098 - CLEANUP: dynbuf: remove b_alloc_margin()
6099 - CLEANUP: dynbuf: remove the unused b_alloc_fast() function
6100 - CLEANUP: pools: remove the unused pool_get_first() function
6101 - MINOR: pools: make the pool allocator support a few flags
6102 - MINOR: pools: add pool_zalloc() to return a zeroed area
6103 - CLEANUP: connection: use pool_zalloc() in conn_alloc_hash_node()
6104 - CLEANUP: filters: use pool_zalloc() in flt_stream_add_filter()
6105 - CLEANUP: spoe: use pool_zalloc() instead of pool_alloc+memset
6106 - CLEANUP: frontend: use pool_zalloc() in frontend_accept()
6107 - CLEANUP: mailers: use pool_zalloc() in enqueue_one_email_alert()
6108 - CLEANUP: resolvers: use pool_zalloc() in resolv_link_resolution()
6109 - CLEANUP: ssl: use pool_zalloc() in ssl_init_keylog()
6110 - CLEANUP: tcpcheck: use pool_zalloc() instead of pool_alloc+memset
6111 - CLEANUP: quic: use pool_zalloc() instead of pool_alloc+memset
6112 - MINOR: time: also provide a global, monotonic global_now_ms timer
6113 - BUG/MEDIUM: freq_ctr/threads: use the global_now_ms variable
6114 - MINOR: tools: introduce new option PA_O_DEFAULT_DGRAM on str2sa_range.
6115 - BUILD: tools: fix build error with new PA_O_DEFAULT_DGRAM
6116 - BUG/MINOR: ssl: Prevent disk access when using "add ssl crt-list"
6117 - CLEANUP: ssl: remove unused definitions
6118 - BUILD: ssl: guard ecdh functions with SSL_CTX_set_tmp_ecdh macro
6119 - MINOR: lua: Slightly improve function dumping the lua traceback
6120 - BUG/MEDIUM: debug/lua: Use internal hlua function to dump the lua traceback
6121 - BUG/MEDIUM: lua: Always init the lua stack before referencing the context
6122 - MINOR: fd: make fd_clr_running() return the remaining running mask
6123 - MINOR: fd: remove the unneeded running bit from fd_insert()
6124 - BUG/MEDIUM: fd: do not wait on FD removal in fd_delete()
6125 - CLEANUP: fd: remove unused fd_set_running_excl()
6126 - CLEANUP: fd: slightly simplify up _fd_delete_orphan()
6127 - BUG/MEDIUM: fd: Take the fd_mig_lock when closing if no DWCAS is available.
6128 - BUG/MEDIUM: release lock on idle conn killing on reached pool high count
6129 - BUG/MEDIUM: thread: Fix a deadlock if an isolated thread is marked as harmless
6130 - MINOR: tools: make url2ipv4 return the exact number of bytes parsed
6131 - BUG/MINOR: http_fetch: make hdr_ip() reject trailing characters
6132 - BUG/MEDIUM: mux-h1: make h1_shutw_conn() idempotent
6133 - BUG/MINOR: ssl: Fix update of default certificate
6134 - BUG/MINOR: ssl: Prevent removal of crt-list line if the instance is a default one
6135 - BUILD: ssl: introduce fine guard for ssl random extraction functions
6136 - REORG: global: move initcall register code in a dedicated file
6137 - REORG: global: move free acl/action in their related source files
6138 - REORG: split proxy allocation functions
6139 - MINOR: proxy: implement a free_proxy function
6140 - MINOR: proxy: define cap PR_CAP_LUA
6141 - MINOR: lua: properly allocate the lua Socket proxy
6142 - MINOR: lua: properly allocate the lua Socket servers
6143 - MINOR: vars: make get_vars() allow the session to be null
6144 - MINOR: vars: make the var() sample fetch keyword depend on nothing
6145 - CLEANUP: sample: remove duplicate "stopping" sample fetch keyword
6146 - MINOR: sample: make smp_resolve_args() return an allocate error message
6147 - MINOR: sample: add a new SMP_SRC_CONST sample capability
6148 - MINOR: sample: mark the truly constant sample fetch keywords as such
6149 - MINOR: sample: add a new CFG_PARSER context for samples
6150 - MINOR: action: add a new ACT_F_CFG_PARSER origin designation
6151 - MEDIUM: vars: add support for a "set-var" global directive
6152 - REGTESTS: add a basic reg-test for some "set-var" commands
6153 - MINOR: sample: add a new CLI_PARSER context for samples
6154 - MINOR: action: add a new ACT_F_CLI_PARSER origin designation
6155 - MINOR: vars/cli: add a "get var" CLI command to retrieve global variables
6156 - MEDIUM: cli: add a new experimental "set var" command
6157 - MINOR: compat: add short aliases for a few very commonly used types
6158 - BUILD: ssl: use EVP_CIPH_GCM_MODE macro instead of HA_OPENSSL_VERSION
6159 - MEDIUM: backend: use a trylock to grab a connection on high FD counts as well
6160
Willy Tarreau09cc6692021-03-19 17:16:18 +010061612021/03/19 : 2.4-dev13
6162 - BUG/MEDIUM: cli: fix "help" crashing since recent spelling fixes
6163 - BUG/MINOR: cfgparse: use the GLOBAL not LISTEN keywords list for spell checking
6164 - MINOR: tools: improve word fingerprinting by counting presence
6165 - MINOR: tools: do not sum squares of differences for word fingerprints
6166 - MINOR: cli: improve fuzzy matching to work on all remaining words at once
6167 - MINOR: cli: sort the suggestions by order of relevance
6168 - MINOR: cli: limit spelling suggestions to 5
6169 - MINOR: cfgparse/proxy: also support spelling fixes on options
6170 - BUG/MINOR: resolvers: Add missing case-insensitive comparisons of DNS hostnames
6171 - MINOR: time: export the global_now variable
6172 - BUG/MINOR: freq_ctr/threads: make use of the last updated global time
6173 - MINOR: freq_ctr/threads: relax when failing to update a sliding window value
6174 - MINOR/BUG: mworker/cli: do not use the unix_bind prefix for the master CLI socket
6175 - MINOR: mworker/cli: alert the user if we enabled a master CLI but not the master-worker mode
6176 - MINOR: cli: implement experimental-mode
6177 - REORG: server: add a free server function
6178 - MINOR: cfgparse: always alloc idle conns task
6179 - REORG: server: move keywords in srv_kws
6180 - MINOR: server: remove fastinter from mistyped kw list
6181 - REORG: server: split parse_server
6182 - REORG: server: move alert traces in parse_server
6183 - REORG: server: rename internal functions from parse_server
6184 - REORG: server: attach servers in parse_server
6185 - REORG: server: use flags for parse_server
6186 - MINOR: server: prepare parsing for dynamic servers
6187 - MINOR: stats: export function to allocate extra proxy counters
6188 - MEDIUM: server: implement 'add server' cli command
6189 - REGTESTS: implement test for 'add server' cli
6190 - MINOR: server: enable standard options for dynamic servers
6191 - MINOR: server: support keyword proto in 'add server' cli
6192 - BUG/MINOR: protocol: add missing support of dgram unix socket.
6193 - CLEANUP: Fix a typo in fix_is_valid description
6194 - MINOR: raw_sock: Add a close method.
6195 - MEDIUM: connections: Introduce a new XPRT method, start().
6196 - MEDIUM: connections: Implement a start() method for xprt_handshake.
6197 - MEDIUM: connections: Implement a start() method in ssl_sock.
6198 - MINOR: muxes: garbage collect the reset() method.
6199 - CLEANUP: tcp-rules: Fix a typo in error messages about expect-netscaler-cip
6200 - MEDIUM: lua: Use a per-thread counter to track some non-reentrant parts of lua
6201 - BUG/MEDIUM: debug/lua: Don't dump the lua stack if not dumpable
6202
Willy Tarreauacdd47d2021-03-13 11:48:28 +010062032021/03/13 : 2.4-dev12
6204 - CLEANUP: connection: Use `VAR_ARRAY` in `struct tlv` definition
6205 - CLEANUP: connection: Remove useless test for NULL before calling `pool_free()`
6206 - CLEANUP: connection: Use istptr / istlen for proxy_unique_id
6207 - MINOR: connection: Use a `struct ist` to store proxy_authority
6208 - CLEANUP: connection: Consistently use `struct ist` to process all TLV types
6209 - BUILD: task: fix build at -O0 with threads disabled
6210 - BUILD: bug: refine HA_LINK_ERROR() to only be used on gcc and derivatives
6211 - CLEANUP: config: make the cfg_keyword parsers take a const for the defproxy
6212 - BUILD: connection: do not use VAR_ARRAY in struct tlv
6213 - BUG/MEDIUM: session: NULL dereference possible when accessing the listener
6214 - MINOR: build: force CC to set a return code when probing options
6215 - CLEANUP: stream: rename a few remaining occurrences of "stream *sess"
6216 - BUG/MEDIUM: resolvers: handle huge responses over tcp servers.
6217 - CLEANUP: config: also address the cfg_keyword API change in the compression code
6218 - BUG/MEDIUM: ssl: properly remove the TASK_HEAVY flag at end of handshake
6219 - BUG/MINOR: sample: Rename SenderComID/TargetComID to SenderCompID/TargetCompID
6220 - MINOR: task: give the scheduler a bit more flexibility in the runqueue size
6221 - OPTIM: task: automatically adjust the default runqueue-depth to the threads
6222 - BUG/MINOR: connection: Missing QUIC initialization
6223 - BUG/MEDIUM: stick-tables: fix ref counter in table entry using multiple http tracksc.
6224 - BUILD: atomic/arm64: force the register pairs to use in __ha_cas_dw()
6225 - BUG/MEDIUM: filters: Set CF_FL_ANALYZE on channels when filters are attached
6226 - BUG/MINOR: tcpcheck: Update .health threshold of agent inside an agent-check
6227 - BUG/MINOR: proxy/session: Be sure to have a listener to increment its counters
6228 - BUG/MINOR: tcpcheck: Fix double free on error path when parsing tcp/http-check
6229 - BUG/MINOR: server-state: properly handle the case where the base is not set
6230 - BUG/MINOR: server-state: use the argument, not the global state
6231 - CLEANUP: tcp-rules: add missing actions in the tcp-request error message
6232 - CLEANUP: vars: make the error message clearer on missing arguments for set-var
6233 - CLEANUP: http-rules: remove the unexpected comma before the list of action keywords
6234 - CLEANUP: actions: the keyword must always be const from the rule
6235 - MINOR: tools: add simple word fingerprinting to find similar-looking words
6236 - MINOR: cfgparse: add cfg_find_best_match() to suggest an existing word
6237 - MINOR: cfgparse: suggest correct spelling for unknown words in proxy sections
6238 - MINOR: cfgparse: suggest correct spelling for unknown words in global section
6239 - MINOR: cfgparse/server: try to fix spelling mistakes on server lines
6240 - MINOR: cfgparse/bind: suggest correct spelling for unknown bind keywords
6241 - MINOR: actions: add a function to suggest an action ressembling a given word
6242 - MINOR: http-rules: suggest approaching action names on mismatch
6243 - MINOR: tcp-rules: suggest approaching action names on mismatch
6244 - BUG/MINOR: cfgparse/server: increment the extra keyword counter one at a time
6245 - Revert "BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record"
6246 - BUG/MINOR: resolvers: Consider server to have no IP on DNS resolution error
6247 - BUG/MINOR: resolvers: Reset server address on DNS error only on status change
6248 - BUG/MINOR: resolvers: Unlink DNS resolution to set RMAINT on SRV resolution
6249 - BUG/MEDIUM: resolvers: Don't set an address-less server as UP
6250 - BUG/MEDIUM: resolvers: Fix the loop looking for an existing ADD item
6251 - MINOR: resolvers: new function find_srvrq_answer_record()
6252 - BUG/MINOR; resolvers: Ignore DNS resolution for expired SRV item
6253 - BUG/MEDIUM: resolvers: Trigger a DNS resolution if an ADD item is obsolete
6254 - MINOR: resolvers: Use a function to remove answers attached to a resolution
6255 - MINOR: resolvers: Purge answer items when a SRV resolution triggers an error
6256 - MINOR: resolvers: Add function to change the srv status based on SRV resolution
6257 - MINOR: resolvers: Directly call srvrq_update_srv_state() when possible
6258 - BUG/MEDIUM: resolvers: Don't release resolution from a requester callbacks
6259 - BUG/MEDIUM: resolvers: Skip DNS resolution at startup if SRV resolution is set
6260 - MINOR: resolvers: Use milliseconds for cached items in resolver responses
6261 - MINOR: resolvers: Don't try to match immediatly renewed ADD items
6262 - CLEANUP: resolvers: Use ha_free() in srvrq_resolution_error_cb()
6263 - CLEANUP: resolvers: Perform unsafe loop on requester list when possible
6264 - BUG/MINOR: cli: make sure "help", "prompt", "quit" are enabled at master level
6265 - CLEANUP: cli: fix misleading comment and better indent the access level flags
6266 - MINOR: cli: set the ACCESS_MASTER* bits on the master bind_conf
6267 - MINOR: cli: test the appctx level for master access instead of comparing pointers
6268 - MINOR: cli: print the error message in the parser function itself
6269 - MINOR: cli: filter the list of commands to the matching part
6270 - MEDIUM: cli: apply spelling fixes for known commands before listing them
6271 - MINOR: tools: add the ability to update a word fingerprint
6272 - MINOR: cli: apply the fuzzy matching on the whole command instead of words
6273 - CLEANUP: cli: rename MAX_STATS_ARGS to MAX_CLI_ARGS
6274 - CLEANUP: cli: rename the last few "stats_" to "cli_"
6275 - CLEANUP: task: make sure tasklet handlers always indicate their statuses
6276 - CLEANUP: assorted typo fixes in the code and comments
6277
Willy Tarreau7bbc6c92021-03-05 21:24:23 +010062782021/03/05 : 2.4-dev11
6279 - CI: codespell: skip Makefile for spell check
6280 - CLEANUP: assorted typo fixes in the code and comments
6281 - BUG/MINOR: tcp-act: Don't forget to set the original port for IPv4 set-dst rule
6282 - BUG/MINOR: connection: Use the client's dst family for adressless servers
6283 - BUG/MEDIUM: spoe: Kill applets if there are pending connections and nbthread > 1
6284 - CLEANUP: Use ist2(const void*, size_t) whenever possible
6285 - CLEANUP: Use IST_NULL whenever possible
6286 - BUILD: proxy: Missing header inclusion for quic_transport_params_init()
6287 - BUILD: quic: Implicit conversion between SSL related enums.
6288 - DOC: spoe: Add a note about fragmentation support in HAProxy
6289 - MINOR: contrib: add support for heartbeat control messages.
6290 - MINOR: contrib: Enhance peers dissector heuristic.
6291 - BUG/MINOR: mux-h2: Fix typo in scheme adjustment
6292 - CLEANUP: Reapply the ist2() replacement patch
6293 - CLEANUP: Use istadv(const struct ist, const size_t) whenever possible
6294 - CLEANUP: Use isttest(const struct ist) whenever possible
6295 - Revert "CI: Pin VTest to a known good commit"
6296 - CLEANUP: backend: fix a wrong comment
6297 - BUG/MINOR: backend: free allocated bind_addr if reuse conn
6298 - MINOR: backend: handle reuse for conns with no server as target
6299 - REGTESTS: test http-reuse if no server target
6300 - BUG/MINOR: hlua: Don't strip last non-LWS char in hlua_pushstrippedstring()
6301 - BUG/MINOR: server-state: Don't load server-state file for disabled backends
6302 - CLEANUP: dns: Use DISGUISE() on a never-failing ring_attach() call
6303 - CLEANUP: dns: Remove useless test on ns->dgram in dns_connect_nameserver()
6304 - DOC: fix originalto except clause on destination address
6305 - CLEANUP: Use the ist() macro whenever possible
6306 - CLEANUP: Replace for loop with only a condition by while
6307 - REORG: atomic: reimplement pl_cpu_relax() from atomic-ops.h
6308 - BUG/MINOR: mt-list: always perform a cpu_relax call on failure
6309 - MINOR: atomic: add armv8.1-a atomics variant for cas-dw
6310 - MINOR: atomic: implement a more efficient arm64 __ha_cas_dw() using pairs
6311 - BUG/MINOR: ssl: don't truncate the file descriptor to 16 bits in debug mode
6312 - MEDIUM: pools: add CONFIG_HAP_NO_GLOBAL_POOLS and CONFIG_HAP_GLOBAL_POOLS
6313 - MINOR: pools: double the local pool cache size to 1 MB
6314 - MINOR: stream: use ABORT_NOW() and not abort() in stream_dump_and_crash()
6315 - CLEANUP: stream: explain why we queue the stream at the head of the server list
6316 - MEDIUM: backend: use a trylock when trying to grab an idle connection
6317 - REORG: tools: promote the debug PRNG to more general use as a statistical one
6318 - OPTIM: lb-random: use a cheaper PRNG to pick a server
6319 - MINOR: task: stop abusing the nice field to detect a tasklet
6320 - MINOR: task: move the nice field to the struct task only
6321 - MEDIUM: task: extend the state field to 32 bits
6322 - MINOR: task: add an application specific flag to the state: TASK_F_USR1
6323 - MEDIUM: muxes: mark idle conns tasklets with TASK_F_USR1
6324 - MINOR: xprt: add new xprt_set_idle and xprt_set_used methods
6325 - MEDIUM: ssl: implement xprt_set_used and xprt_set_idle to relax context checks
6326 - MINOR: server: don't read curr_used_conns multiple times
6327 - CLEANUP: global: reorder some fields to respect cache lines
6328 - CLEANUP: sockpair: silence a coverity check about fcntl()
6329 - CLEANUP: lua: set a dummy file name and line number on the dummy servers
6330 - MINOR: server: add a global list of all known servers
6331 - MINOR: cfgparse: finish to set up servers outside of the proxy setup loop
6332 - MINOR: server: allocate a per-thread struct for the per-thread connections stuff
6333 - MINOR: server: move actconns to the per-thread structure
6334 - CLEANUP: server: reorder some fields in the server struct to respect cache lines
6335 - MINOR: backend: add a BUG_ON if conn mux NULL in connect_server
6336 - BUG/MINOR: backend: fix condition for reuse on mode HTTP
6337 - BUILD: Fix build when using clang without optimizing.
6338 - CLEANUP: assorted typo fixes in the code and comments
6339
Willy Tarreau8ab65c22021-02-26 22:49:10 +010063402021/02/26 : 2.4-dev10
6341 - BUILD: SSL: introduce fine guard for RAND_keep_random_devices_open
6342 - MINOR: Configure the `cpp` userdiff driver for *.[ch] in .gitattributes
6343 - BUG/MINOR: ssl/cli: potential null pointer dereference in "set ssl cert"
6344 - BUG/MINOR: sample: secure convs that accept base64 string and var name as args
6345 - BUG/MEDIUM: vars: make functions vars_get_by_{name,desc} thread-safe
6346 - CLEANUP: vars: make smp_fetch_var() to reuse vars_get_by_desc()
6347 - DOC: muxes: add a diagram of the exchanges between muxes and outer world
6348 - BUG/MEDIUM: proxy: use thread-safe stream killing on hard-stop
6349 - BUG/MEDIUM: cli/shutdown sessions: make it thread-safe
6350 - BUG/MINOR: proxy: wake up all threads when sending the hard-stop signal
6351 - MINOR: stream: add an "epoch" to figure which streams appeared when
6352 - MINOR: cli/streams: make "show sess" dump all streams till the new epoch
6353 - MINOR: streams: use one list per stream instead of a global one
6354 - MEDIUM: streams: do not use the streams lock anymore
6355 - BUILD: dns: avoid a build warning when threads are disabled (dss unused)
6356 - MEDIUM: task: remove the tasks_run_queue counter and have one per thread
6357 - MINOR: tasks: do not maintain the rqueue_size counter anymore
6358 - CLEANUP: tasks: use a less confusing name for task_list_size
6359 - CLEANUP: task: move the tree root detection from __task_wakeup() to task_wakeup()
6360 - MINOR: task: limit the remote thread wakeup to the global runqueue only
6361 - MINOR: task: move the allocated tasks counter to the per-thread struct
6362 - CLEANUP: task: split the large tasklet_wakeup_on() function in two
6363 - BUG/MINOR: fd: properly wait for !running_mask in fd_set_running_excl()
6364 - BUG/MINOR: resolvers: Fix condition to release received ARs if not assigned
6365 - BUG/MINOR: resolvers: Only renew TTL for SRV records with an additional record
6366 - BUG/MINOR: resolvers: new callback to properly handle SRV record errors
6367 - BUG/MEDIUM: resolvers: Reset server address and port for obselete SRV records
6368 - BUG/MEDIUM: resolvers: Reset address for unresolved servers
6369 - DOC: Update the module list in MAINTAINERS file
6370 - MINOR: htx: Add function to reserve the max possible size for an HTX DATA block
6371 - DOC: Update the HTX API documentation
6372 - DOC: Update the filters guide
6373 - BUG/MEDIUM: contrib/prometheus-exporter: fix segfault in listener name dump
6374 - MINOR: task: split the counts of local and global tasks picked
6375 - MINOR: task: do not use __task_unlink_rq() from process_runnable_tasks()
6376 - MINOR: task: don't decrement then increment the local run queue
6377 - CLEANUP: task: re-merge __task_unlink_rq() with task_unlink_rq()
6378 - MINOR: task: make grq_total atomic to move it outside of the grq_lock
6379 - MINOR: tasks: also compute the tasklet latency when DEBUG_TASK is set
6380 - MINOR: task: make tasklet wakeup latency measurements more accurate
6381 - MINOR: server: Be more strict on the server-state line parsing
6382 - MINOR: server: Only fill one array when parsing a server-state line
6383 - MEDIUM: server: Refactor apply_server_state() to make it more readable
6384 - CLEANUP: server: Rename state_line node to node instead of name_name
6385 - CLEANUP: server: Rename state_line structure into server_state_line
6386 - CLEANUP: server: Use a local eb-tree to store lines of the global server-state file
6387 - MINOR: server: Be more strict when reading the version of a server-state file
6388 - MEDIUM: server: Store parsed params of a server-state line in the tree
6389 - MINOR: server: Remove cached line from global server-state tree when found
6390 - MINOR: server: Move loading state of servers in a dedicated function
6391 - MEDIUM: server: Use a tree to store local server-state lines
6392 - MINOR: server: Parse and store server-state lines in a dedicated function
6393 - MEDIUM: server: Don't load server-state file if a line is corrupted
6394 - REORG: server: Export and rename some functions updating server info
6395 - REORG: server-state: Move functions to deal with server-state in its own file
6396 - MINOR: server-state: Don't load server-state file for serverless proxies
6397 - CLEANUP: muxes: Remove useless if condition in show_fd function
6398 - BUG/MINOR: stats: fix compare of no-maint url suffix
6399 - MINOR: task: limit the number of subsequent heavy tasks with flag TASK_HEAVY
6400 - MINOR: ssl: mark the SSL handshake tasklet as heavy
6401 - CLEANUP: server: rename srv_cleanup_{idle,toremove}_connections()
6402 - BUG/MINOR: ssl: potential null pointer dereference in ckchs_dup()
6403 - MINOR: task: add one extra tasklet class: TL_HEAVY
6404 - MINOR: task: place the heavy elements in TL_HEAVY
6405 - MINOR: task: only limit TL_HEAVY tasks but not others
6406 - BUG/MINOR: http-ana: Only consider dst address to process originalto option
6407 - MINOR: tools: Add net_addr structure describing a network addess
6408 - MINOR: tools: Add function to compare an address to a network address
6409 - MEDIUM: http-ana: Add IPv6 support for forwardfor and orignialto options
6410 - CLEANUP: hlua: Use net_addr structure internally to parse and compare addresses
6411 - REGTESTS: Add script to test except param for fowardedfor/originalto options
6412 - DOC: scheduler: add a diagram showing the different queues and their usages
6413 - CLEANUP: tree-wide: replace free(x);x=NULL with ha_free(&x)
6414 - CLEANUP: config: replace a few free() with ha_free()
6415 - CLEANUP: vars: always zero the pointers after a free()
6416 - CLEANUP: ssl: remove a useless "if" before freeing an error message
6417 - CLEANUP: ssl: make ssl_sock_free_srv_ctx() zero the pointers after free
6418 - CLEANUP: ssl: use realloc() instead of free()+malloc()
6419
Willy Tarreau31dd3932021-02-20 13:30:31 +010064202021/02/20 : 2.4-dev9
6421 - BUG/MINOR: server: Remove RMAINT from admin state when loading server state
6422 - CLEANUP: check: fix get_check_status_info declaration
6423 - CLEANUP: contrib/prometheus-exporter: align for with srv status case
6424 - MEDIUM: stats: allow to select one field in `stats_fill_li_stats`
6425 - MINOR: stats: add helper to get status string
6426 - MEDIUM: contrib/prometheus-exporter: add listen stats
6427 - BUG/MINOR: dns: add test on result getting value from buffer into ring.
6428 - BUG/MINOR: dns: dns_connect_server must return -1 unsupported nameserver's type
6429 - BUG/MINOR: dns: missing test writing in output channel in session handler
6430 - BUG/MINOR: dns: fix ring attach control on dns_session_new
6431 - BUG/MEDIUM: dns: fix multiple double close on fd in dns.c
6432 - BUG/MAJOR: connection: prevent double free if conn selected for removal
6433 - BUG/MINOR: session: atomically increment the tracked sessions counter
6434 - REGTESTS: fix http_reuse_conn_hash proxy test
6435 - BUG/MINOR: backend: do not call smp_make_safe for sni conn hash
6436 - MINOR: connection: remove pointers for prehash in conn_hash_params
6437 - BUG/MINOR: checks: properly handle wrapping time in __health_adjust()
6438 - BUG/MEDIUM: checks: don't needlessly take the server lock in health_adjust()
6439 - DEBUG: thread: add 5 extra lock labels for statistics and debugging
6440 - OPTIM: server: switch the actconn list to an mt-list
6441 - Revert "MINOR: threads: change lock_t to an unsigned int"
6442 - MINOR: lb/api: let callers of take_conn/drop_conn tell if they have the lock
6443 - OPTIM: lb-first: do not take the server lock on take_conn/drop_conn
6444 - OPTIM: lb-leastconn: do not take the server lock on take_conn/drop_conn
6445 - OPTIM: lb-leastconn: do not unlink the server if it did not change
6446 - MINOR: tasks: add DEBUG_TASK to report caller info in a task
6447 - MINOR: tasks/debug: add some extra controls of use-after-free in DEBUG_TASK
6448 - BUG/MINOR: sample: Always consider zero size string samples as unsafe
6449 - MINOR: cli: add missing agent commands for set server
6450 - BUILD/MEDIUM: da Adding pcre2 support.
6451 - BUILD: ssl: introduce fine guard for OpenSSL specific SCTL functions
6452 - REGTESTS: reorder reuse conn proxy protocol test
6453 - DOC: explain the relation between pool-low-conn and tune.idle-pool.shared
6454 - MINOR: tasks: refine the default run queue depth
6455 - MINOR: listener: refine the default MAX_ACCEPT from 64 to 4
6456 - MINOR: mux_h2: do not try to remove front conn from idle trees
6457 - REGTESTS: workaround for a crash with recent libressl on http-reuse sni
6458 - BUG/MEDIUM: lists: Avoid an infinite loop in MT_LIST_TRY_ADDQ().
6459 - MINOR: connection: allocate dynamically hash node for backend conns
6460 - DOC: DeviceAtlas documentation typo fix.
6461 - BUG/MEDIUM: spoe: Resolve the sink if a SPOE logs in a ring buffer
6462 - BUG/MINOR: http-rules: Always replace the response status on a return action
6463 - BUG/MINOR: server: Init params before parsing a new server-state line
6464 - BUG/MINOR: server: Be sure to cut the last parsed field of a server-state line
6465 - MEDIUM: server: Don't introduce a new server-state file version
6466 - DOC: contrib/prometheus-exporter: remove htx reference
6467 - REGTESTS: contrib/prometheus-exporter: test NaN values
6468 - REGTESTS: contrib/prometheus-exporter: test well known labels
6469 - CI: github actions: switch to stable LibreSSL release
6470 - BUG/MINOR: server: Fix test on number of fields allowed in a server-state line
6471 - MINOR: dynbuf: make the buffer wait queue per thread
6472 - MINOR: dynbuf: use regular lists instead of mt_lists for buffer_wait
6473 - MINOR: dynbuf: pass offer_buffers() the number of buffers instead of a threshold
6474 - MINOR: sched: have one runqueue ticks counter per thread
6475
Willy Tarreaudc626ec2021-02-13 10:17:27 +010064762021/02/13 : 2.4-dev8
6477 - BUILD: ssl: fix typo in HAVE_SSL_CTX_ADD_SERVER_CUSTOM_EXT macro
6478 - BUILD: ssl: guard SSL_CTX_add_server_custom_ext with special macro
6479 - BUG/MINOR: mux-h1: Don't emit extra CRLF for empty chunked messages
6480 - MINOR: contrib/prometheus-exporter: use stats desc when possible followup
6481 - MEDIUM: contrib/prometheus-exporter: export base stick table stats
6482 - CLEANUP: assorted typo fixes in the code and comments
6483 - CLEANUP: check: fix some typo in comments
6484 - CLEANUP: tools: typo in `strl2irc` mention
6485 - BUILD: ssl: guard SSL_CTX_set_msg_callback with SSL_CTRL_SET_MSG_CALLBACK macro
6486 - MEDIUM: ssl: add a rwlock for SSL server session cache
6487 - BUG/MINOR: intops: fix mul32hi()'s off-by-one
6488 - BUG/MINOR: freq_ctr: fix a wrong delay calculation in next_event_delay()
6489 - MINOR: stick-tables/counters: add http_fail_cnt and http_fail_rate data types
6490 - MINOR: ssl: add SSL_SERVER_LOCK label in threads.h
6491 - BUG/MINOR: mux-h1: Don't increment HTTP error counter for 408/500/501 errors
6492 - BUG/MINOR: http-ana: Don't increment HTTP error counter on internal errors
6493 - BUG/MEDIUM: mux-h1: Always set CS_FL_EOI for response in MSG_DONE state
6494 - BUG/MINOR: mux-h1: Fix data skipping for bodyless responses
6495 - BUG/MINOR: mux-h1: Don't blindly skip EOT block for non-chunked messages
6496 - BUG/MEDIUM: mux-h2: Add EOT block when EOM flag is set on an empty HTX message
6497 - MINOR: mux-h1: Be sure EOM flag is set when processing end of outgoing message
6498 - REGTESTS: Add a script to test payload skipping for bodyless HTTP responses
6499 - BUG/MINOR: server: re-align state file fields number
6500 - CLEANUP: muxes: Remove useless calls to b_realign_if_empty()
6501 - BUG/MINOR: tools: Fix a memory leak on error path in parse_dotted_uints()
6502 - CLEANUP: remove unused variable assigned found by Coverity
6503 - CLEANUP: queue: Remove useless tests on p or pp in pendconn_process_next_strm()
6504 - BUG/MINOR: backend: hold correctly lock when killing idle conn
6505 - MEDIUM: connection: protect idle conn lists with locks
6506 - MEDIUM: connection: replace idle conn lists by eb trees
6507 - MINOR: backend: search conn in idle/safe trees after available
6508 - MINOR: backend: search conn in idle tree after safe on always reuse
6509 - MINOR: connection: prepare hash calcul for server conns
6510 - MINOR: connection: use the srv pointer for the srv conn hash
6511 - MINOR: backend: compare conn hash for session conn reuse
6512 - MINOR: connection: use sni as parameter for srv conn hash
6513 - MINOR: reg-tests: test http-reuse with sni
6514 - MINOR: backend: rewrite alloc of stream target address
6515 - MINOR: connection: use dst addr as parameter for srv conn hash
6516 - MINOR: reg-test: test http-reuse with specific dst addr
6517 - MINOR: backend: rewrite alloc of connection src address
6518 - MINOR: connection: use src addr as parameter for srv conn hash
6519 - MINOR: connection: use proxy protocol as parameter for srv conn hash
6520 - MINOR: reg-tests: test http-reuse with proxy protocol
6521 - MINOR: doc: update http reuse for new eligilible connections
6522 - BUG/MINOR: backend: fix compilation without ssl
6523 - REGTESTS: adjust http_reuse_conn_hash requirements
6524 - REGTESTS: deactivate a failed test on CI in http_reuse_conn_hash
6525 - REGTESTS: fix sni used in http_reuse_conn_hash for libressl 3.3.0
6526 - CI: cirrus: update FreeBSD image to 12.2
6527 - MEDIUM: cli: add check-addr command
6528 - MEDIUM: cli: add agent-port command
6529 - MEDIUM: server: add server-states version 2
6530 - MEDIUM: server: support {check,agent}_addr, agent_port in server state
6531 - MINOR: server: enhance error precision when applying server state
6532 - BUG/MINOR: server: Fix server-state-file-name directive
6533 - CLEANUP: deinit: release global and per-proxy server-state variables on deinit
6534 - BUG/MEDIUM: config: don't pick unset values from last defaults section
6535 - BUG/MINOR: stats: revert the change on ST_CONVDONE
6536 - BUG/MINOR: cfgparse: do not mention "addr:port" as supported on proxy lines
6537 - BUG/MINOR: http-htx: defpx must be a const in proxy_dup_default_conf_errors()
6538 - BUG/MINOR: tcpheck: the source list must be a const in dup_tcpcheck_var()
6539 - BUILD: proxy: add missing compression-t.h to proxy-t.h
6540 - REORG: move init_default_instance() to proxy.c and pass it the defproxy pointer
6541 - REORG: proxy: centralize the proxy allocation code into alloc_new_proxy()
6542 - MEDIUM: proxy: only take defaults when a default proxy is passed.
6543 - MINOR: proxy: move the defproxy freeing code to proxy.c
6544 - MINOR: proxy: always properly reset the just freed default instance pointers
6545 - BUG/MINOR: extcheck: proxy_parse_extcheck() must take a const for the defproxy
6546 - BUG/MINOR: tcpcheck: proxy_parse_*check*() must take a const for the defproxy
6547 - BUG/MINOR: server: parse_server() must take a const for the defproxy
6548 - MINOR: cfgparse: move defproxy to cfgparse-listen as a static
6549 - MINOR: proxy: add a new capability PR_CAP_DEF
6550 - MINOR: cfgparse: check PR_CAP_DEF instead of comparing poiner against defproxy
6551 - MINOR: cfgparse: use a pointer to the current default proxy
6552 - MINOR: proxy: also store the name for a defaults section
6553 - MINOR: proxy: support storing defaults sections into their own tree
6554 - MEDIUM: proxy: store the default proxies in a tree by name
6555 - MEDIUM: cfgparse: allow a proxy to designate the defaults section to use
6556 - MINOR: http: add baseq sample fetch
6557 - CLEANUP: tcpcheck: Remove a useless test on port variable
6558 - BUG/MINOR: server: Don't call fopen() with server-state filepath set to NULL
6559 - CLEANUP: server: Remove useless "filepath" variable in apply_server_state()
6560 - MINOR: peers/cli: do not dump the peers dictionaries by default on "show peers"
6561 - MINOR: cfgparse: implement a simple if/elif/else/endif macro block handler
6562 - DOC: tune: explain the origin of block size for ssl.cachesize
6563 - MINOR: tcp: add support for defer-accept on FreeBSD.
6564 - MINOR: ring: adds new ring_init function.
6565 - CLEANUP: channel: fix comment in ci_putblk.
6566 - BUG/MINOR: dns: add missing sent counter and parent id to dns counters.
6567 - BUG/MINOR: resolvers: fix attribute packed struct for dns
6568 - MINOR: resolvers: renames some resolvers internal types and removes dns prefix
6569 - MINOR: resolvers: renames type dns_resolvers to resolvers.
6570 - MINOR: resolvers: renames some resolvers specific types to not use dns prefix
6571 - MINOR: resolvers: renames some dns prefixed types using resolv prefix.
6572 - MINOR: resolvers: renames resolvers DNS_RESP_* errcodes RSLV_RESP_*
6573 - MINOR: resolvers: renames resolvers DNS_UPD_* returncodes to RSLV_UPD_*
6574 - MINOR: resolvers: rework prototype suffixes to split resolving and dns.
6575 - MEDIUM: resolvers: move resolvers section parsing from cfgparse.c to dns.c
6576 - MINOR: resolvers: replace nameserver's resolver ref by generic parent pointer
6577 - MINOR: resolvers: rework dns stats prototype because specific to resolvers
6578 - MEDIUM: resolvers: split resolving and dns message exchange layers.
6579 - MEDIUM: resolvers/dns: split dns.c into dns.c and resolvers.c
6580 - MEDIUM: dns: adds code to support pipelined DNS requests over TCP.
6581 - MEDIUM: resolvers: add supports of TCP nameservers in resolvers.
6582
Willy Tarreau5d46fbd2021-02-05 15:17:33 +010065832021/02/05 : 2.4-dev7
6584 - BUG/MINOR: stats: Continue to fill frontend stats on unimplemented metric
6585 - BUILD: ssl: guard Client Hello callbacks with HAVE_SSL_CLIENT_HELLO_CB macro instead of openssl version
6586 - BUG/MINOR: stats: Init the metric variable when frontend stats are filled
6587 - MINOR: contrib/prometheus-exporter: better output of Not-a-Number
6588 - CLEANUP: stats: improve field selection for frontend http fields
6589 - CLEANUP: assorted typo fixes in the code and comments
6590 - DOC: Improve documentation of the various hdr() fetches
6591 - MEDIUM: stats: allow to select one field in `stats_fill_be_stats`
6592 - MINOR: contrib/prometheus-exporter: use fill_be_stats for backend dump
6593 - MEDIUM: stats: allow to select one field in `stats_fill_sv_stats`
6594 - MINOR: contrib/prometheus-exporter: use fill_sv_stats for server dump
6595 - MINOR: abort() on my_unreachable() when DEBUG_USE_ABORT is set.
6596 - BUG/MEDIUM: filters/htx: Fix data forwarding when payload length is unknown
6597 - BUG/MINOR: config: fix leak on proxy.conn_src.bind_hdr_name
6598 - MINOR: reg-tests: add http-reuse test
6599 - CLEANUP: srv: fix comment for pool-max-conn
6600 - CLEANUP: backend: remove an obsolete comment on conn_backend_get
6601 - REORG: backend: simplify conn_backend_get
6602 - MINOR: ssl: Server ssl context prepare function refactoring
6603 - MINOR: ssl: Certificate chain loading refactorization
6604 - MEDIUM: ssl: Load client certificates in a ckch for backend servers
6605 - MEDIUM: ssl: Enable backend certificate hot update
6606 - MINOR: ssl: Remove client_crt member of the server's ssl context
6607 - CLEANUP: ssl/cli: rework free in cli_io_handler_commit_cert()
6608 - CLEANUP: ssl: remove SSL_CTX function parameter
6609 - CLEANUP: ssl: make load_srv_{ckchs,cert} match their bind counterpart
6610 - BUILD: Include stdlib.h in compiler.h if DEBUG_USE_ABORT is set
6611 - CI: Fix DEBUG_STRICT definition for Coverity
6612 - BUG/MINOR: stats: Remove a break preventing ST_F_QCUR to be set for servers
6613 - BUG/MINOR: stats: Add a break after filling ST_F_MODE field for servers
6614 - CLEANUP: ssl: remove dead code in ckch_inst_new_load_srv_store()
6615 - BUG/MINOR: ssl: init tmp chunk correctly in ssl_sock_load_sctl_from_file()
6616 - BUG/MEDIUM: session: only retrieve ready idle conn from session
6617 - BUG/MEDIUM: backend: never reuse a connection for tcp mode
6618 - REGTESTS: set_ssl_server_cert.vtc: remove the abort command
6619 - REGTESTS: set_ssl_server_cert.vtc: check the Sha1 Fingerprint
6620 - REGTESTS: set_ssl_server_cert.vtc: check the sha1 from the server
6621 - MEDIUM: stream-int: Take care of EOS if the SI wake callback function
6622 - MINOR: mux-h1: Try to wake up data layer first before calling its wake callback
6623 - MINOR: mux-h1: Wake up H1C after its creation if input buffer is not empty
6624 - MEDIUM: mux-h1: Add ST_READY state for the H1 connections
6625 - MINOR: stream: Add a function to validate TCP to H1 upgrades
6626 - MEDIUM: http-ana: Do nothing in wait-for-request analyzer if not htx
6627 - BUG/MEDIUM: stream: Don't immediatly ack the TCP to H1 upgrades
6628 - BUG/MAJOR: mux-h1: Properly handle TCP to H1 upgrades
6629 - MINOR: htx/http-ana: Save info about Upgrade option in the Connection header
6630 - MEDIUM: http-ana: Refuse invalid 101-switching-protocols responses
6631 - BUG/MINOR: h2/mux-h2: Reject 101 responses with a PROTOCOL_ERROR h2s error
6632 - MINOR: mux-h1/mux-fcgi: Don't set TUNNEL mode if payload length is unknown
6633 - MINOR: mux-h1: Split H1C_F_WAIT_OPPOSITE flag to separate input/output sides
6634 - MINOR: mux-h2: Add 2 flags to help to properly handle tunnel mode
6635 - MEDIUM: mux-h2: Block client data on server side waiting tunnel establishment
6636 - MEDIUM: mux-h2: Close streams when processing data for an aborted tunnel
6637 - MEDIUM: mux-h1: Properly handle tunnel establishments and aborts
6638 - BUG/MAJOR: mux-h1/mux-h2/htx: Fix HTTP tunnel management at the mux level
6639 - MINOR: htx: Rename HTX_FL_EOI flag into HTX_FL_EOM
6640 - REGTESTS: Don't run http_msg_full_on_eom script on the 2.4 anymore
6641 - MINOR: htx: Add a function to know if a block is the only one in a message
6642 - MAJOR: htx: Remove the EOM block type and use HTX_FL_EOM instead
6643 - MINOR: mux-h1: Add a flag on H1 streams with a response known to be bodyless
6644 - MEDIUM: mux-h1: Don't emit any payload for bodyless responses
6645 - MINOR: mux-h1: Don't emit C-L and T-E headers for 204 and 1xx responses
6646 - MINOR: mux-h1: Don't add Connection close/keep-alive header for 1xx messages
6647 - MINOR: h2/mux-h2: Add flags to notify the response is known to have no body
6648 - MEDIUM: mux-h2: Don't emit DATA frame for bodyless responses
6649 - MEDIUM: http-ana: Deal with L7 retries in HTTP analysers
6650 - MINOR: h1: reject websocket handshake if missing key
6651 - MEDIUM: h1: generate WebSocket key on response if needed
6652 - MINOR: mux_h2: define H2_SF_EXT_CONNECT_SENT stream flag
6653 - MEDIUM: h2: parse Extended CONNECT reponse to htx
6654 - MEDIUM: mux_h2: generate Extended CONNECT from htx upgrade
6655 - MEDIUM: h1: add a WebSocket key on handshake if needed
6656 - MEDIUM: mux_h2: generate Extended CONNECT response
6657 - MEDIUM: h2: parse Extended CONNECT request to htx
6658 - MEDIUM: h2: send connect protocol h2 settings
6659 - MINOR: vtc: add test for h1/h2 protocol upgrade translation
6660 - MINOR: vtc: add websocket test
6661 - REGTESTS: Fix required versions for several scripts
6662 - REGTEST: Don't use the websocket to validate http-check
6663 - MINOR: mux-h1/trace: add traces at level ERROR for all kind of errors
6664 - MINOR: mux-fcgi/trace: add traces at level ERROR for all kind of errors
6665 - MINOR: h1: Raise the chunk size limit up to (2^52 - 1)
6666 - BUG/MEDIUM: listener: do not accept connections faster than we can process them
6667 - REGTESTS: set_ssl_server_cert.vtc: set as broken
6668 - Revert "BUG/MEDIUM: listener: do not accept connections faster than we can process them"
6669 - BUG/MINOR: backend: check available list allocation for reuse
6670 - CI: Fix the coverity builds
6671 - DOC: management: fix "show resolvers" alphabetical ordering
6672 - MINOR: tools: add print_time_short() to print a condensed duration value
6673 - MINOR: activity: make profiling more manageable
6674 - MINOR: activity: declare a new structure to collect per-function activity
6675 - MEDIUM: tasks/activity: collect per-task statistics when profiling is enabled
6676 - MINOR: activity: also report collected tasks stats in "show profiling"
6677 - MINOR: activity: flush scheduler stats on "set profiling tasks on"
6678 - MINOR: activity: add a new "show tasks" command to list currently active tasks
6679 - MINOR: listener: export accept_queue_process
6680 - MINOR: session: export session_expire_embryonic()
6681 - MINOR: muxes: export the timeout and shutr task handlers
6682 - MINOR: checks: export a few functions that appear often in trace dumps
6683 - MINOR: peers: export process_peer_sync() to improve traces
6684 - MINOR: stick-tables: export process_table_expire()
6685 - MINOR: mux-h1: Remove first useless test on count in h1_process_output()
6686 - BUG/MINOR: stick-table: Always call smp_fetch_src() with a valid arg list
6687 - MINOR: http-fetch: Don't check if argument list is set in sample fetches
6688 - MINOR: http-conv: Don't check if argument list is set in sample converters
6689 - MINOR: sample: Don't check if argument list is set in sample fetches
6690 - MINOR: ssl-sample: Don't check if argument list is set in sample fetches
6691 - MINOR: mux-h2: Don't tests the start-line when sending HEADERS frame
6692 - MINOR: mux-h2: Slightly improve request HEADERS frames sending
6693 - MINOR: contrib/prometheus-exporter: declare states for objects
6694 - MAJOR: contrib/prometheus-exporter: move ftd/bkd/srv states to labels
6695 - MEDIUM: contrib/prometheus-exporter: Use dynamic labels instead of static ones
6696 - MINOR: listener: export manage_global_listener_queue()
6697 - BUG/MINOR: activity: take care of late wakeups in "show tasks"
6698 - REGTESTS: set_ssl_server_cert.vtc: remove SSL caching and set as working
6699 - REGTESTS: set_ssl_server_cert: cleanup the SSL caching option
6700 - MINOR: checks: Add function to get the result code corresponding to a status
6701 - MAJOR: contrib/prometheus-exporter: move health check status to labels
6702 - MINOR: contrib/prometheus-exporter: improve service status description field
6703 - MINOR: stats: improve pending connections description
6704 - MINOR: stats: improve max stats descriptions
6705 - MINOR: contrib/prometheus-exporter: use stats desc when possible
6706 - MINOR: contrib/prometheus-exporter: add uweight field
6707 - MINOR: contrib/prometheus-exporter: add recv logs_logs_total field
6708 - CLEANUP: contrib/prometheus-exporter: remove unused includes
6709 - CLEANUP: contrib/prometheus-exporter: align and reorder fields
6710 - CLEANUP: contrib/prometheus-exporter: remove description in README
6711 - DOC: contrib/prometheus-exporter: Add missing metrics in README
6712 - BUG/MINOR: contrib/prometheus-exporter: Add missing label for ST_F_HRSP_1XX
6713 - BUG/MINOR: contrib/prometheus-exporter: Restart labels dump at the right pos
6714 - BUG/MEDIUM: ssl/cli: abort ssl cert is freeing the old store
6715 - BUG/MEDIUM: ssl: check a connection's status before computing a handshake
6716 - BUG/MINOR: mux_h2: fix incorrect stat titles
6717 - MINOR: ssl/cli: flush the server session cache upon 'commit ssl cert'
6718 - BUG/MINOR: cli: fix set server addr/port coherency with health checks
6719 - MINOR: server: Don't set the check port during the update from a state file
6720 - MINOR: dns: Don't set the check port during a server dns resolution
6721 - MEDIUM: check: remove checkport checkaddr flag
6722 - MEDIUM: server: adding support for check_port in server state
6723 - BUG/MINOR: check: consitent way to set agentaddr
6724 - MEDIUM: check: align agentaddr and agentport behaviour
6725 - DOC: server: Add missing params in comment of the server state line parsing
6726 - BUG/MINOR: xxhash: make sure armv6 uses memcpy()
6727 - REGTESTS: mark http-check-send.vtc as 2.4-only
6728 - REGTESTS: mark sample_fetches/hashes.vtc as 2.4-only
6729 - BUG/MINOR: ssl: do not try to use early data if not configured
6730 - REGTESTS: unbreak http-check-send.vtc
6731 - MINOR: cli/show_fd: report local and report ports when known
6732 - BUILD: Makefile: move REGTESTST_TYPE default setting
6733 - BUG/MEDIUM: mux-h2: handle remaining read0 cases
6734 - CLEANUP: http-htx: Set buffer area to NULL instead of malloc(0)
6735 - BUG/MINOR: sock: Unclosed fd in case of connection allocation failure
6736 - BUG/MEDIUM: mux-h2: do not quit the demux loop before setting END_REACHED
6737
Willy Tarreau24c41d52021-01-22 16:19:46 +010067382021/01/22 : 2.4-dev6
6739 - MINOR: converter: adding support for url_enc
6740 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
6741 - BUILD: ssl: guard EVP_PKEY_get_default_digest_nid with ASN1_PKEY_CTRL_DEFAULT_MD_NID
6742 - BUILD: ssl: guard openssl specific with SSL_READ_EARLY_DATA_SUCCESS
6743 - BUILD: Makefile: exclude broken tests by default
6744 - CLEANUP: cfgparse: replace "realloc" with "my_realloc2" to fix to memory leak on error
6745 - BUG/MINOR: hlua: Fix memory leak in hlua_alloc
6746 - MINOR: contrib/prometheus-exporter: export build_info
6747 - DOC: fix some spelling issues over multiple files
6748 - CLEANUP: Fix spelling errors in comments
6749 - SCRIPTS: announce-release: fix typo in help message
6750 - CI: github: add a few more words to the codespell ignore list
6751 - DOC: Add maintainers for the Prometheus exporter
6752 - BUG/MINOR: sample: fix concat() converter's corruption with non-string variables
6753 - BUG/MINOR: server: Memory leak of proxy.used_server_addr during deinit
6754 - CLEANUP: sample: remove uneeded check in json validation
6755 - MINOR: reg-tests: add a way to add service dependency
6756 - BUG/MINOR: sample: check alloc_trash_chunk return value in concat()
6757 - BUG/MINOR: reg-tests: fix service dependency script
6758 - MINOR: reg-tests: add base prometheus test
6759 - Revert "BUG/MINOR: dns: SRV records ignores duplicated AR records"
6760 - BUG/MINOR: sample: Memory leak of sample_expr structure in case of error
6761 - BUG/MINOR: check: Don't perform any check on servers defined in a frontend
6762 - BUG/MINOR: init: enforce strict-limits when using master-worker
6763 - MINOR: contrib/prometheus-exporter: avoid connection close header
6764 - MINOR: contrib/prometheus-exporter: use fill_info for process dump
6765 - BUG/MINOR: init: Use a dynamic buffer to set HAPROXY_CFGFILES env variable
6766 - MINOR: config: Add failifnotcap() to emit an alert on proxy capabilities
6767 - MINOR: server: Forbid server definitions in frontend sections
6768 - BUG/MINOR: threads: Fixes the number of possible cpus report for Mac.
6769 - CLEANUP: pattern: rename pat_ref_commit() to pat_ref_commit_elt()
6770 - MINOR: pattern: add the missing generation ID manipulation functions
6771 - MINOR: peers: Add traces for peer control messages.
6772 - BUG/MINOR: dns: SRV records ignores duplicated AR records (v2)
6773 - BUILD: peers: fix build warning about unused variable
6774 - BUG/MEDIUM: stats: add missing INF_BUILD_INFO definition
6775 - MINOR: cache: Do not store responses with an unknown encoding
6776 - BUG/MINOR: peers: Possible appctx pointer dereference.
6777 - MINOR: build: discard echoing in help target
6778 - MINOR: cache: Remove the `hash` part of the accept-encoding secondary key
6779 - CLEANUP: cache: Use proper data types in secondary_key_cmp()
6780 - CLEANUP: Rename accept_encoding_hash_cmp to accept_encoding_bitmap_cmp
6781 - BUG/MINOR: peers: Wrong "new_conn" value for "show peers" CLI command.
6782 - MINOR: contrib: Make the wireshark peers dissector compile for more distribs.
6783 - BUG/MINOR: mux_h2: missing space between "st" and ".flg" in the "show fd" helper
6784 - CLEANUP: tools: make resolve_sym_name() take a const pointer
6785 - CLEANUP: cli: make "show fd" use a const connection to access other fields
6786 - MINOR: cli: make "show fd" also report the xprt and xprt_ctx
6787 - MINOR: xprt: add a new show_fd() helper to complete some "show fd" dumps.
6788 - MINOR: ssl: provide a "show fd" helper to report important SSL information
6789 - MINOR: xprt/mux: export all *_io_cb functions so that "show fd" resolves them
6790 - MINOR: mux-h2: make the "show fd" helper also decode the h2s subscriber when known
6791 - MINOR: mux-h1: make the "show fd" helper also decode the h1s subscriber when known
6792 - MINOR: mux-fcgi: make the "show fd" helper also decode the fstrm subscriber when known
6793 - CI: Pin VTest to a known good commit
6794 - MINOR: cli: give the show_fd helpers the ability to report a suspicious entry
6795 - MINOR: cli/show_fd: report some easily detectable suspicious states
6796 - MINOR: ssl/show_fd: report some FDs as suspicious when possible
6797 - MINOR: mux-h2/show_fd: report as suspicious an entry with too many calls
6798 - MINOR: mux-h1/show_fd: report as suspicious an entry with too many calls
6799 - BUG/MINOR: mworker: define _GNU_SOURCE for strsignal()
6800 - BUG/MEDIUM: tcpcheck: Don't destroy connection in the wake callback context
6801 - BUG/MEDIUM: mux-h2: Xfer rxbuf to the upper layer when creating a front stream
6802 - MINOR: http: Add HTTP 501-not-implemented error message
6803 - MINOR: muxes: Add exit status for errors about not implemented features
6804 - MINOR: mux-h1: Be prepared to return 501-not-implemented error during parsing
6805 - MEDIUM: mux-h1: Return a 501-not-implemented for upgrade requests with a body
6806 - DOC: Remove space after comma in converter signature
6807 - DOC: Rename '<var name>' to '<var>' in converter signature
6808 - MINOR: stats: duplicate 3 fields in bytes in info
6809 - MINOR: stats: add new start time field
6810 - MINOR: contrib/prometheus-exporter: merge info description from stats
6811 - MEDIUM: stats: allow to select one field in `stats_fill_fe_stats`
6812 - MINOR: contrib/prometheus-exporter: use fill_fe_stats for frontend dump
6813 - MINOR: contrib/prometheus-exporter: Don't needlessly set empty label for metrics
6814 - MINOR: contrib/prometheus-exporter: Split the PROMEX_FL_STATS_METRIC flag
6815 - MINOR: contrib/prometheus-exporter: Add promex_metric struct defining a metric
6816 - MEDIUM: contrib/prometheus-exporter: Rework matrices defining Promex metrics
6817 - BUG/MINOR: stream: Don't update counters when TCP to H2 upgrades are performed
6818 - BUG/MEDIUM: mux-h2: fix read0 handling on partial frames
6819 - MINOR: debug: always export the my_backtrace function
6820 - MINOR: debug: extract the backtrace dumping code to its own function
6821 - MINOR: debug: create ha_backtrace_to_stderr() to dump an instant backtrace
6822 - MEDIUM: debug: now always print a backtrace on CRASH_NOW() and friends
6823 - MINOR: debug: let ha_dump_backtrace() dump a bit further for some callers
6824 - BUILD: debug: fix build warning by consuming the write() result
6825 - MINOR: lua: remove unused variable
6826 - BUILD/MINOR: lua: define _GNU_SOURCE for LLONG_MAX
6827
Willy Tarreau421ed392021-01-06 17:41:32 +010068282021/01/06 : 2.4-dev5
6829 - BUG/MEDIUM: mux_h2: Add missing braces in h2_snd_buf()around trace+wakeup
6830 - BUILD: hpack: hpack-tbl-t.h uses VAR_ARRAY but does not include compiler.h
6831 - MINOR: time: increase the minimum wakeup interval to 60s
6832 - MINOR: check: do not ignore a connection header for http-check send
6833 - REGTESTS: complete http-check test
6834 - CI: travis-ci: drop coverity scan builds
6835 - MINOR: atomic: don't use ; to separate instruction on aarch64.
6836 - IMPORT: xxhash: update to v0.8.0 that introduces stable XXH3 variant
6837 - MEDIUM: xxhash: use the XXH3 functions to generate 64-bit hashes
6838 - MEDIUM: xxhash: use the XXH_INLINE_ALL macro to inline all functions
6839 - CLEANUP: xxhash: remove the unused src/xxhash.c
6840 - MINOR: sample: add the xxh3 converter
6841 - REGTESTS: add tests for the xxh3 converter
6842 - MINOR: protocol: Create proto_quic QUIC protocol layer.
6843 - MINOR: connection: Attach a "quic_conn" struct to "connection" struct.
6844 - MINOR: quic: Redefine control layer callbacks which are QUIC specific.
6845 - MINOR: ssl_sock: Initialize BIO and SSL objects outside of ssl_sock_init()
6846 - MINOR: connection: Add a new xprt to connection.
6847 - MINOR: ssl: Export definitions required by QUIC.
6848 - MINOR: cfgparse: Do not modify the QUIC xprt when parsing "ssl".
6849 - MINOR: tools: Add support for QUIC addresses parsing.
6850 - MINOR: quic: Add definitions for QUIC protocol.
6851 - MINOR: quic: Import C source code files for QUIC protocol.
6852 - MINOR: listener: Add QUIC info to listeners and receivers.
6853 - MINOR: server: Add QUIC definitions to servers.
6854 - MINOR: ssl: SSL CTX initialization modifications for QUIC.
6855 - MINOR: ssl: QUIC transport parameters parsing.
6856 - MINOR: quic: QUIC socket management finalization.
6857 - MINOR: cfgparse: QUIC default server transport parameters init.
6858 - MINOR: quic: Enable the compilation of QUIC modules.
6859 - MAJOR: quic: Make usage of ebtrees to store QUIC ACK ranges.
6860 - MINOR: quic: Attempt to make trace more readable
6861 - MINOR: quic: Make usage of the congestion control window.
6862 - MINOR: quic: Flag RX packet as ack-eliciting from the generic parser.
6863 - MINOR: quic: Code reordering to help in reviewing/modifying.
6864 - MINOR: quic: Add traces to congestion avoidance NewReno callback.
6865 - MINOR: quic: Display the SSL alert in ->ssl_send_alert() callback.
6866 - MINOR: quic: Update the initial salt to that of draft-29.
6867 - MINOR: quic: Add traces for in flght ack-eliciting packet counter.
6868 - MINOR: quic: make a packet build fails when qc_build_frm() fails.
6869 - MINOR: quic: Add traces for quic_packet_encrypt().
6870 - MINOR: cache: Refactoring of secondary_key building functions
6871 - MINOR: cache: Avoid storing responses whose secondary key was not correctly calculated
6872 - BUG/MINOR: cache: Manage multiple headers in accept-encoding normalization
6873 - MINOR: cache: Add specific secondary key comparison mechanism
6874 - MINOR: http: Add helper functions to trim spaces and tabs
6875 - MEDIUM: cache: Manage a subset of encodings in accept-encoding normalizer
6876 - REGTESTS: cache: Simplify vary.vtc file
6877 - REGTESTS: cache: Add a specific test for the accept-encoding normalizer
6878 - MINOR: cache: Remove redundant test in http_action_req_cache_use
6879 - MINOR: cache: Replace the "process-vary" option's expected values
6880 - CI: GitHub Actions: enable daily Coverity scan
6881 - BUG/MEDIUM: cache: Fix hash collision in `accept-encoding` handling for `Vary`
6882 - MEDIUM: stick-tables: Add srvkey option to stick-table
6883 - REGTESTS: add test for stickiness using "srvkey addr"
6884 - BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11
6885 - BUG/MINOR: sink: Return an allocation failure in __sink_new if strdup() fails
6886 - BUG/MINOR: lua: Fix memory leak error cases in hlua_config_prepend_path
6887 - MINOR: lua: Use consistent error message 'memory allocation failed'
6888 - CLEANUP: Compare the return value of `XXXcmp()` functions with zero
6889 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on include/
6890 - CLEANUP: Apply the coccinelle patch for `XXXcmp()` on contrib/
6891 - MINOR: qpack: Add static header table definitions for QPACK.
6892 - CLEANUP: qpack: Wrong comment about the draft for QPACK static header table.
6893 - CLEANUP: quic: Remove useless QUIC event trace definitions.
6894 - BUG/MINOR: quic: Possible CRYPTO frame building errors.
6895 - MINOR: quic: Pass quic_conn struct to frame parsers.
6896 - BUG/MINOR: quic: Wrong STREAM frames parsing.
6897 - MINOR: quic: Drop packets with STREAM frames with wrong direction.
6898 - CLEANUP: ssl: Remove useless loop in tlskeys_list_get_next()
6899 - CLEANUP: ssl: Remove useless local variable in tlskeys_list_get_next()
6900 - MINOR: ssl: make tlskeys_list_get_next() take a list element
6901 - Revert "BUILD: Makefile: disable -Warray-bounds until it's fixed in gcc 11"
6902 - BUG/MINOR: cfgparse: Fail if the strdup() for `rule->be.name` for `use_backend` fails
6903 - CLEANUP: mworker: remove duplicate pointer tests in cfg_parse_program()
6904 - CLEANUP: Reduce scope of `header_name` in http_action_store_cache()
6905 - CLEANUP: Reduce scope of `hdr_age` in http_action_store_cache()
6906 - CLEANUP: spoe: fix typo on `var_check_arg` comment
6907 - BUG/MINOR: tcpcheck: Report a L7OK if the last evaluated rule is a send rule
6908 - CI: github actions: build several popular "contrib" tools
6909 - DOC: Improve the message printed when running `make` w/o `TARGET`
6910 - BUG/MEDIUM: server: srv_set_addr_desc() crashes when a server has no address
6911 - REGTESTS: add unresolvable servers to srvkey-addr
6912 - BUG/MINOR: stats: Make stat_l variable used to dump a stat line thread local
6913 - BUG/MINOR: quic: NULL pointer dereferences when building post handshake frames.
6914 - SCRIPTS: improve announce-release to support different tag and versions
6915 - SCRIPTS: make announce release support preparing announces before tag exists
6916 - CLEANUP: assorted typo fixes in the code and comments
6917 - BUG/MINOR: srv: do not init address if backend is disabled
6918 - BUG/MINOR: srv: do not cleanup idle conns if pool max is null
6919 - CLEANUP: assorted typo fixes in the code and comments
6920 - CLEANUP: few extra typo and fixes over last one ("ot" -> "to")
6921
Willy Tarreau4d711762020-12-21 11:54:56 +010069222020/12/21 : 2.4-dev4
6923 - BUG/MEDIUM: lb-leastconn: Reposition a server using the right eweight
6924 - BUG/MEDIUM: mux-h1: Fix a deadlock when a 408 error is pending for a client
6925 - BUG/MEDIUM: ssl/crt-list: bad behavior with "commit ssl cert"
6926 - BUG/MAJOR: cache: Crash because of disabled entry not removed from the tree
6927 - BUILD: SSL: fine guard for SSL_CTX_add_server_custom_ext call
6928 - MEDIUM: cache: Add a secondary entry counter and insertion limitation
6929 - MEDIUM: cache: Avoid going over duplicates lists too often
6930 - MINOR: cache: Add a max-secondary-entries cache option
6931 - CI: cirrus: drop CentOS 6 builds
6932 - BUILD: Makefile: have "make clean" destroy .o/.a/.s in contrib subdirs as well
6933 - MINOR: vars: replace static functions with global ones
6934 - MINOR: opentracing: add ARGC_OT enum
6935 - CONTRIB: opentracing: add the OpenTracing filter
6936 - DOC: opentracing: add the OpenTracing filter section
6937 - REGTESTS: make use of HAPROXY_ARGS and pass -dM by default
6938 - BUG/MINOR: http: Establish a tunnel for all 2xx responses to a CONNECT
6939 - BUG/MINOR: mux-h1: Don't set CS_FL_EOI too early for protocol upgrade requests
6940 - BUG/MEDIUM: http-ana: Never for sending data in TUNNEL mode
6941 - CLEANUP: mux-h2: Rename h2s_frt_make_resp_data() to be generic
6942 - CLEANUP: mux-h2: Rename h2c_frt_handle_data() to be generic
6943 - BUG/MEDIUM: mux-h1: Handle h1_process() failures on a pipelined request
6944 - CLEANUP: debug: mark the RNG's seed as unsigned
6945 - CONTRIB: halog: fix build issue caused by %L printf format
6946 - CONTRIB: halog: mark the has_zero* functions unused
6947 - CONTRIB: halog: fix signed/unsigned build warnings on counts and timestamps
6948 - CONTRIB: debug: address "poll" utility build on non-linux platforms
6949 - BUILD: plock: remove dead code that causes a warning in gcc 11
6950 - BUILD: ssl: fine guard for SSL_CTX_get0_privatekey call
6951 - BUG/MINOR: dns: SRV records ignores duplicated AR records
6952 - DOC: fix "smp_size" vs "sample_size" in "log" directive arguments
6953 - CLEANUP: assorted typo fixes in the code and comments
6954 - DOC: assorted typo fixes in the documentation
6955 - CI: codespell: whitelist "te" and "nd" words
6956
Willy Tarreaua786c412020-12-11 17:22:51 +010069572020/12/11 : 2.4-dev3
6958 - MINOR: log: Logging HTTP path only with %HPO
6959 - BUG/MINOR: mux-h2/stats: make stream/connection proto errors more accurate
6960 - MINOR: traces: add a new level "error" below the "user" level
6961 - MINOR: mux-h2/trace: add traces at level ERROR for protocol errors
6962 - BUG/MINOR: mux-h2/stats: not all GOAWAY frames are errors
6963 - BUG/MINOR: lua: missing "\n" in error message
6964 - BUG/MINOR: lua: lua-load doesn't check its parameters
6965 - BUG/MINOR: lua: Post init register function are not executed beyond the first one
6966 - BUG/MINOR: lua: Some lua init operation are processed unsafe
6967 - MINOR: actions: Export actions lookup functions
6968 - MINOR: actions: add a function returning a service pointer from its name
6969 - MINOR: cli: add a function to look up a CLI service description
6970 - BUG/MINOR: lua: warn when registering action, conv, sf, cli or applet multiple times
6971 - MINOR: cache: Improve accept_encoding_normalizer
6972 - MINOR: cache: Add entry to the tree as soon as possible
6973 - BUG/MINOR: trace: Wrong displayed trace level
6974 - BUG/MAJOR: ring: tcp forward on ring can break the reader counter.
6975 - MINOR: lua: simplify hlua_alloc() to only rely on realloc()
6976 - MEDIUM: lua-thread: use atomics for memory accounting
6977 - MINOR: lua-thread: remove struct hlua from function hlua_prepend_path()
6978 - MEDIUM: lua-thread: make hlua_post_init() no longer use the runtime execution function
6979 - MINOR: lua-thread: hlua_ctx_renew() is never called with main gL lua state
6980 - MINOR: lua-thread: Use NULL context for main lua state
6981 - MINOR: lua-thread: Stop usage of struct hlua for the global lua state
6982 - MINOR: lua-thread: Replace embedded struct hlua_function by a pointer
6983 - MINOR: lua-thread: Split hlua_init() function in two parts
6984 - MINOR: lua-thread: make hlua_ctx_init() get L from its caller
6985 - MINOR: lua-thread: Split hlua_load function in two parts
6986 - MINOR: lua-thread: Split hlua_post_init() function in two parts
6987 - MINOR: lua-thread: Add the "thread" core variable
6988 - MEDIUM: lua-thread: No longer use locked context in initialization parts
6989 - MEDIUM: lua-thread: Apply lock only if the parent state is the main thread
6990 - MINOR: lua-thread: Replace global gL var with an array of states
6991 - MINOR: lua-thread: Replace "struct hlua_function" allocation by dedicated function
6992 - MINOR: lua-thread: Replace state_from by state_id
6993 - MINOR: lua-thread: Store each function reference and init reference in array
6994 - MEDIUM: lua-thread: Add the lua-load-per-thread directive
6995 - MINOR: lua-thread: Add verbosity in errors
6996 - REGTESTS: add a test for the threaded Lua code
6997 - BUILD/MINOR: haproxy DragonFlyBSD affinity build update.
6998 - DOC/MINOR: Fix formatting in Management Guide
6999 - MINOR: cache: Do not store stale entry
7000 - MINOR: cache: Add extra "cache-control" value checks
7001 - MEDIUM: cache: Remove cache entry in case of POST on the same resource
7002 - MINOR: cache: Consider invalid Age values as stale
7003 - BUG/MEDIUM: lua-thread: some parts must be initialized once
7004 - BUG/MINOR: lua-thread: close all states on deinit
7005 - BUG/MINOR: listener: use sockaddr_in6 for IPv6
7006 - BUG/MINOR: mux-h1: Handle keep-alive timeout for idle frontend connections
7007 - MINOR: session: Add the idle duration field into the session
7008 - MINOR: mux-h1: Update session idle duration when data are received
7009 - MINOR: mux-h1: Reset session dates and durations info when the CS is detached
7010 - MINOR: logs: Use session idle duration when no stream is provided
7011 - MINOR: stream: Always get idle duration from the session
7012 - MINOR: stream: Don't retrieve anymore timing info from the mux csinfo
7013 - MINOR: mux-h1: Don't provide anymore timing info using cs_info structure
7014 - MINOR: muxes: Remove get_cs_info callback function now useless
7015 - MINOR: stream: Pass an optional input buffer when a stream is created
7016 - MINOR: mux-h1: Add a flag to disable reads to wait opposite side
7017 - MEDIUM: mux-h1: Use a h1c flag to block reads when splicing is in-progress
7018 - MINOR: mux-h1: Introduce H1C_F_IS_BACK flag on the H1 connection
7019 - MINOR: mux-h1: Separate parsing and formatting errors at H1 stream level
7020 - MINOR: mux-h1: Split front/back h1 stream creation in 2 functions
7021 - MINOR: mux-h1: Add a rxbuf into the H1 stream
7022 - MINOR: mux-h1: Don't set CS flags in internal parsing functions
7023 - MINOR: mux-h1: Add embryonic and attached states on the H1 connection
7024 - MINOR: mux-h1: rework the h1_timeout_task() function
7025 - MINOR: mux-h1: Reset more H1C flags when a H1 stream is destroyed
7026 - MINOR: mux-h1: Disable reads if an error was reported on the H1 stream
7027 - MINOR: mux-h1: Rework how shutdowns are handled
7028 - MINOR: mux-h1: Rework h1_refresh_timeout to be easier to read
7029 - MINOR: mux-h1: Process next request for IDLE connection only
7030 - MINOR: mux-h1: Add a idle expiration date on the H1 connection
7031 - MINOR: stick-tables: Add functions to update some values of a tracked counter
7032 - MINOR: session: Add functions to increase http values of tracked counters
7033 - MINOR: mux: Add a ctl parameter to get the exit status of the multiplexers
7034 - MINOR: logs: Get the multiplexer exist status when no stream is provided
7035 - MINOR: mux-h1: Add functions to send HTTP errors from the mux
7036 - MAJOR: mux-h1: Create the client stream as later as possible
7037 - DOC: config: Add notes about errors emitted by H1 mux
7038 - CLEANUP: mux-h1: Rename H1C_F_CS_* flags and reorder H1C flags
7039 - MINOR: http-ana: Remove useless update of t_idle duration of the stream
7040 - CLEANUP: htx: Remove HTX_FL_UPGRADE unsued flag
7041 - MEDIUM: http-ana: Don't process partial or empty request anymore
7042 - CLEANUP: http-ana: Remove TX_WAIT_NEXT_RQ unsued flag
7043 - CLEANUP: connection: Remove CS_FL_READ_PARTIAL flag
7044 - REGTESTS: Fix proxy_protocol_tlv_validation
7045 - MINOR: http-ana: Properly set message flags from the start-line flags
7046 - MINOR: h1-htx/http-ana: Set BODYLESS flag on message in TUNNEL state
7047 - MINOR: protocol: add a ->set_port() helper to address families
7048 - MINOR: listener: automatically set the port when creating listeners
7049 - MINOR: listener: now use a generic add_listener() function
7050 - MEDIUM: ssl: fatal error with bundle + openssl < 1.1.1
7051 - BUG/MEDIUM: stream: Xfer the input buffer to a fully created stream
7052 - BUG/MINOR: stream: Don't use input buffer after the ownership xfer
7053 - MINOR: protocol: remove the redundant ->sock_domain field
7054 - MINOR: protocol: export protocol definitions
7055 - CLEANUP: protocol: group protocol struct members by usage
7056 - MINOR: protocol: add a set of ctrl_init/ctrl_close methods for setup/teardown
7057 - MINOR: connection: use the control layer's init/close
7058 - MINOR: udp: export udp_suspend_receiver() and udp_resume_receiver()
7059 - BUG/MAJOR: spoa/python: Fixing return None
7060 - DOC: spoa/python: Fixing typo in IP related error messages
7061 - DOC: spoa/python: Rephrasing memory related error messages
7062 - DOC: spoa/python: Fixing typos in comments
7063 - BUG/MINOR: spoa/python: Cleanup references for failed Module Addobject operations
7064 - BUG/MINOR: spoa/python: Cleanup ipaddress objects if initialization fails
7065 - BUG/MEDIUM: spoa/python: Fixing PyObject_Call positional arguments
7066 - BUG/MEDIUM: spoa/python: Fixing references to None
7067 - DOC: email change of the DeviceAtlas maintainer
7068 - MINOR: cache: Dump secondary entries in "show cache"
7069 - CLEANUP: connection: use fd_stop_both() instead of conn_stop_polling()
7070 - MINOR: stream-int: don't touch polling anymore on shutdown
7071 - MINOR: connection: implement cs_drain_and_close()
7072 - MINOR: mux-pt: take care of CS_SHR_DRAIN in shutr()
7073 - MINOR: checks: use cs_drain_and_close() instead of draining the connection
7074 - MINOR: checks: don't call conn_cond_update_polling() anymore
7075 - CLEANUP: connection: open-code conn_cond_update_polling() and update the comment
7076 - CLEANUP: connection: remove the unused conn_{stop,cond_update}_polling()
7077 - BUG/MINOR: http-check: Use right condition to consider HTX message as full
7078 - BUG/MINOR: tcpcheck: Don't rearm the check timeout on each read
7079 - MINOR: tcpcheck: Only wait for more payload data on HTTP expect rules
7080 - BUG/MINOR: tools: make parse_time_err() more strict on the timer validity
7081 - BUG/MINOR: tools: Reject size format not starting by a digit
7082 - MINOR: action: define enum for timeout type of the set-timeout rule
7083 - MINOR: stream: prepare the hot refresh of timeouts
7084 - MEDIUM: stream: support a dynamic server timeout
7085 - MEDIUM: stream: support a dynamic tunnel timeout
7086 - MEDIUM: http_act: define set-timeout server/tunnel action
7087 - MINOR: frontend: add client timeout sample fetch
7088 - MINOR: backend: add timeout sample fetches
7089 - MINOR: stream: add sample fetches
7090 - MINOR: stream: add timeout sample fetches
7091 - REGTESTS: add regtest for http-request set-timeout
7092 - CLEANUP: remove the unused fd_stop_send() in conn_xprt_shutw{,_hard}()
7093 - CLEANUP: connection: remove the unneeded fd_stop_{recv,send} on read0/shutw
7094 - MINOR: connection: remove sock-specific code from conn_sock_send()
7095 - REORG: connection: move the socket iocb (conn_fd_handler) to sock.c
7096 - MINOR: protocol: add a ->drain() function at the connection control layer
7097 - MINOR: connection: make conn_sock_drain() use the control layer's ->drain()
7098 - MINOR: protocol: add a pair of check_events/ignore_events functions at the ctrl layer
7099 - MEDIUM: connection: make use of the control layer check_events/ignore_events
7100
Willy Tarreauc94431b2020-12-01 08:15:26 +010071012020/12/01 : 2.4-dev2
7102 - BUILD: Make DEBUG part of .build_opts
7103 - BUILD: Show the value of DEBUG= in haproxy -vv
7104 - CI: Set DEBUG=-DDEBUG_STRICT=1 in GitHub Actions
7105 - MINOR: stream: Add level 7 retries on http error 401, 403
7106 - CLEANUP: remove unused function "ssl_sock_is_ckch_valid"
7107 - BUILD: SSL: add BoringSSL guarding to "RAND_keep_random_devices_open"
7108 - BUILD: SSL: do not "update" BoringSSL version equivalent anymore
7109 - BUG/MEDIUM: http_act: Restore init of log-format list
7110 - DOC: better describes how to configure a fallback crt
7111 - BUG/MAJOR: filters: Always keep all offsets up to date during data filtering
7112 - MINOR: cache: Prepare helper functions for Vary support
7113 - MEDIUM: cache: Add the Vary header support
7114 - MINOR: cache: Add a process-vary option that can enable/disable Vary processing
7115 - BUG/CRITICAL: cache: Fix trivial crash by sending accept-encoding header
7116 - BUG/MAJOR: peers: fix partial message decoding
7117 - DOC: cache: Add new caching limitation information
7118 - DOC: cache: Add information about Vary support
7119 - DOC: better document the config file format and escaping/quoting rules
7120 - DOC: Clarify %HP description in log-format
7121 - CI: github actions: update LibreSSL to 3.3.0
7122 - CI: github actions: enable 51degrees feature
7123 - MINOR: fd/threads: silence a build warning with threads disabled
7124 - BUG/MINOR: tcpcheck: Don't forget to reset tcp-check flags on new kind of check
7125 - MINOR: tcpcheck: Don't handle anymore in-progress send rules in tcpcheck_main
7126 - BUG/MAJOR: tcpcheck: Allocate input and output buffers from the buffer pool
7127 - MINOR: tcpcheck: Don't handle anymore in-progress connect rules in tcpcheck_main
7128 - MINOR: config: Deprecate and ignore tune.chksize global option
7129 - MINOR: config: Add a warning if tune.chksize is used
7130 - REORG: tcpcheck: Move check option parsing functions based on tcp-check
7131 - MINOR: check: Always increment check health counter on CONPASS
7132 - MINOR: tcpcheck: Add support of L7OKC on expect rules error-status argument
7133 - DOC: config: Make disable-on-404 option clearer on transition conditions
7134 - DOC: config: Move req.hdrs and req.hdrs_bin in L7 samples fetches section
7135 - BUG/MINOR: http-fetch: Fix smp_fetch_body() when called from a health-check
7136 - MINOR: plock: use an ARMv8 instruction barrier for the pause instruction
7137 - MINOR: debug: add "debug dev sched" to stress the scheduler.
7138 - MINOR: debug: add a trivial PRNG for scheduler stress-tests
7139 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
7140 - MINOR: task: remove tasklet_insert_into_tasklet_list()
7141 - MINOR: task: perform atomic counter increments only once per wakeup
7142 - MINOR: task: remove __tasklet_remove_from_tasklet_list()
7143 - BUG/MEDIUM: task: close a possible data race condition on a tasklet's list link
7144 - BUG/MEDIUM: local log format regression.
7145
Willy Tarreau1a38ffc2020-11-21 16:00:40 +010071462020/11/21 : 2.4-dev1
7147 - MINOR: ist: Add istend() function to return a pointer to the end of the string
7148 - MINOR: sample: Add converters to parse FIX messages
7149 - REGTEST: converter: Add a regtest for fix converters
7150 - MINOR: sample: Add converts to parses MQTT messages
7151 - REGTEST: converter: Add a regtest for MQTT converters
7152 - MINOR: compat: automatically include malloc.h on glibc
7153 - MEDIUM: pools: call malloc_trim() from pool_gc()
7154 - MEDIUM: pattern: call malloc_trim() on pat_ref_reload()
7155 - MINOR: pattern: move the update revision to the pat_ref, not the expression
7156 - CLEANUP: pattern: delete the back refs at once during pat_ref_reload()
7157 - MINOR: pattern: new sflag PAT_SF_REGFREE indicates regex_free() is needed
7158 - MINOR: pattern: make the delete and prune functions more generic
7159 - MEDIUM: pattern: link all final elements from the reference
7160 - MEDIUM: pattern: change the pat_del_* functions to delete from the references
7161 - MINOR: pattern: remerge the list and tree deletion functions
7162 - MINOR: pattern: perform a single call to pat_delete_gen() under the expression
7163 - CLEANUP: acl: don't reference the generic pattern deletion function anymore
7164 - CLEANUP: pattern: remove pat_delete_fcts[] and pattern_head->delete()
7165 - MINOR: pattern: introduce pat_ref_delete_by_ptr() to delete a valid reference
7166 - MINOR: pattern: store a generation number in the reference patterns
7167 - MEDIUM: pattern: only match patterns that match the current generation
7168 - MINOR: pattern: add pat_ref_commit() to commit a previously inserted element
7169 - MINOR: pattern: implement pat_ref_load() to load a pattern at a given generation
7170 - MINOR: pattern: add pat_ref_purge_older() to purge old entries
7171 - MEDIUM: pattern: make pat_ref_prune() rely on pat_ref_purge_older()
7172 - MINOR: pattern: during reload, delete elements frem the ref, not the expression
7173 - MINOR: pattern: prepare removal of a pattern from the list head
7174 - MEDIUM: pattern: turn the pattern chaining to single-linked list
7175 - CLEANUP: cfgparse: remove duplicate registration for transparent build options
7176 - BUG/MINOR: ssl: don't report 1024 bits DH param load error when it's higher
7177 - MINOR: http-htx: Add understandable errors for the errorfiles parsing
7178 - MINOR: ssl: instantiate stats module
7179 - MINOR: ssl: count client hello for stats
7180 - MINOR: ssl: add counters for ssl sessions
7181 - DOC: config: Fix a typo on ssl_c_chain_der
7182 - MINOR: server: remove idle lock in srv_cleanup_connections
7183 - BUILD: ssl: silence build warning on uninitialised counters
7184 - BUILD: http-htx: fix build warning regarding long type in printf
7185 - REGTEST: ssl: test wildcard and multi-type + exclusions
7186 - BUG/MEDIUM: ssl/crt-list: correctly insert crt-list line if crt already loaded
7187 - CI: Expand use of GitHub Actions for CI
7188 - REGTEST: ssl: mark reg-tests/ssl/ssl_crt-list_filters.vtc as broken
7189 - BUG/MINOR: pattern: a sample marked as const could be written
7190 - BUG/MINOR: lua: set buffer size during map lookups
7191 - MEDIUM: cache: Change caching conditions
7192 - BUG/MINOR: stats: free dynamically stats fields/lines on shutdown
7193 - BUG/MEDIUM: stats: prevent crash if counters not alloc with dummy one
7194 - MINOR: peers: Add traces to peer_treat_updatemsg().
7195 - BUG/MINOR: peers: Do not ignore a protocol error for dictionary entries.
7196 - BUG/MINOR: peers: Missing TX cache entries reset.
7197 - BUG/MEDIUM: peers: fix decoding of multi-byte length in stick-table messages
7198 - BUG/MINOR: http-fetch: Extract cookie value even when no cookie name
7199 - BUG/MINOR: http-fetch: Fix calls w/o parentheses of the cookie sample fetches
7200 - BUG/MEDIUM: check: reuse srv proto only if using same mode
7201 - MINOR: check: report error on incompatible proto
7202 - MINOR: check: report error on incompatible connect proto
7203 - BUG/MINOR: http-htx: Handle warnings when parsing http-error and http-errors
7204 - BUG/MAJOR: spoe: Be sure to remove all references on a released spoe applet
7205 - MINOR: spoe: Don't close connection in sync mode on processing timeout
7206 - BUG/MINOR: tcpcheck: Don't warn on unused rules if check option is after
7207 - MINOR: init: Fix the prototype for per-thread free callbacks
7208 - MINOR: config/mux-h2: Return ERR_ flags from init_h2() instead of a status
7209 - CLEANUP: config: Return ERR_NONE from config callbacks instead of 0
7210 - MINOR: cfgparse: tighten the scope of newnameserver variable, free it on error.
7211 - REGTEST: make ssl_client_samples and ssl_server_samples require to 2.2
7212 - REGTESTS: Add sample_fetches/cook.vtc
7213 - BUG/MEDIUM: filters: Forward all filtered data at the end of http filtering
7214 - BUG/MINOR: http-ana: Don't wait for the body of CONNECT requests
7215 - CLEANUP: flt-trace: Remove unused random-parsing option
7216 - MINOR: flt-trace: Add an option to inhibits trace messages
7217 - MINOR: flt-trace: Use a bitfield for the trace options
7218 - REGTESTS: Add a script to test the random forwarding with several filters
7219 - REGTESTS: mark the abns test as broken again
7220 - REGTESTS: converter: add url_dec test
7221 - CI: Stop hijacking the hosts file
7222 - CI: Make the h2spec workflow more consistent with the VTest workflow
7223 - CI: travis-ci: remove amd64, osx builds
7224 - CI: travis-ci: arm64 are not allowed to fail anymore
7225 - DOC: add missing 3.10 in the summary
7226 - MINOR: ssl: remove client hello counters
7227 - MEDIUM: stats: add counters for failed handshake
7228 - MINOR: ssl: create common ssl_ctx init
7229 - MEDIUM: cli/ssl: configure ssl on server at runtime
7230 - REGTEST: server/cli_set_ssl.vtc requires OpenSSL
7231 - DOC: coding-style: update a few rules about pointers
7232 - BUG/MINOR: ssl: segv on startup when AKID but no keyid
7233 - BUILD: ssl: use SSL_MODE_ASYNC macro instead of OPENSSL_VERSION
7234 - BUG/MEDIUM: http-ana: Don't eval http-after-response ruleset on empty messages
7235 - BUG/MEDIUM: ssl/crt-list: bundle support broken in crt-list
7236 - BUG/MEDIUM: ssl: error when no certificate are found
7237 - BUG/MINOR: ssl/crt-list: load bundle in crt-list only if activated
7238 - BUG/MEDIUM: ssl/crt-list: fix error when no file found
7239 - CI: Github Actions: enable prometheus exporter
7240 - CI: Github Actions: remove LibreSSL-3.0.2 builds
7241 - CI: Github Actions: enable BoringSSL builds
7242 - CI: travis-ci: remove builds migrated to GH actions
7243 - BUILD: makefile: enable crypt(3) for OpenBSD
7244 - CI: Github Action: run "apt-get update" before packages restore
7245 - BUILD: SSL: guard TLS13 ciphersuites with HAVE_SSL_CTX_SET_CIPHERSUITES
7246 - CI: Pass the github.event_name to matrix.py
7247 - CI: Clean up Windows CI
7248 - DOC: clarify how to create a fallback crt
7249 - CLEANUP: connection: do not use conn->owner when the session is known
7250 - BUG/MAJOR: connection: reset conn->owner when detaching from session list
7251 - REGTESTS: mark proxy_protocol_random_fail as broken
7252 - BUG/MINOR: http_htx: Fix searching headers by substring
7253 - MINOR: http_act: Add -m flag for del-header name matching method
7254
Willy Tarreau1db55792020-11-05 17:20:35 +010072552020/11/05 : 2.4-dev0
7256 - MINOR: version: it's development again.
7257 - DOC: mention in INSTALL that it's development again
7258
Willy Tarreau1c0a7222020-11-05 17:04:53 +010072592020/11/05 : 2.3.0
7260 - CLEANUP: pattern: remove unused entry "tree" in pattern.val
7261 - BUILD: ssl: use SSL_CTRL_GET_RAW_CIPHERLIST instead of OpenSSL versions
7262 - BUG/MEDIUM: filters: Don't try to init filters for disabled proxies
7263 - BUG/MINOR: proxy/server: Skip per-proxy/server post-check for disabled proxies
7264 - BUG/MINOR: checks: Report a socket error before any connection attempt
7265 - BUG/MINOR: server: Set server without addr but with dns in RMAINT on startup
7266 - MINOR: server: Copy configuration file and line for server templates
7267 - BUG/MEDIUM: mux-pt: Release the tasklet during an HTTP upgrade
7268 - BUILD: ssl: use HAVE_OPENSSL_KEYLOG instead of OpenSSL versions
7269 - MINOR: debug: don't count free(NULL) in memstats
7270 - BUG/MINOR: filters: Skip disabled proxies during startup only
7271 - MINOR: mux_h2: capitalize frame type in stats
7272 - MINOR: mux_h2: add stat for total count of connections/streams
7273 - MINOR: stats: do not display empty stat module title on html
7274 - BUG/MEDIUM: stick-table: limit the time spent purging old entries
7275 - BUG/MEDIUM: listener: only enable a listening listener if needed
7276 - BUG/MEDIUM: listener: never suspend inherited sockets
7277 - BUG/MEDIUM: listener: make the master also keep workers' inherited FDs
7278 - MINOR: fd: add fd_want_recv_safe()
7279 - MEDIUM: listeners: make use of fd_want_recv_safe() to enable early receivers
7280 - REGTESTS: mark abns_socket as working now
7281 - CLEANUP: mux-h2: Remove the h1 parser state from the h2 stream
7282 - MINOR: sock: add a check against cross worker<->master socket activities
7283 - CI: github actions: limit OpenSSL no-deprecated builds to "default,bug,devel" reg-tests
7284 - BUG/MEDIUM: server: make it possible to kill last idle connections
7285 - MINOR: mworker/cli: the master CLI use its own applet
7286 - MINOR: ssl: define SSL_CTX_set1_curves_list to itself on BoringSSL
7287 - BUILD: ssl: use feature macros for detecting ec curves manipulation support
7288 - DOC: Add dns as an available domain to show stat
7289 - BUILD: makefile: usual reorder of objects for faster builds
7290 - DOC: update INSTALL to mention that TCC is supported
7291 - DOC: mention in INSTALL that haproxy 2.3 is a stable version
7292 - MINOR: version: mention that it's stable now
7293
Willy Tarreaubd703e52020-10-31 13:17:06 +010072942020/10/31 : 2.3-dev9
7295 - CLEANUP: http_ana: remove unused assignation of `att_beg`
7296 - BUG/MEDIUM: ssl: OCSP must work with BoringSSL
7297 - BUG/MINOR: log: fix memory leak on logsrv parse error
7298 - BUG/MINOR: log: fix risk of null deref on error path
7299 - BUILD: ssl: more elegant OpenSSL early data support check
7300 - CI: github actions: update h2spec to 2.6.0
7301 - BUG/MINOR: cache: Check the return value of http_replace_res_status
7302 - MINOR: cache: Store the "Last-Modified" date in the cache_entry
7303 - MINOR: cache: Process the If-Modified-Since header in conditional requests
7304 - MINOR: cache: Create res.cache_hit and res.cache_name sample fetches
7305 - MINOR: mux-h2: register a stats module
7306 - MINOR: mux-h2: add counters instance to h2c
7307 - MINOR: mux-h2: add stats for received frame types
7308 - MINOR: mux-h2: report detected error on stats
7309 - MINOR: mux-h2: count open connections/streams on stats
7310 - BUG/MINOR: server: fix srv downtime calcul on starting
7311 - BUG/MINOR: server: fix down_time report for stats
7312 - BUG/MINOR: lua: initialize sample before using it
7313 - MINOR: cache: Add Expires header value parsing
7314 - MINOR: ist: Add a case insensitive istmatch function
7315 - BUG/MINOR: cache: Manage multiple values in cache-control header value
7316 - BUG/MINOR: cache: Inverted variables in http_calc_maxage function
7317 - MINOR: pattern: make pat_ref_append() return the newly added element
7318 - MINOR: pattern: make pat_ref_add() rely on pat_ref_append()
7319 - MINOR: pattern: export pat_ref_push()
7320 - CLEANUP: pattern: use calloc() rather than malloc for structures
7321 - CLEANUP: pattern: fix spelling/grammatical/copy-paste in comments
7322
Willy Tarreaufb1b9e32020-10-24 13:14:31 +020073232020/10/24 : 2.3-dev8
7324 - MINOR: backend: replace the lbprm lock with an rwlock
7325 - MINOR: lb/map: use seek lock and read locks where appropriate
7326 - MINOR: lb/leastconn: only take a read lock in fwlc_get_next_server()
7327 - MINOR: lb/first: use a read lock in fas_get_next_server()
7328 - MINOR: lb/chash: use a read lock in chash_get_server_hash()
7329 - BUG/MINOR: disable dynamic OCSP load with BoringSSL
7330 - BUILD: ssl: make BoringSSL use its own version numbers
7331 - CLEANUP: threads: don't register an initcall when not debugging
7332 - MINOR: threads: change lock_t to an unsigned int
7333 - CLEANUP: tree-wide: reorder a few structures to plug some holes around locks
7334 - CLEANUP: task: remove the unused and mishandled global_rqueue_size
7335 - BUG/MEDIUM: connection: Never cleanup server lists when freeing private conns
7336 - MEDIUM: config: report that "nbproc" is deprecated
7337 - BUG/MINOR: listener: close before free in `listener_accept`
7338 - MINOR: ssl: 'ssl-load-extra-del-ext' removes the certificate extension
7339 - BUG/MINOR: queue: properly report redistributed connections
7340 - CONTRIB: tcploop: remove unused local variables in tcp_pause()
7341 - BUILD: makefile: add entries to build common debugging tools
7342 - BUG/MEDIUM: server: support changing the slowstart value from state-file
7343 - MINOR: http: Add `enum etag_type http_get_etag_type(const struct ist)`
7344 - MINOR: http: Add etag comparison function
7345 - MEDIUM: cache: Store the ETag information in the cache_entry
7346 - MEDIUM: cache: Add support for 'If-None-Match' request header
7347 - REGTEST: cache: Add if-none-match test case
7348 - CLEANUP: compression: Make use of http_get_etag_type()
7349 - BUG/MINOR: http-ana: Don't send payload for internal responses to HEAD requests
7350 - BUG/MAJOR: mux-h2: Don't try to send data if we know it is no longer possible
7351 - MINOR: threads/debug: only report used lock stats
7352 - MINOR: threads/debug: only report lock stats for used operations
7353 - MINOR: proxy; replace the spinlock with an rwlock
7354 - MINOR: server: read-lock the cookie during srv_set_dyncookie()
7355 - MINOR: proxy/cli: only take a read lock in "show errors"
7356 - OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued
7357 - MINOR: queue: split __pendconn_unlink() in per-srv and per-prx
7358 - MINOR: queue: reduce the locked area in pendconn_add()
7359 - OPTIM: queue: make the nbpend counters atomic
7360 - OPTIM: queue: decrement the nbpend and totpend counters outside of the lock
7361 - MINOR: leastconn: take the queue length into account when queuing servers
7362 - MEDIUM: fwlc: re-enable per-server queuing up to maxqueue
7363 - Revert "OPTIM: queue: don't call pendconn_unlink() when the pendconn is not queued"
7364 - MINOR: stats: support the "up" output modifier for "show stat"
7365 - MINOR: stats: also support a "no-maint" show stat modifier
7366 - MINOR: stats: indicate the number of servers in a backend's status
7367 - MEDIUM: ssl: ssl-load-extra-del-ext work only with .crt
7368 - REGTEST: ssl: test "set ssl cert" with separate key / crt
7369 - DOC: management: apply the "show stat" modifiers to "show stat", not "show info"
7370 - MINOR: stats: report server's user-configured weight next to effective weight
7371 - CI: travis-ci: switch to Ubuntu 20.04
7372 - CONTRIB: release-estimator: Add release estimating tool
7373 - BUG/MEDIUM: queue: fix unsafe proxy pointer when counting nbpend
7374 - BUG/MINOR: extcheck: add missing checks on extchk_setenv()
7375
Willy Tarreau9d58c9b2020-10-17 10:31:50 +020073762020/10/17 : 2.3-dev7
7377 - CI: travis-ci: replace not defined SSL_LIB, SSL_INC for BotringSSL builds
7378 - BUG/MINOR: init: only keep rlim_fd_cur if max is unlimited
7379 - BUG/MINOR: mux-h2: do not stop outgoing connections on stopping
7380 - MINOR: fd: report an error message when failing initial allocations
7381 - MINOR: proto-tcp: make use of connect(AF_UNSPEC) for the pause
7382 - MINOR: sock: add sock_accept_conn() to test a listening socket
7383 - MINOR: protocol: make proto_tcp & proto_uxst report listening sockets
7384 - MINOR: sockpair: implement the .rx_listening function
7385 - CLEANUP: tcp: make use of sock_accept_conn() where relevant
7386 - CLEANUP: unix: make use of sock_accept_conn() where relevant
7387 - BUG/MINOR: listener: detect and handle shared sockets stopped in other processes
7388 - CONTRIB: tcploop: implement a disconnect operation 'D'
7389 - CLEANUP: protocol: intitialize all of the sockaddr when disconnecting
7390 - BUG/MEDIUM: deinit: check fdtab before fdtab[fd].owner
7391 - BUG/MINOR: connection: fix loop iter on connection takeover
7392 - BUG/MEDIUM: connection: fix srv idle count on conn takeover
7393 - MINOR: connection: improve list api usage
7394 - MINOR: mux/connection: add a new mux flag for HOL risk
7395 - MINOR: connection: don't check priv flag on free
7396 - MEDIUM: backend: add new conn to session if mux marked as HOL blocking
7397 - MEDIUM: backend: add reused conn to sess if mux marked as HOL blocking
7398 - MEDIUM: h2: remove conn from session on detach
7399 - MEDIUM: fcgi: remove conn from session on detach
7400 - DOC: Describe reuse safe for HOL handling
7401 - MEDIUM: proxy: remove obsolete "mode health"
7402 - MEDIUM: proxy: remove obsolete "monitor-net"
7403 - CLEANUP: protocol: remove the ->drain() function
7404 - CLEANUP: fd: finally get rid of fd_done_recv()
7405 - MINOR: connection: make sockaddr_alloc() take the address to be copied
7406 - MEDIUM: listener: allocate the connection before queuing a new connection
7407 - MINOR: session: simplify error path in session_accept_fd()
7408 - MINOR: connection: add new error codes for accept_conn()
7409 - MINOR: sock: rename sock_accept_conn() to sock_accepting_conn()
7410 - MINOR: protocol: add a new function accept_conn()
7411 - MINOR: sock: implement sock_accept_conn() to accept a connection
7412 - MINOR: sockpair: implement sockpair_accept_conn() to accept a connection
7413 - MEDIUM: listener: use protocol->accept_conn() to accept a connection
7414 - MEDIUM: listener: remove the second pass of fd manipulation at the end
7415 - MINOR: protocol: add a default I/O callback and put it into the receiver
7416 - MINOR: log: set the UDP receiver's I/O handler in the receiver
7417 - MINOR: protocol: register the receiver's I/O handler and not the protocol's
7418 - CLEANUP: protocol: remove the now unused <handler> field of proto_fam->bind()
7419 - DOC: improve the documentation for "option nolinger"
7420 - BUG/MEDIUM: proxy: properly stop backends
7421 - BUG/MEDIUM: task: bound the number of tasks picked from the wait queue at once
7422 - MINOR: threads: augment rwlock debugging stats to report seek lock stats
7423 - MINOR: threads: add the transitions to/from the seek state
7424 - MEDIUM: task: use an upgradable seek lock when scanning the wait queue
7425 - BUILD: listener: avoir a build warning when threads are disabled
7426 - BUG/MINOR: peers: Possible unexpected peer seesion reset after collisions.
7427 - MINOR: ssl: add volatile flags to ssl samples
7428 - MEDIUM: backend: reuse connection if using a static sni
7429 - BUG/MEDIUM: spoe: Unset variable instead of set it if no data provided
7430 - BUG/MEDIUM: mux-h1: Get the session from the H1S when capturing bad messages
7431 - BUG/MEDIUM: lb: Always lock the server when calling server_{take,drop}_conn
7432 - DOC: fix typo in MAX_SESS_STKCTR
7433
Willy Tarreaub7ffe192020-10-10 10:45:13 +020074342020/10/10 : 2.3-dev6
7435 - REGTESTS: use "command" instead of "which" for better POSIX compatibility
7436 - BUILD: makefile: Update feature flags for OpenBSD
7437 - DOC: agent-check: fix typo in "fail" word expected reply
7438 - DOC: crt: advise to move away from cert bundle
7439 - BUG/MINOR: ssl/crt-list: exit on warning out of crtlist_parse_line()
7440 - REGTEST: fix host part in balance-uri-path-only.vtc
7441 - REGTEST: make ssl_client_samples and ssl_server_samples requiret to 2.3
7442 - REGTEST: the iif converter test requires 2.3
7443 - REGTEST: make agent-check.vtc require 1.8
7444 - REGTEST: make abns_socket.vtc require 1.8
7445 - REGTEST: make map_regm_with_backref require 1.7
7446 - BUILD: makefile: Update feature flags for FreeBSD
7447 - OPTIM: backend/random: never queue on the server, always on the backend
7448 - OPTIM: backend: skip LB when we know the backend is full
7449 - BUILD: makefile: Fix building with closefrom() support enabled
7450 - BUILD: makefile: add an EXTRAVERSION variable to ease local naming
7451 - MINOR: tools: support for word expansion of environment in parse_line
7452 - BUILD: tools: fix minor build issue on isspace()
7453 - BUILD: makefile: Enable closefrom() support on Solaris
7454 - CLEANUP: ssl: Use structured format for error line report during crt-list parsing
7455 - MINOR: ssl: Add error if a crt-list might be truncated
7456 - MINOR: ssl: remove uneeded check in crtlist_parse_file
7457 - BUG/MINOR: Fix several leaks of 'log_tag' in init().
7458 - DOC: tcp-rules: Refresh details about L7 matching for tcp-request content rules
7459 - MEDIUM: tcp-rules: Warn if a track-sc* content rule doesn't depend on content
7460 - BUG/MINOR: tcpcheck: Set socks4 and send-proxy flags before the connect call
7461 - DOC: ssl: new "cert bundle" behavior
7462 - BUG/MEDIUM: queue: make pendconn_cond_unlink() really thread-safe
7463 - CLEANUP: ssl: "bundle" is not an OpenSSL wording
7464 - MINOR: counters: fix a typo in comment
7465 - BUG/MINOR: stats: fix validity of the json schema
7466 - REORG: stats: export some functions
7467 - MINOR: stats: add stats size as a parameter for csv/json dump
7468 - MINOR: stats: hide px/sv/li fields in applet struct
7469 - REORG: stats: extract proxy json dump
7470 - REORG: stats: extract proxies dump loop in a function
7471 - MINOR: hlua: Display debug messages on stderr only in debug mode
7472 - MINOR: stats: define the concept of domain for statistics
7473 - MINOR: stats: define additional flag px cap on domain
7474 - MEDIUM: stats: add delimiter for static proxy stats on csv
7475 - MEDIUM: stats: define an API to register stat modules
7476 - MEDIUM: stats: add abstract type to store counters
7477 - MEDIUM: stats: integrate static proxies stats in new stats
7478 - MINOR: stats: support clear counters for dynamic stats
7479 - MINOR: stats: display extra proxy stats on the html page
7480 - MINOR: stats: add config "stats show modules"
7481 - MINOR: dns/stats: integrate dns counters in stats
7482 - MINOR: stats: remove for loop declaration
7483 - DOC: ssl: fix typo about ocsp files
7484 - BUG/MINOR: peers: Inconsistency when dumping peer status codes.
7485 - DOC: update INSTALL with supported OpenBSD / FreeBSD versions
7486 - BUG/MINOR: proto_tcp: Report warning messages when listeners are bound
7487 - CLEANUP: cache: Fix leak of cconf->c.name during config check
7488 - CLEANUP: ssl: Release cached SSL sessions on deinit
7489 - BUG/MINOR: mux-h1: Be sure to only set CO_RFL_READ_ONCE for the first read
7490 - BUG/MINOR: mux-h1: Always set the session on frontend h1 stream
7491 - MINOR: mux-h1: Don't wakeup the H1C when output buffer become available
7492 - CLEANUP: sock-unix: Remove an unreachable goto clause
7493 - BUG/MINOR: proxy: inc req counter on new syslog messages.
7494 - BUG/MEDIUM: log: old processes with log foward section don't die on soft stop.
7495 - MINOR: stats: inc req counter on listeners.
7496 - MINOR: channel: new getword and getchar functions on channel.
7497 - MEDIUM: log: syslog TCP support on log forward section.
7498 - BUG/MINOR: proxy/log: frontend/backend and log forward names must differ
7499 - DOC: re-work log forward bind statement documentation.
7500 - DOC: fix a confusing typo on a regsub example
7501 - BUILD: Add a DragonFlyBSD target
7502 - BUG/MINOR: makefile: fix a tiny typo in the target list
7503 - BUILD: makefile: Update feature flags for NetBSD
7504 - CI: travis-ci: help Coverity to detect BUG_ON() as a real stop
7505 - DOC: Add missing stats fields in the management doc
7506 - BUG/MEDIUM: mux-fcgi: Don't handle pending read0 too early on streams
7507 - BUG/MEDIUM: mux-h2: Don't handle pending read0 too early on streams
7508 - DOC: Fix typos in configuration.txt
7509 - BUG/MINOR: http: Fix content-length of the default 500 error
7510 - BUG/MINOR: http-htx: Expect no body for 204/304 internal HTTP responses
7511 - REGTESTS: mark abns_socket as broken
7512 - MEDIUM: fd: always wake up one thread when enabling a foreing FD
7513 - MEDIUM: listeners: don't bounce listeners management between queues
7514 - MEDIUM: init: stop disabled proxies after initializing fdtab
7515 - MEDIUM: listeners: make unbind_listener() converge if needed
7516 - MEDIUM: deinit: close all receivers/listeners before scanning proxies
7517 - MEDIUM: listeners: remove the now unused ZOMBIE state
7518 - MINOR: listeners: do not uselessly try to close zombie listeners in soft_stop()
7519 - CLEANUP: proxy: remove the first_to_listen hack in zombify_proxy()
7520 - MINOR: listeners: introduce listener_set_state()
7521 - MINOR: proxy: maintain per-state counters of listeners
7522 - MEDIUM: proxy: remove the unused PR_STFULL state
7523 - MEDIUM: proxy: remove the PR_STERROR state
7524 - MEDIUM: proxy: remove state PR_STPAUSED
7525 - MINOR: startup: don't rely on PR_STNEW to check for listeners
7526 - CLEANUP: peers: don't use the PR_ST* states to mark enabled/disabled
7527 - MEDIUM: proxy: replace proxy->state with proxy->disabled
7528 - MEDIUM: proxy: remove start_proxies()
7529 - MEDIUM: proxy: merge zombify_proxy() with stop_proxy()
7530 - MINOR: listeners: check the current listener state in pause_listener()
7531 - MINOR: listeners: check the current listener earlier state in resume_listener()
7532 - MEDIUM: listener/proxy: make the listeners notify about proxy pause/resume
7533 - MINOR: protocol: introduce protocol_{pause,resume}_all()
7534 - MAJOR: signals: use protocol_pause_all() and protocol_resume_all()
7535 - CLEANUP: proxy: remove the now unused pause_proxies() and resume_proxies()
7536 - MEDIUM: proto_tcp: make the pause() more robust in multi-process
7537 - BUG/MEDIUM: listeners: correctly report pause() errors
7538 - MINOR: listeners: move fd_stop_recv() to the receiver's socket code
7539 - CLEANUP: protocol: remove the ->disable_all method
7540 - CLEANUP: listeners: remove unused disable_listener and disable_all_listeners
7541 - MINOR: listeners: export enable_listener()
7542 - MINOR: protocol: directly call enable_listener() from protocol_enable_all()
7543 - CLEANUP: protocol: remove the ->enable_all method
7544 - CLEANUP: listeners: remove the now unused enable_all_listeners()
7545 - MINOR: protocol: rename the ->listeners field to ->receivers
7546 - MINOR: protocol: replace ->pause(listener) with ->rx_suspend(receiver)
7547 - MINOR: protocol: implement an ->rx_resume() method
7548 - MINOR: listener: use the protocol's ->rx_resume() method when available
7549 - MINOR: sock: provide a set of generic enable/disable functions
7550 - MINOR: protocol: add a new pair of rx_enable/rx_disable methods
7551 - MINOR: protocol: add a new pair of enable/disable methods for listeners
7552 - MEDIUM: listeners: now use the listener's ->enable/disable
7553 - MINOR: listeners: split delete_listener() in two versions
7554 - MINOR: listeners: count unstoppable jobs on creation, not deletion
7555 - MINOR: listeners: add a new stop_listener() function
7556 - MEDIUM: proxy: make stop_proxy() now use stop_listener()
7557 - MEDIUM: proxy: add mode PR_MODE_PEERS to flag peers frontends
7558 - MEDIUM: proxy: centralize proxy status update and reporting
7559 - MINOR: protocol: add protocol_stop_now() to instant-stop listeners
7560 - MEDIUM: proxy: make soft_stop() stop most listeners using protocol_stop_now()
7561 - MEDIUM: udp: implement udp_suspend() and udp_resume()
7562 - MINOR: listener: add a few BUG_ON() statements to detect inconsistencies
7563 - MEDIUM: listeners: always close master vs worker listeners
7564 - BROKEN/MEDIUM: listeners: rework the unbind logic to make it idempotent
7565 - MEDIUM: listener: let do_unbind_listener() decide whether to close or not
7566 - CLEANUP: listeners: remove the do_close argument to unbind_listener()
7567 - MINOR: listeners: move the LI_O_MWORKER flag to the receiver
7568 - MEDIUM: receivers: add an rx_unbind() method in the protocols
7569 - MINOR: listeners: split do_unbind_listener() in two
7570 - MEDIUM: listeners: implement protocol level ->suspend/resume() calls
7571 - MEDIUM: config: mark "grace" as deprecated
7572 - MEDIUM: config: remove the deprecated and dangerous global "debug" directive
7573 - BUG/MINOR: proxy: respect the proper format string in sig_pause/sig_listen
7574 - MINOR: peers: heartbeat, collisions and handshake information for "show peers" command.
7575 - BUILD: makefile: Enable getaddrinfo() on OS/X
7576
Christopher Faulet05f01882020-09-25 18:40:47 +020075772020/09/25 : 2.3-dev5
7578 - DOC: Fix typo in iif() example
7579 - CLEANUP: Update .gitignore
7580 - BUILD: introduce possibility to define ABORT_NOW() conditionally
7581 - CI: travis-ci: help Coverity to recognize abort()
7582 - BUG/MINOR: Fix type passed of sizeof() for calloc()
7583 - CLEANUP: Do not use a fixed type for 'sizeof' in 'calloc'
7584 - CLEANUP: tree-wide: use VAR_ARRAY instead of [0] in various definitions
7585 - BUILD: connection: fix build on clang after the VAR_ARRAY cleanup
7586 - BUG/MINOR: ssl: verifyhost is case sensitive
7587 - BUILD: makefile: change default value of CC from gcc to cc
7588 - CI: travis-ci: split asan step out of running tests
7589 - BUG/MINOR: server: report correct error message for invalid port on "socks4"
7590 - BUG/MEDIUM: ssl: Don't call ssl_sock_io_cb() directly.
7591 - BUG/MINOR: ssl/crt-list: crt-list could end without a \n
7592 - BUG/MINOR: log-forward: fail on unknown keywords
7593 - MEDIUM: log-forward: use "dgram-bind" instead of "bind" for the listener
7594 - BUG/MEDIUM: log-forward: always quit on parsing errors
7595 - MEDIUM: ssl: remove bundle support in crt-list and directories
7596 - MEDIUM: ssl/cli: remove support for multi certificates bundle
7597 - MINOR: ssl: crtlist_dup_ssl_conf() duplicates a ssl_bind_conf
7598 - MINOR: ssl: crtlist_entry_dup() duplicates a crtlist_entry
7599 - MEDIUM: ssl: emulates the multi-cert bundles in the crtlist
7600 - MEDIUM: ssl: emulate multi-cert bundles loading in standard loading
7601 - CLEANUP: ssl: remove test on "multi" variable in ckch functions
7602 - CLEANUP: ssl/cli: remove test on 'multi' variable in CLI functions
7603 - CLEANUP: ssl: remove utility functions for bundle
7604 - DOC: explain bundle emulation in configuration.txt
7605 - BUILD: fix build with openssl < 1.0.2 since bundle removal
7606 - BUG/MINOR: log: gracefully handle the "udp@" address format for log servers
7607 - BUG/MINOR: dns: gracefully handle the "udp@" address format for nameservers
7608 - MINOR: listener: create a new struct "settings" in bind_conf
7609 - MINOR: listener: move bind_proc and bind_thread to struct settings
7610 - MINOR: listener: move the interface to the struct settings
7611 - MINOR: listener: move the network namespace to the struct settings
7612 - REORG: listener: create a new struct receiver
7613 - REORG: listener: move the listening address to a struct receiver
7614 - REORG: listener: move the receiving FD to struct receiver
7615 - REORG: listener: move the listener's proto to the receiver
7616 - MINOR: listener: make sock_find_compatible_fd() check the socket type
7617 - REORG: listener: move the receiver part to a new file
7618 - MINOR: receiver: link the receiver to its settings
7619 - MINOR: receiver: link the receiver to its owner
7620 - MINOR: listener: prefer to retrieve the socket's settings via the receiver
7621 - MINOR: receiver: add a receiver-specific flag to indicate the socket is bound
7622 - MINOR: listener: move the INHERITED flag down to the receiver
7623 - MINOR: receiver: move the FOREIGN and V6ONLY options from listener to settings
7624 - MINOR: sock: make sock_find_compatible_fd() only take a receiver
7625 - MINOR: protocol: rename the ->bind field to ->listen
7626 - MINOR: protocol: add a new ->bind() entry to bind the receiver
7627 - MEDIUM: sock_inet: implement sock_inet_bind_receiver()
7628 - MEDIUM: tcp: make use of sock_inet_bind_receiver()
7629 - MEDIUM: udp: make use of sock_inet_bind_receiver()
7630 - MEDIUM: sock_unix: implement sock_unix_bind_receiver()
7631 - MEDIUM: uxst: make use of sock_unix_bind_receiver()
7632 - MEDIUM: sockpair: implement sockpair_bind_receiver()
7633 - MEDIUM: proto_sockpair: make use of sockpair_bind_receiver()
7634 - MEDIUM: protocol: explicitly start the receiver before the listener
7635 - MEDIUM: protocol: do not call proto->bind() anymore from bind_listener()
7636 - MINOR: protocol: add a new proto_fam structure for protocol families
7637 - MINOR: protocol: retrieve the family-specific fields from the family
7638 - CLEANUP: protocol: remove family-specific fields from struct protocol
7639 - MINOR: protocol: add a real family for existing FDs
7640 - CLEANUP: tools: make str2sa_range() less awful for fd@ and sockpair@
7641 - MINOR: tools: make str2sa_range() take more options than just resolve
7642 - MINOR: tools: add several PA_O_PORT_* flags in str2sa_range() callers
7643 - MEDIUM: tools: make str2sa_range() validate callers' port specifications
7644 - MEDIUM: config: remove all checks for missing/invalid ports/ranges
7645 - MINOR: tools: add several PA_O_* flags in str2sa_range() callers
7646 - MINOR: listener: remove the inherited arg to create_listener()
7647 - MINOR: tools: make str2sa_range() optionally return the fd
7648 - MINOR: log: detect LOG_TARGET_FD from the fd and not from the syntax
7649 - MEDIUM: tools: make str2sa_range() resolve pre-bound listeners
7650 - MINOR: config: do not test an inherited socket again
7651 - MEDIUM: tools: make str2sa_range() check for the sockpair's FD usability
7652 - MINOR: tools: start to distinguish stream and dgram in str2sa_range()
7653 - MEDIUM: tools: make str2sa_range() only report AF_CUST_UDP on listeners
7654 - MINOR: tools: remove the central test for "udp" in str2sa_range()
7655 - MINOR: cfgparse: add str2receiver() to parse dgram receivers
7656 - MINOR: log-forward: use str2receiver() to parse the dgram-bind address
7657 - MEDIUM: config: make str2listener() not accept datagram sockets anymore
7658 - MINOR: listener: pass the chosen protocol to create_listeners()
7659 - MINOR: tools: make str2sa_range() directly return the protocol
7660 - MEDIUM: tools: make str2sa_range() check that the protocol has ->connect()
7661 - MINOR: protocol: add the control layer type in the protocol struct
7662 - MEDIUM: protocol: store the socket and control type in the protocol array
7663 - MEDIUM: tools: make str2sa_range() use protocol_lookup()
7664 - MEDIUM: proto_udp: replace last AF_CUST_UDP* with AF_INET*
7665 - MINOR: tools: drop listener detection hack from str2sa_range()
7666 - BUILD: sock_unix: add missing errno.h
7667 - MINOR: sock_inet: report the errno string in binding errors
7668 - MINOR: sock_unix: report the errno string in binding errors
7669 - BUILD: sock_inet: include errno.h
7670 - MINOR: h2/trace: also display the remaining frame length in traces
7671 - BUG/MINOR: h2/trace: do not display "stream error" after a frame ACK
7672 - BUG/MEDIUM: h2: report frame bits only for handled types
7673 - BUG/MINOR: http-fetch: Don't set the sample type during the htx prefetch
7674 - BUG/MINOR: Fix memory leaks cfg_parse_peers
7675 - BUG/MINOR: config: Fix memory leak on config parse listen
7676 - MINOR: backend: make the "whole" option of balance uri take only one bit
7677 - MINOR: backend: add a new "path-only" option to "balance uri"
7678 - REGTESTS: add a few load balancing tests
7679 - BUG/MEDIUM: listeners: do not pause foreign listeners
7680 - BUG/MINOR: listeners: properly close listener FDs
7681 - BUILD: trace: include tools.h
7682
Willy Tarreau253c4dc2020-09-11 17:05:59 +020076832020/09/11 : 2.3-dev4
7684 - MINOR: hlua: Add error message relative to the Channel manipulation and HTTP mode
7685 - BUG/MEDIUM: ssl: crt-list negative filters don't work
7686 - DOC: overhauling github issue templates
7687 - MEDIUM: cfgparse: Emit hard error on truncated lines
7688 - DOC: cache: Use '<name>' instead of '<id>' in error message
7689 - MINOR: cache: Reject duplicate cache names
7690 - REGTEST: remove stray leading spaces in converteers_ref_cnt_never_dec.vtc
7691 - MINOR: stats: prevent favicon.ico requests for stats page
7692 - BUILD: tools: include auxv a bit later
7693 - BUILD: task: work around a bogus warning in gcc 4.7/4.8 at -O1
7694 - MEDIUM: ssl: Support certificate chaining for certificate generation
7695 - MINOR: ssl: Support SAN extension for certificate generation
7696 - MINOR: tcp: don't try to set/clear v6only on inherited sockets
7697 - BUG/MINOR: reload: detect the OS's v6only status before choosing an old socket
7698 - MINOR: reload: determine the foreing binding status from the socket
7699 - MEDIUM: reload: stop passing listener options along with FDs
7700 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free w/ wildcards
7701 - MEDIUM: fd: replace usages of fd_remove() with fd_stop_both()
7702 - CLEANUP: fd: remove fd_remove() and rename fd_dodelete() to fd_delete()
7703 - MINOR: fd: add a new "exported" flag and use it for all regular listeners
7704 - MEDIUM: reload: pass all exportable FDs, not just listeners
7705 - DOC: add description of pidfile in master-worker mode
7706 - BUG/MINOR: reload: do not fail when no socket is sent
7707 - REORG: tcp: move TCP actions from proto_tcp.c to tcp_act.c
7708 - CLEANUP: tcp: stop exporting smp_fetch_src()
7709 - REORG: tcp: move TCP sample fetches from proto_tcp.c to tcp_sample.c
7710 - REORG: tcp: move TCP bind/server keywords from proto_tcp.c to cfgparse-tcp.c
7711 - REORG: unix: move UNIX bind/server keywords from proto_uxst.c to cfgparse-unix.c
7712 - REORG: sock: start to move some generic socket code to sock.c
7713 - MINOR: sock: introduce sock_inet and sock_unix
7714 - MINOR: tcp/udp/unix: make use of proto->addrcmp() to compare addresses
7715 - MINOR: sock_inet: implement sock_inet_get_dst()
7716 - REORG: inet: replace tcp_is_foreign() with sock_inet_is_foreign()
7717 - REORG: sock_inet: move v6only_default from proto_tcp.c to sock_inet.c
7718 - REORG: sock_inet: move default_tcp_maxseg from proto_tcp.c
7719 - REORG: listener: move xfer_sock_list to sock.{c,h}.
7720 - MINOR: sock: add interface and namespace length to xfer_sock_list
7721 - MINOR: sock: implement sock_find_compatible_fd()
7722 - MINOR: sock_inet: move the IPv4/v6 transparent mode code to sock_inet
7723 - REORG: sock: move get_old_sockets() from haproxy.c
7724 - MINOR: sock: do not use LI_O_* in xfer_sock_list anymore
7725 - MINOR: sock: distinguish dgram from stream types when retrieving old sockets
7726 - BUILD: sock_unix: fix build issue with isdigit()
7727 - BUG/MEDIUM: http-ana: Don't wait to send 1xx responses received from servers
7728 - MINOR: http-htx: Add an option to eval query-string when the path is replaced
7729 - BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action
7730 - MINOR: http-htx: Handle an optional reason when replacing the response status
7731 - MINOR: contrib/spoa-server: allow MAX_FRAME_SIZE override
7732 - BUG/MAJOR: contrib/spoa-server: Fix unhandled python call leading to memory leak
7733 - BUG/MINOR: contrib/spoa-server: Ensure ip address references are freed
7734 - BUG/MINOR: contrib/spoa-server: Do not free reference to NULL
7735 - BUG/MINOR: contrib/spoa-server: Updating references to free in case of failure
7736 - BUG/MEDIUM: contrib/spoa-server: Fix ipv4_address used instead of ipv6_address
7737 - CLEANUP: http: silence a cppcheck warning in get_http_auth()
7738 - REGTEST: increase some short timeouts to make tests more reliable
7739 - BUG/MINOR: threads: work around a libgcc_s issue with chrooting
7740 - BUILD: thread: limit the libgcc_s workaround to glibc only
7741 - MINOR: protocol: do not call proto->bind_all() anymore
7742 - MINOR: protocol: do not call proto->unbind_all() anymore
7743 - CLEANUP: protocol: remove all ->bind_all() and ->unbind_all() functions
7744 - MAJOR: init: start all listeners via protocols and not via proxies anymore
7745 - BUG/MINOR: startup: haproxy -s cause 100% cpu
7746 - Revert "BUG/MINOR: http-rules: Replace path and query-string in "replace-path" action"
7747 - BUG/MEDIUM: doc: Fix replace-path action description
7748 - MINOR: http-rules: Add set-pathq and replace-pathq actions
7749 - MINOR: http-fetch: Add pathq sample fetch
7750 - REGTEST: Add a test for request path manipulations, with and without the QS
7751 - MINOR: Commit .gitattributes
7752 - CLEANUP: Update .gitignore
7753 - BUG/MEDIUM: dns: Don't store additional records in a linked-list
7754 - BUG/MEDIUM: dns: Be sure to renew IP address for already known servers
7755 - MINOR: server: Improve log message sent when server address is updated
7756 - DOC: ssl-load-extra-files only applies to certificates on bind lines
7757 - BUG/MINOR: auth: report valid crypto(3) support depending on build options
7758 - BUG/MEDIUM: mux-h1: always apply the timeout on half-closed connections
7759 - BUILD: threads: better workaround for late loading of libgcc_s
7760 - BUILD: compiler: reserve the gcc version checks to the gcc compiler
7761 - BUILD: compiler: workaround a glibc madness around __attribute__()
7762 - BUILD: intops: on x86_64, the bswap instruction is called bswapq
7763 - BUILD: trace: always have an argument before variadic args in macros
7764 - BUILD: traces: don't pass an empty argument for missing ones
7765 - BUG/MINOR: haproxy: Free uri_auth->scope during deinit
7766 - CLEANUP: Free old_argv on deinit
7767 - CLEANUP: haproxy: Free post_proxy_check_list in deinit()
7768 - CLEANUP: haproxy: Free per_thread_*_list in deinit()
7769 - CLEANUP: haproxy: Free post_check_list in deinit()
7770 - BUG/MEDIUM: pattern: Renew the pattern expression revision when it is pruned
7771 - REORG: tools: move PARSE_OPT_* from tools.h to tools-t.h
7772 - MINOR: sample: Add iif(<true>,<false>) converter
7773
Willy Tarreauf104b532020-08-14 18:54:05 +020077742020/08/14 : 2.3-dev3
7775 - SCRIPTS: git-show-backports: make -m most only show the left branch
7776 - SCRIPTS: git-show-backports: emit the shell command to backport a commit
7777 - BUILD: Makefile: require SSL_LIB, SSL_INC to be explicitly set
7778 - CI: travis-ci: specify SLZ_LIB, SLZ_INC for travis builds
7779 - BUG/MEDIUM: mux-h1: Refresh H1 connection timeout after a synchronous send
7780 - CLEANUP: dns: typo in reported error message
7781 - BUG/MAJOR: dns: disabled servers through SRV records never recover
7782 - BUG/MINOR: spoa-server: fix size_t format printing
7783 - DOC: spoa-server: fix false friends `actually`
7784 - BUG/MINOR: ssl: fix memory leak at OCSP loading
7785 - BUG/MEDIUM: ssl: memory leak of ocsp data at SSL_CTX_free()
7786 - BUG/MEDIUM: map/lua: Return an error if a map is loaded during runtime
7787 - MINOR: arg: Add an argument type to keep a reference on opaque data
7788 - BUG/MINOR: converters: Store the sink in an arg pointer for debug() converter
7789 - BUG/MINOR: lua: Duplicate map name to load it when a new Map object is created
7790 - BUG/MINOR: arg: Fix leaks during arguments validation for fetches/converters
7791 - BUG/MINOR: lua: Check argument type to convert it to IPv4/IPv6 arg validation
7792 - BUG/MINOR: lua: Check argument type to convert it to IP mask in arg validation
7793 - MINOR: hlua: Don't needlessly copy lua strings in trash during args validation
7794 - BUG/MINOR: lua: Duplicate lua strings in sample fetches/converters arg array
7795 - MEDIUM: lua: Don't filter exported fetches and converters
7796 - MINOR: lua: Add support for userlist as fetches and converters arguments
7797 - MINOR: lua: Add support for regex as fetches and converters arguments
7798 - MINOR: arg: Use chunk_destroy() to release string arguments
7799 - BUG/MINOR: snapshots: leak of snapshots on deinit()
7800 - CLEANUP: ssl: ssl_sock_crt2der semicolon and spaces
7801 - MINOR: ssl: add ssl_{c,s}_chain_der fetch methods
7802 - CLEANUP: fix all duplicated semicolons
7803 - BUG/MEDIUM: ssl: fix the ssl-skip-self-issued-ca option
7804 - BUG/MINOR: ssl: ssl-skip-self-issued-ca requires >= 1.0.2
7805 - BUG/MINOR: stats: use strncmp() instead of memcmp() on health states
7806 - BUILD: makefile: don't disable -Wstringop-overflow anymore
7807 - BUG/MINOR: ssl: double free w/ smp_fetch_ssl_x_chain_der()
7808 - BUG/MEDIUM: htx: smp_prefetch_htx() must always validate the direction
7809 - BUG/MEDIUM: ssl: never generates the chain from the verify store
7810 - OPTIM: regex: PCRE2 use JIT match when JIT optimisation occured.
7811 - BUG/MEDIUM: ssl: does not look for all SNIs before chosing a certificate
7812 - CLEANUP: ssl: remove poorly readable nested ternary
7813
Willy Tarreau3f3cc8c2020-07-31 14:48:32 +020078142020/07/31 : 2.3-dev2
7815 - DOC: ssl: req_ssl_sni needs implicit TLS
7816 - BUG/MEDIUM: arg: empty args list must be dropped
7817 - BUG/MEDIUM: resolve: fix init resolving for ring and peers section.
7818 - BUG/MAJOR: tasks: don't requeue global tasks into the local queue
7819 - MINOR: tasks/debug: make the thread affinity BUG_ON check a bit stricter
7820 - MINOR: tasks/debug: add a few BUG_ON() to detect use of wrong timer queue
7821 - MINOR: tasks/debug: add a BUG_ON() check to detect requeued task on free
7822 - BUG/MAJOR: dns: Make the do-resolve action thread-safe
7823 - BUG/MEDIUM: dns: Release answer items when a DNS resolution is freed
7824 - MEDIUM: htx: Add a flag on a HTX message when no more data are expected
7825 - BUG/MEDIUM: stream-int: Don't set MSG_MORE flag if no more data are expected
7826 - BUG/MEDIUM: http-ana: Only set CF_EXPECT_MORE flag on data filtering
7827 - CLEANUP: dns: remove 45 "return" statements from dns_validate_dns_response()
7828 - BUG/MINOR: htx: add two missing HTX_FL_EOI and remove an unexpected one
7829 - BUG/MINOR: mux-fcgi: Don't url-decode the QUERY_STRING parameter anymore
7830 - BUILD: tools: fix build with static only toolchains
7831 - DOC: Use gender neutral language
7832 - BUG/MINOR: debug: Don't dump the lua stack if it is not initialized
7833 - BUG/MAJOR: dns: fix null pointer dereference in snr_update_srv_status
7834 - BUG/MAJOR: dns: don't treat Authority records as an error
7835 - CI : travis-ci : prepare for using stock OpenSSL
7836 - CI: travis-ci : switch to stock openssl when openssl-1.1.1 is used
7837 - MEDIUM: lua: Add support for the Lua 5.4
7838 - BUG/MEDIUM: dns: Don't yield in do-resolve action on a final evaluation
7839 - BUG/MINOR: lua: Abort execution of actions that yield on a final evaluation
7840 - MINOR: tcp-rules: Return an internal error if an action yields on a final eval
7841 - BUG/MINOR: tcp-rules: Preserve the right filter analyser on content eval abort
7842 - BUG/MINOR: tcp-rules: Set the inspect-delay when a tcp-response action yields
7843 - MEDIUM: tcp-rules: Use a dedicated expiration date for tcp ruleset
7844 - MEDIUM: lua: Set the analyse expiration date with smaller wake_time only
7845 - BUG/MEDIUM: connection: Be sure to always install a mux for sync connect
7846 - MINOR: connection: Preinstall the mux for non-ssl connect
7847 - MINOR: stream-int: Be sure to have a mux to do sends and receives
7848 - BUG/MINOR: lua: Fix a possible null pointer deref on lua ctx
7849 - SCRIPTS: announce-release: add the link to the wiki in the announce messages
7850 - CI: travis-ci: use better name for Coverity scan job
7851 - CI: travis-ci: use proper linking flags for SLZ build
7852 - BUG/MEDIUM: backend: always attach the transport before installing the mux
7853 - BUG/MEDIUM: tcp-checks: always attach the transport before installing the mux
7854 - MINOR: connection: avoid a useless recvfrom() on outgoing connections
7855 - MINOR: mux-h1: do not even try to receive if the connection is not fully set up
7856 - MINOR: mux-h1: do not try to receive on backend before sending a request
7857 - CLEANUP: assorted typo fixes in the code and comments
7858 - BUG/MEDIUM: ssl: check OCSP calloc in ssl_sock_load_ocsp()
7859
Willy Tarreaue732cbd2020-07-17 15:13:19 +020078602020/07/17 : 2.3-dev1
7861 - MINOR: config: make strict limits enabled by default
7862 - BUG/MINOR: acl: Fix freeing of expr->smp in prune_acl_expr
7863 - BUG/MINOR: sample: Fix freeing of conv_exprs in release_sample_expr
7864 - BUG/MINOR: haproxy: Free proxy->format_unique_id during deinit
7865 - BUG/MINOR: haproxy: Add missing free of server->(hostname|resolvers_id)
7866 - BUG/MINOR: haproxy: Free proxy->unique_id_header during deinit
7867 - BUG/MINOR: haproxy: Free srule->file during deinit
7868 - BUG/MINOR: haproxy: Free srule->expr during deinit
7869 - BUG/MINOR: sample: Free str.area in smp_check_const_bool
7870 - BUG/MINOR: sample: Free str.area in smp_check_const_meth
7871 - CLEANUP: haproxy: Free proxy_deinit_list in deinit()
7872 - CLEANUP: haproxy: Free post_deinit_list in deinit()
7873 - CLEANUP: haproxy: Free server_deinit_list in deinit()
7874 - CLEANUP: haproxy: Free post_server_check_list in deinit()
7875 - CLEANUP: Add static void vars_deinit()
7876 - CLEANUP: Add static void hlua_deinit()
7877 - CLEANUP: contrib/prometheus-exporter: typo fixes for ssl reuse metric
7878 - BUG/MEDIUM: lists: add missing store barrier on MT_LIST_BEHEAD()
7879 - BUG/MEDIUM: lists: add missing store barrier in MT_LIST_ADD/MT_LIST_ADDQ
7880 - MINOR: tcp: Support TCP keepalive parameters customization
7881 - BUILD: tcp: condition TCP keepalive settings to platforms providing them
7882 - MINOR: lists: rename some MT_LIST operations to clarify them
7883 - MINOR: buffer: use MT_LIST_ADDQ() for buffer_wait lists additions
7884 - MINOR: connection: use MT_LIST_ADDQ() to add connections to idle lists
7885 - MINOR: tasks: use MT_LIST_ADDQ() when killing tasks.
7886 - CONTRIB: da: fix memory leak in dummy function da_atlas_open()
7887 - CI: travis-ci: speed up osx build by running brew scripted, switch to latest osx image
7888 - BUG/MEDIUM: mux-h2: Don't add private connections in available connection list
7889 - BUG/MEDIUM: mux-fcgi: Don't add private connections in available connection list
7890 - MINOR: connection: Set the SNI on server connections before installing the mux
7891 - MINOR: connection: Set new connection as private on reuse never
7892 - MINOR: connection: Add a wrapper to mark a connection as private
7893 - MEDIUM: connection: Add private connections synchronously in session server list
7894 - MINOR: connection: Use a dedicated function to look for a session's connection
7895 - MINOR: connection: Set the conncetion target during its initialisation
7896 - MINOR: session: Take care to decrement idle_conns counter in session_unown_conn
7897 - MINOR: server: Factorize code to deal with reuse of server idle connections
7898 - MINOR: server: Factorize code to deal with connections removed from an idle list
7899 - CLEANUP: connection: remove unused field idle_time from the connection struct
7900 - BUG/MEDIUM: mux-h1: Continue to process request when switching in tunnel mode
7901 - MINOR: raw_sock: Report the number of bytes emitted using the splicing
7902 - MINOR: contrib/prometheus-exporter: Add missing global and per-server metrics
7903 - MINOR: backend: Add sample fetches to get the server's weight
7904 - BUG/MINOR: mux-fcgi: Handle empty STDERR record
7905 - BUG/MINOR: mux-fcgi: Set conn state to RECORD_P when skipping the record padding
7906 - BUG/MINOR: mux-fcgi: Set flags on the right stream field for empty FCGI_STDOUT
7907 - BUG/MINOR: backend: fix potential null deref on srv_conn
7908 - BUG/MEDIUM: log: issue mixing sampled to not sampled log servers.
7909 - MEDIUM: udp: adds minimal proto udp support for message listeners.
7910 - MEDIUM: log/sink: re-work and merge of build message API.
7911 - MINOR: log: adds syslog udp message handler and parsing.
7912 - MEDIUM: log: adds log forwarding section.
7913 - MINOR: log: adds counters on received syslog messages.
7914 - BUG/MEDIUM: fcgi-app: fix memory leak in fcgi_flt_http_headers
7915 - BUG/MEDIUM: server: resolve state file handle leak on reload
7916 - BUG/MEDIUM: server: fix possibly uninitialized state file on close
7917 - BUG/MEDIUM: channel: Be aware of SHUTW_NOW flag when output data are peeked
7918 - BUILD: config: address build warning on raspbian+rpi4
7919 - BUG/MAJOR: tasks: make sure to always lock the shared wait queue if needed
7920 - BUILD: config: fix again bugs gcc warnings on calloc
7921
Willy Tarreau33205c22020-07-07 16:35:28 +020079222020/07/07 : 2.3-dev0
Willy Tarreau848dbdf2020-07-07 16:39:18 +02007923 - [RELEASE] Released version 2.3-dev0
7924 - MINOR: version: back to development, update status message
7925
79262020/07/07 : 2.3-dev0
Willy Tarreau33205c22020-07-07 16:35:28 +02007927 - exact copy of 2.2.0
7928
Willy Tarreau3a00c912020-07-07 16:33:14 +020079292020/07/07 : 2.2.0
7930 - BUILD: mux-h2: fix typo breaking build when using DEBUG_LOCK
7931 - CLEANUP: makefile: update the outdated list of DEBUG_xxx options
7932 - BUILD: tools: make resolve_sym_name() return a const
7933 - CLEANUP: auth: fix useless self-include of auth-t.h
7934 - BUILD: tree-wide: cast arguments to tolower/toupper to unsigned char
7935 - CLEANUP: assorted typo fixes in the code and comments
7936 - WIP/MINOR: ssl: add sample fetches for keylog in frontend
7937 - DOC: fix tune.ssl.keylog sample fetches array
7938 - BUG/MINOR: ssl: check conn in keylog sample fetch
7939 - DOC: configuration: various typo fixes
7940 - MINOR: log: Remove unused case statement during the log-format string parsing
7941 - BUG/MINOR: mux-h1: Fix the splicing in TUNNEL mode
7942 - BUG/MINOR: mux-h1: Don't read data from a pipe if the mux is unable to receive
7943 - BUG/MINOR: mux-h1: Disable splicing only if input data was processed
7944 - BUG/MEDIUM: mux-h1: Disable splicing for the conn-stream if read0 is received
7945 - MINOR: mux-h1: Improve traces about the splicing
7946 - BUG/MINOR: backend: Remove CO_FL_SESS_IDLE if a client remains on the last server
7947 - BUG/MEDIUM: connection: Don't consider new private connections as available
7948 - BUG/MINOR: connection: See new connection as available only on reuse always
7949 - DOC: configuration: remove obsolete mentions of H2 being converted to HTTP/1.x
7950 - CLEANUP: ssl: remove unrelevant comment in smp_fetch_ssl_x_keylog()
7951 - DOC: update INSTALL with new compiler versions
7952 - DOC: minor update to coding style file
7953 - MINOR: version: mention that it's an LTS release now
7954
Willy Tarreau62f11a52020-07-04 07:10:24 +020079552020/07/04 : 2.2-dev12
7956 - BUG/MINOR: mux_h2: don't lose the leaving trace in h2_io_cb()
7957 - MINOR: cli: make "show sess" stop at the last known session
7958 - CLEANUP: buffers: remove unused buffer_wq_lock lock
7959 - BUG/MEDIUM: buffers: always allocate from the local cache first
7960 - MINOR: connection: align toremove_{lock,connections} and cleanup into idle_conns
7961 - CONTRIB: debug: add missing flags SI_FL_L7_RETRY & SI_FL_D_L7_RETRY
7962 - BUG/MEDIUM: connections: Don't increase curr_used_conns for shared connections.
7963 - BUG/MEDIUM: checks: Increment the server's curr_used_conns
7964 - REORG: buffer: rename buffer.c to dynbuf.c
7965 - REORG: includes: create tinfo.h for the thread_info struct
7966 - CLEANUP: pool: only include the type files from types
7967 - MINOR: pools: move the LRU cache heads to thread_info
7968 - BUG/MINOR: debug: fix "show fd" null-deref when built with DEBUG_FD
7969 - MINOR: stats: add 3 new output values for the per-server idle conn state
7970 - MINOR: activity: add per-thread statistics on FD takeover
7971 - BUG/MINOR: server: start cleaning idle connections from various points
7972 - MEDIUM: server: improve estimate of the need for idle connections
7973 - MINOR: stats: add the estimated need of concurrent connections per server
7974 - BUG/MINOR: threads: Don't forget to init each thread toremove_lock.
7975 - BUG/MEDIUM: lists: Lock the element while we check if it is in a list.
7976 - Revert "BUG/MEDIUM: lists: Lock the element while we check if it is in a list."
7977 - BUG/MINOR: haproxy: don't wake already stopping threads on exit
7978 - BUG/MINOR: server: always count one idle slot for current thread
7979 - MEDIUM: server: use the two thresholds for the connection release algorithm
7980 - BUG/MINOR: http-rules: Fix ACLs parsing for http deny rules
7981 - BUG/MINOR: sched: properly cover for a rare MT_LIST_ADDQ() race
7982 - MINOR: mux-h1: avoid taking the toremove_lock in on dying tasks
7983 - MINOR: mux-h2: avoid taking the toremove_lock in on dying tasks
7984 - MINOR: mux-fcgi: avoid taking the toremove_lock in on dying tasks
7985 - MINOR: pools: increase MAX_BASE_POOLS to 64
7986 - DOC: ssl: add "allow-0rtt" and "ciphersuites" in crt-list
7987 - BUG/MEDIUM: pattern: Add a trailing \0 to match strings only if possible
7988 - BUG/MEDIUM: log-format: fix possible endless loop in parse_logformat_string()
7989 - BUG/MINOR: proxy: fix dump_server_state()'s misuse of the trash
7990 - BUG/MINOR: proxy: always initialize the trash in show servers state
7991 - MINOR: cli/proxy: add a new "show servers conn" command
7992 - MINOR: server: skip servers with no idle conns earlier
7993 - BUG/MINOR: server: fix the connection release logic regarding nearly full conditions
7994 - MEDIUM: server: add a new pool-low-conn server setting
7995 - BUG/MEDIUM: backend: always search in the safe list after failing on the idle one
7996 - MINOR: backend: don't always takeover from the same threads
7997 - MINOR: sched: make sched->task_list_size atomic
7998 - MEDIUM: sched: create a new TASK_KILLED task flag
7999 - MEDIUM: sched: implement task_kill() to kill a task
8000 - MEDIUM: mux-h1: use task_kill() during h1_takeover() instead of task_wakeup()
8001 - MEDIUM: mux-h2: use task_kill() during h2_takeover() instead of task_wakeup()
8002 - MEDIUM: mux-fcgi: use task_kill() during fcgi_takeover() instead of task_wakeup()
8003 - MINOR: list: Add MT_LIST_DEL_SAFE_NOINIT() and MT_LIST_ADDQ_NOCHECK()
8004 - CLEANUP: connections: rename the toremove_lock to takeover_lock
8005 - MEDIUM: connections: Don't use a lock when moving connections to remove.
8006 - DOC: configuration: add missing index entries for tune.pool-{low,high}-fd-ratio
8007 - DOC: configuration: fix alphabetical ordering for tune.pool-{high,low}-fd-ratio
8008 - MINOR: config: add a new tune.idle-pool.shared global setting.
8009 - MINOR: 51d: silence a warning about null pointer dereference
8010 - MINOR: debug: add a new "debug dev memstats" command
8011 - MINOR: log-format: allow to preserve spacing in log format strings
8012 - BUILD: debug: avoid build warnings with DEBUG_MEM_STATS
8013 - BUG/MAJOR: sched: make sure task_kill() always queues the task
8014 - BUG/MEDIUM: muxes: Make sure nobody stole the connection before using it.
8015 - BUG/MEDIUM: cli/proxy: don't try to dump idle connection state if there's none
8016 - BUILD: haproxy: fix build error when RLIMIT_AS is not set
8017 - BUG/MAJOR: sched: make it work also when not building with DEBUG_STRICT
8018 - MINOR: log: add time second fraction field to rfc5424 log timestamp.
8019 - BUG/MINOR: log: missing timezone on iso dates.
8020 - BUG/MEDIUM: server: don't kill all idle conns when there are not enough
8021 - MINOR: sched: split tasklet_wakeup() into tasklet_wakeup_on()
8022 - BUG/MEDIUM: connections: Set the tid for the old tasklet on takeover.
8023 - BUG/MEDIUM: connections: Let the xprt layer know a takeover happened.
8024 - BUG/MINOR: http_act: don't check capture id in backend (2)
8025 - BUILD: makefile: disable threads by default on OpenBSD
8026 - BUILD: peers: fix build warning with gcc 4.2.1
8027 - CI: cirrus-ci: exclude slow reg-tests
8028
Willy Tarreau4462af82020-06-26 22:01:04 +020080292020/06/26 : 2.2-dev11
8030 - REGTEST: Add a simple script to tests errorfile directives in proxy sections
8031 - BUG/MEDIUM: fcgi-app: Resolve the sink if a fcgi-app logs in a ring buffer
8032 - BUG/MINOR: spoe: correction of setting bits for analyzer
8033 - BUG/MINOR: cfgparse: Support configurations without newline at EOF
8034 - MINOR: cfgparse: Warn on truncated lines / files
8035 - BUG/MINOR: http_ana: clarify connection pointer check on L7 retry
8036 - MINOR: debug: add a new DEBUG_FD build option
8037 - BUG/MINOR: tasks: make sure never to exceed max_processed
8038 - MINOR: task: add a new pointer to current tasklet queue
8039 - BUG/MEDIUM: task: be careful not to run too many tasks at TL_URGENT
8040 - BUG/MINOR: cfgparse: Fix argument reference in PARSE_ERR_TOOMANY message
8041 - BUG/MINOR: cfgparse: Fix calculation of position for PARSE_ERR_TOOMANY message
8042 - BUG/MEDIUM: ssl: fix ssl_bind_conf double free
8043 - MINOR: ssl: free bind_conf_node in crtlist_free()
8044 - MINOR: ssl: free the crtlist and the ckch during the deinit()
8045 - BUG/MINOR: ssl: fix build with ckch_deinit() and crtlist_deinit()
8046 - BUG/MINOR: ssl/cli: certs added from the CLI can't be deleted
8047 - MINOR: ssl: move the ckch/crtlist deinit to ssl_sock.c
8048 - MEDIUM: tasks: apply a fair CPU distribution between tasklet classes
8049 - MINOR: tasks: make current_queue an index instead of a pointer
8050 - MINOR: tasks: add a mask of the queues with active tasklets
8051 - MINOR: tasks: pass the queue index to run_task_from_list()
8052 - MINOR: tasks: make run_tasks_from_lists() scan the queues itself
8053 - MEDIUM: tasks: add a tune.sched.low-latency option
8054 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' crashes when no private key
8055 - BUG/MINOR: cfgparse: don't increment linenum on incomplete lines
8056 - MINOR: tools: make parse_line() always terminate the args list
8057 - BUG/MINOR: cfgparse: report extraneous args *after* the string is allocated
8058 - MINOR: cfgparse: sanitize the output a little bit
8059 - MINOR: cli/ssl: handle trailing slashes in crt-list commands
8060 - MINOR: ssl: add the ssl_s_* sample fetches for server side certificate
8061 - BUG/MEDIUM: http-ana: Don't loop trying to generate a malformed 500 response
8062 - BUG/MINOR: stream-int: Don't wait to send truncated HTTP messages
8063 - BUG/MINOR: http-ana: Set CF_EOI on response channel for generated responses
8064 - BUG/MINOR: http-ana: Don't wait to send 1xx responses generated by HAProxy
8065 - MINOR: spoe: Don't systematically create new applets if processing rate is low
8066 - DOC: fix some typos in the ssl_s_{s|i}_dn documentation
8067 - BUILD: fix ssl_sample.c when building against BoringSSL
8068 - CI: travis-ci: switch BoringSSL builds to ninja
8069 - CI: extend spellchecker whitelist
8070 - DOC: assorted typo fixes in the documentation
8071 - CLEANUP: assorted typo fixes in the code and comments
8072 - MINOR: http: Add support for http 413 status
8073 - REGTEST: ssl: tests the ssl_f_* sample fetches
8074 - REGTEST: ssl: add some ssl_c_* sample fetches test
8075 - DOC: ssl: update the documentation of "commit ssl cert"
8076 - BUG/MINOR: cfgparse: correctly deal with empty lines
8077 - BUG/MEDIUM: fetch: Fix hdr_ip misparsing IPv4 addresses due to missing NUL
8078
Willy Tarreaudc0936c2020-06-19 21:43:26 +020080792020/06/19 : 2.2-dev10
8080 - BUILD: include: add sys/types before netinet/tcp.h
8081 - BUG/MEDIUM: log: don't hold the log lock during writev() on a file descriptor
8082 - BUILD: Remove nowarn for warnings that do not trigger
8083 - BUG/MEDIUM: pattern: fix thread safety of pattern matching
8084 - BUILD: Re-enable -Wimplicit-fallthrough
8085 - BUG/MINOR: ssl: fix ssl-{min,max}-ver with openssl < 1.1.0
8086 - BUILD: thread: add parenthesis around values of locking macros
8087 - BUILD: proto_uxst: shut up yet another gcc's absurd warning
8088 - BUG/MEDIUM: checks: Fix off-by-one in allocation of SMTP greeting cmd
8089 - CI: travis-ci: use "-O1" for clang builds
8090 - MINOR: haproxy: Add void deinit_and_exit(int)
8091 - MINOR: haproxy: Make use of deinit_and_exit() for clean exits
8092 - BUG/MINOR: haproxy: Free rule->arg.vars.expr during deinit_act_rules
8093 - BUILD: compression: make gcc 10 happy with free_zlib()
8094 - BUILD: atomic: add string.h for memcpy() on ARM64
8095 - BUG/MINOR: http: make smp_fetch_body() report that the contents may change
8096 - BUG/MINOR: tcp-rules: tcp-response must check the buffer's fullness
8097 - BUILD: haproxy: mark deinit_and_exit() as noreturn
8098 - BUG/MAJOR: vars: Fix bogus free() during deinit() for http-request rules
8099 - BUG/MEDIUM: ebtree: use a byte-per-byte memcmp() to compare memory blocks
8100 - MINOR: tools: add a new configurable line parse, parse_line()
8101 - BUG/MEDIUM: cfgparse: use parse_line() to expand/unquote/unescape config lines
8102 - BUG/MEDIUM: cfgparse: stop after a reasonable amount of fatal error
8103 - MINOR: http: do not close connections anymore after internal responses
8104 - BUG/MINOR: cfgparse: Add missing fatal++ in PARSE_ERR_HEX case
8105 - BUG/MINOR: spoe: add missing key length check before checking key names
8106 - MINOR: version: put the compiler version output into version.c not haproxy.c
8107 - MINOR: compiler: always define __has_feature()
8108 - MINOR: version: report the presence of the compiler's address sanitizer
8109 - BUILD: Fix build by including haproxy/global.h
8110 - BUG/MAJOR: connection: always disable ready events once reported
8111 - CLEANUP: activity: remove unused counter fd_lock
8112 - DOC: fd: make it clear that some fields ordering must absolutely be respected
8113 - MINOR: activity: report the number of times poll() reports I/O
8114 - MINOR: activity: rename confusing poll_* fields in the output
8115 - MINOR: fd: Fix a typo in a coment.
8116 - BUG/MEDIUM: fd: Don't fd_stop_recv() a fd we don't own.
8117 - BUG/MEDIUM: fd: Call fd_stop_recv() when we just got a fd.
8118 - MINOR: activity: group the per-loop counters at the top
8119 - MINOR: activity: rename the "stream" field to "stream_calls"
8120 - MEDIUM: fd: refine the fd_takeover() migration lock
8121 - MINOR: fd: slightly optimize the fd_takeover double-CAS loop
8122 - MINOR: fd: factorize the fd_takeover() exit path to make it safer
8123 - MINOR: peers: do not use localpeer as an array anymore
8124 - MEDIUM: peers: add the "localpeer" global option
8125 - MEDIUM: fd: add experimental support for edge-triggered polling
8126 - CONTRIB: debug: add the missing flags CO_FL_SAFE_LIST and CO_FL_IDLE_LIST
8127 - MINOR: haproxy: process signals before runnable tasks
8128 - MEDIUM: tasks: clean up the front side of the wait queue in wake_expired_tasks()
8129 - MEDIUM: tasks: also process late wakeups in process_runnable_tasks()
8130 - BUG/MINOR: cli: allow space escaping on the CLI
8131 - BUG/MINOR: mworker/cli: fix the escaping in the master CLI
8132 - BUG/MINOR: mworker/cli: fix semicolon escaping in master CLI
8133 - REGTEST: http-rules: test spaces in ACLs
8134 - REGTEST: http-rules: test spaces in ACLs with master CLI
8135 - BUG/MAJOR: init: properly compute the default global.maxpipes value
8136 - MEDIUM: map: make the "clear map" operation yield
8137 - BUG/MEDIUM: stream-int: fix loss of CO_SFL_MSG_MORE flag in forwarding
8138 - MINOR: mux_h1: Set H1_F_CO_MSG_MORE if we know we have more to send.
8139 - BUG/MINOR: systemd: Wait for network to be online
8140 - DOC: configuration: Unindent non-code sentences in the protobuf example
8141 - DOC: configuration: http-check send was missing from matrix
8142
Willy Tarreau1385c882020-06-11 10:22:10 +020081432020/06/11 : 2.2-dev9
8144 - BUG/MINOR: http-htx: Don't forget to release the http reply in release function
8145 - BUG/MINOR: http-htx: Fix a leak on error path during http reply parsing
8146 - MINOR: checks: Remove dead code from process_chk_conn()
8147 - REGTESTS: checks: Fix tls_health_checks when IPv6 addresses are used
8148 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for lua/txn_get_priv
8149 - MINOR: lua: Use vars_unset_by_name_ifexist()
8150 - CLEANUP: vars: Remove void vars_unset_by_name(const char*, size_t, struct sample*)
8151 - MINOR: vars: Make vars_(un|)set_by_name(_ifexist|) return a success value
8152 - MINOR: lua: Make `set_var()` and `unset_var()` return success
8153 - MEDIUM: lua: Add `ifexist` parameter to `set_var`
8154 - MEDIUM: ring: new section ring to declare custom ring buffers.
8155 - REGTESTS: Add missing OPENSSL to REQUIRE_OPTIONS for compression/lua_validation
8156 - REGTESTS: Require the version 2.2 to execute lua/set_var
8157 - BUG/MEDIUM: checks: Refresh the conn-stream and the connection after a connect
8158 - MINOR: checks: Remove useless tests on the connection and conn-stream
8159 - BUG/MEDIUM: contrib/spoa: do not register python3.8 if --embed fail
8160 - BUG/MEDIUM: connection: Ignore PP2 unique ID for stream-less connections
8161 - BUG/MINOR: connection: Always get the stream when available to send PP2 line
8162 - BUG/MEDIUM: backend: set the connection owner to the session when using alpn.
8163 - MINOR: pools: compute an estimate of each pool's average needed objects
8164 - MEDIUM: pools: directly free objects when pools are too much crowded
8165 - REGTEST: Add connection/proxy_protocol_send_unique_id_alpn
8166 - MINOR: http-ana: Make the function http_reply_to_htx() public
8167 - MINOR: http-ana: Use proxy's error replies to emit 401/407 responses
8168 - MINOR: http-rules: Use an action function to eval http-request auth rules
8169 - CLEANUP: http: Remove unused HTTP message templates
8170 - BUG/MEDIUM: checks: Don't blindly subscribe for receive if waiting for connect
8171 - MINOR: checks: I/O callback function only rely on the data layer wake callback
8172 - BUG/MINOR: lua: Add missing string length for lua sticktable lookup
8173 - BUG/MEDIUM: logs: fix trailing zeros on log message.
8174 - CI: cirrus-ci: skip reg-tests/connection/proxy_protocol_send_unique_id_alpn.vtc on CentOS 6
8175 - BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
8176 - BUG/MEDIUM: checks: Don't add a tcpcheck ruleset twice in the shared tree
8177 - MEDIUM: ssl: use TLSv1.2 as the minimum default on bind lines
8178 - CLEANUP: pools: use the regular lock for the flush operation on lockless pools
8179 - SCRIPTS: publish-release: pass -n to gzip to remove timestamp
8180 - MINOR: ring: re-work ring attach generic API.
8181 - BUG/MINOR: error on unknown statement in ring section.
8182 - MEDIUM: ring: add server statement to forward messages from a ring
8183 - MEDIUM: ring: add new srv statement to support octet counting forward
8184 - MINOR: ssl: set ssl-min-ver in ambiguous configurations
8185 - CLEANUP: ssl: remove comment from dump_crtlist_sslconf()
8186 - BUILD: sink: address build warning on 32-bit architectures
8187 - BUG/MINOR: peers: fix internal/network key type mapping.
8188 - CLEANUP: regex: remove outdated support for regex actions
8189 - Revert "MINOR: ssl: rework add cert chain to CTX to be libssl independent"
8190 - MINOR: mux-h1/proxy: Add a proxy option to disable clear h2 upgrade
8191 - BUG/MEDIUM: lua: Reset analyse expiration timeout before executing a lua action
8192 - DOC: add a line about comments in crt-list
8193 - BUG/MEDIUM: hlua: Lock pattern references to perform set/add/del operations
8194 - BUG/MINOR: checks: Fix test on http-check rulesets during config validity check
8195 - BUG/MEDIUM: contrib/prometheus-exporter: Properly set flags to dump metrics
8196 - BUG/MEDIUM: mworker: fix the copy of options in copy_argv()
8197 - BUG/MINOR: init: -x can have a parameter starting with a dash
8198 - BUG/MINOR: init: -S can have a parameter starting with a dash
8199 - BUG/MEDIUM: mworker: fix the reload with an -- option
8200 - BUG/MINOR: ssl: fix a trash buffer leak in some error cases
8201 - BUG/MINOR: mworker: fix a memleak when execvp() failed
8202 - MINOR: sample: Add secure_memcmp converter
8203 - REORG: ebtree: move the C files from ebtree/ to src/
8204 - REORG: ebtree: move the include files from ebtree to include/import/
8205 - REORG: ebtree: clean up remains of the ebtree/ directory
8206 - REORG: include: create new file haproxy/api-t.h
8207 - REORG: include: create new file haproxy/api.h
8208 - REORG: include: update all files to use haproxy/api.h or api-t.h if needed
8209 - CLEANUP: include: remove common/config.h
8210 - CLEANUP: include: remove unused template.h
8211 - REORG: include: move MIN/MAX from tools.h to compat.h
8212 - REORG: include: move SWAP/MID_RANGE/MAX_RANGE from tools.h to standard.h
8213 - CLEANUP: include: remove unused common/tools.h
8214 - REORG: include: move the base files from common/ to haproxy/
8215 - REORG: include: move version.h to haproxy/
8216 - REORG: include: move base64.h, errors.h and hash.h from common to to haproxy/
8217 - REORG: include: move openssl-compat.h from common/ to haproxy/
8218 - REORG: include: move ist.h from common/ to import/
8219 - REORG: include: move the BUG_ON() code to haproxy/bug.h
8220 - REORG: include: move debug.h from common/ to haproxy/
8221 - CLEANUP: debug: drop unused function p_malloc()
8222 - REORG: include: split buf.h into haproxy/buf-t.h and haproxy/buf.h
8223 - REORG: include: move istbuf.h to haproxy/
8224 - REORG: include: split mini-clist into haproxy/list and list-t.h
8225 - REORG: threads: extract atomic ops from hathreads.h
8226 - CLEANUP: threads: remove a few needless includes of hathreads.h
8227 - REORG: include: split hathreads into haproxy/thread.h and haproxy/thread-t.h
8228 - CLEANUP: thread: rename __decl_hathreads() to __decl_thread()
8229 - REORG: include: move time.h from common/ to haproxy/
8230 - REORG: include: move integer manipulation functions from standard.h to intops.h
8231 - CLEANUP: include: remove excessive includes of common/standard.h
8232 - REORG: include: move freq_ctr to haproxy/
8233 - CLEANUP: pool: include freq_ctr.h and remove locally duplicated functions
8234 - REORG: memory: move the pool type definitions to haproxy/pool-t.h
8235 - REORG: memory: move the OS-level allocator to haproxy/pool-os.h
8236 - MINOR: memory: don't let __pool_get_first() pick from the cache
8237 - MEDIUM: memory: don't let pool_put_to_cache() free the objects itself
8238 - MINOR: memory: move pool-specific path of the locked pool_free() to __pool_free()
8239 - MEDIUM: memory: make local pools independent on lockless pools
8240 - REORG: include: move common/memory.h to haproxy/pool.h
8241 - REORG: include: move common/chunk.h to haproxy/chunk.h
8242 - REORG: include: move activity to haproxy/
8243 - REORG: include: move common/buffer.h to haproxy/dynbuf{,-t}.h
8244 - REORG: include: move common/net_helper.h to haproxy/net_helper.h
8245 - REORG: include: move common/namespace.h to haproxy/namespace{,-t}.h
8246 - REORG: include: split common/regex.h into haproxy/regex{,-t}.h
8247 - REORG: include: split common/xref.h into haproxy/xref{,-t}.h
8248 - REORG: include: move common/ticks.h to haproxy/ticks.h
8249 - REORG: include: split common/http.h into haproxy/http{,-t}.h
8250 - REORG: include: split common/http-hdr.h into haproxy/http-hdr{,-t}.h
8251 - REORG: include: move common/h1.h to haproxy/h1.h
8252 - REORG: include: split common/htx.h into haproxy/htx{,-t}.h
8253 - REORG: include: move hpack*.h to haproxy/ and split hpack-tbl
8254 - REORG: include: move common/h2.h to haproxy/h2.h
8255 - REORG: include: move common/fcgi.h to haproxy/
8256 - REORG: include: move protocol.h to haproxy/protocol{,-t}.h
8257 - REORG: tools: split common/standard.h into haproxy/tools{,-t}.h
8258 - REORG: include: move dict.h to hparoxy/dict{,-t}.h
8259 - REORG: include: move shctx to haproxy/shctx{,-t}.h
8260 - REORG: include: move port_range.h to haproxy/port_range{,-t}.h
8261 - REORG: include: move fd.h to haproxy/fd{,-t}.h
8262 - REORG: include: move ring to haproxy/ring{,-t}.h
8263 - REORG: include: move sink.h to haproxy/sink{,-t}.h
8264 - REORG: include: move pipe.h to haproxy/pipe{,-t}.h
8265 - CLEANUP: include: remove empty raw_sock.h
8266 - REORG: include: move proto_udp.h to haproxy/proto_udp{,-t}.h
8267 - REORG: include: move proto/proto_sockpair.h to haproxy/proto_sockpair.h
8268 - REORG: include: move compression.h to haproxy/compression{,-t}.h
8269 - REORG: include: move h1_htx.h to haproxy/h1_htx.h
8270 - REORG: include: move http_htx.h to haproxy/http_htx{,-t}.h
8271 - REORG: include: move hlua.h to haproxy/hlua{,-t}.h
8272 - REORG: include: move hlua_fcn.h to haproxy/hlua_fcn.h
8273 - REORG: include: move action.h to haproxy/action{,-t}.h
8274 - REORG: include: move arg.h to haproxy/arg{,-t}.h
8275 - REORG: include: move auth.h to haproxy/auth{,-t}.h
8276 - REORG: include: move dns.h to haproxy/dns{,-t}.h
8277 - REORG: include: move flt_http_comp.h to haproxy/
8278 - REORG: include: move counters.h to haproxy/counters-t.h
8279 - REORG: include: split mailers.h into haproxy/mailers{,-t}.h
8280 - REORG: include: move capture.h to haproxy/capture{,-t}.h
8281 - REORG: include: move frontend.h to haproxy/frontend.h
8282 - REORG: include: move obj_type.h to haproxy/obj_type{,-t}.h
8283 - REORG: include: move http_rules.h to haproxy/http_rules.h
8284 - CLEANUP: include: remove unused mux_pt.h
8285 - REORG: include: move mworker.h to haproxy/mworker{,-t}.h
8286 - REORG: include: move ssl_utils.h to haproxy/ssl_utils.h
8287 - REORG: include: move ssl_ckch.h to haproxy/ssl_ckch{,-t}.h
8288 - REORG: move ssl_crtlist.h to haproxy/ssl_crtlist{,-t}.h
8289 - REORG: include: move lb_chash.h to haproxy/lb_chash{,-t}.h
8290 - REORG: include: move lb_fas.h to haproxy/lb_fas{,-t}.h
8291 - REORG: include: move lb_fwlc.h to haproxy/lb_fwlc{,-t}.h
8292 - REORG: include: move lb_fwrr.h to haproxy/lb_fwrr{,-t}.h
8293 - REORG: include: move listener.h to haproxy/listener{,-t}.h
8294 - REORG: include: move pattern.h to haproxy/pattern{,-t}.h
8295 - REORG: include: move map to haproxy/map{,-t}.h
8296 - REORG: include: move payload.h to haproxy/payload.h
8297 - REORG: include: move sample.h to haproxy/sample{,-t}.h
8298 - REORG: include: move protocol_buffers.h to haproxy/protobuf{,-t}.h
8299 - REORG: include: move vars.h to haproxy/vars{,-t}.h
8300 - REORG: include: split global.h into haproxy/global{,-t}.h
8301 - REORG: include: move task.h to haproxy/task{,-t}.h
8302 - REORG: include: move proto_tcp.h to haproxy/proto_tcp.h
8303 - REORG: include: move signal.h to haproxy/signal{,-t}.h
8304 - REORG: include: move tcp_rules.h to haproxy/tcp_rules.h
8305 - REORG: include: move connection.h to haproxy/connection{,-t}.h
8306 - REORG: include: move checks.h to haproxy/check{,-t}.h
8307 - REORG: include: move http_fetch.h to haproxy/http_fetch.h
8308 - REORG: include: move peers.h to haproxy/peers{,-t}.h
8309 - REORG: include: move stick_table.h to haproxy/stick_table{,-t}.h
8310 - REORG: include: move session.h to haproxy/session{,-t}.h
8311 - REORG: include: move trace.h to haproxy/trace{,-t}.h
8312 - REORG: include: move acl.h to haproxy/acl.h{,-t}.h
8313 - REORG: include: split common/uri_auth.h into haproxy/uri_auth{,-t}.h
8314 - REORG: move applet.h to haproxy/applet{,-t}.h
8315 - REORG: include: move stats.h to haproxy/stats{,-t}.h
8316 - REORG: include: move cli.h to haproxy/cli{,-t}.h
8317 - REORG: include: move lb_map.h to haproxy/lb_map{,-t}.h
8318 - REORG: include: move ssl_sock.h to haproxy/ssl_sock{,-t}.h
8319 - REORG: include: move stream_interface.h to haproxy/stream_interface{,-t}.h
8320 - REORG: include: move channel.h to haproxy/channel{,-t}.h
8321 - REORG: include: move http_ana.h to haproxy/http_ana{,-t}.h
8322 - REORG: include: move filters.h to haproxy/filters{,-t}.h
8323 - REORG: include: move fcgi-app.h to haproxy/fcgi-app{,-t}.h
8324 - REORG: include: move log.h to haproxy/log{,-t}.h
8325 - REORG: include: move proxy.h to haproxy/proxy{,-t}.h
8326 - REORG: include: move spoe.h to haproxy/spoe{,-t}.h
8327 - REORG: include: move backend.h to haproxy/backend{,-t}.h
8328 - REORG: include: move queue.h to haproxy/queue{,-t}.h
8329 - REORG: include: move server.h to haproxy/server{,-t}.h
8330 - REORG: include: move stream.h to haproxy/stream{,-t}.h
8331 - REORG: include: move cfgparse.h to haproxy/cfgparse.h
8332 - CLEANUP: hpack: export debug functions and move inlines to .h
8333 - REORG: check: move the e-mail alerting code to mailers.c
8334 - REORG: check: move tcpchecks away from check.c
8335 - REORG: check: move email_alert* from proxy-t.h to mailers-t.h
8336 - REORG: check: extract the external checks from check.{c,h}
8337 - CLEANUP: include: don't include stddef.h directly
8338 - CLEANUP: include: don't include proxy-t.h in global-t.h
8339 - CLEANUP: include: move sample_data out of sample-t.h
8340 - REORG: include: move the error reporting functions to from log.h to errors.h
8341 - BUILD: reorder objects in the Makefile for faster builds
8342 - CLEANUP: compiler: add a THREAD_ALIGNED macro and use it where appropriate
8343 - CLEANUP: include: make atomic.h part of the base API
8344 - REORG: include: move MAX_THREADS to defaults.h
8345 - REORG: include: move THREAD_LOCAL and __decl_thread() to compiler.h
8346 - CLEANUP: include: tree-wide alphabetical sort of include files
8347 - REORG: include: make list-t.h part of the base API
8348 - REORG: dgram: rename proto_udp to dgram
8349
Willy Tarreau73b943b2020-05-22 16:19:04 +020083502020/05/22 : 2.2-dev8
8351 - MINOR: checks: Improve report of unexpected errors for expect rules
8352 - MEDIUM: checks: Add matching on log-format string for expect rules
8353 - DOC: Fix req.body and co documentation to be accurate
8354 - MEDIUM: checks: Remove dedicated sample fetches and use response ones instead
8355 - CLEANUP: checks: sort and rename tcpcheck_expect_type types
8356 - MINOR: checks: Use dedicated actions to send log-format strings in send rules
8357 - MINOR: checks: Simplify matching on HTTP headers in HTTP expect rules
8358 - MINOR: checks/sample: Remove unnecessary tests on the sample session
8359 - REGTEST: checks: Adapt SSL error message reported when connection is rejected
8360 - MINOR: mworker: replace ha_alert by ha_warning when exiting successfuly
8361 - MINOR: checks: Support log-format string to set the URI for HTTP send rules
8362 - MINOR: checks: Support log-format string to set the body for HTTP send rules
8363 - DOC: Be more explicit about configurable check ok/error/timeout status
8364 - MINOR: checks: Make matching on HTTP headers for expect rules less obscure
8365 - BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
8366 - BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
8367 - REGTESTS: make the http-check-send test require version 2.2
8368 - BUG/MINOR: http-ana: fix NTLM response parsing again
8369 - BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
8370 - BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
8371 - MINOR: cfgparse: Improve error message for invalid \x sequences
8372 - CI: travis-ci: enable arm64 builds again
8373 - MEDIUM: ssl: increase default-dh-param to 2048
8374 - CI: travis-ci: skip pcre2 on arm64 build
8375 - CI: travis-ci: extend the build time for SSL to 60 minutes
8376 - CLEANUP: config: drop unused setting CONFIG_HAP_MEM_OPTIM
8377 - CLEANUP: config: drop unused setting CONFIG_HAP_INLINE_FD_SET
8378 - CLENAUP: config: move CONFIG_HAP_LOCKLESS_POOLS out of config.h
8379 - CLEANUP: remove THREAD_LOCAL from config.h
8380 - CI: travis-ci: upgrade LibreSSL versions
8381 - DOC: assorted typo fixes in the documentation
8382 - CI: extend spellchecker whitelist
8383 - CLEANUP: assorted typo fixes in the code and comments
8384 - MAJOR: contrib: porting spoa_server to support python3
8385 - BUG/MEDIUM: checks: Subscribe to I/O events on an unfinished connect
8386 - BUG/MINOR: checks: Don't subscribe to I/O events if it is already done
8387 - BUG/MINOR: checks: Rely on next I/O oriented rule when waiting for a connection
8388 - MINOR: checks: Don't try to send outgoing data if waiting to be able to send
8389 - MINOR: sample: Move aes_gcm_dec implementation into sample.c
8390 - MINOR: sample: Add digest and hmac converters
8391 - BUG/MEDIUM: checks: Subscribe to I/O events only if a mux was installed
8392 - BUG/MINOR: sample/ssl: Fix digest converter for openssl < 1.1.0
8393 - BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
8394 - BUG/MINOR: pollers: remove uneeded free in global init
8395 - CLEANUP: select: enhance readability in init
8396 - BUG/MINOR: soft-stop: always wake up waiting threads on stopping
8397 - MINOR: soft-stop: let the first stopper only signal other threads
8398 - BUILD: select: only declare existing local labels to appease clang
8399 - BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
8400 - BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
8401 - DOC: retry-on can only be used with mode http
8402 - MEDIUM: ssl: allow to register callbacks for SSL/TLS protocol messages
8403 - MEDIUM: ssl: split ssl_sock_msgcbk() and use a new callback mechanism
8404 - MINOR: ssl: add a new function ssl_sock_get_ssl_object()
8405 - MEDIUM: ssl: use ssl_sock_get_ssl_object() in fetchers where appropriate
8406 - REORG: ssl: move macros and structure definitions to ssl_sock.h
8407 - CLEANUP: ssl: remove the shsess_* macros
8408 - REORG: move the crt-list structures in their own .h
8409 - REORG: ssl: move the ckch structures to types/ssl_ckch.h
8410 - CLEANUP: ssl: add ckch prototypes in proto/ssl_ckch.h
8411 - REORG: ssl: move crtlist functions to src/ssl_crtlist.c
8412 - CLEANUP: ssl: avoid circular dependencies in ssl_crtlist.h
8413 - REORG: ssl: move the ckch_store related functions to src/ssl_ckch.c
8414 - REORG: ssl: move ckch_inst functions to src/ssl_ckch.c
8415 - REORG: ssl: move the crt-list CLI functions in src/ssl_crtlist.c
8416 - REORG: ssl: move the CLI 'cert' functions to src/ssl_ckch.c
8417 - REORG: ssl: move ssl configuration to cfgparse-ssl.c
8418 - MINOR: ssl: remove static keyword in some SSL utility functions
8419 - REORG: ssl: move ssl_sock_ctx and fix cross-dependencies issues
8420 - REORG: ssl: move sample fetches to src/ssl_sample.c
8421 - REORG: ssl: move utility functions to src/ssl_utils.c
8422 - DOC: ssl: update MAINTAINERS file
8423 - CI: travis-ci: switch arm64 builds to use openssl from distro
8424 - MINOR: stats: Prepare for more accurate moving averages
8425 - MINOR: stats: Expose native cum_req metric for a server
8426 - MEDIUM: stats: Enable more accurate moving average calculation for stats
8427 - BUILD: ssl: include buffer common headers for ssl_sock_ctx
8428 - BUILD: ssl: include errno.h in ssl_crtlist.c
8429 - CLEANUP: acl: remove unused assignment
8430 - DOC/MINOR: halog: Add long help info for ic flag
8431 - BUILD: ssl: fix build without OPENSSL_NO_ENGINE
8432 - DOC: SPOE is no longer experimental
8433 - BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
8434 - MINOR: config: Don't dump keywords if argument is NULL
8435 - MEDIUM: checks: Make post-41 the default mode for mysql checks
8436 - BUG/MINOR: logs: prevent double line returns in some events.
8437 - MEDIUM: sink: build header in sink_write for log formats
8438 - MEDIUM: logs: buffer targets now rely on new sink_write
8439 - MEDIUM: sink: add global statement to create a new ring (sink buffer)
8440 - MEDIUM: hpack: use a pool for the hpack table
8441 - BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
8442 - BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
8443 - MINOR: applet: adopt the wait list entry from the CLI
8444 - MINOR: ring: make the applet code not depend on the CLI
8445 - Revert "MEDIUM: sink: add global statement to create a new ring (sink buffer)"
8446 - CI: travis-ci: fix libslz download URL
8447 - MINOR: ssl: split config and runtime variable for ssl-{min,max}-ver
8448 - CLEANUP: http_ana: Remove unused TXN flags
8449 - BUG/MINOR: http-rules: Mark http return rules as final
8450 - MINOR: http-htx: Add http_reply type based on what is used for http return rules
8451 - CLEANUP: http-htx: Rename http_error structure into http_error_msg
8452 - MINOR: http-rules: Use http_reply structure for http return rules
8453 - MINOR: http-htx: Use a dedicated function to release http_reply objects
8454 - MINOR: http-htx: Use a dedicated function to parse http reply arguments
8455 - MINOR: http-htx: Use a dedicated function to check http reply validity
8456 - MINOR: http-ana: Use a dedicated function to send a response from an http reply
8457 - MEDIUM: http-rules: Rely on http reply for http deny/tarpit rules
8458 - MINOR: http-htx: Store default error messages in a global http reply array
8459 - MINOR: http-htx: Store messages of an http-errors section in a http reply array
8460 - MINOR: http-htx: Store errorloc/errorfile messages in http replies
8461 - MINOR: proxy: Add references on http replies for proxy error messages
8462 - MINOR: http-htx: Use http reply from the http-errors section
8463 - MINOR: http-ana: Use a TXN flag to prevent after-response ruleset evaluation
8464 - MEDIUM: http-ana: Use http replies for HTTP error messages
8465 - CLEANUP: http-htx: Remove unused storage of error messages in buffers
8466 - MINOR: htx: Add a function to copy a buffer in an HTX message
8467 - CLEANUP: channel: Remove channel_htx_copy_msg() function
8468 - MINOR: http-ana: Add a function to write an http reply in an HTX message
8469 - MINOR: http-htx/proxy: Add http-error directive using http return syntax
8470 - DOC: Fix "errorfile" description in the configuration manual
8471 - BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
8472 - BUILD: hpack: make sure the hpack table can still be built standalone
8473 - CONTRIB: hpack: make use of the simplified standalone HPACK API
8474 - MINOR: connection: add pp2-never-send-local to support old PP2 behavior
8475
Willy Tarreaufc0b8f32020-05-05 21:49:10 +020084762020/05/05 : 2.2-dev7
8477 - MINOR: version: Show uname output in display_version()
8478 - CI: run weekly OpenSSL "no-deprecated" builds
8479 - CLEANUP: log: fix comment of parse_logformat_string()
8480 - DOC: Improve documentation on http-request set-src
8481 - MINOR: ssl/cli: disallow SSL options for directory in 'add ssl crt-list'
8482 - MINOR: ssl/cli: restrain certificate path when inserting into a directory
8483 - MINOR: ssl: add ssl-skip-self-issued-ca global option
8484 - BUG/MINOR: ssl: default settings for ssl server options are not used
8485 - MINOR: config: add a global directive to set default SSL curves
8486 - BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
8487 - DOC: internals: update the SSL architecture schema
8488 - BUG/MINOR: tools: fix the i386 version of the div64_32 function
8489 - BUG/MINOR: mux-fcgi/trace: fix wrong set of trace flags in fcgi_strm_add_eom()
8490 - BUG/MINOR: http: make url_decode() optionally convert '+' to SP
8491 - DOC: option logasap does not depend on mode
8492 - MEDIUM: memory: make pool_gc() run under thread isolation
8493 - MINOR: contrib: make the peers wireshark dissector a plugin
8494 - BUG/MINOR: http-ana: Throw a 500 error if after-response ruleset fails on errors
8495 - BUG/MINOR: check: Update server address and port to execute an external check
8496 - MINOR: mini-clist: Add functions to iterate backward on a list
8497 - MINOR: checks: Add a way to send custom headers and payload during http chekcs
8498 - MINOR: server: respect warning and alert semantic
8499 - BUG/MINOR: checks: Respect the no-check-ssl option
8500 - BUG/MEDIUM: server/checks: Init server check during config validity check
8501 - CLEANUP: checks: Don't export anymore init_check and srv_check_healthcheck_port
8502 - BUG/MINOR: checks: chained expect will not properly wait for enough data
8503 - BUG/MINOR: checks: Forbid tcp-check lines in default section as documented
8504 - MINOR: checks: Use an enum to describe the tcp-check rule type
8505 - MINOR: checks: Simplify connection flag parsing in tcp-check connect
8506 - MEDIUM: checks: rewind to the first inverse expect rule of a chain on new data
8507 - MINOR: checks: simplify tcp expect config parser
8508 - MINOR: checks: add min-recv tcp-check expect option
8509 - MINOR: checks: add linger option to tcp connect
8510 - MINOR: checks: define a tcp expect type
8511 - MEDIUM: checks: rewrite tcp-check expect block
8512 - MINOR: checks: Stop xform buffers to null-terminated string for tcp-check rules
8513 - MINOR: checks: add rbinary expect match type
8514 - MINOR: checks: Simplify functions to get step id and comment
8515 - MEDIUM: checks: capture groups in expect regexes
8516 - MINOR: checks: Don't use a static tcp rule list head
8517 - MEDIUM: checks: Use a non-comment rule iterator to get next rule
8518 - MEDIUM: proxy/checks: Register a keyword to parse tcp-check rules
8519 - MINOR: checks: Set the tcp-check rule index during parsing
8520 - MINOR: checks: define tcp-check send type
8521 - MINOR: checks: define a tcp-check connect type
8522 - MEDIUM: checks: Add implicit tcp-check connect rule
8523 - MAJOR: checks: Refactor and simplify the tcp-check loop
8524 - MEDIUM: checks: Associate a session to each tcp-check healthcheck
8525 - MINOR: checks/vars: Add a check scope for variables
8526 - MEDIUM: checks: Parse custom action rules in tcp-checks
8527 - MINOR: checks: Add support to set-var and unset-var rules in tcp-checks
8528 - MINOR: checks: Add the sni option for tcp-check connect rules
8529 - MINOR: checks: Add the via-socks4 option for tcp-check connect rules
8530 - MINOR: checks: Add the alpn option for tcp-check connect rules
8531 - MINOR: ssl: Export a generic function to parse an alpn string
8532 - MINOR: checks: Add the default option for tcp-check connect rules
8533 - MINOR: checks: Add the addr option for tcp-check connect rule
8534 - MEDIUM: checks: Support expression to set the port
8535 - MEDIUM: checks: Support log-format strings for tcp-check send rules
8536 - MINOR: log: Don't depends on a stream to process samples in log-format string
8537 - MINOR: log: Don't systematically set LW_REQ when a sample expr is added
8538 - MEDIUM: checks: Add a shared list of tcp-check rules
8539 - MINOR: sample: add htonl converter
8540 - MINOR: sample: add cut_crlf converter
8541 - MINOR: sample: add ltrim converter
8542 - MINOR: sample: add rtrim converter
8543 - MINOR: checks: Use a name for the healthcheck status enum
8544 - MINOR: checks: Add option to tcp-check expect rules to customize error status
8545 - MINOR: checks: Merge tcp-check comment rules with the others at config parsing
8546 - MINOR: checks: Add a sample fetch to extract a block from the input check buffer
8547 - MEDIUM: checks: Add on-error/on-success option on tcp-check expect rules
8548 - MEDIUM: checks: Add status-code sample expression on tcp-check expect rules
8549 - MINOR: checks: Relax the default option for tcp-check connect rules
8550 - MEDIUM: checks: Add a list of vars to set before executing a tpc-check ruleset
8551 - MINOR: checks: Export the tcpcheck_eval_ret enum
8552 - MINOR: checks: Use dedicated function to handle onsuccess/onerror messages
8553 - MINOR: checks: Support custom functions to eval a tcp-check expect rules
8554 - MEDIUM: checks: Implement redis check using tcp-check rules
8555 - MEDIUM: checks: Implement ssl-hello check using tcp-check rules
8556 - MEDIUM: checks: Implement smtp check using tcp-check rules
8557 - MEDIUM: checks: Implement postgres check using tcp-check rules
8558 - MEDIUM: checks: Implement MySQL check using tcp-check rules
8559 - MEDIUM: checks: Implement LDAP check using tcp-check rules
8560 - MEDIUM: checks: Implement SPOP check using tcp-check rules
8561 - MINOR: server/checks: Move parsing of agent keywords in checks.c
8562 - MINOR: server/checks: Move parsing of server check keywords in checks.c
8563 - MEDIUM: checks: Implement agent check using tcp-check rules
8564 - REGTEST: Adapt regtests about checks to recent changes
8565 - MINOR: Produce tcp-check info message for pure tcp-check rules only
8566 - MINOR: checks: Add an option to set success status of tcp-check expect rules
8567 - MINOR: checks: Improve log message of tcp-checks on success
8568 - MINOR: proxy/checks: Move parsing of httpchk option in checks.c
8569 - MINOR: proxy/checks: Move parsing of tcp-check option in checks.c
8570 - MINOR: proxy/checks: Register a keyword to parse http-check rules
8571 - MINOR: proxy/checks: Move parsing of external-check option in checks.c
8572 - MINOR: proxy/checks: Register a keyword to parse external-check rules
8573 - MEDIUM: checks: Use a shared ruleset to store tcp-check rules
8574 - MINOR: checks: Use an indirect string to represent the expect matching string
8575 - MINOR: checks: Introduce flags to configure in tcp-check expect rules
8576 - MINOR: standard: Add my_memspn and my_memcspn
8577 - MINOR: checks: Add a reverse non-comment rule iterator to get last rule
8578 - MAJOR: checks: Implement HTTP check using tcp-check rules
8579 - MINOR: checks: Make resume conditions more explicit in tcpcheck_main()
8580 - MINOR: connection: Add macros to know if a conn or a cs uses an HTX mux
8581 - MEDIUM: checks: Refactor how data are received in tcpcheck_main()
8582 - MINOR: checks/obj_type: Add a new object type for checks
8583 - BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
8584 - MINOR: checks: Use the check as origin when a session is created
8585 - MINOR: checks: Add a mux proto to health-check and tcp-check connect rule
8586 - MINOR: connection: Add a function to install a mux for a health-check
8587 - MAJOR: checks: Use the best mux depending on the protocol for health checks
8588 - MEDIUM: checks: Implement default TCP check using tcp-check rules
8589 - MINOR: checks: Remove unused code about pure TCP checks
8590 - CLEANUP: checks: Reorg checks.c file to be more readable
8591 - REGTEST: Fix reg-tests about health-checks to adapt them to recent changes
8592 - MINOR: ist: Add a function to retrieve the ist pointer
8593 - MINOR: checks: Use ist API as far as possible
8594 - BUG/MEDIUM: checks: Be sure to subscribe for sends if outgoing data remains
8595 - MINOR: checks: Use a tree instead of a list to store tcp-check rulesets
8596 - BUG/MINOR: checks: Send the right amount of outgoing data for HTTP checks
8597 - REGTEST: Add scripts to test based tcp-check health-checks
8598 - Revert "MEDIUM: checks: capture groups in expect regexes"
8599 - DOC: Add documentation about comments for tcp-check and http-check directives
8600 - DOC: Fix the tcp-check and http-check directives layout
8601 - BUG/MEDIUM: checks: Use the mux protocol specified on the server line
8602 - MINOR: checks: Support mux protocol definition for tcp and http health checks
8603 - BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
8604 - MINOR: checks: Support list of status codes on http-check expect rules
8605 - BUG/MEDIUM: checks: Unsubscribe to mux events when a conn-stream is destroyed
8606 - REGTEST: Add a script to validate agent checks
8607 - BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
8608 - BUG/MEDIUM: checks: unsubscribe for events on the old conn-stream on connect
8609 - BUG/MINOR: checks: Only use ssl_sock_is_ssl() if compiled with SSL support
8610 - BUG/MINOR: checks/server: use_ssl member must be signed
8611 - BUG/MEDIUM: sessions: Always pass the mux context as argument to destroy a mux
8612 - BUG/MEDIUM: checks: Destroy the conn-stream before the session
8613 - BUG/MINOR: checks: Fix PostgreSQL regex on the authentication packet
8614 - CI: cirrus-ci: remove reg-tests/checks/tcp-check-ssl.vtc on CentOS 6
8615 - MINOR: checks: Support HTTP/2 version (without '.0') for http-check send rules
8616 - MINOR: checks: Use ver keyword to specify the HTTP version for http checks
8617 - BUG/MINOR: checks: Remove wrong variable redeclaration
8618 - BUG/MINOR: checks: Properly handle truncated mysql server messages
8619 - CLEANUP: checks: Remove unused code when ldap server message is parsed
8620 - MINOR: checks: Make the use of the check's server more explicit on connect
8621 - BUG/MINOR: checks: Avoid incompatible cast when a binary string is parsed
8622 - BUG/MINOR: checks: Remove bad call to free() when an expect rule is parsed
8623 - BUG/MINOR: checks: Don't lose warning on proxy capability
8624 - MINOR: log: Add "Tu" timer
8625 - BUG/MINOR: checks: Set the output buffer length before calling parse_binary()
8626 - BUG/MEDIUM: mux-h1: make sure we always have a timeout on front connections
8627 - REGTEST: ssl: test the client certificate authentication
8628 - DOC: give a more accurate description of what check does
8629 - BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
8630 - BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
8631 - BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
8632 - BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
8633 - CLEANUP: http: add a few comments on certain functions' assumptions about streams
8634 - BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
8635 - MINOR: http-htx: Export functions to update message authority and host
8636 - MINOR: checks: Don't support multiple host header for http-check send rule
8637 - MINOR: checks: Skip some headers for http-check send rules
8638 - MINOR: checks: Keep the Host header and the request uri synchronized
8639 - CLEANUP: checks: Fix checks includes
8640 - DOC: Fix send rules in the http-check connect example
8641 - DOC: Add more info about request formatting in http-check send description
8642 - REGTEST: http-rules: Require PCRE or PCRE2 option to run map_redirect script
8643 - REGTEST: ssl: remove curl from the "add ssl crt-list" test
8644 - REGTEST: ssl: improve the "set ssl cert" test
8645 - CLEANUP: ssl: silence a build warning when threads are disabled
8646 - BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
8647 - MINOR: threads: export the POSIX thread ID in panic dumps
8648 - BUG/MINOR: debug: properly use long long instead of long for the thread ID
8649 - BUG/MEDIUM: shctx: really check the lock's value while waiting
8650 - BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
8651 - MINOR: stream: report the list of active filters on stream crashes
8652 - BUG/MEDIUM: mux-fcgi: Return from detach if server don't keep the connection
8653 - BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
8654 - BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
8655 - BUG/MEDIUM: connections: force connections cleanup on server changes
8656 - BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
8657 - BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
8658 - CLEANUP: connections: align function declaration
8659 - BUG/MINOR: sample: Set the correct type when a binary is converted to a string
8660 - MEDIUM: checks/http-fetch: Support htx prefetch from a check for HTTP samples
8661 - DOC: Document the log-format parameter for tcp-check send/send-binary rules
8662 - MINOR: checks: Add support of payload-based sample fetches
8663 - MINOR: checks: Add support of be_id, be_name, srv_id and srv_name sample fetches
8664 - MINOR: checks: Add support of server side ssl sample fetches
8665 - MINOR: checks: Add support of HTTP response sample fetches
8666 - MINOR: http-htx: Support different methods to look for header names
8667 - MINOR: checks: Set by default expect rule status to UNKNOWN during parsing
8668 - BUG/MINOR: checks: Support multiple HTTP expect rules
8669 - REGTEST: checks: Fix sync condition for agent-check
8670 - MEDIUM: checks: Support matching on headers for http-check expect rules
8671 - MINOR: lua: allow changing port with set_addr
8672 - BUG/MINOR: da: Fix HTX message prefetch
8673 - BUG/MINOR: wurfl: Fix HTX message prefetch
8674 - BUG/MINOR: 51d: Fix HTX message prefetch
8675 - MINOR: ist: add istadv() function
8676 - MINOR: ist: add istissame() function
8677 - MINOR: istbuf: add ist2buf() function
8678 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
8679 - BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
8680 - DOC: update intro.txt for 2.2
8681 - DOC: intro: add a contacts section
8682
Willy Tarreaud0089302020-04-17 14:19:38 +020086832020/04/17 : 2.2-dev6
8684 - BUG/MINOR: ssl: memory leak when find_chain is NULL
8685 - CLEANUP: ssl: rename ssl_get_issuer_chain to ssl_get0_issuer_chain
8686 - MINOR: ssl: rework add cert chain to CTX to be libssl independent
8687 - BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
8688 - BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
8689 - BUG/MINOR: peers: Use after free of "peers" section.
8690 - CI: github actions: add weekly h2spec test
8691 - BUG/MEDIUM: mux_h1: Process a new request if we already received it.
8692 - MINOR: build: Fix build in mux_h1
8693 - CLEANUP: remove obsolete comments
8694 - BUG/MEDIUM: dns: improper parsing of aditional records
8695 - MINOR: ssl: skip self issued CA in cert chain for ssl_ctx
8696 - MINOR: listener: add so_name sample fetch
8697 - MEDIUM: stream: support use-server rules with dynamic names
8698 - MINOR: servers: Add a counter for the number of currently used connections.
8699 - MEDIUM: connections: Revamp the way idle connections are killed
8700 - MINOR: cli: add a general purpose pointer in the CLI struct
8701 - MINOR: ssl: add a list of bind_conf in struct crtlist
8702 - REORG: ssl: move SETCERT enum to ssl_sock.h
8703 - BUG/MINOR: ssl: ckch_inst wrongly inserted in crtlist_entry
8704 - REORG: ssl: move some functions above crtlist_load_cert_dir()
8705 - MINOR: ssl: use crtlist_free() upon error in directory loading
8706 - MINOR: ssl: add a list of crtlist_entry in ckch_store
8707 - MINOR: ssl: store a ptr to crtlist in crtlist_entry
8708 - MINOR: ssl/cli: update pointer to store in 'commit ssl cert'
8709 - MEDIUM: ssl/cli: 'add ssl crt-list' command
8710 - REGTEST: ssl/cli: test the 'add ssl crt-list' command
8711 - BUG/MINOR: ssl: entry->ckch_inst not initialized
8712 - REGTEST: ssl/cli: change test type to devel
8713 - REGTEST: make the PROXY TLV validation depend on version 2.2
8714 - CLEANUP: assorted typo fixes in the code and comments
8715 - BUG/MINOR: stats: Fix color of draining servers on stats page
8716 - DOC: internals: Fix spelling errors in filters.txt
8717 - MINOR: connections: Don't mark conn flags 0x00000001 and 0x00000002 as unused.
8718 - REGTEST: make the unique-id test depend on version 2.0
8719 - BUG/MEDIUM: dns: Consider the fact that dns answers are case-insensitive
8720 - MINOR: ssl: split the line parsing of the crt-list
8721 - MINOR: ssl/cli: support filters and options in add ssl crt-list
8722 - MINOR: ssl: add a comment above the ssl_bind_conf keywords
8723 - REGTEST: ssl/cli: tests options and filters w/ add ssl crt-list
8724 - REGTEST: ssl: pollute the crt-list file
8725 - BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
8726 - BUG/MINOR: protocol_buffer: Wrong maximum shifting.
8727 - CLEANUP: src/fd.c: mask setsockopt with DISGUISE
8728 - BUG/MINOR: ssl/cli: initialize fcount int crtlist_entry
8729 - REGTEST: ssl/cli: add other cases of 'add ssl crt-list'
8730 - CLEANUP: assorted typo fixes in the code and comments
8731 - DOC: management: add the new crt-list CLI commands
8732 - BUG/MINOR: ssl/cli: fix spaces in 'show ssl crt-list'
8733 - MINOR: ssl/cli: 'del ssl crt-list' delete an entry
8734 - MINOR: ssl/cli: replace dump/show ssl crt-list by '-n' option
8735 - CI: use better SSL library definition
8736 - CI: travis-ci: enable DEBUG_STRICT=1 for CI builds
8737 - CI: travis-ci: upgrade openssl to 1.1.1f
8738 - MINOR: ssl: improve the errors when a crt can't be open
8739 - CI: cirrus-ci: rename openssl package after it is renamed in FreeBSD
8740 - CI: adopt openssl download script to download all versions
8741 - BUG/MINOR: ssl/cli: lock the ckch structures during crt-list delete
8742 - MINOR: ssl/cli: improve error for bundle in add/del ssl crt-list
8743 - MINOR: ssl/cli: 'del ssl cert' deletes a certificate
8744 - BUG/MINOR: ssl: trailing slashes in directory names wrongly cached
8745 - BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
8746 - CLEANUP: ssl: use the refcount for the SSL_CTX'
8747 - CLEANUP: ssl/cli: use the list of filters in the crtlist_entry
8748 - BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
8749 - CLEANUP: ssl: remove a commentary in struct ckch_inst
8750 - MINOR: ssl: initialize all list in ckch_inst_new()
8751 - MINOR: ssl: free instances and SNIs with ckch_inst_free()
8752 - MINOR: ssl: replace ckchs_free() by ckch_store_free()
8753 - BUG/MEDIUM: ssl/cli: trying to access to free'd memory
8754 - MINOR: ssl: ckch_store_new() alloc and init a ckch_store
8755 - MINOR: ssl: crtlist_new() alloc and initialize a struct crtlist
8756 - REORG: ssl: move some free/new functions
8757 - MINOR: ssl: crtlist_entry_{new, free}
8758 - BUG/MINOR: ssl: ssl_conf always set to NULL on crt-list parsing
8759 - MINOR: ssl: don't alloc ssl_conf if no option found
8760 - BUG/MINOR: connection: always send address-less LOCAL PROXY connections
8761 - BUG/MINOR: peers: Incomplete peers sections should be validated.
8762 - MINOR: init: report in "haproxy -c" whether there were warnings or not
8763 - MINOR: init: add -dW and "zero-warning" to reject configs with warnings
8764 - MINOR: init: report the compiler version in haproxy -vv
8765 - CLEANUP: assorted typo fixes in the code and comments
8766 - MINOR: init: report the haproxy version and executable path once on errors
8767 - DOC: Make how "option redispatch" works more explicit
8768 - BUILD: Makefile: add linux-musl to TARGET
8769 - CLEANUP: assorted typo fixes in the code and comments
8770 - CLEANUP: http: Fixed small typo in parse_http_return
8771 - DOC: hashing: update link to hashing functions
8772
Willy Tarreau3328f182020-03-23 09:43:45 +010087732020/03/23 : 2.2-dev5
8774 - CLEANUP: ssl: is_default is a bit in ckch_inst
8775 - BUG/MINOR: ssl/cli: sni_ctx' mustn't always be used as filters
8776 - DOC: ssl: clarify security implications of TLS tickets
8777 - CLEANUP: remove support for Linux i686 vsyscalls
8778 - CLEANUP: drop support for USE_MY_ACCEPT4
8779 - CLEANUP: remove support for USE_MY_EPOLL
8780 - CLEANUP: remove support for USE_MY_SPLICE
8781 - CLEANUP: remove the now unused common/syscall.h
8782 - BUILD: make dladdr1 depend on glibc version and not __USE_GNU
8783 - BUILD: wdt: only test for SI_TKILL when compiled with thread support
8784 - BUILD: Makefile: the compiler-specific flags should all be in SPEC_CFLAGS
8785 - CLEANUP: ssl: separate the directory loading in a new function
8786 - BUG/MINOR: buffers: MT_LIST_DEL_SAFE() expects the temporary pointer.
8787 - BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
8788 - MINOR: init: move the maxsock calculation code to compute_ideal_maxsock()
8789 - MEDIUM: init: always try to push the FD limit when maxconn is set from -m
8790 - BUG/MAJOR: list: fix invalid element address calculation
8791 - BUILD: stream-int: fix a few includes dependencies
8792 - MINOR: mt_lists: Appease gcc.
8793 - MINOR: lists: Implement function to convert list => mt_list and mt_list => list
8794 - MINOR: servers: Kill priv_conns.
8795 - MINOR: lists: fix indentation.
8796 - BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
8797 - BUG/MEDIUM: connections: Don't assume the connection has a valid session.
8798 - BUG/MEDIUM: pools: Always update free_list in pool_gc().
8799 - BUG/MINOR: haproxy: always initialize sleeping_thread_mask
8800 - BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
8801 - BUG/MINOR: haproxy/threads: try to make all threads leave together
8802 - Revert "BUILD: travis-ci: enable s390x builds"
8803 - BUILD: travis-ci: enable regular s390x builds
8804 - DOC: proxy_protocol: Reserve TLV type 0x05 as PP2_TYPE_UNIQUE_ID
8805 - MINOR: proxy_protocol: Ingest PP2_TYPE_UNIQUE_ID on incoming connections
8806 - MEDIUM: proxy_protocol: Support sending unique IDs using PPv2
8807 - CLEANUP: connection: Add blank line after declarations in PP handling
8808 - CLEANUP: assorted typo fixes in the code and comments
8809 - CI: add spellcheck github action
8810 - DOC: correct typo in alert message about rspirep
8811 - CI: travis: switch linux builds to clang-9
8812 - MINOR: debug: add a new DISGUISE() macro to pass a value as identity
8813 - MINOR: debug: consume the write() result in BUG_ON() to silence a warning
8814 - MINOR: use DISGUISE() everywhere we deliberately want to ignore a result
8815 - BUILD: pools: silence build warnings with DEBUG_MEMORY_POOLS and DEBUG_UAF
8816 - CLEANUP: connection: Stop directly setting an ist's .ptr
8817 - CI: travis: revert to clang-7 for BoringSSL tests
8818 - BUILD: on ARM, must be linked to libatomic.
8819 - BUILD: makefile: fix regex syntax in ARM platform detection
8820 - BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
8821 - REORG: ssl: move ssl_sock_load_cert()
8822 - MINOR: ssl: pass ckch_inst to ssl_sock_load_ckchs()
8823 - MEDIUM: ssl: allow crt-list caching
8824 - MINOR: ssl: directories are loaded like crt-list
8825 - BUG/MINOR: ssl: can't open directories anymore
8826 - BUG/MEDIUM: spoe: dup agent's engine_id string from trash.area
8827 - MINOR: fd: Use a separate lock for logs instead of abusing the fd lock.
8828 - MINOR: mux_pt: Don't try to remove the connection from the idle list.
8829 - MINOR: ssl/cli: show/dump ssl crt-list
8830 - BUG/MINOR: ssl/cli: free the trash chunk in dump_crtlist
8831 - MEDIUM: fd: Introduce a running mask, and use it instead of the spinlock.
8832 - BUG/MINOR: ssl: memory leak in crtlist_parse_file()
8833 - MINOR: tasks: Provide the tasklet to the callback.
8834 - BUG/MINOR: ssl: memleak of struct crtlist_entry
8835 - BUG/MINOR: pattern: Do not pass len = 0 to calloc()
8836 - BUILD: makefile: fix expression again to detect ARM platform
8837 - CI: travis: re-enable ASAN on clang
8838 - CI: travis: proper group output redirection together with travis_wait
8839 - DOC: assorted typo fixes in the documentation
8840 - MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
8841 - BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
8842 - MINOR: memory: Change the flush_lock to a spinlock, and don't get it in alloc.
8843 - MINOR: ssl/cli: 'new ssl cert' command
8844 - MINOR: ssl/cli: show certificate status in 'show ssl cert'
8845 - MEDIUM: sessions: Don't be responsible for connections anymore.
8846 - MEDIUM: servers: Split the connections into idle, safe, and available.
8847 - MINOR: fd: Implement fd_takeover().
8848 - MINOR: connections: Add a new mux method, "takeover".
8849 - MINOR: connections: Make the "list" element a struct mt_list instead of list.
8850 - MINOR: connections: Add a flag to know if we're in the safe or idle list.
8851 - MEDIUM: connections: Attempt to get idle connections from other threads.
8852 - MEDIUM: mux_h1: Implement the takeover() method.
8853 - MEDIUM: mux_h2: Implement the takeover() method.
8854 - MEDIUM: mux_fcgi: Implement the takeover() method.
8855 - MEDIUM: connections: Kill connections even if we are reusing one.
8856 - BUG/MEDIUM: connections: Don't forget to decrement idle connection counters.
8857 - BUG/MINOR: ssl: Do not free garbage pointers on memory allocation failure
8858 - BUG/MINOR: ssl: Correctly add the 1 for the sentinel to the number of elements
8859 - BUG/MINOR: ssl: crtlist_dup_filters() must return NULL with fcount == 0
8860 - BUG/MEDIUM: build: Fix compilation by spelling decl correctly.
8861 - BUILD/MEDIUM: fd: Declare fd_mig_lock as extern.
8862 - CI: run travis-ci builds on push only, skip pull requests
8863 - CI: temporarily disable unstable travis arm64 builds
8864 - BUG/MINOR: ssl/cli: free BIO upon error in 'show ssl cert'
8865 - BUG/MINOR: connections: Make sure we free the connection on failure.
8866 - BUG/MINOR: ssl/cli: fix a potential NULL dereference
8867 - BUG/MEDIUM: h1: Make sure we subscribe before going into idle list.
8868 - BUG/MINOR: connections: Set idle_time before adding to idle list.
8869 - MINOR: muxes: Note that we can't usee a connection when added to the srv idle.
8870 - REGTEST: increase timeouts on the seamless-reload test
8871 - BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
8872 - CLEANUP: haproxy/threads: don't check global_tasks_mask twice
8873
Willy Tarreau5a753bd2020-03-09 14:57:20 +010088742020/03/09 : 2.2-dev4
8875 - MEDIUM: buffer: remove the buffer_wq lock
8876 - MINOR: ssl: move find certificate chain code to its own function
8877 - MINOR: ssl: resolve issuers chain later
8878 - MINOR: ssl: resolve ocsp_issuer later
8879 - MINOR: ssl/cli: "show ssl cert" command should print the "Chain Filename:"
8880 - BUG/MINOR: h2: reject again empty :path pseudo-headers
8881 - MINOR: wdt: always clear sigev_value to make valgrind happy
8882 - MINOR: epoll: always initialize all of epoll_event to please valgrind
8883 - BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
8884 - BUG/MEDIUM: ssl: chain must be initialized with sk_X509_new_null()
8885 - BUILD: cirrus-ci: suppress OS version check when installing packages
8886 - BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
8887 - CLEANUP: fd: remove the FD_EV_STATUS aggregate
8888 - CLEANUP: fd: remove some unneeded definitions of FD_EV_* flags
8889 - MINOR: fd: merge the read and write error bits into RW error
8890 - BUG/MINOR: dns: ignore trailing dot
8891 - MINOR: contrib/prometheus-exporter: Add the last heathcheck duration metric
8892 - BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
8893 - MINOR: mux-h1: Remove useless case-insensitive comparisons
8894 - MINOR: rawsock: always mark the FD not ready when we're certain it happens
8895 - MEDIUM: connection: make the subscribe() call able to wakeup if ready
8896 - MEDIUM: connection: don't stop receiving events in the FD handler
8897 - MEDIUM: mux-h1: do not blindly wake up the tasklet at end of request anymore
8898 - BUG/MINOR: arg: don't reject missing optional args
8899 - MINOR: tools: make sure to correctly check the returned 'ms' in date2std_log
8900 - MINOR: debug: report the task handler's pointer relative to main
8901 - BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
8902 - MINOR: haproxy: export main to ease access from debugger
8903 - MINOR: haproxy: export run_poll_loop
8904 - MINOR: task: export run_tasks_from_list
8905 - BUILD: tools: remove obsolete and conflicting trace() from standard.c
8906 - MINOR: tools: add new function dump_addr_and_bytes()
8907 - MINOR: tools: add resolve_sym_name() to resolve function pointers
8908 - MINOR: debug: use resolve_sym_name() to dump task handlers
8909 - MINOR: cli: make "show fd" rely on resolve_sym_name()
8910 - MEDIUM: debug: add support for dumping backtraces of stuck threads
8911 - MINOR: debug: call backtrace() once upon startup
8912 - MINOR: ssl: add "ca-verify-file" directive
8913 - BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
8914 - BUILD: Makefile: include librt before libpthread
8915 - MEDIUM: wdt: fall back to CLOCK_REALTIME if CLOCK_THREAD_CPUTIME is not available
8916 - MINOR: wdt: do not depend on USE_THREAD
8917 - MINOR: debug: report the number of entries in the backtrace
8918 - MINOR: debug: improve backtrace() on aarch64 and possibly other systems
8919 - MINOR: debug: use our own backtrace function on clang+x86_64
8920 - MINOR: debug: dump the whole trace if we can't spot the starting point
8921 - BUILD: tools: unbreak resolve_sym_name() on non-GNU platforms
8922 - BUILD: tools: rely on __ELF__ not USE_DL to enable use of dladdr()
8923 - CLEANUP: contrib/spoa_example: Fix several typos
8924 - BUILD: makefile: do not modify the build options during make reg-tests
8925 - BUG/MEDIUM: connection: stop polling for sending when the event is ready
8926 - MEDIUM: stream-int: make sure to try to immediately validate the connection
8927 - MINOR: tcp/uxst/sockpair: only ask for I/O when really waiting for a connect()
8928 - MEDIUM: connection: only call ->wake() for connect() without I/O
8929 - OPTIM: connection: disable receiving on disabled events when the run queue is too high
8930 - OPTIM: mux-h1: subscribe rather than waking up at a few other places
8931 - REGTEST: Add unique-id reg-test
8932 - MINOR: stream: Add stream_generate_unique_id function
8933 - MINOR: stream: Use stream_generate_unique_id
8934 - BUG/MINOR: connection/debug: do not enforce !event_type on subscribe() anymore
8935 - MINOR: ssl/cli: support crt-list filters
8936 - MINOR: ssl: reach a ckch_store from a sni_ctx
8937 - DOC: fix incorrect indentation of http_auth_*
8938 - BUG/MINOR: ssl-sock: do not return an uninitialized pointer in ckch_inst_sni_ctx_to_sni_filters
8939 - MINOR: debug: add CLI command "debug dev write" to write an arbitrary size
8940 - MINOR: ist: Add `IST_NULL` macro
8941 - MINOR: ist: Add `int isttest(const struct ist)`
8942 - MINOR: ist: Add `struct ist istalloc(size_t)` and `void istfree(struct ist*)`
8943 - CLEANUP: Use `isttest()` and `istfree()`
8944 - MINOR: ist: Add `struct ist istdup(const struct ist)`
8945 - MINOR: proxy: Make `header_unique_id` a `struct ist`
8946 - MEDIUM: stream: Make the `unique_id` member of `struct stream` a `struct ist`
8947 - OPTIM: startup: fast unique_id allocation for acl.
8948 - DOC: configuration.txt: fix various typos
8949 - DOC: assorted typo fixes in the documentation and Makefile
8950 - BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
8951 - BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
8952 - CLEANUP: proxy_protocol: Use `size_t` when parsing TLVs
8953 - MINOR: buf: Add function to insert a string at an absolute offset in a buffer
8954 - MINOR: htx: Add a function to return a block at a specific offset
8955 - MINOR: htx: Use htx_find_offset() to truncate an HTX message
8956 - MINOR: flt_trace: Use htx_find_offset() to get the available payload length
8957 - BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
8958 - BUG/MINOR: filters: Forward everything if no data filters are called
8959 - BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
8960 - BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
8961 - BUG/MINOR: http-ana: Reset request analysers on a response side error
8962 - BUG/MINOR: lua: Abort when txn:done() is called from a Lua action
8963 - BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
8964 - MINOR: lua: Add function to know if a channel is a response one
8965 - MINOR: lua: Stop using the lua txn in hlua_http_get_headers()
8966 - MINOR: lua: Stop using the lua txn in hlua_http_rep_hdr()
8967 - MINOR: lua: Stop using lua txn in hlua_http_del_hdr() and hlua_http_add_hdr()
8968 - MINOR: lua: Remove the flag HLUA_TXN_HTTP_RDY
8969 - MINOR: lua: Rename hlua_action_wake_time() to hlua_set_wake_time()
8970 - BUG/MINOR: lua: Init the lua wake_time value before calling a lua function
8971 - BUG/MINOR: http-rules: Return ACT_RET_ABRT to abort a transaction
8972 - BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
8973 - BUG/MINOR: http-rules: Fix a typo in the reject action function
8974 - MINOR: cache/filters: Initialize the cache filter when stream is created
8975 - MINOR: compression/filters: Initialize the comp filter when stream is created
8976 - BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
8977 - BUG/MINOR: rules: Return ACT_RET_ABRT when a silent-drop action is executed
8978 - BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
8979 - BUG/MINOR: http-rules: Abort transaction when a redirect is applied on response
8980 - BUILD: buffer: types/{ring.h,checks.h} should include buf.h, not buffer.h
8981 - BUILD: ssl: include mini-clist.h
8982 - BUILD: global: must not include common/standard.h but only types/freq_ctr.h
8983 - BUILD: freq_ctr: proto/freq_ctr needs to include common/standard.h
8984 - BUILD: listener: types/listener.h must not include standard.h
8985 - BUG/MEDIUM: random: initialize the random pool a bit better
8986 - BUG/MEDIUM: random: implement per-thread and per-process random sequences
8987 - Revert "BUG/MEDIUM: random: implement per-thread and per-process random sequences"
8988 - BUILD: cirrus-ci: get rid of unstable freebsd images
8989 - MINOR: tools: add 64-bit rotate operators
8990 - BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
8991 - MINOR: backend: use a single call to ha_random32() for the random LB algo
8992 - BUG/MINOR: checks/threads: use ha_random() and not rand()
8993 - MINOR: sample: make all bits random on the rand() sample fetch
8994 - MINOR: tools: add a generic function to generate UUIDs
8995 - DOC: fix typo about no-tls-tickets
8996 - DOC: improve description of no-tls-tickets
8997 - DOC: assorted typo fixes in the documentation
8998 - CLEANUP: remove unused code in 'my_ffsl/my_flsl' functions
8999
Willy Tarreau32bf97f2020-02-25 18:14:02 +010090002020/02/25 : 2.2-dev3
9001 - SCRIPTS: announce-release: place the send command in the mail's header
9002 - SCRIPTS: announce-release: allow the user to force to overwrite old files
9003 - SCRIPTS: backport: fix the master branch detection
9004 - BUG/MINOR: http-act: Set stream error flag before returning an error
9005 - BUG/MINOR: http-act: Fix bugs on error path during parsing of return actions
9006 - BUG/MEDIUM: ssl/cli: 'commit ssl cert' wrong SSL_CTX init
9007 - BUG/MEDIUM: tcp-rules: Fix track-sc* actions for L4/L5 TCP rules
9008 - DOC: schematic of the SSL certificates architecture
9009 - BUG/MAJOR: mux-h2: don't wake streams after connection was destroyed
9010 - BUG/MINOR: unix: better catch situations where the unix socket path length is close to the limit
9011 - BUILD: cirrus-ci: switch to "snap" images to unify openssl naming
9012 - BUILD: cirrus-ci: workaround "pkg install" bug
9013 - BUILD: cirrus-ci: add ERR=1 to freebsd builds
9014 - BUG/MINOR: connection: correctly retry I/O on signals
9015 - CLEANUP: mini-clist: simplify nested do { while(1) {} } while (0)
9016 - BUILD: http_act: cast file sizes when reporting file size error
9017 - BUG/MEDIUM: listener: only consider running threads when resuming listeners
9018 - BUG/MINOR: listener: enforce all_threads_mask on bind_thread on init
9019 - BUG/MINOR: tcp: avoid closing fd when socket failed in tcp_bind_listener
9020 - MINOR: build: add aix72-gcc build TARGET and power{8,9} CPUs
9021 - BUILD: travis-ci: no more allowed failures for openssl-1.0.2
9022 - BUILD: travis-ci: harden builds, add ERR=1 (warning ought to be errors)
9023 - BUILD: scripts/build-ssl.sh: use "uname" instead of ${TRAVIS_OS_NAME}
9024 - BUG/MINOR: tcp: don't try to set defaultmss when value is negative
9025 - SCRIPTS: make announce-release executable again
9026 - BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat
9027 - BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
9028 - BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
9029 - CLEANUP: ssl: remove unused functions in openssl-compat.h
9030 - MINOR: mux-fcgi: Make the capture of the path-info optional in pathinfo regex
9031 - MINOR: tools: add is_idchar() to tell if a char may belong to an identifier
9032 - MINOR: chunk: implement chunk_strncpy() to copy partial strings
9033 - MINOR: sample/acl: use is_idchar() to locate the fetch/conv name
9034 - MEDIUM: arg: make make_arg_list() stop after its own arguments
9035 - MEDIUM: arg: copy parsed arguments into the trash instead of allocating them
9036 - MEDIUM: arg: make make_arg_list() support quotes in arguments
9037 - MINOR: sample: make sample_parse_expr() able to return an end pointer
9038 - MEDIUM: log-format: make the LF parser aware of sample expressions' end
9039 - BUG/MINOR: arg: report an error if an argument is larger than bufsize
9040 - SCRIPTS: announce-release: use mutt -H instead of -i to include the draft
9041 - BUILD: enable ERR=1 in github cygwin builds
9042 - BUG/MINOR: arg: fix again incorrect argument length check
9043 - MINOR: sample: regsub now supports backreferences
9044 - BUG/MINOR: tools: also accept '+' as a valid character in an identifier
9045 - MINOR: http-htx: Add a function to retrieve the headers size of an HTX message
9046 - MINOR: filters: Forward data only if the last filter forwards something
9047 - BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
9048 - BUG/MINOR: http-htx: Don't return error if authority is updated without changes
9049 - BUG/MINOR: stream: Don't incr frontend cum_req counter when stream is closed
9050 - BUG/MINOR: sample: exit regsub() in case of trash allocation error
9051 - MINOR: ssl: add "issuers-chain-path" directive.
9052 - REGTESTS: use "command -v" instead of "which"
9053 - BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
9054 - MINOR: http-ana: Match on the path if the monitor-uri starts by a /
9055 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
9056 - BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
9057 - BUG/MINOR: mux: do not call conn_xprt_stop_recv() on buffer shortage
9058 - MINOR: checks: do not call conn_xprt_stop_send() anymore
9059 - CLEANUP: epoll: place the struct epoll_event in the stack
9060 - MEDIUM: connection: remove the intermediary polling state from the connection
9061 - MINOR: raw_sock: directly call fd_stop_send() and not conn_xprt_stop_send()
9062 - MINOR: tcp/uxst/sockpair: use fd_want_send() instead of conn_xprt_want_send()
9063 - MINOR: connection: remove the last calls to conn_xprt_{want,stop}_*
9064 - CLEANUP: connection: remove the definitions of conn_xprt_{stop,want}_{send,recv}
9065 - MINOR: connection: introduce a new receive flag: CO_RFL_READ_ONCE
9066 - MINOR: mux-h1: pass CO_RFL_READ_ONCE to the lower layers when relevant
9067 - MINOR: ist: add an iststop() function
9068 - BUG/MINOR: http: http-request replace-path duplicates the query string
9069 - CLEANUP: sample: use iststop instead of a for loop
9070 - BUG/MEDIUM: shctx: make sure to keep all blocks aligned
9071 - MINOR: compiler: move CPU capabilities definition from config.h and complete them
9072 - BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
9073 - CLEANUP: http/h1: rely on HA_UNALIGNED_LE instead of checking for CPU families
9074 - BUILD: fix recent build failure on unaligned archs
9075 - MINOR: ssl: load the key from a dedicated file
9076 - BUG/MINOR: ssl: load .key in a directory only after PEM
9077 - MINOR: compiler: drop special cases of likely/unlikely for older compilers
9078 - CLEANUP: conn: Do not pass a pointer to likely
9079 - CLEANUP: net_helper: Do not negate the result of unlikely
9080 - BUILD: remove obsolete support for -mregparm / USE_REGPARM
9081 - CLEANUP: cfgparse: Fix type of second calloc() parameter
9082 - BUILD: ssl: only pass unsigned chars to isspace()
9083 - BUILD: general: always pass unsigned chars to is* functions
9084 - BUG/MINOR: sample: fix the json converter's endian-sensitivity
9085 - BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
9086 - CLEANUP: fd: use a union in fd_rm_from_fd_list() to shut aliasing warnings
9087 - CLEANUP: cache: use read_u32/write_u32 to access the cache entry's hash
9088 - CLEANUP: stick-tables: use read_u32() to display a node's key
9089 - CLEANUP: sample: use read_u64() in ipmask() to apply an IPv6 mask
9090 - MINOR: pattern: fix all remaining strict aliasing issues
9091 - CLEANUP: lua: fix aliasing issues in the address matching code
9092 - CLEANUP: connection: use read_u32() instead of a cast in the netscaler parser
9093 - BUILD: makefile: re-enable strict aliasing
9094 - BUG/MINOR: connection: make sure to correctly tag local PROXY connections
9095 - MINOR: compiler: add new alignment macros
9096 - BUILD: ebtree: improve architecture-specific alignment
9097 - MINOR: config: mark global.debug as deprecated
9098 - BUILD: travis-ci: enable s390x builds
9099 - MINOR: ssl/cli: 'show ssl cert' displays the chain
9100 - MINOR: ssl/cli: 'show ssl cert'displays the issuer in the chain
9101 - MINOR: ssl/cli: reorder 'show ssl cert' output
9102 - CLEANUP: ssl: move issuer_chain tree and definition
9103 - DOC: proxy-protocol: clarify IPv6 address representation in the spec
9104
Willy Tarreau4c47d912020-02-07 04:12:19 +010091052020/02/07 : 2.2-dev2
9106 - BUILD: CI: temporarily mark openssl-1.0.2 as allowed failure
9107 - MEDIUM: cli: Allow multiple filter entries for "show table"
9108 - BUG/MEDIUM: netscaler: Don't forget to allocate storage for conn->src/dst.
9109 - BUG/MINOR: ssl: ssl_sock_load_pem_into_ckch is not consistent
9110 - BUILD: stick-table: fix build errors introduced by last stick-table change
9111 - BUG/MINOR: cli: Missing arg offset for filter data values.
9112 - MEDIUM: streams: Always create a conn_stream in connect_server().
9113 - MEDIUM: connections: Get ride of the xprt_done callback.
9114 - CLEANUP: changelog: remove the duplicate entry for 2.2-dev1
9115 - BUILD: CI: move cygwin builds to Github Actions
9116 - MINOR: cli: Report location of errors or any extra data for "show table"
9117 - BUG/MINOR: ssl/cli: free the previous ckch content once a PEM is loaded
9118 - CLEANUP: backend: remove useless test for inexistent connection
9119 - CLEANUP: backend: shut another false null-deref in back_handle_st_con()
9120 - CLEANUP: stats: shut up a wrong null-deref warning from gcc 9.2
9121 - BUG/MINOR: ssl: increment issuer refcount if in chain
9122 - BUG/MINOR: ssl: memory leak w/ the ocsp_issuer
9123 - BUG/MINOR: ssl: typo in previous patch
9124 - BUG/MEDIUM: connections: Set CO_FL_CONNECTED in conn_complete_session().
9125 - BUG/MINOR: ssl/cli: ocsp_issuer must be set w/ "set ssl cert"
9126 - MEDIUM: connection: remove CO_FL_CONNECTED and only rely on CO_FL_WAIT_*
9127 - BUG/MEDIUM: 0rtt: Only consider the SSL handshake.
9128 - MINOR: stream-int: always report received shutdowns
9129 - MINOR: connection: remove CO_FL_SSL_WAIT_HS from CO_FL_HANDSHAKE
9130 - MEDIUM: connection: use CO_FL_WAIT_XPRT more consistently than L4/L6/HANDSHAKE
9131 - MINOR: connection: remove checks for CO_FL_HANDSHAKE before I/O
9132 - MINOR: connection: do not check for CO_FL_SOCK_RD_SH too early
9133 - MINOR: connection: don't check for CO_FL_SOCK_WR_SH too early in handshakes
9134 - MINOR: raw-sock: always check for CO_FL_SOCK_WR_SH before sending
9135 - MINOR: connection: remove some unneeded checks for CO_FL_SOCK_WR_SH
9136 - BUG/MINOR: stktable: report the current proxy name in error messages
9137 - BUG/MEDIUM: mux-h2: make sure we don't emit TE headers with anything but "trailers"
9138 - MINOR: lua: Add hlua_prepend_path function
9139 - MINOR: lua: Add lua-prepend-path configuration option
9140 - MINOR: lua: Add HLUA_PREPEND_C?PATH build option
9141 - BUILD: cfgparse: silence a bogus gcc warning on 32-bit machines
9142 - BUG/MINOR: http-ana: Increment the backend counters on the backend
9143 - BUG/MINOR: stream: Be sure to have a listener to increment its counters
9144 - BUG/MEDIUM: streams: Move the conn_stream allocation outside #IF USE_OPENSSL.
9145 - REGTESTS: make the set_ssl_cert test require version 2.2
9146 - BUG/MINOR: ssl: Possible memleak when allowing the 0RTT data buffer.
9147 - MINOR: ssl: Remove dead code.
9148 - BUG/MEDIUM: ssl: Don't forget to free ctx->ssl on failure.
9149 - BUG/MEDIUM: stream: Don't install the mux in back_handle_st_con().
9150 - MEDIUM: streams: Don't close the connection in back_handle_st_con().
9151 - MEDIUM: streams: Don't close the connection in back_handle_st_rdy().
9152 - BUILD: CI: disable slow regtests on Travis
9153 - BUG/MINOR: tcpchecks: fix the connect() flags regarding delayed ack
9154 - BUG/MINOR: http-rules: Always init log-format expr for common HTTP actions
9155 - BUG/MINOR: connection: fix ip6 dst_port copy in make_proxy_line_v2
9156 - BUG/MINOR: dns: allow 63 char in hostname
9157 - MINOR: proxy: clarify number of connections log when stopping
9158 - DOC: word converter ignores delimiters at the start or end of input string
9159 - MEDIUM: raw-sock: remove obsolete calls to fd_{cant,cond,done}_{send,recv}
9160 - BUG/MINOR: ssl/cli: fix unused variable with openssl < 1.0.2
9161 - MEDIUM: pipe/thread: reduce the locking overhead
9162 - MEDIUM: pipe/thread: maintain a per-thread local cache of recently used pipes
9163 - BUG/MEDIUM: pipe/thread: fix atomicity of pipe counters
9164 - MINOR: tasks: move the list walking code to its own function
9165 - MEDIUM: tasks: implement 3 different tasklet classes with their own queues
9166 - MEDIUM: tasks: automatically requeue into the bulk queue an already running tasklet
9167 - OPTIM: task: refine task classes default CPU bandwidth ratios
9168 - BUG/MEDIUM: connections: Don't forget to unlock when killing a connection.
9169 - MINOR: task: permanently flag tasklets waking themselves up
9170 - MINOR: task: make sched->current also reflect tasklets
9171 - MINOR: task: detect self-wakeups on tl==sched->current instead of TASK_RUNNING
9172 - OPTIM: task: readjust CPU bandwidth distribution since last update
9173 - MINOR: task: don't set TASK_RUNNING on tasklets
9174 - BUG/MEDIUM: memory_pool: Update the seq number in pool_flush().
9175 - MINOR: memory: Only init the pool spinlock once.
9176 - BUG/MEDIUM: memory: Add a rwlock before freeing memory.
9177 - BUG/MAJOR: memory: Don't forget to unlock the rwlock if the pool is empty.
9178 - MINOR: ssl: ssl-load-extra-files configure loading of files
9179 - SCRIPTS: add a new "backport" script to simplify long series of backports
9180 - BUG/MINOR: ssl: we may only ignore the first 64 errors
9181 - SCRIPTS: use /usr/bin/env bash instead of /bin/bash for scripts
9182 - BUG/MINOR: ssl: clear the SSL errors on DH loading failure
9183 - CLEANUP: hpack: remove a redundant test in the decoder
9184 - CLEANUP: peers: Remove unused static function `free_dcache`
9185 - CLEANUP: peers: Remove unused static function `free_dcache_tx`
9186 - CONTRIB: debug: add missing flags SF_HTX and SF_MUX
9187 - CONTRIB: debug: add the possibility to decode the value as certain types only
9188 - CONTRIB: debug: support reporting multiple values at once
9189 - BUG/MINOR: http-act: Use the good message to test strict rewritting mode
9190 - MINOR: global: Set default tune.maxrewrite value during global structure init
9191 - MINOR: http-rules: Set SF_ERR_PRXCOND termination flag when a header rewrite fails
9192 - MINOR: http-htx: Emit a warning if an error file runs over the buffer's reserve
9193 - MINOR: htx: Add a function to append an HTX message to another one
9194 - MINOR: htx/channel: Add a function to copy an HTX message in a channel's buffer
9195 - BUG/MINOR: http-ana: Don't overwrite outgoing data when an error is reported
9196 - MINOR: dns: Dynamically allocate dns options to reduce the act_rule size
9197 - MINOR: dns: Add function to release memory allocated for a do-resolve rule
9198 - BUG/MINOR: http-ana: Reset HTX first index when HAPRoxy sends a response
9199 - BUG/MINOR: http-ana: Set HTX_FL_PROXY_RESP flag if a server perform a redirect
9200 - MINOR: http-rules: Add a flag on redirect rules to know the rule direction
9201 - MINOR: http-rules: Handle the rule direction when a redirect is evaluated
9202 - MINOR: http-ana: Rely on http_reply_and_close() to handle server error
9203 - MINOR: http-ana: Add a function for forward internal responses
9204 - MINOR: http-ana/http-rules: Use dedicated function to forward internal responses
9205 - MEDIUM: http: Add a ruleset evaluated on all responses just before forwarding
9206 - MEDIUM: http-rules: Add the return action to HTTP rules
9207 - MEDIUM: http-rules: Support extra headers for HTTP return actions
9208 - CLEANUP: lua: Remove consistency check for sample fetches and actions
9209 - BUG/MINOR: http-ana: Increment failed_resp counters on invalid response
9210 - MINOR: lua: Get the action return code on the stack when an action finishes
9211 - MINOR: lua: Create the global 'act' object to register all action return codes
9212 - MINOR: lua: Add act:wake_time() function to set a timeout when an action yields
9213 - MEDIUM: lua: Add ability for actions to intercept HTTP messages
9214 - REGTESTS: Add reg tests for the HTTP return action
9215 - REGTESTS: Add a reg test for http-after-response rulesets
9216 - BUILD: lua: silence a warning on systems where longjmp is not marked as noreturn
9217 - MINOR: acl: Warn when an ACL is named 'or'
9218 - CONTRIB: debug: also support reading values from stdin
9219 - SCRIPTS: backport: use short revs and resolve the initial commit
9220 - BUG/MINOR: acl: Fix type of log message when an acl is named 'or'
9221
Willy Tarreau71f95fa2020-01-22 10:34:58 +010092222020/01/22 : 2.2-dev1
9223 - DOC: this is development again
9224 - MINOR: version: this is development again, update the status
9225 - SCRIPTS: update create-release to fix the changelog on new branches
9226 - CLEANUP: ssl: Clean up error handling
9227 - BUG/MINOR: contrib/prometheus-exporter: decode parameter and value only
9228 - BUG/MINOR: h1: Don't test the host header during response parsing
9229 - BUILD/MINOR: trace: fix use of long type in a few printf format strings
9230 - DOC: Clarify behavior of server maxconn in HTTP mode
9231 - MINOR: ssl: deduplicate ca-file
9232 - MINOR: ssl: compute ca-list from deduplicate ca-file
9233 - MINOR: ssl: deduplicate crl-file
9234 - CLEANUP: dns: resolution can never be null
9235 - BUG/MINOR: http-htx: Don't make http_find_header() fail if the value is empty
9236 - DOC: ssl/cli: set/commit/abort ssl cert
9237 - BUG/MINOR: ssl: fix SSL_CTX_set1_chain compatibility for openssl < 1.0.2
9238 - BUG/MINOR: fcgi-app: Make the directive pass-header case insensitive
9239 - BUG/MINOR: stats: Fix HTML output for the frontends heading
9240 - BUG/MINOR: ssl: fix X509 compatibility for openssl < 1.1.0
9241 - DOC: clarify matching strings on binary fetches
9242 - DOC: Fix ordered list in summary
9243 - DOC: move the "group" keyword at the right place
9244 - MEDIUM: init: prevent process and thread creation at runtime
9245 - BUG/MINOR: ssl/cli: 'ssl cert' cmd only usable w/ admin rights
9246 - BUG/MEDIUM: stream-int: don't subscribed for recv when we're trying to flush data
9247 - BUG/MINOR: stream-int: avoid calling rcv_buf() when splicing is still possible
9248 - BUG/MINOR: ssl/cli: don't overwrite the filters variable
9249 - BUG/MEDIUM: listener/thread: fix a race when pausing a listener
9250 - BUG/MINOR: ssl: certificate choice can be unexpected with openssl >= 1.1.1
9251 - BUG/MEDIUM: mux-h1: Never reuse H1 connection if a shutw is pending
9252 - BUG/MINOR: mux-h1: Don't rely on CO_FL_SOCK_RD_SH to set H1C_F_CS_SHUTDOWN
9253 - BUG/MINOR: mux-h1: Fix conditions to know whether or not we may receive data
9254 - BUG/MEDIUM: tasks: Make sure we switch wait queues in task_set_affinity().
9255 - BUG/MEDIUM: checks: Make sure we set the task affinity just before connecting.
9256 - MINOR: debug: replace popen() with pipe+fork() in "debug dev exec"
9257 - MEDIUM: init: set NO_NEW_PRIVS by default when supported
9258 - BUG/MINOR: mux-h1: Be sure to set CS_FL_WANT_ROOM when EOM can't be added
9259 - BUG/MEDIUM: mux-fcgi: Handle cases where the HTX EOM block cannot be inserted
9260 - BUG/MINOR: proxy: make soft_stop() also close FDs in LI_PAUSED state
9261 - BUG/MINOR: listener/threads: always use atomic ops to clear the FD events
9262 - BUG/MINOR: listener: also clear the error flag on a paused listener
9263 - BUG/MEDIUM: listener/threads: fix a remaining race in the listener's accept()
9264 - MINOR: listener: make the wait paths cleaner and more reliable
9265 - MINOR: listener: split dequeue_all_listener() in two
9266 - REORG: listener: move the global listener queue code to listener.c
9267 - DOC: document the listener state transitions
9268 - BUG/MEDIUM: kqueue: Make sure we report read events even when no data.
9269 - BUG/MAJOR: dns: add minimalist error processing on the Rx path
9270 - BUG/MEDIUM: proto_udp/threads: recv() and send() must not be exclusive.
9271 - DOC: listeners: add a few missing transitions
9272 - BUG/MINOR: tasks: only requeue a task if it was already in the queue
9273 - MINOR: tasks: split wake_expired_tasks() in two parts to avoid useless wakeups
9274 - DOC: proxies: HAProxy only supports 3 connection modes
9275 - DOC: remove references to the outdated architecture.txt
9276 - BUG/MINOR: log: fix minor resource leaks on logformat error path
9277 - BUG/MINOR: mworker: properly pass SIGTTOU/SIGTTIN to workers
9278 - BUG/MINOR: listener: do not immediately resume on transient error
9279 - BUG/MINOR: server: make "agent-addr" work on default-server line
9280 - BUG/MINOR: listener: fix off-by-one in state name check
9281 - BUILD/MINOR: unix sockets: silence an absurd gcc warning about strncpy()
9282 - MEDIUM: h1-htx: Add HTX EOM block when the message is in H1_MSG_DONE state
9283 - MINOR: http-htx: Add some htx sample fetches for debugging purpose
9284 - REGTEST: Add an HTX reg-test to check an edge case
9285 - DOC: clarify the fact that replace-uri works on a full URI
9286 - BUG/MINOR: sample: fix the closing bracket and LF in the debug converter
9287 - BUG/MINOR: sample: always check converters' arguments
9288 - MINOR: sample: Validate the number of bits for the sha2 converter
9289 - BUG/MEDIUM: ssl: Don't set the max early data we can receive too early.
9290 - MINOR: ssl/cli: 'show ssl cert' give information on the certificates
9291 - BUG/MINOR: ssl/cli: fix build for openssl < 1.0.2
9292 - MINOR: debug: support logging to various sinks
9293 - MINOR: http: add a new "replace-path" action
9294 - REGTEST: ssl: test the "set ssl cert" CLI command
9295 - REGTEST: run-regtests: implement #REQUIRE_BINARIES
9296 - MINOR: task: only check TASK_WOKEN_ANY to decide to requeue a task
9297 - BUG/MAJOR: task: add a new TASK_SHARED_WQ flag to fix foreing requeuing
9298 - BUG/MEDIUM: ssl: Revamp the way early data are handled.
9299 - MINOR: fd/threads: make _GET_NEXT()/_GET_PREV() use the volatile attribute
9300 - BUG/MEDIUM: fd/threads: fix a concurrency issue between add and rm on the same fd
9301 - REGTEST: make the "set ssl cert" require version 2.1
9302 - BUG/MINOR: ssl: openssl-compat: Fix getm_ defines
9303 - BUG/MEDIUM: state-file: do not allocate a full buffer for each server entry
9304 - BUG/MINOR: state-file: do not store duplicates in the global tree
9305 - BUG/MINOR: state-file: do not leak memory on parse errors
9306 - BUG/MAJOR: mux-h1: Don't pretend the input channel's buffer is full if empty
9307 - BUG/MEDIUM: stream: Be sure to never assign a TCP backend to an HTX stream
9308 - BUILD: ssl: improve SSL_CTX_set_ecdh_auto compatibility
9309 - BUILD: travis-ci: link with ssl libraries using rpath instead of LD_LIBRARY_PATH/DYLD_LIBRARY_PATH
9310 - BUILD: travis-ci: reenable address sanitizer for clang builds
9311 - BUG/MINOR: checks: refine which errno values are really errors.
9312 - BUG/MINOR: connection: only wake send/recv callbacks if the FD is active
9313 - CLEANUP: connection: conn->xprt is never NULL
9314 - MINOR: pollers: add a new flag to indicate pollers reporting ERR & HUP
9315 - MEDIUM: tcp: make tcp_connect_probe() consider ERR/HUP
9316 - REORG: connection: move tcp_connect_probe() to conn_fd_check()
9317 - MINOR: connection: check for connection validation earlier
9318 - MINOR: connection: remove the double test on xprt_done_cb()
9319 - CLEANUP: connection: merge CO_FL_NOTIFY_DATA and CO_FL_NOTIFY_DONE
9320 - MINOR: poller: do not call the IO handler if the FD is not active
9321 - OPTIM: epoll: always poll for recv if neither active nor ready
9322 - OPTIM: polling: do not create update entries for FD removal
9323 - BUG/MEDIUM: checks: Only attempt to do handshakes if the connection is ready.
9324 - BUG/MEDIUM: connections: Hold the lock when wanting to kill a connection.
9325 - BUILD: CI: modernize cirrus-ci
9326 - MINOR: config: disable busy polling on old processes
9327 - MINOR: ssl: Remove unused variable "need_out".
9328 - BUG/MINOR: h1: Report the right error position when a header value is invalid
9329 - BUG/MINOR: proxy: Fix input data copy when an error is captured
9330 - BUG/MEDIUM: http-ana: Truncate the response when a redirect rule is applied
9331 - BUG/MINOR: channel: inject output data at the end of output
9332 - BUG/MEDIUM: session: do not report a failure when rejecting a session
9333 - MEDIUM: dns: implement synchronous send
9334 - MINOR: raw_sock: make sure to disable polling once everything is sent
9335 - MINOR: http: Add 410 to http-request deny
9336 - MINOR: http: Add 404 to http-request deny
9337 - CLEANUP: mux-h2: remove unused goto "out_free_h2s"
9338 - BUILD: cirrus-ci: choose proper openssl package name
9339 - BUG/MAJOR: listener: do not schedule a task-less proxy
9340 - CLEANUP: server: remove unused err section in server_finalize_init
9341 - REGTEST: set_ssl_cert.vtc: replace "echo" with "printf"
9342 - BUG/MINOR: stream-int: Don't trigger L7 retry if max retries is already reached
9343 - BUG/MEDIUM: tasks: Use the MT macros in tasklet_free().
9344 - BUG/MINOR: mux-h2: use a safe list_for_each_entry in h2_send()
9345 - BUG/MEDIUM: mux-h2: fix missing test on sending_list in previous patch
9346 - CLEANUP: ssl: remove opendir call in ssl_sock_load_cert
9347 - MEDIUM: lua: don't call the GC as often when dealing with outgoing connections
9348 - BUG/MEDIUM: mux-h2: don't stop sending when crossing a buffer boundary
9349 - BUG/MINOR: cli/mworker: can't start haproxy with 2 programs
9350 - REGTEST: mcli/mcli_start_progs: start 2 programs
9351 - BUG/MEDIUM: mworker: remain in mworker mode during reload
9352 - DOC: clarify crt-base usage
9353 - CLEANUP: compression: remove unused deinit_comp_ctx section
9354 - BUG/MEDIUM: mux_h1: Don't call h1_send if we subscribed().
9355 - BUG/MEDIUM: raw_sock: Make sur the fd and conn are sync.
9356 - CLEANUP: proxy: simplify proxy_parse_rate_limit proxy checks
9357 - BUG/MAJOR: hashes: fix the signedness of the hash inputs
9358 - REGTEST: add sample_fetches/hashes.vtc to validate hashes
9359 - BUG/MEDIUM: cli: _getsocks must send the peers sockets
9360 - CLEANUP: cli: deduplicate the code in _getsocks
9361 - BUG/MINOR: stream: don't mistake match rules for store-request rules
9362 - BUG/MEDIUM: connection: add a mux flag to indicate splice usability
9363 - BUG/MINOR: pattern: handle errors from fgets when trying to load patterns
9364 - MINOR: connection: move the CO_FL_WAIT_ROOM cleanup to the reader only
9365 - MINOR: stream-int: remove dependency on CO_FL_WAIT_ROOM for rcv_buf()
9366 - MEDIUM: connection: get rid of CO_FL_CURR_* flags
9367 - BUILD: pattern: include errno.h
9368 - MEDIUM: mux-h2: do not try to stop sending streams on blocked mux
9369 - MEDIUM: mux-fcgi: do not try to stop sending streams on blocked mux
9370 - MEDIUM: mux-h2: do not make an h2s subscribe to itself on deferred shut
9371 - MEDIUM: mux-fcgi: do not make an fstrm subscribe to itself on deferred shut
9372 - REORG: stream/backend: move backend-specific stuff to backend.c
9373 - MEDIUM: backend: move the connection finalization step to back_handle_st_con()
9374 - MEDIUM: connection: merge the send_wait and recv_wait entries
9375 - MEDIUM: xprt: merge recv_wait and send_wait in xprt_handshake
9376 - MEDIUM: ssl: merge recv_wait and send_wait in ssl_sock
9377 - MEDIUM: mux-h1: merge recv_wait and send_wait
9378 - MEDIUM: mux-h2: merge recv_wait and send_wait event notifications
9379 - MEDIUM: mux-fcgi: merge recv_wait and send_wait event notifications
9380 - MINOR: connection: make the last arg of subscribe() a struct wait_event*
9381 - MINOR: ssl: Add support for returning the dn samples from ssl_(c|f)_(i|s)_dn in LDAP v3 (RFC2253) format.
9382 - DOC: Fix copy and paste mistake in http-response replace-value doc
9383 - BUG/MINOR: cache: Fix leak of cache name in error path
9384 - BUG/MINOR: dns: Make dns_query_id_seed unsigned
9385 - BUG/MINOR: 51d: Fix bug when HTX is enabled
9386 - MINOR: http-htx: Move htx sample fetches in the scope "internal"
9387 - MINOR: http-htx: Rename 'internal.htx_blk.val' to 'internal.htx_blk.data'
9388 - MINOR: http-htx: Make 'internal.htx_blk_data' return a binary string
9389 - DOC: Add a section to document the internal sample fetches
9390 - MINOR: mux-h1: Inherit send flags from the upper layer
9391 - MINOR: contrib/prometheus-exporter: Add heathcheck status/code in server metrics
9392 - BUG/MINOR: http-ana/filters: Wait end of the http_end callback for all filters
9393 - BUG/MINOR: http-rules: Remove buggy deinit functions for HTTP rules
9394 - BUG/MINOR: stick-table: Use MAX_SESS_STKCTR as the max track ID during parsing
9395 - MEDIUM: http-rules: Register an action keyword for all http rules
9396 - MINOR: tcp-rules: Always set from which ruleset a rule comes from
9397 - MINOR: actions: Use ACT_RET_CONT code to ignore an error from a custom action
9398 - MINOR: tcp-rules: Kill connections when custom actions return ACT_RET_ERR
9399 - MINOR: http-rules: Return an error when custom actions return ACT_RET_ERR
9400 - MINOR: counters: Add a counter to report internal processing errors
9401 - MEDIUM: http-ana: Properly handle internal processing errors
9402 - MINOR: http-rules: Add a rule result to report internal error
9403 - MINOR: http-rules: Handle internal errors during HTTP rules evaluation
9404 - MINOR: http-rules: Add more return codes to let custom actions act as normal ones
9405 - MINOR: tcp-rules: Handle denied/aborted/invalid connections from TCP rules
9406 - MINOR: http-rules: Handle denied/aborted/invalid connections from HTTP rules
9407 - MINOR: stats: Report internal errors in the proxies/listeners/servers stats
9408 - MINOR: contrib/prometheus-exporter: Export internal errors per proxy/server
9409 - MINOR: counters: Remove failed_secu counter and use denied_resp instead
9410 - MINOR: counters: Review conditions to increment counters from analysers
9411 - MINOR: http-ana: Add a txn flag to support soft/strict message rewrites
9412 - MINOR: http-rules: Handle all message rewrites the same way
9413 - MINOR: http-rules: Add a rule to enable or disable the strict rewriting mode
9414 - MEDIUM: http-rules: Enable the strict rewriting mode by default
9415 - REGTEST: Fix format of set-uri HTTP request rule in h1or2_to_h1c.vtc
9416 - MINOR: actions: Add a function pointer to release args used by actions
9417 - MINOR: actions: Regroup some info about HTTP rules in the same struct
9418 - MINOR: http-rules/tcp-rules: Call the defined action function first if defined
9419 - MINOR: actions: Rename the act_flag enum into act_opt
9420 - MINOR: actions: Add flags to configure the action behaviour
9421 - MINOR: actions: Use an integer to set the action type
9422 - MINOR: http-rules: Use a specific action type for some custom HTTP actions
9423 - MINOR: http-rules: Make replace-header and replace-value custom actions
9424 - MINOR: http-rules: Make set-header and add-header custom actions
9425 - MINOR: http-rules: Make set/del-map and add/del-acl custom actions
9426 - MINOR: http-rules: Group all processing of early-hint rule in its case clause
9427 - MEDIUM: http-rules: Make early-hint custom actions
9428 - MINOR: http-rule/tcp-rules: Make track-sc* custom actions
9429 - MINOR: tcp-rules: Make tcp-request capture a custom action
9430 - MINOR: http-rules: Add release functions for existing HTTP actions
9431 - BUG/MINOR: http-rules: Fix memory releases on error path during action parsing
9432 - MINOR: tcp-rules: Add release functions for existing TCP actions
9433 - BUG/MINOR: tcp-rules: Fix memory releases on error path during action parsing
9434 - MINOR: http-htx: Add functions to read a raw error file and convert it in HTX
9435 - MINOR: http-htx: Add functions to create HTX redirect message
9436 - MINOR: config: Use dedicated function to parse proxy's errorfiles
9437 - MINOR: config: Use dedicated function to parse proxy's errorloc
9438 - MEDIUM: http-htx/proxy: Use a global and centralized storage for HTTP error messages
9439 - MINOR: proxy: Register keywords to parse errorfile and errorloc directives
9440 - MINOR: http-htx: Add a new section to create groups of custom HTTP errors
9441 - MEDIUM: proxy: Add a directive to reference an http-errors section in a proxy
9442 - MINOR: http-rules: Update txn flags and status when a deny rule is executed
9443 - MINOR: http-rules: Support an optional status on deny rules for http reponses
9444 - MINOR: http-rules: Use same function to parse request and response deny actions
9445 - MINOR: http-ana: Add an error message in the txn and send it when defined
9446 - MEDIUM: http-rules: Support an optional error message in http deny rules
9447 - REGTEST: Add a strict rewriting mode reg test
9448 - REGEST: Add reg tests about error files
9449 - MINOR: ssl: accept 'verify' bind option with 'set ssl cert'
9450 - BUG/MINOR: ssl: ssl_sock_load_ocsp_response_from_file memory leak
9451 - BUG/MINOR: ssl: ssl_sock_load_issuer_file_into_ckch memory leak
9452 - BUG/MINOR: ssl: ssl_sock_load_sctl_from_file memory leak
9453 - BUG/MINOR: http_htx: Fix some leaks on error path when error files are loaded
9454 - CLEANUP: http-ana: Remove useless test on txn when the error message is retrieved
9455 - BUILD: CI: introduce ARM64 builds
9456 - BUILD: ssl: more elegant anti-replay feature presence check
9457 - MINOR: proxy/http-ana: Add support of extra attributes for the cookie directive
9458 - MEDIUM: dns: use Additional records from SRV responses
9459 - CLEANUP: Consistently `unsigned int` for bitfields
9460 - CLEANUP: pattern: remove the pat_time definition
9461 - BUG/MINOR: http_act: don't check capture id in backend
9462 - BUG/MINOR: ssl: fix build on development versions of openssl-1.1.x
9463
Willy Tarreau2e077f82019-11-25 20:36:16 +010094642019/11/25 : 2.2-dev0
9465 - exact copy of 2.1.0
9466
Willy Tarreaue54b43a2019-11-25 19:47:40 +010094672019/11/25 : 2.1.0
9468 - BUG/MINOR: init: fix set-dumpable when using uid/gid
9469 - MINOR: init: avoid code duplication while setting identify
9470 - BUG/MINOR: ssl: ssl_pkey_info_index ex_data can store a dereferenced pointer
9471 - BUG/MINOR: ssl: fix crt-list neg filter for openssl < 1.1.1
9472 - MINOR: peers: Alway show the table info for disconnected peers.
9473 - MINOR: peers: Add TX/RX heartbeat counters.
9474 - MINOR: peers: Add debugging information to "show peers".
9475 - BUG/MINOR: peers: Wrong null "server_name" data field handling.
9476 - MINOR: ssl/cli: 'abort ssl cert' deletes an on-going transaction
9477 - BUG/MEDIUM: mworker: don't fill the -sf argument with -1 during the reexec
9478 - BUG/MINOR: peers: "peer alive" flag not reset when deconnecting.
9479 - BUILD/MINOR: ssl: fix compiler warning about useless statement
9480 - BUG/MEDIUM: stream-int: Don't loose events on the CS when an EOS is reported
9481 - MINOR: contrib/prometheus-exporter: filter exported metrics by scope
9482 - MINOR: contrib/prometheus-exporter: Add a param to ignore servers in maintenance
9483 - BUILD: debug: Avoid warnings in dev mode with -02 because of some BUG_ON tests
9484 - BUG/MINOR: mux-h1: Fix tunnel mode detection on the response path
9485 - BUG/MINOR: http-ana: Properly catch aborts during the payload forwarding
9486 - DOC: Update http-buffer-request description to remove the part about chunks
9487 - BUG/MINOR: stream-int: Fix si_cs_recv() return value
9488 - DOC: internal: document the init calls
9489 - MEDIUM: dns: Add resolve-opts "ignore-weight"
9490 - MINOR: ssl: ssl_sock_prepare_ctx() return an error code
9491 - MEDIUM: ssl/cli: apply SSL configuration on SSL_CTX during commit
9492 - MINOR: ssl/cli: display warning during 'commit ssl cert'
9493 - MINOR: version: report the version status in "haproxy -v"
9494 - MINOR: version: emit the link to the known bugs in output of "haproxy -v"
9495 - DOC: Add documentation about the use-service action
9496 - MINOR: ssl: fix possible null dereference in error handling
9497 - BUG/MINOR: ssl: fix curve setup with LibreSSL
9498 - BUG/MINOR: ssl: Stop passing dynamic strings as format arguments
9499 - CLEANUP: ssl: check if a transaction exists once before setting it
9500 - BUG/MINOR: cli: fix out of bounds in -S parser
9501 - MINOR: ist: add ist_find_ctl()
9502 - BUG/MAJOR: h2: reject header values containing invalid chars
9503 - BUG/MAJOR: h2: make header field name filtering stronger
9504 - BUG/MAJOR: mux-h2: don't try to decode a response HEADERS frame in idle state
9505 - MINOR: h2: add a function to report H2 error codes as strings
9506 - MINOR: mux-h2/trace: report the connection and/or stream error code
9507 - SCRIPTS: create-release: show the correct origin name in suggested commands
9508 - SCRIPTS: git-show-backports: add "-s" to proposed cherry-pick commands
9509 - BUG/MEDIUM: trace: fix a typo causing an incorrect startup error
9510 - BUILD: reorder the objects in the makefile
9511 - DOC: mention in INSTALL haproxy 2.1 is a stable stable version
9512 - MINOR: version: indicate that this version is stable
9513
Willy Tarreau84681322019-11-15 18:49:37 +010095142019/11/15 : 2.1-dev5
9515 - BUG/MEDIUM: ssl/cli: don't alloc path when cert not found
9516 - BUG/MINOR: ssl/cli: unable to update a certificate without bundle extension
9517 - BUG/MINOR: ssl/cli: fix an error when a file is not found
9518 - MINOR: ssl/cli: replace the default_ctx during 'commit ssl cert'
9519 - DOC: fix date and http_date keywords syntax
9520 - MINOR: peers: Add "log" directive to "peers" section.
9521 - BUG/MEDIUM: mux-h1: Disable splicing for chunked messages
9522 - BUG/MEDIUM: stream: Be sure to support splicing at the mux level to enable it
9523 - MINOR: flt_trace: Rename macros to print trace messages
9524 - MINOR: trace: Add a set of macros to trace events if HA is compiled with debug
9525 - MEDIUM: stream/trace: Register a new trace source with its events
9526 - MINOR: doc: http-reuse connection pool fix
9527 - BUG/MEDIUM: stream: Be sure to release allocated captures for TCP streams
9528 - MINOR: http-ana: Remove the unused function http_reset_txn()
9529 - BUG/MINOR: action: do-resolve now use cached response
9530 - BUG: dns: timeout resolve not applied for valid resolutions
9531 - DOC: management: fix typo on "cache_lookups" stats output
9532 - BUG/MINOR: stream: init variables when the list is empty
9533 - BUG/MEDIUM: tasks: Make tasklet_remove_from_tasklet_list() no matter the tasklet.
9534 - BUG/MINOR: queue/threads: make the queue unlinking atomic
9535 - BUG/MEDIUM: Make sure we leave the session list in session_free().
9536 - CLEANUP: session: slightly simplify idle connection cleanup logic
9537 - MINOR: memory: also poison the area on freeing
9538 - CLEANUP: cli: use srv_shutdown_streams() instead of open-coding it
9539 - CLEANUP: stats: use srv_shutdown_streams() instead of open-coding it
9540 - BUG/MEDIUM: listeners: always pause a listener on out-of-resource condition
9541 - BUILD: contrib/da: remove an "unused" warning
9542 - BUG/MEDIUM: filters: Don't call TCP callbacks for HTX streams
9543 - MEDIUM: filters: Adapt filters API to allow again TCP filtering on HTX streams
9544 - MINOR: freq_ctr: Make the sliding window sums thread-safe
9545 - MINOR: stream: Remove the lock on the proxy to update time stats
9546 - MINOR: counters: Add fields to store the max observed for {q,c,d,t}_time
9547 - MINOR: stats: Report max times in addition of the averages for sessions
9548 - MINOR: contrib/prometheus-exporter: Report metrics about max times for sessions
9549 - BUG/MINOR: contrib/prometheus-exporter: Rename some metrics
9550 - MINOR: contrib/prometheus-exporter: report the number of idle conns per server
9551 - DOC: Add missing stats fields in the management manual
9552 - BUG/MINOR: mux-h1: Properly catch parsing errors on payload and trailers
9553 - BUG/MINOR: mux-h1: Don't set CS_FL_EOS on a read0 when receiving data to pipe
9554 - MINOR: mux-h1: Set EOI on the conn-stream when EOS is reported in TUNNEL state
9555 - MINOR: sink: Set the default max length for a message to BUFSIZE
9556 - MINOR: ring: make the parse function automatically set the handler/release
9557 - BUG/MINOR: log: make "show startup-log" use a ring buffer instead
9558 - MINOR: stick-table: allow sc-set-gpt0 to set value from an expression
9559
Willy Tarreau1753cb52019-11-03 15:43:10 +010095602019/11/03 : 2.1-dev4
9561 - BUG/MINOR: cli: don't call the kw->io_release if kw->parse failed
9562 - BUG/MINOR: mux-h2: Don't pretend mux buffers aren't full anymore if nothing sent
9563 - BUG/MAJOR: stream-int: Don't receive data from mux until SI_ST_EST is reached
9564 - DOC: remove obsolete section about header manipulation
9565 - BUG/MINOR: ssl/cli: cleanup on cli_parse_set_cert error
9566 - MINOR: ssl/cli: rework the 'set ssl cert' IO handler
9567 - BUILD: CI: comment out cygwin build, upgrade various ssl libraries
9568 - DOC: Improve documentation of http-re(quest|sponse) replace-(header|value|uri)
9569 - BUILD/MINOR: tools: shut up the format truncation warning in get_gmt_offset()
9570 - BUG/MINOR: spoe: fix off-by-one length in UUID format string
9571 - BUILD/MINOR: ssl: shut up a build warning about format truncation
9572 - BUILD: do not disable -Wformat-truncation anymore
9573 - MINOR: chunk: add chunk_istcat() to concatenate an ist after a chunk
9574 - Revert "MINOR: istbuf: add b_fromist() to make a buffer from an ist"
9575 - MINOR: mux: Add a new method to get informations about a mux.
9576 - BUG/MEDIUM: stream_interface: Only use SI_ST_RDY when the mux is ready.
9577 - BUG/MEDIUM: servers: Only set SF_SRV_REUSED if the connection if fully ready.
9578 - MINOR: doc: fix busy-polling performance reference
9579 - MINOR: config: allow no set-dumpable config option
9580 - MINOR: init: always fail when setrlimit fails
9581 - MINOR: ssl/cli: rework 'set ssl cert' as 'set/commit'
9582 - CLEANUP: ssl/cli: remove leftovers of bundle/certs (it < 2)
9583 - REGTEST: vtest can now enable mcli with its own flag
9584 - BUG/MINOR: config: Update cookie domain warn to RFC6265
9585 - MINOR: sample: add us/ms support to date/http_date
9586 - BUG/MINOR: ssl/cli: check trash allocation in cli_io_handler_commit_cert()
9587 - BUG/MEDIUM: mux-h2: report no available stream on a connection having errors
9588 - BUG/MEDIUM: mux-h2: immediately remove a failed connection from the idle list
9589 - BUG/MEDIUM: mux-h2: immediately report connection errors on streams
9590 - BUG/MINOR: stats: properly check the path and not the whole URI
9591 - BUG/MINOR: ssl: segfault in cli_parse_set_cert with old openssl/boringssl
9592 - BUG/MINOR: ssl: ckch->chain must be initialized
9593 - BUG/MINOR: ssl: double free on error for ckch->{key,cert}
9594 - MINOR: ssl: BoringSSL ocsp_response does not need issuer
9595 - BUG/MEDIUM: ssl/cli: fix dot research in cli_parse_set_cert
9596 - MINOR: backend: Add srv_name sample fetche
9597 - DOC: Add GitHub issue config.yml
9598
Willy Tarreauc70df532019-10-25 15:48:53 +020095992019/10/25 : 2.1-dev3
9600 - MINOR: mux-h2/trace: missing conn pointer in demux full message
9601 - MINOR: mux-h2: add a per-connection list of blocked streams
9602 - BUILD: ebtree: make eb_is_empty() and eb_is_dup() take a const
9603 - BUG/MEDIUM: mux-h2: do not enforce timeout on long connections
9604 - BUG/MEDIUM: tasks: Don't forget to decrement tasks_run_queue.
9605 - BUG/MINOR: peers: crash on reload without local peer.
9606 - BUG/MINOR: mux-h2/trace: Fix traces on h2c initialization
9607 - MINOR: h1-htx: Update h1_copy_msg_data() to ease the traces in the mux-h1
9608 - MINOR: htx: Adapt htx_dump() to be used from traces
9609 - MINOR: mux-h1/trace: register a new trace source with its events
9610 - MINOR: proxy: Store http-send-name-header in lower case
9611 - MINOR: http: Remove headers matching the name of http-send-name-header option
9612 - BUG/MINOR: mux-h1: Adjust header case when the server name is add to a request
9613 - BUG/MINOR: mux-h1: Adjust header case when chunked encoding is add to a message
9614 - MINOR: mux-h1: Try to wakeup the stream on output buffer allocation
9615 - MINOR: fcgi: Add function to get the string representation of a record type
9616 - MINOR: mux-fcgi/trace: Register a new trace source with its events
9617 - BUG/MEDIUM: cache: make sure not to cache requests with absolute-uri
9618 - DOC: clarify some points around http-send-name-header's behavior
9619 - MEDIUM: mux-h2: support emitting CONTINUATION frames after HEADERS
9620 - BUG/MINOR: mux-h1/mux-fcgi/trace: Fix position of the 4th arg in some traces
9621 - DOC: fix typo in Prometheus exporter doc
9622 - MINOR: h2: clarify the rules for how to convert an H2 request to HTX
9623 - MINOR: htx: Add 2 flags on the start-line to have more info about the uri
9624 - MINOR: http: Add a function to get the authority into a URI
9625 - MINOR: h1-htx: Set the flag HTX_SL_F_HAS_AUTHORITY during the request parsing
9626 - MEDIUM: http-htx: Keep the Host header and the request start-line synchronized
9627 - MINOR: h1-htx: Only use the path of a normalized URI to format a request line
9628 - MEDIUM: h2: make the request parser rebuild a complete URI
9629 - MINOR: h2: report in the HTX flags when the request has an authority
9630 - MEDIUM: mux-h2: do not map Host to :authority on output
9631 - MEDIUM: h2: use the normalized URI encoding for absolute form requests
9632 - MINOR: stats: mention in the help message support for "json" and "typed"
9633 - MINOR: stats: get rid of the ST_CONVDONE flag
9634 - MINOR: stats: replace the ST_* uri_auth flags with STAT_*
9635 - MINOR: stats: always merge the uri_auth flags into the appctx flags
9636 - MINOR: stats: set the appctx flags when initializing the applet only
9637 - MINOR: stats: get rid of the STAT_SHOWADMIN flag
9638 - MINOR: stats: make stats_dump_fields_json() directly take flags
9639 - MINOR: stats: uniformize the calling convention of the dump functions
9640 - MINOR: stats: support the "desc" output format modifier for info and stat
9641 - MINOR: stats: prepare to add a description with each stat/info field
9642 - MINOR: stats: make "show stat" and "show info"
9643 - MINOR: stats: fill all the descriptions for "show info" and "show stat"
9644 - BUG/MEDIUM: applet: always check a fast running applet's activity before killing
9645 - BUILD: stats: fix missing '=' sign in array declaration
9646 - MINOR: lists: add new macro LIST_SPLICE_END_DETACHED
9647 - MINOR: list: add new macro MT_LIST_BEHEAD
9648 - MEDIUM: task: Split the tasklet list into two lists.
9649 - MINOR: h2: Document traps to be avoided on multithread.
9650 - MINOR: lists: Try to use local variables instead of macro arguments.
9651 - MINOR: lists: Fix alignement of \ when relevant.
9652 - MINOR: mux-h2: also support emitting CONTINUATION on trailers
9653 - MINOR: ssl: crt-list do ckchn_lookup
9654 - REORG: ssl: rename ckch_node to ckch_store
9655 - REORG: ssl: move structures to ssl_sock.h
9656 - MINOR: ssl: initialize the sni_keytypes_map as EB_ROOT
9657 - MINOR: ssl: initialize explicitly the sni_ctx trees
9658 - BUG/MINOR: ssl: abort on sni allocation failure
9659 - BUG/MINOR: ssl: free the sni_keytype nodes
9660 - BUG/MINOR: ssl: abort on sni_keytypes allocation failure
9661 - MEDIUM: ssl: introduce the ckch instance structure
9662 - MEDIUM: ssl: split ssl_sock_add_cert_sni()
9663 - MINOR: ssl: ssl_sock_load_ckchn() can properly fail
9664 - MINOR: ssl: ssl_sock_load_multi_ckchs() can properly fail
9665 - MEDIUM: ssl: ssl_sock_load_ckchs() alloc a ckch_inst
9666 - MINOR: ssl: ssl_sock_load_crt_file_into_ckch() is filling from a BIO
9667 - MEDIUM: ssl/cli: 'set ssl cert' updates a certificate from the CLI
9668 - MINOR: ssl: load the sctl in/from the ckch
9669 - MINOR: ssl: load the ocsp in/from the ckch
9670 - BUG/MEDIUM: ssl: NULL dereference in ssl_sock_load_cert_sni()
9671 - BUG/MINOR: ssl: fix build without SSL
9672 - BUG/MINOR: ssl: fix build without multi-cert bundles
9673 - BUILD: ssl: wrong #ifdef for SSL engines code
9674 - BUG/MINOR: ssl: fix OCSP build with BoringSSL
9675 - BUG/MEDIUM: htx: Catch chunk_memcat() failures when HTX data are formatted to h1
9676 - BUG/MINOR: chunk: Fix tests on the chunk size in functions copying data
9677 - BUG/MINOR: mux-h1: Mark the output buffer as full when the xfer is interrupted
9678 - MINOR: mux-h1: Xfer as much payload data as possible during output processing
9679 - CLEANUP: h1-htx: Move htx-to-h1 formatting functions from htx.c to h1_htx.c
9680 - BUG/MINOR: mux-h1: Capture ignored parsing errors
9681 - MINOR: h1: Reject requests with different occurrences of the header host
9682 - MINOR: h1: Reject requests if the authority does not match the header host
9683 - REGTESTS: Send valid URIs in peers reg-tests and fix HA config to avoid warnings
9684 - REGTESTS: Adapt proxy_protocol_random_fail.vtc to match normalized URI too
9685 - BUG/MINOR: WURFL: fix send_log() function arguments
9686 - BUG/MINOR: ssl: fix error messages for OCSP loading
9687 - BUG/MINOR: ssl: can't load ocsp files
9688 - MINOR: version: make the version strings variables, not constants
9689 - BUG/MINOR: http-htx: Properly set htx flags on error files to support keep-alive
9690 - MINOR: htx: Add a flag on HTX to known when a response was generated by HAProxy
9691 - MINOR: mux-h1: Force close mode for proxy responses with an unfinished request
9692 - BUILD: travis-ci: limit build to branches "master" and "next"
9693 - BUILD/MEDIUM: threads: rename thread_info struct to ha_thread_info
9694 - BUILD/SMALL: threads: enable threads on osx
9695 - BUILD/MEDIUM: threads: enable cpu_affinity on osx
9696 - MINOR: istbuf: add b_fromist() to make a buffer from an ist
9697 - BUG/MINOR: cache: also cache absolute URIs
9698 - BUG/MINOR: mworker/ssl: close openssl FDs unconditionally
9699 - BUG/MINOR: tcp: Don't alter counters returned by tcp info fetchers
9700 - BUG/MEDIUM: lists: Handle 1-element-lists in MT_LIST_BEHEAD().
9701 - BUG/MEDIUM: mux_pt: Make sure we don't have a conn_stream before freeing.
9702 - BUG/MEDIUM: tasklet: properly compute the sleeping threads mask in tasklet_wakeup()
9703 - BUG/MAJOR: idle conns: schedule the cleanup task on the correct threads
9704 - BUG/MEDIUM: task: make tasklets either local or shared but not both at once
9705 - Revert e8826ded5fea3593d89da2be5c2d81c522070995.
9706 - BUG/MEDIUM: mux_pt: Don't destroy the connection if we have a stream attached.
9707 - BUG/MEDIUM: mux_pt: Only call the wake emthod if nobody subscribed to receive.
9708 - REGTEST: mcli/mcli_show_info: launch a 'show info' on the master CLI
9709 - CLEANUP: ssl: make ssl_sock_load_cert*() return real error codes
9710 - CLEANUP: ssl: make ssl_sock_load_ckchs() return a set of ERR_*
9711 - CLEANUP: ssl: make cli_parse_set_cert handle errcode and warnings.
9712 - CLEANUP: ssl: make ckch_inst_new_load_(multi_)store handle errcode/warn
9713 - CLEANUP: ssl: make ssl_sock_put_ckch_into_ctx handle errcode/warn
9714 - CLEANUP: ssl: make ssl_sock_load_dh_params handle errcode/warn
9715 - CLEANUP: bind: handle warning label on bind keywords parsing.
9716 - BUG/MEDIUM: ssl: 'tune.ssl.default-dh-param' value ignored with openssl > 1.1.1
9717 - BUG/MINOR: mworker/cli: reload fail with inherited FD
9718 - BUG/MINOR: ssl: Fix fd leak on error path when a TLS ticket keys file is parsed
9719 - BUG/MINOR: stick-table: Never exceed (MAX_SESS_STKCTR-1) when fetching a stkctr
9720 - BUG/MINOR: cache: alloc shctx after check config
9721 - BUG/MINOR: sample: Make the `field` converter compatible with `-m found`
9722 - BUG/MINOR: server: check return value of fopen() in apply_server_state()
9723 - REGTESTS: make seamless-reload depend on 1.9 and above
9724 - REGTESTS: server/cli_set_fqdn requires version 1.8 minimum
9725 - BUG/MINOR: dns: allow srv record weight set to 0
9726 - BUG/MINOR: ssl: fix memcpy overlap without consequences.
9727 - BUG/MINOR: stick-table: fix an incorrect 32 to 64 bit key conversion
9728 - BUG/MEDIUM: pattern: make the pattern LRU cache thread-local and lockless
9729 - BUG/MINOR: mux-h2: do not emit logs on backend connections
9730 - CLEANUP: ssl: remove old TODO commentary
9731 - CLEANUP: ssl: fix SNI/CKCH lock labels
9732 - MINOR: ssl: OCSP functions can load from file or buffer
9733 - MINOR: ssl: load sctl from buf OR from a file
9734 - MINOR: ssl: load issuer from file or from buffer
9735 - MINOR: ssl: split ssl_sock_load_crt_file_into_ckch()
9736 - BUG/MINOR: ssl/cli: fix looking up for a bundle
9737 - MINOR: ssl/cli: update ocsp/issuer/sctl file from the CLI
9738 - MINOR: ssl: update ssl_sock_free_cert_key_and_chain_contents
9739 - MINOR: ssl: copy a ckch from src to dst
9740 - MINOR: ssl: new functions duplicate and free a ckch_store
9741 - MINOR: ssl/cli: assignate a new ckch_store
9742 - MEDIUM: cli/ssl: handle the creation of SSL_CTX in an IO handler
9743 - BUG/MINOR: ssl/cli: fix build of SCTL and OCSP
9744 - BUG/MINOR: ssl/cli: out of bounds when built without ocsp/sctl
9745 - BUG/MINOR: ssl: fix build with openssl < 1.1.0
9746 - BUG/MINOR: ssl: fix build of X509_chain_up_ref() w/ libreSSL
9747 - MINOR: tcp: avoid confusion in time parsing init
9748 - MINOR: debug: add a new "debug dev stream" command
9749 - MINOR: cli/debug: validate addresses using may_access() in "debug dev stream"
9750 - REORG: move CLI access level definitions to cli.h
9751 - MINOR: cli: add an expert mode to hide dangerous commands
9752 - MINOR: debug: make most debug CLI commands accessible in expert mode
9753 - MINOR: stats/debug: maintain a counter of debug commands issued
9754 - BUG/MEDIUM: debug: address a possible null pointer dereference in "debug dev stream"
9755
Willy Tarreaucb8f03f2019-10-01 18:13:09 +020097562019/10/01 : 2.1-dev2
9757 - DOC: management: document reuse and connect counters in the CSV format
9758 - DOC: management: document cache_hits and cache_lookups in the CSV format
9759 - BUG/MINOR: dns: remove irrelevant dependency on a client connection
9760 - MINOR: applet: make appctx use their own pool
9761 - BUG/MEDIUM: checks: Don't attempt to receive data if we already subscribed.
9762 - BUG/MEDIUM: http/htx: unbreak option http_proxy
9763 - BUG/MINOR: backend: do not try to install a mux when the connection failed
9764 - MINOR: mux-h2: Don't adjust anymore the amount of data sent in h2_snd_buf()
9765 - BUG/MINOR: http_fetch: Fix http_auth/http_auth_group when called from TCP rules
9766 - BUG/MINOR: http_htx: Initialize HTX error messages for TCP proxies
9767 - BUG/MINOR: cache/htx: Make maxage calculation HTX aware
9768 - BUG/MINOR: hlua: Make the function txn:done() HTX aware
9769 - MINOR: proto_htx: Directly call htx_check_response_for_cacheability()
9770 - MINOR: proto_htx: Rely on the HTX function to apply a redirect rules
9771 - MINOR: proto_htx: Add the function htx_return_srv_error()
9772 - MINOR: backend/htx: Don't rewind output data to set the sni on a srv connection
9773 - MINOR: proto_htx: Don't stop forwarding when there is a post-connect processing
9774 - DOC: htx: Update comments in HTX files
9775 - CLEANUP: htx: Remove the unsued function htx_add_blk_type_size()
9776 - MINOR: htx: Deduce the number of used blocks from tail and head values
9777 - MINOR: htx: Use an array of char to store HTX blocks
9778 - MINOR: htx: Slightly update htx_dump() to report better messages
9779 - DOC: htx: Add internal documentation about the HTX
9780 - MAJOR: http: Deprecate and ignore the option "http-use-htx"
9781 - MEDIUM: mux-h2: Remove support of the legacy HTTP mode
9782 - CLEANUP: h2: Remove functions converting h2 requests to raw HTTP/1.1 ones
9783 - MINOR: connection: Remove the multiplexer protocol PROTO_MODE_HTX
9784 - MINOR: stream: Rely on HTX analyzers instead of legacy HTTP ones
9785 - MEDIUM: http_fetch: Remove code relying on HTTP legacy mode
9786 - MINOR: config: Remove tests on the option 'http-use-htx'
9787 - MINOR: stream: Remove tests on the option 'http-use-htx' in stream_new()
9788 - MINOR: proxy: Remove tests on the option 'http-use-htx' during H1 upgrade
9789 - MINOR: hlua: Remove tests on the option 'http-use-htx' to reject TCP applets
9790 - MINOR: cache: Remove tests on the option 'http-use-htx'
9791 - MINOR: contrib/prometheus-exporter: Remove tests on the option 'http-use-htx'
9792 - CLEANUP: proxy: Remove the flag PR_O2_USE_HTX
9793 - MINOR: proxy: Don't adjust connection mode of HTTP proxies anymore
9794 - MEDIUM: backend: Remove code relying on the HTTP legacy mode
9795 - MEDIUM: hlua: Remove code relying on the legacy HTTP mode
9796 - MINOR: http_act: Remove code relying on the legacy HTTP mode
9797 - MEDIUM: cache: Remove code relying on the legacy HTTP mode
9798 - MEDIUM: compression: Remove code relying on the legacy HTTP mode
9799 - MINOR: flt_trace: Remove code relying on the legacy HTTP mode
9800 - MINOR: stats: Remove code relying on the legacy HTTP mode
9801 - MAJOR: filters: Remove code relying on the legacy HTTP mode
9802 - MINOR: stream: Remove code relying on the legacy HTTP mode
9803 - MAJOR: http: Remove the HTTP legacy code
9804 - MINOR: hlua: Remove useless test on TX_CON_WANT_* flags
9805 - MINOR: proto_http: Remove unused http txn flags
9806 - MINOR: proto_http: Remove the unused flag HTTP_MSGF_WAIT_CONN
9807 - CLEANUP: proto_http: Group remaining flags of the HTTP transaction
9808 - CLEANUP: channel: Remove the unused flag CF_WAKE_CONNECT
9809 - CLEANUP: proto_http: Remove unecessary includes and comments
9810 - CLEANUP: proto_http: Move remaining code from proto_http.c to proto_htx.c
9811 - REORG: proto_htx: Move HTX analyzers & co to http_ana.{c,h} files
9812 - BUG/MINOR: debug: Remove flags CO_FL_SOCK_WR_ENA/CO_FL_SOCK_RD_ENA
9813 - MINOR: proxy: Remove support of the option 'http-tunnel'
9814 - DOC: config: Update as a result of the legacy HTTP removal
9815 - MEDIUM: config: Remove parsing of req* and rsp* directives
9816 - MINOR: proxy: Remove the unused list of block rules
9817 - MINOR: proxy/http_ana: Remove unused req_exp/rsp_exp and req_add/rsp_add lists
9818 - DOC: config: Remove unsupported req* and rsp* keywords
9819 - MINOR: global: Preset tune.max_http_hdr to its default value
9820 - MINOR: http: Don't store raw HTTP errors in chunks anymore
9821 - BUG/MINOR: session: Emit an HTTP error if accept fails only for H1 connection
9822 - BUG/MINOR: session: Send a default HTTP error if accept fails for a H1 socket
9823 - CLEANUP: mux-h2: Remove unused flags H2_SF_CHNK_*
9824 - BUG/MINOR: checks: do not exit tcp-checks from the middle of the loop
9825 - MINOR: config: Warn only if the option http-use-htx is used with "no" prefix
9826 - BUG/MEDIUM: mux-h1: Trim excess server data at the end of a transaction
9827 - MINOR: connection: add conn_get_src() and conn_get_dst()
9828 - MINOR: frontend: switch to conn_get_{src,dst}() for logging and debugging
9829 - MINOR: backend: switch to conn_get_{src,dst}() for port and address mapping
9830 - MINOR: ssl: switch to conn_get_dst() to retrieve the destination address
9831 - MINOR: tcp: replace various calls to conn_get_{from,to}_addr with conn_get_{src,dst}
9832 - MINOR: stream-int: use conn_get_{src,dst} in conn_si_send_proxy()
9833 - MINOR: stream/cli: use conn_get_{src,dst} in "show sess" and "show peers" output
9834 - MINOR: log: use conn_get_{dst,src}() to retrieve the cli/frt/bck/srv/ addresses
9835 - MINOR: http/htx: use conn_get_dst() to retrieve the destination address
9836 - MINOR: lua: use conn_get_{src,dst} to retrieve connection addresses
9837 - MINOR: http: check the source address via conn_get_src() in sample fetch functions
9838 - CLEANUP: connection: remove the now unused conn_get_{from,to}_addr()
9839 - MINOR: connection: add new src and dst fields
9840 - MINOR: connection: use conn->{src,dst} instead of &conn->addr.{from,to}
9841 - MINOR: ssl-sock: use conn->dst instead of &conn->addr.to
9842 - MINOR: lua: switch to conn->dst for a connection's target address
9843 - MINOR: peers: use conn->dst for the peer's target address
9844 - MINOR: htx: switch from conn->addr.{from,to} to conn->{src,dst}
9845 - MINOR: stream: switch from conn->addr.{from,to} to conn->{src,dst}
9846 - MINOR: proxy: switch to conn->src in error snapshots
9847 - MINOR: session: use conn->src instead of conn->addr.from
9848 - MINOR: tcp: replace conn->addr.{from,to} with conn->{src,dst}
9849 - MINOR: unix: use conn->dst for the target address in ->connect()
9850 - MINOR: sockpair: use conn->dst for the target address in ->connect()
9851 - MINOR: log: use conn->{src,dst} instead of conn->addr.{from,to}
9852 - MINOR: checks: replace conn->addr.to with conn->dst
9853 - MINOR: frontend: switch from conn->addr.{from,to} to conn->{src,dst}
9854 - MINOR: http: convert conn->addr.from to conn->src in sample fetches
9855 - MEDIUM: backend: turn all conn->addr.{from,to} to conn->{src,dst}
9856 - MINOR: connection: create a new pool for struct sockaddr_storage
9857 - MEDIUM: connection: make sure all address producers allocate their address
9858 - MAJOR: connection: remove the addr field
9859 - MINOR: connection: don't use clear_addr() anymore, just release the address
9860 - MINOR: stream: add a new target_addr entry in the stream structure
9861 - MAJOR: stream: store the target address into s->target_addr
9862 - MINOR: peers: now remove the remote connection setup code
9863 - MEDIUM: lua: do not allocate the remote connection anymore
9864 - MEDIUM: backend: always release any existing prior connection in connect_server()
9865 - MEDIUM: backend: remove impossible cases from connect_server()
9866 - BUG/MINOR: mux-h1: Close server connection if input data remains in h1_detach()
9867 - BUG/MEDIUM: tcp-checks: do not dereference inexisting conn_stream
9868 - BUG/MINOR: http_ana: Be sure to have an allocated buffer to generate an error
9869 - BUG/MINOR: http_htx: Support empty errorfiles
9870 - BUG/CRITICAL: http_ana: Fix parsing of malformed cookies which start by a delimiter
9871 - BUG/MEDIUM: protocols: add a global lock for the init/deinit stuff
9872 - BUG/MINOR: proxy: always lock stop_proxy()
9873 - MEDIUM: mux-h1: Add the support of headers adjustment for bogus HTTP/1 apps
9874 - BUILD: threads: add the definition of PROTO_LOCK
9875 - BUG/MEDIUM: lb-chash: Fix the realloc() when the number of nodes is increased
9876 - BUG/MEDIUM: streams: Don't switch the SI to SI_ST_DIS if we have data to send.
9877 - BUG/MINOR: log: make sure writev() is not interrupted on a file output
9878 - DOC: improve the wording in CONTRIBUTING about how to document a bug fix
9879 - MEDIUM: h1: Don't try to subscribe if we managed to read data.
9880 - MEDIUM: h1: Don't wake the H1 tasklet if we got the whole request.
9881 - REGTESTS: checks: exclude freebsd target for tcp-check_multiple_ports.vtc
9882 - BUG/MINOR: hlua/htx: Reset channels analyzers when txn:done() is called
9883 - BUG/MEDIUM: hlua: Check the calling direction in lua functions of the HTTP class
9884 - MINOR: hlua: Don't set request analyzers on response channel for lua actions
9885 - MINOR: hlua: Add a flag on the lua txn to know in which context it can be used
9886 - BUG/MINOR: hlua: Only execute functions of HTTP class if the txn is HTTP ready
9887 - BUG/MINOR: htx: Fix free space addresses calculation during a block expansion
9888 - MINOR: ssl: merge ssl_sock_load_cert_file() and ssl_sock_load_cert_chain_file()
9889 - MEDIUM: ssl: use cert_key_and_chain struct in ssl_sock_load_cert_file()
9890 - MEDIUM: ssl: split the loading of the certificates
9891 - MEDIUM: ssl: lookup and store in a ckch_node tree
9892 - MEDIUM: ssl: load DH param in struct cert_key_and_chain
9893 - BUG/MAJOR: queue/threads: avoid an AB/BA locking issue in process_srv_queue()
9894 - MINOR: ssl: use STACK_OF for chain certs
9895 - MINOR: ssl: add extra chain compatibility
9896 - MINOR: ssl: check private key consistency in loading
9897 - MINOR: ssl: do not look at DHparam with OPENSSL_NO_DH
9898 - CLEANUP: ssl: ssl_sock_load_crt_file_into_ckch
9899 - MINOR: ssl: clean ret variable in ssl_sock_load_ckchn
9900 - MAJOR: fd: Get rid of the fd cache.
9901 - MEDIUM: pollers: Remember the state for read and write for each threads.
9902 - MEDIUM: mux-h2: don't try to read more than needed
9903 - BUG/BUILD: ssl: fix build with openssl < 1.0.2
9904 - BUG/MEDIUM: ssl: does not try to free a DH in a ckch
9905 - BUG/MINOR: debug: fix a small race in the thread dumping code
9906 - MINOR: wdt: also consider that waiting in the thread dumper is normal
9907 - REGTESTS: checks: make 4be_1srv_health_checks more reliable
9908 - BUILD: ssl: BoringSSL add EVP_PKEY_base_id
9909 - BUG/MEDIUM: ssl: don't free the ckch in multi-cert bundle
9910 - BUG/MINOR: ssl: fix ressource leaks on error
9911 - BUG/MEDIUM: lb-chash: Ensure the tree integrity when server weight is increased
9912 - BUG/MAJOR: http/sample: use a static buffer for raw -> htx conversion
9913 - BUG/MINOR: stream-int: make sure to always release empty buffers after sending
9914 - BUG/MEDIUM: ssl: open the right path for multi-cert bundle
9915 - BUG/MINOR: stream-int: also update analysers timeouts on activity
9916 - BUG/MEDIUM: mux-h2: unbreak receipt of large DATA frames
9917 - BUG/MEDIUM: mux-h2: split the stream's and connection's window sizes
9918 - BUG/MEDIUM: proxy: Make sure to destroy the stream on upgrade from TCP to H2
9919 - DOC: Add 'Question.md' issue template, discouraging asking questions
9920 - BUG/MEDIUM: fd: Always reset the polled_mask bits in fd_dodelete().
9921 - BUG/MEDIUM: pollers: Clear the poll_send bits as well.
9922 - BUILD: travis-ci: enable daily Coverity scan
9923 - BUG/MINOR: mux-h2: don't refrain from sending an RST_STREAM after another one
9924 - BUG/MINOR: mux-h2: use CANCEL, not STREAM_CLOSED in h2c_frt_handle_data()
9925 - BUG/MINOR: mux-h2: do not send REFUSED_STREAM on aborted uploads
9926 - BUG/MEDIUM: mux-h2: do not recheck a frame type after a state transition
9927 - BUG/MINOR: mux-h2: always send stream window update before connection's
9928 - BUG/MINOR: mux-h2: always reset rcvd_s when switching to a new frame
9929 - BUG/MEDIUM: checks: make sure to close nicely when we're the last to speak
9930 - BUG/MEDIUM: stick-table: Wrong stick-table backends parsing.
9931 - CLEANUP: mux-h2: move the demuxed frame check code in its own function
9932 - MINOR: cache: add method to cache hash
9933 - MINOR: cache: allow caching of OPTIONS request
9934 - BUG/MINOR: ssl: fix 0-RTT for BoringSSL
9935 - MINOR: ssl: ssl_fc_has_early should work for BoringSSL
9936 - BUG/MINOR: pools: don't mark the thread harmless if already isolated
9937 - BUG/MINOR: buffers/threads: always clear a buffer's head before releasing it
9938 - CLEANUP: buffer: replace b_drop() with b_free()
9939 - CLEANUP: task: move the cpu_time field to the task-only part
9940 - MINOR: cli: add two new states to print messages on the CLI
9941 - MINOR: cli: add cli_msg(), cli_err(), cli_dynmsg(), cli_dynerr()
9942 - CLEANUP: cli: replace all occurrences of manual handling of return messages
9943 - BUG/MEDIUM: proxy: Don't forget the SF_HTX flag when upgrading TCP=>H1+HTX.
9944 - BUG/MEDIUM: proxy: Don't use cs_destroy() when freeing the conn_stream.
9945 - BUG/MINOR: lua: fix setting netfilter mark
9946 - BUG/MINOR: Fix prometheus '# TYPE' and '# HELP' headers
9947 - BUG/MEDIUM: lua: Fix test on the direction to set the channel exp timeout
9948 - BUG/MINOR: stats: Wait the body before processing POST requests
9949 - MINOR: fd: make sure to mark the thread as not stuck in fd_update_events()
9950 - BUG/MEDIUM: mux_pt: Don't call unsubscribe if we did not subscribe.
9951 - BUILD: travis-ci: trigger non-mainstream configurations only on daily builds.
9952 - MINOR: debug: indicate the applet name when the task is task_run_applet()
9953 - MINOR: tools: add append_prefixed_str()
9954 - MINOR: lua: export applet and task handlers
9955 - MEDIUM: debug: make the thread dump code show Lua backtraces
9956 - BUG/MEDIUM: h1: Always try to receive more in h1_rcv_buf().
9957 - MINOR: list: add LIST_SPLICE() to merge one list into another
9958 - MINOR: tools: add a DEFNULL() macro to use NULL for empty args
9959 - REORG: trace: rename trace.c to calltrace.c and mention it's not thread-safe
9960 - MINOR: sink: create definitions a minimal code for event sinks
9961 - MINOR: sink: add a support for file descriptors
9962 - MINOR: trace: start to create a new trace subsystem
9963 - MINOR: trace: add allocation of buffer-sized trace buffers
9964 - MINOR: trace/cli: register the "trace" CLI keyword to list the sources
9965 - MINOR: trace/cli: parse the "level" argument to configure the trace verbosity
9966 - MINOR: trace/cli: add "show trace" to report trace state and statistics
9967 - MINOR: trace: implement a very basic trace() function
9968 - MINOR: trace: add the file name and line number in the prefix
9969 - MINOR: trace: make trace() now also take a level in argument
9970 - MINOR: trace: implement a call to a decode function
9971 - MINOR: trace: add per-level macros to produce traces
9972 - MINOR: trace: add a definition of typed arguments to trace()
9973 - MINOR: trace: make sure to always stop the locking when stopping or pausing
9974 - MINOR: trace: add the possibility to lock on some arguments
9975 - MINOR: trace: parse the "lock" argument to trace
9976 - MINOR: trace: retrieve useful pointers and enforce lock-on
9977 - DOC: management: document the "trace" and "show trace" commands
9978 - BUILD: trace: make the lockon_ptr const to silence a warning without threads
9979 - BUG/MEDIUM: mux-h1: do not truncate trailing 0CRLF on buffer boundary
9980 - BUG/MEDIUM: mux-h1: do not report errors on transfers ending on buffer full
9981 - DOC: fixed typo in management.txt
9982 - BUG/MINOR: mworker: disable SIGPROF on re-exec
9983 - BUG/MEDIUM: listener/threads: fix an AB/BA locking issue in delete_listener()
9984 - BUG/MEDIUM: url32 does not take the path part into account in the returned hash.
9985 - MINOR: backend: Add srv_queue converter
9986 - MINOR: sink: set the fd-type sinks to non-blocking
9987 - MINOR: tools: add a function varint_bytes() to report the size of a varint
9988 - MINOR: buffer: add functions to read/write varints from/to buffers
9989 - MINOR: fd: add fd_write_frag_line() to send a fragmented line to an fd
9990 - MINOR: sink: now call the generic fd write function
9991 - MINOR: ring: add a new mechanism for retrieving/storing ring data in buffers
9992 - MINOR: ring: add a ring_write() function
9993 - MINOR: ring: add a generic CLI io_handler to dump a ring buffer
9994 - MINOR: sink: add support for ring buffers
9995 - MINOR: sink: implement "show events" to show supported sinks and dump the rings
9996 - MINOR: sink: now report the number of dropped events on output
9997 - MINOR: trace: support a default callback for the source
9998 - MINOR: trace: extend the source location to 13 chars
9999 - MINOR: trace: show thread number and source name in the trace
10000 - MINOR: trace: change the TRACE() calling convention to put the args and cb last
10001 - MINOR: connection: add the fc_pp_authority fetch -- authority TLV, from PROXYv2
10002 - MINOR: tools: add a generic struct "name_desc" for name-description pairs
10003 - MINOR: trace: replace struct trace_lockon_args with struct name_desc
10004 - MINOR: trace: change the "payload" level to "data" and move it
10005 - MINOR: trace: prepend the function name for developer level traces
10006 - MINOR: trace: also report the trace level in the output
10007 - MINOR: trace: change the detail_level to per-source verbosity
10008 - MINOR: mux-h2/trace: register a new trace source with its events
10009 - MINOR: mux-h2/trace: add the default decoding callback
10010 - MEDIUM: mux-h2/trace: add lots of traces all over the code
10011 - MINOR: mux-h2: add functions to convert an h2c/h2s state to a string
10012 - MINOR: mux-h2/trace: add a new verbosity level "clean"
10013 - MINOR: mux-h2/trace: only decode the start-line at verbosity other than "minimal"
10014 - MINOR: mux-h2/trace: always report the h2c/h2s state and flags
10015 - MINOR: mux-h2/trace: report h2s->id before h2c->dsi for the stream ID
10016 - CLEANUP: mux-h2/trace: reformat the "received" messages for better alignment
10017 - CLEANUP: mux-h2/trace: lower-case event names
10018 - MINOR: trace: extend default event names to 12 chars
10019 - BUG/MINOR: ring: fix the way watchers are counted
10020 - MINOR: cli: extend the CLI context with a list and two offsets
10021 - MINOR: mux-h2/trace: report the connection pointer and state before FRAME_H
10022 - MEDIUM: ring: implement a wait mode for watchers
10023 - BUG/MEDIUM: mux-h2/trace: do not dereference h2c->conn after failed idle
10024 - BUG/MEDIUM: mux-h2/trace: fix missing braces added with traces
10025 - BUG/MINOR: ring: b_peek_varint() returns a uint64_t, not a size_t
10026 - CLEANUP: fd: remove leftovers of the fdcache
10027 - MINOR: fd: add a new "initialized" bit in the fdtab struct
10028 - MINOR: fd/log/sink: make the non-blocking initialization depend on the initialized bit
10029 - MEDIUM: log: use the new generic fd_write_frag_line() function
10030 - MINOR: log: add a target type instead of hacking the address family
10031 - MEDIUM: log: add support for logging to a ring buffer
10032 - MINOR: send-proxy-v2: sends authority TLV according to TLV received
10033 - MINOR: build: add linux-glibc-legacy build TARGET
10034 - BUG/MEDIUM: peers: local peer socket not bound.
10035 - BUILD: connection: silence gcc warning with extra parentheses
10036 - BUG/MINOR: http-ana: Reset response flags when 1xx messages are handled
10037 - BUG/MINOR: h1: Properly reset h1m when parsing is restarted
10038 - BUG/MINOR: mux-h1: Fix size evaluation of HTX messages after headers parsing
10039 - BUG/MINOR: mux-h1: Don't stop anymore input processing when the max is reached
10040 - BUG/MINOR: mux-h1: Be sure to update the count before adding EOM after trailers
10041 - BUG/MEDIUM: cache: Properly copy headers splitted on several shctx blocks
10042 - BUG/MEDIUM: cache: Don't cache objects if the size of headers is too big
10043 - BUG/MINOR: mux-h1: Fix a possible null pointer dereference in h1_subscribe()
10044 - MEDIUM: fd: remove the FD_EV_POLLED status bit
10045 - MEDIUM: fd: simplify the fd_*_{recv,send} functions using BTS/BTR
10046 - MINOR: fd: make updt_fd_polling() a normal function
10047 - CONTRIB: debug: add new program "poll" to test poll() events
10048 - BUG/MINOR: checks: stop polling for write when we have nothing left to send
10049 - BUG/MINOR: checks: start sending the request right after connect()
10050 - BUG/MINOR: checks: make __event_chk_srv_r() report success before closing
10051 - BUG/MINOR: checks: do not uselessly poll for reads before the connection is up
10052 - BUG/MINOR: mux-h1: Fix a UAF in cfg_h1_headers_case_adjust_postparser()
10053 - BUILD: CI: add basic CentOS 6 cirrus build
10054 - MINOR: contrib/prometheus-exporter: Report DRAIN/MAINT/NOLB status for servers
10055 - BUG/MINOR: lb/leastconn: ignore the server weights for empty servers
10056 - BUG/MAJOR: ssl: ssl_sock was not fully initialized.
10057 - MEDIUM: fd: mark the FD as ready when it's inserted
10058 - MINOR: fd: add two new calls fd_cond_{recv,send}()
10059 - MEDIUM: connection: enable reading only once the connection is confirmed
10060 - MINOR: fd: add two flags ERR and SHUT to describe FD states
10061 - MEDIUM: fd: do not use the FD_POLL_* flags in the pollers anymore
10062 - BUG/MEDIUM: connection: don't keep more idle connections than ever needed
10063 - MINOR: stats: report the number of idle connections for each server
10064 - BUILD: CI: skip reg-tests/connection/proxy_protocol_random_fail.vtc on CentOS 6
10065 - BUILD/MINOR: auth: enabling for osx
10066 - BUG/MINOR: listener: Fix a possible null pointer dereference
10067 - BUG/MINOR: ssl: always check for ssl connection before getting its XPRT context
10068 - MINOR: stats: Add JSON export from the stats page
10069 - BUG/MINOR: filters: Properly set the HTTP status code on analysis error
10070 - MINOR: sample: Add UUID-fetch
10071 - CLEANUP: mux-h2: Remove unused flag H2_SF_DATA_CHNK
10072 - BUG/MINOR: acl: Fix memory leaks when an ACL expression is parsed
10073 - BUG/MINOR: backend: Fix a possible null pointer dereference
10074 - BUG/MINOR: Missing stat_field_names (since f21d17bb)
10075 - BUG/MEDIUM: stick-table: Properly handle "show table" with a data type argument
10076 - BUILD: CI: temporarily disable ASAN
10077 - MINOR: htx: Add a flag on HTX message to report processing errors
10078 - MINOR: mux-h1: Report a processing error during output processing
10079 - MINOR: http-ana: Handle HTX errors first during message analysis
10080 - MINOR: http-ana: Remove err_state field from http_msg
10081 - MINOR: config: Support per-proxy and per-server deinit functions callbacks
10082 - MINOR: config: Support per-proxy and per-server post-check functions callbacks
10083 - MINOR: http_fetch: Add sample fetches to get auth method/user/pass
10084 - MINOR: istbuf: Add the function b_isteqi()
10085 - MINOR: log: Provide a function to emit a log for an application
10086 - MINOR: http: Add function to parse value of the header Status
10087 - MEDIUM: mux-h1/h1-htx: move HTX convertion of H1 messages in dedicated file
10088 - MINOR: h1-htx: Use the same function to copy message payload in all cases
10089 - MINOR: muxes/htx: Ignore pseudo header during message formatting
10090 - MINOR: fcgi: Add code related to FCGI protocol
10091 - MEDIUM: fcgi-app: Add FCGI application and filter
10092 - MEDIUM: mux-fcgi: Add the FCGI multiplexer
10093 - MINOR: doc: Add documentation about the FastCGI support
10094 - BUG/MINOR: build: Fix compilation of mux_fcgi.c when compiled without SSL
10095 - BUILD: CI: install golang-1.13 when building BoringSSL
10096 - BUG/MINOR: mux-h2: Be sure to have a connection to unsubcribe
10097 - BUG/MINOR: mux-fcgi: Be sure to have a connection to unsubcribe
10098 - CLEANUP: fcgi-app: Remove useless test on fcgi_conf pointer
10099 - BUG/MINOR: mux-fcgi: Don't compare the filter name in its parsing callback
10100 - BUG/MAJOR: mux-h2: Handle HEADERS frames received after a RST_STREAM frame
10101 - BUG/MEDIUM: check/threads: make external checks run exclusively on thread 1
10102 - MEDIUM: list: Separate "locked" list from regular list.
10103 - MINOR: mt_lists: Add new macroes.
10104 - MEDIUM: servers: Use LIST_DEL_INIT() instead of LIST_DEL().
10105 - MINOR: mt_lists: Do nothing in MT_LIST_ADD/MT_LIST_ADDQ if already in list.
10106 - MINOR: mt_lists: Give MT_LIST_ADD, MT_LIST_ADDQ and MT_LIST_DEL a return value.
10107 - MEDIUM: tasklets: Make the tasklet list a struct mt_list.
10108 - TESTS: Add a stress-test for mt_lists.
10109 - BUILD: travis-ci: add PCRE2, SLZ build
10110 - BUG/MINOR: build: fix event ports (Solaris)
10111 - BUG/MEDIUM: namespace: fix fd leak in master-worker mode
10112 - OPTIM: listeners: use tasklets for the multi-queue rings
10113 - BUILD: makefile: work around yet another GCC fantasy (-Wstring-plus-int)
10114 - BUG/MINOR: stream-int: Process connection/CS errors first in si_cs_send()
10115 - BUG/MEDIUM: stream-int: Process connection/CS errors during synchronous sends
10116 - BUG/MEDIUM: checks: make sure the connection is ready before trying to recv
10117 - CLEANUP: task: remove impossible test
10118 - CLEANUP: task: cache the task_per_thread pointer
10119 - MINOR: task: split the tasklet vs task code in process_runnable_tasks()
10120 - MINOR: task: introduce a thread-local "sched" variable for local scheduler stuff
10121 - CLEANUP: mux-fcgi: Remove the unused function fcgi_strm_id()
10122 - BUG/MINOR: mux-fcgi: Use a literal string as format in app_log()
10123 - BUG/MEDIUM: tasklets: Make sure we're waking the target thread if it sleeps.
10124 - MINOR: h2/trace: indicate 'F' or 'B' to locate the side of an h2c in traces
10125 - MINOR: h2/trace: report the frame type when known
10126 - BUG/MINOR: mux-h2: do not wake up blocked streams before the mux is ready
10127 - BUG/MEDIUM: namespace: close open namespaces during soft shutdown
10128 - MINOR: time: add timeofday_as_iso_us() to return instant time as ISO
10129 - MINOR: sink: finally implement support for SINK_FMT_{TIMED,ISO}
10130 - MINOR: sink: change ring buffer "buf0"'s format to "timed"
10131 - BUG/MEDIUM: mux-h2: don't reject valid frames on closed streams
10132 - BUG/MINOR: mux-fcgi: silence a gcc warning about null dereference
10133 - BUG/MINOR: mux-h2: Fix missing braces because of traces in h2_detach()
10134 - BUG/MINOR: mux-h2: Use the dummy error when decoding headers for a closed stream
10135 - BUG/MAJOR: mux_h2: Don't consume more payload than received for skipped frames
10136 - BUG/MINOR: mux-h1: Do h2 upgrade only on the first request
10137 - BUG/MEDIUM: spoe: Use a different engine-id per process
10138 - MINOR: spoe: Improve generation of the engine-id
10139 - MINOR: spoe: Support the async mode with several threads
10140 - MINOR: http: Add server name header from HTTP multiplexers
10141 - CLEANUP: http-ana: Remove the unused function http_send_name_header()
10142 - MINOR: stats: Add the support of float fields in stats
10143 - BUG/MINOR: contrib/prometheus-exporter: Return the time averages in seconds
10144 - DOC: Fix documentation about the cli command to get resolver stats
10145 - BUG/MEDIUM: fcgi: fix missing list tail in sample fetch registration
10146 - BUG/MINOR: stats: Add a missing break in a switch statement
10147 - BUG/MINOR: lua: Properly initialize the buffer's fields for string samples in hlua_lua2(smp|arg)
10148 - CLEANUP: lua: Get rid of obsolete (size_t *) cast in hlua_lua2(smp|arg)
10149 - BUG/MEDIUM: lua: Store stick tables into the sample's `t` field
10150 - CLEANUP: proxy: Remove `proxy_tbl_by_name`
10151 - BUILD: ssl: fix a warning when built with openssl < 1.0.2
10152 - DOC: replace utf-8 quotes by ascii ones
10153 - BUG/MEDIUM: fd: HUP is an error only when write is active
10154 - BUG/MINOR: action: do-resolve does not yield on requests with body
10155 - Revert "MINOR: cache: allow caching of OPTIONS request"
10156
Willy Tarreaudb514072019-07-16 19:15:28 +0200101572019/07/16 : 2.1-dev1
10158 - BUG/MEDIUM: h2/htx: Update data length of the HTX when the cookie list is built
10159 - DOC: this is a development branch again.
10160 - MEDIUM: Make 'block' directive fatal
10161 - MEDIUM: Make 'redispatch' directive fatal
10162 - MEDIUM: Make '(cli|con|srv)timeout' directive fatal
10163 - MEDIUM: Remove 'option independant-streams'
10164 - MINOR: sample: Add sha2([<bits>]) converter
10165 - MEDIUM: server: server-state global file stored in a tree
10166 - BUG/MINOR: lua/htx: Make txn.req_req_* and txn.res_rep_* HTX aware
10167 - BUG/MINOR: mux-h1: Add the header connection in lower case in outgoing messages
10168 - BUG/MEDIUM: compression: Set Vary: Accept-Encoding for compressed responses
10169 - MINOR: htx: Add the function htx_change_blk_value_len()
10170 - BUG/MEDIUM: htx: Fully update HTX message when the block value is changed
10171 - BUG/MEDIUM: mux-h2: Reset padlen when several frames are demux
10172 - BUG/MEDIUM: mux-h2: Remove the padding length when a DATA frame size is checked
10173 - BUG/MEDIUM: lb_fwlc: Don't test the server's lb_tree from outside the lock
10174 - BUG/MAJOR: sample: Wrong stick-table name parsing in "if/unless" ACL condition.
10175 - BUILD: mworker: silence two printf format warnings around getpid()
10176 - BUILD: makefile: use :space: instead of digits to count commits
10177 - BUILD: makefile: adjust the sed expression of "make help" for solaris
10178 - BUILD: makefile: do not rely on shell substitutions to determine git version
10179 - BUG/MINOR: mworker-prog: Fix segmentation fault during cfgparse
10180 - BUG/MINOR: spoe: Fix memory leak if failing to allocate memory
10181 - BUG/MEDIUM: mworker: don't call the thread and fdtab deinit
10182 - BUG/MEDIUM: stream_interface: Don't add SI_FL_ERR the state is < SI_ST_CON.
10183 - BUG/MEDIUM: connections: Always add the xprt handshake if needed.
10184 - BUG/MEDIUM: ssl: Don't do anything in ssl_subscribe if we have no ctx.
10185 - BUG/MEDIUM: mworker/cli: command pipelining doesn't work anymore
10186 - BUG/MINOR: htx: Save hdrs_bytes when the HTX start-line is replaced
10187 - BUG/MAJOR: mux-h1: Don't crush trash chunk area when outgoing message is formatted
10188 - BUG/MINOR: memory: Set objects size for pools in the per-thread cache
10189 - BUG/MINOR: log: Detect missing sampling ranges in config
10190 - BUG/MEDIUM: proto_htx: Don't add EOM on 1xx informational messages
10191 - BUG/MEDIUM: mux-h1: Use buf_room_for_htx_data() to detect too large messages
10192 - BUG/MINOR: mux-h1: Make format errors during output formatting fatal
10193 - BUG/MEDIUM: ssl: Don't attempt to set alpn if we're not using SSL.
10194 - BUG/MEDIUM: mux-h1: Always release H1C if a shutdown for writes was reported
10195 - BUG/MINOR: mworker/cli: don't output a \n before the response
10196 - BUG/MEDIUM: checks: unblock signals in external checks
10197 - BUG/MINOR: mux-h1: Skip trailers for non-chunked outgoing messages
10198 - BUG/MINOR: mux-h1: Don't return the empty chunk on HEAD responses
10199 - BUG/MEDIUM: connections: Always call shutdown, with no linger.
10200 - BUG/MEDIUM: checks: Make sure the tasklet won't run if the connection is closed.
10201 - BUG/MINOR: contrib/prometheus-exporter: Don't use channel_htx_recv_max()
10202 - BUG/MINOR: hlua: Don't use channel_htx_recv_max()
10203 - BUG/MEDIUM: channel/htx: Use the total HTX size in channel_htx_recv_limit()
10204 - BUG/MINOR: hlua/htx: Respect the reserve when HTX data are sent
10205 - BUG/MINOR: contrib/prometheus-exporter: Respect the reserve when data are sent
10206 - BUG/MEDIUM: connections: Make sure we're unsubscribe before upgrading the mux.
10207 - BUG/MEDIUM: servers: Authorize tfo in default-server.
10208 - BUG/MEDIUM: sessions: Don't keep an extra idle connection in sessions.
10209 - MINOR: server: Add "no-tfo" option.
10210 - BUG/MINOR: contrib/prometheus-exporter: Don't try to add empty data blocks
10211 - MINOR: action: Add the return code ACT_RET_DONE for actions
10212 - BUG/MEDIUM: http/applet: Finish request processing when a service is registered
10213 - BUG/MEDIUM: lb_fas: Don't test the server's lb_tree from outside the lock
10214 - BUG/MEDIUM: mux-h1: Handle TUNNEL state when outgoing messages are formatted
10215 - BUG/MINOR: mux-h1: Don't process input or ouput if an error occurred
10216 - MINOR: stream-int: Factorize processing done after sending data in si_cs_send()
10217 - BUG/MEDIUM: stream-int: Don't rely on CF_WRITE_PARTIAL to unblock opposite si
10218 - DOC: contrib: spoa_server Add some hints for building spoa_server
10219 - DOC: Fix typo in intro.txt
10220 - BUG/MEDIUM: servers: Don't forget to set srv_cs to NULL if we can't reuse it.
10221 - BUG/MINOR: ssl: revert empty handshake detection in OpenSSL <= 1.0.2
10222 - MINOR: pools: release the pool's lock during the malloc/free calls
10223 - MINOR: pools: always pre-initialize allocated memory outside of the lock
10224 - MINOR: pools: make the thread harmless during the mmap/munmap syscalls
10225 - BUG/MEDIUM: fd/threads: fix excessive CPU usage on multi-thread accept
10226 - BUG/MINOR: server: Be really able to keep "pool-max-conn" idle connections
10227 - BUG/MEDIUM: checks: Don't attempt to read if we destroyed the connection.
10228 - BUG/MEDIUM: da: cast the chunk to string.
10229 - DOC: Fix typos and grammer in configuration.txt
10230 - CLEANUP: proto_tcp: Remove useless header inclusions.
10231 - BUG/MEDIUM: servers: Fix a race condition with idle connections.
10232 - MINOR: task: introduce work lists
10233 - BUG/MAJOR: listener: fix thread safety in resume_listener()
10234 - BUG/MEDIUM: mux-h1: Don't release h1 connection if there is still data to send
10235 - BUG/MINOR: mux-h1: Correctly report Ti timer when HTX and keepalives are used
10236 - BUG/MEDIUM: streams: Don't give up if we couldn't send the request.
10237 - BUG/MEDIUM: streams: Don't redispatch with L7 retries if redispatch isn't set.
10238 - BUG/MINOR: mux-pt: do not pretend there's more data after a read0
10239 - BUG/MEDIUM: tcp-check: unbreak multiple connect rules again
10240 - MEDIUM: mworker-prog: Add user/group options to program section
10241 - REGTESTS: checks: tcp-check connect to multiple ports
10242 - BUG/MEDIUM: threads: cpu-map designating a single thread/process are ignored
10243
Willy Tarreau9dc6b972019-06-16 21:49:47 +0200102442019/06/16 : 2.1-dev0
10245 - exact copy of 2.0.0
10246
Willy Tarreauba236302019-06-16 20:00:26 +0200102472019/06/16 : 2.0.0
10248 - MINOR: fd: Don't use atomic operations when it's not needed.
10249 - DOC: mworker-prog: documentation for the program section
10250 - MINOR: http: add a new "http-request replace-uri" action
10251 - BUG/MINOR: 51d/htx: The _51d_fetch method, and the methods it calls are now HTX aware.
10252 - MINOR: 51d: Added dummy libraries for the 51Degrees module for testing.
10253 - MINOR: mworker: change formatting in uptime field of "show proc"
10254 - MINOR: mworker: add the HAProxy version in "show proc"
10255 - MINOR: doc: Remove -Ds option in man page
10256 - MINOR: doc: add master-worker in the man page
10257 - MINOR: doc: mention HAPROXY_LOCALPEER in the man
10258 - BUILD: Silence gcc warning about unused return value
10259 - CLEANUP: 51d: move the 51d dummy lib to contrib/51d/src to match the real lib
10260 - BUILD: travis-ci: add 51Degree device detection, update openssl to 1.1.1c
10261 - MINOR: doc: update the manpage and usage message about -S
10262 - BUILD/MINOR: 51d: Updated build registration output to indicate thatif the library is a dummy one or not.
10263 - BUG/MEDIUM: h1: Don't wait for handshake if we had an error.
10264 - BUG/MEDIUM: h1: Wait for the connection if the handshake didn't complete.
10265 - BUG/MINOR: task: prevent schedulable tasks from starving under high I/O activity
10266 - BUG/MINOR: fl_trace/htx: Be sure to always forward trailers and EOM
10267 - BUG/MINOR: channel/htx: Call channel_htx_full() from channel_full()
10268 - BUG/MINOR: http: Use the global value to limit the number of parsed headers
10269 - BUG/MINOR: htx: Detect when tail_addr meet end_addr to maximize free rooms
10270 - BUG/MEDIUM: htx: Don't change position of the first block during HTX analysis
10271 - CLEANUP: channel: Remove channel_htx_fwd_payload() and channel_htx_fwd_all()
10272 - BUG/MEDIUM: proto_htx: Introduce the state ENDING during forwarding
10273 - MINOR: htx: Add 3 flags on the start-line to deal with the request schemes
10274 - MINOR: h2: Set flags about the request's scheme on the start-line
10275 - MINOR: mux-h1: Set flags about the request's scheme on the start-line
10276 - MINOR: mux-h2: Forward clients scheme to servers checking start-line flags
10277 - MEDIUM: server: server-state only rely on server name
10278 - CLEANUP: connection: rename the wait_event.task field to .tasklet
10279 - CLEANUP: tasks: rename task_remove_from_tasklet_list() to tasklet_remove_*
10280 - BUG/MEDIUM: connections: Don't call shutdown() if we want to disable linger.
10281 - DOC: add some environment variables in section 2.3
10282 - BUILD: makefile: clarify the "help" output and list options
10283 - BUG/MINOR: mux-h1: Wake busy mux for I/O when message is fully sent
10284 - BUG: tasks: fix bug introduced by latest scheduler cleanup
10285 - BUG/MEDIUM: mux-h2: fix early close with option abortonclose
10286 - BUG/MEDIUM: connections: Don't use ALPN to pick mux when in mode TCP.
10287 - BUG/MEDIUM: connections: Don't try to send early data if we have no mux.
10288 - BUG/MEDIUM: mux-h2: properly account for the appended data in HTX
10289 - BUILD: makefile: further clarify the "help" output and list targets
10290 - BUILD: makefile: rename "linux2628" to "linux-glibc" and remove older targets
10291 - BUILD: travis-ci: switch to linux-glibc instead of linux2628
10292 - DOC: update few references to the linux* targets and change them to linux-glibc
10293 - BUILD: makefile: detect and reject recently removed linux targets
10294 - BUILD: makefile: enable linux namespaces by default on linux
10295 - BUILD: makefile: enable TFO on linux platforms
10296 - BUILD: makefile: enable getaddrinfo on the linux-glibc target
10297 - DOC: small updates to the CONTRIBUTING file
10298 - BUG/MEDIUM: ssl: Make sure we initiate the handshake after using early data.
10299 - CLEANUP: removed obsolete examples an move a few to better places
10300 - DOC: Fix typos in CONTRIBUTING
10301 - DOC: update the outdated ROADMAP file
10302 - DOC: create a BRANCHES file to explain the life cycle
10303 - DOC: mention in INSTALL haproxy 2.0 is a long-term supported stable version
10304 - BUILD: travis-ci: TFO and GETADDRINFO are now enabled by default
10305 - BUILD: makefile: make the obsolete target detection compatible with make-3.80
10306 - BUILD: tools: work around an internal compiler bug in gcc-3.4
10307 - BUILD: pattern: work around an internal compiler bug in gcc-3.4
10308 - BUILD: makefile: enable USE_RT on Solaris
10309 - BUILD: makefile: do not use echo -n
10310 - DOC: mention a few common build errors in the INSTALL file
10311
Willy Tarreauca3551f2019-06-11 19:28:00 +0200103122019/06/11 : 2.0-dev7
10313 - BUG/MEDIUM: mux-h2: make sure the connection timeout is always set
10314 - MINOR: tools: add new bitmap manipulation functions
10315 - MINOR: logs: use the new bitmap functions instead of fd_sets for encoding maps
10316 - MINOR: chunks: Make sure trash_size is only set once.
10317 - Revert "MINOR: chunks: Make sure trash_size is only set once."
10318 - MINOR: threads: serialize threads initialization
10319 - MINOR peers: data structure simplifications for server names dictionary cache.
10320 - DOC: peers: Update for dictionary cache entries for peers protocol.
10321 - MINOR: dict: Store the length of the dictionary entries.
10322 - MINOR: peers: A bit of optimization when encoding cached server names.
10323 - MINOR: peers: Optimization for dictionary cache lookup.
10324 - MEDIUM: tools: improve time format error detection
10325 - BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early.
10326 - BUG/MEDIUM: stream_interface: Make sure we call si_cs_process() if CS_FL_EOI.
10327 - MINOR: threads: avoid clearing harmless twice in thread_release()
10328 - MEDIUM: threads: add thread_sync_release() to synchronize steps
10329 - BUG/MEDIUM: init/threads: prevent initialized threads from starting before others
10330 - OPTIM/MINOR: init/threads: only call protocol_enable_all() on first thread
10331 - BUG/MINOR: dict: race condition fix when inserting dictionary entries.
10332 - MEDIUM: init/threads: don't use spinlocks during the init phase
10333 - BUG/MINOR: cache/htx: Fix the counting of data already sent by the cache applet
10334 - BUG/MEDIUM: compression/htx: Fix the adding of the last data block
10335 - MINOR: flt_trace: Don't scrash the original offset during the random forwarding
10336 - MAJOR: htx: Rework how free rooms are tracked in an HTX message
10337 - MINOR: htx: Add the function htx_move_blk_before()
10338 - Revert "BUG/MEDIUM: H1: When upgrading, make sure we don't free the buffer too early."
10339 - BUG/MINOR: http-rules: mention "deny_status" for "deny" in the error message
10340 - MINOR: http: turn default error files to HTTP/1.1
10341 - BUG/MEDIUM: h1: Don't try to subscribe if we had a connection error.
10342 - BUG/MEDIUM: h1: Don't consider we're connected if the handshake isn't done.
10343 - MINOR: contrib/spoa_server: Upgrade SPOP to 2.0
10344 - BUG/MEDIUM: contrib/spoa_server: Set FIN flag on agent frames
10345 - MINOR: contrib/spoa_server: Add random IP score
10346 - DOC/MINOR: contrib/spoa_server: Fix typo in README
10347
Willy Tarreaub57f1092019-06-07 06:12:59 +0200103482019/06/07 : 2.0-dev6
10349 - BUG/MEDIUM: connection: fix multiple handshake polling issues
10350 - MINOR: connection: also stop receiving after a SOCKS4 response
10351 - MINOR: mux-h1: don't try to recv() before the connection is ready
10352 - BUG/MEDIUM: mux-h1: only check input data for the current stream, not next one
10353 - MEDIUM: mux-h1: don't use CS_FL_REOS anymore
10354 - CLEANUP: connection: remove the now unused CS_FL_REOS flag
10355 - CONTRIB: debug: add 4 missing connection/conn_stream flags
10356 - MEDIUM: stream: make a full process_stream() loop when completing I/O on exit
10357 - MINOR: server: increase the default pool-purge-delay to 5 seconds
10358 - BUILD: tools: do not use the weak attribute for trace() on obsolete linkers
10359 - BUG/MEDIUM: vars: make sure the scope is always valid when accessing vars
10360 - BUG/MEDIUM: vars: make the tcp/http unset-var() action support conditions
10361 - BUILD: task: fix a build warning when threads are disabled
10362 - CLEANUP: peers: Remove tabs characters.
10363 - CLEANUP: peers: Replace hard-coded values by macros.
10364 - BUG/MINOR: peers: Wrong stick-table update message building.
10365 - MINOR: dict: Add dictionary new data structure.
10366 - MINOR: peers: Add a LRU cache implementation for dictionaries.
10367 - MINOR: stick-table: Add "server_name" new data type.
10368 - MINOR: cfgparse: Space allocation for "server_name" stick-table data type.
10369 - MINOR: proxy: Add a "server by name" tree to proxy.
10370 - MINOR: server: Add a dictionary for server names.
10371 - MINOR: stream: Stickiness server lookup by name.
10372 - MINOR: peers: Make peers protocol support new "server_name" data type.
10373 - MINOR: stick-table: Make the CLI stick-table handler support dictionary entry data type.
10374 - REGTEST: Add a basic server by name stickiness reg test.
10375 - MINOR: peers: Add dictionary cache information to "show peers" CLI command.
10376 - MINOR: peers: Replace hard-coded for peer protocol 64-bits value encoding by macros.
10377 - MINOR: peers: Replace hard-coded values for peer protocol messaging by macros.
10378 - CLEANUP: ssl: remove unneeded defined(OPENSSL_IS_BORINGSSL)
10379 - BUILD: travis-ci improvements
10380 - MINOR: SSL: add client/server random sample fetches
10381 - BUG/MINOR: channel/htx: Don't alter channel during forward for empty HTX message
10382 - BUG/MINOR: contrib/prometheus-exporter: Add HTX data block in one time
10383 - BUG/MINOR: mux-h1: errflag must be set on H1S and not H1M during output processing
10384 - MEDIUM: mux-h1: refactor output processing
10385 - MINOR: mux-h1: Add the flag HAVE_O_CONN on h1s
10386 - MINOR: mux-h1: Add h1_eval_htx_hdrs_size() to estimate size of the HTX headers
10387 - MINOR: mux-h1: Don't count the EOM in the estimated size of headers
10388 - MEDIUM: cache/htx: Always store info about HTX blocks in the cache
10389 - MEDIUM: htx: Add the parsing of trailers of chunked messages
10390 - MINOR: htx: Don't use end-of-data blocks anymore
10391 - BUG/MINOR: mux-h1: Don't send more data than expected
10392 - BUG/MINOR: flt_trace/htx: Only apply the random forwarding on the message body.
10393 - BUG/MINOR: peers: Wrong "server_name" decoding.
10394 - BUG/MEDIUM: servers: Don't attempt to destroy idle connections if disabled.
10395 - MEDIUM: checks: Make sure we unsubscribe before calling cs_destroy().
10396 - MEDIUM: connections: Wake the upper layer even if sending/receiving is disabled.
10397 - MEDIUM: ssl: Handle subscribe by itself.
10398 - MINOR: ssl: Make ssl_sock_handshake() static.
10399 - MINOR: connections: Add a new xprt method, remove_xprt.
10400 - MINOR: connections: Add a new xprt method, add_xprt().
10401 - MEDIUM: connections: Introduce a handshake pseudo-XPRT.
10402 - MEDIUM: connections: Remove CONN_FL_SOCK*
10403 - BUG/MEDIUM: ssl: Don't forget to initialize ctx->send_recv and ctx->recv_wait.
10404 - BUG/MINOR: peers: Wrong server name parsing.
10405 - MINOR: server: really increase the pool-purge-delay default to 5 seconds
10406 - BUG/MINOR: stream: don't emit a send-name-header in conn error or disconnect states
10407 - MINOR: stream-int: use bit fields to match multiple stream-int states at once
10408 - MEDIUM: stream-int: remove dangerous interval checks for stream-int states
10409 - MEDIUM: stream-int: introduce a new state SI_ST_RDY
10410 - MAJOR: stream-int: switch from SI_ST_CON to SI_ST_RDY on I/O
10411 - MEDIUM: stream-int: make idle-conns switch to ST_RDY
10412 - MEDIUM: stream: re-arrange the connection setup status reporting
10413 - MINOR: stream-int: split si_update() into si_update_rx() and si_update_tx()
10414 - MINOR: stream-int: make si_sync_send() from the send code of si_update_both()
10415 - MEDIUM: stream: rearrange the events to remove the loop
10416 - MEDIUM: stream: only loop on flags relevant to the analysers
10417 - MEDIUM: stream: don't abusively loop back on changes on CF_SHUT*_NOW
10418 - BUILD: stream-int: avoid a build warning in dev mode in si_state_bit()
10419 - BUILD: peers: fix a build warning about an incorrect intiialization
10420 - BUG/MINOR: time: make sure only one thread sets global_now at boot
10421 - BUG/MEDIUM: tcp: Make sure we keep the polling consistent in tcp_probe_connect.
10422
Willy Tarreauabc874e2019-06-02 12:06:08 +0200104232019/06/02 : 2.0-dev5
10424 - BUILD: watchdog: use si_value.sival_int, not si_int for the timer's value
10425 - BUILD: signals: FreeBSD has SI_LWP instead of SI_TKILL
10426 - BUILD: watchdog: condition it to USE_RT
10427 - MINOR: raw_sock: report global traffic statistics
10428 - MINOR: stats: report the global output bit rate in human readable form
10429 - BUG/MINOR: proto-htx: Try to keep connections alive on redirect
10430 - BUG/MEDIUM: spoe: Don't use the SPOE applet after releasing it
10431 - BUG/MINOR: lua: Set right direction and flags on new HTTP objects
10432 - BUG/MINOR: mux-h2: Count EOM in bytes sent when a HEADERS frame is formatted
10433 - BUG/MINOR: mux-h1: Report EOI instead EOS on parsing error or H2 upgrade
10434 - BUG/MEDIUM: proto-htx: Not forward too much data when 1xx reponses are handled
10435 - BUG/MINOR: htx: Remove a forgotten while loop in htx_defrag()
10436 - DOC: fix typos
10437 - BUG/MINOR: ssl_sock: Fix memory leak when disabling compression
10438 - OPTIM: freq-ctr: don't take the date lock for most updates
10439 - MEDIUM: mux-h2: avoid doing expensive buffer realigns when not absolutely needed
10440 - CLEANUP: debug: remove the TRACE() macro
10441 - MINOR: buffer: introduce b_make() to make a buffer from its parameters
10442 - MINOR: buffer: add a new buffer ring API to manipulate rings of buffers
10443 - MEDIUM: mux-h2: replace all occurrences of mbuf with a buffer ring
10444 - MEDIUM: mux-h2: make the conditions to send based on mbuf, not just its tail
10445 - MINOR: mux-h2: introduce h2_release_mbuf() to release all buffers in the mbuf ring
10446 - MEDIUM: mux-h2: make the send() function iterate over all mux buffers
10447 - CLEANUP: mux-h2: consistently use a local variable for the mbuf
10448 - MINOR: mux-h2: report the mbuf's head and tail in "show fd"
10449 - MAJOR: mux-h2: switch to next mux buffer on buffer full condition.
10450 - BUILD: connections: shut up gcc about impossible out-of-bounds warning
10451 - BUILD: ssl: fix latest LibreSSL reg-test error
10452 - MINOR: cli/activity: remove "fd_del" and "fd_skip" from show activity
10453 - MINOR: cli/activity: add 3 general purpose counters in development mode
10454 - BUG/MAJOR: lb/threads: make sure the avoided server is not full on second pass
10455 - BUG/MEDIUM: queue: fix the tree walk in pendconn_redistribute.
10456 - BUG/MEDIUM: threads: fix double-word CAS on non-optimized 32-bit platforms
10457 - MEDIUM: config: now alert when two servers have the same name
10458 - MINOR: htx: Remove the macro IS_HTX_SMP() and always use IS_HTX_STRM() instead
10459 - MINOR: htx: Move the macro IS_HTX_STRM() in proto/stream.h
10460 - MINOR: htx: Store the head position instead of the wrap one
10461 - MINOR: htx: Store start-line block's position instead of address of its payload
10462 - MINOR: htx: Add functions to get the first block of an HTX message
10463 - MINOR: mux-h2/htx: Get the start-line from the head when HEADERS frame is built
10464 - MINOR: htx: Replace the function http_find_stline() by http_get_stline()
10465 - CLEANUP: htx: Remove unused function htx_get_stline()
10466 - MINOR: http/htx: Use sl_pos directly to replace the start-line
10467 - MEDIUM: http/htx: Perform analysis relatively to the first block
10468 - MINOR: channel/htx: Call channel_htx_recv_max() from channel_recv_max()
10469 - MINOR: htx: Add function htx_get_max_blksz()
10470 - BUG/MINOR: htx: Change htx_xfer_blk() to also count metadata
10471 - MEDIUM: mux-h1: Use the count value received from the SI in h1_rcv_buf()
10472 - MINOR: mux-h2: Use the count value received from the SI in h2_rcv_buf()
10473 - MINOR: stream-int: Don't use the flag CO_RFL_KEEP_RSV anymore in si_cs_recv()
10474 - MINOR: connection: Remove the unused flag CO_RFL_KEEP_RSV
10475 - MINOR: mux-h2/htx: Support zero-copy when possible in h2_rcv_buf()
10476 - MINOR: htx: Add a field to set the memory used by headers in the HTX start-line
10477 - MINOR: h2/htx: Set hdrs_bytes on the SL when an HTX message is produced
10478 - MINOR: mux-h1: Set hdrs_bytes on the SL when an HTX message is produced
10479 - MINOR: htx: Be sure to xfer all headers in one time in htx_xfer_blks()
10480 - MEDIUM: htx: 1xx messages are now part of the final reponses
10481 - MINOR: channel/htx: Add function to forward headers of an HTX message
10482 - MINOR: filters/htx: Use channel_htx_fwd_headers() after headers filtering
10483 - MINOR: proto-htx: Use channel_htx_fwd_headers() to forward 1xx responses
10484 - MEDIUM: htx: Store the first block position instead of the start-line one
10485 - MINOR: stats/htx: don't use the first block position but the head one
10486 - MINOR: channel/htx: Add functions to forward a part or all HTX payload
10487 - MINOR: proto-htx: Use channel_htx_fwd_all() when unfiltered body are forwarded
10488 - MEDIUM: filters/htx: Filter body relatively to the first block
10489 - MINOR: htx: Optimize htx_drain() when all data are drained
10490 - MINOR: htx: don't rely on htx_find_blk() anymore in the function htx_truncate()
10491 - MINOR: htx: remove the unused function htx_find_blk()
10492 - MINOR: htx: Remove support of pseudo headers because it is unused
10493 - BUG/MEDIUM: http: fix "http-request reject" when not final
10494 - MINOR: ssl: Make sure the underlying xprt's init method doesn't fail.
10495 - MINOR: ssl: Don't forget to call the close method of the underlying xprt.
10496 - MINOR: htx: rename htx_append_blk_value() to htx_add_data_atonce()
10497 - MINOR: htx: make htx_add_data() return the transmitted byte count
10498 - MEDIUM: htx: make htx_add_data() never defragment the buffer
10499 - MINOR: activity: write totals on the "show activity" output
10500 - MINOR: activity: report totals and average separately
10501 - MEDIUM: poller: separate the wait time from the wake events
10502 - MINOR: activity: report the number of failed pool/buffer allocations
10503 - MEDIUM: buffers: relax the buffer lock a little bit
10504 - MINOR: task: turn the WQ lock to an RW_LOCK
10505 - MEDIUM: task: don't grab the WR lock just to check the WQ
10506 - BUG/MEDIUM: mux-h1: Don't skip the TCP splicing when there is no more data to read
10507 - MEDIUM: sessions: Introduce session flags.
10508 - BUG/MEDIUM: h2: Don't forget to set h2s->cs to NULL after having free'd cs.
10509 - BUG/MEDIUM: mux-h2: fix the conditions to end the h2_send() loop
10510 - BUG/MEDIUM: mux-h2: don't refrain from offering oneself a used buffer
10511 - BUG/MEDIUM: connection: Use the session to get the origin address if needed.
10512 - MEDIUM: tasks: Get rid of active_tasks_mask.
10513 - MEDIUM: connection: Upstream SOCKS4 proxy support
10514 - BUILD: contrib/prometheus: fix build breakage caused by move of idle_pct
10515 - BUG/MINOR: deinit/threads: make hard-stop-after perform a clean exit
10516
Willy Tarreau56740692019-05-22 20:48:33 +0200105172019/05/22 : 2.0-dev4
10518 - BUILD: enable freebsd builds on cirrus-ci
10519 - BUG/MINOR: http_fetch: Rely on the smp direction for "cookie()" and "hdr()"
10520 - MEDIUM: Make 'option forceclose' actually warn
10521 - MEDIUM: Make 'resolution_pool_size' directive fatal
10522 - DOC: management: place "show activity" at the right place
10523 - MINOR: cli/activity: show the dumping thread ID starting at 1
10524 - MINOR: task: export global_task_mask
10525 - MINOR: cli/debug: add a thread dump function
10526 - BUG/MEDIUM: streams: Don't use CF_EOI to decide if the request is complete.
10527 - BUG/MEDIUM: streams: Try to L7 retry before aborting the connection.
10528 - BUG/MINOR: debug: make ha_task_dump() always check the task before dumping it
10529 - BUG/MINOR: debug: make ha_task_dump() actually dump the requested task
10530 - MINOR: debug: make ha_thread_dump() and ha_task_dump() take a buffer
10531 - BUG/MINOR: debug: don't check the call date on tasklets
10532 - MINOR: thread: implement ha_thread_relax()
10533 - MINOR: task: put barriers after each write to curr_task
10534 - MINOR: task: always reset curr_task when freeing a task or tasklet
10535 - MINOR: stream: detach the stream from its own task on stream_free()
10536 - MEDIUM: debug/threads: implement an advanced thread dump system
10537 - REGTEST: extend the check duration on tls_health_checks and mark it slow
10538 - DOC: fix "successful" typo
10539 - MINOR: init: setenv HAPROXY_CFGFILES
10540 - MINOR: threads/init: synchronize the threads startup
10541 - MEDIUM: init/mworker: make the pipe register function a regular initcall
10542 - CLEANUP: memory: make the fault injection code use the OTHER_LOCK label
10543 - CLEANUP: threads: remove the now unused START_LOCK label
10544 - MINOR: init/threads: make the global threads an array of structs
10545 - MINOR: threads: add each thread's clockid into the global thread_info
10546 - CLEANUP: stream: remove an obsolete debugging test
10547 - MINOR: tools: add dump_hex()
10548 - MINOR: debug: implement ha_panic()
10549 - MINOR: debug/cli: add some debugging commands for developers
10550 - MINOR: tools: provide a may_access() function and make dump_hex() use it
10551 - MINOR: debug: make ha_panic() report threads starting at 1
10552 - REORG: compat: move some integer limit definitions from standard.h to compat.h
10553 - REORG: threads: move the struct thread_info from global.h to hathreads.h
10554 - MINOR: compat: make sure to always define clockid_t
10555 - MINOR: threads: always place the clockid in the struct thread_info
10556 - MINOR: threads: add a thread-local thread_info pointer "ti"
10557 - MINOR: time: move the cpu, mono, and idle time to thread_info
10558 - MINOR: time: add a function to retrieve another thread's cputime
10559 - MINOR: debug: report each thread's cpu usage in "show thread"
10560 - BUILD: threads: only assign the clock_id when supported
10561 - BUILD: makefile: use USE_OBSOLETE_LINKER for solaris
10562 - BUILD: makefile: remove -fomit-frame-pointer optimisation (solaris)
10563 - MAJOR: polling: add event ports support (Solaris)
10564 - BUG/MEDIUM: streams: Don't switch from SI_ST_CON to SI_ST_DIS on read0.
10565 - CLEANUP: time: refine the test on _POSIX_TIMERS
10566 - MINOR: compat: define a new empty type empty_t for non-implemented fields
10567 - CLEANUP: time: switch clockid_t to empty_t when not available
10568 - BUG/MINOR: mworker: Fix memory leak of mworker_proc members
10569 - CLEANUP: objtype: make obj_type() and obj_type_name() take consts
10570 - MINOR: debug: switch to SIGURG for thread dumps
10571 - CLEANUP: threads: really move thread_info to hathreads.c
10572 - MINOR: threads: make threads_{harmless|want_rdv}_mask constant 0 without threads
10573 - CLEANUP: debug: always report harmless/want_rdv even without threads
10574 - MINOR: threads: implement ha_tkill() and ha_tkillall()
10575 - CLEANUP: debug: make use of ha_tkill() and remove ifdefs
10576 - MINOR: stream: introduce a stream_dump() function and use it in stream_dump_and_crash()
10577 - MINOR: debug: dump streams when an applet, iocb or stream is known
10578 - MINOR: threads: add a "stuck" flag to the thread_info struct
10579 - MINOR: threads: add a timer_t per thread in thread_info
10580 - MAJOR: watchdog: implement a thread lockup detection mechanism
10581 - MINOR: stream: remove the cpu time detection from process_stream()
10582 - MINOR: connection: report the mux names in "haproxy -vv"
10583 - CLEANUP: mux-h1: use "H1" and not "h1" as the mux's name
10584 - BUG/MEDIUM: WURFL: segfault in wurfl-get() with missing info.
10585 - MINOR: WURFL: call header_retireve_callback() in dummy library
10586 - MINOR: WURFL: fixed Engine load failed error when wurfl-information-list contains wurfl_root_id
10587 - MINOR: WURFL: shows log messages during module initialization
10588 - MINOR: WURFL: removes heading wurfl-information-separator from wurfl-get-all() and wurfl-get() results
10589 - MINOR: WURFL: wurfl_get() and wurfl_get_all() now return an empty string if device detection fails
10590 - MEDIUM: WURFL: HTX awareness.
10591 - MINOR: WURFL: module version bump to 2.0
10592 - MINOR: WURFL: do not emit warnings when not configured
10593 - CONTRIB: wurfl: address 3 build issues in the wurfl dummy library
10594 - BUG/MEDIUM: init/threads: provide per-thread alloc/free function callbacks
10595 - BUILD: travis: add sanitizers to travis-ci builds
10596 - BUILD: time: remove the test on _POSIX_C_SOURCE
10597 - CLEANUP: build: rename some build macros to use the USE_* ones
10598 - CLEANUP: raw_sock: remove support for very old linux splice bug workaround
10599 - BUG/MEDIUM: dns: make the port numbers unsigned
10600 - MEDIUM: config: deprecate the antique req* and rsp* commands
10601
Willy Tarreaua257a9b2019-05-15 16:51:48 +0200106022019/05/15 : 2.0-dev3
10603 - BUG/MINOR: peers: Really close the sessions with no heartbeat.
10604 - CLEANUP: peers: remove useless annoying tabulations.
10605 - CLEANUP: peers: replace timeout constants by macros.
10606 - REGTEST: Enable again reg tests with HEAD HTTP method usage.
10607 - DOC: The option httplog is no longer valid in a backend.
10608 - DOC: peers: Peers protocol documentation update.
10609 - REGTEST: remove unexpected "nbthread" statement from Lua test cases
10610 - BUILD: Makefile: remove 11-years old workarounds for deprecated options
10611 - BUILD: remove 10-years old error message for obsolete option USE_TCPSPLICE
10612 - BUILD: Makefile: remove outdated support for dlmalloc
10613 - BUILD: Makefile: consider a variable's origin and not its value for the options list
10614 - BUILD: Makefile: also report disabled options in the BUILD_OPTIONS variable
10615 - BUILD: Makefile: shorten default settings declaration
10616 - BUILD: Makefile: clean up the target declarations
10617 - BUILD: report the whole feature set with their status in haproxy -vv
10618 - BUILD: pass all "USE_*" variables as -DUSE_* to the compiler
10619 - REGTEST: script: make the script use the new features list
10620 - REGTEST: script: remove platform-specific assigments of OPTIONS
10621 - BUG/MINOR: peers: Missing initializations after peer session shutdown.
10622 - BUG/MINOR: contrib/prometheus-exporter: Fix applet accordingly to recent changes
10623 - BUILD/MINOR: listener: Silent a few signedness warnings.
10624 - BUG/MINOR: mux-h1: Only skip invalid C-L headers on output
10625 - BUG/MEDIUM: mworker: don't free the wrong child when not found
10626 - BUG/MEDIUM: checks: Don't bother subscribing if we have a connection error.
10627 - BUG/MAJOR: checks: segfault during tcpcheck_main
10628 - BUILD: makefile: work around an old bug in GNU make-3.80
10629 - BUILD: makefile: work around another bug in make 3.80
10630 - BUILD: http: properly mark some struct as extern
10631 - BUILD: chunk: properly declare pool_head_trash as extern
10632 - BUILD: cache: avoid a build warning with some compilers/linkers
10633 - MINOR: tools: make memvprintf() never pass a NULL target to vsnprintf()
10634 - MINOR: tools: add an unsetenv() implementation
10635 - BUILD: re-implement an initcall variant without using executable sections
10636 - BUILD: use inttypes.h instead of stdint.h
10637 - BUILD: connection: fix naming of ip_v field
10638 - BUILD: makefile: fix build of IPv6 header on aix51
10639 - BUILD: makefile: add _LINUX_SOURCE_COMPAT to build on AIX-51
10640 - BUILD: define unsetenv on AIX 5.1
10641 - BUILD: Makefile: disable shared cache on AIX 5.1
10642 - MINOR: ssl: Add aes_gcm_dec converter
10643 - REORG: mworker: move serializing functions to mworker.c
10644 - REORG: mworker: move signals functions to mworker.c
10645 - REORG: mworker: move IPC functions to mworker.c
10646 - REORG: mworker: move signal handlers and related functions
10647 - REORG: mworker: move mworker_cleanlisteners to mworker.c
10648 - MINOR: mworker: calloc mworker_proc structures
10649 - MINOR: mworker: don't use children variable anymore
10650 - MINOR: cli: export cli_parse_default() definition in cli.h
10651 - REORG: mworker/cli: move CLI functions to mworker.c
10652 - MEDIUM: mworker-prog: implement program for master-worker
10653 - MINOR: mworker/cli: show programs in 'show proc'
10654 - BUG/MINOR: cli: correctly handle abns in 'show cli sockets'
10655 - MINOR: cli: start addresses by a prefix in 'show cli sockets'
10656 - MINOR: cli: export HAPROXY_CLI environment variable
10657 - BUG/MINOR: htx: Preserve empty HTX messages with an unprocessed parsing error
10658 - BUG/MINOR: proto_htx: Reset to_forward value when a message is set to DONE
10659 - REGTEST: http-capture/h00000: Relax a regex matching the log message
10660 - REGTEST: http-messaging/h00000: Fix the test when the HTX is enabled
10661 - REGTEST: http-rules/h00003: Use a different client for requests expecting a 301
10662 - REGTEST: log/b00000: Be sure the client always hits its timeout
10663 - REGTEST: lua/b00003: Relax the regex matching the log message
10664 - REGTEST: lua/b00003: Specify the HAProxy pid when the command ss is executed
10665 - BUG/MEDIUM: peers: fix a case where peer session is not cleanly reset on release.
10666 - BUG/MEDIUM: h2: Don't attempt to recv from h2_process_demux if we subscribed.
10667 - BUG/MEDIUM: htx: fix random premature abort of data transfers
10668 - BUG/MEDIUM: streams: Don't remove the SI_FL_ERR flag in si_update_both().
10669 - BUG/MEDIUM: streams: Store prev_state before calling si_update_both().
10670 - BUG/MEDIUM: stream: Don't clear the stream_interface flags in si_update_both.
10671 - MINOR: initcall: Don't forget to define the __start/stop_init_##stg symbols.
10672 - MINOR: threads: Implement thread_cpus_enabled() for FreeBSD.
10673 - BUG/MEDIUM: pattern: assign pattern IDs after checking the config validity
10674 - MINOR: skip get_gmtime where tm is unused
10675 - MINOR: ssl: Activate aes_gcm_dec converter for BoringSSL
10676 - BUG/MEDIUM: streams: Only re-run process_stream if we're in a connected state.
10677 - BUG/MEDIUM: stream_interface: Don't bother doing chk_rcv/snd if not connected.
10678 - BUG/MEDIUM: task/threads: address a fairness issue between local and global tasks
10679 - BUG/MINOR: tasks: make sure the first task to be queued keeps its nice value
10680 - BUG/MINOR: listener: renice the accept ring processing task
10681 - MINOR: cli/listener: report the number of accepts on "show activity"
10682 - MINOR: cli/activity: report the accept queue sizes in "show activity"
10683 - BUG/MEDIUM: spoe: Queue message only if no SPOE applet is attached to the stream
10684 - BUG/MEDIUM: spoe: Return an error if nothing is encoded for fragmented messages
10685 - BUG/MINOR: spoe: Be sure to set tv_request when each message fragment is encoded
10686 - BUG/MEDIUM: htx: Defrag if blocks position is changed and the payloads wrap
10687 - BUG/MEDIUM: htx: Don't crush blocks payload when append is done on a data block
10688 - MEDIUM: htx: Deprecate the option 'http-tunnel' and ignore it in HTX
10689 - MINOR: proto_htx: Don't adjust transaction mode anymore in HTX analyzers
10690 - BUG/MEDIUM: htx: Fix the process of HTTP CONNECT with h2 connections
10691 - MINOR: mux-h1: Simplify handling of 1xx responses
10692 - MINOR: stats/htx: Don't add "Connection: close" header anymore in stats responses
10693 - MEDIUM: h1: Add an option to sanitize connection headers during parsing
10694 - MEDIUM: mux-h1: Simplify the connection mode management by sanitizing headers
10695 - MINOR: mux-h1: Don't release the conn_stream anymore when h1s is destroyed
10696 - BUG/MINOR: mux-h1: Handle the flag CS_FL_KILL_CONN during a shutdown read/write
10697 - MINOR: mux-h2: Add a mux_ops dedicated to the HTX mode
10698 - MINOR: muxes: Add a flag to specify a multiplexer uses the HTX
10699 - MINOR: stream: Set a flag when the stream uses the HTX
10700 - MINOR: http: update the macro IS_HTX_STRM() to check the stream flag SF_HTX
10701 - MINOR: http_fetch/htx: Use stream flags instead of px mode in smp_prefetch_htx
10702 - MINOR: filters/htx: Use stream flags instead of px mode to instanciate a filter
10703 - MINOR: muxes: Rely on conn_is_back() during init to handle front/back conn
10704 - MEDIUM: muxes: Add an optional input buffer during mux initialization
10705 - MINOR: muxes: Pass the context of the mux to destroy() instead of the connection
10706 - MEDIUM: muxes: Be prepared to don't own connection during the release
10707 - MEDIUM: connection: Add conn_upgrade_mux_fe() to handle mux upgrades
10708 - MEDIUM: htx: Allow the option http-use-htx to be used on TCP proxies too
10709 - MAJOR: proxy/htx: Handle mux upgrades from TCP to HTTP in HTX mode
10710 - MAJOR: muxes/htx: Handle inplicit upgrades from h1 to h2
10711 - MAJOR: htx: Enable the HTX mode by default for all proxies
10712 - REGTEST: Use HTX by default and add '--no-htx' option to disable it
10713 - BUG/MEDIUM: muxes: Don't dereference mux context if null in release functions
10714 - CLEANUP: task: do not export rq_next anymore
10715 - MEDIUM: tasks: improve fairness between the local and global queues
10716 - MEDIUM: tasks: only base the nice offset on the run queue depth
10717 - MINOR: tasks: restore the lower latency scheduling when niced tasks are present
10718 - BUG/MEDIUM: map: Fix memory leak in the map converter
10719 - BUG/MINOR: ssl: Fix 48 byte TLS ticket key rotation
10720 - BUILD: task/thread: fix single-threaded build of task.c
10721 - BUILD: cli/threads: fix build in single-threaded mode
10722 - BUG/MEDIUM: muxes: Make sure we unsubcribed when destroying mux ctx.
10723 - BUG/MEDIUM: h2: Make sure we're not already in the send_list in h2_subscribe().
10724 - BUG/MEDIUM: h2: Revamp the way send subscriptions works.
10725 - MINOR: connections: Remove the SUB_CALL_UNSUBSCRIBE flag.
10726 - BUG/MEDIUM: Threads: Only use the gcc >= 4.7 builtins when using gcc >= 4.7.
10727 - BUILD: address a few cases of "static <type> inline foo()"
10728 - BUILD: do not specify "const" on functions returning structs or scalars
10729 - BUILD: htx: fix a used uninitialized warning on is_cookie2
10730 - MINOR: peers: Add a new command to the CLI for peers.
10731 - DOC: update for "show peers" CLI command.
10732 - BUG/MAJOR: lb/threads: fix insufficient locking on round-robin LB
10733 - MEDIUM: mworker: store the leaving state of a process
10734 - MEDIUM: mworker-prog: implements 'option start-on-reload'
10735 - CLEANUP: mworker: remove the type field in mworker_proc
10736 - MEDIUM: mworker/cli: export the HAPROXY_MASTER_CLI variable
10737 - MINOR: cli: don't add a semicolon at the end of HAPROXY_CLI
10738 - MINOR: mworker: export HAPROXY_MWORKER=1 when running in mworker mode
10739 - MINOR: init: add a "set-dumpable" global directive to enable core dumps
10740 - BUG/MINOR: listener/mq: correctly scan all bound threads under low load
10741 - BUG/MINOR: mworker: mworker_kill should apply on every children
10742 - BUG/MINOR: mworker: don't exit with an ambiguous value
10743 - BUG/MINOR: mworker: ensure that we still quits with SIGINT
10744 - REGTESTS: exclude tests that require ssl, pcre if no such feature is enabled
10745 - BUG/MINOR: mux-h1: Process input even if the input buffer is empty
10746 - BUG/MINOR: mux-h1: Don't switch the parser in busy mode if other side has done
10747 - BUG/MEDIUM: mux-h1: Notify the stream waiting for TCP splicing if ibuf is empty
10748 - BUG/MEDIUM: mux-h1: Enable TCP splicing to exchange data only
10749 - MINOR: mux-h1: Handle read0 during TCP splicing
10750 - BUG/MEDIUM: htx: Don't return the start-line if the HTX message is empty
10751 - BUG/MAJOR: http_fetch: Get the channel depending on the keyword used
10752 - BUG/MINOR: http_fetch/htx: Allow permissive sample prefetch for the HTX
10753 - BUG/MINOR: http_fetch/htx: Use HTX versions if the proxy enables the HTX mode
10754 - BUG/MEDIUM: tasks: Make sure we set TASK_QUEUED before adding a task to the rq.
10755 - BUG/MEDIUM: tasks: Make sure we modify global_tasks_mask with the rq_lock.
10756 - MINOR: tasks: Don't consider we can wake task with tasklet_wakeup().
10757 - MEDIUM: tasks: No longer use rq.node.leaf_p as a lock.
10758 - MINOR: tasks: Don't set the TASK_RUNNING flag when adding in the tasklet list.
10759 - BUG/MEDIUM: applets: Don't use task_in_rq().
10760 - BUG/MAJOR: task: make sure never to delete a queued task
10761 - MINOR: task/thread: factor out a wake-up condition
10762 - CLEANUP: task: remain consistent when using the task's handler
10763 - MEDIUM: tasks: Merge task_delete() and task_free() into task_destroy().
10764 - MEDIUM: tasks: Don't account a destroyed task as a runned task.
10765 - BUG/MINOR: contrib/prometheus-exporter: Fix a typo in the run-queue metric type
10766 - MINOR: contrib/prometheus-exporter: Remove usless rate metrics
10767 - MINOR: contrib/prometheus-exporter: Rename some metrics to be more usable
10768 - MINOR: contrib/prometheus-exporter: Follow best practices about metrics type
10769 - BUG/MINOR: mworker: disable busy polling in the master process
10770 - MEDIUM: tasks: Use __ha_barrier_store after modifying global_tasks_mask.
10771 - MEDIUM: ssl: Give ssl_sock its own context.
10772 - MEDIUM: connections: Move some fields from struct connection to ssl_sock_ctx.
10773 - MEDIUM: ssl: provide its own subscribe/unsubscribe function.
10774 - MEDIUM: connections: Provide a xprt_ctx for each xprt method.
10775 - MEDIUM: ssl: provide our own BIO.
10776 - BUILD/medium: ssl: Fix build with OpenSSL < 1.1.0
10777 - MINOR: peers: adds counters on show peers about tasks calls.
10778 - MEDIUM: enable travis-ci builds
10779 - MINOR: fd: Add a counter of used fds.
10780 - MEDIUM: connections: Add a way to control the number of idling connections.
10781 - BUG/MEDIUM: maps: only try to parse the default value when it's present
10782 - BUG/MINOR: acl: properly detect pattern type SMP_T_ADDR
10783 - REGTEST: Missing REQUIRE_VERSION declarations.
10784 - MINOR: proto_tcp: tcp-request content: enable set-dst and set-dst-var
10785 - BUG/MEDIUM: h1: Don't parse chunks CRLF if not enough data are available
10786 - BUG/MEDIUM: thread/http: Add missing locks in set-map and add-acl HTTP rules
10787 - BUG/MEDIUM: stream: Don't request a server connection if a shutw was scheduled
10788 - BUG/MINOR: 51d: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
10789 - BUG/MINOR: da: Get the request channel to call CHECK_HTTP_MESSAGE_FIRST()
10790 - MINOR: gcc: Fix a silly gcc warning in connect_server()
10791 - MINOR: ssl/cli: async fd io-handlers printable on show fd
10792 - Revert "CLEANUP: wurfl: remove dead, broken and unmaintained code"
10793 - BUILD: add USE_WURFL to the list of known build options
10794 - MINOR: wurfl: indicate in haproxy -vv the wurfl version in use
10795 - BUILD: wurfl: build fix for 1.9/2.0 code base
10796 - CLEANUP: wurfl: removed deprecated methods
10797 - DOC: wurfl: added point of contact in MAINTAINERS file
10798 - MINOR: wurfl: enabled multithreading mode
10799 - MINOR: contrib: dummy wurfl library
10800 - MINOR: dns: dns_requester structures are now in a memory pool
10801 - MINOR: dns: move callback affection in dns_link_resolution()
10802 - MINOR: obj_type: new object type for struct stream
10803 - MINOR: action: new '(http-request|tcp-request content) do-resolve' action
10804 - MINOR: log: Extract some code to send syslog messages.
10805 - REGTEST: replace LEVEL option by a more human readable one.
10806 - REGTEST: rename the reg test files.
10807 - REGTEST: adapt some reg tests after renaming.
10808 - REGTEST: make the "run-regtests" script search for tests in reg-tests by default
10809 - BUG/MAJOR: stream: Missing DNS context initializations.
10810 - BUG/MEDIUM: stream: Fix the way early aborts on the client side are handled
10811 - BUG/MINOR: spoe: Don't systematically wakeup SPOE stream in the applet handler
10812 - BUG/MEDIUM: ssl: Return -1 on recv/send if we got EAGAIN.
10813 - BUG/MAJOR: lb/threads: fix AB/BA locking issue in round-robin LB
10814 - BUG/MAJOR: muxes: Use the HTX mode to find the best mux for HTTP proxies only
10815 - BUG/MINOR: htx: Exclude TCP proxies when the HTX mode is handled during startup
10816 - CLEANUP: task: report calls as unsigned in show sess
10817 - MINOR: tasks/activity: report the context switch and task wakeup rates
10818 - MINOR: stream: measure and report a stream's call rate in "show sess"
10819 - MINOR: applet: measure and report an appctx's call rate in "show sess"
10820 - BUILD: extend Travis CI config to support more platforms
10821 - REGTEST: exclude osx and generic targets for 40be_2srv_odd_health_checks
10822 - REGTEST: relax the IPv6 address format checks in converters_ipmask_concat_strcmp_field_word
10823 - REGTEST: exclude OSX and generic targets from abns_socket.vtc
10824 - BUILD: travis: remove the "allow_failures" entry
10825 - BUG/MINOR: activity: always initialize the profiling variable
10826 - MINOR: activity: make the profiling status per thread and not global
10827 - MINOR: activity: enable automatic profiling turn on/off
10828 - CLEANUP: standard: use proper const to addr_to_str() and port_to_str()
10829 - BUG/MINOR: proto_http: properly reset the stream's call rate on keep-alive
10830 - MINOR: connection: make the debugging helper functions safer
10831 - MINOR: stream/debug: make a stream dump and crash function
10832 - MEDIUM: appctx/debug: force a crash if an appctx spins over itself forever
10833 - MEDIUM: stream/debug: force a crash if a stream spins over itself forever
10834 - MEDIUM: streams: measure processing time and abort when detecting bugs
10835 - BUILD/MEDIUM: contrib: Dummy DeviceAtlas API.
10836 - MEDIUM: da: HTX mode support.
10837 - BUG/MEDIUM: mux-h2: properly deal with too large headers frames
10838 - BUG/MINOR: http: Call stream_inc_be_http_req_ctr() only one time per request
10839 - BUG/MEDIUM: spoe: arg len encoded in previous frag frame but len changed
10840 - MINOR: spoe: Use the sample context to pass frag_ctx info during encoding
10841 - DOC: contrib/modsecurity: Typos and fix the reject example
10842 - BUG/MEDIUM: contrib/modsecurity: If host header is NULL, don't try to strdup it
10843 - MINOR: log: Add "sample" new keyword to "log" lines.
10844 - MINOR: log: Enable the log sampling and load-balancing feature.
10845 - DOC: log: Document the sampling and load-balancing logging feature.
10846 - REGTEST: Add a new reg test for log load-balancing feature.
10847 - BUG/MAJOR: map/acl: real fix segfault during show map/acl on CLI
10848 - REGTEST: Make this reg test be Linux specific.
10849 - CLEANUP: task: move the task_per_thread definition to task.h
10850 - MINOR: activity: report context switch counts instead of rates
10851 - MINOR: threads: Implement HA_ATOMIC_LOAD().
10852 - BUG/MEDIUM: port_range: Make the ring buffer lock-free.
10853 - BUG/MEDIUM: listener: Fix how unlimited number of consecutive accepts is handled
10854 - MINOR: config: Test validity of tune.maxaccept during the config parsing
10855 - CLEANUP: config: Don't alter listener->maxaccept when nbproc is set to 1
10856 - BUG/MEDIUM: servers: fix typo "src" instead of "srv"
10857 - BUG/MEDIUM: ssl: Don't pretend we can retry a recv/send if we got a shutr/w.
10858 - BUG/MINOR: haproxy: fix rule->file memory leak
10859 - BUG/MINOR: log: properly free memory on logformat parse error and deinit()
10860 - BUG/MINOR: checks: free memory allocated for tasklets
10861 - BUG/MEDIUM: pattern: fix memory leak in regex pattern functions
10862 - BUG/MEDIUM: channels: Don't forget to reset output in channel_erase().
10863 - BUG/MEDIUM: connections: Make sure we remove CO_FL_SESS_IDLE on disown.
10864 - MINOR: threads: flatten the per-thread cpu-map
10865 - MINOR: init/threads: remove the useless tids[] array
10866 - MINOR: init/threads: make the threads array global
10867 - BUG/MEDIUM: ssl: Use the early_data API the right way.
10868 - BUG/MEDIUM: streams: Don't add CF_WRITE_ERROR if early data were rejected.
10869 - MEDIUM: streams: Add the ability to retry a request on L7 failure.
10870 - MEDIUM: streams: Add a way to replay failed 0rtt requests.
10871 - MEDIUM: streams: Add a new keyword for retry-on, "junk-response"
10872 - BUG/MINOR: stream: also increment the retry stats counter on L7 retries
10873 - BUG/MEDIUM: checks: make sure the warmup task takes the server lock
10874 - BUG/MINOR: logs/threads: properly split the log area upon startup
10875 - BUILD: extend travis-ci matrix
10876 - CLEANUP: Remove appsession documentation
10877 - DOC: Fix typo in keyword matrix
10878 - BUILD: remove "build_libressl" duplicate declaration
10879 - BUILD: travis-ci: get back to osx without openssl support
10880 - BUILD: enable several LibreSSL hacks, including
10881 - BUILD: temporarily mark LibreSSL builds as allowed to fail
10882 - BUILD: travis: TMPDIR replacement.
10883 - BUG/MEDIUM: ssl: Don't attempt to use early data with libressl.
10884 - MINOR: doc: Document allow-0rtt on the server line.
10885 - MINOR: doc: Document the interaction of allow-0rtt and retry-on 0rtt-rejected.
10886 - MEDIUM: proto: Change the prototype of the connect() method.
10887 - MEDIUM: tcp: add the "tfo" option to support TCP fastopen on the server
10888 - MINOR: config: Extract the code of "stick-table" line parsing.
10889 - BUILD/MINOR: stick-table: Compilation fix.
10890 - MEDIUM: stick-table: Stop handling stick-tables as proxies.
10891 - MINOR: stick-tables: Add peers process binding computing.
10892 - MINOR: stick-table: Add prefixes to stick-table names.
10893 - MINOR: peers: Do not emit global stick-table names.
10894 - DOC: Update for "table" lines in "peers" section.
10895 - REGTEST: Add reg tests for "table" lines in "peers" sections.
10896 - MEDIUM: regex: modify regex_comp() to atomically allocate/free the my_regex struct
10897 - REGTEST: make the tls_health_checks test much faster
10898 - REGTEST: make the "table in peers" test require v2.0
10899 - BUG/MINOR: mux-h2: rely on trailers output not input to turn them to empty data
10900 - BUG/MEDIUM: h2/htx: always fail on too large trailers
10901 - MEDIUM: mux-h2: discard contents that are to be sent after a shutdown
10902 - BUG/MEDIUM: mux-h2/htx: never wait for EOM when processing trailers
10903 - BUG/MEDIUM: h2/htx: never leave a trailers block alone with no EOM block
10904 - REGTEST: Flag some slow reg tests.
10905 - REGTEST: Reg tests file renaming.
10906 - REGTEST: Wrong renaming for one reg test.
10907 - REGTEST: Wrong assumption in IP:port logging test.
10908 - BUG/MINOR: mworker/ssl: close OpenSSL FDs on reload
10909 - MINOR: systemd: Use the variables from /etc/default/haproxy
10910 - MINOR: systemd: Make use of master socket in systemd unit
10911 - MINOR: systemd: support /etc/sysconfig/ for redhat based distrib
10912 - BUG/MEDIUM: stick-table: fix regression caused by a change in proxy struct
10913 - BUG/MEDIUM: tasks: fix possible segfault on task_destroy()
10914 - CLEANUP: task: remove unneeded tests before task_destroy()
10915 - MINOR: mworker: support a configurable maximum number of reloads
10916 - BUG/MINOR: mux-h2: fix the condition to close a cs-less h2s on the backend
10917 - BUG/MEDIUM: spoe: Be sure the sample is found before setting its context
10918 - BUG/MINOR: mux-h1: Fix the parsing of trailers
10919 - BUG/MINOR: htx: Never transfer more than expected in htx_xfer_blks()
10920 - MINOR: htx: Split on DATA blocks only when blocks are moved to an HTX message
10921 - MINOR: htx: Don't try to append a trailer block with the previous one
10922 - MINOR: htx: Remove support for unused OOB HTX blocks
10923 - BUILD: travis-ci bugfixes and improvements
10924 - BUG/MEDIUM: servers: Don't use the same srv flag for cookie-set and TFO.
10925 - BUG/MEDIUM: h2: Make sure we set send_list to NULL in h2_detach().
10926 - BUILD: ssl: fix again a libressl build failure after the openssl FD leak fix
10927 - CLEANUP: ssl-sock: use HA_OPENSSL_VERSION_NUMBER instead of OPENSSL_VERSION_NUMBER
10928 - BUILD: ssl: make libressl use its own version numbers
10929 - CLEANUP: ssl: remove 57 occurrences of useless tests on LIBRESSL_VERSION_NUMBER
10930 - MINOR: ssl: enable aes_gcm_dec on LibreSSL
10931 - BUILD: ssl: fix libressl build again after aes-gcm-enc
10932 - REORG: ssl: move openssl-compat from proto to common
10933 - REORG: ssl: move some OpenSSL defines from ssl_sock to openssl-compat
10934 - CLEANUP: ssl: never include openssl/*.h outside of openssl-compat.h anymore
10935 - CLEANUP: ssl: make inclusion of openssl headers safe
10936 - BUILD: add BoringSSL to travis-ci build matrix
10937 - BUILD: threads: Add __ha_cas_dw fallback for single threaded builds
10938 - BUG/MINOR: stream: Attach the read side on the response as soon as possible
10939 - BUG/MEDIUM: http: Use pointer to the begining of input to parse message headers
10940 - BUG/MEDIUM: h2: Don't check send_wait to know if we're in the send_list.
10941 - BUG/MEDIUM: streams: Make sur SI_FL_L7_RETRY is set before attempting a retry.
10942 - MEDIUM: streams: Add a new http action, disable-l7-retry.
10943 - MINOR: streams: Introduce a new retry-on keyword, all-retryable-errors.
10944 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
10945 - BUILD: travis-ci: make TMPDIR global variable in travis-ci
10946 - CLEANUP: ssl: move the SSL_OP_* and SSL_MODE_* definitions to openssl-compat
10947 - CLEANUP: ssl: remove ifdef around SSL_CTX_get_extra_chain_certs()
10948 - CLEANUP: ssl: move all BIO_* definitions to openssl-compat
10949 - BUILD: threads: fix again the __ha_cas_dw() definition
10950 - BUG/MAJOR: mux-h2: do not add a stream twice to the send list
10951 - Revert "BUG/MINOR: vars: Fix memory leak in vars_check_arg"
10952 - BUG/MINOR: peers: Fix memory leak in cfg_parse_peers
10953 - BUG/MINOR: htx: make sure to always initialize the HTTP method when parsing a buffer
10954 - REGTEST: fix tls_health_checks random failures on MacOS in Travis-CI
10955 - MINOR: spoe: Set the argument chunk size to 0 when SPOE variables are checked
10956 - BUG/MINOR: vars: Fix memory leak in vars_check_arg
10957 - BUG/MAJOR: ssl: segfault upon an heartbeat request
10958 - MINOR: spoa-server: Clone the v1.7 spoa-example project
10959 - MINOR: spoa-server: move some definition from spoa_server.c to spoa_server.h
10960 - MINOR: spoa-server: Externalise debug functions
10961 - MINOR: spoe-server: rename "worker" functions
10962 - MINOR: spoa-server: Replace the thread init system by processes
10963 - MINOR: spoa-server: With debug mode, start only one process
10964 - MINOR: spoa-server: Allow registering external processes
10965 - MINOR: spoa-server: Allow registering message processors
10966 - MINOR: spoa-server: Load files
10967 - MINOR: spoa-server: Prepare responses
10968 - MINOR: spoa-server: Execute registered callbacks
10969 - MINOR: spoa-server: Add Lua processing
10970 - MINOR: spoa-server: Add python
10971 - MINOR/DOC: spoe-server: Add documentation
10972 - BUG/MEDIUM: connections: Don't forget to set xprt_ctx to NULL on close.
10973 - MINOR: lists: add LIST_ADDED() to check if an element belongs to a list
10974 - CLEANUP: mux-h2: use LIST_ADDED() instead of LIST_ISEMPTY() where relevant
10975 - MINOR: mux-h2: add two H2S flags to report the need for shutr/shutw
10976 - CLEANUP: mux-h2: simply use h2s->flags instead of ret in h2_deferred_shut()
10977 - CLEANUP: connection: remove the handle field from the wait_event struct
10978 - BUG/MINOR: log: Wrong log format initialization.
10979 - BUG/MINOR: mux-h2: make the do_shut{r,w} functions more robust against retries
10980 - BUG/MINOR: mworker: use after free when the PID not assigned
10981 - MINOR: mux-h2: remove useless test on stream ID vs last in wake function
10982 - MINOR: mux-h2: make h2_wake_some_streams() not depend on the CS flags
10983 - MINOR: mux-h2: make h2s_wake_one_stream() the only function to deal with CS
10984 - MINOR: mux-h2: make h2s_wake_one_stream() not depend on temporary CS flags
10985 - BUG/MINOR: mux-h2: make sure to honor KILL_CONN in do_shut{r,w}
10986 - CLEANUP: mux-h2: don't test for impossible CS_FL_REOS conditions
10987 - MINOR: mux-h2: add macros to check multiple stream states at once
10988 - MINOR: mux-h2: stop relying on CS_FL_REOS
10989 - BUG/MEDIUM: mux-h2: Set EOI on the conn_stream during h2_rcv_buf()
10990 - BUILD: debug: make gcc not complain on the ABORT_NOW() macro
10991 - MINOR: debug: add a new BUG_ON macro
10992 - MINOR: h2: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
10993 - MINOR: h1: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
10994 - MINOR: connections: Use BUG_ON() to enforce rules in subscribe/unsubscribe.
10995 - BUILD: ist: turn the lower/upper case tables to literal on obsolete linkers
10996
Willy Tarreau6e893b92019-03-26 05:40:51 +0100109972019/03/26 : 2.0-dev2
10998 - CLEANUP: http: Remove unreachable code in parse_http_req_capture
10999 - CLEANUP: stream: Remove bogus loop in conn_si_send_proxy
11000 - MINOR: lists: Implement locked variations.
11001 - MEDIUM: servers: Used a locked list for idle_orphan_conns.
11002 - MEDIUM: servers: Reorganize the way idle connections are cleaned.
11003 - BUG/MEDIUM: lists: Properly handle the case we're removing the first elt.
11004 - MINOR: cfgparse: Add a cast to make gcc happier.
11005 - BUG/MEDIUM: standard: Wrong reallocation size.
11006 - BUG/MINOR: listener: keep accept rate counters accurate under saturation
11007 - DOC: fix alphabetic ordering for "tune.fail-alloc" setting
11008 - MAJOR: config: disable support for nbproc and nbthread in parallel
11009 - MEDIUM: listener: keep a single thread-mask and warn on "process" misuse
11010 - MAJOR: listener: do not hold the listener lock in listener_accept()
11011 - MINOR: listener: maintain a per-thread count of the number of connections on a listener
11012 - MINOR: tools: implement functions to look up the nth bit set in a mask
11013 - MINOR: listener: pre-compute some thread counts per bind_conf
11014 - MINOR: listener: implement multi-queue accept for threads
11015 - MAJOR: listener: use the multi-queue for multi-thread listeners
11016 - MINOR: activity: add accept queue counters for pushed and overflows
11017 - MINOR: config: add global tune.listener.multi-queue setting
11018 - MAJOR: threads: enable one thread per CPU by default
11019 - DOC: update management.txt to reflect that threads are used by default
11020 - BUG/MINOR: config: don't over-count the global maxsock value
11021 - BUG/MEDIUM: list: fix the rollback on addq in the locked liss
11022 - BUG/MEDIUM: list: fix LIST_POP_LOCKED's removal of the last pointer
11023 - BUG/MEDIUM: list: add missing store barriers when updating elements and head
11024 - MINOR: list: make the delete and pop operations idempotent
11025 - MINOR: server: remove a few unneeded LIST_INIT calls after LIST_DEL_LOCKED
11026 - BUG/MEDIUM: listener: use a self-locked list for the dequeue lists
11027 - BUG/MEDIUM: listener: make sure the listener never accepts too many conns
11028 - BUG/MEDIUM: list: correct fix for LIST_POP_LOCKED's removal of last element
11029 - MINOR: listener: introduce listener_backlog() to report the backlog value
11030 - MINOR: listener: do not needlessly set l->maxconn
11031 - MINOR: proxy: do not change the listeners' maxconn when updating the frontend's
11032 - MEDIUM: config: don't enforce a low frontend maxconn value anymore
11033 - MINOR: peers: Add a message for heartbeat.
11034 - MINOR: global: keep a copy of the initial rlim_fd_cur and rlim_fd_max values
11035 - BUG/MINOR: init: never lower rlim_fd_max
11036 - BUG/MINOR: checks: make external-checks restore the original rlim_fd_cur/max
11037 - BUG/MINOR: mworker: be careful to restore the original rlim_fd_cur/max on reload
11038 - MINOR: init: make the maxpipe computation more accurate
11039 - MINOR: init: move some maxsock updates earlier
11040 - MEDIUM: init: make the global maxconn default to what rlim_fd_cur permits
11041 - REGTEST: fix a spurious "nbthread 4" in the connection test
11042 - DOC: update the text related to the global maxconn value
11043 - BUG/MAJOR: mux-h2: fix race condition between close on both ends
11044 - MINOR: sample: Replace "req.ungrpc" smp fetch by a "ungrpc" converter.
11045 - BUG/MEDIUM: list: fix again LIST_ADDQ_LOCKED
11046 - MINOR: htx: unconditionally handle parsing errors in requests or responses
11047 - MINOR: mux-h2: always pass HTX_FL_PARSING_ERROR between h2s and buf on RX
11048 - BUG/MEDIUM: h2/htx: verify that :path doesn't contain invalid chars
11049 - MINOR: sample: Code factorization "ungrpc" converter.
11050 - MINOR: sample: Rework gRPC converter code.
11051 - CLEANUP: wurfl: remove dead, broken and unmaintained code
11052 - MINOR: config: relax the range checks on cpu-map
11053 - BUG/MINOR: ssl: fix warning about ssl-min/max-ver support
11054 - MINOR: sample: Extract some protocol buffers specific code.
11055 - DOC: Remove tabs and fixed punctuation.
11056 - MINOR: sample: Add a protocol buffers specific converter.
11057 - REGTEST: Peers reg tests.
11058 - REGTEST: Enable reg tests with HEAD HTTP method usage.
11059 - MINOR: lists: add a LIST_DEL_INIT() macro
11060 - MINOR: task: use LIST_DEL_INIT() to remove a task from the queue
11061 - MINOR: listener: improve incoming traffic distribution
11062 - MINOR: tools: implement my_flsl()
11063 - MEDIUM: listener: change the LB algorithm again to use two round robins instead
11064 - CLEANUP: listener: remove old thread bit mapping
11065 - MINOR: listener: move thr_idx from the bind_conf to the listener
11066 - BUG/MEDIUM: logs: Only attempt to free startup_logs once.
11067 - BUG/MAJOR: config: Wrong maxconn adjustment.
11068 - BUG/MEDIUM: 51d: fix possible segfault on deinit_51degrees()
11069 - OPTIM: task: limit the impact of memory barriers in taks_remove_from_task_list()
11070 - MINOR: fd: Remove debugging code.
11071 - BUG/MEDIUM: listeners: Don't call fd_stop_recv() if fd_updt is NULL.
11072 - MINOR: threads: Implement __ha_barrier_atomic*.
11073 - MEDIUM: threads: Use __ATOMIC_SEQ_CST when using the newer atomic API.
11074 - MINOR: threads: Add macros to do atomic operation with no memory barrier.
11075 - MEDIUM: various: Use __ha_barrier_atomic* when relevant.
11076 - MEDIUM: applets: Use the new _HA_ATOMIC_* macros.
11077 - MEDIUM: xref: Use the new _HA_ATOMIC_* macros.
11078 - MEDIUM: fd: Use the new _HA_ATOMIC_* macros.
11079 - MEDIUM: freq_ctr: Use the new _HA_ATOMIC_* macros.
11080 - MEDIUM: proxy: Use the new _HA_ATOMIC_* macros.
11081 - MEDIUM: server: Use the new _HA_ATOMIC_* macros.
11082 - MEDIUM: task: Use the new _HA_ATOMIC_* macros.
11083 - MEDIUM: activity: Use the new _HA_ATOMIC_* macros.
11084 - MEDIUM: backend: Use the new _HA_ATOMIC_* macros.
11085 - MEDIUM: cache: Use the new _HA_ATOMIC_* macros.
11086 - MEDIUM: checks: Use the new _HA_ATOMIC_* macros.
11087 - MEDIUM: pollers: Use the new _HA_ATOMIC_* macros.
11088 - MEDIUM: compression: Use the new _HA_ATOMIC_* macros.
11089 - MEDIUM: spoe: Use the new _HA_ATOMIC_* macros.
11090 - MEDIUM: threads: Use the new _HA_ATOMIC_* macros.
11091 - MEDIUM: http: Use the new _HA_ATOMIC_* macros.
11092 - MEDIUM: lb/threads: Use the new _HA_ATOMIC_* macros.
11093 - MEDIUM: listeners: Use the new _HA_ATOMIC_* macros.
11094 - MEDIUM: logs: Use the new _HA_ATOMIC_* macros.
11095 - MEDIUM: memory: Use the new _HA_ATOMIC_* macros.
11096 - MEDIUM: peers: Use the new _HA_ATOMIC_* macros.
11097 - MEDIUM: proto_tcp: Use the new _HA_ATOMIC_* macros.
11098 - MEDIUM: queues: Use the new _HA_ATOMIC_* macros.
11099 - MEDIUM: sessions: Use the new _HA_ATOMIC_* macros.
11100 - MEDIUM: ssl: Use the new _HA_ATOMIC_* macros.
11101 - MEDIUM: stream: Use the new _HA_ATOMIC_* macros.
11102 - MEDIUM: tcp_rules: Use the new _HA_ATOMIC_* macros.
11103 - MEDIUM: time: Use the new _HA_ATOMIC_* macros.
11104 - MEDIUM: vars: Use the new _HA_ATOMIC_* macros.
11105 - MINOR: config: remove obsolete use of DEFAULT_MAXCONN at various places
11106 - MINOR: config: continue to rely on DEFAULT_MAXCONN to set the minimum maxconn
11107 - BUG/MEDIUM: list: fix incorrect pointer unlocking in LIST_DEL_LOCKED()
11108 - BUG/MEDIUM: listener: make sure we don't pick stopped threads
11109 - MEDIUM: list: Remove useless barriers.
11110 - MEDIUM: list: Use _HA_ATOMIC_*
11111 - MEDIUM: connections: Use _HA_ATOMIC_*
11112 - BUG/MAJOR: tasks: Use the TASK_GLOBAL flag to know if we're in the global rq.
11113 - BUG/MEDIUM: threads/fd: do not forget to take into account epoll_fd/pipes
11114 - BUG/MEDIUM: init/threads: consider epoll_fd/pipes for automatic maxconn calculation
11115 - BUG/MEDIUM: tasks: Make sure we wake sleeping threads if needed.
11116 - BUG/MINOR: mux-h1: Don't report an error on EOS if no message was received
11117 - BUG/MINOR: stats/htx: Call channel_add_input() when response headers are sent
11118 - BUG/MINOR: lua/htx: Use channel_add_input() when response data are added
11119 - BUG/MINOR: lua/htx: Don't forget to call htx_to_buf() when appropriate
11120 - MINOR: stats: Add the status code STAT_STATUS_IVAL to handle invalid requests
11121 - MINOR: stats: Move stuff about the stats status codes in stats files
11122 - BUG/MINOR: stats: Be more strict on what is a valid request to the stats applet
11123 - Revert "REGTEST: Enable reg tests with HEAD HTTP method usage."
11124 - BUILD: listener: shut up a build warning when threads are disabled
11125 - BUILD: Makefile: allow the reg-tests target to be verbose
11126 - BUILD: Makefile: resolve LEVEL before calling run-regtests
11127 - BUG/MAJOR: spoe: Fix initialization of thread-dependent fields
11128 - BUG/MAJOR: stats: Fix how huge POST data are read from the channel
11129 - BUG/MINOR: http/counters: fix missing increment of fe->srv_aborts
11130 - BUG/MEDIUM: mux-h2: Always wakeup streams with no id to avoid frozen streams
11131 - MINOR: mux-h2: Set REFUSED_STREAM error to reset a stream if no data was never sent
11132 - MINOR: muxes: Report the Last read with a dedicated flag
11133 - MINOR: proto-http/proto-htx: Make error handling clearer during data forwarding
11134 - BUILD: tools: fix a build warning on some 32-bit archs
11135 - MINOR: init: report the list of optionally available services
11136 - MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter
11137 - BUG/MINOR: cache: Fully consume large requests in the cache applet
11138 - BUG/MINOR: stats: Fully consume large requests in the stats applet
11139 - BUG/MEDIUM: lua: Fully consume large requests when an HTTP applet ends
11140 - MINOR: proto_http: Add function to handle the header "Expect: 100-continue"
11141 - MINOR: proto_htx: Add function to handle the header "Expect: 100-continue"
11142 - MINOR: stats/cache: Handle the header Expect when applets are registered
11143 - MINOR: http/applets: Handle all applets intercepting HTTP requests the same way
11144 - CLEANUP: cache: don't export http_cache_applet anymore
11145 - MINOR: lua: Don't handle the header Expect in lua HTTP applets anymore
11146 - BUG/MINOR: doc: Be accurate on the behavior on pool-purge-delay.
11147 - Revert "MEDIUM: proto_htx: Switch to infinite forwarding if there is no data filter"
11148 - BUG/MEDIUM: mux-h2: Make sure we destroyed the h2s once shutr/shutw is done.
11149 - BUG/MEDIUM: mux-h2: Don't bother keeping the h2s if detaching and nothing to send.
11150 - BUG/MEDIUM: mux-h2: Use the right list in h2_stop_senders().
11151 - MINOR: mux-h2: copy small data blocks more often and reduce the number of pauses
11152 - CLEANUP: mux-h2: add some comments to help understand the code
11153 - BUG/MEDIUM: ssl: ability to set TLS 1.3 ciphers using ssl-default-server-ciphersuites
11154 - BUG/MINOR: log: properly format IPv6 address when LOG_OPT_HEXA modifier is used.
11155 - BUG/MEDIUM: h2: Try to be fair when sending data.
11156 - BUG/MINOR: proto-http: Don't forward request body anymore on error
11157 - MINOR: mux-h2: Remove useless test on ES flag in h2_frt_transfer_data()
11158 - MINOR: connection: and new flag to mark end of input (EOI)
11159 - MINOR: channel: Report EOI on the input channel if it was reached in the mux
11160 - MEDIUM: mux-h2: Don't mix the end of the message with the end of stream
11161 - MINOR: mux-h1: Set CS_FL_EOI the end of the message is reached
11162 - BUG/MEDIUM: http/htx: Fix handling of the option abortonclose
11163 - CLEANUP: muxes/stream-int: Remove flags CS_FL_READ_NULL and SI_FL_READ_NULL
11164 - MEDIUM: proto_htx: Reintroduce the infinite forwarding on data
11165 - BUG/MEDIUM: h2: only destroy the h2s if h2s->cs is NULL.
11166 - BUG/MEDIUM: h2: Use the new sending_list in h2s_notify_send().
11167 - BUG/MEDIUM: h2: Follow the same logic in h2_deferred_shut than in h2_snd_buf.
11168 - BUG/MEDIUM: h2: Remove the tasklet from the task list if unsubscribing.
11169 - BUG/MEDIUM: task/h2: add an idempotent task removal fucntion
11170 - CLEANUP: task: only perform a LIST_DEL() when the list is not empty
11171 - BUG/MEDIUM: mux-h2: make sure to always notify streams of EOS condition
11172 - CONTRIB: debug: report the CS and CF's EOI flags
11173 - MINOR: channel: don't unset CF_SHUTR_NOW after shutting down.
11174
Willy Tarreau6c1b6672019-02-26 16:43:49 +0100111752019/02/26 : 2.0-dev1
11176 - MINOR: mux-h2: only increase the connection window with the first update
11177 - REGTESTS: remove the expected window updates from H2 handshakes
11178 - BUG/MINOR: mux-h2: make empty HEADERS frame return a connection error
11179 - BUG/MEDIUM: mux-h2: mark that we have too many CS once we have more than the max
11180 - MEDIUM: mux-h2: remove padlen during headers phase
11181 - MINOR: h2: add a bit-based frame type representation
11182 - MINOR: mux-h2: remove useless check for empty frame length in h2s_decode_headers()
11183 - MEDIUM: mux-h2: decode HEADERS frames before allocating the stream
11184 - MINOR: mux-h2: make h2c_send_rst_stream() use the dummy stream's error code
11185 - MINOR: mux-h2: add a new dummy stream for the REFUSED_STREAM error code
11186 - MINOR: mux-h2: fail stream creation more cleanly using RST_STREAM
11187 - MINOR: buffers: add a new b_move() function
11188 - MINOR: mux-h2: make h2_peek_frame_hdr() support an offset
11189 - MEDIUM: mux-h2: handle decoding of CONTINUATION frames
11190 - CLEANUP: mux-h2: remove misleading comments about CONTINUATION
11191 - BUG/MEDIUM: servers: Don't try to reuse connection if we switched server.
11192 - BUG/MEDIUM: tasks: Decrement tasks_run_queue in tasklet_free().
11193 - BUG/MINOR: htx: send the proper authenticate header when using http-request auth
11194 - BUG/MEDIUM: mux_h2: Don't add to the idle list if we're full.
11195 - BUG/MEDIUM: servers: Fail if we fail to allocate a conn_stream.
11196 - BUG/MAJOR: servers: Use the list api correctly to avoid crashes.
11197 - BUG/MAJOR: servers: Correctly use LIST_ELEM().
11198 - BUG/MAJOR: sessions: Use an unlimited number of servers for the conn list.
11199 - BUG/MEDIUM: servers: Flag the stream_interface on handshake error.
11200 - MEDIUM: servers: Be smarter when switching connections.
11201 - MEDIUM: sessions: Keep track of which connections are idle.
11202 - MINOR: payload: add sample fetch for TLS ALPN
11203 - BUG/MEDIUM: log: don't mark log FDs as non-blocking on terminals
11204 - MINOR: channel: Add the function channel_add_input
11205 - MINOR: stats/htx: Call channel_add_input instead of updating channel state by hand
11206 - BUG/MEDIUM: cache: Be sure to end the forwarding when XFER length is unknown
11207 - BUG/MAJOR: htx: Return the good block address after a defrag
11208 - MINOR: lb: allow redispatch when using consistent hash
11209 - CLEANUP: mux-h2: fix end-of-stream flag name when processing headers
11210 - BUG/MEDIUM: mux-h2: always restart reading if data are available
11211 - BUG/MINOR: mux-h2: set the stream-full flag when leaving h2c_decode_headers()
11212 - BUG/MINOR: mux-h2: don't check the CS count in h2c_bck_handle_headers()
11213 - BUG/MINOR: mux-h2: mark end-of-stream after processing response HEADERS, not before
11214 - BUG/MINOR: mux-h2: only update rxbuf's length for H1 headers
11215 - BUG/MEDIUM: mux-h1: use per-direction flags to indicate transitions
11216 - BUG/MEDIUM: mux-h1: make HTX chunking consistent with H2
11217 - BUG/MAJOR: stream-int: Update the stream expiration date in stream_int_notify()
11218 - BUG/MEDIUM: proto-htx: Set SI_FL_NOHALF on server side when request is done
11219 - BUG/MEDIUM: mux-h1: Add a task to handle connection timeouts
11220 - MINOR: mux-h2: make h2c_decode_headers() return a status, not a count
11221 - MINOR: mux-h2: add a new dummy stream : h2_error_stream
11222 - MEDIUM: mux-h2: make h2c_decode_headers() support recoverable errors
11223 - BUG/MINOR: mux-h2: detect when the HTX EOM block cannot be added after headers
11224 - MINOR: mux-h2: remove a misleading and impossible test
11225 - CLEANUP: mux-h2: clean the stream error path on HEADERS frame processing
11226 - MINOR: mux-h2: check for too many streams only for idle streams
11227 - MINOR: mux-h2: set H2_SF_HEADERS_RCVD when a HEADERS frame was decoded
11228 - BUG/MEDIUM: mux-h2: decode trailers in HEADERS frames
11229 - MINOR: h2: add h2_make_h1_trailers to turn H2 headers to H1 trailers
11230 - MEDIUM: mux-h2: pass trailers to H1 (legacy mode)
11231 - MINOR: htx: add a new function to add a block without filling it
11232 - MINOR: h2: add h2_make_htx_trailers to turn H2 headers to HTX trailers
11233 - MEDIUM: mux-h2: pass trailers to HTX
11234 - MINOR: mux-h1: parse the content-length header on output and set H1_MF_CLEN
11235 - BUG/MEDIUM: mux-h1: don't enforce chunked encoding on requests
11236 - MINOR: mux-h2: make HTX_BLK_EOM processing idempotent
11237 - MINOR: h1: make the H1 headers block parser able to parse headers only
11238 - MEDIUM: mux-h2: emit HEADERS frames when facing HTX trailers blocks
11239 - MINOR: stream/htx: Add info about the HTX structs in "show sess all" command
11240 - MINOR: stream: Add the subscription events of SIs in "show sess all" command
11241 - MINOR: mux-h1: Add the subscription events in "show fd" command
11242 - BUG/MEDIUM: h1: Get the h1m state when restarting the headers parsing
11243 - BUG/MINOR: cache/htx: Be sure to count partial trailers
11244 - BUG/MEDIUM: h1: In h1_init(), wake the tasklet instead of calling h1_recv().
11245 - BUG/MEDIUM: server: Defer the mux init until after xprt has been initialized.
11246 - MINOR: connections: Remove a stall comment.
11247 - BUG/MEDIUM: cli: make "show sess" really thread-safe
11248 - BUILD: add a new file "version.c" to carry version updates
11249 - MINOR: stream/htx: add the HTX flags output in "show sess all"
11250 - MINOR: stream/cli: fix the location of the waiting flag in "show sess all"
11251 - MINOR: stream/cli: report more info about the HTTP messages on "show sess all"
11252 - BUG/MINOR: lua: bad args are returned for Lua actions
11253 - BUG/MEDIUM: lua: dead lock when Lua tasks are trigerred
11254 - MINOR: htx: Add an helper function to get the max space usable for a block
11255 - MINOR: channel/htx: Add HTX version for some helper functions
11256 - BUG/MEDIUM: cache/htx: Respect the reserve when cached objects are served
11257 - BUG/MINOR: stats/htx: Respect the reserve when the stats page is dumped
11258 - DOC: regtest: make it clearer what the purpose of the "broken" series is
11259 - REGTEST: mailers: add new test for 'mailers' section
11260 - REGTEST: Add a reg test for health-checks over SSL/TLS.
11261 - BUG/MINOR: mux-h1: Close connection on shutr only when shutw was really done
11262 - MEDIUM: mux-h1: Clarify how shutr/shutw are handled
11263 - BUG/MINOR: compression: Disable it if another one is already in progress
11264 - BUG/MINOR: filters: Detect cache+compression config on legacy HTTP streams
11265 - BUG/MINOR: cache: Disable the cache if any compression filter precedes it
11266 - REGTEST: Add some informatoin to test results.
11267 - MINOR: htx: Add a function to truncate all blocks after a specific offset
11268 - MINOR: channel/htx: Add the HTX version of channel_truncate/erase
11269 - BUG/MINOR: proto_htx: Use HTX versions to truncate or erase a buffer
11270 - BUG/CRITICAL: mux-h2: re-check the frame length when PRIORITY is used
11271 - DOC: Fix typo in req.ssl_alpn example (commit 4afdd138424ab...)
11272 - DOC: http-request cache-use / http-response cache-store expects cache name
11273 - REGTEST: "capture (request|response)" regtest.
11274 - BUG/MINOR: lua/htx: Respect the reserve when data are send from an HTX applet
11275 - REGTEST: filters: add compression test
11276 - BUG/MEDIUM: init: Initialize idle_orphan_conns for first server in server-template
11277 - BUG/MEDIUM: ssl: Disable anti-replay protection and set max data with 0RTT.
11278 - DOC: Be a bit more explicit about allow-0rtt security implications.
11279 - MINOR: mux-h1: make the mux_h1_ops struct static
11280 - BUILD: makefile: add an EXTRA_OBJS variable to help build optional code
11281 - BUG/MEDIUM: connection: properly unregister the mux on failed initialization
11282 - BUG/MAJOR: cache: fix confusion between zero and uninitialized cache key
11283 - REGTESTS: test case for map_regm commit 271022150d
11284 - REGTESTS: Basic tests for concat,strcmp,word,field,ipmask converters
11285 - REGTESTS: Basic tests for using maps to redirect requests / select backend
11286 - DOC: REGTESTS README varnishtest -Dno-htx= define.
11287 - MINOR: spoe: Make the SPOE filter compatible with HTX proxies
11288 - MINOR: checks: Store the proxy in checks.
11289 - BUG/MEDIUM: checks: Avoid having an associated server for email checks.
11290 - REGTEST: Switch to vtest.
11291 - REGTEST: Adapt reg test doc files to vtest.
11292 - BUG/MEDIUM: h1: Make sure we destroy an inactive connectin that did shutw.
11293 - BUG/MINOR: base64: dec func ignores padding for output size checking
11294 - BUG/MEDIUM: ssl: missing allocation failure checks loading tls key file
11295 - MINOR: ssl: add support of aes256 bits ticket keys on file and cli.
11296 - BUG/MINOR: backend: don't use url_param_name as a hint for BE_LB_ALGO_PH
11297 - BUG/MINOR: backend: balance uri specific options were lost across defaults
11298 - BUG/MINOR: backend: BE_LB_LKUP_CHTREE is a value, not a bit
11299 - MINOR: backend: move url_param_name/len to lbprm.arg_str/len
11300 - MINOR: backend: make headers and RDP cookie also use arg_str/len
11301 - MINOR: backend: add new fields in lbprm to store more LB options
11302 - MINOR: backend: make the header hash use arg_opt1 for use_domain_only
11303 - MINOR: backend: remap the balance uri settings to lbprm.arg_opt{1,2,3}
11304 - MINOR: backend: move hash_balance_factor out of chash
11305 - MEDIUM: backend: move all LB algo parameters into an union
11306 - MINOR: backend: make the random algorithm support a number of draws
11307 - BUILD/MEDIUM: da: Necessary code changes for new buffer API.
11308 - BUG/MINOR: stick_table: Prevent conn_cur from underflowing
11309 - BUG: 51d: Changes to the buffer API in 1.9 were not applied to the 51Degrees code.
11310 - BUG/MEDIUM: stats: Get the right scope pointer depending on HTX is used or not
11311 - DOC: add a missing space in the documentation for bc_http_major
11312 - REGTEST: checks basic stats webpage functionality
11313 - BUG/MEDIUM: servers: Make assign_tproxy_address work when ALPN is set.
11314 - BUG/MEDIUM: connections: Add the CO_FL_CONNECTED flag if a send succeeded.
11315 - DOC: add github issue templates
11316 - MINOR: cfgparse: Extract some code to be re-used.
11317 - CLEANUP: cfgparse: Return asap from cfg_parse_peers().
11318 - CLEANUP: cfgparse: Code reindentation.
11319 - MINOR: cfgparse: Useless frontend initialization in "peers" sections.
11320 - MINOR: cfgparse: Rework peers frontend init.
11321 - MINOR: cfgparse: Simplication.
11322 - MINOR: cfgparse: Make "peer" lines be parsed as "server" lines.
11323 - MINOR: peers: Make outgoing connection to SSL/TLS peers work.
11324 - MINOR: cfgparse: SSL/TLS binding in "peers" sections.
11325 - DOC: peers: SSL/TLS documentation for "peers"
11326 - BUG/MINOR: startup: certain goto paths in init_pollers fail to free
11327 - BUG/MEDIUM: checks: fix recent regression on agent-check making it crash
11328 - BUG/MINOR: server: don't always trust srv_check_health when loading a server state
11329 - BUG/MINOR: check: Wake the check task if the check is finished in wake_srv_chk()
11330 - BUG/MEDIUM: ssl: Fix handling of TLS 1.3 KeyUpdate messages
11331 - DOC: mention the effect of nf_conntrack_tcp_loose on src/dst
11332 - BUG/MINOR: proto-htx: Return an error if all headers cannot be received at once
11333 - BUG/MEDIUM: mux-h2/htx: Respect the channel's reserve
11334 - BUG/MINOR: mux-h1: Apply the reserve on the channel's buffer only
11335 - BUG/MINOR: mux-h1: avoid copying output over itself in zero-copy
11336 - BUG/MAJOR: mux-h2: don't destroy the stream on failed allocation in h2_snd_buf()
11337 - BUG/MEDIUM: backend: also remove from idle list muxes that have no more room
11338 - BUG/MEDIUM: mux-h2: properly abort on trailers decoding errors
11339 - MINOR: h2: declare new sets of frame types
11340 - BUG/MINOR: mux-h2: CONTINUATION in closed state must always return GOAWAY
11341 - BUG/MINOR: mux-h2: headers-type frames in HREM are always a connection error
11342 - BUG/MINOR: mux-h2: make it possible to set the error code on an already closed stream
11343 - BUG/MINOR: hpack: return a compression error on invalid table size updates
11344 - MINOR: server: make sure pool-max-conn is >= -1
11345 - BUG/MINOR: stream: take care of synchronous errors when trying to send
11346 - CLEANUP: server: fix indentation mess on idle connections
11347 - BUG/MINOR: mux-h2: always check the stream ID limit in h2_avail_streams()
11348 - BUG/MINOR: mux-h2: refuse to allocate a stream with too high an ID
11349 - BUG/MEDIUM: backend: never try to attach to a mux having no more stream available
11350 - MINOR: server: add a max-reuse parameter
11351 - MINOR: mux-h2: always consider a server's max-reuse parameter
11352 - MEDIUM: stream-int: always mark pending outgoing SI_ST_CON
11353 - MINOR: stream: don't wait before retrying after a failed connection reuse
11354 - MEDIUM: h2: always parse and deduplicate the content-length header
11355 - BUG/MINOR: mux-h2: always compare content-length to the sum of DATA frames
11356 - CLEANUP: h2: Remove debug printf in mux_h2.c
11357 - MINOR: cfgparse: make the process/thread parser support a maximum value
11358 - MINOR: threads: make MAX_THREADS configurable at build time
11359 - DOC: nbthread is no longer experimental.
11360 - BUG/MINOR: listener: always fill the source address for accepted socketpairs
11361 - BUG/MINOR: mux-h2: do not report available outgoing streams after GOAWAY
11362 - BUG/MINOR: spoe: corrected fragmentation string size
11363 - BUG/MINOR: task: fix possibly missed event in inter-thread wakeups
11364 - BUG/MEDIUM: servers: Attempt to reuse an unfinished connection on retry.
11365 - BUG/MEDIUM: backend: always call si_detach_endpoint() on async connection failure
11366 - SCRIPTS: add the issue tracker URL to the announce script
11367 - MINOR: peers: Extract some code to be reused.
11368 - CLEANUP: peers: Indentation fixes.
11369 - MINOR: peers: send code factorization.
11370 - MINOR: peers: Add new functions to send code and reduce the I/O handler.
11371 - MEDIUM: peers: synchronizaiton code factorization to reduce the size of the I/O handler.
11372 - MINOR: peers: Move update receive code to reduce the size of the I/O handler.
11373 - MINOR: peers: Move ack, switch and definition receive code to reduce the size of the I/O handler.
11374 - MINOR: peers: Move high level receive code to reduce the size of I/O handler.
11375 - CLEANUP: peers: Be more generic.
11376 - MINOR: peers: move error handling to reduce the size of the I/O handler.
11377 - MINOR: peers: move messages treatment code to reduce the size of the I/O handler.
11378 - MINOR: peers: move send code to reduce the size of the I/O handler.
11379 - CLEANUP: peers: Remove useless statements.
11380 - MINOR: peers: move "hello" message treatment code to reduce the size of the I/O handler.
11381 - MINOR: peers: move peer initializations code to reduce the size of the I/O handler.
11382 - CLEANUP: peers: factor the error handling code in peer_treet_updatemsg()
11383 - CLEANUP: peers: factor error handling in peer_treat_definedmsg()
11384 - BUILD/MINOR: peers: shut up a build warning introduced during last cleanup
11385 - BUG/MEDIUM: mux-h2: only close connection on request frames on closed streams
11386 - CLEANUP: mux-h2: remove two useless but misleading assignments
11387 - BUG/MEDIUM: checks: Check that conn_install_mux succeeded.
11388 - BUG/MEDIUM: servers: Only destroy a conn_stream we just allocated.
11389 - BUG/MEDIUM: servers: Don't add an incomplete conn to the server idle list.
11390 - BUG/MEDIUM: checks: Don't try to set ALPN if connection failed.
11391 - BUG/MEDIUM: h2: In h2_send(), stop the loop if we failed to alloc a buf.
11392 - BUG/MEDIUM: peers: Handle mux creation failure.
11393 - BUG/MEDIUM: servers: Close the connection if we failed to install the mux.
11394 - BUG/MEDIUM: compression: Rewrite strong ETags
11395 - BUG/MINOR: deinit: tcp_rep.inspect_rules not deinit, add to deinit
11396 - CLEANUP: mux-h2: remove misleading leftover test on h2s' nullity
11397 - BUG/MEDIUM: mux-h2: wake up flow-controlled streams on initial window update
11398 - BUG/MEDIUM: mux-h2: fix two half-closed to closed transitions
11399 - BUG/MEDIUM: mux-h2: make sure never to send GOAWAY on too old streams
11400 - BUG/MEDIUM: mux-h2: do not abort HEADERS frame before decoding them
11401 - BUG/MINOR: mux-h2: make sure response HEADERS are not received in other states than OPEN and HLOC
11402 - MINOR: h2: add a generic frame checker
11403 - MEDIUM: mux-h2: check the frame validity before considering the stream state
11404 - CLEANUP: mux-h2: remove stream ID and frame length checks from the frame parsers
11405 - BUG/MINOR: mux-h2: make sure request trailers on aborted streams don't break the connection
11406 - DOC: compression: Update the reasons for disabled compression
11407 - BUG/MEDIUM: buffer: Make sure b_is_null handles buffers waiting for allocation.
11408 - DOC: htx: make it clear that htxbuf() and htx_from_buf() always return valid pointers
11409 - MINOR: htx: never check for null htx pointer in htx_is_{,not_}empty()
11410 - MINOR: mux-h2: consistently rely on the htx variable to detect the mode
11411 - BUG/MEDIUM: peers: Peer addresses parsing broken.
11412 - BUG/MEDIUM: mux-h1: Don't add "transfer-encoding" if message-body is forbidden
11413 - BUG/MEDIUM: connections: Don't forget to remove CO_FL_SESS_IDLE.
11414 - BUG/MINOR: stream: don't close the front connection when facing a backend error
11415 - BUG/MEDIUM: mux-h2: wait for the mux buffer to be empty before closing the connection
11416 - MINOR: stream-int: add a new flag to mention that we want the connection to be killed
11417 - MINOR: connstream: have a new flag CS_FL_KILL_CONN to kill a connection
11418 - BUG/MEDIUM: mux-h2: do not close the connection on aborted streams
11419 - BUG/MINOR: server: fix logic flaw in idle connection list management
11420 - MINOR: mux-h2: max-concurrent-streams should be unsigned
11421 - MINOR: mux-h2: make sure to only check concurrency limit on the frontend
11422 - MINOR: mux-h2: learn and store the peer's advertised MAX_CONCURRENT_STREAMS setting
11423 - BUG/MEDIUM: mux-h2: properly consider the peer's advertised max-concurrent-streams
11424 - MINOR: xref: Add missing barriers.
11425 - MINOR: muxes: Don't bother to LIST_DEL(&conn->list) before calling conn_free().
11426 - MINOR: debug: Add an option that causes random allocation failures.
11427 - BUG/MEDIUM: backend: always release the previous connection into its own target srv_list
11428 - BUG/MEDIUM: htx: check the HTX compatibility in dynamic use-backend rules
11429 - BUG/MINOR: tune.fail-alloc: Don't forget to initialize ret.
11430 - BUG/MINOR: backend: check srv_conn before dereferencing it
11431 - BUG/MEDIUM: mux-h2: always omit :scheme and :path for the CONNECT method
11432 - BUG/MEDIUM: mux-h2: always set :authority on request output
11433 - BUG/MEDIUM: stream: Don't forget to free s->unique_id in stream_free().
11434 - BUG/MINOR: threads: fix the process range of thread masks
11435 - BUG/MINOR: config: fix bind line thread mask validation
11436 - CLEANUP: threads: fix misleading comment about all_threads_mask
11437 - CLEANUP: threads: use nbits to calculate the thread mask
11438 - OPTIM: listener: optimize cache-line packing for struct listener
11439 - MINOR: tools: improve the popcount() operation
11440 - MINOR: config: keep an all_proc_mask like we have all_threads_mask
11441 - MINOR: global: add proc_mask() and thread_mask()
11442 - MINOR: config: simplify bind_proc processing using proc_mask()
11443 - MINOR: threads: make use of thread_mask() to simplify some thread calculations
11444 - BUG/MINOR: compression: properly report compression stats in HTX mode
11445 - BUG/MINOR: task: close a tiny race in the inter-thread wakeup
11446 - BUG/MAJOR: config: verify that targets of track-sc and stick rules are present
11447 - BUG/MAJOR: spoe: verify that backends used by SPOE cover all their callers' processes
11448 - BUG/MAJOR: htx/backend: Make all tests on HTTP messages compatible with HTX
11449 - BUG/MINOR: config: make sure to count the error on incorrect track-sc/stick rules
11450 - DOC: ssl: Clarify when pre TLSv1.3 cipher can be used
11451 - DOC: ssl: Stop documenting ciphers example to use
11452 - BUG/MINOR: spoe: do not assume agent->rt is valid on exit
11453 - BUG/MINOR: lua: initialize the correct idle conn lists for the SSL sockets
11454 - BUG/MEDIUM: spoe: initialization depending on nbthread must be done last
11455 - BUG/MEDIUM: server: initialize the idle conns list after parsing the config
11456 - BUG/MEDIUM: server: initialize the orphaned conns lists and tasks at the end
11457 - MINOR: config: make MAX_PROCS configurable at build time
11458 - BUG/MAJOR: spoe: Don't try to get agent config during SPOP healthcheck
11459 - BUG/MINOR: config: Reinforce validity check when a process number is parsed
11460 - BUG/MEDIUM: peers: check that p->srv actually exists before using p->srv->use_ssl
11461 - CONTRIB: contrib/prometheus-exporter: Add a Prometheus exporter for HAProxy
11462 - BUG/MINOR: mux-h1: verify the request's version before dropping connection: keep-alive
11463 - BUG: 51d: In Hash Trie, multi header matching was affected by the header names stored globaly.
11464 - MEDIUM: 51d: Enabled multi threaded operation in the 51Degrees module.
11465 - BUG/MAJOR: stream: avoid double free on unique_id
11466 - BUILD/MINOR: stream: avoid a build warning with threads disabled
11467 - BUILD/MINOR: tools: fix build warning in the date conversion functions
11468 - BUILD/MINOR: peers: remove an impossible null test in intencode()
11469 - BUILD/MINOR: htx: fix some potential null-deref warnings with http_find_stline
11470 - BUG/MEDIUM: peers: Missing peer initializations.
11471 - BUG/MEDIUM: http_fetch: fix the "base" and "base32" fetch methods in HTX mode
11472 - BUG/MEDIUM: proto_htx: Fix data size update if end of the cookie is removed
11473 - BUG/MEDIUM: http_fetch: fix "req.body_len" and "req.body_size" fetch methods in HTX mode
11474 - BUILD/MEDIUM: initcall: Fix build on MacOS.
11475 - BUG/MEDIUM: mux-h2/htx: Always set CS flags before exiting h2_rcv_buf()
11476 - MINOR: h2/htx: Set the flag HTX_SL_F_BODYLESS for messages without body
11477 - BUG/MINOR: mux-h1: Add "transfer-encoding" header on outgoing requests if needed
11478 - BUG/MINOR: mux-h2: Don't add ":status" pseudo-header on trailers
11479 - BUG/MINOR: proto-htx: Consider a XFER_LEN message as chunked by default
11480 - BUG/MEDIUM: h2/htx: Correctly handle interim responses when HTX is enabled
11481 - MINOR: mux-h2: Set HTX extra value when possible
11482 - BUG/MEDIUM: htx: count the amount of copied data towards the final count
11483 - MINOR: mux-h2: make the H2 MAX_FRAME_SIZE setting configurable
11484 - BUG/MEDIUM: mux-h2/htx: send an empty DATA frame on empty HTX trailers
11485 - BUG/MEDIUM: servers: Use atomic operations when handling curr_idle_conns.
11486 - BUG/MEDIUM: servers: Add a per-thread counter of idle connections.
11487 - MINOR: fd: add a new my_closefrom() function to close all FDs
11488 - MINOR: checks: use my_closefrom() to close all FDs
11489 - MINOR: fd: implement an optimised my_closefrom() function
11490 - BUG/MINOR: fd: make sure my_closefrom() doesn't miss some FDs
11491 - BUG/MAJOR: fd/threads, task/threads: ensure all spin locks are unlocked
11492 - BUG/MAJOR: listener: Make sure the listener exist before using it.
11493 - MINOR: fd: Use closefrom() as my_closefrom() if supported.
11494 - BUG/MEDIUM: mux-h1: Report the right amount of data xferred in h1_rcv_buf()
11495 - BUG/MINOR: channel: Set CF_WROTE_DATA when outgoing data are skipped
11496 - MINOR: htx: Add function to drain data from an HTX message
11497 - MINOR: channel/htx: Add function to skips output bytes from an HTX channel
11498 - BUG/MAJOR: cache/htx: Set the start-line offset when a cached object is served
11499 - BUG/MEDIUM: cache: Get objects from the cache only for GET and HEAD requests
11500 - BUG/MINOR: cache/htx: Return only the headers of cached objects to HEAD requests
11501 - BUG/MINOR: mux-h1: Always initilize h1m variable in h1_process_input()
11502 - BUG/MEDIUM: proto_htx: Fix functions applying regex filters on HTX messages
11503 - BUG/MEDIUM: h2: advertise to servers that we don't support push
11504 - MINOR: standard: Add a function to parse uints (dotted notation).
11505 - MINOR: arg: Add support for ARGT_PBUF_FNUM arg type.
11506 - MINOR: http_fetch: add "req.ungrpc" sample fetch for gRPC.
11507 - MINOR: sample: Add two sample converters for protocol buffers.
11508 - DOC: sample: Add gRPC related documentation.
11509
Willy Tarreaufba74ea2018-12-22 11:19:45 +0100115102018/12/22 : 2.0-dev0
11511 - BUG/MAJOR: connections: Close the connection before freeing it.
11512 - REGTEST: Require the option LUA to run lua tests
11513 - REGTEST: script: Process script arguments before everything else
11514 - REGTEST: script: Evaluate the varnishtest command to allow quoted parameters
11515 - REGTEST: script: Add the option --clean to remove previous log direcotries
11516 - REGTEST: script: Add the option --debug to show logs on standard ouput
11517 - REGTEST: script: Add the option --keep-logs to keep all log directories
11518 - REGTEST: script: Add the option --use-htx to enable the HTX in regtests
11519 - REGTEST: script: Print only errors in the results report
11520 - REGTEST: Add option to use HTX prefixed by the macro 'no-htx'
11521 - REGTEST: Make reg-tests target support argument.
11522 - REGTEST: Fix a typo about barrier type.
11523 - REGTEST: Be less Linux specific with a syslog regex.
11524 - REGTEST: Missing enclosing quotes for ${tmpdir} macro.
11525 - REGTEST: Exclude freebsd target for some reg tests.
11526 - BUG/MEDIUM: h2: Don't forget to quit the sending_list if SUB_CALL_UNSUBSCRIBE.
11527 - BUG/MEDIUM: mux-h2: Don't forget to quit the send list on error reports
11528 - BUG/MEDIUM: dns: Don't prevent reading the last byte of the payload in dns_validate_response()
11529 - BUG/MEDIUM: dns: overflowed dns name start position causing invalid dns error
11530 - BUG/MINOR: compression/htx: Don't compress responses with unknown body length
11531 - BUG/MINOR: compression/htx: Don't add the last block of data if it is empty
11532 - MEDIUM: mux_h1: Implement h1_show_fd.
11533 - REGTEST: script: Add support of alternatives in requited options list
11534 - REGTEST: Add a basic test for the compression
11535 - BUG/MEDIUM: mux-h2: don't needlessly wake up the demux on short frames
11536 - REGTEST: A basic test for "http-buffer-request"
11537 - BUG/MEDIUM: server: Also copy "check-sni" for server templates.
11538 - MINOR: ssl: Add ssl_sock_set_alpn().
11539 - MEDIUM: checks: Add check-alpn.
11540 - wip
11541
Willy Tarreau82230502018-12-19 19:13:17 +0100115422018/12/19 : 1.9.0
11543 - BUG/MEDIUM: compression: Use the right buffer pointers to compress input data
11544 - BUG/MINOR: mux_pt: Set CS_FL_WANT_ROOM when count is zero in rcv_buf() callback
11545 - BUG/MEDIUM: connection: Add a new CS_FL_ERR_PENDING flag to conn_streams.
11546 - CONTRIB: debug: teach the "flags" utility about new conn_stream flags
11547 - BUG/MEDIUM: stream-int: always clear CS_FL_WANT_ROOM before receiving
11548 - BUG/MEDIUM: mux-h2: also restart demuxing when data are pending in demux
11549 - BUG/MEDIUM: mux-h2: restart demuxing as soon as demux data are available
11550 - BUG/MEDIUM: h2: fix aggregated cookie length computation in HTX mode
11551 - MINOR: mux-h2: report more h2c, last h2s and cs information on "show fd"
11552 - CONTRIB: debug: report stream-int's flag SI_FL_CLEAN_ABRT
11553 - MINOR: cli/stream: add the conn_stream in "show sess" output
11554 - BUG/MINOR: mux-h2: don't report a fantom h2s in "show fd"
11555 - BUG/MINOR: cli/fd: don't isolate the thread for each individual fd
11556 - MINOR: objtype: report a few missing types in names and base pointers
11557 - BUG/MEDIUM: mux-h2: make sure to report synchronous errors after EOS
11558 - BUG/MEDIUM: mux-h2: report asynchronous errors in h2_wake_some_streams()
11559 - BUG/MEDIUM: mux-h2: make sure the demux also wakes streams up on errors
11560 - BUG/MINOR: mux-h1: report the correct frontend in error captures
11561 - BUG/MEDIUM: stream-int: also wake the stream up on end of transfer
11562 - MEDIUM: h2: properly check and deduplicate the content-length header in HTX
11563 - BUG/MEDIUM: stream: Forward the right amount of data before infinite forwarding
11564 - BUG/MINOR: proto_htx: Call the HTX version of the function managing client cookies
11565 - BUG/MEDIUM: lua/htx: Handle EOM in receive/get_line calls in HTTP applets
11566 - BUG/MINOR: lua: Return an error if a legacy HTTP applet doesn't send anything
11567 - MINOR: compression: Remove the thread_local variable buf_output
11568 - CLEANUP: connection: rename subscription events values and event field
11569 - CLEANUP: connection: rename conn->mux_ctx to conn->ctx
11570 - MINOR: connection: remove an unwelcome dependency on struct stream
11571 - CLEANUP: stream-int: consistently call the si/stream_int functions
11572 - BUG/MEDIUM: h1: Don't shutw/shutr the connection if we have keepalive.
11573 - BUG/MEDIUM: H2: Make sure htx is set even on empty frames.
11574 - BUG/MEDIUM: mux-h2: pass CS_FL_ERR_PENDING to h2_wake_some_streams()
11575 - MEDIUM: stream-int: always consider all CS errors on the send side
11576 - BUG/MEDIUM: h2: Make sure we don't set CS_FL_ERROR if there's still data.
11577 - CLEANUP: mux-h2: implement h2s_notify_{send,recv} to report events to subscribers
11578 - MINOR: mux-h2: add a new function h2s_alert() to call the data layer
11579 - BUG/MEDIUM: mux-h2: make use of h2s_alert() to report aborts
11580 - MINOR: connection: add cs_set_error() to set the error bits
11581 - CLEANUP: mux-h2: make use of cs_set_error()
11582 - BUG/MINOR: mux-h2: make sure we check the conn_stream in early data
11583 - BUG/MEDIUM: h2: Don't wait for flow control if the connection had a shutr.
11584 - MINOR: cli/show_fd: report that a connection is back or not
11585 - SCRIPTS: add the slack channel URL to the announce script
11586 - CLEANUP: remove my name and address from the copyright banner
11587 - DOC: mention in the readme that 1.9 is a stable version now
11588
Willy Tarreau2a7d6502018-12-16 22:35:06 +0100115892018/12/16 : 1.9-dev11
11590 - BUG/MEDIUM: connection: Don't use the provided conn_stream if it was tried.
11591 - REGTEST/MINOR: remove double body specification for server txresp
11592 - BUG/MEDIUM: connections: Remove error flags when retrying.
11593 - REGTEST/MINOR: skip seamless-reload test with abns socket on freebsd
11594 - REGTEST/MINOR: remove health-check that can make the test fail
11595 - DOC: clarify that check-sni needs an argument.
11596 - DOC: refer to check-sni in the documentation of sni
11597 - BUG/MEDIUM: mux-h2: fix encoding of non-GET/POST methods
11598 - BUG/MINOR: mux-h1: Fix conn_mode processing for headerless outgoing messages
11599 - BUG/MEDIUM: mux-h1: Add a BUSY mode to not loop on pipelinned requests
11600 - BUG/MEDIUM: mux-h1: Don't loop on the headers parsing if the read0 was received
11601 - BUG/MEDIUM: htx: Always do a defrag if a block value is replace by a bigger one
11602 - BUG/MEDIUM: mux-h2: Don't forget to set the CS_FL_EOS flag with htx.
11603 - BUG/MINOR: hpack: fix off-by-one in header name encoding length calculation
11604 - CLEANUP: hpack: no need to include chunk.h, only include buf.h
11605 - MINOR: hpack: simplify the len to bytes conversion
11606 - MINOR: hpack: use ist2bin() to copy header names in hpack_encode_header()
11607 - MINOR: hpack: optimize header encoding for short names
11608 - CONTRIB: hpack: add a compressed stream generator for the encoder
11609 - MEDIUM: hpack: make it possible to encode any static header name
11610 - MINOR: hpack: move the length computation and encoding functions to .h
11611 - MINOR: hpack: provide a function to encode a short indexed header
11612 - MINOR: hpack: provide a function to encode a long indexed header
11613 - MINOR: hpack: provide new functions to encode the ":status" header
11614 - MEDIUM: mux-h2: make use of standard HPACK encoding functions for the status
11615 - MINOR: hpack: provide a function to encode an HTTP method
11616 - MEDIUM: mux-h2: make use of hpack_encode_method() to encode the method
11617 - MINOR: hpack: provide a function to encode an HTTP scheme
11618 - MEDIUM: mux-h2: make use of hpack_encode_scheme() to encode the scheme
11619 - MINOR: hpack: provide a function to encode an HTTP path
11620 - MEDIUM: mux-h2: make use of hpack_encode_path() to encode the path
11621 - REGTEST: add the HTTP rules test involving HTX processing
11622 - REORG: connection: centralize the conn_set_{tos,mark,quickack} functions
11623 - MEDIUM: cli: rework the CLI proxy parser
11624 - MINOR: cli: parse prompt command in the CLI proxy
11625 - MINOR: cli: implements 'quit' in the CLI proxy
11626 - BUG/MINOR: cli: wait for payload data even without prompt
11627 - MEDIUM: cli: handle payload in CLI proxy
11628 - MINOR: cli: use pcli_flags for prompt activation
11629 - MINOR: compression: Rename the function check_legacy_http_comp_flt()
11630 - MINOR: cache/htx: Don't use the same cache on HTX and legacy HTTP proxies
11631 - MINOR: cache: Register the cache as a data filter only if response is cacheable
11632 - MEDIUM: cache/htx: Add the HTX support into the cache
11633 - MINOR: cache: Improve and simplify the cache configuration check
11634 - MINOR: filters: Export the name of known filters
11635 - MEDIUM: cache/compression: Add a way to safely combined compression and cache
11636 - MEDIUM: cache: Require an explicit filter declaration if other filters are used
11637 - REORG: htx: merge types+proto into common/htx.h
11638 - REORG: http: create http_msg.c to place there some legacy HTTP parts
11639 - REORG: h1: move legacy http functions to http_msg.c
11640 - REORG: h1: move the h1_state definition to proto_http
11641 - CLEANUP: h1: remove some occurrences of unneeded h1.h inclusions
11642 - REORG: h1: merge types+proto into common/h1.h
11643 - CLEANUP: stream: remove SF_TUNNEL, SF_INITIALIZED, SF_CONN_TAR
11644 - MEDIUM: mux-h1: implement true zero-copy of DATA blocks
11645 - MINOR: config: round up global.tune.bufsize to the next multiple of 2 void*
11646 - BUG/MINOR: mux-h2: refrain from muxing during the preface
11647 - BUG/MINOR: mux-h2: advertise a larger connection window size
11648 - DOC: master CLI documentation in management.txt
11649 - MINOR: mux-h2: avoid copying large blocks into full buffers
11650 - MEDIUM: mux-h2: implement true zero-copy send of large HTX DATA blocks
11651 - MINOR: mux-h2: force reads to be HTX-aligned in HTX mode
11652 - MINOR: cli: change 'show proc' output of old processes
11653 - BUG/MEDIUM: mux-h1: Fix the zero-copy on output for chunked messages
11654 - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name
11655 - BUG: dns: Prevent out-of-bounds read in dns_read_name()
11656 - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response()
11657 - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response()
11658 - BUG: dns: Fix off-by-one write in dns_validate_dns_response()
11659 - REGTEST: the cache regtest requires haproxy 1.9
11660 - MEDIUM: cli: store CLI level in the appctx
11661 - MEDIUM: cli: show and change CLI permissions
11662 - CLEANUP: cli: use dedicated define instead of appctx ones
11663 - MEDIUM: cli: handle CLI level from the master CLI
11664 - BUG/MEDIUM: cli: handle correctly prefix and payload
11665 - BUILD: Makefile: Implements the help target
11666 - REGTESTS: adjust the http-rules regtest to support window updates
11667 - BUG/MEDIUM: connections: Remove CS_FL_EOS | CS_FL_REOS on retry.
11668 - BUG/MEDIUM: stream_interface: Don't report read0 if we were not connected.
11669 - BUG/MEDIUM: connection: Just make sure we closed the fd on connection failure.
11670 - MEDIUM: mux: Add an optional "reset" method.
11671 - BUG/MEDIUM: mux-h1: Fix loop if server closes its connection with unparsed data
11672 - MINOR: mux-h1: Add helper functions to wake a stream from recv or send
11673 - BUG/MEDIUM: mux-h1: Wake the stream for send once the connection is established
11674 - BUG/MEDIUM: connections: Don't attempt to reuse an unusable connection.
11675 - MEDIUM: htx: Try to take a connection over if it has no owner.
11676 - REGTEST: Reg testing improvements.
11677 - REGTEST: Add a first test for health-checks.
11678 - REGTEST: Reg test for "check" health-check option.
11679 - REGTEST: level 1 health-check test 2.
11680 - REGTEST: Add miscellaneous reg tests for health-checks.
11681 - REGTEST: add a few HTTP messaging tests
11682 - MINOR: lb: make the leastconn algorithm more accurate
11683 - REGTEST: fix missing space in checks/s00001
11684 - REGTEST: http-messaging: add "option http-buffer-request" for H2 tests
11685 - BUG/MEDIUM: cache: fix random crash on filter parser's error path
11686 - MINOR: connection: realign empty buffers in muxes, not transport layers
11687 - MINOR: mux_h1/h2: simplify the zero-copy Rx alignment
11688 - MINOR: backend: count the number of connect and reuse per server and per backend
11689 - BUG/MINOR: stats: fix inversion of failed header rewrites and other statuses
11690 - MINOR: tools: increase the number of ITOA strings to 16
11691 - MINOR: cache: report the number of cache lookups and cache hits
11692 - MEDIUM: tasks: check the global task mask instead of the thread number
11693 - MINOR: mworker: set all_threads_mask and pid_bit to 1
11694 - BUG/MINOR: proto_htx: Fix htx_res_set_status to also set the reason
11695 - BUG/MINOR: stats: Parse post data for HTX streams
11696 - MINOR: payload/htx: Adapt smp_fetch_len to be HTX aware
11697 - MINOR: http_fecth: Implement body_len and body_size sample fetches for the HTX
11698 - MAJOR: lua: Forbid calls to Channel functions for LUA scripts in HTTP proxies
11699 - MEDIUM: lua/htx: Adapt functions of the HTTP to be compatible with HTX
11700 - MINOR: lua/htx: Adapt the functions get_in_length and is_full to be HTX aware
11701 - MAJOR: lua/htx: Adapt HTTP applets to support HTX messages
11702 - MINOR: lua: Remove useless check on the messages state in HTTP functions
11703 - BUG/MEDIUM: htx: When performing zero-copy, start from the right offset.
11704 - BUG/MINOR: mworker: don't use unitialized mworker_proc struct
11705 - MINOR: mworker/cli: indicate in the master prompt when a reload failed
11706 - MINOR: cli: implements 'reload' on master CLI
11707 - BUG/MEDIUM: log: Don't call sample_fetch_as_type if we don't have a stream.
11708 - BUG/MEDIUM: mux-h1: make sure we always have at least one HTX block to send
11709 - BUG/MAJOR: backend: only update server's counters when the server exists
11710 - MINOR: tools: preset the port of fd-based "sockets" to zero
11711 - BUG/MINOR: log: fix logging to both FD and IP
11712 - REGTEST: Add a reg test for HTTP cookies.
11713 - BUILD: ssl: Fix compilation without deprecated OpenSSL 1.1 APIs
11714 - BUILD: thread: properly report multi-thread support
11715 - BUG/MINOR: logs: leave startup-logs global and not per-thread
11716 - BUG/MEDIUM: threads: don't close the thread waker pipe if not init
11717 - BUG/MAJOR: compression/cache: Make it really works with these both filters
11718 - BUG/MEDIUM: h2: Don't forget to destroy the h2s after deferred shut.
11719 - MEDIUM: proxy: Set http-reuse safe as default.
11720 - MEDIUM: servers: Add a command to limit the number of idling connections.
11721 - MEDIUM: servers: Replace idle-timeout with pool-purge-delay.
11722 - MEDIUM: mux: Destroy the stream before trying to add the conn to the idle list.
11723 - MEDIUM: mux: provide the session to the init() and attach() method.
11724 - MEDIUM: sessions: Don't keep an infinite number of idling connections.
11725 - MEDIUM: servers: Be more agressive when adding H2 connection to idle lists.
11726 - MEDIUM: mux_h2: Always set CS_FL_NOT_FIRST for new conn_streams.
11727 - BUG/MEDIUM: htx/cache: use the correct class of error codes on abort
11728 - BUG/MINOR: cache: also consider CF_SHUTR to abort delivery
11729 - MINOR: pools: Cast to volatile int * instead of int *.
11730 - MINOR: debug: make the ABORT_NOW macro use a volatile int
11731 - BUG/MEDIUM: h2: Don't destroy the h2s if it still has a cs attached.
11732 - BUG/MEDIUM: mux-h1: don't try to process an empty input buffer
11733 - DOC: clarify the agent-check status line syntax
11734 - BUG/MAJOR: hpack: fix length check for short names encoding
11735 - DOC: split the README into README + INSTALL
11736
Willy Tarreau72e92272018-12-08 16:20:55 +0100117372018/12/08 : 1.9-dev10
11738 - MINOR: htx: Rename functions htx_*_to_str() to be H1 specific
11739 - BUG/MINOR: htx: Force HTTP/1.1 on H1 formatting when version is 1.1 or above
11740 - BUG/MINOR: fix ssl_fc_alpn and actually add ssl_bc_alpn
11741 - BUG/MEDIUM: mworker: stop proxies which have no listener in the master
11742 - BUG/MEDIUM: h1: Destroy a connection after detach if it has no owner.
11743 - BUG/MEDIUM: h2: Don't forget to wake the tasklet after shutr/shutw.
11744 - BUG/MINOR: flt_trace/compression: Use the right flag to add the HTX support
11745 - BUG/MEDIUM: stream_interface: Make REALLY sure we read all the data.
11746 - MEDIUM: mux-h1: Revamp the way subscriptions are handled.
11747 - BUG/MEDIUM: mux-h1: Always set CS_FL_RCV_MORE when data are received in h1_recv()
11748 - MINOR: mux-h1: Make sure to return 1 in h1_recv() when needed
11749 - BUG/MEDIUM: mux-h1: Release the mux H1 in h1_process() if there is no h1s
11750 - BUG/MINOR: proto_htx: Truncate the request when an error is detected
11751 - BUG/MEDIUM: h2: When sending in HTX, make sure the caller knows we sent all.
11752 - BUG/MEDIUM: mux-h2: properly update the window size in HTX mode
11753 - BUG/MEDIUM: mux-h2: make sure to always report HTX EOM when consumed by headers
11754 - BUG/MEDIUM: mux-h2: stop sending HTX once the mux is blocked
11755 - BUG/MEDIUM: mux-h2: don't send more HTX data than requested
11756 - MINOR: mux-h2: stop on non-DATA and non-EOM HTX blocks
11757 - BUG/MEDIUM: h1: Correctly report used data with no len.
11758 - MEDIUM: h1: Realign the ibuf before calling rcv_buf if needed.
11759 - BUG/MEDIUM: mux_pt: Always set CS_FL_RCV_MORE.
11760 - MINOR: htx: make htx_from_buf() adjust the size only on new buffers
11761 - MINOR: htx: add buf_room_for_htx_data() to help optimize buffer transfers
11762 - MEDIUM: mux-h1: make use of buf_room_for_htx_data() instead of b_room()
11763 - MEDIUM: mux-h1: attempt to zero-copy Rx DATA transfers
11764 - MEDIUM: mux-h1: avoid a double copy on the Tx path whenever possible
11765 - BUG/MEDIUM: stream-int: don't mark as blocked an empty buffer on Rx
11766 - BUG/MINOR: mux-h1: Check h1m flags to set the server conn_mode on request path
11767 - MEDIUM: htx: Rework conversion from a buffer to an htx structure
11768 - MEDIUM: channel/htx: Add functions for forward HTX data
11769 - MINOR: mux-h1: Don't adjust anymore the amount of data sent in h1_snd_buf()
11770 - CLEANUP: htx: Fix indentation here and there in HTX files
11771 - MINOR: mux-h1: Allow partial data consumption during outgoing data processing
11772 - BUG/MEDIUM: mux-h2: use the correct offset for the HTX start line
11773 - BUG/MEDIUM: mux-h2: stop sending using HTX on errors
11774 - MINOR: mux-h1: Drain obuf if the output is closed after sending data
11775 - BUG/MEDIUM: mworker: stop every tasks in the master
11776 - BUG/MEDIUM: htx: Set the right start-line offset after a defrag
11777 - BUG/MEDIUM: stream: Don't dereference s->txn when it is not there yet.
11778 - BUG/MEDIUM: connections: Reuse an already attached conn_stream.
11779 - MINOR: stream-int: add a new blocking condition on the remote connection
11780 - BUG/MEDIUM: stream-int: don't attempt to receive if the connection is not established
11781 - BUG/MEDIUM: lua: block on remote connection establishment
11782 - BUG/MEDIUM: mworker: fix several typos in mworker_cleantasks()
11783 - SCRIPTS/REGTEST: merge grep+sed into sed in run-regtests
11784 - BUG/MEDIUM: connections: Split CS_FL_RCV_MORE into 2 flags.
11785 - BUG/MEDIUM: h1: Don't free the connection if it's an outgoing connection.
11786 - BUG/MEDIUM: h1: Set CS_FL_REOS if we had a read0.
11787 - BUG/MEDIUM: mux-h1: Be sure to have a conn_stream to set CS_FL_REOS in h1_recv
11788 - REGTEST: Move LUA reg test 4 to level 1.
11789 - MINOR: ist: add functions to copy/uppercase/lowercase into a buffer or string
11790 - MEDIUM: ist: always turn header names to lower case
11791 - MINOR: h2: don't turn HTX header names to lower case anymore
11792 - MEDIUM: ist: use local conversion arrays to case conversion
11793 - MINOR: htx: switch to case sensitive search of lower case header names
11794 - MINOR: mux-h1: Set CS_FL_EOS when read0 is detected and no data are pending
11795 - BUG/MINOR: stream-int: Process read0 even if no data was received in si_cs_recv
11796 - REGTEST: fix the Lua test file name in test lua/h00002 :-)
11797 - REGTEST: add a basic test for HTTP rules manipulating headers
11798 - BUG/MEDIUM: sample: Don't treat SMP_T_METH as SMP_T_STR.
11799 - MINOR: sample: add bc_http_major
11800 - BUG/MEDIUM: htx: fix typo in htx_replace_stline() making it fail all the time
11801 - REGTEST: make the HTTP rules test compatible with HTTP/2 as well
11802 - BUG/MEDIUM: h2: Don't try to chunk data when using HTX.
11803 - MINOR: compiler: add a new macro ALREADY_CHECKED()
11804 - BUILD: h2: mark the start line already checked to avoid warnings
11805 - BUG/MINOR: mux-h1: Remove the connection header when it is useless
11806
Willy Tarreauda7e3be2018-12-02 19:31:37 +0100118072018/12/02 : 1.9-dev9
11808 - BUILD/MINOR: ssl: fix build with non-alpn/non-npn libssl
11809 - BUG/MINOR: mworker: Do not attempt to close(2) fd -1
11810 - BUILD: compression: fix build error with DEFAULT_MAXZLIBMEM
11811 - MINOR: compression: always create the compression pool
11812 - BUG/MEDIUM: mworker: fix FD leak upon reload
11813 - BUILD: htx: fix fprintf format inconsistency on 32-bit platforms
11814 - BUILD: buffers: buf.h requires unistd to get ssize_t on libmusl
11815 - MINOR: initcall: introduce a way to register init functions to call at boot
11816 - MINOR: init: process all initcalls in order at boot time
11817 - MEDIUM: init: convert all trivial registration calls to initcalls
11818 - MINOR: thread: provide a set of lock initialisers
11819 - MINOR: threads: add new macros to declare self-initializing locks
11820 - MEDIUM: init: use self-initializing spinlocks and rwlocks
11821 - MINOR: initcall: apply initcall to all register_build_opts() calls
11822 - MINOR: initcall: use initcalls for most post_{check,deinit} and per_thread*
11823 - MINOR: initcall: use initcalls for section parsers
11824 - MINOR: memory: add a callback function to create a pool
11825 - MEDIUM: init: use initcall for all fixed size pool creations
11826 - MEDIUM: memory: use pool_destroy_all() to destroy all pools on deinit()
11827 - MEDIUM: initcall: use initcalls for a few initialization functions
11828 - MEDIUM: memory: make the pool cache an array and not a thread_local
11829 - MINOR: ssl: free ctx when libssl doesn't support NPN
11830 - BUG/MINOR: proto_htx: only mark connections private if NTLM is detected
11831 - MINOR: h2: make struct h2_ops static
11832 - BUG/MEDIUM: mworker: avoid leak of client socket
11833 - REORG: mworker: declare master variable in global.h
11834 - BUG/MEDIUM: listeners: CLOEXEC flag is not correctly set
11835 - CLEANUP: http: Fix typo in init_http's comment
11836 - BUILD: Makefile: Disable -Wcast-function-type if it exists.
11837 - BUG/MEDIUM: h2: Don't bogusly error if the previous stream was closed.
11838 - REGTEST/MINOR: script: add run-regtests.sh script
11839 - REGTEST: Add a basic test for the cache.
11840 - BUG/MEDIUM: mux_pt: Don't forget to unsubscribe() on attach.
11841 - BUG/MINOR: ssl: ssl_sock_parse_clienthello ignores session id
11842 - BUG/MEDIUM: connections: Wake the stream once the mux is chosen.
11843 - BUG/MEDIUM: connections: Don't forget to detach the connection from the SI.
11844 - BUG/MEDIUM: stream_interface: Don't check if the handshake is done.
11845 - BUG/MEDIUM: stream_interface: Make sure we read all the data available.
11846 - BUG/MEDIUM: h2: Call h2_process() if there's an error on the connection.
11847 - REGTEST: Fix several issues.
11848 - REGTEST: lua: check socket functionality from a lua-task
11849 - BUG/MEDIUM: session: Remove the session from the session_list in session_free.
11850 - BUG/MEDIUM: streams: Don't assume we have a CS in sess_update_st_con_tcp.
11851 - BUG/MEDIUM: connections: Don't assume we have a mux in connect_server().
11852 - BUG/MEDIUM: connections: Remove the connection from the idle list before destroy.
11853 - BUG/MEDIUM: session: properly clean the outgoing connection before freeing.
11854 - BUG/MEDIUM: mux_pt: Don't try to send if handshake is not done.
11855 - MEDIUM: connections: Put H2 connections in the idle list if http-reuse always.
11856 - MEDIUM: h2: Destroy a connection with no stream if it has no owner.
11857 - MAJOR: sessions: Store multiple outgoing connections in the session.
11858 - MEDIUM: session: Steal owner-less connections on end of transaction.
11859 - MEDIUM: server: Be smarter about deciding to reuse the last server.
11860 - BUG/MEDIUM: Special-case http_proxy when dealing with outgoing connections.
11861 - BUG/MINOR: cfgparse: Fix transition between 2 sections with the same name
11862 - BUG/MINOR: http: Use out buffer instead of trash to display error snapshot
11863 - BUG/MINOR: htx: Fix block size calculation when a start-line is added/replaced
11864 - BUG/MINOR: mux-h1: Fix processing of "Connection: " header on outgoing messages
11865 - BUG/MEDIUM: mux-h1: Reset the H1 parser when an outgoing message is processed
11866 - BUG/MINOR: proto_htx: Send outgoing data to client to start response processing
11867 - BUG/MINOR: htx: Stop a header or a start line lookup on the first EOH or EOM
11868 - BUG/MINOR: connection: report mux modes when HTX is supported
11869 - MINOR: htx: add a function to cut the beginning of a DATA block
11870 - MEDIUM: conn_stream: Add a way to get mux's info on a CS from the upper layer
11871 - MINOR: mux-h1: Implement get_cs_info() callback
11872 - MINOR: stream: Rely on CS's info if it exists and fallback on session's ones
11873 - MINOR: proto_htx: Use conn_stream's info to set t_idle duration when possible
11874 - MINOR: mux-h1: Don't rely on the stream anymore in h1_set_srv_conn_mode()
11875 - MINOR: mux-h1: Write last chunk and trailers if not found in the HTX message
11876 - MINOR: mux-h1: Be prepare to fail when EOM is added during trailers parsing
11877 - MINOR: mux-h1: Subscribe to send in h1_snd_buf() when not all data have been sent
11878 - MINOR: mux-h1: Consume channel's data in a loop in h1_snd_buf()
11879 - MEDIUM: mux-h1: Add keep-alive outgoing connections in connections list
11880 - MINOR: htx: Add function to add an HTX block just before another one
11881 - MINOR: htx: Add function to iterate on an HTX message using HTX blocks
11882 - MINOR: htx: Add a function to find the HTX block corresponding to a data offset
11883 - MINOR: stats: Don't add end-of-data marker and trailers in the HTX response
11884 - MEDIUM: htx: Change htx_sl to be a struct instead of an union
11885 - MINOR: htx: Add the start-line offset for the HTX message in the HTX structure
11886 - MEDIUM: htx: Don't rely on h1_sl anymore except during H1 header parsing
11887 - MINOR: proto-htx: Use the start-line flags to set the HTTP messsage ones
11888 - MINOR: htx: Add BODYLESS flags on the HTX start-line and the HTTP message
11889 - MINOR: proto_htx: Use full HTX messages to send 100-Continue responses
11890 - MINOR: proto_htx: Use full HTX messages to send 103-Early-Hints responses
11891 - MINOR: proto_htx: Use full HTX messages to send 401 and 407 responses
11892 - MINOR: proto_htx: Send valid HTX message when redir mode is enabled on a server
11893 - MINOR: proto_htx: Send valid HTX message to send 30x responses
11894 - MEDIUM: proto_htx: Convert all HTTP error messages into HTX
11895 - MINOR: mux-h1: Process conn_mode on the EOH when no connection header is found
11896 - MINOR: mux-h1: Change client conn_mode on an explicit close for the response
11897 - MINOR: mux-h1: Capture bad H1 messages
11898 - MAJOR: filters: Adapt filters API to be compatible with the HTX represenation
11899 - MEDIUM: proto_htx/filters: Add data filtering during the forwarding
11900 - MINOR: flt_trace: Adapt to be compatible with the HTX representation
11901 - MEDIUM: compression: Adapt to be compatible with the HTX representation
11902 - MINOR: h2: implement H2->HTX request header frame transcoding
11903 - MEDIUM: mux-h2: register mux for both HTTP and HTX modes
11904 - MEDIUM: mux-h2: make h2_rcv_buf() support HTX transfers
11905 - MEDIUM: mux-h2: make h2_snd_buf() HTX-aware
11906 - MEDIUM: mux-h2: add basic H2->HTX transcoding support for headers
11907 - MEDIUM: mux-h2: implement emission of H2 headers frames from HTX blocks
11908 - MEDIUM: mux-h2: implement the emission of DATA frames from HTX DATA blocks
11909 - MEDIUM: mux-h2: support passing H2 DATA frames to HTX blocks
11910 - BUG/MINOR: cfgparse: Fix the call to post parser of the last sections parsed
11911 - BUG/MEDIUM: mux-h2: don't lose the first response header in HTX mode
11912 - BUG/MEDIUM: mux-h2: remove the HTX EOM block on H2 response headers
11913 - MINOR: listener: the mux_proto entry in the bind_conf is const
11914 - MINOR: connection: create conn_get_best_mux_entry()
11915 - MINOR: server: the mux_proto entry in the server is const
11916 - MINOR: config: make sure to associate the proper mux to bind and servers
11917 - MINOR: hpack: add ":path" to the list of common header fields
11918 - MINOR: h2: add new functions to produce an HTX message from an H2 response
11919 - MINOR: mux-h2: mention that the mux is compatible with both sides
11920 - MINOR: mux-h2: implement an outgoing stream allocator : h2c_bck_stream_new()
11921 - MEDIUM: mux-h2: start to create the outgoing mux
11922 - MEDIUM: mux-h2: implement encoding of H2 request on the backend side
11923 - MEDIUM: mux-h2: make h2_frt_decode_headers() direction-agnostic
11924 - MEDIUM: mux-h2: make h2_process_demux() capable of processing responses as well
11925 - MEDIUM: mux-h2: Implement h2_attach().
11926 - MEDIUM: mux-h2: Don't bother flagging outgoing connections as TOOMANY.
11927 - REGTEST: Fix LEVEL 4 script 0 of "connection" module.
11928 - MINOR: connection: Fix a comment.
11929 - MINOR: mux: add a "max_streams" method.
11930 - MEDIUM: servers: Add a way to keep idle connections alive.
11931 - CLEANUP: fix typos in the htx subsystem
11932 - CLEANUP: Fix typo in the chunk headers file
11933 - CLEANUP: Fix typos in the h1 subsystem
11934 - CLEANUP: Fix typos in the h2 subsystem
11935 - CLEANUP: Fix a typo in the mini-clist header
11936 - CLEANUP: Fix a typo in the proto_htx subsystem
11937 - CLEANUP: Fix typos in the proto_tcp subsystem
11938 - CLEANUP: Fix a typo in the signal subsystem
11939 - CLEANUP: Fix a typo in the session subsystem
11940 - CLEANUP: Fix a typo in the queue subsystem
11941 - CLEANUP: Fix typos in the shctx subsystem
11942 - CLEANUP: Fix typos in the socket pair protocol subsystem
11943 - CLEANUP: Fix typos in the map management functions
11944 - CLEANUP: Fix typo in the fwrr subsystem
11945 - CLEANUP: Fix typos in the cli subsystem
11946 - CLEANUP: Fix typo in the 51d subsystem
11947 - CLEANUP: Fix a typo in the base64 subsystem
11948 - CLEANUP: Fix a typo in the connection subsystem
11949 - CLEANUP: Fix a typo in the protocol header file
11950 - CLEANUP: Fix a typo in the checks header file
11951 - CLEANUP: Fix typos in the file descriptor subsystem
11952 - CLEANUP: Fix a typo in the listener subsystem
11953 - BUG/MINOR: lb-map: fix unprotected update to server's score
11954 - BUILD: threads: fix minor build warnings when threads are disabled
11955
Willy Tarreau0b936ad2018-11-25 09:16:46 +0100119562018/11/25 : 1.9-dev8
11957 - REORG: config: extract the global section parser into cfgparse-global
11958 - REORG: config: extract the proxy parser into cfgparse-listen.c
11959 - BUILD: update the list of supported targets and compilers in makefile and readme
11960 - BUILD: reorder the objects in the makefile
11961 - BUILD: Makefile: make "V=1" show some of the commands that are executed
11962 - BUILD: Makefile: add the quiet mode to a few more targets
11963 - BUILD: Makefile: add "$(Q)" to clean, tags and cscope targets
11964 - BUILD: Makefile: switch to quiet mode by default for CC/LD/AR
11965 - MINOR: cli: format `show proc` to be more readable
11966 - MINOR: cli: displays uptime in `show proc`
11967 - MINOR: cli: show master information in 'show proc'
11968 - BUG/MEDIUM: hpack: fix encoding of "accept-ranges" field
11969 - MAJOR: mux-h1: Remove the rxbuf and decode HTTP messages in channel's buffer
11970 - BUG/MINOR: mux-h1: Enable keep-alive on server side
11971 - BUG/MEDIUM: mux-h1: Fix freeze when the kernel splicing is used
11972 - BUG/MEDIUM: mux-h1: Don't set the flag CS_FL_RCV_MORE when nothing was parsed
11973 - BUG/MINOR: stats/htx: Remove channel's output when the request is eaten
11974 - BUG/MINOR: proto_htx: Fix request/response synchronisation on error
11975 - MINOR: stream-int: Notify caller when an error is reported after a rcv_pipe()
11976 - MINOR: stream-int: Notify caller when an error is reported after a rcv_buf()
11977 - BUG/MINOR: stream-int: Don't call snd_buf() if there are still data in the pipe
11978 - MINOR: stream-int: remove useless checks on CS and conn flags in si_cs_send()
11979 - BUG/MINOR: config: Be aware of the HTX during the check of mux protocols
11980 - BUG/MINOR: mux-htx: Fix bad test on h1c flags in h1_recv_allowed()
11981 - MEDIUM: mworker: wait mode use standard init code path
11982 - MINOR: log: introduce ha_notice()
11983 - MINOR: mworker: use ha_notice to announce a new worker
11984 - BUG/MEDIUM: http_fetch: Make sure name is initialized before http_find_header.
11985 - MINOR: cli: add mworker_accept_wrapper to 'show fd'
11986 - MEDIUM: signal: signal_unregister() removes every handlers
11987 - BUG/MEDIUM: mworker: unregister the signals of main()
11988 - MINOR: cli: add a few missing includes in proto/cli.h
11989 - REORG: time/activity: move activity measurements to activity.{c,h}
11990 - MINOR: activity: report the average loop time in "show activity"
11991 - MINOR: activity: add configuration and CLI support for "profiling.tasks"
11992 - MEDIUM: tasks: collect per-task CPU time and latency
11993 - MINOR: sample: add cpu_calls, cpu_ns_avg, cpu_ns_tot, lat_ns_avg, lat_ns_tot
11994 - MINOR: cli/activity: rename the stolen CPU time fields to mention milliseconds
11995 - BUG/MINOR: cli: Fix memory leak
11996 - BUG/MINOR: mworker: fix FD leak and memory leak in error path
11997 - MINOR: poller: move the call of tv_update_date() back to the pollers
11998 - MINOR: polling: add an option to support busy polling
11999 - MINOR: server: Add "alpn" and "npn" keywords.
12000 - MEDIUM: connection: Don't bother reactivating polling after connection retry.
12001 - MAJOR: connections: Defer mux creation for outgoing connection if alpn is set.
12002 - MEDIUM: ssl: Add ssl_bc_alpn and ssl_bc_npn sample fetches.
12003 - MINOR: servers: Free [idle|safe|priv]_conns on exit.
12004 - REGTEST: add the option to test only a specific set of files
12005 - REGTEST: add a test for connections to a "dispatch" address
12006 - BUG/MEDIUM: connections: Don't reset the conn flags in *connect_server().
12007 - MINOR: server: Only defined conn_complete_server if USE_OPENSSL is set.
12008 - BUG/MEDIUM: servers: Don't check if we have a conn_stream too soon.
12009 - BUG/MEDIUM: sessions: Set sess->origin to NULL if the origin was destroyed.
12010 - MEDIUM: servers: Store the connection in the SI until we have a mux.
12011 - BUG/MEDIUM: h2: wake the processing task up after demuxing
12012 - BUG/MEDIUM: h2: restart demuxing after releasing buffer space
12013
Willy Tarreau5c0e41b2018-11-18 22:33:00 +0100120142018/11/18 : 1.9-dev7
12015 - BUILD: cache: fix a build warning regarding too large an integer for the age
12016 - CLEANUP: fix typos in the comments of the Makefile
12017 - CLEANUP: fix a typo in a comment for the contrib/halog subsystem
12018 - CLEANUP: fix typos in comments for the contrib/modsecurity subsystem
12019 - CLEANUP: fix typos in comments for contrib/spoa_example
12020 - CLEANUP: fix typos in comments for contrib/wireshark-dissectors
12021 - DOC: Fix typos in README and CONTRIBUTING
12022 - MINOR: log: slightly improve error message syntax on log failure
12023 - DOC: logs: the format directive was missing from the second log part
12024 - MINOR: log: report the number of dropped logs in the stats
12025 - MEDIUM: log: add support for logging to existing file descriptors
12026 - MEDIUM: log: support a new "short" format
12027 - MEDIUM: log: add a new "raw" format
12028 - BUG/MEDIUM: stream-int: change the way buffer room is requested by a stream-int
12029 - BUG/MEDIUM: stream-int: convert some co_data() checks to channel_is_empty()
12030 - MINOR: namespaces: don't build namespace.c if disabled
12031 - BUILD/MEDIUM: threads/affinity: DragonFly build fix
12032 - MINOR: http: Add new "early-hint" http-request action.
12033 - MINOR: http: Make new "early-hint" http-request action really be parsed.
12034 - MINOR: http: Implement "early-hint" http request rules.
12035 - MINOR: doc: Add information about "early-hint" http-request action.
12036 - DOC: early-hints: fix truncated line.
12037 - MINOR: mworker: only close std{in,out,err} in daemon mode
12038 - BUG/MEDIUM: log: don't CLOEXEC the inherited FDs
12039 - BUG/MEDIUM: Make sure stksess is properly aligned.
12040 - BUG/MEDIUM: stream-int: make failed splice_in always subscribe to recv
12041 - BUG/MEDIUM: stream-int: clear CO_FL_WAIT_ROOM after splicing data in
12042 - BUG/MINOR: stream-int: make sure not to go through the rcv_buf path after splice()
12043 - CONTRIB: debug: fix build related to conn_stream flags change
12044 - REGTEST: fix scripts 1 and 3 to accept development version
12045 - BUG/MINOR: http_fetch: Remove the version part when capturing the request uri
12046 - MINOR: http: Regroup return statements of http_req_get_intercept_rule at the end
12047 - MINOR: http: Regroup return statements of http_res_get_intercept_rule at the end
12048 - BUG/MINOR: http: Be sure to sent fully formed HTTP 103 responses
12049 - MEDIUM: jobs: support unstoppable jobs for soft stop
12050 - MEDIUM: listeners: support unstoppable listener
12051 - MEDIUM: cli: worker socketpair is unstoppable
12052 - BUG/MINOR: stream-int: set SI_FL_WANT_PUT in sess_establish()
12053 - MINOR: stream: move the conn_stream specific calls to the stream-int
12054 - BUG/MINOR: config: Copy default error messages when parsing of a backend starts
12055 - CLEANUP: h2: minimum documentation for recent API changes
12056 - MINOR: mux: implement a get_first_cs() method
12057 - MINOR: stream-int: make conn_si_send_proxy() use cs_get_first()
12058 - MINOR: stream-int: relax the forwarding rules in stream_int_notify()
12059 - MINOR: stream-int: expand the flags to 32-bit
12060 - MINOR: stream-int: rename SI_FL_WAIT_ROOM to SI_FL_RXBLK_ROOM
12061 - MINOR: stream-int: introduce new SI_FL_RXBLK flags
12062 - MINOR: stream-int: add new functions si_{rx,tx}_{blocked,endp_ready}()
12063 - MINOR: stream-int: replace SI_FL_WANT_PUT with !SI_FL_RX_WAIT_EP
12064 - MINOR: stream-int: use si_rx_blocked()/si_tx_blocked() to check readiness
12065 - MEDIUM: stream-int: use si_rx_buff_{rdy,blk} to report buffer readiness
12066 - MINOR: stream-int: replace si_{want,stop}_put() with si_rx_endp_{more,done}()
12067 - MEDIUM: stream-int: update the endp polling status only at the end of si_cs_recv()
12068 - MINOR: stream-int: make si_sync_recv() simply check ENDP before si_cs_recv()
12069 - MINOR: stream-int: automatically mark applets as ready if they block on the channel
12070 - MEDIUM: stream-int: fix the si_cant_put() calls used for end point readiness
12071 - MEDIUM: stream-int: fix the si_cant_put() calls used for buffer readiness
12072 - MEDIUM: stream-int: use si_rx_shut_blk() to indicate the SI is closed
12073 - MEDIUM: stream-int: unconditionally call si_chk_rcv() in update and notify
12074 - MEDIUM: stream-int: make use of si_rx_chan_{rdy,blk} to control the stream-int from the channel
12075 - MINOR: stream-int: replace si_cant_put() with si_rx_room_{blk,rdy}()
12076 - MEDIUM: connections: Wait until the connection is established to try to recv.
12077 - MEDIUM: mux: Teach the mux_pt how to deal with idle connections.
12078 - MINOR: mux: Add a new "avail_streams" method.
12079 - MINOR: mux: Add a destroy() method.
12080 - MINOR: sessions: Start to store the outgoing connection in sessions.
12081 - MAJOR: connections: Detach connections from streams.
12082 - MINOR: conn_stream: Add a flag to notify the mux it should flush its buffers
12083 - MINOR: htx: Add proto_htx.c file
12084 - MINOR: conn_stream: Add a flag to notify the mux it must respect the reserve
12085 - MINOR: http: Add standalone functions to parse a start-line or a header
12086 - MINOR: http: Call http_send_name_header with the stream instead of the txn
12087 - MINOR: conn_stream: Add a flag to notify the SI some data were received
12088 - MINOR: http: Add macros to check if a stream uses the HTX representation
12089 - MEDIUM: proto_htx: Add HTX analyzers and use it when the mux H1 is used
12090 - MEDIUM: mux-h1: Add dummy mux to handle HTTP/1.1 connections
12091 - MEDIUM: mux-h1: Add parsing of incoming and ougoing HTTP messages
12092 - MAJOR: mux-h1/proto_htx: Handle keep-alive connections in the mux
12093 - MEDIUM: mux-h1: Add support of the kernel TCP splicing to forward data
12094 - MEDIUM: htx: Add API to deal with the internal representation of HTTP messages
12095 - MINOR: http_htx: Add functions to manipulate HTX messages in http_htx.c
12096 - MINOR: proto_htx: Add some functions to handle HTX messages
12097 - MAJOR: mux-h1/proto_htx: Switch mux-h1 and HTX analyzers on the HTX representation
12098 - MINOR: http_htx: Add functions to replace part of the start-line
12099 - MINOR: http_htx: Add functions to retrieve a specific occurrence of a header
12100 - MINOR: proto_htx: Rewrite htx_apply_redirect_rule to handle HTX messages
12101 - MINOR: proto_htx: Add the internal function htx_del_hdr_value
12102 - MINOR: proto_htx: Add the internal function htx_fmt_res_line
12103 - MINOR: proto_htx: Add functions htx_transform_header and htx_transform_header_str
12104 - MINOR: proto_htx: Add functions htx_req_replace_stline and htx_res_set_status
12105 - MINOR: proto_htx: Add function to build and send HTTP 103 responses
12106 - MINOR: proto_htx: Add functions htx_req_get_intercept_rule and htx_res_get_intercept_rule
12107 - MINOR: proto_htx: Add functions to apply req* and rsp* rules on HTX messages
12108 - MINOR: proto_htx: Add functions to manage cookies on HTX messages
12109 - MINOR: proto_htx: Add functions to check the cacheability of HTX messages
12110 - MINOR: proto_htx: Add functions htx_send_name_header
12111 - MINOR: proto_htx: Add functions htx_perform_server_redirect
12112 - MINOR: proto_htx: Add functions to handle the stats applet
12113 - MEDIUM: proto_htx: Adapt htx_process_req_common to handle HTX messages
12114 - MEDIUM: proto_htx: Adapt htx_process_request to handle HTX messages
12115 - MINOR: proto_htx: Adapt htx_process_tarpit to handle HTX messages
12116 - MEDIUM: proto_htx: Adapt htx_wait_for_request_body to handle HTX messages
12117 - MEDIUM: proto_htx: Adapt htx_process_res_common to handle HTX messages
12118 - MINOR: http_fetch: Add smp_prefetch_htx
12119 - MEDIUM: http_fetch: Adapt all fetches to handle HTX messages
12120 - MEDIUM: mux-h1: Wait for connection establishment before consuming channel's data
12121 - MINOR: stats/htx: Adapt the stats applet to handle HTX messages
12122 - MINOR: stream: Don't reset sov value with HTX messages
12123 - MEDIUM: mux-h1: Handle errors and timeouts in the stream
12124 - MINOR: filters/htx: Forbid filters when the HTX is enabled on a proxy
12125 - MINOR: lua/htx: Forbid lua usage when the HTX is enabled on a proxy
12126 - CLEANUP: Fix some typos in the haproxy subsystem
12127 - CLEANUP: Fix typos in the dns subsystem
12128 - CLEANUP: Fix typos in the pattern subsystem
12129 - CLEANUP: fix 2 typos in the xxhash subsystem
12130 - CLEANUP: fix a few typos in the comments of the server subsystem
12131 - CLEANUP: fix a misspell in tests/filltab25.c
12132 - CLEANUP: fix a typo found in the stream subsystem
12133 - CLEANUP: fix typos in comments in ebtree
12134 - CLEANUP: fix typos in reg-tests
12135 - CLEANUP: fix typos in the comments of the vars subsystem
12136 - CLEANUP: fix typos in the hlua_fcn subsystem
12137 - CLEANUP: fix typos in the proto_http subsystem
12138 - CLEANUP: fix typos in the proxy subsystem
12139 - CLEANUP: fix typos in the ssl_sock subsystem
12140 - DOC: Fix typos in different subsections of the documentation
12141 - DOC: fix a few typos in the documentation
12142 - MINOR: Fix an error message thrown when we run out of memory
12143 - MINOR: Fix typos in error messages in the proxy subsystem
12144 - MINOR: fix typos in the examples files
12145 - CLEANUP: Fix a typo in the stats subsystem
12146 - CLEANUP: Fix typos in the acl subsystem
12147 - CLEANUP: Fix typos in the cache subsystem
12148 - CLEANUP: Fix typos in the cfgparse subsystem
12149 - CLEANUP: Fix typos in the filters subsystem
12150 - CLEANUP: Fix typos in the http subsystem
12151 - CLEANUP: Fix typos in the log subsystem
12152 - CLEANUP: Fix typos in the peers subsystem
12153 - CLEANUP: Fix typos in the regex subsystem
12154 - CLEANUP: Fix typos in the sample subsystem
12155 - CLEANUP: Fix typos in the spoe subsystem
12156 - CLEANUP: Fix typos in the standard subsystem
12157 - CLEANUP: Fix typos in the stick_table subsystem
12158 - CLEANUP: Fix typos in the task subsystem
12159 - MINOR: Fix typo in error message in the standard subsystem
12160 - CLEANUP: fix typos in the comments of hlua
12161 - MINOR: Fix typo in the error 500 output of hlua
12162 - MINOR: Fix a typo in a warning message in the spoe subsystem
12163
Willy Tarreau96079492018-11-11 10:43:39 +0100121642018/11/11 : 1.9-dev6
12165 - BUG/MEDIUM: tools: fix direction of my_ffsl()
12166 - BUG/MINOR: cli: forward the whole command on master CLI
12167 - BUG/MEDIUM: auth/threads: use of crypt() is not thread-safe
12168 - MINOR: compat: automatically detect support for crypt_r()
12169 - MEDIUM: auth/threads: make use of crypt_r() on systems supporting it
12170 - DOC: split the http-request actions in their own section
12171 - DOC: split the http-response actions in their own section
12172 - BUG/MAJOR: stream-int: don't call si_cs_recv() in stream_int_chk_rcv_conn()
12173 - BUG/MINOR: tasks: make sure wakeup events are properly reported to subscribers
12174 - MINOR: stats: report the number of active jobs and listeners in "show info"
12175 - MINOR: stats: report the number of active peers in "show info"
12176 - MINOR: stats: report the number of currently connected peers
12177 - MINOR: cli: show the number of reload in 'show proc'
12178 - MINOR: cli: can't connect to the target CLI
12179 - MEDIUM: mworker: does not create the CLI proxy when no listener
12180 - MINOR: mworker: displays more information when leaving
12181 - MEDIUM: mworker: exit with the incriminated exit code
12182 - MINOR: mworker: displays a message when a worker is forked
12183 - MEDIUM: mworker: leave when the master die
12184 - CLEANUP: stream-int: retro-document si_cs_io_cb()
12185 - BUG/MEDIUM: mworker: does not abort() in mworker_pipe_register()
12186 - BUG/MEDIUM: stream-int: don't wake up for nothing during SI_ST_CON
12187 - BUG/MEDIUM: cli: crash when trying to access a worker
12188 - DOC: restore note about "independant" typo
12189 - MEDIUM: stream: implement stream_buf_available()
12190 - MEDIUM: appctx: check for allocation attempts in buffer allocation callbacks
12191 - MINOR: stream-int: rename si_applet_{want|stop|cant}_{get|put}
12192 - MINOR: stream-int: add si_done_{get,put} to indicate that we won't do it anymore
12193 - MINOR: stream-int: use si_cant_put() instead of setting SI_FL_WAIT_ROOM
12194 - MINOR: stream-int: make use of si_done_{get,put}() in shut{w,r}
12195 - MINOR: stream-int: make it clear that si_ops cannot be null
12196 - MEDIUM: stream-int: temporarily make si_chk_rcv() take care of SI_FL_WAIT_ROOM
12197 - MINOR: stream-int: factor the SI_ST_EST state test into si_chk_rcv()
12198 - MEDIUM: stream-int: make SI_FL_WANT_PUT reflect CF_DONT_READ
12199 - MEDIUM: stream-int: always call si_chk_rcv() when we make room in the buffer
12200 - MEDIUM: stream-int: make si_chk_rcv() check that SI_FL_WAIT_ROOM is cleared
12201 - MINOR: stream-int: replace si_update() with si_update_both()
12202 - MEDIUM: stream-int: make stream_int_update() aware of the lower layers
12203 - CLEANUP: stream-int: remove the now unused si->update() function
12204 - MEDIUM: stream-int: Rely only on SI_FL_WAIT_ROOM to stop data receipt
12205 - MEDIUM: stream-int: Try to read data even if channel's buffer seems to be full
12206 - BUG/MINOR: config: better detect the presence of the h2 pattern in npn/alpn
12207
Willy Tarreaubddf2922018-10-28 20:39:31 +0100122082018/10/28 : 1.9-dev5
12209 - BUILD: Makefile: add the new ERR variable to force -Werror
12210 - MINOR: freq_ctr: add swrate_add_scaled() to work with large samples
12211 - MINOR: stream_interface: Avoid calling si_cs_send/recv if not needed.
12212 - CLEANUP: http: Remove the unused function http_find_header
12213 - MINOR: h1: Export some functions parsing the value of some HTTP headers
12214 - BUG/MEDIUM: stream-int: don't set SI_FL_WAIT_ROOM on CF_READ_DONTWAIT
12215 - MINOR: proxy: add a new option "http-use-htx"
12216 - BUG/MEDIUM: pools: fix the minimum allocation size
12217 - MINOR: shctx: Shared objects block by block allocation.
12218 - MINOR: cache: Larger HTTP objects caching.
12219 - MINOR: shctx: Add a maximum object size parameter.
12220 - MINOR: cache: Add "max-object-size" option.
12221 - DOC: Update about the cache support for big objects.
12222 - BUG/MINOR: cache: Crashes with "total-max-size" > 2047(MB).
12223 - BUG/MINOR: cache: Wrong usage of shctx_init().
12224 - BUG/MINOR: ssl: Wrong usage of shctx_init().
12225 - MINOR: cache: Avoid usage of atoi() when parsing "max-object-size".
12226 - MINOR: shctx: Change max. object size type to unsigned int.
12227 - DOC: cache: Missing information about "total-max-size" and "max-object-size"
12228 - CLEANUP: tools: fix misleading comment above function LIM2A
12229 - MEDIUM: channel: merge back flags CF_WRITE_PARTIAL and CF_WRITE_EVENT
12230 - BUG/MINOR: only mark connections private if NTLM is detected
12231 - BUG/MINOR: only auto-prefer last server if lb-alg is non-deterministic
12232 - MINOR: stream: don't prune variables if the list is empty
12233 - MINOR: stream-int: add si_alloc_ibuf() to ease input buffer allocation
12234 - MEDIUM: stream-int: replace channel_alloc_buffer() with si_alloc_ibuf() everywhere
12235 - MEDIUM: stream: always call si_cs_recv() after a failed buffer allocation
12236 - MEDIUM: stream: don't try to send first in process_stream()
12237 - MEDIUM: stream-int: make si_update() synchronize flag changes before the I/O
12238 - MEDIUM: stream-int: call si_cs_process() in stream_int_update_conn
12239 - MINOR: stream-int: don't needlessly call tasklet_wakeup() in stream_int_chk_snd_conn()
12240 - MINOR: stream-int: make stream_int_notify() not wake the tasklet up
12241 - MINOR: stream-int: don't needlessly call si_cs_send() in si_cs_process()
12242 - MINOR: mworker: number of reload in the life of a worker
12243 - MEDIUM: mworker: each worker socketpair is a CLI listener
12244 - REORG: mworker: move struct mworker_proc to global.h
12245 - MINOR: server: export new_server() function
12246 - MEDIUM: mworker: move proc_list gen before proxies startup
12247 - MEDIUM: mworker: add proc_list in global.h
12248 - MEDIUM: mworker: proxy for the master CLI
12249 - MEDIUM: mworker: create CLI listeners from argv[]
12250 - MEDIUM: cli: disable some keywords in the master
12251 - MEDIUM: mworker: find the server ptr using a CLI prefix
12252 - MEDIUM: cli: 'show proc' displays processus
12253 - MEDIUM: cli: implement 'mode cli' proxy analyzers
12254 - MINOR: cli: displays sockpair@ in "show cli sockets"
12255 - MEDIUM: cli: enable "show cli sockets" for the master
12256 - MINOR: cli: put @master @<relative pid> @!<pid> in the help
12257 - MEDIUM: listeners: set O_CLOEXEC on the accepted FDs
12258 - MEDIUM: mworker: stop the master proxy in the workers
12259 - MEDIUM: channel: reorder the channel analyzers for the cli
12260 - MEDIUM: cli: write a prompt for the CLI proxy of the master
12261 - MINOR: cli: helper to write an response message and close
12262 - MINOR: cache: Add "Age" header.
12263 - REGTEST: make the IP+port logging test more reliable
12264 - BUG/MINOR: memory: make the thread-local cache allocator set the debugging link
12265 - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer
12266 - BUG/MINOR: backend: assign the wait list after the error check
12267
Willy Tarreau01fbe742018-10-21 20:28:30 +0200122682018/10/21 : 1.9-dev4
12269 - BUILD: Allow configuration of pcre-config path
12270 - DOC: clarify force-private-cache is an option
12271 - BUG/MINOR: connection: avoid null pointer dereference in send-proxy-v2
12272 - REORG: http: move the code to different files
12273 - REORG: http: move HTTP rules parsing to http_rules.c
12274 - CLEANUP: http: remove some leftovers from recent cleanups
12275 - BUILD: Makefile: add a "make opts" target to simply show the build options
12276 - BUILD: Makefile: speed up compiler options detection
12277 - BUG/MINOR: backend: check that the mux installed properly
12278 - BUG/MEDIUM: h2: check that the connection is still valid at the end of init()
12279 - BUG/MEDIUM: h2: make h2_stream_new() return an error on memory allocation failure
12280 - REGTEST/MINOR: compatibility: use unix@ instead of abns@ sockets
12281 - MINOR: ssl: cleanup old openssl API call
12282 - MINOR: ssl: generate-certificates for BoringSSL
12283 - BUG/MEDIUM: buffers: Make sure we don't wrap in ci_insert_line2/b_rep_blk.
12284 - MEDIUM: ssl: add support for ciphersuites option for TLSv1.3
12285 - CLEANUP: haproxy: Remove unused variable
12286 - CLEANUP: h1: Fix debug warnings for h1 headers
12287 - CLEANUP: stick-tables: Remove unneeded double (()) around conditional clause
12288 - MEDIUM: task: perform a single tree lookup per run queue batch
12289 - BUG/MEDIUM: Cur/CumSslConns counters not threadsafe.
12290 - BUG/MINOR: threads: move declaration of capabilities to config.h
12291 - OPTIM: tools: optimize my_ffsl() for x86_64
12292 - BUG/MINOR: h2: null-deref
12293 - BUG/MINOR: checks: queues null-deref
12294 - MINOR: connections: Introduce an unsubscribe method.
12295 - MEDIUM: connections: Change struct wait_list to wait_event.
12296 - BUG/MEDIUM: h2: Make sure we're not in the send list on flow control.
12297 - BUG/MEDIUM: mworker: segfault receiving SIGUSR1 followed by SIGTERM.
12298 - BUG/MEDIUM: stream: Make sure to unsubscribe before si_release_endpoint.
12299 - MINOR: http: Move comment about some HTTP macros in the right header file
12300 - MINOR: stats: Add missing include
12301 - MINOR: http: Export some functions and do cleanup to prepare HTTP refactoring
12302 - MEDIUM: http: Ignore http-pretend-keepalive option on frontend
12303 - MEDIUM: http: Ignore http-tunnel option on backend
12304 - MINOR: http: Use same flag for httpclose and forceclose options
12305 - MINOR: h1: Add EOH marker during headers parsing
12306 - MINOR: conn-stream: Add CL_FL_NOT_FIRST flag
12307 - MINOR: h1: Change the union h1_sl to use indirect strings to store infos
12308 - MINOR: h1: Add the flag H1_MF_NO_PHDR to not add pseudo-headers during parsing
12309 - MINOR: log: make sess_log() support sess=NULL
12310 - MINOR: chunk: add chunk_cpy() and chunk_cat()
12311 - MEDIUM: h2: stop relying on H2_SS_IDLE / H2_SS_CLOSED
12312 - CLEANUP: h2: rename h2c_snd_settings() to h2c_send_settings()
12313 - MINOR: h2: don't try to send data before preface
12314 - MINOR: h2: unify the mux init function
12315 - MINOR: h2: retrieve the front proxy from the caller instead of the session
12316 - MINOR: h2: split h2c_stream_new() into h2s_new() + h2c_frt_stream_new()
12317 - MINOR: h2: add a new flag to quickly distinguish front vs back connection
12318 - BUG/MEDIUM: mworker: don't poll on LI_O_INHERITED listeners
12319 - BUG/MEDIUM: stream: don't crash on out-of-memory
12320 - BUILD: compiler: add a new statement "__unreachable()"
12321 - BUILD: lua: silence some compiler warnings about potential null derefs
12322 - BUILD: ssl: fix null-deref warning in ssl_fc_cipherlist_str sample fetch
12323 - BUILD: ssl: fix another null-deref warning in ssl_sock_switchctx_cbk()
12324 - BUILD: stick-table: make sure not to fail on task_new() during initialization
12325 - BUILD: peers: check allocation error during peers_init_sync()
12326 - MINOR: tools: add a new function atleast2() to test masks for more than 1 bit
12327 - MINOR: config: use atleast2() instead of my_popcountl() where relevant
12328 - MEDIUM: fd/threads: only grab the fd's lock if the FD has more than one thread
12329 - MAJOR: tasks: create per-thread wait queues
12330 - OPTIM: tasks: group all tree roots per cache line
12331 - DOC: Fix a few typos
12332 - MINOR: pools: allocate most memory pools from an array
12333 - MINOR: pools: split pool_free() in the lockfree variant
12334 - MEDIUM: pools: implement a thread-local cache for pool entries
12335 - BUG/MEDIUM: threads: fix thread_release() at the end of the rendez-vous point
12336 - Revert "BUILD: lua: silence some compiler warnings about potential null derefs"
12337 - BUILD: lua: silence some compiler warnings about potential null derefs (#2)
12338 - MINOR: lua: all functions calling lua_yieldk() may return
12339 - BUILD: lua: silence some compiler warnings after WILL_LJMP
12340 - BUILD: Makefile: silence an option conflict warning with clang
12341 - MINOR: server: Use memcpy() instead of strncpy().
12342 - CLEANUP: state-file: make the path concatenation code a bit more consistent
12343 - MINOR: build: Disable -Wstringop-overflow.
12344 - MINOR: cfgparse: Write 130 as 128 as 0x82 and 0x80.
12345 - MINOR: peers: use defines instead of enums to appease clang.
12346 - DOC: fix reference to map files in MAINTAINERS
12347 - MINOR: fd: centralize poll timeout computation in compute_poll_timeout()
12348 - MINOR: poller: move time and date computation out of the pollers
12349 - BUILD: memory: fix pointer declaration for atomic CAS
12350 - BUILD: Makefile: add USE_RT to pass -lrt for clock_gettime() and friends
12351 - MINOR: time: add now_mono_time() and now_cpu_time()
12352 - MEDIUM: time: measure the time stolen by other threads
12353 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
12354 - BUILD: compiler: rename __unreachable() to my_unreachable()
12355 - BUG/MEDIUM: pools: Fix the usage of mmap()) with DEBUG_UAF.
12356 - BUILD: memory: fix free_list pointer declaration again for atomic CAS
12357 - BUG/MEDIUM: h2: Close connection if no stream is left an GOAWAY was sent.
12358 - BUG/MEDIUM: connections: Remove subscription if going in idle mode.
12359 - BUG/MEDIUM: stream: Make sure polling is right on retry.
12360 - MINOR: h2: Make sure to return 1 in h2_recv() when needed.
12361 - MEDIUM: connections: Don't directly mess with the polling from the upper layers.
12362 - MINOR: streams: Call tasklet_free() after si_release_endpoint().
12363 - MINOR: connection: Add a SUB_CALL_UNSUBSCRIBE event.
12364 - MINOR: h2: Don't run tasks that are waiting to send if mux in full.
12365 - MINOR: ebtree: save 8 bytes in struct eb32sc_node
12366
Willy Tarreau27010f02018-09-29 20:17:33 +0200123672018/09/29 : 1.9-dev3
12368 - BUG/MINOR: h1: don't consider the status for each header
12369 - MINOR: h1: report in the h1m struct if the HTTP version is 1.1 or above
12370 - MINOR: h1: parse the Connection header field
12371 - DOC: Fix typos in lua documentation
12372 - MINOR: h1: Add H1_MF_XFER_LEN flag
12373 - MINOR: http: add http_hdr_del() to remove a header from a list
12374 - MINOR: h1: add headers to the list after controls, not before
12375 - MEDIUM: h1: better handle transfer-encoding vs content-length
12376 - MEDIUM: h1: deduplicate the content-length header
12377 - BUG/MEDIUM: patterns: fix possible double free when reloading a pattern list
12378 - BUG/MEDIUM: h1: Really skip all updates when incomplete messages are parsed
12379 - CLEANUP/CONTRIB: hpack: remove some h1 build warnings
12380 - BUG/MINOR: tools: fix set_net_port() / set_host_port() on IPv4
12381 - BUG/MINOR: cli: make sure the "getsock" command is only called on connections
12382 - MINOR: stktable: provide an unchecked version of stktable_data_ptr()
12383 - MINOR: stream-int: make si_appctx() never fail
12384 - BUILD: ssl_sock: remove build warnings on potential null-derefs
12385 - BUILD: stats: remove build warnings on potential null-derefs
12386 - BUILD: stream: address null-deref build warnings at -Wextra
12387 - BUILD: http: address a couple of null-deref warnings at -Wextra
12388 - BUILD: log: silent build warnings due to unchecked __objt_{server,applet}
12389 - BUILD: dns: fix null-deref build warning at -Wextra
12390 - BUILD: checks: silence a null-deref build warning at -Wextra
12391 - BUILD: connection: silence a couple of null-deref build warnings at -Wextra
12392 - BUILD: backend: fix 3 build warnings related to null-deref at -Wextra
12393 - BUILD: sockpair: silence a build warning at -Wextra
12394 - BUILD: build with -Wextra and sort out certain warnings
12395 - BUG/CRITICAL: hpack: fix improper sign check on the header index value
12396 - BUG/MEDIUM: http: Don't parse chunked body if there is no input data
12397 - DOC: Update configuration doc about the maximum number of stick counters.
12398 - BUG/MEDIUM: process_stream: Don't use si_cs_io_cb() in process_stream().
12399 - MINOR: h2/stream_interface: Reintroduce te wake() method.
12400 - BUG/MEDIUM: h2: Wake the task instead of calling h2_recv()/h2_process().
12401 - BUG/MEDIUM: process_stream(): Don't wake the task if no new data was received.
12402 - MEDIUM: lua: Add stick table support for Lua.
12403
Willy Tarreau253006d2018-09-12 18:59:48 +0200124042018/09/12 : 1.9-dev2
12405 - BUG/MINOR: buffers: Fix b_slow_realign when a buffer is realign without output
12406 - BUG/MEDIUM: threads: fix the no-thread case after the change to the sync point
12407 - BUG/MEDIUM: servers: check the queues once enabling a server
12408 - BUG/MEDIUM: queue: prevent a backup server from draining the proxy's connections
12409 - MEDIUM: mux: Remove const on the buffer in mux->snd_buf()
12410 - CLEANUP: backend: Move mux install to call it at only one place
12411 - MINOR: conn_stream: add an tx buffer to the conn_stream
12412 - MINOR: conn_stream: add cs_send() as a default snd_buf() function
12413 - MINOR: backend: Try to find the best mux for outgoing connections
12414 - MEDIUM: backend: don't rely on mux_pt_ops in connect_server()
12415 - MINOR: mux: Add info about the supported side in alpn_mux_list structure
12416 - MINOR: mux: Unlink ALPN and multiplexers to rather speak of mux protocols
12417 - MINOR: mux: Print the list of existing mux protocols during HA startup
12418 - MEDIUM: checks: use the new rendez-vous point to spread check result
12419 - MEDIUM: haproxy: don't use sync_poll_loop() anymore in the main loop
12420 - MINOR: threads: remove the previous synchronization point
12421 - MAJOR: server: make server state changes synchronous again
12422 - CLEANUP: server: remove the update list and the update lock
12423 - BUG/MINOR: threads: Remove the unexisting lock label "UPDATED_SERVERS_LOCK"
12424 - BUG/MEDIUM: stream_int: Don't check CO_FL_SOCK_RD_SH flag to trigger cs receive
12425 - MINOR: mux: Change get_mux_proto to get an ist as parameter
12426 - MINOR: mux: Improve the message with the list of existing mux protocols
12427 - MINOR: mux/frontend: Add 'proto' keyword to force the mux protocol
12428 - MINOR: mux/server: Add 'proto' keyword to force the multiplexer's protocol
12429 - MEDIUM: mux: Use the mux protocol specified on bind/server lines
12430 - BUG/MEDIUM: connection/mux: take care of serverless proxies
12431 - MINOR: queue: make sure the pendconn is released before logging
12432 - MINOR: stream: rename {srv,prx}_queue_size to *_queue_pos
12433 - MINOR: queue: store the queue index in the stream when enqueuing
12434 - MINOR: queue: replace the linked list with a tree
12435 - MEDIUM: add set-priority-class and set-priority-offset
12436 - MEDIUM: queue: adjust position based on priority-class and priority-offset
12437 - DOC: update the roadmap about priority queues
12438 - BUG/MINOR: ssl: empty connections reported as errors.
12439 - MINOR: connections: Make rcv_buf mandatory and nuke cs_recv().
12440 - MINOR: connections: Move rxbuf from the conn_stream to the h2s.
12441 - MINOR: connections: Get rid of txbuf.
12442 - MINOR: tasks: Allow tasklet_wakeup() to wakeup a task.
12443 - MINOR: connections/mux: Add the wait reason(s) to wait_list.
12444 - MINOR: stream_interface: Don't use si_cs_send() as a task handler.
12445 - MINOR: stream_interface: Give stream_interface its own wait_list.
12446 - MINOR: mux_h2: Don't use h2_send() as a callback.
12447 - MINOR: checks: Add event_srv_chk_io().
12448 - BUG/MEDIUM: tasks: Don't insert in the global rqueue if nbthread == 1
12449 - BUG/MEDIUM: sessions: Don't use t->state.
12450 - BUG/MEDIUM: ssl: fix missing error loading a keytype cert from a bundle.
12451 - BUG/MEDIUM: ssl: loading dh param from certifile causes unpredictable error.
12452 - BUG/MINOR: map: fix map_regm with backref
12453 - DOC: dns: explain set server ... fqdn requires resolver
12454 - DOC: add documentation for prio_class and prio_offset sample fetches.
12455 - DOC: ssl: Use consistent naming for TLS protocols
12456 - DOC: update the layering design notes
12457 - MINOR: tasks: Don't special-case when nbthreads == 1
12458 - MINOR: fd cache: And the thread_mask with all_threads_mask.
12459 - BUG/MEDIUM: lua: socket timeouts are not applied
12460 - BUG/MINOR: lua: fix extra 500ms added to socket timeouts
12461 - BUG/MEDIUM: server: update our local state before propagating changes
12462 - BUG/MEDIUM: cli/threads: protect all "proxy" commands against concurrent updates
12463 - DOC: server/threads: document which functions need to be called with/without locks
12464 - BUG/MEDIUM: cli/threads: protect some server commands against concurrent operations
12465 - BUG/MEDIUM: streams: Don't forget to remove the si from the wait list.
12466 - BUG/MEDIUM: tasklets: Add the thread as active when waking a tasklet.
12467 - BUG/MEDIUM: stream-int: Check if the conn_stream exist in si_cs_io_cb.
12468 - BUG/MEDIUM: H2: Activate polling after successful h2_snd_buf().
12469 - BUG/MEDIUM: stream_interface: Call the wake callback after sending.
12470 - BUG/MAJOR: queue/threads: make pendconn_redistribute not lock the server
12471 - BUG/MEDIUM: connection: don't forget to always delete the list's head
12472 - BUG/MEDIUM: lb/threads: always properly lock LB algorithms on maintenance operations
12473 - BUG/MEDIUM: check/threads: do not involve the rendez-vous point for status updates
12474 - BUG/MINOR: chunks: do not store -1 into chunk_printf() in case of error
12475 - BUG/MEDIUM: http: don't store exp_replace() result in the trash's length
12476 - BUG/MEDIUM: http: don't store url_decode() result in the samples's length
12477 - BUG/MEDIUM: dns: don't store dns_build_query() result in the trash's length
12478 - BUG/MEDIUM: map: don't store exp_replace() result in the trash's length
12479 - BUG/MEDIUM: connection: don't store recv() result into trash.data
12480 - BUG/MEDIUM: cli/ssl: don't store base64dec() result in the trash's length
12481 - MINOR: chunk: remove impossible tests on negative chunk->data
12482 - MINOR: sample: remove impossible tests on negative smp->data.u.str.data
12483 - DOC: Fix spelling error in configuration doc
12484 - REGTEST/MINOR: Missing mandatory "ignore_unknown_macro".
12485 - REGTEST/MINOR: Add a new class of regression testing files.
12486 - BUG/MEDIUM: unix: provide a ->drain() function
12487 - MINOR: connection: make conn_sock_drain() work for all socket families
12488 - BUG/MINOR: lua: Bad HTTP client request duration.
12489 - REGEST/MINOR: Add reg testing files.
12490 - BUG/MEDIUM: mux_pt: dereference the connection with care in mux_pt_wake()
12491 - REGTEST/MINOR: Add a reg testing file for b406b87 commit.
12492 - BUG/MEDIUM: lua: reset lua transaction between http requests
12493 - MINOR: add be_conn_free sample fetch
12494 - MINOR: Add srv_conn_free sample fetch
12495 - BUG/MEDIUM: hlua: Make sure we drain the output buffer when done.
12496 - MINOR: checks: Call wake_srv_chk() when we can finally send data.
12497 - BUG/MEDIUM: stream_interface: try to call si_cs_send() earlier.
12498 - BUG/MAJOR: thread: lua: Wrong SSL context initialization.
12499 - REGTEST/MINOR: Add a reg testing file for 3e60b11.
12500 - BUG/MEDIUM: hlua: Don't call RESET_SAFE_LJMP if SET_SAFE_LJMP returns 0.
12501 - REGTEST/MINOR: lua: Add reg testing files for 70d318c.
12502 - BUG/MEDIUM: dns/server: fix incomatibility between SRV resolution and server state file
12503 - BUG/MEDIUM: ECC cert should work with TLS < v1.2 and openssl >= 1.1.1
12504 - MINOR: tools: make date2str_log() take some consts
12505 - MINOR: thread: implement HA_ATOMIC_XADD()
12506 - BUG/MINOR: stream: use atomic increments for the request counter
12507 - BUG/MEDIUM: session: fix reporting of handshake processing time in the logs
12508 - BUG/MEDIUM: h2: fix risk of memory leak on malformated wrapped frames
12509 - BUG/MAJOR: buffer: fix incorrect check in __b_putblk()
12510 - MINOR: log: move the log code to sess_build_logline() to add extra arguments
12511 - MINOR: log: make the backend fall back to the frontend when there's no stream
12512 - MINOR: log: make sess_build_logline() not dereference a NULL stream for txn
12513 - MINOR: log: don't unconditionally pick log info from s->logs
12514 - CLEANUP: log: make the low_level lf_{ip,port,text,text_len} functions take consts
12515 - MINOR: log: keep a copy of the backend connection early in sess_build_logline()
12516 - MINOR: log: do not dereference a null stream to access captures
12517 - MINOR: log: be sure not to dereference a null stream for a target
12518 - MINOR: log: don't check the stream-int's conn_retries if the stream is NULL
12519 - MINOR: log: use NULL for the unique_id if there is no stream
12520 - MINOR: log: keep a copy of s->flags early to avoid a dereference
12521 - MINOR: log: use zero as the request counter if there is no stream
12522 - MEDIUM: log: make sess_build_logline() support being called with no stream
12523 - MINOR: log: provide a function to emit a log for a session
12524 - MEDIUM: h2: produce some logs on early errors that prevent streams from being created
12525 - BUG/MINOR: h1: fix buffer shift after realignment
12526 - MINOR: connection: make the initialization more consistent
12527 - MINOR: connection: add new function conn_get_proxy()
12528 - MINOR: connection: add new function conn_is_back()
12529 - MINOR: log: One const should be enough.
12530 - BUG/MINOR: dns: check and link servers' resolvers right after config parsing
12531 - BUG/MINOR: http/threads: atomically increment the error snapshot ID
12532 - MINOR: snapshot: restart on the event ID and not the stream ID
12533 - MINOR: snapshot: split the error snapshots into common and proto-specific parts
12534 - MEDIUM: snapshot: start to reorder the HTTP snapshot output a little bit
12535 - MEDIUM: snapshot: implement a show() callback and use it for HTTP
12536 - MINOR: proxy: add a new generic proxy_capture_error()
12537 - MINOR: http: make the HTTP error capture rely on the generic proxy code
12538 - MINOR: http: remove the pointer to the error snapshot in http_capture_bad_message()
12539 - REORG: cli: move the "show errors" handler from http to proxy
12540 - BUG/MEDIUM: snapshot: take the proxy's lock while dumping errors
12541 - MEDIUM: snapshots: dynamically allocate the snapshots
12542 - MEDIUM: snapshot: merge the captured data after the descriptor
12543 - MEDIUM: mworker: remove register/unregister signal functions
12544 - MEDIUM: mworker: use the haproxy poll loop
12545 - BUG/MINOR: mworker: no need to stop peers for each proxy
12546 - MINOR: mworker: mworker_cleanlisteners() delete the listeners
12547 - MEDIUM: mworker: block SIGCHLD until the master is ready
12548 - MEDIUM: mworker: never block SIG{TERM,INT} during reload
12549 - MEDIUM: startup: unify signal init between daemon and mworker mode
12550 - MINOR: mworker: don't deinit the poller fd when in wait mode
12551 - MEDIUM: mworker: master wait mode use its own initialization
12552 - MEDIUM: mworker: replace the master pipe by socketpairs
12553 - MINOR: mworker: keep and clean the listeners
12554 - MEDIUM: threads: close the thread-waker pipe during deinit
12555 - MEDIUM: mworker: call per_thread deinit in mworker_reload()
12556 - REORG: http: move the HTTP semantics definitions to http.h/http.c
12557 - REORG: http: move http_get_path() to http.c
12558 - REORG: http: move error codes production and processing to http.c
12559 - REORG: http: move the log encoding tables to log.c
12560 - REORG: http: move some header value processing functions to http.c
12561 - BUG/MAJOR: kqueue: Don't reset the changes number by accident.
12562 - MEDIUM: protocol: use a custom AF_MAX to help protocol parser
12563 - MEDIUM: protocol: sockpair protocol
12564 - TESTS: add a python wrapper for sockpair@
12565 - BUG/MINOR: server: Crash when setting FQDN via CLI.
12566 - BUG/MINOR: h2: report asynchronous end of stream on closed connections
12567 - BUILD: fix build without thread
12568 - BUG/MEDIUM: tasks: Don't forget to decrement task_list_size in tasklet_free().
12569 - MEDIUM: connections: Don't reset the polling flags in conn_fd_handler().
12570 - MEDIUM: connections/mux: Add a recv and a send+recv wait list.
12571 - MEDIUM: connections: Get rid of the recv() method.
12572 - MINOR: h2: Let user of h2_recv() and h2_send() know xfer has been done.
12573 - MEDIUM: h2: always subscribe to receive if allowed.
12574 - MEDIUM: h2: Don't use a wake() method anymore.
12575 - MEDIUM: stream_interface: Make recv() subscribe when more data is needed.
12576 - MINOR: connections: Add a "handle" field to wait_list.
12577 - MEDIUM: mux_h2: Revamp the send path when blocking.
12578 - MEDIUM: stream_interfaces: Starts receiving from the upper layers.
12579 - MINOR: checks: Give checks their own wait_list.
12580 - MINOR: conn_streams: Remove wait_list from conn_streams.
12581 - REORG: h1: create a new h1m_state
12582 - MINOR: h1: add the restart offsets into struct h1m
12583 - MINOR: h1: remove the unused states from h1m_state
12584 - MINOR: h1: provide a distinct init() function for request and response
12585 - MINOR: h1: add a message flag to indicate that a message carries a response
12586 - MINOR: h2: make sure h1m->err_pos field is correct on chunk error
12587 - MINOR: h1: properly pre-initialize err_pos to -2
12588 - MINOR: mux_h2: replace the req,res h1 messages with a single h1 message
12589 - MINOR: h2: pre-initialize h1m->err_pos to -1 on the output path
12590 - MEDIUM: h1: consider err_pos before deciding to accept a header name or not
12591 - MEDIUM: h1: make the parser support a pointer to a start line
12592 - MEDIUM: h1: let the caller pass the initial parser's state
12593 - MINOR: h1: make the message parser support a null <hdr> argument
12594 - MEDIUM: h1: support partial message parsing
12595 - MEDIUM: h1: remove the useless H1_MSG_BODY state
12596 - MINOR: h2: store the HTTP status into the H2S, not the H1M
12597 - MINOR: h1: remove the HTTP status from the H1M struct
12598 - MEDIUM: h1: implement the request parser as well
12599 - MINOR: h1: add H1_MF_TOLOWER to decide when to turn header names to lower case
12600 - MINOR: connection: pass the proxy when creating a connection
12601 - BUG/MEDIUM: h2: Don't forget to empty the wait lists on destroy.
12602 - BUG/MEDIUM: h2: Don't forget to set recv_wait_list to NULL in h2_detach.
12603 - BUG/MAJOR: h2: reset the parser's state on mux buffer full
12604
Willy Tarreau65e94d12018-08-02 18:12:50 +0200126052018/08/02 : 1.9-dev1
12606 - BUG/MEDIUM: kqueue: Don't bother closing the kqueue after fork.
12607 - DOC: cache: update sections and fix some typos
12608 - BUILD/MINOR: deviceatlas: enable thread support
12609 - BUG/MEDIUM: tcp-check: Don't lock the server in tcpcheck_main
12610 - BUG/MEDIUM: ssl: don't allocate shctx several time
12611 - BUG/MEDIUM: cache: bad computation of the remaining size
12612 - BUILD: checks: don't include server.h
12613 - BUG/MEDIUM: stream: fix session leak on applet-initiated connections
12614 - BUILD/MINOR: haproxy : FreeBSD/cpu affinity needs pthread_np header
12615 - BUILD/MINOR: Makefile : enabling USE_CPU_AFFINITY
12616 - BUG/MINOR: ssl: CO_FL_EARLY_DATA removal is managed by stream
12617 - BUG/MEDIUM: threads/peers: decrement, not increment jobs on quitting
12618 - BUG/MEDIUM: h2: don't report an error after parsing a 100-continue response
12619 - BUG/MEDIUM: peers: fix some track counter rules dont register entries for sync.
12620 - BUG/MAJOR: thread/peers: fix deadlock on peers sync.
12621 - BUILD/MINOR: haproxy: compiling config cpu parsing handling when needed
12622 - MINOR: config: report when "monitor fail" rules are misplaced
12623 - BUG/MINOR: mworker: fix validity check for the pipe FDs
12624 - BUG/MINOR: mworker: detach from tty when in daemon mode
12625 - MINOR: threads: Fix pthread_setaffinity_np on FreeBSD.
12626 - BUG/MAJOR: thread: Be sure to request a sync between threads only once at a time
12627 - BUILD: Fix LDFLAGS vs. LIBS re linking order in various makefiles
12628 - BUG/MEDIUM: checks: Be sure we have a mux if we created a cs.
12629 - BUG/MINOR: hpack: fix debugging output of pseudo header names
12630 - BUG/MINOR: hpack: must reject huffman literals padded with more than 7 bits
12631 - BUG/MINOR: hpack: reject invalid header index
12632 - BUG/MINOR: hpack: dynamic table size updates are only allowed before headers
12633 - BUG/MAJOR: h2: correctly check the request length when building an H1 request
12634 - BUG/MINOR: h2: immediately close if receiving GOAWAY after the last stream
12635 - BUG/MINOR: h2: try to abort closed streams as soon as possible
12636 - BUG/MINOR: h2: ":path" must not be empty
12637 - BUG/MINOR: h2: fix a typo causing PING/ACK to be responded to
12638 - BUG/MINOR: h2: the TE header if present may only contain trailers
12639 - BUG/MEDIUM: h2: enforce the per-connection stream limit
12640 - BUG/MINOR: h2: do not accept SETTINGS_ENABLE_PUSH other than 0 or 1
12641 - BUG/MINOR: h2: reject incorrect stream dependencies on HEADERS frame
12642 - BUG/MINOR: h2: properly check PRIORITY frames
12643 - BUG/MINOR: h2: reject response pseudo-headers from requests
12644 - BUG/MEDIUM: h2: remove connection-specific headers from request
12645 - BUG/MEDIUM: h2: do not accept upper case letters in request header names
12646 - BUG/MINOR: h2: use the H2_F_DATA_* macros for DATA frames
12647 - BUG/MINOR: action: Don't check http capture rules when no id is defined
12648 - BUG/MAJOR: hpack: don't pretend large headers fit in empty table
12649 - BUG/MINOR: ssl: support tune.ssl.cachesize 0 again
12650 - BUG/MEDIUM: mworker: also close peers sockets in the master
12651 - BUG/MEDIUM: ssl engines: Fix async engines fds were not considered to fix fd limit automatically.
12652 - BUG/MEDIUM: checks: a down server going to maint remains definitely stucked on down state.
12653 - BUG/MEDIUM: peers: set NOLINGER on the outgoing stream interface
12654 - BUG/MEDIUM: h2: fix handling of end of stream again
12655 - MINOR: mworker: Update messages referencing exit-on-failure
12656 - MINOR: mworker: Improve wording in `void mworker_wait()`
12657 - CONTRIB: halog: Add help text for -s switch in halog program
12658 - BUG/MEDIUM: email-alert: don't set server check status from a email-alert task
12659 - BUG/MEDIUM: threads/vars: Fix deadlock in register_name
12660 - MINOR: systemd: remove comment about HAPROXY_STATS_SOCKET
12661 - DOC: notifications: add precisions about thread usage
12662 - BUG/MEDIUM: lua/notification: memory leak
12663 - MINOR: conn_stream: add new flag CS_FL_RCV_MORE to indicate pending data
12664 - BUG/MEDIUM: stream-int: always set SI_FL_WAIT_ROOM on CS_FL_RCV_MORE
12665 - BUG/MEDIUM: h2: automatically set CS_FL_RCV_MORE when the output buffer is full
12666 - BUG/MEDIUM: h2: enable recv polling whenever demuxing is possible
12667 - BUG/MEDIUM: h2: work around a connection API limitation
12668 - BUG/MEDIUM: h2: debug incoming traffic in h2_wake()
12669 - MINOR: h2: store the demux padding length in the h2c struct
12670 - BUG/MEDIUM: h2: support uploading partial DATA frames
12671 - MINOR: h2: don't demand that a DATA frame is complete before processing it
12672 - BUG/MEDIUM: h2: don't switch the state to HREM before end of DATA frame
12673 - BUG/MEDIUM: h2: don't close after the first DATA frame on tunnelled responses
12674 - BUG/MEDIUM: http: don't disable lingering on requests with tunnelled responses
12675 - BUG/MEDIUM: h2: fix stream limit enforcement
12676 - BUG/MINOR: stream-int: don't try to receive again after receiving an EOS
12677 - MINOR: sample: add len converter
12678 - BUG: MAJOR: lb_map: server map calculation broken
12679 - BUG: MINOR: http: don't check http-request capture id when len is provided
12680 - MINOR: sample: rename the "len" converter to "length"
12681 - BUG/MEDIUM: mworker: Set FD_CLOEXEC flag on log fd
12682 - DOC/MINOR: intro: typo, wording, formatting fixes
12683 - MINOR: netscaler: respect syntax
12684 - MINOR: netscaler: remove the use of cip_magic only used once
12685 - MINOR: netscaler: rename cip_len to clarify its uage
12686 - BUG/MEDIUM: netscaler: use the appropriate IPv6 header size
12687 - BUG/MAJOR: netscaler: address truncated CIP header detection
12688 - MINOR: netscaler: check in one-shot if buffer is large enough for IP and TCP header
12689 - MEDIUM: netscaler: do not analyze original IP packet size
12690 - MEDIUM: netscaler: add support for standard NetScaler CIP protocol
12691 - MINOR: spoe: add force-set-var option in spoe-agent configuration
12692 - CONTRIB: iprange: Fix compiler warning in iprange.c
12693 - CONTRIB: halog: Fix compiler warnings in halog.c
12694 - BUG/MINOR: h2: properly report a stream error on RST_STREAM
12695 - MINOR: mux: add flags to describe a mux's capabilities
12696 - MINOR: stream-int: set flag SI_FL_CLEAN_ABRT when mux supports clean aborts
12697 - BUG/MEDIUM: stream: don't consider abortonclose on muxes which close cleanly
12698 - BUG/MEDIUM: checks: a server passed in maint state was not forced down.
12699 - BUG/MEDIUM: lua: fix crash when using bogus mode in register_service()
12700 - MINOR: http: adjust the list of supposedly cacheable methods
12701 - MINOR: http: update the list of cacheable status codes as per RFC7231
12702 - MINOR: http: start to compute the transaction's cacheability from the request
12703 - BUG/MINOR: http: do not ignore cache-control: public
12704 - BUG/MINOR: http: properly detect max-age=0 and s-maxage=0 in responses
12705 - BUG/MINOR: cache: do not force the TX_CACHEABLE flag before checking cacheability
12706 - MINOR: http: add a function to check request's cache-control header field
12707 - BUG/MEDIUM: cache: do not try to retrieve host-less requests from the cache
12708 - BUG/MEDIUM: cache: replace old object on store
12709 - BUG/MEDIUM: cache: respect the request cache-control header
12710 - BUG/MEDIUM: cache: don't cache the response on no-cache="set-cookie"
12711 - BUG/MAJOR: connection: refine the situations where we don't send shutw()
12712 - BUG/MEDIUM: checks: properly set servers to stopping state on 404
12713 - BUG/MEDIUM: h2: properly handle and report some stream errors
12714 - BUG/MEDIUM: h2: improve handling of frames received on closed streams
12715 - DOC/MINOR: configuration: typo, formatting fixes
12716 - BUG/MEDIUM: h2: ensure we always know the stream before sending a reset
12717 - BUG/MEDIUM: mworker: don't close stdio several time
12718 - MINOR: don't close stdio anymore
12719 - BUG/MEDIUM: http: don't automatically forward request close
12720 - BUG/MAJOR: hpack: don't return direct references to the dynamic headers table
12721 - MINOR: h2: add a function to report pseudo-header names
12722 - DEBUG: hpack: make hpack_dht_dump() expose the output file
12723 - DEBUG: hpack: add more traces to the hpack decoder
12724 - CONTRIB: hpack: add an hpack decoder
12725 - MEDIUM: h2: prepare a graceful shutdown when the frontend is stopped
12726 - BUG/MEDIUM: h2: properly handle the END_STREAM flag on empty DATA frames
12727 - BUILD: ssl: silence a warning when building without NPN nor ALPN support
12728 - CLEANUP: rbtree: remove
12729 - BUG/MEDIUM: ssl: cache doesn't release shctx blocks
12730 - BUG/MINOR: lua: Fix default value for pattern in Socket.receive
12731 - DOC: lua: Fix typos in comments of hlua_socket_receive
12732 - BUG/MEDIUM: lua: Fix IPv6 with separate port support for Socket.connect
12733 - BUG/MINOR: lua: Fix return value of Socket.settimeout
12734 - MINOR: dns: Handle SRV record weight correctly.
12735 - BUG/MEDIUM: mworker: execvp failure depending on argv[0]
12736 - MINOR: hathreads: add support for gcc < 4.7
12737 - BUILD/MINOR: ancient gcc versions atomic fix
12738 - BUG/MEDIUM: stream: properly handle client aborts during redispatch
12739 - MINOR: spoe: add register-var-names directive in spoe-agent configuration
12740 - MINOR: spoe: Don't queue a SPOE context if nothing is sent
12741 - DOC: clarify the scope of ssl_fc_is_resumed
12742 - CONTRIB: debug: fix a few flags definitions
12743 - BUG/MINOR: poll: too large size allocation for FD events
12744 - MINOR: sample: add date_us sample
12745 - BUG/MEDIUM: peers: fix expire date wasn't updated if entry is modified remotely.
12746 - MINOR: servers: Don't report duplicate dyncookies for disabled servers.
12747 - MINOR: global/threads: move cpu_map at the end of the global struct
12748 - MINOR: threads: add a MAX_THREADS define instead of LONGBITS
12749 - MINOR: global: add some global activity counters to help debugging
12750 - MINOR: threads/fd: Use a bitfield to know if there are FDs for a thread in the FD cache
12751 - BUG/MEDIUM: threads/polling: Use fd_cache_mask instead of fd_cache_num
12752 - BUG/MEDIUM: fd: maintain a per-thread update mask
12753 - MINOR: fd: add a bitmask to indicate that an FD is known by the poller
12754 - BUG/MEDIUM: epoll/threads: use one epoll_fd per thread
12755 - BUG/MEDIUM: kqueue/threads: use one kqueue_fd per thread
12756 - BUG/MEDIUM: threads/mworker: fix a race on startup
12757 - BUG/MINOR: mworker: only write to pidfile if it exists
12758 - MINOR: threads: Fix build when we're not compiling with threads.
12759 - BUG/MINOR: threads: always set an owner to the thread_sync pipe
12760 - BUG/MEDIUM: threads/server: Fix deadlock in srv_set_stopping/srv_set_admin_flag
12761 - BUG/MEDIUM: checks: Don't try to release undefined conn_stream when a check is freed
12762 - BUG/MINOR: kqueue/threads: Don't forget to close kqueue_fd[tid] on each thread
12763 - MINOR: threads: Use __decl_hathreads instead of #ifdef/#endif
12764 - BUILD: epoll/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
12765 - BUILD: kqueue/threads: Add test on MAX_THREADS to avoid warnings when complied without threads
12766 - CLEANUP: sample: Fix comment encoding of sample.c
12767 - CLEANUP: sample: Fix outdated comment about sample casts functions
12768 - BUG/MINOR: sample: Fix output type of c_ipv62ip
12769 - CLEANUP: Fix typo in ARGT_MSK6 comment
12770 - CLEANUP: standard: Use len2mask4 in str2mask
12771 - MINOR: standard: Add str2mask6 function
12772 - MINOR: config: Add support for ARGT_MSK6
12773 - MEDIUM: sample: Add IPv6 support to the ipmask converter
12774 - MINOR: config: Enable tracking of up to MAX_SESS_STKCTR stick counters.
12775 - BUG/MINOR: cli: use global.maxsock and not maxfd to list all FDs
12776 - MINOR: polling: make epoll and kqueue not depend on maxfd anymore
12777 - MINOR: fd: don't report maxfd in alert messages
12778 - MEDIUM: polling: start to move maxfd computation to the pollers
12779 - CLEANUP: fd/threads: remove the now unused fdtab_lock
12780 - MINOR: poll: more accurately compute the new maxfd in the loop
12781 - CLEANUP: fd: remove the unused "new" field
12782 - MINOR: fd: move the hap_fd_{clr,set,isset} functions to fd.h
12783 - MEDIUM: select: make use of hap_fd_* functions
12784 - MEDIUM: fd: use atomic ops for hap_fd_{clr,set} and remove poll_lock
12785 - MEDIUM: select: don't use the old FD state anymore
12786 - MEDIUM: poll: don't use the old FD state anymore
12787 - MINOR: fd: pass the iocb and owner to fd_insert()
12788 - BUG/MINOR: threads: Update labels array because of changes in lock_label enum
12789 - MINOR: stick-tables: Adds support for new "gpc1" and "gpc1_rate" counters.
12790 - BUG/MINOR: epoll/threads: only call epoll_ctl(DEL) on polled FDs
12791 - DOC: don't suggest using http-server-close
12792 - MINOR: introduce proxy-v2-options for send-proxy-v2
12793 - BUG/MEDIUM: spoe: Always try to receive or send the frame to detect shutdowns
12794 - BUG/MEDIUM: spoe: Allow producer to read and to forward shutdown on request side
12795 - MINOR: spoe: Remove check on min_applets number when a SPOE context is queued
12796 - MINOR: spoe: Always link a SPOE context with the applet processing it
12797 - MINOR: spoe: Replace sending_rate by a frequency counter
12798 - MINOR: spoe: Count the number of frames waiting for an ack for each applet
12799 - MEDIUM: spoe: Use an ebtree to manage idle applets
12800 - MINOR: spoa_example: Count the number of frames processed by each worker
12801 - MINOR: spoe: Add max-waiting-frames directive in spoe-agent configuration
12802 - MINOR: init: make stdout unbuffered
12803 - MINOR: early data: Don't rely on CO_FL_EARLY_DATA to wake up streams.
12804 - MINOR: early data: Never remove the CO_FL_EARLY_DATA flag.
12805 - MINOR: compiler: introduce offsetoff().
12806 - MINOR: threads: Introduce double-width CAS on x86_64 and arm.
12807 - MINOR: threads: add test and set/reset operations
12808 - MINOR: pools/threads: Implement lockless memory pools.
12809 - MAJOR: fd/threads: Make the fdcache mostly lockless.
12810 - MEDIUM: fd/threads: Make sure we don't miss a fd cache entry.
12811 - MAJOR: fd: compute the new fd polling state out of the fd lock
12812 - MINOR: epoll: get rid of the now useless fd_compute_new_polled_status()
12813 - MINOR: kqueue: get rid of the now useless fd_compute_new_polled_status()
12814 - MINOR: poll: get rid of the now useless fd_compute_new_polled_status()
12815 - MINOR: select: get rid of the now useless fd_compute_new_polled_status()
12816 - CLEANUP: fd: remove the now unused fd_compute_new_polled_status() function
12817 - MEDIUM: fd: make updt_fd_polling() use atomics
12818 - MEDIUM: poller: use atomic ops to update the fdtab mask
12819 - MINOR: fd: move the fd_{add_to,rm_from}_fdlist functions to fd.c
12820 - BUG/MINOR: fd/threads: properly dereference fdcache as volatile
12821 - MINOR: fd: remove the unneeded last CAS when adding an fd to the list
12822 - MINOR: fd: reorder fd_add_to_fd_list()
12823 - BUG/MINOR: time/threads: ensure the adjusted time is always correct
12824 - BUG/MEDIUM: standard: Fix memory leak in str2ip2()
12825 - MINOR: init: emit warning when -sf/-sd cannot parse argument
12826 - BUILD: fd/threads: fix breakage build breakage without threads
12827 - DOC: Describe routing impact of using interface keyword on bind lines
12828 - DOC: Mention -Ws in the list of available options
12829 - BUG/MINOR: config: don't emit a warning when global stats is incompletely configured
12830 - BUG/MINOR: fd/threads: properly lock the FD before adding it to the fd cache.
12831 - BUG/MEDIUM: threads: fix the double CAS implementation for ARMv7
12832 - BUG/MEDIUM: ssl: Don't always treat SSL_ERROR_SYSCALL as unrecovarable.
12833 - BUILD/MINOR: memory: stdint is needed for uintptr_t
12834 - BUG/MINOR: init: Add missing brackets in the code parsing -sf/-st
12835 - DOC: lua: new prototype for function "register_action()"
12836 - DOC: cfgparse: Warn on option (tcp|http)log in backend
12837 - BUG/MINOR: ssl/threads: Make management of the TLS ticket keys files thread-safe
12838 - MINOR: sample: add a new "concat" converter
12839 - BUG/MEDIUM: ssl: Shutdown the connection for reading on SSL_ERROR_SYSCALL
12840 - BUG/MEDIUM: http: Switch the HTTP response in tunnel mode as earlier as possible
12841 - BUG/MEDIUM: ssl/sample: ssl_bc_* fetch keywords are broken.
12842 - MINOR: ssl/sample: adds ssl_bc_is_resumed fetch keyword.
12843 - CLEANUP: cfgparse: Remove unused label end
12844 - CLEANUP: spoe: Remove unused label retry
12845 - CLEANUP: h2: Remove unused labels from mux_h2.c
12846 - CLEANUP: pools: Remove unused end label in memory.h
12847 - CLEANUP: standard: Fix typo in IPv6 mask example
12848 - BUG/MINOR: pools/threads: don't ignore DEBUG_UAF on double-word CAS capable archs
12849 - BUG/MINOR: debug/pools: properly handle out-of-memory when building with DEBUG_UAF
12850 - MINOR: debug/pools: make DEBUG_UAF also detect underflows
12851 - MINOR: stats: display the number of threads in the statistics.
12852 - BUG/MINOR: h2: Set the target of dbuf_wait to h2c
12853 - BUG/MEDIUM: h2: always consume any trailing data after end of output buffers
12854 - BUG/MEDIUM: buffer: Fix the wrapping case in bo_putblk
12855 - BUG/MEDIUM: buffer: Fix the wrapping case in bi_putblk
12856 - BUG/MEDIUM: spoe: Remove idle applets from idle list when HAProxy is stopping
12857 - Revert "BUG/MINOR: send-proxy-v2: string size must include ('\0')"
12858 - MINOR: ssl: extract full pkey info in load_certificate
12859 - MINOR: ssl: add ssl_sock_get_pkey_algo function
12860 - MINOR: ssl: add ssl_sock_get_cert_sig function
12861 - MINOR: connection: add proxy-v2-options ssl-cipher,cert-sig,cert-key
12862 - MINOR: connection: add proxy-v2-options authority
12863 - MINOR: systemd: Add section for SystemD sandboxing to unit file
12864 - MINOR: systemd: Add SystemD's Protect*= options to the unit file
12865 - MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file
12866 - CLEANUP: h2: rename misleading h2c_stream_close() to h2s_close()
12867 - MINOR: h2: provide and use h2s_detach() and h2s_free()
12868 - MEDIUM: h2: use a single buffer allocator
12869 - MINOR/BUILD: fix Lua build on Mac OS X
12870 - BUILD/MINOR: fix Lua build on Mac OS X (again)
12871 - BUG/MINOR: session: Fix tcp-request session failure if handshake.
12872 - CLEANUP: .gitignore: Ignore binaries from the contrib directory
12873 - BUG/MINOR: unix: Don't mess up when removing the socket from the xfer_sock_list.
12874 - DOC: buffers: clarify the purpose of the <from> pointer in offer_buffers()
12875 - BUG/MEDIUM: h2: also arm the h2 timeout when sending
12876 - BUG/MINOR: cli: Fix a crash when passing a negative or too large value to "show fd"
12877 - CLEANUP: ssl: Remove a duplicated #include
12878 - CLEANUP: cli: Remove a leftover debug message
12879 - BUG/MINOR: cli: Fix a typo in the 'set rate-limit' usage
12880 - BUG/MEDIUM: fix a 100% cpu usage with cpu-map and nbthread/nbproc
12881 - BUG/MINOR: force-persist and ignore-persist only apply to backends
12882 - BUG/MEDIUM: threads/unix: Fix a deadlock when a listener is temporarily disabled
12883 - BUG/MAJOR: threads/queue: Fix thread-safety issues on the queues management
12884 - BUG/MINOR: dns: don't downgrade DNS accepted payload size automatically
12885 - TESTS: Add a testcase for multi-port + multi-server listener issue
12886 - CLEANUP: dns: remove duplicate code in src/dns.c
12887 - BUG/MINOR: seemless reload: Fix crash when an interface is specified.
12888 - BUG/MINOR: cli: Ensure all command outputs end with a LF
12889 - BUG/MINOR: cli: Fix a crash when sending a command with too many arguments
12890 - BUILD: ssl: Fix build with OpenSSL without NPN capability
12891 - BUG/MINOR: spoa-example: unexpected behavior for more than 127 args
12892 - BUG/MINOR: lua: return bad error messages
12893 - CLEANUP: lua/syntax: lua is a name and not an acronym
12894 - BUG/MEDIUM: tcp-check: single connect rule can't detect DOWN servers
12895 - BUG/MINOR: tcp-check: use the server's service port as a fallback
12896 - BUG/MEDIUM: threads/queue: wake up other threads upon dequeue
12897 - MINOR: log: stop emitting alerts when it's not possible to write on the socket
12898 - BUILD/BUG: enable -fno-strict-overflow by default
12899 - BUG/MEDIUM: fd/threads: ensure the fdcache_mask always reflects the cache contents
12900 - DOC: log: more than 2 log servers are allowed
12901 - MINOR: hash: add new function hash_crc32c
12902 - MINOR: proxy-v2-options: add crc32c
12903 - MINOR: accept-proxy: support proxy protocol v2 CRC32c checksum
12904 - REORG: compact "struct server"
12905 - MINOR: samples: add crc32c converter
12906 - BUG/MEDIUM: h2: properly account for DATA padding in flow control
12907 - BUG/MINOR: h2: ensure we can never send an RST_STREAM in response to an RST_STREAM
12908 - BUG/MINOR: listener: Don't decrease actconn twice when a new session is rejected
12909 - CLEANUP: map, stream: remove duplicate code in src/map.c, src/stream.c
12910 - BUG/MINOR: lua: the function returns anything
12911 - BUG/MINOR: lua funtion hlua_socket_settimeout don't check negative values
12912 - CLEANUP: lua: typo fix in comments
12913 - BUILD/MINOR: fix build when USE_THREAD is not defined
12914 - MINOR: lua: allow socket api settimeout to accept integers, float, and doubles
12915 - BUG/MINOR: hpack: fix harmless use of uninitialized value in hpack_dht_insert
12916 - MINOR: cli/threads: make "show fd" report thread_sync_io_handler instead of "unknown"
12917 - MINOR: cli: make "show fd" report the mux and mux_ctx pointers when available
12918 - BUILD/MINOR: cli: fix a build warning introduced by last commit
12919 - BUG/MAJOR: h2: remove orphaned streams from the send list before closing
12920 - MINOR: h2: always call h2s_detach() in h2_detach()
12921 - MINOR: h2: fuse h2s_detach() and h2s_free() into h2s_destroy()
12922 - BUG/MEDIUM: h2/threads: never release the task outside of the task handler
12923 - BUG/MEDIUM: h2: don't consider pending data on detach if connection is in error
12924 - BUILD/MINOR: threads: always export thread_sync_io_handler()
12925 - MINOR: mux: add a "show_fd" function to dump debugging information for "show fd"
12926 - MINOR: h2: implement a basic "show_fd" function
12927 - MINOR: cli: report cache indexes in "show fd"
12928 - BUG/MINOR: h2: remove accidental debug code introduced with show_fd function
12929 - BUG/MEDIUM: h2: always add a stream to the send or fctl list when blocked
12930 - BUG/MINOR: checks: check the conn_stream's readiness and not the connection
12931 - BUG/MINOR: fd: Don't clear the update_mask in fd_insert.
12932 - BUG/MINOR: email-alert: Set the mailer port during alert initialization
12933 - BUG/MINOR: cache: fix "show cache" output
12934 - BUG/MAJOR: cache: fix random crashes caused by incorrect delete() on non-first blocks
12935 - BUG/MINOR: spoe: Initialize variables used during conf parsing before any check
12936 - BUG/MINOR: spoe: Don't release the context buffer in .check_timeouts callbaclk
12937 - BUG/MINOR: spoe: Register the variable to set when an error occurred
12938 - BUG/MINOR: spoe: Don't forget to decrement fpa when a processing is interrupted
12939 - MINOR: spoe: Add metrics in to know time spent in the SPOE
12940 - MINOR: spoe: Add options to store processing times in variables
12941 - MINOR: log: move 'log' keyword parsing in dedicated function
12942 - MINOR: log: Keep the ref when a log server is copied to avoid duplicate entries
12943 - MINOR: spoe: Add loggers dedicated to the SPOE agent
12944 - MINOR: spoe: Add support for option dontlog-normal in the SPOE agent section
12945 - MINOR: spoe: use agent's logger to log SPOE messages
12946 - MINOR: spoe: Add counters to log info about SPOE agents
12947 - BUG/MAJOR: cache: always initialize newly created objects
12948 - MINOR: servers: Support alphanumeric characters for the server templates names
12949 - BUG/MEDIUM: threads: Fix the max/min calculation because of name clashes
12950 - BUG/MEDIUM: connection: Make sure we have a mux before calling detach().
12951 - BUG/MINOR: http: Return an error in proxy mode when url2sa fails
12952 - MINOR: proxy: Add fe_defbe fetcher
12953 - MINOR: config: Warn if resolvers has no nameservers
12954 - BUG/MINOR: cli: Guard against NULL messages when using CLI_ST_PRINT_FREE
12955 - MINOR: cli: Ensure the CLI always outputs an error when it should
12956 - MEDIUM: sample: Extend functionality for field/word converters
12957 - MINOR: export localpeer as an environment variable
12958 - BUG/MEDIUM: kqueue: When adding new events, provide an output to get errors.
12959 - BUILD: sample: avoid build warning in sample.c
12960 - BUG/CRITICAL: h2: fix incorrect frame length check
12961 - DOC: lua: update the links to the config and Lua API
12962 - BUG/MINOR: pattern: Add a missing HA_SPIN_INIT() in pat_ref_newid()
12963 - BUG/MAJOR: channel: Fix crash when trying to read from a closed socket
12964 - BUG/MINOR: log: t_idle (%Ti) is not set for some requests
12965 - BUG/MEDIUM: lua: Fix segmentation fault if a Lua task exits
12966 - MINOR: h2: detect presence of CONNECT and/or content-length
12967 - BUG/MEDIUM: h2: implement missing support for chunked encoded uploads
12968 - BUG/MINOR: spoe: Fix counters update when processing is interrupted
12969 - BUG/MINOR: spoe: Fix parsing of dontlog-normal option
12970 - MEDIUM: cli: Add payload support
12971 - MINOR: map: Add payload support to "add map"
12972 - MINOR: ssl: Add payload support to "set ssl ocsp-response"
12973 - BUG/MINOR: lua/threads: Make lua's tasks sticky to the current thread
12974 - MINOR: sample: Add strcmp sample converter
12975 - MINOR: http: Add support for 421 Misdirected Request
12976 - BUG/MINOR: config: disable http-reuse on TCP proxies
12977 - MINOR: ssl: disable SSL sample fetches when unsupported
12978 - MINOR: ssl: add fetch 'ssl_fc_session_key' and 'ssl_bc_session_key'
12979 - BUG/MINOR: checks: Fix check->health computation for flapping servers
12980 - BUG/MEDIUM: threads: Fix the sync point for more than 32 threads
12981 - BUG/MINOR, BUG/MINOR: lua: Put tasks to sleep when waiting for data
12982 - MINOR: backend: implement random-based load balancing
12983 - DOC/MINOR: clean up LUA documentation re: servers & array/table.
12984 - MINOR: lua: Add server name & puid to LUA Server class.
12985 - MINOR: lua: add get_maxconn and set_maxconn to LUA Server class.
12986 - BUG/MINOR: map: correctly track reference to the last ref_elt being dumped
12987 - BUG/MEDIUM: task: Don't free a task that is about to be run.
12988 - MINOR: fd: Make the lockless fd list work with multiple lists.
12989 - BUG/MEDIUM: pollers: Use a global list for fd shared between threads.
12990 - MINOR: pollers: move polled_mask outside of struct fdtab.
12991 - BUG/MINOR: lua: schedule socket task upon lua connect()
12992 - BUG/MINOR: lua: ensure large proxy IDs can be represented
12993 - BUG/MEDIUM: pollers/kqueue: use incremented position in event list
12994 - BUG/MINOR: cli: don't stop cli_gen_usage_msg() when kw->usage == NULL
12995 - BUG/MEDIUM: http: don't always abort transfers on CF_SHUTR
12996 - BUG/MEDIUM: ssl: properly protect SSL cert generation
12997 - BUG/MINOR: lua: Socket.send threw runtime error: 'close' needs 1 arguments.
12998 - BUG/MINOR: spoe: Mistake in error message about SPOE configuration
12999 - BUG/MEDIUM: spoe: Flags are not encoded in network order
13000 - CLEANUP: spoe: Remove unused variables the agent structure
13001 - DOC: spoe: fix a typo
13002 - BUG/MEDIUM: contrib/mod_defender: Use network order to encode/decode flags
13003 - BUG/MEDIUM: contrib/modsecurity: Use network order to encode/decode flags
13004 - DOC: add some description of the pending rework of the buffer structure
13005 - BUG/MINOR: ssl/lua: prevent lua from affecting automatic maxconn computation
13006 - MINOR: lua: Improve error message
13007 - BUG/MEDIUM: cache: don't cache when an Authorization header is present
13008 - MINOR: ssl: set SSL_OP_PRIORITIZE_CHACHA
13009 - BUG/MEDIUM: dns: Delay the attempt to run a DNS resolution on check failure.
13010 - BUG/BUILD: threads: unbreak build without threads
13011 - BUG/MEDIUM: servers: Add srv_addr default placeholder to the state file
13012 - BUG/MEDIUM: lua/socket: Length required read doesn't work
13013 - MINOR: tasks: Change the task API so that the callback takes 3 arguments.
13014 - MAJOR: tasks: Create a per-thread runqueue.
13015 - MAJOR: tasks: Introduce tasklets.
13016 - MINOR: tasks: Make the number of tasks to run at once configurable.
13017 - MAJOR: applets: Use tasks, instead of rolling our own scheduler.
13018 - BUG/MEDIUM: stick-tables: Decrement ref_cnt in table_* converters
13019 - MINOR: http: Log warning if (add|set)-header fails
13020 - DOC: management: add the new wrew stats column
13021 - MINOR: stats: also report the failed header rewrites warnings on the stats page
13022 - BUG/MEDIUM: tasks: Don't forget to increase/decrease tasks_run_queue.
13023 - BUG/MEDIUM: task: Don't forget to decrement max_processed after each task.
13024 - MINOR: task: Also consider the task list size when getting global tasks.
13025 - MINOR: dns: Implement `parse-resolv-conf` directive
13026 - BUG/MEDIUM: spoe: Return an error when the wrong ACK is received in sync mode
13027 - MINOR: task/notification: Is notifications registered ?
13028 - BUG/MEDIUM: lua/socket: wrong scheduling for sockets
13029 - BUG/MAJOR: lua: Dead lock with sockets
13030 - BUG/MEDIUM: lua/socket: Notification error
13031 - BUG/MEDIUM: lua/socket: Sheduling error on write: may dead-lock
13032 - BUG/MEDIUM: lua/socket: Buffer error, may segfault
13033 - DOC: contrib/modsecurity: few typo fixes
13034 - DOC: SPOE.txt: fix a typo
13035 - MAJOR: spoe: upgrade the SPOP version to 2.0 and remove the support for 1.0
13036 - BUG/MINOR: contrib/spoa_example: Don't reset the status code during disconnect
13037 - BUG/MINOR: contrib/mod_defender: Don't reset the status code during disconnect
13038 - BUG/MINOR: contrib/modsecurity: Don't reset the status code during disconnect
13039 - BUG/MINOR: contrib/mod_defender: update pointer on the end of the frame
13040 - BUG/MINOR: contrib/modsecurity: update pointer on the end of the frame
13041 - MINOR: task: Fix a compiler warning by adding a cast.
13042 - MINOR: stats: also report the nice and number of calls for applets
13043 - MINOR: applet: assign the same nice value to a new appctx as its owner task
13044 - MINOR: task: Fix compiler warning.
13045 - BUG/MEDIUM: tasks: Use the local runqueue when building without threads.
13046 - MINOR: tasks: Don't define rqueue if we're building without threads.
13047 - BUG/MINOR: unix: Make sure we can transfer abns sockets on seamless reload.
13048 - MINOR: lua: Increase debug information
13049 - BUG/MEDIUM: threads: handle signal queue only in thread 0
13050 - BUG/MINOR: don't ignore SIG{BUS,FPE,ILL,SEGV} during signal processing
13051 - BUG/MINOR: signals: ha_sigmask macro for multithreading
13052 - BUG/MAJOR: map: fix a segfault when using http-request set-map
13053 - DOC: regression testing: Add a short starting guide.
13054 - MINOR: tasks: Make sure we correctly init and deinit a tasklet.
13055 - BUG/MINOR: tasklets: Just make sure we don't pass a tasklet to the handler.
13056 - BUG/MINOR: lua: Segfaults with wrong usage of types.
13057 - BUG/MAJOR: ssl: Random crash with cipherlist capture
13058 - BUG/MAJOR: ssl: OpenSSL context is stored in non-reserved memory slot
13059 - BUG/MEDIUM: ssl: do not store pkinfo with SSL_set_ex_data
13060 - MINOR: tests: First regression testing file.
13061 - MINOR: reg-tests: Add reg-tests/README file.
13062 - MINOR: reg-tests: Add a few regression testing files.
13063 - DOC: Add new REGTEST tag info about reg testing.
13064 - BUG/MEDIUM: fd: Don't modify the update_mask in fd_dodelete().
13065 - MINOR: Some spelling cleanup in the comments.
13066 - BUG/MEDIUM: threads: Use the sync point to check active jobs and exit
13067 - MINOR: threads: Be sure to remove threads from all_threads_mask on exit
13068 - REGTEST/MINOR: Wrong URI in a reg test for SSL/TLS.
13069 - REGTEST/MINOR: Set HAPROXY_PROGRAM default value.
13070 - REGTEST/MINOR: Add levels to reg-tests target.
13071 - BUG/MAJOR: Stick-tables crash with segfault when the key is not in the stick-table
13072 - BUG/BUILD: threads: unbreak build without threads
13073 - BUG/MAJOR: stick_table: Complete incomplete SEGV fix
13074 - MINOR: stick-tables: make stktable_release() do nothing on NULL
13075 - BUG/MEDIUM: lua: possible CLOSE-WAIT state with '\n' headers
13076 - MINOR: startup: change session/process group settings
13077 - MINOR: systemd: consider exit status 143 as successful
13078 - REGTEST/MINOR: Wrong URI syntax.
13079 - CLEANUP: dns: remove obsolete macro DNS_MAX_IP_REC
13080 - CLEANUP: dns: inacurate comment about prefered IP score
13081 - MINOR: dns: fix wrong score computation in dns_get_ip_from_response
13082 - MINOR: dns: new DNS options to allow/prevent IP address duplication
13083 - REGTEST/MINOR: Unexpected curl URL globling.
13084 - BUG/MINOR: ssl: properly ref-count the tls_keys entries
13085 - MINOR: h2: keep a count of the number of conn_streams attached to the mux
13086 - BUG/MEDIUM: h2: don't accept new streams if conn_streams are still in excess
13087 - MINOR: h2: add the mux and demux buffer lengths on "show fd"
13088 - BUG/MEDIUM: h2: never leave pending data in the output buffer on close
13089 - BUG/MEDIUM: h2: make sure the last stream closes the connection after a timeout
13090 - MINOR: tasklet: Set process to NULL.
13091 - MINOR: buffer: implement a new file for low-level buffer manipulation functions
13092 - MINOR: buffer: switch buffer sizes and offsets to size_t
13093 - MINOR: buffer: add a few basic functions for the new API
13094 - MINOR: buffer: Introduce b_sub(), b_add(), and bo_add()
13095 - MINOR: buffer: Add b_set_data().
13096 - MINOR: buffer: introduce b_realign_if_empty()
13097 - MINOR: compression: pass the channel to http_compression_buffer_end()
13098 - MINOR: channel: add a few basic functions for the new buffer API
13099 - MINOR: channel/buffer: use c_realign_if_empty() instead of buffer_realign()
13100 - MINOR: channel/buffer: replace buffer_slow_realign() with channel_slow_realign() and b_slow_realign()
13101 - MEDIUM: channel: make channel_slow_realign() take a swap buffer
13102 - MINOR: h2: use b_slow_realign() with the trash as a swap buffer
13103 - MINOR: buffer: remove buffer_slow_realign() and the swap_buffer allocation code
13104 - MINOR: channel/buffer: replace b_{adv,rew} with c_{adv,rew}
13105 - MINOR: buffer: replace calls to buffer_space_wraps() with b_space_wraps()
13106 - MINOR: buffer: remove bi_getblk() and bi_getblk_nc()
13107 - MINOR: buffer: split bi_contig_data() into ci_contig_data and b_config_data()
13108 - MINOR: buffer: remove bi_ptr()
13109 - MINOR: buffer: remove bo_ptr()
13110 - MINOR: buffer: remove bo_end()
13111 - MINOR: buffer: remove bi_end()
13112 - MINOR: buffer: remove bo_contig_data()
13113 - MINOR: buffer: merge b{i,o}_contig_space()
13114 - MINOR: buffer: replace bo_getblk() with direction agnostic b_getblk()
13115 - MINOR: buffer: replace bo_getblk_nc() with b_getblk_nc() which takes an offset
13116 - MINOR: buffer: replace bi_del() and bo_del() with b_del()
13117 - MINOR: buffer: convert most b_ptr() calls to c_ptr()
13118 - MINOR: h1: make h1_measure_trailers() take the byte count in argument
13119 - MINOR: h2: clarify the fact that the send functions are unsigned
13120 - MEDIUM: h2: prevent the various mux encoders from modifying the buffer
13121 - MINOR: h1: make h1_skip_chunk_crlf() not depend on b_ptr() anymore
13122 - MINOR: h1: make h1_parse_chunk_size() not depend on b_ptr() anymore
13123 - MINOR: h1: make h1_measure_trailers() use an offset and a count
13124 - MEDIUM: h2: do not use buf->o anymore inside h2_snd_buf's loop
13125 - MEDIUM: h2: don't use b_ptr() nor b_end() anymore
13126 - MINOR: buffer: get rid of b_end() and b_to_end()
13127 - MINOR: buffer: make b_getblk_nc() take const pointers
13128 - MINOR: buffer: make b_getblk_nc() take size_t for the block sizes
13129 - MEDIUM: connection: make xprt->snd_buf() take the byte count in argument
13130 - MEDIUM: mux: make mux->snd_buf() take the byte count in argument
13131 - MEDIUM: connection: make xprt->rcv_buf() use size_t for the count
13132 - MEDIUM: mux: make mux->rcv_buf() take a size_t for the count
13133 - MINOR: connection: add a flags argument to rcv_buf()
13134 - MINOR: connection: add a new receive flag : CO_RFL_BUF_WET
13135 - MINOR: buffer: get rid of b_ptr() and convert its last users
13136 - MINOR: buffer: use b_room() to determine available space in a buffer
13137 - MINOR: buffer: replace buffer_not_empty() with b_data() or c_data()
13138 - MINOR: buffer: replace buffer_empty() with b_empty() or c_empty()
13139 - MINOR: buffer: make bo_putchar() use b_tail()
13140 - MINOR: buffer: replace buffer_full() with channel_full()
13141 - MINOR: buffer: replace bi_space_for_replace() with ci_space_for_replace()
13142 - MINOR: buffer: replace buffer_pending() with ci_data()
13143 - MINOR: buffer: replace buffer_flush() with c_adv(chn, ci_data(chn))
13144 - MINOR: buffer: use c_head() instead of buffer_wrap_sub(c->buf, p-o)
13145 - MINOR: buffer: use b_orig() to replace most references to b->data
13146 - MINOR: buffer: Use b_add()/bo_add() instead of accessing b->i/b->o.
13147 - MINOR: channel: remove almost all references to buf->i and buf->o
13148 - MINOR: channel: Add co_set_data().
13149 - MEDIUM: channel: adapt to the new buffer API
13150 - MINOR: checks: adapt to the new buffer API
13151 - MEDIUM: h2: update to the new buffer API
13152 - MINOR: buffer: remove unused bo_add()
13153 - MEDIUM: spoe: use the new buffer API for the SPOE buffer
13154 - MINOR: stats: adapt to the new buffers API
13155 - MINOR: cli: use the new buffer API
13156 - MINOR: cache: use the new buffer API
13157 - MINOR: stream-int: use the new buffer API
13158 - MINOR: stream: use wrappers instead of directly manipulating buffers
13159 - MINOR: backend: use new buffer API
13160 - MEDIUM: http: use wrappers instead of directly manipulating buffers states
13161 - MINOR: filters: convert to the new buffer API
13162 - MINOR: payload: convert to the new buffer API
13163 - MEDIUM: h1: port to new buffer API.
13164 - MINOR: flt_trace: adapt to the new buffer API
13165 - MEDIUM: compression: start to move to the new buffer API
13166 - MINOR: lua: use the wrappers instead of directly manipulating buffer states
13167 - MINOR: buffer: convert part bo_putblk() and bi_putblk() to the new API
13168 - MINOR: buffer: adapt buffer_slow_realign() and buffer_dump() to the new API
13169 - MAJOR: start to change buffer API
13170 - MINOR: buffer: remove the check for output on b_del()
13171 - MINOR: buffer: b_set_data() doesn't truncate output data anymore
13172 - MINOR: buffer: rename the "data" field to "area"
13173 - MEDIUM: buffers: move "output" from struct buffer to struct channel
13174 - MINOR: buffer: replace bi_fast_delete() with b_del()
13175 - MINOR: buffer: replace b{i,o}_put* with b_put*
13176 - MINOR: buffer: add a new file for ist + buffer manipulation functions
13177 - MINOR: checks: use b_putist() instead of b_putstr()
13178 - MINOR: buffers: remove b_putstr()
13179 - CLEANUP: buffer: minor cleanups to buffer.h
13180 - MINOR: buffers/channel: replace buffer_insert_line2() with ci_insert_line2()
13181 - MINOR: buffer: replace buffer_replace2() with b_rep_blk()
13182 - MINOR: buffer: rename the data length member to '->data'
13183 - MAJOR: buffer: finalize buffer detachment
13184 - MEDIUM: chunks: make the chunk struct's fields match the buffer struct
13185 - MAJOR: chunks: replace struct chunk with struct buffer
13186 - DOC: buffers: document the new buffers API
13187 - DOC: buffers: remove obsolete docs about buffers
13188 - MINOR: tasklets: Don't attempt to add a tasklet in the list twice.
13189 - MINOR: connections/mux: Add a new "subscribe" method.
13190 - MEDIUM: connections/mux: Revamp the send direction.
13191 - MINOR: connection: simplify subscription by adding a registration function
13192 - BUG/MINOR: http: Set brackets for the unlikely macro at the right place
13193 - BUG/MINOR: build: Fix compilation with debug mode enabled
13194 - BUILD: Generate sha256 checksums in publish-release
13195 - MINOR: debug: Add check for CO_FL_WILL_UPDATE
13196 - MINOR: debug: Add checks for conn_stream flags
13197 - MINOR: ist: Add the function isteqi
13198 - BUG/MEDIUM: threads: Fix the exit condition of the thread barrier
13199 - BUG/MEDIUM: mux_h2: Call h2_send() before updating polling.
13200 - MINOR: buffers: simplify b_contig_space()
13201 - MINOR: buffers: split b_putblk() into __b_putblk()
13202 - MINOR: buffers: add b_xfer() to transfer data between buffers
13203 - DOC: add some design notes about the new layering model
13204 - MINOR: conn_stream: add a new CS_FL_REOS flag
13205 - MINOR: conn_stream: add an rx buffer to the conn_stream
13206 - MEDIUM: conn_stream: add cs_recv() as a default rcv_buf() function
13207 - MEDIUM: stream-int: automatically call si_cs_recv_cb() if the cs has data on wake()
13208 - MINOR: h2: make each H2 stream support an intermediary input buffer
13209 - MEDIUM: h2: make h2_frt_decode_headers() use an intermediary buffer
13210 - MEDIUM: h2: make h2_frt_transfer_data() copy via an intermediary buffer
13211 - MEDIUM: h2: centralize transfer of decoded frames in h2_rcv_buf()
13212 - MEDIUM: h2: move headers and data frame decoding to their respective parsers
13213 - MEDIUM: buffers: make b_xfer() automatically swap buffers when possible
13214 - MEDIUM: h2: perform a single call to the data layer in demux()
13215 - MEDIUM: h2: don't call data_cb->recv() anymore
13216 - MINOR: h2: make use of CS_FL_REOS to indicate that end of stream was seen
13217 - MEDIUM: h2: use the default conn_stream's receive function
13218 - DOC: add more design feedback on the new layering model
13219 - MINOR: h2: add the error code and the max/last stream IDs to "show fd"
13220 - BUG/MEDIUM: stream-int: don't immediately enable reading when the buffer was reportedly full
13221 - BUG/MEDIUM: stats: don't ask for more data as long as we're responding
13222 - BUG/MINOR: servers: Don't make "server" in a frontend fatal.
13223 - BUG/MEDIUM: tasks: make sure we pick all tasks in the run queue
13224 - BUG/MEDIUM: tasks: Decrement rqueue_size at the right time.
13225 - BUG/MEDIUM: tasks: use atomic ops for active_tasks_mask
13226 - BUG/MEDIUM: tasks: Make sure there's no task left before considering inactive.
13227 - MINOR: signal: don't pass the signal number anymore as the wakeup reason
13228 - MINOR: tasks: extend the state bits from 8 to 16 and remove the reason
13229 - MINOR: tasks: Add a flag that tells if we're in the global runqueue.
13230 - BUG/MEDIUM: tasks: make __task_unlink_rq responsible for the rqueue size.
13231 - MINOR: queue: centralize dequeuing code a bit better
13232 - MEDIUM: queue: make pendconn_free() work on the stream instead
13233 - DOC: queue: document the expected locking model for the server's queue
13234 - MINOR: queue: make sure pendconn->strm->pend_pos is always valid
13235 - MINOR: queue: use a distinct variable for the assigned server and the queue
13236 - MINOR: queue: implement pendconn queue locking functions
13237 - MEDIUM: queue: get rid of the pendconn lock
13238 - MINOR: tasks: Make active_tasks_mask volatile.
13239 - MINOR: tasks: Make global_tasks_mask volatile.
13240 - MINOR: pollers: Add a way to wake a thread sleeping in the poller.
13241 - MINOR: threads/queue: Get rid of THREAD_WANT_SYNC in the queue code.
13242 - BUG/MEDIUM: threads/sync: use sched_yield when available
13243 - MINOR: ssl: BoringSSL matches OpenSSL 1.1.0
13244 - BUG/MEDIUM: h2: prevent orphaned streams from blocking a connection forever
13245 - BUG/MINOR: config: stick-table is not supported in defaults section
13246 - BUILD/MINOR: threads: unbreak build with threads disabled
13247 - BUG/MINOR: threads: Handle nbthread == MAX_THREADS.
13248 - BUG/MEDIUM: threads: properly fix nbthreads == MAX_THREADS
13249 - MINOR: threads: move "nbthread" parsing to hathreads.c
13250 - BUG/MEDIUM: threads: unbreak "bind" referencing an incorrect thread number
13251 - MEDIUM: proxy_protocol: Convert IPs to v6 when protocols are mixed
13252 - BUILD/MINOR: compiler: fix offsetof() on older compilers
13253 - SCRIPTS: git-show-backports: add missing quotes to "echo"
13254 - MINOR: threads: add more consistency between certain variables in no-thread case
13255 - MEDIUM: hathreads: implement a more flexible rendez-vous point
13256 - BUG/MEDIUM: cli: make "show fd" thread-safe
13257
Willy Tarreaub3066502017-11-26 19:50:17 +0100132582017/11/26 : 1.9-dev0
13259
Willy Tarreau0b787922017-11-26 19:25:23 +0100132602017/11/26 : 1.8.0
13261 - BUG/MEDIUM: stream: don't automatically forward connect nor close
13262 - BUG/MAJOR: stream: ensure analysers are always called upon close
13263 - BUG/MINOR: stream-int: don't try to read again when CF_READ_DONTWAIT is set
13264 - MEDIUM: mworker: Add systemd `Type=notify` support
13265 - BUG/MEDIUM: cache: free callback to remove from tree
13266 - CLEANUP: cache: remove unused struct
13267 - MEDIUM: cache: enable the HTTP analysers
13268 - CLEANUP: cache: remove wrong comment
13269 - MINOR: threads/atomic: rename local variables in macros to avoid conflicts
13270 - MINOR: threads/plock: rename local variables in macros to avoid conflicts
13271 - MINOR: threads/atomic: implement pl_mb() in asm on x86
13272 - MINOR: threads/atomic: implement pl_bts() on non-x86
13273 - MINOR: threads/build: atomic: replace the few inlines with macros
13274 - BUILD: threads/plock: fix a build issue on Clang without optimization
13275 - BUILD: ebtree: don't redefine types u32/s32 in scope-aware trees
13276 - BUILD: compiler: add a new type modifier __maybe_unused
13277 - BUILD: h2: mark some inlined functions "unused"
13278 - BUILD: server: check->desc always exists
13279 - BUG/MEDIUM: h2: properly report connection errors in headers and data handlers
13280 - MEDIUM: h2: add a function to emit an HTTP/1 request from a headers list
13281 - MEDIUM: h2: change hpack_decode_headers() to only provide a list of headers
13282 - BUG/MEDIUM: h2: always reassemble the Cookie request header field
13283 - BUG/MINOR: systemd: ignore daemon mode
13284 - CONTRIB: spoa_example: allow to compile outside HAProxy.
13285 - CONTRIB: spoa_example: remove bref, wordlist, cond_wordlist
13286 - CONTRIB: spoa_example: remove last dependencies on type "sample"
13287 - CONTRIB: spoa_example: remove SPOE enums that are useless for clients
13288 - CLEANUP: cache: reorder includes
13289 - MEDIUM: shctx: use unsigned int for len and block_count
13290 - MEDIUM: cache: "show cache" on the cli
13291 - BUG/MEDIUM: cache: use key=0 as a condition for freeing
13292 - BUG/MEDIUM: cache: refcount forbids to free the objects
13293 - BUG/MEDIUM: cache fix cli_kws structure
13294 - BUG/MEDIUM: deinit: correctly deinitialize the proxy and global listener tasks
13295 - BUG/MINOR: ssl: Always start the handshake if we can't send early data.
13296 - MINOR: ssl: Don't disable early data handling if we could not write.
13297 - MINOR: pools: prepare functions to override malloc/free in pools
13298 - MINOR: pools: implement DEBUG_UAF to detect use after free
13299 - BUG/MEDIUM: threads/time: fix time drift correction
13300 - BUG/MEDIUM: threads/time: maintain a common time reference between all threads
13301 - MINOR: sample: Add "thread" sample fetch
13302 - BUG/MINOR: Use crt_base instead of ca_base when crt is parsed on a server line
13303 - BUG/MINOR: stream: fix tv_request calculation for applets
13304 - BUG/MAJOR: h2: always remove a stream from the send list before freeing it
13305 - BUG/MAJOR: threads/task: dequeue expired tasks under the WQ lock
13306 - MINOR: ssl: Handle reading early data after writing better.
13307 - MINOR: mux: Make sure every string is woken up after the handshake.
13308 - MEDIUM: cache: store sha1 for hashing the cache key
13309 - MINOR: http: implement the "http-request reject" rule
13310 - MINOR: h2: send RST_STREAM before GOAWAY on reject
13311 - MEDIUM: h2: don't gracefully close the connection anymore on Connection: close
13312 - MINOR: h2: make use of client-fin timeout after GOAWAY
13313 - MEDIUM: config: ensure that tune.bufsize is at least 16384 when using HTTP/2
13314 - MINOR: ssl: Handle early data with BoringSSL
13315 - BUG/MEDIUM: stream: always release the stream-interface on abort
13316 - BUG/MEDIUM: cache: free ressources in chn_end_analyze
13317 - MINOR: cache: move the refcount decrease in the applet release
13318 - BUG/MINOR: listener: Allow multiple "process" options on "bind" lines
13319 - MINOR: config: Support a range to specify processes in "cpu-map" parameter
13320 - MINOR: config: Slightly change how parse_process_number works
13321 - MINOR: config: Export parse_process_number and use it wherever it's applicable
13322 - MINOR: standard: Add my_ffsl function to get the position of the bit set to one
13323 - MINOR: config: Add auto-increment feature for cpu-map
13324 - MINOR: config: Support partial ranges in cpu-map directive
13325 - MINOR:: config: Remove thread-map directive
13326 - MINOR: config: Add the threads support in cpu-map directive
13327 - MINOR: config: Add threads support for "process" option on "bind" lines
13328 - MEDIUM: listener: Bind listeners on a thread subset if specified
13329 - CLEANUP: debug: Use DPRINTF instead of fprintf into #ifdef DEBUG_FULL/#endif
13330 - CLEANUP: log: Rename Alert/Warning in ha_alert/ha_warning
13331 - MINOR/CLEANUP: proxy: rename "proxy" to "proxies_list"
13332 - CLEANUP: pools: rename all pool functions and pointers to remove this "2"
13333 - DOC: update the roadmap file with the latest changes merged in 1.8
13334 - DOC: fix mangled version in peers protocol documentation
13335 - DOC: add initial peers protovol v2.0 documentation.
13336 - DOC: mention William as maintainer of the cache and master-worker
13337 - DOC: add Christopher and Emeric as maintainers of the threads
13338 - MINOR: cache: replace a fprint() by an abort()
13339 - MEDIUM: cache: max-age configuration keyword
13340 - DOC: explain HTTP2 timeout behavior
13341 - DOC: cache: configuration and management
13342 - MAJOR: mworker: exits the master on failure
13343 - BUG/MINOR: threads: don't drop "extern" on the lock in include files
13344 - MINOR: task: keep a pointer to the currently running task
13345 - MINOR: task: align the rq and wq locks
13346 - MINOR: fd: cache-align fdtab and fdcache locks
13347 - MINOR: buffers: cache-align buffer_wq_lock
13348 - CLEANUP: server: reorder some fields in struct server to save 40 bytes
13349 - CLEANUP: proxy: slightly reorder the struct proxy to reduce holes
13350 - CLEANUP: checks: remove 16 bytes of holes in struct check
13351 - CLEANUP: cache: more efficiently pack the struct cache
13352 - CLEANUP: fd: place the lock at the beginning of struct fdtab
13353 - CLEANUP: pools: align pools on a cache line
13354 - DOC: config: add a few bits about how to configure HTTP/2
13355 - BUG/MAJOR: threads/queue: avoid recursive locking in pendconn_get_next_strm()
13356 - BUILD: Makefile: reorder object files by size
13357
Willy Tarreaucfe14662017-11-19 09:55:29 +0100133582017/11/19 : 1.8-rc4
13359 - BUG/MEDIUM: cache: does not cache if no Content-Length
13360 - BUILD: thread/pipe: fix build without threads
13361 - BUG/MINOR: spoe: check buffer size before acquiring or releasing it
13362 - MINOR: debug/flags: Add missing flags
13363 - MINOR: threads: Use __decl_hathreads to declare locks
13364 - BUG/MINOR: buffers: Fix b_alloc_margin to be "fonctionnaly" thread-safe
13365 - BUG/MAJOR: ebtree/scope: fix insertion and removal of duplicates in scope-aware trees
13366 - BUG/MAJOR: ebtree/scope: fix lookup of next node in scope-aware trees
13367 - MINOR: ebtree/scope: add a function to find next node from a parent
13368 - MINOR: ebtree/scope: simplify the lookup functions by using eb32sc_next_with_parent()
13369 - BUG/MEDIUM: mworker: Fix re-exec when haproxy is started from PATH
13370 - BUG/MEDIUM: cache: use msg->sov to forward header
13371 - MINOR: cache: forward data with headers
13372 - MINOR: cache: disable cache if shctx_row_data_append fail
13373 - BUG/MINOR: threads: tid_bit must be a unsigned long
13374 - CLEANUP: tasks: Remove useless double test on rq_next
13375 - BUG/MEDIUM: standard: itao_str/idx and quote_str/idx must be thread-local
13376 - MINOR: tools: add a function to dump a scope-aware tree to a file
13377 - MINOR: tools: improve the DOT dump of the ebtree
13378 - MINOR: tools: emphasize the node being worked on in the tree dump
13379 - BUG/MAJOR: ebtree/scope: properly tag upper nodes during insertion
13380 - DOC: peers: Add a first version of peers protocol v2.1.
13381 - CONTRIB: Wireshark dissector for HAProxy Peer Protocol.
13382 - MINOR: mworker: display an accurate error when the reexec fail
13383 - BUG/MEDIUM: mworker: wait again for signals when execvp fail
13384 - BUG/MEDIUM: mworker: does not deinit anymore
13385 - BUG/MEDIUM: mworker: does not close inherited FD
13386 - MINOR: tests: add a python wrapper to test inherited fd
13387 - BUG/MINOR: Allocate the log buffers before the proxies startup
13388 - MINOR: tasks: Use a bitfield to track tasks activity per-thread
13389 - MAJOR: polling: Use active_tasks_mask instead of tasks_run_queue
13390 - MINOR: applets: Use a bitfield to track applets activity per-thread
13391 - MAJOR: polling: Use active_appels_mask instead of applets_active_queue
13392 - MEDIUM: applets: Don't process more than 200 active applets at once
13393 - MINOR: stream: Add thread-mask of tasks/FDs/applets in "show sess all" command
13394 - MINOR: SSL: Store the ASN1 representation of client sessions.
13395 - MINOR: ssl: Make sure we don't shutw the connection before the handshake.
13396 - BUG/MEDIUM: deviceatlas: ignore not valuable HTTP request data
13397
Willy Tarreau34650d52017-11-11 09:06:48 +0100133982017/11/11 : 1.8-rc3
13399 - BUILD: use MAXPATHLEN instead of NAME_MAX.
13400 - BUG/MAJOR: threads/checks: add 4 missing spin_unlock() in various functions
13401 - BUG/MAJOR: threads/server: missing unlock in CLI fqdn parser
13402 - BUG/MINOR: cli: do not perform an invalid action on "set server check-port"
13403 - BUG/MAJOR: threads/checks: wrong use of SPIN_LOCK instead of SPIN_UNLOCK
13404 - CLEANUP: checks: remove return statements in locked functions
13405 - BUG/MINOR: cli: add severity in "set server addr" parser
13406 - CLEANUP: server: get rid of return statements in the CLI parser
13407 - BUG/MAJOR: cli/streams: missing unlock on exit "show sess"
13408 - BUG/MAJOR: threads/dns: add missing unlock on allocation failure path
13409 - BUG/MAJOR: threads/lb: fix missing unlock on consistent hash LB
13410 - BUG/MAJOR: threads/lb: fix missing unlock on map-based hash LB
13411 - BUG/MEDIUM: threads/stick-tables: close a race condition on stktable_trash_expired()
13412 - BUG/MAJOR: h2: set the connection's task to NULL when no client timeout is set
13413 - BUG/MAJOR: thread/listeners: enable_listener must not call unbind_listener()
13414 - BUG/MEDIUM: threads: don't try to free build option message on exit
13415 - MINOR: applets: no need to check for runqueue's emptiness in appctx_res_wakeup()
13416 - MINOR: add master-worker in the warning about nbproc
13417 - MINOR: mworker: allow pidfile in mworker + foreground
13418 - MINOR: mworker: write parent pid in the pidfile
13419 - MINOR: mworker: do not store child pid anymore in the pidfile
13420 - MINOR: ebtree: implement the scope-aware functions for eb32
13421 - MEDIUM: ebtree: specify the scope of every node inserted via eb32sc
13422 - MINOR: ebtree: update the eb32sc parent node's scope on delete
13423 - MEDIUM: ebtree: only consider the branches matching the scope in lookups
13424 - MINOR: ebtree: implement eb32sc_lookup_ge_or_first()
13425 - MAJOR: task: make use of the scope-aware ebtree functions
13426 - MINOR: task: simplify wake_expired_tasks() to avoid unlocking in the loop
13427 - MEDIUM: task: change the construction of the loop in process_runnable_tasks()
13428 - MINOR: threads: use faster locks for the spin locks
13429 - MINOR: tasks: only visit filled task slots after processing them
13430 - MEDIUM: tasks: implement a lockless scheduler for single-thread usage
13431 - BUG/MINOR: dns: Don't try to get the server lock if it's already held.
13432 - BUG/MINOR: dns: Don't lock the server lock in snr_check_ip_callback().
13433 - DOC: Add note about encrypted password CPU usage
13434 - BUG/MINOR: h2: set the "HEADERS_SENT" flag on stream, not connection
13435 - BUG/MEDIUM: h2: properly send an RST_STREAM on mux stream error
13436 - BUG/MEDIUM: h2: properly send the GOAWAY frame in the mux
13437 - BUG/MEDIUM: h2: don't try (and fail) to send non-existing data in the mux
13438 - MEDIUM: h2: remove the H2_SS_RESET intermediate state
13439 - BUG/MEDIUM: h2: fix some wrong error codes on connections
13440 - BUILD: threads: Rename SPIN/RWLOCK macros using HA_ prefix
13441 - BUILD: enable USE_THREAD for Solaris build.
13442 - BUG/MEDIUM: h2: don't close the connection is there are data left
13443 - MINOR: h2: don't re-enable the connection's task when we're closing
13444 - BUG/MEDIUM: h2: properly set H2_SF_ES_SENT when sending the final frame
13445 - BUG/MINOR: h2: correctly check for H2_SF_ES_SENT before closing
13446 - MINOR: h2: add new stream flag H2_SF_OUTGOING_DATA
13447 - BUG/MINOR: h2: don't send GOAWAY on failed response
13448 - BUG/MEDIUM: splice/threads: pipe reuse list was not protected.
13449 - BUG/MINOR: comp: fix compilation warning compiling without compression.
13450 - BUG/MINOR: stream-int: don't set MSG_MORE on closed request path
13451 - BUG/MAJOR: threads/tasks: fix the scheduler again
13452 - BUG/MINOR; ssl: Don't assume we have a ssl_bind_conf because a SNI is matched.
13453 - MINOR: ssl: Handle session resumption with TLS 1.3
13454 - MINOR: ssl: Spell 0x10101000L correctly.
13455 - MINOR: ssl: Handle sending early data to server.
13456 - BUILD: ssl: fix build of backend without ssl
13457 - BUILD: shctx: do not depend on openssl anymore
13458 - BUG/MINOR: h1: the HTTP/1 make status code parser check for digits
13459 - BUG/MEDIUM: h2: reject non-3-digit status codes
13460 - BUG/MEDIUM: stream-int: Don't loss write's notifs when a stream is woken up
13461 - BUG/MINOR: pattern: Rely on the sample type to copy it in pattern_exec_match
13462 - BUG/MEDIUM: h2: split the function to send RST_STREAM
13463 - BUG/MEDIUM: h1: ensure the chunk size parser can deal with full buffers
13464 - MINOR: tools: don't use unlikely() in hex2i()
13465 - BUG/MEDIUM: h2: support orphaned streams
13466 - BUG/MEDIUM: threads/cli: fix "show sess" locking on release
13467 - CLEANUP: mux: remove the unused "release()" function
13468 - MINOR: cli: make "show fd" report the fd's thread mask
13469 - BUG/MEDIUM: stream: don't ignore res.analyse_exp anymore
13470 - CLEANUP: global: introduce variable pid_bit to avoid shifts with relative_pid
13471 - MEDIUM: http: always reject the "PRI" method
13472
Willy Tarreaua8d8d6e2017-11-03 23:52:47 +0100134732017/11/03 : 1.8-rc2
13474 - BUG/MINOR: send-proxy-v2: fix dest_len in make_tlv call
13475 - BUG/MINOR: send-proxy-v2: string size must include ('\0')
13476 - MINOR: mux: Only define pipe functions on linux.
13477 - MINOR: cache: Remove useless test for nonzero.
13478 - MINOR: cache: Don't confuse act_return and act_parse_ret.
13479 - BUG/MEDIUM: h2: don't try to parse incomplete H1 responses
13480 - BUG/MEDIUM: checks/mux: always enable send-polling after connecting
13481 - BUG/MAJOR: fix deadlock on healthchecks.
13482 - BUG/MINOR: thread: fix a typo in the debug code
13483 - BUILD: shctx: allow to be built without openssl
13484 - BUG/MEDIUM: cache: don't try to resolve wrong filters
13485 - BUG/MAJOR: buffers: fix get_buffer_nc() for data at end of buffer
13486 - BUG/MINOR: freq: fix infinite loop on freq_ctr_period.
13487 - BUG/MINOR: stdarg.h inclusion
13488 - BUG/MINOR: dns: fix missing lock protection on server.
13489 - BUG/MINOR: lua: fix missing lock protection on server.
13490 - BUILD: enable USE_THREAD for OpenBSD build.
13491 - BUG/MAJOR: mux_pt: don't dereference a connstream after ->wake()
13492 - MINOR: thread: report multi-thread support in haproxy -vv
13493
Willy Tarreau901f75c2017-10-31 23:18:29 +0100134942017/10/31 : 1.8-rc1
13495 - BUG/MEDIUM: server: Allocate tmptrash before using it.
13496 - CONTRIB: trace: add the possibility to place trace calls in the code
13497 - CONTRIB: trace: try to display the function's return value on exit
13498 - CONTRIB: trace: report the base name only for file names
13499 - BUILD: ssl: support OPENSSL_NO_ASYNC #define
13500 - MINOR: ssl: build with recent BoringSSL library
13501 - BUG/MINOR: ssl: OCSP_single_get0_status can return -1
13502 - BUG/MINOR: cli: restore "set ssl tls-key" command
13503 - CLEANUP: cli: remove undocumented "set ssl tls-keys" command
13504 - IMPORT: sha1: import SHA1 functions
13505 - MINOR: sample: add the sha1 converter
13506 - MINOR: sample: add the hex2i converter
13507 - MINOR: stream-int: stop checking for useless connection flags in chk_snd_conn
13508 - MINOR: ssl: don't abort after sending 16kB
13509 - MINOR: connection: move the cleanup of flag CO_FL_WAIT_ROOM
13510 - MINOR: connection: add flag CO_FL_WILL_UPDATE to indicate when updates are granted
13511 - MEDIUM: connection: make use of CO_FL_WILL_UPDATE in conn_sock_shutw()
13512 - MINOR: raw_sock: make use of CO_FL_WILL_UPDATE
13513 - MINOR: ssl_sock: make use of CO_FL_WILL_UPDATE
13514 - BUG/MINOR: checks: Don't forget to release the connection on error case.
13515 - MINOR: buffer: add the buffer input manipulation functions
13516 - BUG/MEDIUM: prevent buffers being overwritten during build_logline() execution
13517 - MEDIUM: cfgparse: post section callback
13518 - MEDIUM: cfgparse: post parsing registration
13519 - MINOR: lua: add uuid to the Class Proxy
13520 - MINOR: hlua: Add regex class
13521 - MINOR: http: Mark the 425 code as "Too Early".
13522 - MEDIUM: ssl: convert CBS (BoringSSL api) usage to neutral code
13523 - MINOR: ssl: support Openssl 1.1.1 early callback for switchctx
13524 - MINOR: ssl: generated certificate is missing in switchctx early callback
13525 - MEDIUM: ssl: Handle early data with OpenSSL 1.1.1
13526 - BUILD: Makefile: disable -Wunused-label
13527 - MINOR: ssl/proto_http: Add keywords to take care of early data.
13528 - BUG/MINOR: lua: const attribute of a string is overridden
13529 - MINOR: ssl: Don't abuse ssl_options.
13530 - MINOR: update proxy-protocol-v2 #define
13531 - MINOR: merge ssl_sock_get calls for log and ppv2
13532 - MINOR: add ALPN information to send-proxy-v2
13533 - MEDIUM: h1: ensure that 1xx, 204 and 304 don't have a payload body
13534 - CLEANUP: shctx: get ride of the shsess_packet{_hdr} structures
13535 - MEDIUM: lists: list_for_each_entry{_safe}_from functions
13536 - REORG: shctx: move lock functions and struct
13537 - MEDIUM: shctx: allow the use of multiple shctx
13538 - REORG: shctx: move ssl functions to ssl_sock.c
13539 - MEDIUM: shctx: separate ssl and shctx
13540 - MINOR: shctx: rename lock functions
13541 - MINOR: h1: store the status code in the H1 message
13542 - BUG/MINOR: spoe: Don't compare engine name and SPOE scope when both are NULL
13543 - BUG/MINOR: spoa: Update pointer on the end of the frame when a reply is encoded
13544 - MINOR: action: Add trk_idx inline function
13545 - MINOR: action: Use trk_idx instead of tcp/http_trk_idx
13546 - MINOR: action: Add a function pointer in act_rule struct to check its validity
13547 - MINOR: action: Add function to check rules using an action ACT_ACTION_TRK_*
13548 - MINOR: action: Add a functions to check http capture rules
13549 - MINOR: action: Factorize checks on rules calling check_ptr if defined
13550 - MINOR: acl: Pass the ACLs as an explicit parameter of build_acl_cond
13551 - MEDIUM: spoe: Add support of ACLS to enable or disable sending of SPOE messages
13552 - MINOR: spoe: Check uniqness of SPOE engine names during config parsing
13553 - MEDIUM: spoe: Parse new "spoe-group" section in SPOE config file
13554 - MEDIUM: spoe/rules: Add "send-spoe-group" action for tcp/http rules
13555 - MINOR: spoe: Move message encoding in its own function
13556 - MINOR: spoe: Add a type to qualify the message list during encoding
13557 - MINOR: spoe: Add a generic function to encode a list of SPOE message
13558 - MEDIUM: spoe/rules: Process "send-spoe-group" action
13559 - BUG/MINOR: dns: Fix CLI keyword declaration
13560 - MAJOR: dns: Refactor the DNS code
13561 - BUG/MINOR: mailers: Fix a memory leak when email alerts are released
13562 - MEDIUM: mailers: Init alerts during conf parsing and refactor their processing
13563 - MINOR: mailers: Use pools to allocate email alerts and its tcpcheck_rules
13564 - MINOR: standard: Add memvprintf function
13565 - MINOR: log: Save alerts and warnings emitted during HAProxy startup
13566 - MINOR: cli: Add "show startup-logs" command
13567 - MINOR: startup: Extend the scope the MODE_STARTING flag
13568 - MINOR: threads: Prepare makefile to link with pthread
13569 - MINOR: threads: Add THREAD_LOCAL macro
13570 - MINOR: threads: Add atomic-ops and plock includes in import dir
13571 - MEDIUM: threads: Add hathreads header file
13572 - MINOR: threads: Add mechanism to register per-thread init/deinit functions
13573 - MINOR: threads: Add nbthread parameter
13574 - MEDIUM: threads: Adds a set of functions to handle sync-point
13575 - MAJOR: threads: Start threads to experiment multithreading
13576 - MINOR: threads: Define the sync-point inside run_poll_loop
13577 - MEDIUM: threads/buffers: Define and register per-thread init/deinit functions
13578 - MEDIUM: threads/chunks: Transform trash chunks in thread-local variables
13579 - MEDIUM: threads/time: Many global variables from time.h are now thread-local
13580 - MEDIUM: threads/logs: Make logs thread-safe
13581 - MEDIUM: threads/pool: Make pool thread-safe by locking all access to a pool
13582 - MAJOR: threads/fd: Make fd stuffs thread-safe
13583 - MINOR: threads/fd: Add a mask of threads allowed to process on each fd in fdtab array
13584 - MEDIUM: threads/fd: Initialize the process mask during the call to fd_insert
13585 - MINOR: threads/fd: Process cached events of FDs depending on the process mask
13586 - MINOR: threads/polling: pollers now handle FDs depending on the process mask
13587 - WIP: SQUASH WITH SYNC POINT
13588 - MAJOR: threads/task: handle multithread on task scheduler
13589 - MEDIUM: threads/signal: Add a lock to make signals thread-safe
13590 - MEDIUM: threads/listeners: Make listeners thread-safe
13591 - MEDIUM: threads/proxy: Add a lock per proxy and atomically update proxy vars
13592 - MEDIUM: threads/server: Make connection list (priv/idle/safe) thread-safe
13593 - MEDIUM: threads/server: Add a lock per server and atomically update server vars
13594 - MINOR: threads/server: Add a lock to deal with insert in updates_servers list
13595 - MEDIUM: threads/lb: Make LB algorithms (lb_*.c) thread-safe
13596 - MEDIUM: threads/stick-tables: handle multithreads on stick tables
13597 - MINOR: threads/sample: Change temp_smp into a thread local variable
13598 - MEDIUM: threads/http: Make http_capture_bad_message thread-safe
13599 - MINOR: threads/regex: Change Regex trash buffer into a thread local variable
13600 - MAJOR: threads/applet: Handle multithreading for applets
13601 - MAJOR: threads/peers: Make peers thread safe
13602 - MAJOR: threads/buffer: Make buffer wait queue thread safe
13603 - MEDIUM: threads/stream: Make streams list thread safe
13604 - MAJOR: threads/ssl: Make SSL part thread-safe
13605 - MEDIUM: threads/queue: Make queues thread-safe
13606 - MAJOR: threads/map: Make acls/maps thread safe
13607 - MEDIUM: threads/freq_ctr: Make the frequency counters thread-safe
13608 - MEDIUM: thread/vars: Make vars thread-safe
13609 - MEDIUM: threads/filters: Add init/deinit callback per thread
13610 - MINOR: threads/filters: Update trace filter to add _per_thread callbacks
13611 - MEDIUM: threads/compression: Make HTTP compression thread-safe
13612 - MEDIUM: threads/lua: Makes the jmpbuf and some other buffers local to the current thread.
13613 - MEDIUM: threads/lua: Add locks around the Lua execution parts.
13614 - MEDIUM: threads/lua: Ensure that the launched tasks runs on the same threads than me
13615 - MEDIUM: threads/lua: Cannot acces to the socket if we try to access from another thread.
13616 - MEDIUM: threads/xref: Convert xref function to a thread safe model
13617 - MEDIUM: threads/tasks: Add lock around notifications
13618 - MEDIUM: thread/spoe: Make the SPOE thread-safe
13619 - MEDIUM: thread/dns: Make DNS thread-safe
13620 - MINOR: threads: Add thread-map config parameter in the global section
13621 - MINOR: threads/checks: Add a lock to protect the pid list used by external checks
13622 - MINOR: threads/checks: Set the task process_mask when a check is executed
13623 - MINOR: threads/mailers: Add a lock to protect queues of email alerts
13624 - MEDIUM: threads/server: Use the server lock to protect health check and cli concurrency
13625 - MINOR: threads: Don't start when device a detection module is used
13626 - BUG/MEDIUM: threads: Run the poll loop on the main thread too
13627 - BUG/MINOR: threads: Add missing THREAD_LOCAL on static here and there
13628 - MAJOR: threads: Offically enable the threads support in HAProxy
13629 - BUG/MAJOR: threads/freq_ctr: fix lock on freq counters.
13630 - BUG/MAJOR: threads/time: Store the time deviation in an 64-bits integer
13631 - BUILD: stick-tables: silence an uninitialized variable warning
13632 - BUG/MINOR: dns: Fix SRV records with the new thread code.
13633 - MINOR: ssl: Remove the global allow-0rtt option.
13634 - CLEANUP: threads: replace the last few 1UL<<tid with tid_bit
13635 - CLEANUP: threads: rename process_mask to thread_mask
13636 - MINOR: h1: add a function to measure the trailers length
13637 - MINOR: threads: add a portable barrier for threads and non-threads
13638 - BUG/MAJOR: threads/freq_ctr: use a memory barrier to detect changes
13639 - BUG/MEDIUM: threads: Initialize the sync-point
13640 - MEDIUM: connection: start to introduce a mux layer between xprt and data
13641 - MINOR: connection: implement alpn registration of muxes
13642 - MINOR: mux: register the pass-through mux for any ALPN string
13643 - MEDIUM: session: use the ALPN token and proxy mode to select the mux
13644 - MINOR: connection: report the major HTTP version from the MUX for logging (fc_http_major)
13645 - MINOR: connection: introduce conn_stream
13646 - MINOR: mux: add more methods to mux_ops
13647 - MINOR: connection: introduce the conn_stream manipulation functions
13648 - MINOR: mux_pt: implement remaining mux_ops methods
13649 - MAJOR: connection : Split struct connection into struct connection and struct conn_stream.
13650 - MINOR: connection: make conn_stream users also check for per-stream error flag
13651 - MINOR: conn_stream: new shutr/w status flags
13652 - MINOR: conn_stream: modify cs_shut{r,w} API to pass the desired mode
13653 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
13654 - MINOR: connection: add cs_close() to close a conn_stream
13655 - MEDIUM: mux_pt: make cs_shutr() / cs_shutw() properly close the connection
13656 - MEDIUM: connection: replace conn_full_close() with cs_close()
13657 - MEDIUM: connection: make mux->detach() release the connection
13658 - MEDIUM: stream: do not forcefully close the client connection anymore
13659 - MEDIUM: checks: exclusively use cs_destroy() to release a connection
13660 - MEDIUM: connection: add a destroy callback
13661 - MINOR: session: release the listener with the session, not the stream
13662 - MEDIUM: session: make use of the connection's destroy callback
13663 - CONTRIB: hpack: implement a reverse huffman table generator for hpack
13664 - MINOR: hpack: implement the HPACK Huffman table decoder
13665 - MINOR: hpack: implement the header tables management
13666 - MINOR: hpack: implement the decoder
13667 - MEDIUM: hpack: implement basic hpack encoding
13668 - MINOR: h2: centralize all HTTP/2 protocol elements and constants
13669 - MINOR: h2: create a very minimalistic h2 mux
13670 - MINOR: h2: expose tune.h2.header-table-size to configure the table size
13671 - MINOR: h2: expose tune.h2.initial-window-size to configure the window size
13672 - MINOR: h2: expose tune.h2.max-concurrent-streams to limit the number of streams
13673 - MINOR: h2: create the h2c struct and allocate its pool
13674 - MINOR: h2: create the h2s struct and the associated pool
13675 - MINOR: h2: handle two extra stream states for errors
13676 - MINOR: h2: add a frame header descriptor for incoming frames
13677 - MEDIUM: h2: allocate and release the h2c context on connection init/end
13678 - MEDIUM: h2: implement basic recv/send/wake functions
13679 - MEDIUM: h2: dynamically allocate the demux buffer on Rx
13680 - MEDIUM: h2: implement the mux buffer allocator
13681 - MINOR: h2: add the connection and stream flags listing the causes for blocking
13682 - MINOR: h2: add function h2s_id() to report a stream's ID
13683 - MINOR: h2: small function to know when the mux is busy
13684 - MINOR: h2: new function h2c_error to mark an error on the connection
13685 - MINOR: h2: new function h2s_error() to mark an error on a stream
13686 - MINOR: h2: add h2_set_frame_size() to update the size in a binary frame
13687 - MINOR: h2: new function h2_peek_frame_hdr() to retrieve a new frame header
13688 - MINOR: h2: add a few functions to retrieve contents from a wrapping buffer
13689 - MINOR: h2: add stream lookup function based on the stream ID
13690 - MINOR: h2: create dummy idle and closed streams
13691 - MINOR: h2: add the function to create a new stream
13692 - MINOR: h2: update the {MUX,DEM}_{M,D}ALLOC flags on buffer availability
13693 - MEDIUM: h2: start to consider the H2_CF_{MUX,DEM}_* flags for polling
13694 - MINOR: h2: also terminate the connection on shutr
13695 - MEDIUM: h2: properly consider all conditions for end of connection
13696 - MEDIUM: h2: wake the connection up for send on pending streams
13697 - MEDIUM: h2: start to implement the frames processing loop
13698 - MINOR: h2: add a function to send a GOAWAY error frame
13699 - MINOR: h2: match the H2 connection preface on init
13700 - MEDIUM: h2: enable connection polling for send when a cs wants to emit
13701 - MEDIUM: h2: enable reading again on the connection if it was blocked on stream buffer full
13702 - MEDIUM: h2: process streams pending for sending
13703 - MINOR: h2: send a real SETTINGS frame based on the configuration
13704 - MEDIUM: h2: detect the presence of the first settings frame
13705 - MINOR: h2: create a stream parser for the demuxer
13706 - MINOR: h2: implement PING frames
13707 - MEDIUM: h2: decode SETTINGS frames and extract relevant settings
13708 - MINOR: h2: lookup the stream during demuxing
13709 - MEDIUM: h2: honor WINDOW_UPDATE frames
13710 - MINOR: h2: implement h2_send_rst_stream() to send RST_STREAM frames
13711 - MINOR: h2: handle CONTINUATION frames
13712 - MEDIUM: h2: partial implementation of h2_detach()
13713 - MEDIUM: h2: unblock a connection when its current stream detaches
13714 - MEDIUM: h2: basic processing of HEADERS frame
13715 - MEDIUM: h2: don't use trash to decode headers!
13716 - MEDIUM: h2: implement the response HEADERS frame to encode the H1 response
13717 - MEDIUM: h2: send the H1 response body as DATA frames
13718 - MEDIUM: h2: skip the response trailers if any
13719 - MEDIUM: h2: properly continue to parse header block when facing a 1xx response
13720 - MEDIUM: h2: send WINDOW_UPDATE frames for connection
13721 - MEDIUM: h2: handle request body in DATA frames
13722 - MINOR: h2: handle RST_STREAM frames
13723 - MEDIUM: h2: send DATA+ES or RST_STREAM on shutw/shutr
13724 - MINOR: h2: use a common function to signal some and all streams.
13725 - MEDIUM: h2: handle GOAWAY frames
13726 - MINOR: h2: centralize the check for the idle streams
13727 - MINOR: h2: centralize the check for the half-closed(remote) streams
13728 - MEDIUM: h2: silently ignore frames higher than last_id after GOAWAY
13729 - MINOR: h2: properly reject PUSH_PROMISE frames coming from the client
13730 - MEDIUM: h2: perform a graceful shutdown on "Connection: close"
13731 - MEDIUM: h2: send a GOAWAY frame when dealing with an empty response
13732 - MEDIUM: h2: apply a timeout to h2 connections
13733 - BUG/MEDIUM: h2: fix incorrect timeout handling on the connection
13734 - MEDIUM: shctx: forbid shctx to read more than expected
13735 - MEDIUM: cache: configuration parsing and initialization
13736 - MEDIUM: cache: store objects in cache
13737 - MEDIUM: cache: deliver objects from cache
13738
Willy Tarreauf08137c2017-10-22 10:13:45 +0200137392017/10/22 : 1.8-dev3
13740 - REORG: ssl: move defines and methodVersions table upper
13741 - MEDIUM: ssl: ctx_set_version/ssl_set_version func for methodVersions table
13742 - MINOR: ssl: support ssl-min-ver and ssl-max-ver with crt-list
13743 - MEDIUM: ssl: disable SSLv3 per default for bind
13744 - BUG/MAJOR: ssl: fix segfault on connection close using async engines.
13745 - BUG/MAJOR: ssl: buffer overflow using offloaded ciphering on async engine
13746 - BUG/MINOR: ssl: do not call directly the conn_fd_handler from async_fd_handler
13747 - BUG/MINOR: haproxy/cli : fix for solaris/illumos distros for CMSG* macros
13748 - BUG/MEDIUM: build without openssl broken
13749 - BUG/MINOR: warning: need_resend may be used uninitialized
13750 - BUG/MEDIUM: misplaced exit and wrong exit code
13751 - BUG/MINOR: Makefile: fix compile error with USE_LUA=1 in ubuntu16.04
13752 - BUILD: scripts: make publish-release support bare repositories
13753 - BUILD: scripts: add an automatic mode for publish-release
13754 - BUILD: scripts: add a "quiet" mode to publish-release
13755 - BUG/MAJOR: http: call manage_client_side_cookies() before erasing the buffer
13756 - BUG/MINOR: buffers: Fix bi/bo_contig_space to handle full buffers
13757 - CONTRIB: plug qdiscs: Plug queuing disciplines mini HOWTO.
13758 - BUG/MINOR: acls: Set the right refflag when patterns are loaded from a map
13759 - BUG/MINOR: ssl: Be sure that SSLv3 connection methods exist for openssl < 1.1.0
13760 - BUG/MINOR: http/filters: Be sure to wait if a filter loops in HTTP_MSG_ENDING
13761 - BUG/MEDIUM: peers: Peers CLOSE_WAIT issue.
13762 - BUG/MAJOR: server: Segfault after parsing server state file.
13763 - BUG/MEDIUM: unix: never unlink a unix socket from the file system
13764 - scripts: create-release pass -n to tail
13765 - SCRIPTS: create-release: enforce GIT_COMMITTER_{NAME|EMAIL} validity
13766 - BUG/MEDIUM: fix segfault when no argument to -x option
13767 - MINOR: warning on multiple -x
13768 - MINOR: mworker: don't copy -x argument anymore in copy_argv()
13769 - BUG/MEDIUM: mworker: don't reuse PIDs passed to the master
13770 - BUG/MINOR: Wrong peer task expiration handling during synchronization processing.
13771 - BUG/MINOR: cfgparse: Check if tune.http.maxhdr is in the range 1..32767
13772 - BUG/MINOR: log: pin the front connection when front ip/ports are logged
13773 - DOC: fix references to the section about the unix socket
13774 - BUG/MINOR: stream: flag TASK_WOKEN_RES not set if task in runqueue
13775 - MAJOR: task: task scheduler rework.
13776 - MINOR: task/stream: tasks related to a stream must be init by the caller.
13777 - MINOR: queue: Change pendconn_get_next_strm into private function
13778 - MINOR: backends: Change get_server_sh/get_server_uh into private function
13779 - MINOR: queue: Change pendconn_from_srv/pendconn_from_px into private functions
13780 - MEDIUM: stream: make stream_new() always set the target and analysers
13781 - MINOR: frontend: initialize HTTP layer after the debugging code
13782 - MINOR: connection: add a .get_alpn() method to xprt_ops
13783 - MINOR: ssl: add a get_alpn() method to ssl_sock
13784 - MINOR: frontend: retrieve the ALPN name when available
13785 - MINOR: frontend: report the connection's ALPN in the debug output
13786 - MINOR: stream: don't set backend's nor response analysers on SF_TUNNEL
13787 - MINOR: connection: send data before receiving
13788 - MAJOR: applet: applet scheduler rework.
13789 - BUG/MAJOR: frontend: don't dereference a null conn on outgoing connections
13790 - BUG/MAJOR: cli: fix custom io_release was crushed by NULL.
13791 - BUG/MAJOR: map: fix segfault during 'show map/acl' on cli.
13792 - BUG/MAJOR: compression: Be sure to release the compression state in all cases
13793 - MINOR: compression: Use a memory pool to allocate compression states
13794 - BUG/MAJOR: applet: fix a freeze if data is immedately forwarded.
13795 - DOC: fix references to the section about time format.
13796 - BUG/MEDIUM: map/acl: fix unwanted flags inheritance.
13797 - BUG/MAJOR: http: fix buffer overflow on loguri buffer.
13798 - MINOR: ssl: compare server certificate names to the SNI on outgoing connections
13799 - BUG/MINOR: stream: Don't forget to remove CF_WAKE_ONCE flag on response channel
13800 - BUG/MINOR: http: Don't reset the transaction if there are still data to send
13801 - BUG/MEDIUM: filters: Be sure to call flt_end_analyze for both channels
13802 - MINOR: peers: Add additional information to stick-table definition messages.
13803 - BUG/MINOR: http: properly handle all 1xx informational responses
13804 - OPTIM: ssl: don't consider a small ssl_read() as an indication of end of buffer
13805 - BUG/MINOR: peers: peer synchronization issue (with several peers sections).
13806 - CLEANUP: hdr_idx: make some function arguments const where possible
13807 - BUG/MINOR: Prevent a use-after-free on error scenario on option "-x".
13808 - BUG/MINOR: lua: In error case, the safe mode is not removed
13809 - BUG/MINOR: lua: executes the function destroying the Lua session in safe mode
13810 - BUG/MAJOR: lua/socket: resources not detroyed when the socket is aborted
13811 - BUG/MEDIUM: lua: bad memory access
13812 - BUG/MINOR: Lua: variable already initialized
13813 - DOC: update CONTRIBUTING regarding optional parts and message format
13814 - DOC: update the list of OpenSSL versions in the README
13815 - BUG/MINOR: http: Set the response error state in http_sync_res_state
13816 - MINOR: http: Reorder/rewrite checks in http_resync_states
13817 - MINOR: http: Switch requests/responses in TUNNEL mode only by checking txn flags
13818 - BUG/MEDIUM: http: Switch HTTP responses in TUNNEL mode when body length is undefined
13819 - MINOR: http: Rely on analyzers mask to end processing in forward_body functions
13820 - BUG/MINOR: http: Fix bug introduced in previous patch in http_resync_states
13821 - BUG/MINOR: contrib/modsecurity: BSD build fix
13822 - BUG/MINOR: contrib/mod_defender: build fix
13823 - BUG/MINOR: ssl: remove haproxy SSLv3 support when ssl lib have no SSLv3
13824 - MINOR: ssl: remove an unecessary SSL_OP_NO_* dependancy
13825 - BUILD: ssl: fix compatibility with openssl without TLSEXT_signature_*
13826 - MINOR: tools: add a portable timegm() alternative
13827 - BUILD: lua: replace timegm() with my_timegm() to fix build on Solaris 10
13828 - DOC: Updated 51Degrees git URL to point to a stable version.
13829 - BUG/MAJOR: http: Fix possible infinity loop in http_sync_(req|res)_state
13830 - MINOR: memory: remove macros
13831 - BUG/MINOR: lua: Fix Server.get_addr() port values
13832 - BUG/MINOR: lua: Correctly use INET6_ADDRSTRLEN in Server.get_addr()
13833 - MINOR: samples: Handle the type SMP_T_METH when we duplicate a sample in smp_dup
13834 - MINOR: samples: Handle the type SMP_T_METH in smp_is_safe and smp_is_rw
13835 - MINOR: samples: Don't allocate memory for SMP_T_METH sample when method is known
13836 - BUG/MINOR: lua: always detach the tcp/http tasks before freeing them
13837 - MINOR: task: always preinitialize the task's timeout in task_init()
13838 - CLEANUP: task: remove all initializations to TICK_ETERNITY after task_new()
13839 - BUG/MAJOR: lua: properly dequeue hlua_applet_wakeup() for new scheduler
13840 - MINOR: lua: Add proxy as member of proxy object.
13841 - DOC: lua: Proxy class doc update
13842 - MINOR: lua: Add lists of frontends and backends
13843 - BUG/MINOR: ssl: Fix check against SNI during server certificate verification
13844 - BUG/MINOR: ssl: make use of the name in SNI before verifyhost
13845 - MINOR: ssl: add a new error codes for wrong server certificates
13846 - BUG/MEDIUM: stream: don't retry SSL connections which fail the SNI name check
13847 - MINOR: ssl: add "no-ca-names" parameter for bind
13848 - BUG/MINOR: lua: Fix bitwise logic for hlua_server_check_* functions.
13849 - DOC: fix alphabetical order of "show commands" in management.txt
13850 - MINOR: listener: add a function to return a listener's state as a string
13851 - MINOR: cli: add a new "show fd" command
13852 - BUG/MEDIUM: ssl: Fix regression about certificates generation
13853 - MINOR: Add server port field to server state file.
13854 - MINOR: ssl: allow to start without certificate if strict-sni is set
13855 - MINOR: dns: Cache previous DNS answers.
13856 - MINOR: obj: Add a new type of object, OBJ_TYPE_SRVRQ.
13857 - Add a few functions to do unaligned access.
13858 - MINOR: dns: Handle SRV records.
13859 - MINOR: check: Fix checks when using SRV records.
13860 - MINOR: doc: Document SRV label usage.
13861 - BUILD/MINOR: cli: shut a minor gcc warning in "show fd"
13862 - BUILD: ssl: replace SSL_CTX_get0_privatekey for openssl < 1.0.2
13863 - BUILD/MINOR: build without openssl still broken
13864 - BUG/MAJOR: stream: in stream_free(), close the front endpoint and not the origin
13865 - CLEANUP: raw_sock: Use a better name for the constructor than __ssl_sock_deinit()
13866 - MINOR: init: Fix CPU affinity setting on FreeBSD.
13867 - MINOR: dns: Update analysis of TRUNCATED response for SRV records
13868 - MINOR: dns: update record dname matching for SRV query types
13869 - MINOR: dns: update dns response buffer reading pointer due to SRV record
13870 - MINOR: dns: duplicate entries in resolution wait queue for SRV records
13871 - MINOR: dns: make debugging function dump_dns_config() compatible with SRV records
13872 - MINOR: dns: ability to use a SRV resolution for multiple backends
13873 - MINOR: dns: enable caching of responses for server set by a SRV record
13874 - MINOR: dns: new dns record type (RTYPE) for OPT
13875 - MINOR: dns: enabled edns0 extension and make accpeted payload size tunable
13876 - MINOR: dns: default "hold obsolete" timeout set to 0
13877 - MINOR: chunks: add chunk_memcpy() and chunk_memcat()
13878 - MINOR: session: add a streams field to the session struct
13879 - MINOR: stream: link the stream to its session
13880 - MEDIUM: session: do not free a session until no stream references it
13881 - MINOR: ist: implement very simple indirect strings
13882 - TESTS: ist: add a test file for the functions
13883 - MINOR: http: export some of the HTTP parser macros
13884 - BUG/MINOR: Wrong type used as argument for spoe_decode_buffer().
13885 - BUG/MINOR: dns: server set by SRV records stay in "no resolution" status
13886 - MINOR: dns: Maximum DNS udp payload set to 8192
13887 - MINOR: dns: automatic reduction of DNS accpeted payload size
13888 - MINOR: dns: make SRV record processing more verbose
13889 - CLEANUP: dns: remove duplicated code in dns_resolve_recv()
13890 - CLEANUP: dns: remove duplicated code in dns_validate_dns_response()
13891 - BUG/MINOR: dns: wrong resolution interval lead to 100% CPU
13892 - BUG/MEDIUM: dns: fix accepted_payload_size parser to avoid integer overflow
13893 - BUG/MAJOR: lua: fix the impact of the scheduler changes again
13894 - BUG/MEDIUM: lua: HTTP services must take care of body-less status codes
13895 - MINOR: lua: properly process the contents of the content-length field
13896 - BUG/MEDIUM: stream: properly set the required HTTP analysers on use-service
13897 - OPTIM: lua: don't use expensive functions to parse headers in the HTTP applet
13898 - OPTIM: lua: don't add "Connection: close" on the response
13899 - REORG/MEDIUM: connection: introduce the notion of connection handle
13900 - BUG/MINOR: stream-int: don't check the CO_FL_CURR_WR_ENA flag
13901 - MEDIUM: connection: get rid of data->init() which was not for data
13902 - MEDIUM: stream: make stream_new() allocate its own task
13903 - CLEANUP: listener: remove the unused handler field
13904 - MEDIUM: session: add a pointer to a struct task in the session
13905 - MINOR: stream: provide a new stream creation function for connections
13906 - MEDIUM: connection: remove useless flag CO_FL_DATA_RD_SH
13907 - CLEANUP: connection: remove the unused conn_sock_shutw_pending()
13908 - MEDIUM: connection: remove useless flag CO_FL_DATA_WR_SH
13909 - DOC: add CLI info on privilege levels
13910 - DOC: Refer to Mozilla TLS info / config generator
13911 - MINOR: ssl: remove duplicate ssl_methods in struct bind_conf
13912 - BUG/MEDIUM: http: Fix a regression bug when a HTTP response is in TUNNEL mode
13913 - DOC: Add note about "* " prefix in CSV stats
13914 - CLEANUP: memory: Remove unused function pool_destroy
13915 - MINOR: listeners: Change listener_full and limit_listener into private functions
13916 - MINOR: listeners: Change enable_listener and disable_listener into private functions
13917 - MINOR: fd: Don't forget to reset fdtab[fd].update when a fd is added/removed
13918 - MINOR: fd: Set owner and iocb field before inserting a new fd in the fdtab
13919 - MINOR: backends: Make get_server_* functions explicitly static
13920 - MINOR: applet: Check applets_active_queue before processing applets queue
13921 - MINOR: chunks: Use dedicated function to init/deinit trash buffers
13922 - MEDIUM: chunks: Realloc trash buffers only after the config is parsed and checked
13923 - MINOR: logs: Use dedicated function to init/deinit log buffers
13924 - MINOR: logs: Realloc log buffers only after the config is parsed and checked
13925 - MINOR: buffers: Move swap_buffer into buffer.c and add deinit_buffer function
13926 - MINOR: stick-tables: Make static_table_key a struct variable instead of a pointer
13927 - MINOR: http: Use a trash chunk to store decoded string of the HTTP auth header
13928 - MINOR: fd: Add fd_active function
13929 - MINOR: fd: Use inlined functions to check fd state in fd_*_send/recv functions
13930 - MINOR: fd: Move (de)allocation of fdtab and fdinfo in (de)init_pollers
13931 - MINOR: freq_ctr: Return the new value after an update
13932 - MEDIUM: check: server states and weight propagation re-work
13933 - BUG/MEDIUM: epoll: ensure we always consider HUP and ERR
13934 - MINOR: fd: Add fd_update_events function
13935 - MINOR: polling: Use fd_update_events to update events seen for a fd
13936 - BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file
13937 - Revert "BUG/MINOR: server: Remove FQDN requirement for using init-addr and state file"
13938 - MINOR: ssl: rework smp_fetch_ssl_fc_cl_str without internal ssl use
13939 - BUG/MEDIUM: http: Close streams for connections closed before a redirect
13940 - BUG/MINOR: Lua: The socket may be destroyed when we try to access.
13941 - MINOR: xref: Add a new xref system
13942 - MEDIUM: xref/lua: Use xref for referencing cosocket relation between stream and lua
13943 - MINOR: tasks: Move Lua notification from Lua to tasks
13944 - MINOR: net_helper: Inline functions meant to be inlined.
13945 - MINOR: cli: add socket commands and config to prepend informational messages with severity
13946 - MINOR: add severity information to cli feedback messages
13947 - BUILD: Makefile: add a function to detect support by the compiler of certain options
13948 - BUILD: Makefile: shut certain gcc/clang stupid warnings
13949 - BUILD: Makefile: improve detection of support for compiler warnings
13950 - MINOR: peers: don't reference the incoming listener on outgoing connections
13951 - MINOR: frontend: don't retrieve ALPN on the critical path
13952 - MINOR: protocols: always pass a "port" argument to the listener creation
13953 - MINOR: protocols: register the ->add function and stop calling them directly
13954 - MINOR: unix: remove the now unused proto_uxst.h file
13955 - MINOR: listeners: new function create_listeners
13956 - MINOR: listeners: make listeners count consistent with reality
13957 - MEDIUM: session: take care of incrementing/decrementing jobs
13958 - MINOR: listener: new function listener_release
13959 - MINOR: session: small cleanup of conn_complete_session()
13960 - MEDIUM: session: factor out duplicated code for conn_complete_session
13961 - MEDIUM: session: count the frontend's connections at a single place
13962 - BUG/MEDIUM: compression: Fix check on txn in smp_fetch_res_comp_algo
13963 - BUG/MINOR: compression: Check response headers before http-response rules eval
13964 - BUG/MINOR: spoe: Don't rely on SPOE ctx in debug message when its creation failed
13965 - BUG/MINOR: dns: Fix check on nameserver in snr_resolution_cb
13966 - MINOR: ssl: Remove useless checks on bind_conf or bind_conf->is_ssl
13967 - BUG/MINOR: contrib/mod_defender: close the va_list argp before return
13968 - BUG/MINOR: contrib/modsecurity: close the va_list ap before return
13969 - MINOR: tools: make my_htonll() more efficient on x86_64
13970 - MINOR: buffer: add b_del() to delete a number of characters
13971 - MINOR: buffer: add b_end() and b_to_end()
13972 - MINOR: net_helper: add functions to read from vectors
13973 - MINOR: net_helper: add write functions
13974 - MINOR: net_helper: add 64-bit read/write functions
13975 - MINOR: connection: adjust CO_FL_NOTIFY_DATA after removal of flags
13976 - MINOR: ist: add a macro to ease const array initialization
13977 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server
13978 - BUG/MEDIUM: server: unwanted behavior leaving maintenance mode on tracked stopping server (take2)
13979 - BUG/MINOR: log: fixing small memory leak in error code path.
13980 - BUG/MINOR: contrib/halog: fixing small memory leak
13981 - BUG/MEDIUM: tcp/http: set-dst-port action broken
13982 - CLEANUUP: checks: don't set conn->handle.fd to -1
13983 - BUG/MEDIUM: tcp-check: properly indicate polling state before performing I/O
13984 - BUG/MINOR: tcp-check: don't quit with pending data in the send buffer
13985 - BUG/MEDIUM: tcp-check: don't call tcpcheck_main() from the I/O handlers!
13986 - BUG/MINOR: unix: properly check for octal digits in the "mode" argument
13987 - MINOR: checks: make chk_report_conn_err() take a check, not a connection
13988 - CLEANUP: checks: remove misleading comments and statuses for external process
13989 - CLEANUP: checks: don't report report the fork() error twice
13990 - CLEANUP: checks: do not allocate a connection for process checks
13991 - TESTS: checks: add a simple test config for external checks
13992 - BUG/MINOR: tcp-check: don't initialize then break a connection starting with a comment
13993 - TESTS: checks: add a simple test config for tcp-checks
13994 - MINOR: tcp-check: make tcpcheck_main() take a check, not a connection
13995 - MINOR: checks: don't create then kill a dummy connection before tcp-checks
13996 - MEDIUM: checks: make tcpcheck_main() indicate if it recycled a connection
13997 - MEDIUM: checks: do not allocate a permanent connection anymore
13998 - BUG/MEDIUM: cli: fix "show fd" crash when dumping closed FDs
13999 - BUG/MEDIUM: http: Return an error when url_dec sample converter failed
14000 - BUG/MAJOR: stream-int: don't re-arm recv if send fails
14001 - BUILD/MINOR: 51d: fix warning when building with 51Degrees release version 3.2.12.12
14002 - DOC: 51d: add 51Degrees git URL that points to release version 3.2.12.12
14003 - DOC: 51d: Updated git URL and instructions for getting Hash Trie data files.
14004 - MINOR: compiler: restore the likely() wrapper for gcc 5.x
14005 - MINOR: session: remove the list of streams from struct session
14006 - DOC: fix some typos
14007 - MINOR: server: add the srv_queue() sample fetch method
14008 - MINOR: payload: add new sample fetch functions to process distcc protocol
14009 - MAJOR: servers: propagate server status changes asynchronously.
14010 - BUG/MEDIUM: ssl: fix OCSP expiry calculation
14011 - BUG/MINOR: stream-int: don't set MSG_MORE on SHUTW_NOW without AUTO_CLOSE
14012 - MINOR: server: Handle weight increase in consistent hash.
14013 - MINOR: checks: Add a new keyword to specify a SNI when doing SSL checks.
14014 - BUG/MINOR: tools: fix my_htonll() on x86_64
14015 - BUG/MINOR: stats: Clear a bit more counters with in cli_parse_clear_counters().
14016 - BUG/MAJOR: lua: scheduled task is freezing.
14017 - MINOR: buffer: add bo_del() to delete a number of characters from output
14018 - MINOR: buffer: add a function to match against string patterns
14019 - MINOR: buffer: add two functions to inject data into buffers
14020 - MINOR: buffer: add buffer_space_wraps()
14021 - REORG: channel: finally rename the last bi_* / bo_* functions
14022 - MINOR: buffer: add bo_getblk() and bo_getblk_nc()
14023 - MINOR: channel: make use of bo_getblk{,_nc} for their channel equivalents
14024 - MINOR: channel: make the channel be a const in all {ci,co}_get* functions
14025 - MINOR: ist: add ist0() to add a trailing zero to a string.
14026 - BUG/MEDIUM: log: check result details truncated.
14027 - MINOR: buffer: make bo_getblk_nc() not return 2 for a full buffer
14028 - REORG: http: move some very http1-specific parts to h1.{c,h}
14029 - REORG: http: move the HTTP/1 chunk parser to h1.{c,h}
14030 - REORG: http: move the HTTP/1 header block parser to h1.c
14031 - MEDIUM: http: make the chunk size parser only depend on the buffer
14032 - MEDIUM: http: make the chunk crlf parser only depend on the buffer
14033 - MINOR: h1: add struct h1m for basic HTTP/1 messages
14034 - MINOR: http: add very simple header management based on double strings
14035 - MEDIUM: h1: reimplement the http/1 response parser for the gateway
14036 - REORG: connection: rename CO_FL_DATA_* -> CO_FL_XPRT_*
14037 - MEDIUM: connection: make conn_sock_shutw() aware of lingering
14038 - MINOR: connection: ensure conn_ctrl_close() also resets the fd
14039 - MINOR: connection: add conn_stop_tracking() to disable tracking
14040 - MINOR: tcp: use conn_full_close() instead of conn_force_close()
14041 - MINOR: unix: use conn_full_close() instead of conn_force_close()
14042 - MINOR: checks: use conn_full_close() instead of conn_force_close()
14043 - MINOR: session: use conn_full_close() instead of conn_force_close()
14044 - MINOR: stream: use conn_full_close() instead of conn_force_close()
14045 - MINOR: stream: use conn_full_close() instead of conn_force_close()
14046 - MINOR: backend: use conn_full_close() instead of conn_force_close()
14047 - MINOR: stream-int: use conn_full_close() instead of conn_force_close()
14048 - MINOR: connection: remove conn_force_close()
14049 - BUG/MINOR: ssl: ocsp response with 'revoked' status is correct
14050
Willy Tarreauf57a29a2017-06-02 15:59:51 +0200140512017/06/02 : 1.8-dev2
14052 - CLEANUP: server: moving netinet/tcp.h inclusion
14053 - DOC: changed "block"(deprecated) examples to http-request deny
14054 - DOC: add few comments to examples.
14055 - DOC: update sample code for PROXY protocol
14056 - DOC: mention lighttpd 1.4.46 implements PROXY
14057 - MINOR server: Restrict dynamic cookie check to the same proxy.
14058 - DOC: stick-table is available in frontend sections
14059 - BUG/MINOR: server : no transparent proxy for DragonflyBSD
14060 - BUILD/MINOR: stats: remove unexpected argument to stats_dump_json_header()
14061 - BUILD/MINOR: tools: fix build warning in debug_hexdump()
14062 - BUG/MINOR: dns: Wrong address family used when creating IPv6 sockets.
14063 - BUG/MINOR: config: missing goto out after parsing an incorrect ACL character
14064 - BUG/MINOR: arg: don't try to add an argument on failed memory allocation
14065 - MEDIUM: server: Inherit CLI weight changes and agent-check weight responses
14066 - BUG/MEDIUM: arg: ensure that we properly unlink unresolved arguments on error
14067 - BUG/MEDIUM: acl: don't free unresolved args in prune_acl_expr()
14068 - BUG/MEDIUM: servers: unbreak server weight propagation
14069 - MINOR: lua: ensure the memory allocator is used all the time
14070 - MINOR: cli: Add a command to send listening sockets.
14071 - MINOR: global: Add an option to get the old listening sockets.
14072 - MINOR: tcp: When binding socket, attempt to reuse one from the old proc.
14073 - MINOR: doc: document the -x flag
14074 - MINOR: proxy: Don't close FDs if not our proxy.
14075 - MINOR: socket transfer: Set a timeout on the socket.
14076 - MINOR: systemd wrapper: add support for passing the -x option.
14077 - BUG/MINOR: server: Fix a wrong error message during 'usesrc' keyword parsing.
14078 - BUG/MAJOR: Broken parsing for valid keywords provided after 'source' setting.
14079 - CLEANUP: logs: typo: simgle => single
14080 - BUG/MEDIUM: acl: proprely release unused args in prune_acl_expr()
14081 - MEDIUM: config: don't check config validity when there are fatal errors
14082 - BUG/MAJOR: Use -fwrapv.
14083 - BUG/MINOR: server: don't use "proxy" when px is really meant.
14084 - BUG/MEDIUM: http: Drop the connection establishment when a redirect is performed
14085 - BUG/MINOR: server: missing default server 'resolvers' setting duplication.
14086 - MINOR: server: Extract the code responsible of copying default-server settings.
14087 - MINOR: server: Extract the code which finalizes server initializations after 'server' lines parsing.
14088 - MINOR: server: Add 'server-template' new keyword supported in backend sections.
14089 - MINOR: server: Add server_template_init() function to initialize servers from a templates.
14090 - DOC: Add documentation for new "server-template" keyword.
14091 - DOC: add layer 4 links/cross reference to "block" keyword.
14092 - DOC: errloc/errorloc302/errorloc303 missing status codes.
14093 - BUG/MEDIUM: lua: memory leak
14094 - CLEANUP: lua: remove test
14095 - BUG/MINOR: hash-balance-factor isn't effective in certain circumstances
14096 - BUG/MINOR: change header-declared function to static inline
14097 - REORG: spoe: move spoe_encode_varint / spoe_decode_varint from spoe to common
14098 - MINOR: Add binary encoding request header sample fetch
14099 - MINOR: proto-http: Add sample fetch wich returns all HTTP headers
14100 - MINOR: Add ModSecurity wrapper as contrib
14101 - BUG/MINOR: ssl: fix warnings about methods for opensslv1.1.
14102 - DOC: update RFC references
14103 - CONTRIB: tcploop: add action "X" to execute a command
14104 - MINOR: server: cli: Add server FQDNs to server-state file and stats socket.
14105 - BUG/MINOR: contrib/mod_security: fix build on FreeBSD
14106 - BUG/MINOR: checks: don't send proxy protocol with agent checks
14107 - MINOR: ssl: add prefer-client-ciphers
14108 - MEDIUM: ssl: revert ssl/tls version settings relative to default-server.
14109 - MEDIUM: ssl: ssl_methods implementation is reworked and factored for min/max tlsxx
14110 - MEDIUM: ssl: calculate the real min/max TLS version and find holes
14111 - MINOR: ssl: support TLSv1.3 for bind and server
14112 - MINOR: ssl: show methods supported by openssl
14113 - MEDIUM: ssl: add ssl-min-ver and ssl-max-ver parameters for bind and server
14114 - MEDIUM: ssl: ssl-min-ver and ssl-max-ver compatibility.
14115 - CLEANUP: retire obsoleted USE_GETSOCKNAME build option
14116 - BUG/MAJOR: dns: Broken kqueue events handling (BSD systems).
14117 - MINOR: sample: Add b64dec sample converter
14118 - BUG/MEDIUM: lua: segfault if a converter or a sample doesn't return anything
14119 - MINOR: cli: add ACCESS_LVL_MASK to store the access level
14120 - MINOR: cli: add 'expose-fd listeners' to pass listeners FDs
14121 - MEDIUM: proxy: zombify proxies only when the expose-fd socket is bound
14122 - MEDIUM: ssl: add basic support for OpenSSL crypto engine
14123 - MAJOR: ssl: add openssl async mode support
14124 - MEDIUM: ssl: handle multiple async engines
14125 - MINOR: boringssl: basic support for OCSP Stapling
14126 - MEDIUM: mworker: replace systemd mode by master worker mode
14127 - MEDIUM: mworker: handle reload and signals
14128 - MEDIUM: mworker: wait mode on reload failure
14129 - MEDIUM: mworker: try to guess the next stats socket to use with -x
14130 - MEDIUM: mworker: exit-on-failure option
14131 - MEDIUM: mworker: workers exit when the master leaves
14132 - DOC: add documentation for the master-worker mode
14133 - MEDIUM: systemd: Type=forking in unit file
14134 - MAJOR: systemd-wrapper: get rid of the wrapper
14135 - MINOR: log: Add logurilen tunable.
14136 - CLEANUP: server.c: missing prototype of srv_free_dns_resolution
14137 - MINOR: dns: smallest DNS fqdn size
14138 - MINOR: dns: functions to manage memory for a DNS resolution structure
14139 - MINOR: dns: parse_server() now uses srv_alloc_dns_resolution()
14140 - REORG: dns: dns_option structure, storage of hostname_dn
14141 - MINOR: dns: new snr_check_ip_callback function
14142 - MAJOR: dns: save a copy of the DNS response in struct resolution
14143 - MINOR: dns: implement a LRU cache for DNS resolutions
14144 - MINOR: dns: make 'ancount' field to match the number of saved records
14145 - MINOR: dns: introduce roundrobin into the internal cache (WIP)
14146 - MAJOR/REORG: dns: DNS resolution task and requester queues
14147 - BUILD: ssl: fix build with OPENSSL_NO_ENGINE
14148 - MINOR: Add Mod Defender integration as contrib
14149 - CLEANUP: str2mask return code comment: non-zero -> zero.
14150 - MINOR: tools: make debug_hexdump() use a const char for the string
14151 - MINOR: tools: make debug_hexdump() take a string prefix
14152 - CLEANUP: connection: remove unused CO_FL_WAIT_DATA
14153
Willy Tarreau7b677262017-04-03 09:27:49 +0200141542017/04/03 : 1.8-dev1
14155 - BUG/MEDIUM: proxy: return "none" and "unknown" for unknown LB algos
14156 - BUG/MINOR: stats: make field_str() return an empty string on NULL
14157 - DOC: Spelling fixes
14158 - BUG/MEDIUM: http: Fix tunnel mode when the CONNECT method is used
14159 - BUG/MINOR: http: Keep the same behavior between 1.6 and 1.7 for tunneled txn
14160 - BUG/MINOR: filters: Protect args in macros HAS_DATA_FILTERS and IS_DATA_FILTER
14161 - BUG/MINOR: filters: Invert evaluation order of HTTP_XFER_BODY and XFER_DATA analyzers
14162 - BUG/MINOR: http: Call XFER_DATA analyzer when HTTP txn is switched in tunnel mode
14163 - BUG/MAJOR: stream: fix session abort on resource shortage
14164 - OPTIM: stream-int: don't disable polling anymore on DONT_READ
14165 - BUG/MINOR: cli: allow the backslash to be escaped on the CLI
14166 - BUG/MEDIUM: cli: fix "show stat resolvers" and "show tls-keys"
14167 - DOC: Fix map table's format
14168 - DOC: Added 51Degrees conv and fetch functions to documentation.
14169 - BUG/MINOR: http: don't send an extra CRLF after a Set-Cookie in a redirect
14170 - DOC: mention that req_tot is for both frontends and backends
14171 - BUG/MEDIUM: variables: some variable name can hide another ones
14172 - MINOR: lua: Allow argument for actions
14173 - BUILD: rearrange target files by build time
14174 - CLEANUP: hlua: just indent functions
14175 - MINOR: lua: give HAProxy variable access to the applets
14176 - BUG/MINOR: stats: fix be/sessions/max output in html stats
14177 - MINOR: proxy: Add fe_name/be_name fetchers next to existing fe_id/be_id
14178 - DOC: lua: Documentation about some entry missing
14179 - DOC: lua: Add documentation about variable manipulation from applet
14180 - MINOR: Do not forward the header "Expect: 100-continue" when the option http-buffer-request is set
14181 - DOC: Add undocumented argument of the trace filter
14182 - DOC: Fix some typo in SPOE documentation
14183 - MINOR: cli: Remove useless call to bi_putchk
14184 - BUG/MINOR: cli: be sure to always warn the cli applet when input buffer is full
14185 - MINOR: applet: Count number of (active) applets
14186 - MINOR: task: Rename run_queue and run_queue_cur counters
14187 - BUG/MEDIUM: stream: Save unprocessed events for a stream
14188 - BUG/MAJOR: Fix how the list of entities waiting for a buffer is handled
14189 - BUILD/MEDIUM: Fixing the build using LibreSSL
14190 - BUG/MEDIUM: lua: In some case, the return of sample-fetches is ignored (2)
14191 - SCRIPTS: git-show-backports: fix a harmless typo
14192 - SCRIPTS: git-show-backports: add -H to use the hash of the commit message
14193 - BUG/MINOR: stream-int: automatically release SI_FL_WAIT_DATA on SHUTW_NOW
14194 - CLEANUP: applet/lua: create a dedicated ->fcn entry in hlua_cli context
14195 - CLEANUP: applet/table: add an "action" entry in ->table context
14196 - CLEANUP: applet: remove the now unused appctx->private field
14197 - DOC: lua: documentation about time parser functions
14198 - DOC: lua: improve links
14199 - DOC: lua: section declared twice
14200 - MEDIUM: cli: 'show cli sockets' list the CLI sockets
14201 - BUG/MINOR: cli: "show cli sockets" wouldn't list all processes
14202 - BUG/MINOR: cli: "show cli sockets" would always report process 64
14203 - CLEANUP: lua: rename one of the lua appctx union
14204 - BUG/MINOR: lua/cli: bad error message
14205 - MEDIUM: lua: use memory pool for hlua struct in applets
14206 - MINOR: lua/signals: Remove Lua part from signals.
14207 - DOC: cli: show cli sockets
14208 - MINOR: cli: automatically enable a CLI I/O handler when there's no parser
14209 - CLEANUP: memory: remove the now unused cli_parse_show_pools() function
14210 - CLEANUP: applet: group all CLI contexts together
14211 - CLEANUP: stats: move a misplaced stats context initialization
14212 - MINOR: cli: add two general purpose pointers and integers in the CLI struct
14213 - MINOR: appctx/cli: remove the cli_socket entry from the appctx union
14214 - MINOR: appctx/cli: remove the env entry from the appctx union
14215 - MINOR: appctx/cli: remove the "be" entry from the appctx union
14216 - MINOR: appctx/cli: remove the "dns" entry from the appctx union
14217 - MINOR: appctx/cli: remove the "server_state" entry from the appctx union
14218 - MINOR: appctx/cli: remove the "tlskeys" entry from the appctx union
14219 - CONTRIB: tcploop: add limits.h to fix build issue with some compilers
14220 - MINOR/DOC: lua: just precise one thing
14221 - DOC: fix small typo in fe_id (backend instead of frontend)
14222 - BUG/MINOR: Fix the sending function in Lua's cosocket
14223 - BUG/MINOR: lua: memory leak executing tasks
14224 - BUG/MINOR: lua: bad return code
14225 - BUG/MINOR: lua: memleak when Lua/cli fails
14226 - MEDIUM: lua: remove Lua struct from session, and allocate it with memory pools
14227 - CLEANUP: haproxy: statify unexported functions
14228 - MINOR: haproxy: add a registration for build options
14229 - CLEANUP: wurfl: use the build options list to report it
14230 - CLEANUP: 51d: use the build options list to report it
14231 - CLEANUP: da: use the build options list to report it
14232 - CLEANUP: namespaces: use the build options list to report it
14233 - CLEANUP: tcp: use the build options list to report transparent modes
14234 - CLEANUP: lua: use the build options list to report it
14235 - CLEANUP: regex: use the build options list to report the regex type
14236 - CLEANUP: ssl: use the build options list to report the SSL details
14237 - CLEANUP: compression: use the build options list to report the algos
14238 - CLEANUP: auth: use the build options list to report its support
14239 - MINOR: haproxy: add a registration for post-check functions
14240 - CLEANUP: checks: make use of the post-init registration to start checks
14241 - CLEANUP: filters: use the function registration to initialize all proxies
14242 - CLEANUP: wurfl: make use of the late init registration
14243 - CLEANUP: 51d: make use of the late init registration
14244 - CLEANUP: da: make use of the late init registration code
14245 - MINOR: haproxy: add a registration for post-deinit functions
14246 - CLEANUP: wurfl: register the deinit function via the dedicated list
14247 - CLEANUP: 51d: register the deinitialization function
14248 - CLEANUP: da: register the deinitialization function
14249 - CLEANUP: wurfl: move global settings out of the global section
14250 - CLEANUP: 51d: move global settings out of the global section
14251 - CLEANUP: da: move global settings out of the global section
14252 - MINOR: cfgparse: add two new functions to check arguments count
14253 - MINOR: cfgparse: move parsing of "ca-base" and "crt-base" to ssl_sock
14254 - MEDIUM: cfgparse: move all tune.ssl.* keywords to ssl_sock
14255 - MEDIUM: cfgparse: move maxsslconn parsing to ssl_sock
14256 - MINOR: cfgparse: move parsing of ssl-default-{bind,server}-ciphers to ssl_sock
14257 - MEDIUM: cfgparse: move ssl-dh-param-file parsing to ssl_sock
14258 - MEDIUM: compression: move the zlib-specific stuff from global.h to compression.c
14259 - BUG/MEDIUM: ssl: properly reset the reused_sess during a forced handshake
14260 - BUG/MEDIUM: ssl: avoid double free when releasing bind_confs
14261 - BUG/MINOR: stats: fix be/sessions/current out in typed stats
14262 - MINOR: tcp-rules: check that the listener exists before updating its counters
14263 - MEDIUM: spoe: don't create a dummy listener for outgoing connections
14264 - MINOR: listener: move the transport layer pointer to the bind_conf
14265 - MEDIUM: move listener->frontend to bind_conf->frontend
14266 - MEDIUM: ssl: remote the proxy argument from most functions
14267 - MINOR: connection: add a new prepare_bind_conf() entry to xprt_ops
14268 - MEDIUM: ssl_sock: implement ssl_sock_prepare_bind_conf()
14269 - MINOR: connection: add a new destroy_bind_conf() entry to xprt_ops
14270 - MINOR: ssl_sock: implement ssl_sock_destroy_bind_conf()
14271 - MINOR: server: move the use_ssl field out of the ifdef USE_OPENSSL
14272 - MINOR: connection: add a minimal transport layer registration system
14273 - CLEANUP: connection: remove all direct references to raw_sock and ssl_sock
14274 - CLEANUP: connection: unexport raw_sock and ssl_sock
14275 - MINOR: connection: add new prepare_srv()/destroy_srv() entries to xprt_ops
14276 - MINOR: ssl_sock: implement and use prepare_srv()/destroy_srv()
14277 - CLEANUP: ssl: move tlskeys_finalize_config() to a post_check callback
14278 - CLEANUP: ssl: move most ssl-specific global settings to ssl_sock.c
14279 - BUG/MINOR: backend: nbsrv() should return 0 if backend is disabled
14280 - BUG/MEDIUM: ssl: for a handshake when server-side SNI changes
14281 - BUG/MINOR: systemd: potential zombie processes
14282 - DOC: Add timings events schemas
14283 - BUILD: lua: build failed on FreeBSD.
14284 - MINOR: samples: add xx-hash functions
14285 - MEDIUM: regex: pcre2 support
14286 - BUG/MINOR: option prefer-last-server must be ignored in some case
14287 - MINOR: stats: Support "select all" for backend actions
14288 - BUG/MINOR: sample-fetches/stick-tables: bad type for the sample fetches sc*_get_gpt0
14289 - BUG/MAJOR: channel: Fix the definition order of channel analyzers
14290 - BUG/MINOR: http: report real parser state in error captures
14291 - BUILD: scripts: automatically update the branch in version.h when releasing
14292 - MINOR: tools: add a generic hexdump function for debugging
14293 - BUG/MAJOR: http: fix risk of getting invalid reports of bad requests
14294 - MINOR: http: custom status reason.
14295 - MINOR: connection: add sample fetch "fc_rcvd_proxy"
14296 - BUG/MINOR: config: emit a warning if http-reuse is enabled with incompatible options
14297 - BUG/MINOR: tools: fix off-by-one in port size check
14298 - BUG/MEDIUM: server: consider AF_UNSPEC as a valid address family
14299 - MEDIUM: server: split the address and the port into two different fields
14300 - MINOR: tools: make str2sa_range() return the port in a separate argument
14301 - MINOR: server: take the destination port from the port field, not the addr
14302 - MEDIUM: server: disable protocol validations when the server doesn't resolve
14303 - BUG/MEDIUM: tools: do not force an unresolved address to AF_INET:0.0.0.0
14304 - BUG/MINOR: ssl: EVP_PKEY must be freed after X509_get_pubkey usage
14305 - BUG/MINOR: ssl: assert on SSL_set_shutdown with BoringSSL
14306 - MINOR: Use "500 Internal Server Error" for 500 error/status code message.
14307 - MINOR: proto_http.c 502 error txt typo.
14308 - DOC: add deprecation notice to "block"
14309 - MINOR: compression: fix -vv output without zlib/slz
14310 - BUG/MINOR: Reset errno variable before calling strtol(3)
14311 - MINOR: ssl: don't show prefer-server-ciphers output
14312 - OPTIM/MINOR: config: Optimize fullconn automatic computation loading configuration
14313 - BUG/MINOR: stream: Fix how backend-specific analyzers are set on a stream
14314 - MAJOR: ssl: bind configuration per certificat
14315 - MINOR: ssl: add curve suite for ECDHE negotiation
14316 - MINOR: checks: Add agent-addr config directive
14317 - MINOR: cli: Add possiblity to change agent config via CLI/socket
14318 - MINOR: doc: Add docs for agent-addr configuration variable
14319 - MINOR: doc: Add docs for agent-addr and agent-send CLI commands
14320 - BUILD: ssl: fix to build (again) with boringssl
14321 - BUILD: ssl: fix build on OpenSSL 1.0.0
14322 - BUILD: ssl: silence a warning reported for ERR_remove_state()
14323 - BUILD: ssl: eliminate warning with OpenSSL 1.1.0 regarding RAND_pseudo_bytes()
14324 - BUILD: ssl: kill a build warning introduced by BoringSSL compatibility
14325 - BUG/MEDIUM: tcp: don't poll for write when connect() succeeds
14326 - BUG/MINOR: unix: fix connect's polling in case no data are scheduled
14327 - MINOR: server: extend the flags to 32 bits
14328 - BUG/MINOR: lua: Map.end are not reliable because "end" is a reserved keyword
14329 - MINOR: dns: give ability to dns_init_resolvers() to close a socket when requested
14330 - BUG/MAJOR: dns: restart sockets after fork()
14331 - MINOR: chunks: implement a simple dynamic allocator for trash buffers
14332 - BUG/MEDIUM: http: prevent redirect from overwriting a buffer
14333 - BUG/MEDIUM: filters: Do not truncate HTTP response when body length is undefined
14334 - BUG/MEDIUM: http: Prevent replace-header from overwriting a buffer
14335 - BUG/MINOR: http: Return an error when a replace-header rule failed on the response
14336 - BUG/MINOR: sendmail: The return of vsnprintf is not cleanly tested
14337 - BUG/MAJOR: ssl: fix a regression in ssl_sock_shutw()
14338 - BUG/MAJOR: lua segmentation fault when the request is like 'GET ?arg=val HTTP/1.1'
14339 - BUG/MEDIUM: config: reject anything but "if" or "unless" after a use-backend rule
14340 - MINOR: http: don't close when redirect location doesn't start with "/"
14341 - MEDIUM: boringssl: support native multi-cert selection without bundling
14342 - BUG/MEDIUM: ssl: fix verify/ca-file per certificate
14343 - BUG/MEDIUM: ssl: switchctx should not return SSL_TLSEXT_ERR_ALERT_WARNING
14344 - MINOR: ssl: removes SSL_CTX_set_ssl_version call and cleanup CTX creation.
14345 - BUILD: ssl: fix build with -DOPENSSL_NO_DH
14346 - MEDIUM: ssl: add new sample-fetch which captures the cipherlist
14347 - MEDIUM: ssl: remove ssl-options from crt-list
14348 - BUG/MEDIUM: ssl: in bind line, ssl-options after 'crt' are ignored.
14349 - BUG/MINOR: ssl: fix cipherlist captures with sustainable SSL calls
14350 - MINOR: ssl: improved cipherlist captures
14351 - BUG/MINOR: spoe: Fix soft stop handler using a specific id for spoe filters
14352 - BUG/MINOR: spoe: Fix parsing of arguments in spoe-message section
14353 - MAJOR: spoe: Add support of pipelined and asynchronous exchanges with agents
14354 - MINOR: spoe: Add support for pipelining/async capabilities in the SPOA example
14355 - MINOR: spoe: Remove SPOE details from the appctx structure
14356 - MINOR: spoe: Add status code in error variable instead of hardcoded value
14357 - MINOR: spoe: Send a log message when an error occurred during event processing
14358 - MINOR: spoe: Check the scope of sample fetches used in SPOE messages
14359 - MEDIUM: spoe: Be sure to wakeup the good entity waiting for a buffer
14360 - MINOR: spoe: Use the min of all known max_frame_size to encode messages
14361 - MAJOR: spoe: Add support of payload fragmentation in NOTIFY frames
14362 - MINOR: spoe: Add support for fragmentation capability in the SPOA example
14363 - MAJOR: spoe: refactor the filter to clean up the code
14364 - MINOR: spoe: Handle NOTIFY frames cancellation using ABORT bit in ACK frames
14365 - REORG: spoe: Move struct and enum definitions in dedicated header file
14366 - REORG: spoe: Move low-level encoding/decoding functions in dedicated header file
14367 - MINOR: spoe: Improve implementation of the payload fragmentation
14368 - MINOR: spoe: Add support of negation for options in SPOE configuration file
14369 - MINOR: spoe: Add "pipelining" and "async" options in spoe-agent section
14370 - MINOR: spoe: Rely on alertif_too_many_arg during configuration parsing
14371 - MINOR: spoe: Add "send-frag-payload" option in spoe-agent section
14372 - MINOR: spoe: Add "max-frame-size" statement in spoe-agent section
14373 - DOC: spoe: Update SPOE documentation to reflect recent changes
14374 - MINOR: config: warn when some HTTP rules are used in a TCP proxy
14375 - BUG/MEDIUM: ssl: Clear OpenSSL error stack after trying to parse OCSP file
14376 - BUG/MEDIUM: cli: Prevent double free in CLI ACL lookup
14377 - BUG/MINOR: Fix "get map <map> <value>" CLI command
14378 - MINOR: Add nbsrv sample converter
14379 - CLEANUP: Replace repeated code to count usable servers with be_usable_srv()
14380 - MINOR: Add hostname sample fetch
14381 - CLEANUP: Remove comment that's no longer valid
14382 - MEDIUM: http_error_message: txn->status / http_get_status_idx.
14383 - MINOR: http-request tarpit deny_status.
14384 - CLEANUP: http: make http_server_error() not set the status anymore
14385 - MEDIUM: stats: Add JSON output option to show (info|stat)
14386 - MEDIUM: stats: Add show json schema
14387 - BUG/MAJOR: connection: update CO_FL_CONNECTED before calling the data layer
14388 - MINOR: server: Add dynamic session cookies.
14389 - MINOR: cli: Let configure the dynamic cookies from the cli.
14390 - BUG/MINOR: checks: attempt clean shutw for SSL check
14391 - CONTRIB: tcploop: make it build on FreeBSD
14392 - CONTRIB: tcploop: fix time format to silence build warnings
14393 - CONTRIB: tcploop: report action 'K' (kill) in usage message
14394 - CONTRIB: tcploop: fix connect's address length
14395 - CONTRIB: tcploop: use the trash instead of NULL for recv()
14396 - BUG/MEDIUM: listener: do not try to rebind another process' socket
14397 - BUG/MEDIUM server: Fix crash when dynamic is defined, but not key is provided.
14398 - CLEANUP: config: Typo in comment.
14399 - BUG/MEDIUM: filters: Fix channels synchronization in flt_end_analyze
14400 - TESTS: add a test configuration to stress handshake combinations
14401 - BUG/MAJOR: stream-int: do not depend on connection flags to detect connection
14402 - BUG/MEDIUM: connection: ensure to always report the end of handshakes
14403 - MEDIUM: connection: don't test for CO_FL_WAKE_DATA
14404 - CLEANUP: connection: completely remove CO_FL_WAKE_DATA
14405 - BUG: payload: fix payload not retrieving arbitrary lengths
14406 - BUILD: ssl: simplify SSL_CTX_set_ecdh_auto compatibility
14407 - BUILD: ssl: fix OPENSSL_NO_SSL_TRACE for boringssl and libressl
14408 - BUG/MAJOR: http: fix typo in http_apply_redirect_rule
14409 - MINOR: doc: 2.4. Examples should be 2.5. Examples
14410 - BUG/MEDIUM: stream: fix client-fin/server-fin handling
14411 - MINOR: fd: add a new flag HAP_POLL_F_RDHUP to struct poller
14412 - BUG/MINOR: raw_sock: always perfom the last recv if RDHUP is not available
14413 - OPTIM: poll: enable support for POLLRDHUP
14414 - MINOR: kqueue: exclusively rely on the kqueue returned status
14415 - MEDIUM: kqueue: take care of EV_EOF to improve polling status accuracy
14416 - MEDIUM: kqueue: only set FD_POLL_IN when there are pending data
14417 - DOC/MINOR: Fix typos in proxy protocol doc
14418 - DOC: Protocol doc: add checksum, TLV type ranges
14419 - DOC: Protocol doc: add SSL TLVs, rename CHECKSUM
14420 - DOC: Protocol doc: add noop TLV
14421 - MEDIUM: global: add a 'hard-stop-after' option to cap the soft-stop time
14422 - MINOR: dns: improve DNS response parsing to use as many available records as possible
14423 - BUG/MINOR: cfgparse: loop in tracked servers lists not detected by check_config_validity().
14424 - MINOR: server: irrelevant error message with 'default-server' config file keyword.
14425 - MINOR: server: Make 'default-server' support 'backup' keyword.
14426 - MINOR: server: Make 'default-server' support 'check-send-proxy' keyword.
14427 - CLEANUP: server: code alignement.
14428 - MINOR: server: Make 'default-server' support 'non-stick' keyword.
14429 - MINOR: server: Make 'default-server' support 'send-proxy' and 'send-proxy-v2 keywords.
14430 - MINOR: server: Make 'default-server' support 'check-ssl' keyword.
14431 - MINOR: server: Make 'default-server' support 'force-sslv3' and 'force-tlsv1[0-2]' keywords.
14432 - CLEANUP: server: code alignement.
14433 - MINOR: server: Make 'default-server' support 'no-ssl*' and 'no-tlsv*' keywords.
14434 - MINOR: server: Make 'default-server' support 'ssl' keyword.
14435 - MINOR: server: Make 'default-server' support 'send-proxy-v2-ssl*' keywords.
14436 - CLEANUP: server: code alignement.
14437 - MINOR: server: Make 'default-server' support 'verify' keyword.
14438 - MINOR: server: Make 'default-server' support 'verifyhost' setting.
14439 - MINOR: server: Make 'default-server' support 'check' keyword.
14440 - MINOR: server: Make 'default-server' support 'track' setting.
14441 - MINOR: server: Make 'default-server' support 'ca-file', 'crl-file' and 'crt' settings.
14442 - MINOR: server: Make 'default-server' support 'redir' keyword.
14443 - MINOR: server: Make 'default-server' support 'observe' keyword.
14444 - MINOR: server: Make 'default-server' support 'cookie' keyword.
14445 - MINOR: server: Make 'default-server' support 'ciphers' keyword.
14446 - MINOR: server: Make 'default-server' support 'tcp-ut' keyword.
14447 - MINOR: server: Make 'default-server' support 'namespace' keyword.
14448 - MINOR: server: Make 'default-server' support 'source' keyword.
14449 - MINOR: server: Make 'default-server' support 'sni' keyword.
14450 - MINOR: server: Make 'default-server' support 'addr' keyword.
14451 - MINOR: server: Make 'default-server' support 'disabled' keyword.
14452 - MINOR: server: Add 'no-agent-check' server keyword.
14453 - DOC: server: Add docs for "server" and "default-server" new "no-*" and other settings.
14454 - MINOR: doc: fix use-server example (imap vs mail)
14455 - BUG/MEDIUM: tcp: don't require privileges to bind to device
14456 - BUILD: make the release script use shortlog for the final changelog
14457 - BUILD: scripts: fix typo in announce-release error message
14458 - CLEANUP: time: curr_sec_ms doesn't need to be exported
14459 - BUG/MEDIUM: server: Wrong server default CRT filenames initialization.
14460 - BUG/MEDIUM: peers: fix buffer overflow control in intdecode.
14461 - BUG/MEDIUM: buffers: Fix how input/output data are injected into buffers
14462 - BUG/MINOR: http: Fix conditions to clean up a txn and to handle the next request
14463 - CLEANUP: http: Remove channel_congested function
14464 - CLEANUP: buffers: Remove buffer_bounce_realign function
14465 - CLEANUP: buffers: Remove buffer_contig_area and buffer_work_area functions
14466 - MINOR: http: remove useless check on HTTP_MSGF_XFER_LEN for the request
14467 - MINOR: http: Add debug messages when HTTP body analyzers are called
14468 - BUG/MEDIUM: http: Fix blocked HTTP/1.0 responses when compression is enabled
14469 - BUG/MINOR: filters: Don't force the stream's wakeup when we wait in flt_end_analyze
14470 - DOC: fix parenthesis and add missing "Example" tags
14471 - DOC: update the contributing file
14472 - DOC: log-format/tcplog/httplog update
14473 - MINOR: config parsing: add warning when log-format/tcplog/httplog is overriden in "defaults" sections
14474
Willy Tarreau0e658fb2016-11-25 16:55:50 +0100144752016/11/25 : 1.8-dev0
14476
Willy Tarreaue59fcdd2016-11-25 16:39:17 +0100144772016/11/25 : 1.7.0
14478 - SCRIPTS: make publish-release also copy the new SPOE doc
14479 - BUILD: http: include types/sample.h in proto_http.h
14480 - BUILD: debug/flags: remove test for SF_COMP_READY
14481 - CONTRIB: debug/flags: add check for SF_ERR_CHK_PORT
14482 - MINOR: lua: add function which return true if the channel is full.
14483 - MINOR: lua: add ip addresses and network manipulation function
14484 - CONTRIB: tcploop: scriptable TCP I/O for debugging purposes
14485 - CONTRIB: tcploop: implement fork()
14486 - CONTRIB: tcploop: implement logging when called with -v
14487 - CONTRIB: tcploop: update the usage output
14488 - CONTRIB: tcploop: support sending plain strings
14489 - CONTRIB: tcploop: don't report failed send() or recv()
14490 - CONTRIB: tcploop: add basic loops via a jump instruction
14491 - BUG/MEDIUM: channel: bad unlikely macro
14492 - CLEANUP: lua: move comment
14493 - CLEANUP: lua: control executed twice
14494 - BUG/MEDIUM: ssl: Store certificate filename in a variable
14495 - BUG/MINOR: ssl: Print correct filename when error occurs reading OCSP
14496 - CLEANUP: ssl: Remove goto after return dead code
14497 - CLEANUP: ssl: Fix bind keywords name in comments
14498 - DOC: ssl: Use correct wording for ca-sign-pass
14499 - CLEANUP: lua: avoid directly calling getsockname/getpeername()
14500 - BUG/MINOR: stick-table: handle out-of-memory condition gracefully
14501 - MINOR: cli: add private pointer and release function
14502 - MEDIUM: lua: Add cli handler for Lua
14503 - BUG/MEDIUM: connection: check the control layer before stopping polling
14504 - DEBUG: connection: mark the closed FDs with a value that is easier to detect
14505 - BUG/MEDIUM: stick-table: fix regression caused by recent fix for out-of-memory
14506 - BUG/MINOR: cli: properly decrement ref count on tables during failed dumps
14507 - BUG/MEDIUM: lua: In some case, the return of sample-fetche is ignored
14508 - MINOR: filters: Add check_timeouts callback to handle timers expiration on streams
14509 - MINOR: spoe: Add 'timeout processing' option to limit time to process an event
14510 - MINOR: spoe: Remove useless 'timeout ack' option
14511 - MINOR: spoe: Add 'option continue-on-error' statement in spoe-agent section
14512 - MINOR: spoe: Add "maxconnrate" and "maxerrrate" statements
14513 - MINOR: spoe: Add "option set-on-error" statement
14514 - MINOR: stats: correct documentation of process ID for typed output
14515 - BUILD: contrib: fix ip6range build on Centos 7
14516 - BUILD: fix build on Solaris 10/11
14517 - BUG/MINOR: cli: fix pointer size when reporting data/transport layer name
14518 - BUG/MINOR: cli: dequeue from the proxy when changing a maxconn
14519 - BUG/MINOR: cli: wake up the CLI's task after a timeout update
14520 - MINOR: connection: add a few functions to report the data and xprt layers' names
14521 - MINOR: connection: add names for transport and data layers
14522 - REORG: cli: split dumpstats.c in src/cli.c and src/stats.c
14523 - REORG: cli: split dumpstats.h in stats.h and cli.h
14524 - REORG: cli: move ssl CLI functions to ssl_sock.c
14525 - REORG: cli: move map and acl code to map.c
14526 - REORG: cli: move show stat resolvers to dns.c
14527 - MINOR: cli: create new function cli_has_level() to validate permissions
14528 - MINOR: server: create new function cli_find_server() to find a server
14529 - MINOR: proxy: create new function cli_find_frontend() to find a frontend
14530 - REORG: cli: move 'set server' to server.c
14531 - REORG: cli: move 'show pools' to memory.c
14532 - REORG: cli: move 'show servers' to proxy.c
14533 - REORG: cli: move 'show sess' to stream.c
14534 - REORG: cli: move 'show backend' to proxy.c
14535 - REORG: cli: move get/set weight to server.c
14536 - REORG: cli: move "show stat" to stats.c
14537 - REORG: cli: move "show info" to stats.c
14538 - REORG: cli: move dump_text(), dump_text_line(), and dump_binary() to standard.c
14539 - REORG: cli: move table dump/clear/set to stick_table.c
14540 - REORG: cli: move "show errors" out of cli.c
14541 - REORG: cli: make "show env" also use the generic keyword registration
14542 - REORG: cli: move "set timeout" to its own handler
14543 - REORG: cli: move "clear counters" to stats.c
14544 - REORG: cli: move "set maxconn global" to its own handler
14545 - REORG: cli: move "set maxconn server" to server.c
14546 - REORG: cli: move "set maxconn frontend" to proxy.c
14547 - REORG: cli: move "shutdown sessions server" to stream.c
14548 - REORG: cli: move "shutdown session" to stream.c
14549 - REORG: cli: move "shutdown frontend" to proxy.c
14550 - REORG: cli: move "{enable|disable} frontend" to proxy.c
14551 - REORG: cli: move "{enable|disable} server" to server.c
14552 - REORG: cli: move "{enable|disable} health" to server.c
14553 - REORG: cli: move "{enable|disable} agent" to server.c
14554 - REORG: cli: move the "set rate-limit" functions to their own parser
14555 - CLEANUP: cli: rename STAT_CLI_* to CLI_ST_*
14556 - CLEANUP: cli: simplify the request parser a little bit
14557 - CLEANUP: cli: remove assignments to st0 and st2 in keyword parsers
14558 - BUILD: server: remove a build warning introduced by latest series
14559 - BUG/MINOR: log-format: uncatched memory allocation functions
14560 - CLEANUP: log-format: useless file and line in json converter
14561 - CLEANUP/MINOR: log-format: unexport functions parse_logformat_var_args() and parse_logformat_var()
14562 - CLEANUP: log-format: fix return code of the function parse_logformat_var()
14563 - CLEANUP: log-format: fix return code of function parse_logformat_var_args()
14564 - CLEANUP: log-format: remove unused arguments
14565 - MEDIUM: log-format: strict parsing and enable fail
14566 - MEDIUM: log-format/conf: take into account the parse_logformat_string() return code
14567 - BUILD: ssl: make the SSL layer build again with openssl 0.9.8
14568 - BUILD: vars: remove a build warning on vars.c
14569 - MINOR: lua: add utility function for check boolean argument
14570 - MINOR: lua: Add tokenize function.
14571 - BUG/MINOR: conf: calloc untested
14572 - MINOR: http/conf: store the use_backend configuration file and line for logs
14573 - MEDIUM: log-format: Use standard HAProxy log system to report errors
14574 - CLEANUP: sample: report "converter" instead of "conv method" in error messages
14575 - BUG: spoe: Fix parsing of SPOE actions in ACK frames
14576 - MINOR: cli: make "show stat" support a proxy name
14577 - MINOR: cli: make "show errors" support a proxy name
14578 - MINOR: cli: make "show errors" capable of dumping only request or response
14579 - BUG/MINOR: freq-ctr: make swrate_add() support larger values
14580 - CLEANUP: counters: move from 3 types to 2 types
14581 - CLEANUP: cfgparse: cascade the warnif_misplaced_* rules
14582 - REORG: tcp-rules: move tcp rules processing to their own file
14583 - REORG: stkctr: move all the stick counters processing to stick-tables.c
14584 - DOC: update the roadmap file with the latest changes
14585
Willy Tarreaud5d890b2016-11-09 23:18:17 +0100145862016/11/09 : 1.7-dev6
14587 - DOC: fix the entry for hash-balance-factor config option
14588 - DOC: Fix typo in description of `-st` parameter in man page
14589 - CLEANUP: cfgparse: Very minor spelling correction
14590 - MINOR: examples: Update haproxy.spec URLs to haproxy.org
14591 - BUG/MEDIUM: peers: on shutdown, wake up the appctx, not the stream
14592 - BUG/MEDIUM: peers: fix use after free in peer_session_create()
14593 - MINOR: peers: make peer_session_forceshutdown() use the appctx and not the stream
14594 - MINOR: peers: remove the pointer to the stream
14595 - BUG/MEDIUM: systemd-wrapper: return correct exit codes
14596 - DOC: stats: provide state details for show servers state
14597 - MEDIUM: tools: make str2ip2() preserve existing ports
14598 - CLEANUP: tools: make ipcpy() preserve the original port
14599 - OPTIM: http: move all http character classs tables into a single one
14600 - OPTIM: http: improve parsing performance of long header lines
14601 - OPTIM: http: improve parsing performance of long URIs
14602 - OPTIM: http: optimize lookup of comma and quote in header values
14603 - BUG/MEDIUM: srv-state: properly restore the DRAIN state
14604 - BUG/MINOR: srv-state: allow to have both CMAINT and FDRAIN flags
14605 - MINOR: server: do not emit warnings/logs/alerts on server state changes at boot
14606 - BUG/MEDIUM: servers: properly propagate the maintenance states during startup
14607 - MEDIUM: wurfl: add Scientiamobile WURFL device detection module
14608 - DOC: move the device detection modules documentation to their own files
14609 - CLEANUP: wurfl: reduce exposure in the rest of the code
14610 - MEDIUM: ssl: Add support for OpenSSL 1.1.0
14611 - MINOR: stream: make option contstats usable again
14612 - MEDIUM: tools: make str2sa_range() return the FQDN even when not resolving
14613 - MINOR: init: move apply_server_state in haproxy.c before MODE_CHECK
14614 - MAJOR: server: postpone address resolution
14615 - MINOR: new srv_admin flag: SRV_ADMF_RMAINT
14616 - MINOR: server: indicate in the logs when RMAINT is cleared
14617 - MINOR: stats: indicate it when a server is down due to resolution
14618 - MINOR: server: make srv_set_admin_state() capable of telling why this happens
14619 - MINOR: dns: implement extra 'hold' timers.
14620 - MAJOR: dns: runtime resolution can change server admin state
14621 - MEDIUM: cli: leave the RMAINT state when setting an IP address on the CLI
14622 - MEDIUM: server: add a new init-addr server line setting
14623 - MEDIUM: server: make use of init-addr
14624 - MINOR: server: implement init-addr none
14625 - MEDIUM: server: make libc resolution failure non-fatal
14626 - MINOR: server: add support for explicit numeric address in init-addr
14627 - DOC: add some documentation for the "init-addr" server keyword
14628 - MINOR: init: add -dr to ignore server address resolution failures
14629 - MEDIUM: server: do not restrict anymore usage of IP address from the state file
14630 - BUG: vars: Fix 'set-var' converter because of a typo
14631 - CLEANUP: remove last references to 'ruleset' section
14632 - MEDIUM: filters: Add attch/detach and stream_set_backend callbacks
14633 - MINOR: filters: Update filters documentation accordingly to recent changes
14634 - MINOR: filters: Call stream_set_backend callbacks before updating backend stats
14635 - MINOR: filters: Remove backend filters attached to a stream only for HTTP streams
14636 - MINOR: flt_trace: Add hexdump option to dump forwarded data
14637 - MINOR: cfgparse: Add functions to backup and restore registered sections
14638 - MINOR: cfgparse: Parse scope lines and save the last one parsed
14639 - REORG: sample: move code to release a sample expression in sample.c
14640 - MINOR: vars: Allow '.' in variable names
14641 - MINOR: vars: Add vars_set_by_name_ifexist function
14642 - MEDIUM: vars: Add a per-process scope for variables
14643 - MINOR: vars: Add 'unset-var' action/converter
14644 - MAJOR: spoe: Add an experimental Stream Processing Offload Engine
14645 - MINOR: spoe: add random ip-reputation service as SPOA example
14646 - MINOR: spoe/checks: Add support for SPOP health checks
14647 - DOC: update ROADMAP file
14648
Willy Tarreau608efa12016-10-25 22:22:00 +0200146492016/10/25 : 1.7-dev5
14650 - MINOR: cfgparse: few memory leaks fixes.
14651 - MEDIUM: log: Decompose %Tq in %Th %Ti %TR
14652 - CLEANUP: logs: remove unused log format field definitions
14653 - BUILD/MAJOR:updated 51d Trie implementation to incorperate latest update to 51Degrees.c
14654 - BUG/MAJOR: stream: properly mark the server address as unset on connect retry
14655 - CLEANUP: proto_http: Removing useless variable assignation
14656 - CLEANUP: dumpstats: Removing useless variables allocation
14657 - CLEANUP: dns: Removing usless variable & assignation
14658 - BUG/MINOR: payload: fix SSLv2 version parser
14659 - MINOR: cli: allow the semi-colon to be escaped on the CLI
14660 - MINOR: cli: change a server health check port through the stats socket
14661 - BUG/MINOR: Fix OSX compilation errors
14662 - MAJOR: check: find out which port to use for health check at run time
14663 - MINOR: server: introduction of 3 new server flags
14664 - MINOR: new update_server_addr_port() function to change both server's ADDR and service PORT
14665 - MINOR: cli: ability to change a server's port
14666 - CLEANUP/MINOR dns: comment do not follow up code update
14667 - MINOR: chunk: new strncat function
14668 - MINOR: dns: wrong DNS_MAX_UDP_MESSAGE value
14669 - MINOR: dns: new MAX values
14670 - MINOR: dns: new macro to compute DNS header size
14671 - MINOR: dns: new DNS structures to store received packets
14672 - MEDIUM: dns: new DNS response parser
14673 - MINOR: dns: query type change when last record is a CNAME
14674 - MINOR: dns: proper domain name validation when receiving DNS response
14675 - MINOR: dns: comments in types/dns.h about structures endianness
14676 - BUG/MINOR: displayed PCRE version is running release
14677 - MINOR: show Built with PCRE version
14678 - MINOR: show Running on zlib version
14679 - MEDIUM: make SO_REUSEPORT configurable
14680 - MINOR: enable IP_BIND_ADDRESS_NO_PORT on backend connections
14681 - BUG/MEDIUM: http/compression: Fix how chunked data are copied during the HTTP body parsing
14682 - BUG/MINOR: stats: report the correct conn_time in backend's html output
14683 - BUG/MEDIUM: dns: don't randomly crash on out-of-memory
14684 - MINOR: Add fe_req_rate sample fetch
14685 - MEDIUM: peers: Fix a peer stick-tables synchronization issue.
14686 - MEDIUM: cli: register CLI keywords with cli_register_kw()
14687 - BUILD: Make use of accept4() on OpenBSD.
14688 - MINOR: tcp: make set-src/set-src-port and set-dst/set-dst-port commutative
14689 - DOC: fix missed entry for "set-{src,dst}{,-port}"
14690 - BUG/MINOR: vars: use sess and not s->sess in action_store()
14691 - BUG/MINOR: vars: make smp_fetch_var() more robust against misuses
14692 - BUG/MINOR: vars: smp_fetch_var() doesn't depend on HTTP but on the session
14693 - MINOR: stats: output dcon
14694 - CLEANUP: tcp rules: mention everywhere that tcp-conn rules are L4
14695 - MINOR: counters: add new fields for denied_sess
14696 - MEDIUM: tcp: add registration and processing of TCP L5 rules
14697 - MINOR: stats: emit dses
14698 - DOC: document tcp-request session
14699 - MINOR: ssl: add debug traces
14700 - BUILD/CLEANUP: ssl: Check BIO_reset() return code
14701 - BUG/MINOR: ssl: Check malloc return code
14702 - BUG/MINOR: ssl: prevent multiple entries for the same certificate
14703 - BUG/MINOR: systemd: make the wrapper return a non-null status code on error
14704 - BUG/MINOR: systemd: always restore signals before execve()
14705 - BUG/MINOR: systemd: check return value of calloc()
14706 - MINOR: systemd: report it when execve() fails
14707 - BUG/MEDIUM: systemd: let the wrapper know that haproxy has completed or failed
14708 - MINOR: proxy: add 'served' field to proxy, equal to total of all servers'
14709 - MINOR: backend: add hash-balance-factor option for hash-type consistent
14710 - MINOR: server: compute a "cumulative weight" to allow chash balancing to hit its target
14711 - MEDIUM: server: Implement bounded-load hash algorithm
14712 - SCRIPTS: make git-show-backports also dump a "git show" command
14713 - MINOR: build: Allow linking to device-atlas library file
14714 - MINOR: stats: Escape equals sign on socket dump
14715
Willy Tarreau41d5e3a2016-08-14 12:25:21 +0200147162016/08/14 : 1.7-dev4
14717 - MINOR: add list_append_word function
14718 - MEDIUM: init: use list_append_word in haproxy.c
14719 - MEDIUM: init: allow directory as argument of -f
14720 - CLEANUP: config: detect double registration of a config section
14721 - MINOR: log: add the %Td log-format specifier
14722 - MEDIUM: filters: Move HTTP headers filtering in its own callback
14723 - MINOR: filters: Simplify calls to analyzers using 2 new macros
14724 - MEDIUM: filters: Add pre and post analyzer callbacks
14725 - DOC: filters: Update the filters documentation accordingly to recent changes
14726 - BUG/MEDIUM: init: don't use environment locale
14727 - SCRIPTS: teach git-show-backports how to report upstream commits
14728 - SCRIPTS: make git-show-backports capable of limiting its history
14729 - BUG/MAJOR: fix listening IP address storage for frontends
14730 - BUG/MINOR: fix listening IP address storage for frontends (cont)
14731 - DOC: Fix typo so fetch is properly parsed by Cyril's converter
14732 - BUG/MAJOR: http: fix breakage of "reqdeny" causing random crashes
14733 - BUG/MEDIUM: stick-tables: fix breakage in table converters
14734 - MINOR: stick-table: change all stick-table converters' inputs to SMP_T_ANY
14735 - BUG/MEDIUM: dns: unbreak DNS resolver after header fix
14736 - BUILD: fix build on Solaris 11
14737 - BUG/MEDIUM: config: fix multiple declaration of section parsers
14738 - BUG/MEDIUM: stats: show servers state may show an servers from another backend
14739 - BUG/MEDIUM: fix risk of segfault with "show tls-keys"
14740 - MEDIUM: dumpstats: 'show tls-keys' is now able to show secrets
14741 - DOC: update doc about tls-tickets-keys dump
14742 - MEDIUM: tcp: add 'set-src' to 'tcp-request connection'
14743 - MINOR: set the CO_FL_ADDR_FROM_SET flags with 'set-src'
14744 - MEDIUM: tcp/http: add 'set-src-port' action
14745 - MEDIUM: tcp/http: new set-dst/set-dst-port actions
14746 - BUG/MEDIUM: sticktables: segfault in some configuration error cases
14747 - BUILD/MEDIUM: rebuild everything when an include file is changed
14748 - BUILD/MEDIUM: force a full rebuild if some build options change
14749 - BUG/MEDIUM: lua: converters doesn't work
14750 - BUG/MINOR: http: add-header: header name copied twice
14751 - BUG/MEDIUM: http: add-header: buffer overwritten
14752 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
14753 - MINOR: stream: export the function 'smp_create_src_stkctr'
14754 - BUG/MEDIUM: dumpstats: undefined behavior in stats_tlskeys_list()
14755 - MEDIUM: dumpstats: make stats_tlskeys_list() yield-aware during tls-keys dump
14756 - BUG/MINOR: http: url32+src should use the big endian version of url32
14757 - BUG/MINOR: http: url32+src should check cli_conn before using it
14758 - DOC: http: add documentation for url32 and url32+src
14759 - BUG/MINOR: fix http-response set-log-level parsing error
14760 - MINOR: systemd: Use variable for config and pidfile paths
14761 - MINOR: systemd: Perform sanity check on config before reload
14762 - MEDIUM: ssl: support SNI filters with multicerts
14763 - MINOR: ssl: crt-list parsing factor
14764 - BUILD: ssl: fix typo causing a build failure in the multicert patch
14765 - MINOR: listener: add the "accept-netscaler-cip" option to the "bind" keyword
14766 - MINOR: tcp: add "tcp-request connection expect-netscaler-cip layer4"
14767 - BUG/MINOR: init: always ensure that global.rlimit_nofile matches actual limits
14768 - BUG/MINOR: init: ensure that FD limit is raised to the max allowed
14769 - BUG/MEDIUM: external-checks: close all FDs right after the fork()
14770 - BUG/MAJOR: external-checks: use asynchronous signal delivery
14771 - BUG/MINOR: external-checks: do not unblock undesired signals
14772 - CLEANUP: external-check: don't block/unblock SIGCHLD when manipulating the list
14773 - BUG/MEDIUM: filters: Fix data filtering when data are modified
14774 - BUG/MINOR: filters: Fix HTTP parsing when a filter loops on data forwarding
14775 - BUG/MINOR: srv-state: fix incorrect output of state file
14776 - BUG/MINOR: ssl: close ssl key file on error
14777 - BUG/MINOR: http: fix misleading error message for response captures
14778 - BUG/BUILD: don't automatically run "make" on "make install"
14779 - DOC: add missing doc for http-request deny [deny_status <status>]
14780 - CLEANUP: dumpstats: u64 field is an unsigned type.
14781 - BUG/MEDIUM: http: unbreak uri/header/url_param hashing
14782 - BUG/MINOR: Rework slightly commit 9962f8fc to clean code and avoid mistakes
14783 - MINOR: new function my_realloc2 = realloc + free upon failure
14784 - CLEANUP: fixed some usages of realloc leading to memory leak
14785 - Revert "BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()"
14786 - CLEANUP: connection: using internal struct to hold source and dest port.
14787 - DOC: spelling fixes
14788 - BUG/MINOR: ssl: fix potential memory leak in ssl_sock_load_dh_params()
14789 - BUG/MEDIUM: dns: fix alignment issues in the DNS response parser
14790 - BUG/MINOR: Fix endiness issue in DNS header creation code
14791 - BUG/MEDIUM: lua: the function txn_done() from sample fetches can crash
14792 - BUG/MEDIUM: lua: the function txn_done() from action wrapper can crash
14793 - MEDIUM: http: implement http-response track-sc* directive
14794 - BUG/MINOR: peers: Fix peers data decoding issue
14795 - BUG/MINOR: peers: don't count track-sc multiple times on errors
14796 - MINOR: standard: add function "escape_string"
14797 - BUG/MEDIUM: log: use function "escape_string" instead of "escape_chunk"
14798 - MINOR: tcp: Return TCP statistics like RTT and RTT variance
14799 - DOC: lua: remove old functions
14800 - BUG/MEDIUM: lua: somme HTTP manipulation functions are called without valid requests
14801 - DOC: fix json converter example and error message
14802 - BUG/MEDIUM: stream-int: completely detach connection on connect error
14803 - DOC: minor typo fixes to improve HTML parsing by haproxy-dconv
14804 - BUILD: make proto_tcp.c compatible with musl library
14805 - BUG/MAJOR: compression: initialize avail_in/next_in even during flush
14806 - BUG/MEDIUM: samples: make smp_dup() always duplicate the sample
14807 - MINOR: sample: implement smp_is_safe() and smp_make_safe()
14808 - MINOR: sample: provide smp_is_rw() and smp_make_rw()
14809 - BUG/MAJOR: server: the "sni" directive could randomly cause trouble
14810 - BUG/MEDIUM: stick-tables: do not fail on string keys with no allocated size
14811 - BUG/MEDIUM: stick-table: properly convert binary samples to keys
14812 - MINOR: sample: use smp_make_rw() in upper/lower converters
14813 - MINOR: tcp: add dst_is_local and src_is_local
14814 - BUG/MINOR: peers: some updates are pushed twice after a resync.
14815 - BUILD: protocol: fix some build errors on OpenBSD
14816 - BUILD: log: iovec requires to include sys/uio.h on OpenBSD
14817 - BUILD: tcp: do not include netinet/ip.h for IP_TTL
14818 - BUILD: connection: fix build breakage on openbsd due to missing in_systm.h
14819 - BUILD: checks: remove the last strcat and eliminate a warning on OpenBSD
14820 - BUILD: tcp: define SOL_TCP when only IPPROTO_TCP exists
14821 - BUILD: compression: remove a warning when no compression lib is used
14822 - BUILD: poll: remove unused hap_fd_isset() which causes a warning with clang
14823 - MINOR: tcp: add further tcp info fetchers
14824 - BUG/MINOR: peers: empty chunks after a resync.
14825 - BUG/MAJOR: stick-counters: possible crash when using sc_trackers with wrong table
14826 - MINOR: standard.c: ipcmp() function to compare 2 IP addresses stored in 2 struct sockaddr_storage
14827 - MINOR: standard.c: ipcpy() function to copy an IP address from a struct sockaddr_storage into an other one
14828 - MAJOR: listen section: don't use first bind port anymore when no server ports are provided
14829
Willy Tarreau7d1b48f2016-05-10 15:36:58 +0200148302016/05/10 : 1.7-dev3
14831 - MINOR: sample: Moves ARGS underlying type from 32 to 64 bits.
14832 - BUG/MINOR: log: Don't use strftime() which can clobber timezone if chrooted
14833 - BUILD: namespaces: fix a potential build warning in namespaces.c
14834 - MINOR: da: Using ARG12 macro for the sample fetch and the convertor.
14835 - DOC: add encoding to json converter example
14836 - BUG/MINOR: conf: "listener id" expects integer, but its not checked
14837 - DOC: Clarify tunes.vars.xxx-max-size settings
14838 - CLEANUP: chunk: adding NULL check to chunk_dup allocation.
14839 - CLEANUP: connection: fix double negation on memcmp()
14840 - BUG/MEDIUM: peers: fix incorrect age in frequency counters
14841 - BUG/MEDIUM: Fix RFC5077 resumption when more than TLS_TICKETS_NO are present
14842 - BUG/MAJOR: Fix crash in http_get_fhdr with exactly MAX_HDR_HISTORY headers
14843 - BUG/MINOR: lua: can't load external libraries
14844 - BUG/MINOR: prevent the dump of uninitialized vars
14845 - CLEANUP: map: it seems that the map were planed to be chained
14846 - MINOR: lua: move class registration facilities
14847 - MINOR: lua: remove some useless checks
14848 - CLEANUP: lua: Remove two same functions
14849 - MINOR: lua: refactor the Lua object registration
14850 - MINOR: lua: precise message when a critical error is catched
14851 - MINOR: lua: post initialization
14852 - MINOR: lua: Add internal function which strip spaces
14853 - MINOR: lua: convert field to lua type
14854 - DOC: "addr" parameter applies to both health and agent checks
14855 - DOC: timeout client: pointers to timeout http-request
14856 - DOC: typo on stick-store response
14857 - DOC: stick-table: amend paragraph blaming the loss of table upon reload
14858 - DOC: typo: ACL subdir match
14859 - DOC: typo: maxconn paragraph is wrong due to a wrong buffer size
14860 - DOC: regsub: parser limitation about the inability to use closing square brackets
14861 - DOC: typo: req.uri is now replaced by capture.req.uri
14862 - DOC: name set-gpt0 mismatch with the expected keyword
14863 - MINOR: http: sample fetch which returns unique-id
14864 - MINOR: dumpstats: extract stats fields enum and names
14865 - MINOR: dumpstats: split stats_dump_info_to_buffer() in two parts
14866 - MINOR: dumpstats: split stats_dump_fe_stats() in two parts
14867 - MINOR: dumpstats: split stats_dump_li_stats() in two parts
14868 - MINOR: dumpstats: split stats_dump_sv_stats() in two parts
14869 - MINOR: dumpstats: split stats_dump_be_stats() in two parts
14870 - MINOR: lua: dump general info
14871 - MINOR: lua: add class proxy
14872 - MINOR: lua: add class server
14873 - MINOR: lua: add class listener
14874 - BUG/MEDIUM: stick-tables: some sample-fetch doesn't work in the connection state.
14875 - MEDIUM: proxy: use dynamic allocation for error dumps
14876 - CLEANUP: remove unneeded casts
14877 - CLEANUP: uniformize last argument of malloc/calloc
14878 - DOC: fix "needed" typo
14879 - BUG/MINOR: dumpstats: fix write to global chunk
14880 - BUG/MINOR: dns: inapropriate way out after a resolution timeout
14881 - BUG/MINOR: dns: trigger a DNS query type change on resolution timeout
14882 - CLEANUP: proto_http: few corrections for gcc warnings.
14883 - BUG/MINOR: DNS: resolution structure change
14884 - BUG/MINOR : allow to log cookie for tarpit and denied request
14885 - BUG/MEDIUM: ssl: rewind the BIO when reading certificates
14886 - OPTIM/MINOR: session: abort if possible before connecting to the backend
14887 - DOC: http: rename the unique-id sample and add the documentation
14888 - BUG/MEDIUM: trace.c: rdtsc() is defined in two files
14889 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (2nd try)
14890 - BUG/MINOR: server: risk of over reading the pref_net array.
14891 - BUG/MINOR: cfgparse: couple of small memory leaks.
14892 - BUG/MEDIUM: sample: initialize the pointer before parse_binary call.
14893 - DOC: fix discrepancy in the example for http-request redirect
14894 - MINOR: acl: Add predefined METH_DELETE, METH_PUT
14895 - CLEANUP: .gitignore cleanup
14896 - DOC: Clarify IPv4 address / mask notation rules
14897 - CLEANUP: fix inconsistency between fd->iocb, proto->accept and accept()
14898 - BUG/MEDIUM: fix maxaccept computation on per-process listeners
14899 - BUG/MINOR: listener: stop unbound listeners on startup
14900 - BUG/MINOR: fix maxaccept computation according to the frontend process range
14901 - TESTS: add blocksig.c to run tests with all signals blocked
14902 - MEDIUM: unblock signals on startup.
14903 - MINOR: filters: Print the list of existing filters during HA startup
14904 - MINOR: filters: Typo in an error message
14905 - MINOR: filters: Filters must define the callbacks struct during config parsing
14906 - DOC: filters: Add filters documentation
14907 - BUG/MEDIUM: channel: don't allow to overwrite the reserve until connected
14908 - BUG/MEDIUM: channel: incorrect polling condition may delay event delivery
14909 - BUG/MEDIUM: channel: fix miscalculation of available buffer space (3rd try)
14910 - BUG/MEDIUM: log: fix risk of segfault when logging HTTP fields in TCP mode
14911 - MINOR: Add ability for agent-check to set server maxconn
14912 - CLEANUP: Use server_parse_maxconn_change_request for maxconn CLI updates
14913 - MINOR: filters: add opaque data
14914 - BUG/MEDIUM: lua: protects the upper boundary of the argument list for converters/fetches.
14915 - MINOR: lua: migrate the argument mask to 64 bits type.
14916 - BUG/MINOR: dumpstats: Fix the "Total bytes saved" counter in backends stats
14917 - BUG/MINOR: log: fix a typo that would cause %HP to log <BADREQ>
14918 - BUG/MEDIUM: http: fix incorrect reporting of server errors
14919 - MINOR: channel: add new function channel_congested()
14920 - BUG/MEDIUM: http: fix risk of CPU spikes with pipelined requests from dead client
14921 - BUG/MAJOR: channel: fix miscalculation of available buffer space (4th try)
14922 - BUG/MEDIUM: stream: ensure the SI_FL_DONT_WAKE flag is properly cleared
14923 - BUG/MEDIUM: channel: fix inconsistent handling of 4GB-1 transfers
14924 - BUG/MEDIUM: stats: show servers state may show an empty or incomplete result
14925 - BUG/MEDIUM: stats: show backend may show an empty or incomplete result
14926 - MINOR: stats: fix typo in help messages
14927 - MINOR: stats: show stat resolvers missing in the help message
14928 - BUG/MINOR: dns: fix DNS header definition
14929 - BUG/MEDIUM: dns: fix alignment issue when building DNS queries
14930 - CLEANUP: don't ignore scripts in .gitignore
14931 - BUILD: add a few release and backport scripts in scripts/
14932
Willy Tarreau8234f6d2016-03-14 00:10:05 +0100149332016/03/14 : 1.7-dev2
14934 - DOC: lua: fix lua API
14935 - DOC: mailers: typo in 'hostname' description
14936 - DOC: compression: missing mention of libslz for compression algorithm
14937 - BUILD/MINOR: regex: missing header
14938 - BUG/MINOR: stream: bad return code
14939 - DOC: lua: fix somme errors and add implicit types
14940 - MINOR: lua: add set/get priv for applets
14941 - BUG/MINOR: http: fix several off-by-one errors in the url_param parser
14942 - BUG/MINOR: http: Be sure to process all the data received from a server
14943 - MINOR: filters/http: Use a wrapper function instead of stream_int_retnclose
14944 - BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
14945 - DOC: ssl: fixed some formatting errors in crt tag
14946 - MINOR: chunks: ensure that chunk_strcpy() adds a trailing zero
14947 - MINOR: chunks: add chunk_strcat() and chunk_newstr()
14948 - MINOR: chunk: make chunk_initstr() take a const string
14949 - MEDIUM: tools: add csv_enc_append() to preserve the original chunk
14950 - MINOR: tools: make csv_enc_append() always start at the first byte of the chunk
14951 - MINOR: lru: new function to delete <nb> least recently used keys
14952 - DOC: add Ben Shillito as the maintainer of 51d
14953 - BUG/MINOR: 51d: Ensures a unique domain for each configuration
14954 - BUG/MINOR: 51d: Aligns Pattern cache implementation with HAProxy best practices.
14955 - BUG/MINOR: 51d: Releases workset back to pool.
14956 - BUG/MINOR: 51d: Aligned const pointers to changes in 51Degrees.
14957 - CLEANUP: 51d: Aligned if statements with HAProxy best practices and removed casts from malloc.
14958 - MINOR: rename master process name in -Ds (systemd mode)
14959 - DOC: fix a few spelling mistakes
14960 - DOC: fix "workaround" spelling
14961 - BUG/MINOR: examples: Fixing haproxy.spec to remove references to .cfg files
14962 - MINOR: fix the return type for dns_response_get_query_id() function
14963 - MINOR: server state: missing LF (\n) on error message printed when parsing server state file
14964 - BUG/MEDIUM: dns: no DNS resolution happens if no ports provided to the nameserver
14965 - BUG/MAJOR: servers state: server port is erased when dns resolution is enabled on a server
14966 - BUG/MEDIUM: servers state: server port is used uninitialized
14967 - BUG/MEDIUM: config: Adding validation to stick-table expire value.
14968 - BUG/MEDIUM: sample: http_date() doesn't provide the right day of the week
14969 - BUG/MEDIUM: channel: fix miscalculation of available buffer space.
14970 - MEDIUM: pools: add a new flag to avoid rounding pool size up
14971 - BUG/MEDIUM: buffers: do not round up buffer size during allocation
14972 - BUG/MINOR: stream: don't force retries if the server is DOWN
14973 - BUG/MINOR: counters: make the sc-inc-gpc0 and sc-set-gpt0 touch the table
14974 - MINOR: unix: don't mention free ports on EAGAIN
14975 - BUG/CLEANUP: CLI: report the proper field states in "show sess"
14976 - MINOR: stats: send content-length with the redirect to allow keep-alive
14977 - BUG: stream_interface: Reuse connection even if the output channel is empty
14978 - DOC: remove old tunnel mode assumptions
14979 - BUG/MAJOR: http-reuse: fix risk of orphaned connections
14980 - BUG/MEDIUM: http-reuse: do not share private connections across backends
14981 - BUG/MINOR: ssl: Be sure to use unique serial for regenerated certificates
14982 - BUG/MINOR: stats: fix missing comma in stats on agent drain
14983 - MAJOR: filters: Add filters support
14984 - MINOR: filters: Do not reset stream analyzers if the client is gone
14985 - REORG: filters: Prepare creation of the HTTP compression filter
14986 - MAJOR: filters/http: Rewrite the HTTP compression as a filter
14987 - MEDIUM: filters: Use macros to call filters callbacks to speed-up processing
14988 - MEDIUM: filters: remove http_start_chunk, http_last_chunk and http_chunk_end
14989 - MEDIUM: filters: Replace filter_http_headers callback by an analyzer
14990 - MEDIUM: filters/http: Move body parsing of HTTP messages in dedicated functions
14991 - MINOR: filters: Add stream_filters structure to hide filters info
14992 - MAJOR: filters: Require explicit registration to filter HTTP body and TCP data
14993 - MINOR: filters: Remove unused or useless stuff and do small optimizations
14994 - MEDIUM: filters: Optimize the HTTP compression for chunk encoded response
14995 - MINOR: filters/http: Slightly update the parsing of chunks
14996 - MINOR: filters/http: Forward remaining data when a channel has no "data" filters
14997 - MINOR: filters: Add an filter example
14998 - MINOR: filters: Extract proxy stuff from the struct filter
14999 - MINOR: map: Add regex matching replacement
15000 - BUG/MINOR: lua: unsafe initialization
15001 - DOC: lua: fix somme errors
15002 - MINOR: lua: file dedicated to unsafe functions
15003 - MINOR: lua: add "now" time function
15004 - MINOR: standard: add RFC HTTP date parser
15005 - MINOR: lua: Add date functions
15006 - MINOR: lua: move common function
15007 - MINOR: lua: merge function
15008 - MINOR: lua: Add concat class
15009 - MINOR: standard: add function "escape_chunk"
15010 - MEDIUM: log: add a new log format flag "E"
15011 - DOC: add server name at rate-limit sessions example
15012 - BUG/MEDIUM: ssl: fix off-by-one in ALPN list allocation
15013 - BUG/MEDIUM: ssl: fix off-by-one in NPN list allocation
15014 - DOC: LUA: fix some typos and syntax errors
15015 - MINOR: cli: add a new "show env" command
15016 - MEDIUM: config: allow to manipulate environment variables in the global section
15017 - MEDIUM: cfgparse: reject incorrect 'timeout retry' keyword spelling in resolvers
15018 - MINOR: mailers: increase default timeout to 10 seconds
15019 - MINOR: mailers: use <CRLF> for all line endings
15020 - BUG/MAJOR: lua: segfault using Concat object
15021 - DOC: lua: copyrights
15022 - MINOR: common: mask conversion
15023 - MEDIUM: dns: extract options
15024 - MEDIUM: dns: add a "resolve-net" option which allow to prefer an ip in a network
15025 - MINOR: mailers: make it possible to configure the connection timeout
15026 - BUG/MAJOR: lua: applets can't sleep.
15027 - BUG/MINOR: server: some prototypes are renamed
15028 - BUG/MINOR: lua: Useless copy
15029 - BUG/MEDIUM: stats: stats bind-process doesn't propagate the process mask correctly
15030 - BUG/MINOR: server: fix the format of the warning on address change
15031 - CLEANUP: server: add "const" to some message strings
15032 - MINOR: server: generalize the "updater" source
15033 - BUG/MEDIUM: chunks: always reject negative-length chunks
15034 - BUG/MINOR: systemd: ensure we don't miss signals
15035 - BUG/MINOR: systemd: report the correct signal in debug message output
15036 - BUG/MINOR: systemd: propagate the correct signal to haproxy
15037 - MINOR: systemd: ensure a reload doesn't mask a stop
15038 - BUG/MEDIUM: cfgparse: wrong argument offset after parsing server "sni" keyword
15039 - CLEANUP: stats: Avoid computation with uninitialized bits.
15040 - CLEANUP: pattern: Ignore unknown samples in pat_match_ip().
15041 - CLEANUP: map: Avoid memory leak in out-of-memory condition.
15042 - BUG/MINOR: tcpcheck: fix incorrect list usage resulting in failure to load certain configs
15043 - BUG/MAJOR: samples: check smp->strm before using it
15044 - MINOR: sample: add a new helper to initialize the owner of a sample
15045 - MINOR: sample: always set a new sample's owner before evaluating it
15046 - BUG/MAJOR: vars: always retrieve the stream and session from the sample
15047 - CLEANUP: payload: remove useless and confusing nullity checks for channel buffer
15048 - BUG/MINOR: ssl: fix usage of the various sample fetch functions
15049 - MINOR: stats: create fields types suitable for all CSV output data
15050 - MINOR: stats: add all the "show info" fields in a table
15051 - MEDIUM: stats: fill all the show info elements prior to displaying them
15052 - MINOR: stats: add a function to emit fields into a chunk
15053 - MINOR: stats: add stats_dump_info_fields() to dump one field per line
15054 - MEDIUM: stats: make use of stats_dump_info_fields() for "show info"
15055 - MINOR: stats: add a declaration of all stats fields
15056 - MINOR: stats: don't hard-code the CSV fields list anymore
15057 - MINOR: stats: create stats fields storage and CSV dump function
15058 - MEDIUM: stats: convert stats_dump_fe_stats() to use stats_dump_fields_csv()
15059 - MEDIUM: stats: make stats_dump_fe_stats() use stats fields for HTML dump
15060 - MEDIUM: stats: convert stats_dump_li_stats() to use stats_dump_fields_csv()
15061 - MEDIUM: stats: make stats_dump_li_stats() use stats fields for HTML dump
15062 - MEDIUM: stats: convert stats_dump_be_stats() to use stats_dump_fields_csv()
15063 - MEDIUM: stats: make stats_dump_be_stats() use stats fields for HTML dump
15064 - MEDIUM: stats: convert stats_dump_sv_stats() to use stats_dump_fields_csv()
15065 - MEDIUM: stats: make stats_dump_sv_stats() use the stats field for HTML
15066 - MEDIUM: stats: move the server state coloring logic to the server dump function
15067 - MINOR: stats: do not use srv->admin & STATS_ADMF_MAINT in HTML dumps
15068 - MINOR: stats: do not check srv->state for SRV_ST_STOPPED in HTML dumps
15069 - MINOR: stats: make CSV report server check status only when enabled
15070 - MINOR: stats: only report backend's down time if it has servers
15071 - MINOR: stats: prepend '*' in front of the check status when in progress
15072 - MINOR: stats: make HTML stats dump rely on the table for the check status
15073 - MINOR: stats: add agent_status, agent_code, agent_duration to output
15074 - MINOR: stats: add check_desc and agent_desc to the output fields
15075 - MINOR: stats: add check and agent's health values in the output
15076 - MEDIUM: stats: make the HTML server state dump use the CSV states
15077 - MEDIUM: stats: only report observe errors when observe is set
15078 - MEDIUM: stats: expose the same flags for CLI and HTTP accesses
15079 - MEDIUM: stats: report server's address in the CSV output
15080 - MEDIUM: stats: report the cookie value in the server & backend CSV dumps
15081 - MEDIUM: stats: compute the color code only in the HTML form
15082 - MEDIUM: stats: report the listeners' address in the CSV output
15083 - MEDIUM: stats: make it possible to report the WAITING state for listeners
15084 - REORG: stats: dump the frontend's HTML stats via a generic function
15085 - REORG: stats: dump the socket stats via the generic function
15086 - REORG: stats: dump the server stats via the generic function
15087 - REORG: stats: dump the backend stats via the generic function
15088 - MEDIUM: stats: add a new "mode" column to report the proxy mode
15089 - MINOR: stats: report the load balancing algorithm in CSV output
15090 - MINOR: stats: add 3 fields to report the frontend-specific connection stats
15091 - MINOR: stats: report number of intercepted requests for frontend and backends
15092 - MINOR: stats: introduce stats_dump_one_line() to dump one stats line
15093 - CLEANUP: stats: make stats_dump_fields_html() not rely on proxy anymore
15094 - MINOR: stats: add ST_SHOWADMIN to pass the admin info in the regular flags
15095 - MINOR: stats: make stats_dump_fields_html() not use &trash by default
15096 - MINOR: stats: add functions to emit typed fields into a chunk
15097 - MEDIUM: stats: support "show info typed" on the CLI
15098 - MEDIUM: stats: implement a typed output format for stats
15099 - DOC: document the "show info typed" and "show stat typed" output formats
15100 - MINOR: cfgparse: warn when uid parameter is not a number
15101 - MINOR: cfgparse: warn when gid parameter is not a number
15102 - BUG/MINOR: standard: Avoid free of non-allocated pointer
15103 - BUG/MINOR: pattern: Avoid memory leak on out-of-memory condition
15104 - CLEANUP: http: fix a build warning introduced by a recent fix
15105 - BUG/MINOR: log: GMT offset not updated when entering/leaving DST
15106
Willy Tarreaucb928252015-12-20 23:33:18 +0100151072015/12/20 : 1.7-dev1
15108 - DOC: specify that stats socket doc (section 9.2) is in management
15109 - BUILD: install only relevant and existing documentation
15110 - CLEANUP: don't ignore debian/ directory if present
15111 - BUG/MINOR: dns: parsing error of some DNS response
15112 - BUG/MEDIUM: namespaces: don't fail if no namespace is used
15113 - BUG/MAJOR: ssl: free the generated SSL_CTX if the LRU cache is disabled
15114 - MEDIUM: dns: Don't use the ANY query type
15115 - BUILD: ssl: fix build error introduced in commit 7969a3 with OpenSSL < 1.0.0
15116 - DOC: fix a typo for a "deviceatlas" keyword
15117 - FIX: small typo in an example using the "Referer" header
15118 - MINOR: cli: ability to set per-server maxconn
15119 - DEBUG/MINOR: memory: add a build option to disable memory pools sharing
15120 - DEBUG/MEDIUM: memory: optionally protect free data in pools
15121 - DEBUG/MEDIUM: memory: add optional control pool memory operations
15122 - MEDIUM: memory: add accounting for failed allocations
15123 - BUG/MEDIUM: config: count memory limits on 64 bits, not 32
15124 - BUG/MAJOR: dns: first DNS response packet not matching queried hostname may lead to a loop
15125 - BUG/MINOR: dns: unable to parse CNAMEs response
15126 - BUG/MINOR: examples/haproxy.init: missing brace in quiet_check()
15127 - DOC: deviceatlas: more example use cases.
15128 - MINOR: config: allow IPv6 bracketed literals
15129 - BUG/BUILD: replace haproxy-systemd-wrapper with $(EXTRA) in install-bin.
15130 - BUILD: add Haiku as supported target.
15131 - BUG/MAJOR: http: don't requeue an idle connection that is already queued
15132 - DOC: typo on capture.res.hdr and capture.req.hdr
15133 - BUG/MINOR: dns: check for duplicate nameserver id in a resolvers section was missing
15134 - CLEANUP: use direction names in place of numeric values
15135 - BUG/MEDIUM: lua: sample fetches based on response doesn't work
15136 - MINOR: check: add agent-send server parameter
15137 - BUG/MINOR: http rule: http capture 'id' rule points to a non existing id
15138 - BUG/MINOR: server: check return value of fgets() in apply_server_state()
15139 - BUG/MINOR: acl: don't use record layer in req_ssl_ver
15140 - BUILD: freebsd: double declaration
15141 - BUG/MEDIUM: lua: clean output buffer
15142 - BUILD: check for libressl to be able to build against it
15143 - DOC: lua-api/index.rst small example fixes, spelling correction.
15144 - DOC: lua: architecture and first steps
15145 - DOC: relation between timeout http-request and option http-buffer-request
15146 - BUILD: Make deviceatlas require PCRE
15147 - BUG: http: do not abort keep-alive connections on server timeout
15148 - BUG/MEDIUM: http: switch the request channel to no-delay once done.
15149 - BUG/MINOR: lua: don't force-sslv3 LUA's SSL socket
15150 - BUILD/MINOR: http: proto_http.h needs sample.h
15151 - BUG/MEDIUM: http: don't enable auto-close on the response side
15152 - BUG/MEDIUM: stream: fix half-closed timeout handling
15153 - CLEANUP: compression: don't allocate DEFAULT_MAXZLIBMEM without USE_ZLIB
15154 - BUG/MEDIUM: cli: changing compression rate-limiting must require admin level
15155 - BUG/MEDIUM: sample: urlp can't match an empty value
15156 - BUILD: dumpstats: silencing warning for printf format specifier / time_t
15157 - CLEANUP: proxy: calloc call inverted arguments
15158 - MINOR: da: silent logging by default and displaying DeviceAtlas support if built.
15159 - BUG/MEDIUM: da: stop DeviceAtlas processing in the convertor if there is no input.
15160 - DOC: Edited 51Degrees section of README/
15161 - BUG/MEDIUM: checks: email-alert not working when declared in defaults
15162 - BUG/MINOR: checks: email-alert causes a segfault when an unknown mailers section is configured
15163 - BUG/MINOR: checks: typo in an email-alert error message
15164 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and last rule is a CONNECT with no port
15165 - BUG/MINOR: tcpcheck: conf parsing error when no port configured on server and first rule(s) is (are) COMMENT
15166 - BUG/MEDIUM: http: fix http-reuse when frontend and backend differ
15167 - DOC: prefer using http-request/response over reqXXX/rspXXX directives
15168 - CLEANUP: haproxy: using _GNU_SOURCE instead of __USE_GNU macro.
15169 - MINOR: ssl: Added cert_key_and_chain struct
15170 - MEDIUM: ssl: Added support for creating SSL_CTX with multiple certs
15171 - MINOR: ssl: Added multi cert support for crt-list config keyword
15172 - MEDIUM: ssl: Added multi cert support for loading crt directories
15173 - MEDIUM: ssl: Added support for Multi-Cert OCSP Stapling
15174 - BUILD: ssl: set SSL_SOCK_NUM_KEYTYPES with openssl < 1.0.2
15175 - MINOR: config: make tune.recv_enough configurable
15176 - BUG/MEDIUM: config: properly adjust maxconn with nbproc when memmax is forced
15177 - DOC: ssl: Adding docs for Multi-Cert bundling
15178 - BUG/MEDIUM: peers: table entries learned from a remote are pushed to others after a random delay.
15179 - BUG/MEDIUM: peers: old stick table updates could be repushed.
15180 - MINOR: lua: service/applet can have access to the HTTP headers when a POST is received
15181 - REORG/MINOR: lua: convert boolean "int" to bitfield
15182 - BUG/MEDIUM: lua: Lua applets must not fetch samples using http_txn
15183 - BUG/MINOR: lua: Lua applets must not use http_txn
15184 - BUG/MEDIUM: lua: Forbid HTTP applets from being called from tcp rulesets
15185 - BUG/MAJOR: lua: Do not force the HTTP analysers in use-services
15186 - CLEANUP: lua: bad error messages
15187 - CONTRIB: initiate a debugging suite to make debugging easier
15188
Willy Tarreau991b4782015-10-13 21:48:10 +0200151892015/10/13 : 1.7-dev0
15190 - exact copy of 1.6.0
15191
Willy Tarreau844028b2015-10-13 18:52:22 +0200151922015/10/13 : 1.6.0
15193 - BUG/MINOR: Handle interactive mode in cli handler
15194 - DOC: global section missing parameters
15195 - DOC: backend section missing parameters
15196 - DOC: stats paramaters available in frontend
15197 - MINOR: lru: do not allocate useless memory in lru64_lookup
15198 - BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
15199 - BUG/MINOR: ssl: fix management of the cache where forged certificates are stored
15200 - MINOR: ssl: Release Servers SSL context when HAProxy is shut down
15201 - MINOR: ssl: Read the file used to generate certificates in any order
15202 - MINOR: ssl: Add support for EC for the CA used to sign generated certificates
15203 - MINOR: ssl: Add callbacks to set DH/ECDH params for generated certificates
15204 - BUG/MEDIUM: logs: fix time zone offset format in RFC5424
15205 - BUILD: Fix the build on OSX (htonll/ntohll)
15206 - BUILD: enable build on Linux/s390x
15207 - BUG/MEDIUM: lua: direction test failed
15208 - MINOR: lua: fix a spelling error in some error messages
15209 - CLEANUP: cli: ensure we can never double-free error messages
15210 - BUG/MEDIUM: lua: force server-close mode on Lua services
15211 - MEDIUM: init: support more command line arguments after pid list
15212 - MEDIUM: init: support a list of files on the command line
15213 - MINOR: debug: enable memory poisonning to use byte 0
15214 - BUILD: ssl: fix build error introduced by recent commit
15215 - BUG/MINOR: config: make the stats socket pass the correct proxy to the parsers
15216 - MEDIUM: server: implement TCP_USER_TIMEOUT on the server
15217 - DOC: mention the "namespace" options for bind and server lines
15218 - DOC: add the "management" documentation
15219 - DOC: move the stats socket documentation from config to management
15220 - MINOR: examples: update haproxy.spec to mention new docs
15221 - DOC: mention management.txt in README
15222 - DOC: remove haproxy-{en,fr}.txt
15223 - BUILD: properly report when USE_ZLIB and USE_SLZ are used together
15224 - MINOR: init: report use of libslz instead of "no compression"
15225 - CLEANUP: examples: remove some obsolete and confusing files
15226 - CLEANUP: examples: remove obsolete configuration file samples
15227 - CLEANUP: examples: fix the example file content-sw-sample.cfg
15228 - CLEANUP: examples: update sample file option-http_proxy.cfg
15229 - CLEANUP: examples: update sample file ssl.cfg
15230 - CLEANUP: tests: move a test file from examples/ to tests/
15231 - CLEANUP: examples: shut up warnings in transparent proxy example
15232 - CLEANUP: tests: removed completely obsolete test files
15233 - DOC: update ROADMAP to remove what was done in 1.6
15234 - BUG/MEDIUM: pattern: fixup use_after_free in the pat_ref_delete_by_id
15235
Willy Tarreau8c1ad712015-10-06 12:13:56 +0200152362015/10/06 : 1.6-dev7
15237 - MINOR: cli: Dump all resolvers stats if no resolver section is given
15238 - BUG: config: external-check command validation is checking for incorrect arguments.
15239 - DOC: documentation format cleanups
15240 - DOC: lua: few typos.
15241 - BUG/MEDIUM: str2ip: make getaddrinfo() consider local address selection policy
15242 - BUG/MEDIUM: logs: segfault writing to log from Lua
15243 - DOC: fix lua use-service example
15244 - MINOR: payload: add support for tls session ticket ext
15245 - MINOR: lua: remove the run flag
15246 - MEDIUM: lua: change the timeout execution
15247 - MINOR: lua: rename the tune.lua.applet-timeout
15248 - DOC: lua: update Lua doc
15249 - DOC: lua: update doc according with the last Lua changes
15250 - MINOR: http/tcp: fill the avalaible actions
15251 - DOC: reorder misplaced res.ssl_hello_type in the doc
15252 - BUG/MINOR: tcp: make silent-drop always force a TCP reset
15253 - CLEANUP: tcp: silent-drop: only drain the connection when quick-ack is disabled
15254 - BUILD: tcp: use IPPROTO_IP when SOL_IP is not available
15255 - BUILD: server: fix build warnings introduced by load-server-state
15256 - BUG/MEDIUM: server: fix misuse of format string in load-server-state's warnings
15257
Willy Tarreaue7ae6562015-09-28 23:46:27 +0200152582015/09/28 : 1.6-dev6
15259 - BUG/MAJOR: can't enable a server through the stat socket
15260 - MINOR: server: Macro definition for server-state
15261 - MINOR: cli: new stats socket command: show servers state
15262 - DOC: stats socket command: show servers state
15263 - MINOR: config: new global directive server-state-base
15264 - DOC: global directive server-state-base
15265 - MINOR: config: new global section directive: server-state-file
15266 - DOC: new global directive: server-state-file
15267 - MINOR: config: new backend directives: load-server-state-from-file and server-state-file-name
15268 - DOC: load-server-state-from-file
15269 - MINOR: init: server state loaded from file
15270 - MINOR: server: startup slowstart task when using seamless reload of HAProxy
15271 - MINOR: cli: new stats socket command: show backend
15272 - DOC: servers state seamless reload example
15273 - BUG: dns: can't connect UDP socket on FreeBSD
15274 - MINOR: cfgparse: New function cfg_unregister_sections()
15275 - MINOR: chunk: New function free_trash_buffers()
15276 - BUG/MEDIUM: main: Freeing a bunch of static pointers
15277 - MINOR: proto_http: Externalisation of previously internal functions
15278 - MINOR: global: Few new struct fields for da module
15279 - MAJOR: da: Update of the DeviceAtlas API module
15280 - DOC: DeviceAtlas new keywords
15281 - DOC: README: DeviceAtlas sample configuration updates
15282 - MEDIUM: log: replace sendto() with sendmsg() in __send_log()
15283 - MEDIUM: log: use a separate buffer for the header and for the message
15284 - MEDIUM: logs: remove the hostname, tag and pid part from the logheader
15285 - MEDIUM: logs: add support for RFC5424 header format per logger
15286 - MEDIUM: logs: add a new RFC5424 log-format for the structured-data
15287 - DOC: mention support for the RFC5424 syslog message format
15288 - MEDIUM: logs: have global.log_send_hostname not contain the trailing space
15289 - MEDIUM: logs: pass the trailing "\n" as an iovec
15290 - BUG/MEDIUM: peers: some table updates are randomly not pushed.
15291 - BUG/MEDIUM: peers: same table updates re-pushed after a re-connect
15292 - BUG/MINOR: fct peer_prepare_ackmsg should not use trash.
15293 - MINOR: http: made CHECK_HTTP_MESSAGE_FIRST accessible to other functions
15294 - MINOR: global: Added new fields for 51Degrees device detection
15295 - DOC: Added more explanation for 51Degrees V3.2
15296 - BUILD: Changed 51Degrees option to support V3.2
15297 - MAJOR: 51d: Upgraded to support 51Degrees V3.2 and new features
15298 - MINOR: 51d: Improved string handling for LRU cache
15299 - DOC: add references to rise/fall for the fastinter explanation
15300 - MINOR: support cpu-map feature through the compile option USE_CPU_AFFINITY on FreeBSD
15301 - BUG/MAJOR: lua: potential unexpected aborts()
15302 - BUG/MINOR: lua: breaks the log message if his size exceed one buffer
15303 - MINOR: action: add private configuration
15304 - MINOR: action: add reference to the original keywork matched for the called parser.
15305 - MINOR: lua: change actions registration
15306 - MEDIUM: proto_http: smp_prefetch_http initialize txn
15307 - MINOR: channel: rename function chn_sess to chn_strm
15308 - CLEANUP: lua: align defines
15309 - MINOR: http: export http_get_path() function
15310 - MINOR: http: export the get_reason() function
15311 - MINOR: http: export function http_msg_analyzer()
15312 - MINOR: http: split initialization
15313 - MINOR: lua: reset pointer after use
15314 - MINOR: lua: identify userdata objects
15315 - MEDIUM: lua: use the function lua_rawset in place of lua_settable
15316 - BUG/MAJOR: lua: segfault after the channel data is modified by some Lua action.
15317 - CLEANUP: lua: use calloc in place of malloc
15318 - BUG/MEDIUM: lua: longjmp function must be unregistered
15319 - BUG/MEDIUM: lua: forces a garbage collection
15320 - BUG/MEDIUM: lua: wakeup task on bad conditions
15321 - MINOR: standard: avoid DNS resolution from the function str2sa_range()
15322 - MINOR: lua: extend socket address to support non-IP families
15323 - MINOR: lua/applet: the cosocket applet should use appctx_wakeup in place of task_wakeup
15324 - BUG/MEDIUM: lua: socket destroy before reading pending data
15325 - MEDIUM: lua: change the GC policy
15326 - OPTIM/MEDIUM: lua: executes the garbage collector only when using cosocket
15327 - BUG/MEDIUM: lua: don't reset undesired flags in hlua_ctx_resume
15328 - MINOR: applet: add init function
15329 - MINOR: applet: add an execution timeout
15330 - MINOR: stream/applet: add use-service action
15331 - MINOR: lua: add AppletTCP class and service
15332 - MINOR: lua: add AppletHTTP class and service
15333 - DOC: lua: some documentation update
15334 - DOC: add the documentation about internal circular lists
15335 - DOC: add a CONTRIBUTING file
15336 - DOC: add a MAINTAINERS file
15337 - BUG/MAJOR: peers: fix a crash when stopping peers on unbound processes
15338 - DOC: update coding-style to reference checkpatch.pl
15339 - BUG/MEDIUM: stick-tables: fix double-decrement of tracked entries
15340 - BUG/MINOR: args: add name for ARGT_VAR
15341 - DOC: add more entries to MAINTAINERS
15342 - DOC: add more entries to MAINTAINERS
15343 - CLEANUP: stream-int: remove obsolete function si_applet_call()
15344 - BUG/MAJOR: cli: do not dereference strm_li()->proto->name
15345 - BUG/MEDIUM: http: do not dereference strm_li(stream)
15346 - BUG/MEDIUM: proxy: do not dereference strm_li(stream)
15347 - BUG/MEDIUM: stream: do not dereference strm_li(stream)
15348 - MINOR: stream-int: use si_release_endpoint() to close idle conns
15349 - BUG/MEDIUM: payload: make req.payload and payload_lv aware of dynamic buffers
15350 - BUG/MEDIUM: acl: always accept match "found"
15351 - MINOR: applet: rename applet_runq to applet_active_queue
15352 - BUG/MAJOR: applet: use a separate run queue to maintain list integrity
15353 - MEDIUM: stream-int: split stream_int_update_conn() into si- and conn-specific parts
15354 - MINOR: stream-int: implement a new stream_int_update() function
15355 - MEDIUM: stream-int: factor out the stream update functions
15356 - MEDIUM: stream-int: call stream_int_update() from si_update()
15357 - MINOR: stream-int: export stream_int_update_*
15358 - MINOR: stream-int: move the applet_pause call out of the stream updates
15359 - MEDIUM: stream-int: clean up the conditions to enable reading in si_conn_wake_cb
15360 - MINOR: stream-int: implement the stream_int_notify() function
15361 - MEDIUM: stream-int: use the same stream notification function for applets and conns
15362 - MEDIUM: stream-int: completely remove stream_int_update_embedded()
15363 - MINOR: stream-int: rename si_applet_done() to si_applet_wake_cb()
15364 - BUG/MEDIUM: applet: fix reporting of broken write situation
15365 - BUG/MINOR: stats: do not call cli_release_handler 3 times
15366 - BUG/MEDIUM: cli: properly handle closed output
15367 - MINOR: cli: do not call the release handler on internal error.
15368 - BUG/MEDIUM: stream-int: avoid double-call to applet->release
15369 - DEBUG: add p_malloc() to return a poisonned memory area
15370 - CLEANUP: lua: remove unneeded memset(0) after calloc()
15371 - MINOR: lua: use the proper applet wakeup mechanism
15372 - BUG/MEDIUM: lua: better fix for the protocol check
15373 - BUG/MEDIUM: lua: properly set the target on the connection
15374 - MEDIUM: actions: pass a new "flags" argument to custom actions
15375 - MEDIUM: actions: add new flag ACT_FLAG_FINAL to notify about last call
15376 - MEDIUM: http: pass ACT_FLAG_FINAL to custom actions
15377 - MEDIUM: lua: only allow actions to yield if not in a final call
15378 - DOC: clarify how to make use of abstract sockets in socat
15379 - CLEANUP: config: make the errorloc/errorfile messages less confusing
15380 - MEDIUM: action: add a new flag ACT_FLAG_FIRST
15381 - BUG/MINOR: config: check that tune.bufsize is always positive
15382 - MEDIUM: config: set tune.maxrewrite to 1024 by default
15383 - DOC: add David Carlier as maintainer of da.c
15384 - DOC: fix some broken unexpected unicode chars in the Lua doc.
15385 - BUG/MEDIUM: proxy: ignore stopped peers
15386 - BUG/MEDIUM: proxy: do not wake stopped proxies' tasks during soft_stop()
15387 - MEDIUM: init: completely deallocate unused peers
15388 - BUG/MEDIUM: tcp: fix inverted condition to call custom actions
15389 - DOC: remove outdated actions lists on tcp-request/response
15390 - MEDIUM: tcp: add new tcp action "silent-drop"
15391 - DOC: add URLs to optional libraries in the README
15392
Willy Tarreaua02e8a62015-09-14 12:23:10 +0200153932015/09/14 : 1.6-dev5
15394 - MINOR: dns: dns_resolution structure update: time_t to unsigned int
15395 - BUG/MEDIUM: dns: DNS resolution doesn't start
15396 - BUG/MAJOR: dns: dns client resolution infinite loop
15397 - MINOR: dns: coding style update
15398 - MINOR: dns: new bitmasks to use against DNS flags
15399 - MINOR: dns: dns_nameserver structure update: new counter for truncated response
15400 - MINOR: dns: New DNS response analysis code: DNS_RESP_TRUNCATED
15401 - MEDIUM: dns: handling of truncated response
15402 - MINOR: DNS client query type failover management
15403 - MINOR: dns: no expected DNS record type found
15404 - MINOR: dns: new flag to report that no IP can be found in a DNS response packet
15405 - BUG/MINOR: DNS request retry counter used for retry only
15406 - DOC: DNS documentation updated
15407 - MEDIUM: actions: remove ACTION_STOP
15408 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2 (bis)
15409 - BUG/MINOR: lua: last log character truncated.
15410 - CLEANUP: typo: bad indent
15411 - CLEANUP: actions: missplaced includes
15412 - MINOR: build: missing header
15413 - CLEANUP: lua: Merge log functions
15414 - BUG/MAJOR: http: don't manipulate the server connection if it's killed
15415 - BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
15416 - BUG/MAJOR: http: don't call http_send_name_header() after an error
15417 - MEDIUM: tools: make str2sa_range() optionally return the FQDN
15418 - BUG/MINOR: tools: make str2sa_range() report unresolvable addresses
15419 - BUG/MEDIUM: dns: use the correct server hostname when resolving
15420
Willy Tarreau61d301f2015-08-30 00:17:17 +0200154212015/08/30 : 1.6-dev4
15422 - MINOR: log: Add log-format variable %HQ, to log HTTP query strings
15423 - DOC: typo in 'redirect', 302 code meaning
15424 - DOC: typos in tcp-check expect examples
15425 - DOC: resolve-prefer default value and default-server update
15426 - MINOR: DNS counters: increment valid counter
15427 - BUG/MEDIUM: DNS resolution response parsing broken
15428 - MINOR: server: add new SRV_ADMF_CMAINT flag
15429 - MINOR: server SRV_ADMF_CMAINT flag doesn't imply SRV_ADMF_FMAINT
15430 - BUG/MEDIUM: dns: wrong first time DNS resolution
15431 - BUG/MEDIUM: lua: Lua tasks fail to start.
15432 - BUILD: add USE_LUA to BUILD_OPTIONS when it's used
15433 - DOC/MINOR: fix OpenBSD versions where haproxy works
15434 - MINOR: 51d: unable to start haproxy without "51degrees-data-file"
15435 - BUG/MEDIUM: peers: fix wrong message id on stick table updates acknowledgement.
15436 - BUG/MAJOR: peers: fix current table pointer not re-initialized on session release.
15437 - BUILD: ssl: Allow building against libssl without SSLv3.
15438 - DOC: clarify some points about SSL and the proxy protocol
15439 - DOC: mention support for RFC 5077 TLS Ticket extension in starter guide
15440 - BUG/MEDIUM: mailer: DATA part must be terminated with <CRLF>.<CRLF>
15441 - DOC: match several lua configuration option names to those implemented in code
15442 - MINOR cfgparse: Correct the mailer warning text to show the right names to the user
15443 - BUG/MINOR: ssl: TLS Ticket Key rotation broken via socket command
15444 - MINOR: stream: initialize the current_rule field to NULL on stream init
15445 - BUG/MEDIUM: lua: timeout error with converters, wrapper and actions.
15446 - CLEANUP: proto_http: remove useless initialisation
15447 - CLEANUP: http/tcp actions: remove the scope member
15448 - BUG/MINOR: proto_tcp: custom action continue is ignored
15449 - MINOR: proto_tcp: add session in the action prototype
15450 - MINOR: vars: reduce the code size of some wrappers
15451 - MINOR: Move http method enum from proto_http to sample
15452 - MINOR: sample: Add ipv6 to ipv4 and sint to ipv6 casts
15453 - MINOR: sample/proto_tcp: export "smp_fetch_src"
15454 - MEDIUM: cli: rely on the map's output type instead of the sample type
15455 - BUG/MEDIUM: stream: The stream doen't inherit SC from the session
15456 - BUG/MEDIUM: vars: segfault during the configuration parsing
15457 - BUG/MEDIUM: stick-tables: refcount error after copying SC for the session to the stream
15458 - BUG/MEDIUM: lua: bad error processing
15459 - MINOR: samples: rename a struct from sample_storage to sample_data
15460 - MINOR: samples: rename some struct member from "smp" to "data"
15461 - MEDIUM: samples: Use the "struct sample_data" in the "struct sample"
15462 - MINOR: samples: extract the anonymous union and create the union sample_value
15463 - MINOR: samples: rename union from "data" to "u"
15464 - MEDIUM: 51degrees: Adapt the 51Degrees library
15465 - MINOR: samples: data assignation simplification
15466 - MEDIUM: pattern/map: Maps can returns various types
15467 - MINOR: map: The map can return IPv4 and IPv6
15468 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) action structs
15469 - MINOR: actions: Remove the data opaque pointer
15470 - MINOR: lua: use the hlua_rule type in place of opaque type
15471 - MINOR: vars: use the vars types as argument in place of opaque type
15472 - MINOR: proto_http: use an "expr" type in place of generic opaque type.
15473 - MINOR: proto_http: replace generic opaque types by real used types for the actions on thr request line
15474 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture"
15475 - MINOR: proto_http: replace generic opaque types by real used types in "http_capture" by id
15476 - MEDIUM: track-sc: Move the track-sc configuration storage in the union
15477 - MEDIUM: capture: Move the capture configuration storage in the union
15478 - MINOR: actions: add "from" information
15479 - MINOR: actions: remove the mark indicating the last entry in enum
15480 - MINOR: actions: Declare all the embedded actions in the same header file
15481 - MINOR: actions: change actions names
15482 - MEDIUM: actions: Add standard return code for the action API
15483 - MEDIUM: actions: Merge (http|tcp)-(request|reponse) keywords structs
15484 - MINOR: proto_tcp: proto_tcp.h is now useles
15485 - MINOR: actions: mutualise the action keyword lookup
15486 - MEDIUM: actions: Normalize the return code of the configuration parsers
15487 - MINOR: actions: Remove wrappers
15488 - MAJOR: stick-tables: use sample types in place of dedicated types
15489 - MEDIUM: stick-tables: use the sample type names
15490 - MAJOR: stick-tables: remove key storage from the key struct
15491 - MEDIUM: stick-tables: Add GPT0 in the stick tables
15492 - MINOR: stick-tables: Add GPT0 access
15493 - MINOR: stick-tables: Add GPC0 actions
15494 - BUG/MEDIUM: lua: the lua fucntion Channel:close() causes a segfault
15495 - DOC: ssl: missing LF
15496 - MINOR: lua: add core.done() function
15497 - DOC: fix function name
15498 - BUG/MINOR: lua: in some case a sample may remain undefined
15499 - DOC: fix "http_action_set_req_line()" comments
15500 - MINOR: http: Action for manipulating the returned status code.
15501 - MEDIUM: lua: turns txn:close into txn:done
15502 - BUG/MEDIUM: lua: cannot process more Lua hooks after a "done()" function call
15503 - BUILD: link with libdl if needed for Lua support
15504 - CLEANUP: backend: factor out objt_server() in connect_server()
15505 - MEDIUM: backend: don't call si_alloc_conn() when we reuse a valid connection
15506 - MEDIUM: stream-int: simplify si_alloc_conn()
15507 - MINOR: stream-int: add new function si_detach_endpoint()
15508 - MINOR: server: add a list of private idle connections
15509 - MINOR: connection: add a new list member in the connection struct
15510 - MEDIUM: stream-int: queue idle connections at the server
15511 - MINOR: stream-int: make si_idle_conn() only accept valid connections
15512 - MINOR: server: add a list of already used idle connections
15513 - MINOR: connection: add a new flag CO_FL_PRIVATE
15514 - MINOR: config: add new setting "http-reuse"
15515 - MAJOR: backend: initial work towards connection reuse
15516 - MAJOR: backend: improve the connection reuse mechanism
15517 - MEDIUM: backend: implement "http-reuse safe"
15518 - MINOR: server: add a list of safe, already reused idle connections
15519 - MEDIUM: backend: add the "http-reuse aggressive" strategy
15520 - DOC: document the new http-reuse directive
15521 - DOC: internals: document next steps for HTTP connection reuse
15522 - DOC: mention that %ms is left-padded with zeroes.
15523 - MINOR: init: indicate to check 'bind' lines when no listeners were found.
15524 - MAJOR: http: remove references to appsession
15525 - CLEANUP: config: remove appsession initialization
15526 - CLEANUP: appsession: remove appsession.c and sessionhash.c
15527 - CLEANUP: tests: remove sessionhash_test.c and test-cookie-appsess.cfg
15528 - CLEANUP: proxy: remove last references to appsession
15529 - CLEANUP: appsession: remove the last include files
15530 - DOC: remove documentation about appsession
15531 - CLEANUP: .gitignore: ignore more test files
15532 - CLEANUP: .gitignore: finally ignore everything but what is known.
15533 - MEDIUM: config: emit a warning on a frontend without listener
15534 - DOC: add doc/internals/entities-v2.txt
15535 - DOC: add doc/linux-syn-cookies.txt
15536 - DOC: add design thoughts on HTTP/2
15537 - DOC: add some thoughts on connection sharing for HTTP/2
15538 - DOC: add design thoughts on dynamic buffer allocation
15539 - BUG/MEDIUM: counters: ensure that src_{inc,clr}_gpc0 creates a missing entry
15540 - DOC: add new file intro.txt
15541 - MAJOR: tproxy: remove support for cttproxy
15542 - BUG/MEDIUM: lua: outgoing connection was broken since 1.6-dev2
15543 - DOC: lua: replace txn:close with txn:done in lua-api
15544 - DOC: intro: minor updates and fixes
15545 - DOC: intro: fix too long line.
15546 - DOC: fix example of http-request using ssl_fc_session_id
15547 - BUG/MEDIUM: lua: txn:done() still causes a segfault in TCP mode
15548 - CLEANUP: lua: fix some indent issues
15549 - BUG/MEDIUM: lua: fix a segfault in txn:done() if called twice
15550 - DOC: lua: mention than txn:close was renamed txn:done.
15551
Willy Tarreau50bdda62015-07-22 17:32:56 +0200155522015/07/22 : 1.6-dev3
15553 - CLEANUP: sample: generalize sample_fetch_string() as sample_fetch_as_type()
15554 - MEDIUM: http: Add new 'set-src' option to http-request
15555 - DOC usesrc root privileges requirments
15556 - BUG/MINOR: dns: wrong time unit for some DNS default parameters
15557 - MINOR: proxy: bit field for proxy_find_best_match diff status
15558 - MINOR: server: new server flag: SRV_F_FORCED_ID
15559 - MINOR: server: server_find functions: id, name, best_match
15560 - DOC: dns: fix chapters syntax
15561 - BUILD/MINOR: tools: rename popcount to my_popcountl
15562 - BUILD: add netbsd TARGET
15563 - MEDIUM: 51Degrees code refactoring and cleanup
15564 - MEDIUM: 51d: add LRU-based cache on User-Agent string detection
15565 - DOC: add notes about the "51degrees-cache-size" parameter
15566 - BUG/MEDIUM: 51d: possible incorrect operations on smp->data.str.str
15567 - BUG/MAJOR: connection: fix TLV offset calculation for proxy protocol v2 parsing
15568 - MINOR: Add sample fetch to detect Supported Elliptic Curves Extension
15569 - BUG/MINOR: payload: Add volatile flag to smp_fetch_req_ssl_ec_ext
15570 - BUG/MINOR: lua: type error in the arguments wrapper
15571 - CLEANUP: vars: remove unused struct
15572 - BUG/MINOR: http/sample: gmtime/localtime can fail
15573 - MINOR: standard: add 64 bits conversion functions
15574 - MAJOR: sample: converts uint and sint in 64 bits signed integer
15575 - MAJOR: arg: converts uint and sint in sint
15576 - MEDIUM: sample: switch to saturated arithmetic
15577 - MINOR: vars: returns variable content
15578 - MEDIUM: vars/sample: operators can use variables as parameter
15579 - BUG/MINOR: ssl: fix smp_fetch_ssl_fc_session_id
15580 - BUILD/MINOR: lua: fix a harmless build warning
15581 - BUILD/MINOR: stats: fix build warning due to condition always true
15582 - BUG/MAJOR: lru: fix unconditional call to free due to unexpected semi-colon
15583 - BUG/MEDIUM: logs: fix improper systematic use of quotes with a few tags
15584 - BUILD/MINOR: lua: ensure that hlua_ctx_destroy is properly defined
15585 - BUG/MEDIUM: lru: fix possible memory leak when ->free() is used
15586 - MINOR: vars: make the accounting not depend on the stream
15587 - MEDIUM: vars: move the session variables to the session, not the stream
15588 - BUG/MEDIUM: vars: do not freeze the connection when the expression cannot be fetched
15589 - BUG/MAJOR: buffers: make the buffer_slow_realign() function respect output data
15590 - BUG/MAJOR: tcp: tcp rulesets were still broken
15591 - MINOR: stats: improve compression stats reporting
15592 - MINOR: ssl: make self-generated certs also work with raw IPv6 addresses
15593 - CLEANUP: ssl: make ssl_sock_generated_cert_serial() take a const
15594 - CLEANUP: ssl: make ssl_sock_generate_certificate() use ssl_sock_generated_cert_serial()
15595 - BUG/MINOR: log: missing some ARGC_* entries in fmt_directives()
15596 - MINOR: args: add new context for servers
15597 - MINOR: stream: maintain consistence between channel_forward and HTTP forward
15598 - MINOR: ssl: provide ia function to set the SNI extension on a connection
15599 - MEDIUM: ssl: add sni support on the server lines
15600 - CLEANUP: stream: remove a useless call to si_detach()
15601 - CLEANUP: stream-int: fix a few outdated comments about stream_int_register_handler()
15602 - CLEANUP: stream-int: remove stream_int_unregister_handler() and si_detach()
15603 - MINOR: stream-int: only use si_release_endpoint() to release a connection
15604 - MINOR: standard: provide htonll() and ntohll()
15605 - CLEANUP/MINOR: dns: dns_str_to_dn_label() only needs a const char
15606 - BUG/MAJOR: dns: fix the length of the string to be copied
15607
Willy Tarreauad90f0d2015-06-17 15:53:25 +0200156082015/06/17 : 1.6-dev2
15609 - BUG/MINOR: ssl: Display correct filename in error message
15610 - MEDIUM: logs: Add HTTP request-line log format directives
15611 - BUG/MEDIUM: check: tcpcheck regression introduced by e16c1b3f
15612 - BUG/MINOR: check: fix tcpcheck error message
15613 - MINOR: use an int instead of calling tcpcheck_get_step_id
15614 - MINOR: tcpcheck_rule structure update
15615 - MINOR: include comment in tcpcheck error log
15616 - DOC: tcpcheck comment documentation
15617 - MEDIUM: server: add support for changing a server's address
15618 - MEDIUM: server: change server ip address from stats socket
15619 - MEDIUM: protocol: add minimalist UDP protocol client
15620 - MEDIUM: dns: implement a DNS resolver
15621 - MAJOR: server: add DNS-based server name resolution
15622 - DOC: server name resolution + proto DNS
15623 - MINOR: dns: add DNS statistics
15624 - MEDIUM: http: configurable http result codes for http-request deny
15625 - BUILD: Compile clean when debug options defined
15626 - MINOR: lru: Add the possibility to free data when an item is removed
15627 - MINOR: lru: Add lru64_lookup function
15628 - MEDIUM: ssl: Add options to forge SSL certificates
15629 - MINOR: ssl: Export functions to manipulate generated certificates
15630 - MEDIUM: config: add DeviceAtlas global keywords
15631 - MEDIUM: global: add the DeviceAtlas required elements to struct global
15632 - MEDIUM: sample: add the da-csv converter
15633 - MEDIUM: init: DeviceAtlas initialization
15634 - BUILD: Makefile: add options to build with DeviceAtlas
15635 - DOC: README: explain how to build with DeviceAtlas
15636 - BUG/MEDIUM: http: fix the url_param fetch
15637 - BUG/MEDIUM: init: segfault if global._51d_property_names is not initialized
15638 - MAJOR: peers: peers protocol version 2.0
15639 - MINOR: peers: avoid re-scheduling of pending stick-table's updates still not pushed.
15640 - MEDIUM: peers: re-schedule stick-table's entry for sync when data is modified.
15641 - MEDIUM: peers: support of any stick-table data-types for sync
15642 - BUG/MAJOR: sample: regression on sample cast to stick table types.
15643 - CLEANUP: deinit: remove codes for cleaning p->block_rules
15644 - DOC: Fix L4TOUT typo in documentation
15645 - DOC: set-log-level in Logging section preamble
15646 - BUG/MEDIUM: compat: fix segfault on FreeBSD
15647 - MEDIUM: check: include server address and port in the send-state header
15648 - MEDIUM: backend: Allow redispatch on retry intervals
15649 - MINOR: Add TLS ticket keys reference and use it in the listener struct
15650 - MEDIUM: Add support for updating TLS ticket keys via socket
15651 - DOC: Document new socket commands "show tls-keys" and "set ssl tls-key"
15652 - MINOR: Add sample fetch which identifies if the SSL session has been resumed
15653 - DOC: Update doc about weight, act and bck fields in the statistics
15654 - BUG/MEDIUM: ssl: fix tune.ssl.default-dh-param value being overwritten
15655 - MINOR: ssl: add a destructor to free allocated SSL ressources
15656 - MEDIUM: ssl: add the possibility to use a global DH parameters file
15657 - MEDIUM: ssl: replace standards DH groups with custom ones
15658 - MEDIUM: stats: Add enum srv_stats_state
15659 - MEDIUM: stats: Separate server state and colour in stats
15660 - MEDIUM: stats: Only report drain state in stats if server has SRV_ADMF_DRAIN set
15661 - MEDIUM: stats: Differentiate between DRAIN and DRAIN (agent)
15662 - MEDIUM: Lower priority of email alerts for log-health-checks messages
15663 - MEDIUM: Send email alerts when servers are marked as UP or enter the drain state
15664 - MEDIUM: Document when email-alerts are sent
15665 - BUG/MEDIUM: lua: bad argument number in analyser and in error message
15666 - MEDIUM: lua: automatically converts strings in proxy, tables, server and ip
15667 - BUG/MINOR: utf8: remove compilator warning
15668 - MEDIUM: map: uses HAProxy facilities to store default value
15669 - BUG/MINOR: lua: error in detection of mandatory arguments
15670 - BUG/MINOR: lua: set current proxy as default value if it is possible
15671 - BUG/MEDIUM: http: the action set-{method|path|query|uri} doesn't run.
15672 - BUG/MEDIUM: lua: undetected infinite loop
15673 - BUG/MAJOR: http: don't read past buffer's end in http_replace_value
15674 - BUG/MEDIUM: http: the function "(req|res)-replace-value" doesn't respect the HTTP syntax
15675 - MEDIUM/CLEANUP: http: rewrite and lighten http_transform_header() prototype
15676 - BUILD: lua: it miss the '-ldl' directive
15677 - MEDIUM: http: allows 'R' and 'S' in the protocol alphabet
15678 - MINOR: http: split the function http_action_set_req_line() in two parts
15679 - MINOR: http: split http_transform_header() function in two parts.
15680 - MINOR: http: export function inet_set_tos()
15681 - MINOR: lua: txn: add function set_(loglevel|tos|mark)
15682 - MINOR: lua: create and register HTTP class
15683 - DOC: lua: fix some typos
15684 - MINOR: lua: add log functions
15685 - BUG/MINOR: lua: Fix SSL initialisation
15686 - DOC: lua: some fixes
15687 - MINOR: lua: (req|res)_get_headers return more than one header value
15688 - MINOR: lua: map system integration in Lua
15689 - BUG/MEDIUM: http: functions set-{path,query,method,uri} breaks the HTTP parser
15690 - MINOR: sample: add url_dec converter
15691 - MEDIUM: sample: fill the struct sample with the session, proxy and stream pointers
15692 - MEDIUM: sample change the prototype of sample-fetches and converters functions
15693 - MINOR: sample: fill the struct sample with the options.
15694 - MEDIUM: sample: change the prototype of sample-fetches functions
15695 - MINOR: http: split the url_param in two parts
15696 - CLEANUP: http: bad indentation
15697 - MINOR: http: add body_param fetch
15698 - MEDIUM: http: url-encoded parsing function can run throught wrapped buffer
15699 - DOC: http: req.body_param documentation
15700 - MINOR: proxy: custom capture declaration
15701 - MINOR: capture: add two "capture" converters
15702 - MEDIUM: capture: Allow capture with slot identifier
15703 - MINOR: http: add array of generic pointers in http_res_rules
15704 - MEDIUM: capture: adds http-response capture
15705 - MINOR: common: escape CSV strings
15706 - MEDIUM: stats: escape some strings in the CSV dump
15707 - MINOR: tcp: add custom actions that can continue tcp-(request|response) processing
15708 - MINOR: lua: Lua tcp action are not final action
15709 - DOC: lua: schematics about lua socket organization
15710 - BUG/MINOR: debug: display (null) in place of "meth"
15711 - DOC: mention the "lua action" in documentation
15712 - MINOR: standard: add function that converts signed int to a string
15713 - BUG/MINOR: sample: wrong conversion of signed values
15714 - MEDIUM: sample: Add type any
15715 - MINOR: debug: add a special converter which display its input sample content.
15716 - MINOR: tcp: increase the opaque data array
15717 - MINOR: tcp/http/conf: extends the keyword registration options
15718 - MINOR: build: fix build dependency
15719 - MEDIUM: vars: adds support of variables
15720 - MINOR: vars: adds get and set functions
15721 - MINOR: lua: Variable access
15722 - MINOR: samples: add samples which returns constants
15723 - BUG/MINOR: vars/compil: fix some warnings
15724 - BUILD: add 51degrees options to makefile.
15725 - MINOR: global: add several 51Degrees members to global
15726 - MINOR: config: add 51Degrees config parsing.
15727 - MINOR: init: add 51Degrees initialisation code
15728 - MEDIUM: sample: add fiftyone_degrees converter.
15729 - MEDIUM: deinit: add cleanup for 51Degrees to deinit
15730 - MEDIUM: sample: add trie support to 51Degrees
15731 - DOC: add 51Degrees notes to configuration.txt.
15732 - DOC: add build indications for 51Degrees to README.
15733 - MEDIUM: cfgparse: introduce weak and strong quoting
15734 - BUG/MEDIUM: cfgparse: incorrect memmove in quotes management
15735 - MINOR: cfgparse: remove line size limitation
15736 - MEDIUM: cfgparse: expand environment variables
15737 - BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
15738 - BUG/MEDIUM: cfgparse: segfault when userlist is misused
15739 - CLEANUP: cfgparse: remove reference to 'ruleset' section
15740 - MEDIUM: cfgparse: check section maximum number of arguments
15741 - MEDIUM: cfgparse: max arguments check in the global section
15742 - MEDIUM: cfgparse: check max arguments in the proxies sections
15743 - CLEANUP: stream-int: remove a redundant clearing of the linger_risk flag
15744 - MINOR: connection: make conn_sock_shutw() actually perform the shutdown() call
15745 - MINOR: stream-int: use conn_sock_shutw() to shutdown a connection
15746 - MINOR: connection: perform the call to xprt->shutw() in conn_data_shutw()
15747 - MEDIUM: stream-int: replace xprt->shutw calls with conn_data_shutw()
15748 - MINOR: checks: use conn_data_shutw_hard() instead of call via xprt
15749 - MINOR: connection: implement conn_sock_send()
15750 - MEDIUM: stream-int: make conn_si_send_proxy() use conn_sock_send()
15751 - MEDIUM: connection: make conn_drain() perform more controls
15752 - REORG: connection: move conn_drain() to connection.c and rename it
15753 - CLEANUP: stream-int: remove inclusion of fd.h that is not used anymore
15754 - MEDIUM: channel: don't always set CF_WAKE_WRITE on bi_put*
15755 - CLEANUP: lua: don't use si_ic/si_oc on known stream-ints
15756 - BUG/MEDIUM: peers: correctly configure the client timeout
15757 - MINOR: peers: centralize configuration of the peers frontend
15758 - MINOR: proxy: store the default target into the frontend's configuration
15759 - MEDIUM: stats: use frontend_accept() as the accept function
15760 - MEDIUM: peers: use frontend_accept() instead of peer_accept()
15761 - CLEANUP: listeners: remove unused timeout
15762 - MEDIUM: listener: store the default target per listener
15763 - BUILD: fix automatic inclusion of libdl.
15764 - MEDIUM: lua: implement a simple memory allocator
15765 - MEDIUM: compression: postpone buffer adjustments after compression
15766 - MEDIUM: compression: don't send leading zeroes with chunk size
15767 - BUG/MINOR: compression: consider the expansion factor in init
15768 - MINOR: http: check the algo name "identity" instead of the function pointer
15769 - CLEANUP: compression: statify all algo-specific functions
15770 - MEDIUM: compression: add a distinction between UA- and config- algorithms
15771 - MEDIUM: compression: add new "raw-deflate" compression algorithm
15772 - MEDIUM: compression: split deflate_flush() into flush and finish
15773 - CLEANUP: compression: remove unused reset functions
15774 - MAJOR: compression: integrate support for libslz
15775 - BUG/MEDIUM: http: hdr_cnt would not count any header when called without name
15776 - BUG/MAJOR: http: null-terminate the http actions keywords list
15777 - CLEANUP: lua: remove the unused hlua_sleep memory pool
15778 - BUG/MAJOR: lua: use correct object size when initializing a new converter
15779 - CLEANUP: lua: remove hard-coded sizeof() in object creations and mallocs
15780 - CLEANUP: lua: fix confusing local variable naming in hlua_txn_new()
15781 - CLEANUP: hlua: stop using variable name "s" alternately for hlua_txn and hlua_smp
15782 - CLEANUP: lua: get rid of the last "*ht" for struct hlua_txn.
15783 - CLEANUP: lua: rename last occurrences of "*s" to "*htxn" for hlua_txn
15784 - CLEANUP: lua: rename variable "sc" for struct hlua_smp
15785 - CLEANUP: lua: get rid of the last two "*hs" for hlua_smp
15786 - REORG/MAJOR: session: rename the "session" entity to "stream"
15787 - REORG/MEDIUM: stream: rename stream flags from SN_* to SF_*
15788 - MINOR: session: start to reintroduce struct session
15789 - MEDIUM: stream: allocate the session when a stream is created
15790 - MEDIUM: stream: move the listener's pointer to the session
15791 - MEDIUM: stream: move the frontend's pointer to the session
15792 - MINOR: session: add a pointer to the session's origin
15793 - MEDIUM: session: use the pointer to the origin instead of s->si[0].end
15794 - CLEANUP: sample: remove useless tests in fetch functions for l4 != NULL
15795 - MEDIUM: http: move header captures from http_txn to struct stream
15796 - MINOR: http: create a dedicated pool for http_txn
15797 - MAJOR: http: move http_txn out of struct stream
15798 - MAJOR: sample: don't pass l7 anymore to sample fetch functions
15799 - CLEANUP: lua: remove unused hlua_smp->l7 and hlua_txn->l7
15800 - MEDIUM: http: remove the now useless http_txn from {req/res} rules
15801 - CLEANUP: lua: don't pass http_txn anymore to hlua_request_act_wrapper()
15802 - MAJOR: sample: pass a pointer to the session to each sample fetch function
15803 - MINOR: stream: provide a few helpers to retrieve frontend, listener and origin
15804 - CLEANUP: stream: don't set ->target to the incoming connection anymore
15805 - MINOR: stream: move session initialization before the stream's
15806 - MINOR: session: store the session's accept date
15807 - MINOR: session: don't rely on s->logs.logwait in embryonic sessions
15808 - MINOR: session: implement session_free() and use it everywhere
15809 - MINOR: session: add stick counters to the struct session
15810 - REORG: stktable: move the stkctr_* functions from stream to sticktable
15811 - MEDIUM: streams: support looking up stkctr in the session
15812 - MEDIUM: session: update the session's stick counters upon session_free()
15813 - MEDIUM: proto_tcp: track the session's counters in the connection ruleset
15814 - MAJOR: tcp: make tcp_exec_req_rules() only rely on the session
15815 - MEDIUM: stream: don't call stream_store_counters() in kill_mini_session() nor session_accept()
15816 - MEDIUM: stream: move all the session-specific stuff of stream_accept() earlier
15817 - MAJOR: stream: don't initialize the stream anymore in stream_accept
15818 - MEDIUM: session: remove the task pointer from the session
15819 - REORG: session: move the session parts out of stream.c
15820 - MINOR: stream-int: make appctx_new() take the applet in argument
15821 - MEDIUM: peers: move the appctx initialization earlier
15822 - MINOR: session: introduce session_new()
15823 - MINOR: session: make use of session_new() when creating a new session
15824 - MINOR: peers: make use of session_new() when creating a new session
15825 - MEDIUM: peers: initialize the task before the stream
15826 - MINOR: session: set the CO_FL_CONNECTED flag on the connection once ready
15827 - CLEANUP: stream.c: do not re-attach the connection to the stream
15828 - MEDIUM: stream: isolate connection-specific initialization code
15829 - MEDIUM: stream: also accept appctx as origin in stream_accept_session()
15830 - MEDIUM: peers: make use of stream_accept_session()
15831 - MEDIUM: frontend: make ->accept only return +/-1
15832 - MEDIUM: stream: return the stream upon accept()
15833 - MEDIUM: frontend: move some stream initialisation to stream_new()
15834 - MEDIUM: frontend: move the fd-specific settings to session_accept_fd()
15835 - MEDIUM: frontend: don't restrict frontend_accept() to connections anymore
15836 - MEDIUM: frontend: move some remaining stream settings to stream_new()
15837 - CLEANUP: frontend: remove one useless local variable
15838 - MEDIUM: stream: don't rely on the session's listener anymore in stream_new()
15839 - MEDIUM: lua: make use of stream_new() to create an outgoing connection
15840 - MINOR: lua: minor cleanup in hlua_socket_new()
15841 - MINOR: lua: no need for setting timeouts / conn_retries in hlua_socket_new()
15842 - MINOR: peers: no need for setting timeouts / conn_retries in peer_session_create()
15843 - CLEANUP: stream-int: swap stream-int and appctx declarations
15844 - CLEANUP: namespaces: fix protection against multiple inclusions
15845 - MINOR: session: maintain the session count stats in the session, not the stream
15846 - MEDIUM: session: adjust the connection flags before stream_new()
15847 - MINOR: stream: pass the pointer to the origin explicitly to stream_new()
15848 - CLEANUP: poll: move the conditions for waiting out of the poll functions
15849 - BUG/MEDIUM: listener: don't report an error when resuming unbound listeners
15850 - BUG/MEDIUM: init: don't limit cpu-map to the first 32 processes only
15851 - BUG/MAJOR: tcp/http: fix current_rule assignment when restarting over a ruleset
15852 - BUG/MEDIUM: stream-int: always reset si->ops when si->end is nullified
15853 - DOC: update the entities diagrams
15854 - BUG/MEDIUM: http: properly retrieve the front connection
15855 - MINOR: applet: add a new "owner" pointer in the appctx
15856 - MEDIUM: applet: make the applet not depend on a stream interface anymore
15857 - REORG: applet: move the applet definitions out of stream_interface
15858 - CLEANUP: applet: rename struct si_applet to applet
15859 - REORG: stream-int: create si_applet_ops dedicated to applets
15860 - MEDIUM: applet: add basic support for an applet run queue
15861 - MEDIUM: applet: implement a run queue for active appctx
15862 - MEDIUM: stream-int: add a new function si_applet_done()
15863 - MAJOR: applet: now call si_applet_done() instead of si_update() in I/O handlers
15864 - MAJOR: stream: use a regular ->update for all stream interfaces
15865 - MEDIUM: dumpstats: don't unregister the applet anymore
15866 - MEDIUM: applet: centralize the call to si_applet_done() in the I/O handler
15867 - MAJOR: stream: do not allocate request buffers anymore when the left side is an applet
15868 - MINOR: stream-int: add two flags to indicate an applet's wishes regarding I/O
15869 - MEDIUM: applet: make the applets only use si_applet_{cant|want|stop}_{get|put}
15870 - MEDIUM: stream-int: pause the appctx if the task is woken up
15871 - BUG/MAJOR: tcp: only call registered actions when they're registered
15872 - BUG/MEDIUM: peers: fix applet scheduling
15873 - BUG/MEDIUM: peers: recent applet changes broke peers updates scheduling
15874 - MINOR: tools: provide an rdtsc() function for time comparisons
15875 - IMPORT: lru: import simple ebtree-based LRU functions
15876 - IMPORT: hash: import xxhash-r39
15877 - MEDIUM: pattern: add a revision to all pattern expressions
15878 - MAJOR: pattern: add LRU-based cache on pattern matching
15879 - BUG/MEDIUM: http: remove content-length from chunked messages
15880 - DOC: http: update the comments about the rules for determining transfer-length
15881 - BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
15882 - BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
15883 - BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
15884 - MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
15885 - MEDIUM: http: disable support for HTTP/0.9 by default
15886 - MEDIUM: http: add option-ignore-probes to get rid of the floods of 408
15887 - BUG/MINOR: config: clear proxy->table.peers.p for disabled proxies
15888 - MEDIUM: init: don't stop proxies in parent process when exiting
15889 - MINOR: stick-table: don't attach to peers in stopped state
15890 - MEDIUM: config: initialize stick-tables after peers, not before
15891 - MEDIUM: peers: add the ability to disable a peers section
15892 - MINOR: peers: store the pointer to the signal handler
15893 - MEDIUM: peers: unregister peers that were never started
15894 - MEDIUM: config: propagate the table's process list to the peers sections
15895 - MEDIUM: init: stop any peers section not bound to the correct process
15896 - MEDIUM: config: validate that peers sections are bound to exactly one process
15897 - MAJOR: peers: allow peers section to be used with nbproc > 1
15898 - DOC: relax the peers restriction to single-process
15899 - DOC: document option http-ignore-probes
15900 - DOC: fix the comments about the meaning of msg->sol in HTTP
15901 - BUG/MEDIUM: http: wait for the exact amount of body bytes in wait_for_request_body
15902 - BUG/MAJOR: http: prevent risk of reading past end with balance url_param
15903 - MEDIUM: stream: move HTTP request body analyser before process_common
15904 - MEDIUM: http: add a new option http-buffer-request
15905 - MEDIUM: http: provide 3 fetches for the body
15906 - DOC: update the doc on the proxy protocol
15907 - BUILD: pattern: fix build warnings introduced in the LRU cache
15908 - BUG/MEDIUM: stats: properly initialize the scope before dumping stats
15909 - CLEANUP: config: fix misleading information in error message.
15910 - MINOR: config: report the number of processes using a peers section in the error case
15911 - BUG/MEDIUM: config: properly compute the default number of processes for a proxy
15912 - MEDIUM: http: add new "capture" action for http-request
15913 - BUG/MEDIUM: http: fix the http-request capture parser
15914 - BUG/MEDIUM: http: don't forward client shutdown without NOLINGER except for tunnels
15915 - BUILD/MINOR: ssl: fix build failure introduced by recent patch
15916 - BUG/MAJOR: check: fix breakage of inverted tcp-check rules
15917 - CLEANUP: checks: fix double usage of cur / current_step in tcp-checks
15918 - BUG/MEDIUM: checks: do not dereference head of a tcp-check at the end
15919 - CLEANUP: checks: simplify the loop processing of tcp-checks
15920 - BUG/MAJOR: checks: always check for end of list before proceeding
15921 - BUG/MEDIUM: checks: do not dereference a list as a tcpcheck struct
15922 - BUG/MAJOR: checks: break infinite loops when tcp-checks starts with comment
15923 - MEDIUM: http: make url_param iterate over multiple occurrences
15924 - BUG/MEDIUM: peers: apply a random reconnection timeout
15925 - MEDIUM: config: reject invalid config with name duplicates
15926 - MEDIUM: config: reject conflicts in table names
15927 - CLEANUP: proxy: make the proxy lookup functions more user-friendly
15928 - MINOR: proxy: simply ignore duplicates in proxy name lookups
15929 - MINOR: config: don't open-code proxy name lookups
15930 - MEDIUM: config: clarify the conflicting modes detection for backend rules
15931 - CLEANUP: proxy: remove now unused function findproxy_mode()
15932 - MEDIUM: stick-table: remove the now duplicate find_stktable() function
15933 - MAJOR: config: remove the deprecated reqsetbe / reqisetbe actions
15934 - MINOR: proxy: add a new function proxy_find_by_id()
15935 - MINOR: proxy: add a flag to memorize that the proxy's ID was forced
15936 - MEDIUM: proxy: add a new proxy_find_best_match() function
15937 - CLEANUP: http: explicitly reference request in http_apply_redirect_rules()
15938 - MINOR: http: prepare support for parsing redirect actions on responses
15939 - MEDIUM: http: implement http-response redirect rules
15940 - MEDIUM: http: no need to close the request on redirect if data was parsed
15941 - BUG/MEDIUM: http: fix body processing for the stats applet
15942 - BUG/MINOR: da: fix log-level comparison to emove annoying warning
15943 - CLEANUP: global: remove one ifdef USE_DEVICEATLAS
15944 - CLEANUP: da: move the converter registration to da.c
15945 - CLEANUP: da: register the config keywords in da.c
15946 - CLEANUP: adjust the envelope name in da.h to reflect the file name
15947 - CLEANUP: da: remove ifdef USE_DEVICEATLAS from da.c
15948 - BUILD: make 51D easier to build by defaulting to 51DEGREES_SRC
15949 - BUILD: fix build warning when not using 51degrees
15950 - BUILD: make DeviceAtlas easier to build by defaulting to DEVICEATLAS_SRC
15951 - BUILD: ssl: fix recent build breakage on older SSL libs
15952
Willy Tarreau8747b6d2015-03-11 23:57:23 +0100159532015/03/11 : 1.6-dev1
15954 - CLEANUP: extract temporary $CFG to eliminate duplication
15955 - CLEANUP: extract temporary $BIN to eliminate duplication
15956 - CLEANUP: extract temporary $PIDFILE to eliminate duplication
15957 - CLEANUP: extract temporary $LOCKFILE to eliminate duplication
15958 - CLEANUP: extract quiet_check() to avoid duplication
15959 - BUG/MINOR: don't start haproxy on reload
15960 - DOC: Address issue where documentation is excluded due to a gitignore rule.
15961 - BUG/MEDIUM: systemd: set KillMode to 'mixed'
15962 - BUILD: fix "make install" to support spaces in the install dirs
15963 - BUG/MINOR: config: http-request replace-header arg typo
15964 - BUG: config: error in http-response replace-header number of arguments
15965 - DOC: missing track-sc* in http-request rules
15966 - BUILD: lua: missing ifdef related to SSL when enabling LUA
15967 - BUG/MEDIUM: regex: fix pcre_study error handling
15968 - MEDIUM: regex: Use pcre_study always when PCRE is used, regardless of JIT
15969 - BUG/MINOR: Fix search for -p argument in systemd wrapper.
15970 - MEDIUM: Improve signal handling in systemd wrapper.
15971 - DOC: fix typo in Unix Socket commands
15972 - BUG/MEDIUM: checks: external checks can't change server status to UP
15973 - BUG/MEDIUM: checks: segfault with external checks in a backend section
15974 - BUG/MINOR: checks: external checks shouldn't wait for timeout to return the result
15975 - BUG/MEDIUM: auth: fix segfault with http-auth and a configuration with an unknown encryption algorithm
15976 - BUG/MEDIUM: config: userlists should ensure that encrypted passwords are supported
15977 - BUG/MINOR: config: don't propagate process binding for dynamic use_backend
15978 - BUG/MINOR: log: fix request flags when keep-alive is enabled
15979 - BUG/MEDIUM: checks: fix conflicts between agent checks and ssl healthchecks
15980 - MINOR: checks: allow external checks in backend sections
15981 - MEDIUM: checks: provide environment variables to the external checks
15982 - MINOR: checks: update dynamic environment variables in external checks
15983 - DOC: checks: environment variables used by "external-check command"
15984 - BUG/MEDIUM: backend: correctly detect the domain when use_domain_only is used
15985 - MINOR: ssl: load certificates in alphabetical order
15986 - BUG/MINOR: checks: prevent http keep-alive with http-check expect
15987 - MINOR: lua: typo in an error message
15988 - MINOR: report the Lua version in -vv
15989 - MINOR: lua: add a compilation error message when compiled with an incompatible version
15990 - BUG/MEDIUM: lua: segfault when calling haproxy sample fetches from lua
15991 - BUILD: try to automatically detect the Lua library name
15992 - BUILD/CLEANUP: systemd: avoid a warning due to mixed code and declaration
15993 - BUG/MEDIUM: backend: Update hash to use unsigned int throughout
15994 - BUG/MEDIUM: connection: fix memory corruption when building a proxy v2 header
15995 - MEDIUM: connection: add new bit in Proxy Protocol V2
15996 - BUG/MINOR: ssl: rejects OCSP response without nextupdate.
15997 - BUG/MEDIUM: ssl: Fix to not serve expired OCSP responses.
15998 - BUG/MINOR: ssl: Fix OCSP resp update fails with the same certificate configured twice.
15999 - BUG/MINOR: ssl: Fix external function in order not to return a pointer on an internal trash buffer.
16000 - MINOR: add fetchs 'ssl_c_der' and 'ssl_f_der' to return DER formatted certs
16001 - MINOR: ssl: add statement to force some ssl options in global.
16002 - BUG/MINOR: ssl: correctly initialize ssl ctx for invalid certificates
16003 - BUG/MEDIUM: ssl: fix bad ssl context init can cause segfault in case of OOM.
16004 - BUG/MINOR: samples: fix unnecessary memcopy converting binary to string.
16005 - MINOR: samples: adds the bytes converter.
16006 - MINOR: samples: adds the field converter.
16007 - MINOR: samples: add the word converter.
16008 - BUG/MINOR: server: move the directive #endif to the end of file
16009 - BUG/MAJOR: buffer: check the space left is enough or not when input data in a buffer is wrapped
16010 - DOC: fix a few typos
16011 - CLEANUP: epoll: epoll_events should be allocated according to global.tune.maxpollevents
16012 - BUG/MINOR: http: fix typo: "401 Unauthorized" => "407 Unauthorized"
16013 - BUG/MINOR: parse: refer curproxy instead of proxy
16014 - BUG/MINOR: parse: check the validity of size string in a more strict way
16015 - BUILD: add new target 'make uninstall' to support uninstalling haproxy from OS
16016 - DOC: expand the docs for the provided stats.
16017 - BUG/MEDIUM: unix: do not unlink() abstract namespace sockets upon failure.
16018 - MEDIUM: ssl: Certificate Transparency support
16019 - MEDIUM: stats: proxied stats admin forms fix
16020 - MEDIUM: http: Compress HTTP responses with status codes 201,202,203 in addition to 200
16021 - BUG/MEDIUM: connection: sanitize PPv2 header length before parsing address information
16022 - MAJOR: namespace: add Linux network namespace support
16023 - MINOR: systemd: Check configuration before start
16024 - BUILD: ssl: handle boringssl in openssl version detection
16025 - BUILD: ssl: disable OCSP when using boringssl
16026 - BUILD: ssl: don't call get_rfc2409_prime when using boringssl
16027 - MINOR: ssl: don't use boringssl's cipher_list
16028 - BUILD: ssl: use OPENSSL_NO_OCSP to detect OCSP support
16029 - MINOR: stats: fix minor typo in HTML page
16030 - MINOR: Also accept SIGHUP/SIGTERM in systemd-wrapper
16031 - MEDIUM: Add support for configurable TLS ticket keys
16032 - DOC: Document the new tls-ticket-keys bind keyword
16033 - DOC: clearly state that the "show sess" output format is not fixed
16034 - MINOR: stats: fix minor typo fix in stats_dump_errors_to_buffer()
16035 - DOC: httplog does not support 'no'
16036 - BUG/MEDIUM: ssl: Fix a memory leak in DHE key exchange
16037 - MINOR: ssl: use SSL_get_ciphers() instead of directly accessing the cipher list.
16038 - BUG/MEDIUM: Consistently use 'check' in process_chk
16039 - MEDIUM: Add external check
16040 - BUG/MEDIUM: Do not set agent health to zero if server is disabled in config
16041 - MEDIUM/BUG: Only explicitly report "DOWN (agent)" if the agent health is zero
16042 - MEDIUM: Remove connect_chk
16043 - MEDIUM: Refactor init_check and move to checks.c
16044 - MEDIUM: Add free_check() helper
16045 - MEDIUM: Move proto and addr fields struct check
16046 - MEDIUM: Attach tcpcheck_rules to check
16047 - MEDIUM: Add parsing of mailers section
16048 - MEDIUM: Allow configuration of email alerts
16049 - MEDIUM: Support sending email alerts
16050 - DOC: Document email alerts
16051 - MINOR: Remove trailing '.' from email alert messages
16052 - MEDIUM: Allow suppression of email alerts by log level
16053 - BUG/MEDIUM: Do not consider an agent check as failed on L7 error
16054 - MINOR: deinit: fix memory leak
16055 - MINOR: http: export the function 'smp_fetch_base32'
16056 - BUG/MEDIUM: http: tarpit timeout is reset
16057 - MINOR: sample: add "json" converter
16058 - BUG/MEDIUM: pattern: don't load more than once a pattern list.
16059 - MINOR: map/acl/dumpstats: remove the "Done." message
16060 - BUG/MAJOR: ns: HAProxy segfault if the cli_conn is not from a network connection
16061 - BUG/MINOR: pattern: error message missing
16062 - BUG/MEDIUM: pattern: some entries are not deleted with case insensitive match
16063 - BUG/MINOR: ARG6 and ARG7 don't fit in a 32 bits word
16064 - MAJOR: poll: only rely on wake_expired_tasks() to compute the wait delay
16065 - MEDIUM: task: call session analyzers if the task is woken by a message.
16066 - MEDIUM: protocol: automatically pick the proto associated to the connection.
16067 - MEDIUM: channel: wake up any request analyzer on response activity
16068 - MINOR: converters: add a "void *private" argument to converters
16069 - MINOR: converters: give the session pointer as converter argument
16070 - MINOR: sample: add private argument to the struct sample_fetch
16071 - MINOR: global: export function and permits to not resolve DNS names
16072 - MINOR: sample: add function for browsing samples.
16073 - MINOR: global: export many symbols.
16074 - MINOR: includes: fix a lot of missing or useless includes
16075 - MEDIUM: tcp: add register keyword system.
16076 - MEDIUM: buffer: make bo_putblk/bo_putstr/bo_putchk return the number of bytes copied.
16077 - MEDIUM: http: change the code returned by the response processing rule functions
16078 - MEDIUM: http/tcp: permit to resume http and tcp custom actions
16079 - MINOR: channel: functions to get data from a buffer without copy
16080 - MEDIUM: lua: lua integration in the build and init system.
16081 - MINOR: lua: add ease functions
16082 - MINOR: lua: add runtime execution context
16083 - MEDIUM: lua: "com" signals
16084 - MINOR: lua: add the configuration directive "lua-load"
16085 - MINOR: lua: core: create "core" class and object
16086 - MINOR: lua: post initialisation bindings
16087 - MEDIUM: lua: add coroutine as tasks.
16088 - MINOR: lua: add sample and args type converters
16089 - MINOR: lua: txn: create class TXN associated with the transaction.
16090 - MINOR: lua: add shared context in the lua stack
16091 - MINOR: lua: txn: import existing sample-fetches in the class TXN
16092 - MINOR: lua: txn: add lua function in TXN that returns an array of http headers
16093 - MINOR: lua: register and execute sample-fetches in LUA
16094 - MINOR: lua: register and execute converters in LUA
16095 - MINOR: lua: add bindings for tcp and http actions
16096 - MINOR: lua: core: add sleep functions
16097 - MEDIUM: lua: socket: add "socket" class for TCP I/O
16098 - MINOR: lua: core: pattern and acl manipulation
16099 - MINOR: lua: channel: add "channel" class
16100 - MINOR: lua: txn: object "txn" provides two objects "channel"
16101 - MINOR: lua: core: can set the nice of the current task
16102 - MINOR: lua: core: can yield an execution stack
16103 - MINOR: lua: txn: add binding for closing the client connection.
16104 - MEDIUM: lua: Lua initialisation "on demand"
16105 - BUG/MAJOR: lua: send function fails and return bad bytes
16106 - MINOR: remove unused declaration.
16107 - MINOR: lua: remove some #define
16108 - MINOR: lua: use bitfield and macro in place of integer and enum
16109 - MINOR: lua: set skeleton for Lua execution expiration
16110 - MEDIUM: lua: each yielding function returns a wake up time.
16111 - MINOR: lua: adds "forced yield" flag
16112 - MEDIUM: lua: interrupt the Lua execution for running other process
16113 - MEDIUM: lua: change the sleep function core
16114 - BUG/MEDIUM: lua: the execution timeout is ignored in yield case
16115 - DOC: lua: Lua configuration documentation
16116 - MINOR: lua: add the struct session in the lua channel struct
16117 - BUG/MINOR: lua: set buffer if it is nnot avalaible.
16118 - BUG/MEDIUM: lua: reset flags before resuming execution
16119 - BUG/MEDIUM: lua: fix infinite loop about channel
16120 - BUG/MEDIUM: lua: the Lua process is not waked up after sending data on requests side
16121 - BUG/MEDIUM: lua: many errors when we try to send data with the channel API
16122 - MEDIUM: lua: use the Lua-5.3 version of the library
16123 - BUG/MAJOR: lua: some function are not yieldable, the forced yield causes errors
16124 - BUG/MEDIUM: lua: can't handle the response bytes
16125 - BUG/MEDIUM: lua: segfault with buffer_replace2
16126 - BUG/MINOR: lua: check buffers before initializing socket
16127 - BUG/MINOR: log: segfault if there are no proxy reference
16128 - BUG/MEDIUM: lua: sockets don't have buffer to write data
16129 - BUG/MEDIUM: lua: cannot connect socket
16130 - BUG/MINOR: lua: sockets receive behavior doesn't follows the specs
16131 - BUG/BUILD: lua: The strict Lua 5.3 version check is not done.
16132 - BUG/MEDIUM: buffer: one byte miss in buffer free space check
16133 - MEDIUM: lua: make the functions hlua_gethlua() and hlua_sethlua() faster
16134 - MINOR: replace the Core object by a simple model.
16135 - MEDIUM: lua: change the objects configuration
16136 - MEDIUM: lua: create a namespace for the fetches
16137 - MINOR: converters: add function to browse converters
16138 - MINOR: lua: wrapper for converters
16139 - MINOR: lua: replace function (req|get)_channel by a variable
16140 - MINOR: lua: fetches and converters can return an empty string in place of nil
16141 - DOC: lua api
16142 - BUG/MEDIUM: sample: fix random number upper-bound
16143 - BUG/MINOR: stats:Fix incorrect printf type.
16144 - BUG/MAJOR: session: revert all the crappy client-side timeout changes
16145 - BUG/MINOR: logs: properly initialize and count log sockets
16146 - BUG/MEDIUM: http: fetch "base" is not compatible with set-header
16147 - BUG/MINOR: counters: do not untrack counters before logging
16148 - BUG/MAJOR: sample: correctly reinitialize sample fetch context before calling sample_process()
16149 - MINOR: stick-table: make stktable_fetch_key() indicate why it failed
16150 - BUG/MEDIUM: counters: fix track-sc* to wait on unstable contents
16151 - BUILD: remove TODO from the spec file and add README
16152 - MINOR: log: make MAX_SYSLOG_LEN overridable at build time
16153 - MEDIUM: log: support a user-configurable max log line length
16154 - DOC: provide an example of how to use ssl_c_sha1
16155 - BUILD: checks: external checker needs signal.h
16156 - BUILD: checks: kill a minor warning on Solaris in external checks
16157 - BUILD: http: fix isdigit & isspace warnings on Solaris
16158 - BUG/MINOR: listener: set the listener's fd to -1 after deletion
16159 - BUG/MEDIUM: unix: failed abstract socket binding is retryable
16160 - MEDIUM: listener: implement a per-protocol pause() function
16161 - MEDIUM: listener: support rebinding during resume()
16162 - BUG/MEDIUM: unix: completely unbind abstract sockets during a pause()
16163 - DOC: explicitly mention the limits of abstract namespace sockets
16164 - DOC: minor fix on {sc,src}_kbytes_{in,out}
16165 - DOC: fix alphabetical sort of converters
16166 - MEDIUM: stick-table: implement lookup from a sample fetch
16167 - MEDIUM: stick-table: add new converters to fetch table data
16168 - MINOR: samples: add two converters for the date format
16169 - BUG/MAJOR: http: correctly rewind the request body after start of forwarding
16170 - DOC: remove references to CPU=native in the README
16171 - DOC: mention that "compression offload" is ignored in defaults section
16172 - DOC: mention that Squid correctly responds 400 to PPv2 header
16173 - BUILD: fix dependencies between config and compat.h
16174 - MINOR: session: export the function 'smp_fetch_sc_stkctr'
16175 - MEDIUM: stick-table: make it easier to register extra data types
16176 - BUG/MINOR: http: base32+src should use the big endian version of base32
16177 - MINOR: sample: allow IP address to cast to binary
16178 - MINOR: sample: add new converters to hash input
16179 - MINOR: sample: allow integers to cast to binary
16180 - BUILD: report commit ID in git versions as well
16181 - CLEANUP: session: move the stick counters declarations to stick_table.h
16182 - MEDIUM: http: add the track-sc* actions to http-request rules
16183 - BUG/MEDIUM: connection: fix proxy v2 header again!
16184 - BUG/MAJOR: tcp: fix a possible busy spinning loop in content track-sc*
16185 - OPTIM/MINOR: proxy: reduce struct proxy by 48 bytes on 64-bit archs
16186 - MINOR: log: add a new field "%lc" to implement a per-frontend log counter
16187 - BUG/MEDIUM: http: fix inverted condition in pat_match_meth()
16188 - BUG/MEDIUM: http: fix improper parsing of HTTP methods for use with ACLs
16189 - BUG/MINOR: pattern: remove useless allocation of unused trash in pat_parse_reg()
16190 - BUG/MEDIUM: acl: correctly compute the output type when a converter is used
16191 - CLEANUP: acl: cleanup some of the redundancy and spaghetti after last fix
16192 - BUG/CRITICAL: http: don't update msg->sov once data start to leave the buffer
16193 - MEDIUM: http: enable header manipulation for 101 responses
16194 - BUG/MEDIUM: config: propagate frontend to backend process binding again.
16195 - MEDIUM: config: properly propagate process binding between proxies
16196 - MEDIUM: config: make the frontends automatically bind to the listeners' processes
16197 - MEDIUM: config: compute the exact bind-process before listener's maxaccept
16198 - MEDIUM: config: only warn if stats are attached to multi-process bind directives
16199 - MEDIUM: config: report it when tcp-request rules are misplaced
16200 - DOC: indicate in the doc that track-sc* can wait if data are missing
16201 - MINOR: config: detect the case where a tcp-request content rule has no inspect-delay
16202 - MEDIUM: systemd-wrapper: support multiple executable versions and names
16203 - BUG/MEDIUM: remove debugging code from systemd-wrapper
16204 - BUG/MEDIUM: http: adjust close mode when switching to backend
16205 - BUG/MINOR: config: don't propagate process binding on fatal errors.
16206 - BUG/MEDIUM: check: rule-less tcp-check must detect connect failures
16207 - BUG/MINOR: tcp-check: report the correct failed step in the status
16208 - DOC: indicate that weight zero is reported as DRAIN
16209 - BUG/MEDIUM: config: avoid skipping disabled proxies
16210 - BUG/MINOR: config: do not accept more track-sc than configured
16211 - BUG/MEDIUM: backend: fix URI hash when a query string is present
16212 - BUG/MEDIUM: http: don't dump debug headers on MSG_ERROR
16213 - BUG/MAJOR: cli: explicitly call cli_release_handler() upon error
16214 - BUG/MEDIUM: tcp: fix outgoing polling based on proxy protocol
16215 - BUILD/MINOR: ssl: de-constify "ciphers" to avoid a warning on openssl-0.9.8
16216 - BUG/MEDIUM: tcp: don't use SO_ORIGINAL_DST on non-AF_INET sockets
16217 - BUG/BUILD: revert accidental change in the makefile from latest SSL fix
16218 - BUG/MEDIUM: ssl: force a full GC in case of memory shortage
16219 - MEDIUM: ssl: add support for smaller SSL records
16220 - MINOR: session: release a few other pools when stopping
16221 - MINOR: task: release the task pool when stopping
16222 - BUG/MINOR: config: don't inherit the default balance algorithm in frontends
16223 - BUG/MAJOR: frontend: initialize capture pointers earlier
16224 - BUG/MINOR: stats: correctly set the request/response analysers
16225 - MAJOR: polling: centralize calls to I/O callbacks
16226 - DOC: fix typo in the body parser documentation for msg.sov
16227 - BUG/MINOR: peers: the buffer size is global.tune.bufsize, not trash.size
16228 - MINOR: sample: add a few basic internal fetches (nbproc, proc, stopping)
16229 - DEBUG: pools: apply poisonning on every allocated pool
16230 - BUG/MAJOR: sessions: unlink session from list on out of memory
16231 - BUG/MEDIUM: patterns: previous fix was incomplete
16232 - BUG/MEDIUM: payload: ensure that a request channel is available
16233 - BUG/MINOR: tcp-check: don't condition data polling on check type
16234 - BUG/MEDIUM: tcp-check: don't rely on random memory contents
16235 - BUG/MEDIUM: tcp-checks: disable quick-ack unless next rule is an expect
16236 - BUG/MINOR: config: fix typo in condition when propagating process binding
16237 - BUG/MEDIUM: config: do not propagate processes between stopped processes
16238 - BUG/MAJOR: stream-int: properly check the memory allocation return
16239 - BUG/MEDIUM: memory: fix freeing logic in pool_gc2()
16240 - BUG/MAJOR: namespaces: conn->target is not necessarily a server
16241 - BUG/MEDIUM: compression: correctly report zlib_mem
16242 - CLEANUP: lists: remove dead code
16243 - CLEANUP: memory: remove dead code
16244 - CLEANUP: memory: replace macros pool_alloc2/pool_free2 with functions
16245 - MINOR: memory: cut pool allocator in 3 layers
16246 - MEDIUM: memory: improve pool_refill_alloc() to pass a refill count
16247 - MINOR: stream-int: retrieve session pointer from stream-int
16248 - MINOR: buffer: reset a buffer in b_reset() and not channel_init()
16249 - MEDIUM: buffer: use b_alloc() to allocate and initialize a buffer
16250 - MINOR: buffer: move buffer initialization after channel initialization
16251 - MINOR: buffer: only use b_free to release buffers
16252 - MEDIUM: buffer: always assign a dummy empty buffer to channels
16253 - MEDIUM: buffer: add a new buf_wanted dummy buffer to report failed allocations
16254 - MEDIUM: channel: do not report full when buf_empty is present on a channel
16255 - MINOR: session: group buffer allocations together
16256 - MINOR: buffer: implement b_alloc_fast()
16257 - MEDIUM: buffer: implement b_alloc_margin()
16258 - MEDIUM: session: implement a basic atomic buffer allocator
16259 - MAJOR: session: implement a wait-queue for sessions who need a buffer
16260 - MAJOR: session: only allocate buffers when needed
16261 - MINOR: stats: report a "waiting" flags for sessions
16262 - MAJOR: session: only wake up as many sessions as available buffers permit
16263 - MINOR: config: implement global setting tune.buffers.reserve
16264 - MINOR: config: implement global setting tune.buffers.limit
16265 - MEDIUM: channel: implement a zero-copy buffer transfer
16266 - MEDIUM: stream-int: support splicing from applets
16267 - OPTIM: stream-int: try to send pending spliced data
16268 - CLEANUP: session: remove session_from_task()
16269 - DOC: add missing entry for log-format and clarify the text
16270 - MINOR: logs: add a new per-proxy "log-tag" directive
16271 - BUG/MEDIUM: http: fix header removal when previous header ends with pure LF
16272 - MINOR: config: extend the default max hostname length to 64 and beyond
16273 - BUG/MEDIUM: channel: fix possible integer overflow on reserved size computation
16274 - BUG/MINOR: channel: compare to_forward with buf->i, not buf->size
16275 - MINOR: channel: add channel_in_transit()
16276 - MEDIUM: channel: make buffer_reserved() use channel_in_transit()
16277 - MEDIUM: channel: make bi_avail() use channel_in_transit()
16278 - BUG/MEDIUM: channel: don't schedule data in transit for leaving until connected
16279 - CLEANUP: channel: rename channel_reserved -> channel_is_rewritable
16280 - MINOR: channel: rename channel_full() to !channel_may_recv()
16281 - MINOR: channel: rename buffer_reserved() to channel_reserved()
16282 - MINOR: channel: rename buffer_max_len() to channel_recv_limit()
16283 - MINOR: channel: rename bi_avail() to channel_recv_max()
16284 - MINOR: channel: rename bi_erase() to channel_truncate()
16285 - BUG/MAJOR: log: don't try to emit a log if no logger is set
16286 - MINOR: tools: add new round_2dig() function to round integers
16287 - MINOR: global: always export some SSL-specific metrics
16288 - MINOR: global: report information about the cost of SSL connections
16289 - MAJOR: init: automatically set maxconn and/or maxsslconn when possible
16290 - MINOR: http: add a new fetch "query" to extract the request's query string
16291 - MINOR: hash: add new function hash_crc32
16292 - MINOR: samples: provide a "crc32" converter
16293 - MEDIUM: backend: add the crc32 hash algorithm for load balancing
16294 - BUG/MINOR: args: add missing entry for ARGT_MAP in arg_type_names
16295 - BUG/MEDIUM: http: make http-request set-header compute the string before removal
16296 - MEDIUM: args: use #define to specify the number of bits used by arg types and counts
16297 - MEDIUM: args: increase arg type to 5 bits and limit arg count to 5
16298 - MINOR: args: add type-specific flags for each arg in a list
16299 - MINOR: args: implement a new arg type for regex : ARGT_REG
16300 - MEDIUM: regex: add support for passing regex flags to regex_exec_match()
16301 - MEDIUM: samples: add a regsub converter to perform regex-based transformations
16302 - BUG/MINOR: sample: fix case sensitivity for the regsub converter
16303 - MEDIUM: http: implement http-request set-{method,path,query,uri}
16304 - DOC: fix missing closing brackend on regsub
16305 - MEDIUM: samples: provide basic arithmetic and bitwise operators
16306 - MEDIUM: init: continue to enforce SYSTEM_MAXCONN with auto settings if set
16307 - BUG/MINOR: http: fix incorrect header value offset in replace-hdr/replace-value
16308 - BUG/MINOR: http: abort request processing on filter failure
16309 - MEDIUM: tcp: implement tcp-ut bind option to set TCP_USER_TIMEOUT
16310 - MINOR: ssl/server: add the "no-ssl-reuse" server option
16311 - BUG/MAJOR: peers: initialize s->buffer_wait when creating the session
16312 - MINOR: http: add a new function to iterate over each header line
16313 - MINOR: http: add the new sample fetches req.hdr_names and res.hdr_names
16314 - MEDIUM: task: always ensure that the run queue is consistent
16315 - BUILD: Makefile: add -Wdeclaration-after-statement
16316 - BUILD/CLEANUP: ssl: avoid a warning due to mixed code and declaration
16317 - BUILD/CLEANUP: config: silent 3 warnings about mixed declarations with code
16318 - MEDIUM: protocol: use a family array to index the protocol handlers
16319 - BUILD: lua: cleanup many mixed occurrences declarations & code
16320 - BUG/MEDIUM: task: fix recently introduced scheduler skew
16321 - BUG/MINOR: lua: report the correct function name in an error message
16322 - BUG/MAJOR: http: fix stats regression consecutive to HTTP_RULE_RES_YIELD
16323 - Revert "BUG/MEDIUM: lua: can't handle the response bytes"
16324 - MINOR: lua: convert IP addresses to type string
16325 - CLEANUP: lua: use the same function names in C and Lua
16326 - REORG/MAJOR: move session's req and resp channels back into the session
16327 - CLEANUP: remove now unused channel pool
16328 - REORG/MEDIUM: stream-int: introduce si_ic/si_oc to access channels
16329 - MEDIUM: stream-int: add a flag indicating which side the SI is on
16330 - MAJOR: stream-int: only rely on SI_FL_ISBACK to find the requested channel
16331 - MEDIUM: stream-interface: remove now unused pointers to channels
16332 - MEDIUM: stream-int: make si_sess() use the stream int's side
16333 - MEDIUM: stream-int: use si_task() to retrieve the task from the stream int
16334 - MEDIUM: stream-int: remove any reference to the owner
16335 - CLEANUP: stream-int: add si_ib/si_ob to dereference the buffers
16336 - CLEANUP: stream-int: add si_opposite() to find the other stream interface
16337 - REORG/MEDIUM: channel: only use chn_prod / chn_cons to find stream-interfaces
16338 - MEDIUM: channel: add a new flag "CF_ISRESP" for the response channel
16339 - MAJOR: channel: only rely on the new CF_ISRESP flag to find the SI
16340 - MEDIUM: channel: remove now unused ->prod and ->cons pointers
16341 - CLEANUP: session: simplify references to chn_{prod,cons}(&s->{req,res})
16342 - CLEANUP: session: use local variables to access channels / stream ints
16343 - CLEANUP: session: don't needlessly pass a pointer to the stream-int
16344 - CLEANUP: session: don't use si_{ic,oc} when we know the session.
16345 - CLEANUP: stream-int: limit usage of si_ic/si_oc
16346 - CLEANUP: lua: limit usage of si_ic/si_oc
16347 - MINOR: channel: add chn_sess() helper to retrieve session from channel
16348 - MEDIUM: session: simplify receive buffer allocator to only use the channel
16349 - MEDIUM: lua: use CF_ISRESP to detect the channel's side
16350 - CLEANUP: lua: remove the session pointer from hlua_channel
16351 - CLEANUP: lua: hlua_channel_new() doesn't need the pointer to the session anymore
16352 - MEDIUM: lua: remove struct hlua_channel
16353 - MEDIUM: lua: remove hlua_sample_fetch
16354
Willy Tarreau15480d72014-06-19 21:10:58 +0200163552014/06/19 : 1.6-dev0
16356 - exact copy of 1.5.0
16357
Willy Tarreau9229f122014-06-19 21:01:06 +0200163582014/06/19 : 1.5.0
16359 - MEDIUM: ssl: ignored file names ending as '.issuer' or '.ocsp'.
16360 - MEDIUM: ssl: basic OCSP stapling support.
16361 - MINOR: ssl/cli: Fix unapropriate comment in code on 'set ssl ocsp-response'
16362 - MEDIUM: ssl: add 300s supported time skew on OCSP response update.
16363 - MINOR: checks: mysql-check: Add support for v4.1+ authentication
16364 - MEDIUM: ssl: Add the option to use standardized DH parameters >= 1024 bits
16365 - MEDIUM: ssl: fix detection of ephemeral diffie-hellman key exchange by using the cipher description.
16366 - MEDIUM: http: add actions "replace-header" and "replace-values" in http-req/resp
16367 - MEDIUM: Break out check establishment into connect_chk()
16368 - MEDIUM: Add port_to_str helper
16369 - BUG/MEDIUM: fix ignored values for half-closed timeouts (client-fin and server-fin) in defaults section.
16370 - BUG/MEDIUM: Fix unhandled connections problem with systemd daemon mode and SO_REUSEPORT.
16371 - MINOR: regex: fix a little configuration memory leak.
16372 - MINOR: regex: Create JIT compatible function that return match strings
16373 - MEDIUM: regex: replace all standard regex function by own functions
16374 - MEDIUM: regex: Remove null terminated strings.
16375 - MINOR: regex: Use native PCRE API.
16376 - MINOR: missing regex.h include
16377 - DOC: Add Exim as Proxy Protocol implementer.
16378 - BUILD: don't use type "uint" which is not portable
16379 - BUILD: stats: workaround stupid and bogus -Werror=format-security behaviour
16380 - BUG/MEDIUM: http: clear CF_READ_NOEXP when preparing a new transaction
16381 - CLEANUP: http: don't clear CF_READ_NOEXP twice
16382 - DOC: fix proxy protocol v2 decoder example
16383 - DOC: fix remaining occurrences of "pattern extraction"
16384 - MINOR: log: allow the HTTP status code to be logged even in TCP frontends
16385 - MINOR: logs: don't limit HTTP header captures to HTTP frontends
16386 - MINOR: sample: improve sample_fetch_string() to report partial contents
16387 - MINOR: capture: extend the captures to support non-header keys
16388 - MINOR: tcp: prepare support for the "capture" action
16389 - MEDIUM: tcp: add a new tcp-request capture directive
16390 - MEDIUM: session: allow shorter retry delay if timeout connect is small
16391 - MEDIUM: session: don't apply the retry delay when redispatching
16392 - MEDIUM: session: redispatch earlier when possible
16393 - MINOR: config: warn when tcp-check rules are used without option tcp-check
16394 - BUG/MINOR: connection: make proxy protocol v1 support the UNKNOWN protocol
16395 - DOC: proxy protocol example parser was still wrong
16396 - DOC: minor updates to the proxy protocol doc
16397 - CLEANUP: connection: merge proxy proto v2 header and address block
16398 - MEDIUM: connection: add support for proxy protocol v2 in accept-proxy
16399 - MINOR: tools: add new functions to quote-encode strings
16400 - DOC: clarify the CSV format
16401 - MEDIUM: stats: report the last check and last agent's output on the CSV status
16402 - MINOR: freq_ctr: introduce a new averaging method
16403 - MEDIUM: session: maintain per-backend and per-server time statistics
16404 - MEDIUM: stats: report per-backend and per-server time stats in HTML and CSV outputs
16405 - BUG/MINOR: http: fix typos in previous patch
16406 - DOC: remove the ultra-obsolete TODO file
16407 - DOC: update roadmap
16408 - DOC: minor updates to the README
16409 - DOC: mention the maxconn limitations with the select poller
16410 - DOC: commit a few old design thoughts files
16411
Willy Tarreau2e858402014-05-28 17:50:53 +0200164122014/05/28 : 1.5-dev26
16413 - BUG/MEDIUM: polling: fix possible CPU hogging of worker processes after receiving SIGUSR1.
16414 - BUG/MINOR: stats: fix a typo on a closing tag for a server tracking another one
16415 - OPTIM: stats: avoid the calculation of a useless link on tracking servers in maintenance
16416 - MINOR: fix a few memory usage errors
16417 - CONTRIB: halog: Filter input lines by date and time through timestamp
16418 - MINOR: ssl: SSL_CTX_set_options() and SSL_CTX_set_mode() take a long, not an int
16419 - BUG/MEDIUM: regex: fix risk of buffer overrun in exp_replace()
16420 - MINOR: acl: set "str" as default match for strings
16421 - DOC: Add some precisions about acl default matching method
16422 - MEDIUM: acl: strenghten the option parser to report invalid options
16423 - BUG/MEDIUM: config: a stats-less config crashes in 1.5-dev25
16424 - BUG/MINOR: checks: tcp-check must not stop on '\0' for binary checks
16425 - MINOR: stats: improve alignment of color codes to save one line of header
16426 - MINOR: checks: simplify and improve reporting of state changes when using log-health-checks
16427 - MINOR: server: remove the SRV_DRAIN flag which can always be deduced
16428 - MINOR: server: use functions to detect state changes and to update them
16429 - MINOR: server: create srv_was_usable() from srv_is_usable() and use a pointer
16430 - BUG/MINOR: stats: do not report "100%" in the thottle column when server is draining
16431 - BUG/MAJOR: config: don't free valid regex memory
16432 - BUG/MEDIUM: session: don't clear CF_READ_NOEXP if analysers are not called
16433 - BUG/MINOR: stats: tracking servers may incorrectly report an inherited DRAIN status
16434 - MEDIUM: proxy: make timeout parser a bit stricter
16435 - REORG/MEDIUM: server: split server state and flags in two different variables
16436 - REORG/MEDIUM: server: move the maintenance bits out of the server state
16437 - MAJOR: server: use states instead of flags to store the server state
16438 - REORG: checks: put the functions in the appropriate files !
16439 - MEDIUM: server: properly support and propagate the maintenance status
16440 - MEDIUM: server: allow multi-level server tracking
16441 - CLEANUP: checks: rename the server_status_printf function
16442 - MEDIUM: checks: simplify server up/down/nolb transitions
16443 - MAJOR: checks: move health checks changes to set_server_check_status()
16444 - MINOR: server: make the status reporting function support a reason
16445 - MINOR: checks: simplify health check reporting functions
16446 - MINOR: server: implement srv_set_stopped()
16447 - MINOR: server: implement srv_set_running()
16448 - MINOR: server: implement srv_set_stopping()
16449 - MEDIUM: checks: simplify failure notification using srv_set_stopped()
16450 - MEDIUM: checks: simplify success notification using srv_set_running()
16451 - MEDIUM: checks: simplify stopping mode notification using srv_set_stopping()
16452 - MEDIUM: stats: report a server's own state instead of the tracked one's
16453 - MINOR: server: make use of srv_is_usable() instead of checking eweight
16454 - MAJOR: checks: add support for a new "drain" administrative mode
16455 - MINOR: stats: use the admin flags for soft enable/disable/stop/start on the web page
16456 - MEDIUM: stats: introduce new actions to simplify admin status management
16457 - MINOR: cli: introduce a new "set server" command
16458 - MINOR: stats: report a distinct output for DOWN caused by agent
16459 - MINOR: checks: support specific check reporting for the agent
16460 - MINOR: checks: support a neutral check result
16461 - BUG/MINOR: cli: "agent" was missing from the "enable"/"disable" help message
16462 - MEDIUM: cli: add support for enabling/disabling health checks.
16463 - MEDIUM: stats: report down caused by agent prior to reporting up
16464 - MAJOR: agent: rework the response processing and support additional actions
16465 - MINOR: stats: improve the stats web page to support more actions
16466 - CONTRIB: halog: avoid calling time/localtime/mktime for each line
16467 - DOC: document the workarouds for Google Chrome's bogus pre-connect
16468 - MINOR: stats: report SSL key computations per second
16469 - MINOR: stats: add counters for SSL cache lookups and misses
16470
Willy Tarreaua3393952014-05-10 15:16:43 +0200164712014/05/10 : 1.5-dev25
16472 - MEDIUM: connection: Implement and extented PROXY Protocol V2
16473 - MINOR: ssl: clean unused ACLs declarations
16474 - MINOR: ssl: adds fetchs and ACLs for ssl back connection.
16475 - MINOR: ssl: merge client's and frontend's certificate functions.
16476 - MINOR: ssl: adds ssl_f_sha1 fetch to return frontend's certificate fingerprint
16477 - MINOR: ssl: adds sample converter base64 for binary type.
16478 - MINOR: ssl: convert to binary ssl_fc_unique_id and ssl_bc_unique_id.
16479 - BUG/MAJOR: ssl: Fallback to private session cache if current lock mode is not supported.
16480 - MAJOR: ssl: Change default locks on ssl session cache.
16481 - BUG/MINOR: chunk: Fix function chunk_strcmp and chunk_strcasecmp match a substring.
16482 - MINOR: ssl: add global statement tune.ssl.force-private-cache.
16483 - MINOR: ssl: remove fallback to SSL session private cache if lock init fails.
16484 - BUG/MEDIUM: patterns: last fix was still not enough
16485 - MINOR: http: export the smp_fetch_cookie function
16486 - MINOR: http: generic pointer to rule argument
16487 - BUG/MEDIUM: pattern: a typo breaks automatic acl/map numbering
16488 - BUG/MAJOR: patterns: -i and -n are ignored for inlined patterns
16489 - BUG/MINOR: proxy: unsafe initialization of HTTP transaction when switching from TCP frontend
16490 - BUG/MINOR: http: log 407 in case of proxy auth
16491 - MINOR: http: rely on the message body parser to send 100-continue
16492 - MEDIUM: http: move reqadd after execution of http_request redirect
16493 - MEDIUM: http: jump to dedicated labels after http-request processing
16494 - BUG/MINOR: http: block rules forgot to increment the denied_req counter
16495 - BUG/MINOR: http: block rules forgot to increment the session's request counter
16496 - MEDIUM: http: move Connection header processing earlier
16497 - MEDIUM: http: remove even more of the spaghetti in the request path
16498 - MINOR: http: silently support the "block" action for http-request
16499 - CLEANUP: proxy: rename "block_cond" to "block_rules"
16500 - MEDIUM: http: emulate "block" rules using "http-request" rules
16501 - MINOR: http: remove the now unused loop over "block" rules
16502 - MEDIUM: http: factorize the "auth" action of http-request and stats
16503 - MEDIUM: http: make http-request rules processing return a verdict instead of a rule
16504 - MINOR: config: add minimum support for emitting warnings only once
16505 - MEDIUM: config: inform the user about the deprecatedness of "block" rules
16506 - MEDIUM: config: inform the user that "reqsetbe" is deprecated
16507 - MEDIUM: config: inform the user only once that "redispatch" is deprecated
16508 - MEDIUM: config: warn that '{cli,con,srv}timeout' are deprecated
16509 - BUG/MINOR: auth: fix wrong return type in pat_match_auth()
16510 - BUILD: config: remove a warning with clang
16511 - BUG/MAJOR: http: connection setup may stall on balance url_param
16512 - BUG/MEDIUM: http/session: disable client-side expiration only after body
16513 - BUG/MEDIUM: http: correctly report request body timeouts
16514 - BUG/MEDIUM: http: disable server-side expiration until client has sent the body
16515 - MEDIUM: listener: make the accept function more robust against pauses
16516 - BUILD: syscalls: remove improper inline statement in front of syscalls
16517 - BUILD: ssl: SSL_CTX_set_msg_callback() needs openssl >= 0.9.7
16518 - BUG/MAJOR: session: recover the correct connection pointer in half-initialized sessions
16519 - DOC: add some explanation on the shared cache build options in the readme.
16520 - MEDIUM: proxy: only adjust the backend's bind-process when already set
16521 - MEDIUM: config: limit nbproc to the machine's word size
16522 - MEDIUM: config: check the bind-process settings according to nbproc
16523 - MEDIUM: listener: parse the new "process" bind keyword
16524 - MEDIUM: listener: inherit the process mask from the proxy
16525 - MAJOR: listener: only start listeners bound to the same processes
16526 - MINOR: config: only report a warning when stats sockets are bound to more than 1 process
16527 - CLEANUP: config: set the maxaccept value for peers listeners earlier
16528 - BUG/MINOR: backend: only match IPv4 addresses with RDP cookies
16529 - BUG/MINOR: checks: correctly configure the address family and protocol
16530 - MINOR: tools: split is_addr() and is_inet_addr()
16531 - MINOR: protocols: use is_inet_addr() when only INET addresses are desired
16532 - MEDIUM: unix: add preliminary support for connecting to servers over UNIX sockets
16533 - MEDIUM: checks: only complain about the missing port when the check uses TCP
16534 - MEDIUM: unix: implement support for Linux abstract namespace sockets
16535 - DOC: map_beg was missing from the table of map_* converters
16536 - DOC: ebtree: indicate that prefix insertion/lookup may be used with strings
16537 - MEDIUM: pattern: use ebtree's longest match to index/lookup string beginning
16538 - BUILD: remove the obsolete BSD and OSX makefiles
16539 - MEDIUM: unix: avoid a double connect probe when no data are sent
16540 - DOC: stop referencing the slow git repository in the README
16541 - BUILD: only build the systemd wrapper on Linux 2.6 and above
16542 - DOC: update roadmap with completed tasks
16543 - MEDIUM: session: implement half-closed timeouts (client-fin and server-fin)
16544
Willy Tarreau8860dcd2014-04-26 00:08:14 +0200165452014/04/26 : 1.5-dev24
16546 - MINOR: pattern: find element in a reference
16547 - MEDIUM: http: ACL and MAP updates through http-(request|response) rules
16548 - MEDIUM: ssl: explicitly log failed handshakes after a heartbeat
16549 - DOC: Full section dedicated to the converters
16550 - MEDIUM: http: register http-request and http-response keywords
16551 - BUG/MINOR: compression: correctly report incoming byte count
16552 - BUG/MINOR: http: don't report server aborts as client aborts
16553 - BUG/MEDIUM: channel: bi_putblk() must not wrap before the end of buffer
16554 - CLEANUP: buffers: remove unused function buffer_contig_space_with_res()
16555 - MEDIUM: stats: reimplement HTTP keep-alive on the stats page
16556 - BUG/MAJOR: http: fix timeouts during data forwarding
16557 - BUG/MEDIUM: http: 100-continue responses must process the next part immediately
16558 - MEDIUM: http: move skipping of 100-continue earlier
16559 - BUILD: stats: let gcc know that last_fwd cannot be used uninitialized...
16560 - CLEANUP: general: get rid of all old occurrences of "session *t"
16561 - CLEANUP: http: remove the useless "if (1)" inherited from version 1.4
16562 - BUG/MEDIUM: stats: mismatch between behaviour and doc about front/back
16563 - MEDIUM: http: enable analysers to have keep-alive on stats
16564 - REORG: http: move HTTP Connection response header parsing earlier
16565 - MINOR: stats: always emit HTTP/1.1 in responses
16566 - MINOR: http: add capture.req.ver and capture.res.ver
16567 - MINOR: checks: add a new global max-spread-checks directive
16568 - BUG/MAJOR: http: fix the 'next' pointer when performing a redirect
16569 - MINOR: http: implement the max-keep-alive-queue setting
16570 - DOC: fix alphabetic order of tcp-check
16571 - MINOR: connection: add a new error code for SSL with heartbeat
16572 - MEDIUM: ssl: implement a workaround for the OpenSSL heartbleed attack
16573 - BUG/MEDIUM: Revert "MEDIUM: ssl: Add standardized DH parameters >= 1024 bits"
16574 - BUILD: http: remove a warning on strndup
16575 - BUILD: ssl: avoid a warning about conn not used with OpenSSL < 1.0.1
16576 - BUG/MINOR: ssl: really block OpenSSL's response to heartbleed attack
16577 - MINOR: ssl: finally catch the heartbeats missing the padding
16578
Willy Tarreau8317b282014-04-23 01:49:41 +0200165792014/04/23 : 1.5-dev23
16580 - BUG/MINOR: reject malformed HTTP/0.9 requests
16581 - MINOR: systemd wrapper: re-execute on SIGUSR2
16582 - MINOR: systemd wrapper: improve logging
16583 - MINOR: systemd wrapper: propagate exit status
16584 - BUG/MINOR: tcpcheck connect wrong behavior
16585 - MEDIUM: proxy: support use_backend with dynamic names
16586 - MINOR: stats: Enhancement to stats page to provide information of last session time.
16587 - BUG/MEDIUM: peers: fix key consistency for integer stick tables
16588 - DOC: fix a typo on http-server-close and encapsulate options with double-quotes
16589 - DOC: fix fetching samples syntax
16590 - MINOR: ssl: add ssl_fc_unique_id to fetch TLS Unique ID
16591 - MEDIUM: ssl: Use ALPN support as it will be available in OpenSSL 1.0.2
16592 - DOC: fix typo
16593 - CLEANUP: code style: use tabs to indent codes instead of spaces
16594 - DOC: fix a few config typos.
16595 - BUG/MINOR: raw_sock: also consider ENOTCONN in addition to EAGAIN for recv()
16596 - DOC: lowercase format string in unique-id
16597 - MINOR: set IP_FREEBIND on IPv6 sockets in transparent mode
16598 - BUG/MINOR: acl: req_ssl_sni fails with SSLv3 record version
16599 - BUG/MINOR: build: add missing objects in osx and bsd Makefiles
16600 - BUG/MINOR: build: handle whitespaces in wc -l output
16601 - BUG/MINOR: Fix name lookup ordering when compiled with USE_GETADDRINFO
16602 - MEDIUM: ssl: Add standardized DH parameters >= 1024 bits
16603 - BUG/MEDIUM: map: The map parser includes blank lines.
16604 - BUG/MINOR: log: The log of quotted capture header has been terminated by 2 quotes.
16605 - MINOR: standard: add function "encode_chunk"
16606 - BUG/MINOR: http: fix encoding of samples used in http headers
16607 - MINOR: sample: add hex converter
16608 - MEDIUM: sample: change the behavior of the bin2str cast
16609 - MAJOR: auth: Change the internal authentication system.
16610 - MEDIUM: acl/pattern: standardisation "of pat_parse_int()" and "pat_parse_dotted_ver()"
16611 - MEDIUM: pattern: The pattern parser no more uses <opaque> and just takes one string.
16612 - MEDIUM: pattern: Change the prototype of the function pattern_register().
16613 - CONTRIB: ip6range: add a network IPv6 range to mask converter
16614 - MINOR: pattern: separe list element from the data part.
16615 - MEDIUM: pattern: add indexation function.
16616 - MEDIUM: pattern: The parse functions just return "struct pattern" without memory allocation
16617 - MINOR: pattern: Rename "pat_idx_elt" to "pattern_tree"
16618 - MINOR: sample: dont call the sample cast function "c_none"
16619 - MINOR: standard: Add function for converting cidr to network mask.
16620 - MEDIUM: sample: Remove types SMP_T_CSTR and SMP_T_CBIN, replace it by SMP_F_CONST flags
16621 - MEDIUM: sample/http_proto: Add new type called method
16622 - MINOR: dumpstats: Group map inline help
16623 - MEDIUM: pattern: The function pattern_exec_match() returns "struct pattern" if the patten match.
16624 - MINOR: dumpstats: change map inline sentences
16625 - MINOR: dumpstats: change the "get map" display management
16626 - MINOR: map/dumpstats: The cli cmd "get map ..." display the "int" format.
16627 - MEDIUM: pattern: The match function browse itself the list or the tree.
16628 - MEDIUM: pattern: Index IPv6 addresses in a tree.
16629 - MEDIUM: pattern: add delete functions
16630 - MEDIUM: pattern: add prune function
16631 - MEDIUM: pattern: add sample lookup function.
16632 - MEDIUM: pattern/dumpstats: The function pattern_lookup() is no longer used
16633 - MINOR: map/pattern: The sample parser is stored in the pattern
16634 - MAJOR: pattern/map: Extends the map edition system in the patterns
16635 - MEDIUM: pattern: merge same pattern
16636 - MEDIUM: pattern: The expected type is stored in the pattern head, and conversion is executed once.
16637 - MINOR: pattern: Each pattern is identified by unique id.
16638 - MINOR: pattern/acl: Each pattern of each acl can be load with specified id
16639 - MINOR: pattern: The function "pattern_register()" is no longer used.
16640 - MINOR: pattern: Merge function pattern_add() with pat_ref_push().
16641 - MINOR: pattern: store configuration reference for each acl or map pattern.
16642 - MINOR: pattern: Each pattern expression element store the reference struct.
16643 - MINOR: dumpstats: display the reference for th key/pattern and value.
16644 - MEDIUM: pattern: delete() function uses the pat_ref_elt to find the element to be removed
16645 - MEDIUM: pattern_find_smp: functions find_smp uses the pat_ref_elt to find the element to be removed
16646 - MEDIUM: dumpstats/pattern: display and use each pointer of each pattern dumped
16647 - MINOR: pattern/map/acl: Centralization of the file parsers
16648 - MINOR: pattern: Check if the file reference is not used with acl and map
16649 - MINOR: acl/pattern: Acl "-M" option force to load file as map file with two columns
16650 - MEDIUM: dumpstats: Display error message during add of values.
16651 - MINOR: pattern: The function pat_ref_set() have now atomic behavior
16652 - MINOR: regex: The pointer regstr in the struc regex is no longer used.
16653 - MINOR: cli: Block the usage of the command "acl add" in many cases.
16654 - MINOR: doc: Update the documentation about the map and acl
16655 - MINOR: pattern: index duplicates
16656 - MINOR: configuration: File and line propagation
16657 - MINOR: dumpstat/conf: display all the configuration lines that using pattern reference
16658 - MINOR: standard: Disable ip resolution during the runtime
16659 - MINOR: pattern: Remove the flag "PAT_F_FROM_FILE".
16660 - MINOR: pattern: forbid dns resolutions
16661 - DOC: document "get map" / "get acl" on the CLI
16662 - MEDIUM: acl: Change the acl register struct
16663 - BUG/MEDIUM: acl: boolean only matches were broken by recent changes
16664 - DOC: pattern: pattern organisation schematics
16665 - MINOR: pattern/cli: Update used terms in documentation and cli
16666 - MINOR: cli: remove information about acl or map owner.
16667 - MINOR: session: don't always assume there's a listener
16668 - MINOR: pattern: Add function to prune and reload pattern list.
16669 - MINOR: standard: Add ipv6 support in the function url2sa().
16670 - MEDIUM: config: Dynamic sections.
16671 - BUG/MEDIUM: stick-table: fix IPv4-to-IPv6 conversion in src_* fetches
16672 - MINOR: http: Add the "language" converter to for use with accept-language
16673 - BUG/MINOR: log: Don't dump empty unique-id
16674 - BUG/MAJOR: session: fix a possible crash with src_tracked
16675 - DOC: Update "language" documentation
16676 - MINOR: http: add the function "del-header" to the directives http-request and http-response
16677 - DOC: add some information on capture.(req|res).hdr
16678 - MINOR: http: capture.req.method and capture.req.uri
16679 - MINOR: http: optimize capture.req.method and capture.req.uri
16680 - MINOR: session: clean up the connection free code
16681 - BUG/MEDIUM: checks: immediately report a connection success
16682 - MEDIUM: connection: don't use real send() flags in snd_buf()
16683 - OPTIM: ssl: implement dynamic record size adjustment
16684 - MINOR: stats: report exact last session time in backend too
16685 - BUG/MEDIUM: stats: the "lastsess" field must appear last in the CSV.
16686 - BUG/MAJOR: check: fix memory leak in "tcp-check connect" over SSL
16687 - BUG/MINOR: channel: initialize xfer_small/xfer_large on new buffers
16688 - MINOR: channel: add the date of last read in the channel
16689 - MEDIUM: stream-int: automatically disable CF_STREAMER flags after idle
16690 - MINOR: ssl: add DEFAULT_SSL_MAX_RECORD to set the record size at build time
16691 - MINOR: config: make the stream interface idle timer user-configurable
16692 - MINOR: config: add global directives to set default SSL ciphers
16693 - MINOR: sample: add a rand() sample fetch to return a sample.
16694 - BUG/MEDIUM: config: immediately abort if peers section has no name
16695 - BUG/MINOR: ssl: fix syntax in config error message
16696 - BUG/MEDIUM: ssl: always send a full buffer after EAGAIN
16697 - BUG/MINOR: config: server on-marked-* statement is ignored in default-server
16698 - BUG/MEDIUM: backend: prefer-last-server breaks redispatch
16699 - BUG/MEDIUM: http: continue to emit 503 on keep-alive to different server
16700 - MEDIUM: acl: fix pattern type for payload / payload_lv
16701 - BUG/MINOR: config: fix a crash on startup when a disabled backend references a peer
16702 - BUG/MEDIUM: compression: fix the output type of the compressor name
16703 - BUG/MEDIUM: http: don't start to forward request data before the connect
16704 - MINOR: http: release compression context only in http_end_txn()
16705 - MINOR: protect ebimtree/ebistree against multiple inclusions
16706 - MEDIUM: proxy: create a tree to store proxies by name
16707 - MEDIUM: proxy: make findproxy() use trees to look up proxies
16708 - MEDIUM: proxy: make get_backend_server() use findproxy() to lookup proxies
16709 - MEDIUM: stick-table: lookup table names using trees.
16710 - MEDIUM: config: faster lookup for duplicated proxy name
16711 - CLEANUP: acl: remove obsolete test in parse_acl_expr()
16712 - MINOR: sample: move smp_to_type to sample.c
16713 - MEDIUM: compression: consider the "q=" attribute in Accept-Encoding
16714 - REORG: cfgparse: move server keyword parsing to server.c
16715 - BUILD: adjust makefile for AIX 5.1
16716 - BUG/MEDIUM: pattern: fix wrong definition of the pat_prune_fcts array
16717 - CLEANUP: pattern: move array definitions to proto/ and not types/
16718 - BUG/MAJOR: counters: check for null-deref when looking up an alternate table
16719 - BUILD: ssl: previous patch failed
16720 - BUILD/MEDIUM: standard: get rid of the last strcpy()
16721 - BUILD/MEDIUM: standard: get rid of sprintf()
16722 - BUILD/MEDIUM: cfgparse: get rid of sprintf()
16723 - BUILD/MEDIUM: checks: get rid of sprintf()
16724 - BUILD/MEDIUM: http: remove calls to sprintf()
16725 - BUG/MEDIUM: systemd-wrapper: fix locating of haproxy binary
16726 - BUILD/MINOR: ssl: remove one call to sprintf()
16727 - MEDIUM: http: don't reject anymore message bodies not containing the url param
16728 - MEDIUM: http: wait for the first chunk or message body length in http_process_body
16729 - CLEANUP: http: rename http_process_request_body()
16730 - CLEANUP: http: prepare dedicated processing for chunked encoded message bodies
16731 - MINOR: http: make msg->eol carry the last CRLF length
16732 - MAJOR: http: do not use msg->sol while processing messages or forwarding data
16733 - MEDIUM: http: http_parse_chunk_crlf() must not advance the buffer pointer
16734 - MAJOR: http: don't update msg->sov anymore while processing the body
16735 - MINOR: http: add a small helper to compute the amount of body bytes present
16736 - MEDIUM: http: add a small helper to compute how far to rewind to find headers
16737 - MINOR: http: add a small helper to compute how far to rewind to find URI
16738 - MEDIUM: http: small helpers to compute how far to rewind to find BODY and DATA
16739 - MAJOR: http: reset msg->sov after headers are forwarded
16740 - MEDIUM: http: forward headers again while waiting for connection to complete
16741 - BUG/MINOR: http: deinitialize compression after a parsing error
16742 - BUG/MINOR: http: deinitialize compression after a compression error
16743 - MEDIUM: http: headers must be forwarded even if data was already inspected
16744 - MAJOR: http: re-enable compression on chunked encoding
16745 - MAJOR: http/compression: fix chunked-encoded response processing
16746 - MEDIUM: http: cleanup: centralize a little bit HTTP compression end
16747 - MEDIUM: http: start to centralize the forwarding code
16748 - MINOR: http: further cleanups of response forwarding function
16749 - MEDIUM: http: only allocate the temporary compression buffer when needed
16750 - MAJOR: http: centralize data forwarding in the request path
16751 - CLEANUP: http: document the response forwarding states
16752 - CLEANUP: http: remove all calls to http_silent_debug()
16753 - DOC: internal: add some reminders about HTTP parsing and pointer states
16754 - BUG/MAJOR: http: fix bug in parse_qvalue() when selecting compression algo
16755 - BUG/MINOR: stats: last session was not always set
16756 - DOC: add pointer to the Cyril's HTML doc in the README
16757 - MEDIUM: config: relax use_backend check to make the condition optional
16758 - MEDIUM: config: report misplaced http-request rules
16759 - MEDIUM: config: report misplaced use-server rules
16760 - DOC: update roadmap with what was done.
16761
Willy Tarreau1a34d572014-02-03 00:41:29 +0100167622014/02/03 : 1.5-dev22
16763 - MEDIUM: tcp-check new feature: connect
16764 - MEDIUM: ssl: Set verify 'required' as global default for servers side.
16765 - MINOR: ssl: handshake optim for long certificate chains.
16766 - BUG/MINOR: pattern: pattern comparison executed twice
16767 - BUG/MEDIUM: map: segmentation fault with the stats's socket command "set map ..."
16768 - BUG/MEDIUM: pattern: Segfault in binary parser
16769 - MINOR: pattern: move functions for grouping pat_match_* and pat_parse_* and add documentation.
16770 - MINOR: standard: The parse_binary() returns the length consumed and his documentation is updated
16771 - BUG/MINOR: payload: the patterns of the acl "req.ssl_ver" are no parsed with the good function.
16772 - BUG/MEDIUM: pattern: "pat_parse_dotted_ver()" set bad expect_type.
16773 - BUG/MINOR: sample: The c_str2int converter does not fail if the entry is not an integer
16774 - BUG/MEDIUM: http/auth: Sometimes the authentication credentials can be mix between two requests
16775 - MINOR: doc: Bad cli function name.
16776 - MINOR: http: smp_fetch_capture_header_* fetch captured headers
16777 - BUILD: last release inadvertently prepended a "+" in front of the date
16778 - BUG/MEDIUM: stream-int: fix the keep-alive idle connection handler
16779 - BUG/MEDIUM: backend: do not re-initialize the connection's context upon reuse
16780 - BUG: Revert "OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes"
16781 - BUG/MINOR: checks: successful check completion must not re-enable MAINT servers
16782 - MINOR: http: try to stick to same server after status 401/407
16783 - BUG/MINOR: http: always disable compression on HTTP/1.0
16784 - OPTIM: poll: restore polling after a poll/stop/want sequence
16785 - OPTIM: http: don't stop polling for read on the client side after a request
16786 - BUG/MEDIUM: checks: unchecked servers could not be enabled anymore
16787 - BUG/MEDIUM: stats: the web interface must check the tracked servers before enabling
16788 - BUG/MINOR: channel: CHN_INFINITE_FORWARD must be unsigned
16789 - BUG/MINOR: stream-int: do not clear the owner upon unregister
16790 - MEDIUM: stats: add support for HTTP keep-alive on the stats page
16791 - BUG/MEDIUM: stats: fix HTTP/1.0 breakage introduced in previous patch
16792 - Revert "MEDIUM: stats: add support for HTTP keep-alive on the stats page"
16793 - MAJOR: channel: add a new flag CF_WAKE_WRITE to notify the task of writes
16794 - OPTIM: session: set the READ_DONTWAIT flag when connecting
16795 - BUG/MINOR: http: don't clear the SI_FL_DONT_WAKE flag between requests
16796 - MINOR: session: factor out the connect time measurement
16797 - MEDIUM: session: prepare to support earlier transitions to the established state
16798 - MEDIUM: stream-int: make si_connect() return an established state when possible
16799 - MINOR: checks: use an inline function for health_adjust()
16800 - OPTIM: session: put unlikely() around the freewheeling code
16801 - MEDIUM: config: report a warning when multiple servers have the same name
16802 - BUG: Revert "OPTIM: poll: restore polling after a poll/stop/want sequence"
16803 - BUILD/MINOR: listener: remove a glibc warning on accept4()
16804 - BUG/MAJOR: connection: fix mismatch between rcv_buf's API and usage
16805 - BUILD: listener: fix recent accept4() again
16806 - BUG/MAJOR: ssl: fix breakage caused by recent fix abf08d9
16807 - BUG/MEDIUM: polling: ensure we update FD status when there's no more activity
16808 - MEDIUM: listener: fix polling management in the accept loop
16809 - MINOR: protocol: improve the proto->drain() API
16810 - MINOR: connection: add a new conn_drain() function
16811 - MEDIUM: tcp: report in tcp_drain() that lingering is already disabled on close
16812 - MEDIUM: connection: update callers of ctrl->drain() to use conn_drain()
16813 - MINOR: connection: add more error codes to report connection errors
16814 - MEDIUM: tcp: report connection error at the connection level
16815 - MEDIUM: checks: make use of chk_report_conn_err() for connection errors
16816 - BUG/MEDIUM: unique_id: HTTP request counter is not stable
16817 - DOC: fix misleading information about SIGQUIT
16818 - BUG/MAJOR: fix freezes during compression
16819 - BUG/MEDIUM: stream-interface: don't wake the task up before end of transfer
16820 - BUILD: fix VERDATE exclusion regex
16821 - CLEANUP: polling: rename "spec_e" to "state"
16822 - DOC: add a diagram showing polling state transitions
16823 - REORG: polling: rename "spec_e" to "state" and "spec_p" to "cache"
16824 - REORG: polling: rename "fd_spec" to "fd_cache"
16825 - REORG: polling: rename the cache allocation functions
16826 - REORG: polling: rename "fd_process_spec_events()" to "fd_process_cached_events()"
16827 - MAJOR: polling: rework the whole polling system
16828 - MAJOR: connection: remove the CO_FL_WAIT_{RD,WR} flags
16829 - MEDIUM: connection: remove conn_{data,sock}_poll_{recv,send}
16830 - MEDIUM: connection: add check for readiness in I/O handlers
16831 - MEDIUM: stream-interface: the polling flags must always be updated in chk_snd_conn
16832 - MINOR: stream-interface: no need to call fd_stop_both() on error
16833 - MEDIUM: connection: no need to recheck FD state
16834 - CLEANUP: connection: use conn_ctrl_ready() instead of checking the flag
16835 - CLEANUP: connection: use conn_xprt_ready() instead of checking the flag
16836 - CLEANUP: connection: fix comments in connection.h to reflect new behaviour.
16837 - OPTIM: raw-sock: don't speculate after a short read if polling is enabled
16838 - MEDIUM: polling: centralize polled events processing
16839 - MINOR: polling: create function fd_compute_new_polled_status()
16840 - MINOR: cli: add more information to the "show info" output
16841 - MEDIUM: listener: add support for limiting the session rate in addition to the connection rate
16842 - MEDIUM: listener: apply a limit on the session rate submitted to SSL
16843 - REORG: stats: move the stats socket states to dumpstats.c
16844 - MINOR: cli: add the new "show pools" command
16845 - BUG/MEDIUM: counters: flush content counters after each request
16846 - BUG/MEDIUM: counters: fix stick-table entry leak when using track-sc2 in connection
16847 - MINOR: tools: add very basic support for composite pointers
16848 - MEDIUM: counters: stop relying on session flags at all
16849 - BUG/MINOR: cli: fix missing break in command line parser
16850 - BUG/MINOR: config: correctly report when log-format headers require HTTP mode
16851 - MAJOR: http: update connection mode configuration
16852 - MEDIUM: http: make keep-alive + httpclose be passive mode
16853 - MAJOR: http: switch to keep-alive mode by default
16854 - BUG/MEDIUM: http: fix regression caused by recent switch to keep-alive by default
16855 - BUG/MEDIUM: listener: improve detection of non-working accept4()
16856 - BUILD: listener: add fcntl.h and unistd.h
16857 - BUG/MINOR: raw_sock: correctly set the MSG_MORE flag
16858
Willy Tarreau6b07bf72013-12-17 00:45:49 +0100168592013/12/17 : 1.5-dev21
16860 - MINOR: stats: don't use a monospace font to report numbers
16861 - MINOR: session: remove debugging code
16862 - BUG/MAJOR: patterns: fix double free caused by loading strings from files
16863 - MEDIUM: http: make option http_proxy automatically rewrite the URL
16864 - BUG/MEDIUM: http: cook_cnt() forgets to set its output type
16865 - BUG/MINOR: stats: correctly report throttle rate of low weight servers
16866 - BUG/MEDIUM: checks: servers must not start in slowstart mode
16867 - BUG/MINOR: acl: parser must also stop at comma on ACL-only keywords
16868 - MEDIUM: stream-int: implement a very simplistic idle connection manager
16869 - DOC: update the ROADMAP file
16870
Willy Tarreau11f64d62013-12-16 02:32:37 +0100168712013/12/16 : 1.5-dev20
16872 - DOC: add missing options to the manpage
16873 - DOC: add manpage references to all system calls
16874 - DOC: update manpage reference to haproxy-en.txt
16875 - DOC: remove -s and -l options from the manpage
16876 - DOC: missing information for the "description" keyword
16877 - DOC: missing http-send-name-header keyword in keyword table
16878 - MINOR: tools: function my_memmem() to lookup binary contents
16879 - MEDIUM: checks: add send/expect tcp based check
16880 - MEDIUM: backend: Enhance hash-type directive with an algorithm options
16881 - MEDIUM: backend: Implement avalanche as a modifier of the hashing functions.
16882 - DOC: Documentation for hashing function, with test results.
16883 - BUG/MEDIUM: ssl: potential memory leak using verifyhost
16884 - BUILD: ssl: compilation issue with openssl v0.9.6.
16885 - BUG/MINOR: ssl: potential memory leaks using ssl_c_key_alg or ssl_c_sig_alg.
16886 - MINOR: ssl: optimization of verifyhost on wildcard certificates.
16887 - BUG/MINOR: ssl: verifyhost does not match empty strings on wildcard.
16888 - MINOR: ssl: Add statement 'verifyhost' to "server" statements
16889 - CLEANUP: session: remove event_accept() which was not used anymore
16890 - BUG/MINOR: deinit: free fdinfo while doing cleanup
16891 - DOC: minor typo fix in documentation
16892 - BUG/MEDIUM: server: set the macro for server's max weight SRV_UWGHT_MAX to SRV_UWGHT_RANGE
16893 - BUG/MINOR: use the same check condition for server as other algorithms
16894 - DOC: fix typo in comments
16895 - BUG/MINOR: deinit: free server map which is allocated in init_server_map()
16896 - CLEANUP: stream_interface: cleanup loop information in si_conn_send_loop()
16897 - MINOR: buffer: align the last output line of buffer_dump()
16898 - MINOR: buffer: align the last output line if there are less than 8 characters left
16899 - DOC: stick-table: modify the description
16900 - OPTIM: stream_interface: return directly if the connection flag CO_FL_ERROR has been set
16901 - CLEANUP: code style: use tabs to indent codes
16902 - DOC: checkcache: block responses with cacheable cookies
16903 - BUG/MINOR: check_config_validity: check the returned value of stktable_init()
16904 - MEDIUM: haproxy-systemd-wrapper: Use haproxy in same directory
16905 - MEDIUM: systemd-wrapper: Kill child processes when interrupted
16906 - LOW: systemd-wrapper: Write debug information to stdout
16907 - BUG/MINOR: http: fix "set-tos" not working in certain configurations
16908 - MEDIUM: http: add IPv6 support for "set-tos"
16909 - DOC: ssl: update build instructions to use new SSL_* variables
16910 - BUILD/MINOR: systemd: fix compiler warning about unused result
16911 - url32+src - like base32+src but whole url including parameters
16912 - BUG/MINOR: fix forcing fastinter in "on-error"
16913 - CLEANUP: Make parameters of srv_downtime and srv_getinter const
16914 - CLEANUP: Remove unused 'last_slowstart_change' field from struct peer
16915 - MEDIUM: Split up struct server's check element
16916 - MEDIUM: Move result element to struct check
16917 - MEDIUM: Paramatise functions over the check of a server
16918 - MEDIUM: cfgparse: Factor out check initialisation
16919 - MEDIUM: Add state to struct check
16920 - MEDIUM: Move health element to struct check
16921 - MEDIUM: Add helper for task creation for checks
16922 - MEDIUM: Add helper function for failed checks
16923 - MEDIUM: Log agent fail, stopped or down as info
16924 - MEDIUM: Remove option lb-agent-chk
16925 - MEDIUM: checks: Add supplementary agent checks
16926 - MEDIUM: Do not mark a server as down if the agent is unavailable
16927 - MEDIUM: Set rise and fall of agent checks to 1
16928 - MEDIUM: Add enable and disable agent unix socket commands
16929 - MEDIUM: Add DRAIN state and report it on the stats page
16930 - BUILD/MINOR: missing header file
16931 - CLEANUP: regex: Create regex_comp function that compiles regex using compilation options
16932 - CLEANUP: The function "regex_exec" needs the string length but in many case they expect null terminated char.
16933 - MINOR: http: some exported functions were not in the header file
16934 - MINOR: http: change url_decode to return the size of the decoded string.
16935 - BUILD/MINOR: missing header file
16936 - BUG/MEDIUM: sample: The function v4tov6 cannot support input and output overlap
16937 - BUG/MINOR: arg: fix error reporting for add-header/set-header sample fetch arguments
16938 - MINOR: sample: export the generic sample conversion parser
16939 - MINOR: sample: export sample_casts
16940 - MEDIUM: acl: use the fetch syntax 'fetch(args),conv(),conv()' into the ACL keyword
16941 - MINOR: stick-table: use smp_expr_output_type() to retrieve the output type of a "struct sample_expr"
16942 - MINOR: sample: provide the original sample_conv descriptor struct to the argument checker function.
16943 - MINOR: tools: Add a function to convert buffer to an ipv6 address
16944 - MINOR: acl: export acl arrays
16945 - MINOR: acl: Extract the pattern parsing and indexation from the "acl_read_patterns_from_file()" function
16946 - MINOR: acl: Extract the pattern matching function
16947 - MINOR: sample: Define new struct sample_storage
16948 - MEDIUM: acl: associate "struct sample_storage" to each "struct acl_pattern"
16949 - REORG: acl/pattern: extract pattern matching from the acl file and create pattern.c
16950 - MEDIUM: pattern: create pattern expression
16951 - MEDIUM: pattern: rename "acl" prefix to "pat"
16952 - MEDIUM: sample: let the cast functions set their output type
16953 - MINOR: sample: add a private field to the struct sample_conv
16954 - MINOR: map: Define map types
16955 - MEDIUM: sample: add the "map" converter
16956 - MEDIUM: http: The redirect strings follows the log format rules.
16957 - BUG/MINOR: acl: acl parser does not recognize empty converter list
16958 - BUG/MINOR: map: The map list was declared in the map.h file
16959 - MINOR: map: Cleanup the initialisation of map descriptors.
16960 - MEDIUM: map: merge identical maps
16961 - BUG/MEDIUM: pattern: Pattern node has type of "struct pat_idx_elt" in place of "struct eb_node"
16962 - BUG/MEDIUM: map: Bad map file parser
16963 - CLEANUP/MINOR: standard: use the system define INET6_ADDRSTRLEN in place of MAX_IP6_LEN
16964 - BUG/MEDIUM: sample: conversion from str to ipv6 may read data past end
16965 - MINOR: map: export map_get_reference() function
16966 - MINOR: pattern: Each pattern sets the expected input type
16967 - MEDIUM: acl: Last patch change the output type
16968 - MEDIUM: pattern: Extract the index process from the pat_parse_*() functions
16969 - MINOR: standard: The function parse_binary() can use preallocated buffer
16970 - MINOR: regex: Change the struct containing regex
16971 - MINOR: regex: Copy the original regex expression into string.
16972 - MINOR: pattern: add support for compiling patterns for lookups
16973 - MINOR: pattern: make the pattern matching function return a pointer to the matched element
16974 - MINOR: map: export parse output sample functions
16975 - MINOR: pattern: add function to lookup a specific entry in pattern list
16976 - MINOR: pattern/map: Each pattern must free the associated sample
16977 - MEDIUM: dumpstat: make the CLI parser understand the backslash as an escape char
16978 - MEDIUM: map: dynamic manipulation of maps
16979 - BUG/MEDIUM: unique_id: junk in log on empty unique_id
16980 - BUG/MINOR: log: junk at the end of syslog packet
16981 - MINOR: Makefile: provide cscope rule
16982 - DOC: compression: chunk are not compressed anymore
16983 - MEDIUM: session: disable lingering on the server when the client aborts
16984 - BUG/MEDIUM: prevent gcc from moving empty keywords lists into BSS
16985 - DOC: remove the comment saying that SSL certs are not checked on the server side
16986 - BUG: counters: third counter was not stored if others unset
16987 - BUG/MAJOR: http: don't emit the send-name-header when no server is available
16988 - BUG/MEDIUM: http: "option checkcache" fails with the no-cache header
16989 - BUG/MAJOR: http: sample prefetch code was not properly migrated
16990 - BUG/MEDIUM: splicing: fix abnormal CPU usage with splicing
16991 - BUG/MINOR: stream_interface: don't call chk_snd() on polled events
16992 - OPTIM: splicing: use splice() for the last block when relevant
16993 - MEDIUM: sample: handle comma-delimited converter list
16994 - MINOR: sample: fix sample_process handling of unstable data
16995 - CLEANUP: acl: move the 3 remaining sample fetches to samples.c
16996 - MINOR: sample: add a new "date" fetch to return the current date
16997 - MINOR: samples: add the http_date([<offset>]) sample converter.
16998 - DOC: minor improvements to the part on the stats socket.
16999 - MEDIUM: sample: systematically pass the keyword pointer to the keyword
17000 - MINOR: payload: split smp_fetch_rdp_cookie()
17001 - MINOR: counters: factor out smp_fetch_sc*_tracked
17002 - MINOR: counters: provide a generic function to retrieve a stkctr for sc* and src.
17003 - MEDIUM: counters: factor out smp_fetch_sc*_get_gpc0
17004 - MEDIUM: counters: factor out smp_fetch_sc*_gpc0_rate
17005 - MEDIUM: counters: factor out smp_fetch_sc*_inc_gpc0
17006 - MEDIUM: counters: factor out smp_fetch_sc*_clr_gpc0
17007 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cnt
17008 - MEDIUM: counters: factor out smp_fetch_sc*_conn_rate
17009 - MEDIUM: counters: factor out smp_fetch_sc*_conn_cur
17010 - MEDIUM: counters: factor out smp_fetch_sc*_sess_cnt
17011 - MEDIUM: counters: factor out smp_fetch_sc*_sess_rate
17012 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_cnt
17013 - MEDIUM: counters: factor out smp_fetch_sc*_http_req_rate
17014 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_cnt
17015 - MEDIUM: counters: factor out smp_fetch_sc*_http_err_rate
17016 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_in
17017 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_in_rate
17018 - MEDIUM: counters: factor out smp_fetch_sc*_kbytes_out
17019 - MEDIUM: counters: factor out smp_fetch_sc*_bytes_out_rate
17020 - MEDIUM: counters: factor out smp_fetch_sc*_trackers
17021 - MINOR: session: make the number of stick counter entries more configurable
17022 - MEDIUM: counters: support passing the counter number as a fetch argument
17023 - MEDIUM: counters: support looking up a key in an alternate table
17024 - MEDIUM: cli: adjust the method for feeding frequency counters in tables
17025 - MINOR: cli: make it possible to enter multiple values at once with "set table"
17026 - MINOR: payload: allow the payload sample fetches to retrieve arbitrary lengths
17027 - BUG/MINOR: cli: "clear table" must not kill entries that don't match condition
17028 - MINOR: ssl: use MAXPATHLEN instead of PATH_MAX
17029 - MINOR: config: warn when a server with no specific port uses rdp-cookie
17030 - BUG/MEDIUM: unique_id: HTTP request counter must be unique!
17031 - DOC: add a mention about the limited chunk size
17032 - BUG/MEDIUM: fix broken send_proxy on FreeBSD
17033 - MEDIUM: stick-tables: flush old entries upon soft-stop
17034 - MINOR: tcp: add new "close" action for tcp-response
17035 - MINOR: payload: provide the "res.len" fetch method
17036 - BUILD: add SSL_INC/SSL_LIB variables to force the path to openssl
17037 - MINOR: http: compute response time before processing headers
17038 - BUG/MINOR: acl: fix improper string size assignment in proxy argument
17039 - BUG/MEDIUM: http: accept full buffers on smp_prefetch_http
17040 - BUG/MINOR: acl: implicit arguments of ACL keywords were not properly resolved
17041 - BUG/MEDIUM: session: risk of crash on out of memory conditions
17042 - BUG/MINOR: peers: set the accept date in outgoing connections
17043 - BUG/MEDIUM: tcp: do not skip tracking rules on second pass
17044 - BUG/MEDIUM: acl: do not evaluate next terms after a miss
17045 - MINOR: acl: add a warning when an ACL keyword is used without any value
17046 - MINOR: tcp: don't use tick_add_ifset() when timeout is known to be set
17047 - BUG/MINOR: acl: remove patterns from the tree before freeing them
17048 - MEDIUM: backend: add support for the wt6 hash
17049 - OPTIM/MEDIUM: epoll: fuse active events into polled ones during polling changes
17050 - OPTIM/MINOR: mark the source address as already known on accept()
17051 - BUG/MINOR: stats: don't count tarpitted connections twice
17052 - CLEANUP: http: homogenize processing of denied req counter
17053 - CLEANUP: http: merge error handling for req* and http-request *
17054 - BUG/MEDIUM: http: fix possible parser crash when parsing erroneous "http-request redirect" rules
17055 - BUG/MINOR: http: fix build warning introduced with url32/url32_src
17056 - BUG/MEDIUM: checks: fix slow start regression after fix attempt
17057 - BUG/MAJOR: server: weight calculation fails for map-based algorithms
17058 - MINOR: stats: report correct throttling percentage for servers in slowstart
17059 - OPTIM: connection: fold the error handling with handshake handling
17060 - MINOR: peers: accept to learn strings of different lengths
17061 - BUG/MAJOR: fix haproxy crash when using server tracking instead of checks
17062 - BUG/MAJOR: check: fix haproxy crash during soft-stop/soft-start
17063 - BUG/MINOR: stats: do not report "via" on tracking servers in maintenance
17064 - BUG/MINOR: connection: fix typo in error message report
17065 - BUG/MINOR: backend: fix target address retrieval in transparent mode
17066 - BUG/MINOR: config: report the correct track-sc number in tcp-rules
17067 - BUG/MINOR: log: fix log-format parsing errors
17068 - DOC: add some information about how to apply converters to samples
17069 - MINOR: acl/pattern: use types different from int to clarify who does what.
17070 - MINOR: pattern: import acl_find_match_name() into pattern.h
17071 - MEDIUM: stick-tables: support automatic conversion from ipv4<->ipv6
17072 - MEDIUM: log-format: relax parsing of '%' followed by unsupported characters
17073 - BUG/MINOR: http: usual deinit stuff in last commit
17074 - BUILD: log: silent a warning about isblank() with latest patches
17075 - BUG/MEDIUM: checks: fix health check regression causing them to depend on declaration order
17076 - BUG/MEDIUM: checks: fix a long-standing issue with reporting connection errors
17077 - BUG/MINOR: checks: don't consider errno and use conn->err_code
17078 - BUG/MEDIUM: checks: also update the DRAIN state from the web interface
17079 - MINOR: stats: remove some confusion between the DRAIN state and NOLB
17080 - BUG/MINOR: tcp: check that no error is pending during a connect probe
17081 - BUG/MINOR: connection: check EINTR when sending a PROXY header
17082 - MEDIUM: connection: set the socket shutdown flags on socket errors
17083 - BUG/MEDIUM: acl: fix regression introduced by latest converters support
17084 - MINOR: connection: clear errno prior to checking for errors
17085 - BUG/MINOR: checks: do not trust errno in write event before any syscall
17086 - MEDIUM: checks: centralize error reporting
17087 - OPTIM: checks: don't poll on recv when using plain TCP connects
17088 - OPTIM: checks: avoid setting SO_LINGER twice
17089 - MINOR: tools: add a generic binary hex string parser
17090 - BUG/MEDIUM: checks: tcp-check: do not poll when there's nothing to send
17091 - BUG/MEDIUM: check: tcp-check might miss some outgoing data when socket buffers are full
17092 - BUG/MEDIUM: args: fix double free on error path in argument expression parser
17093 - BUG/MINOR: acl: fix sample expression error reporting
17094 - BUG/MINOR: checks: tcp-check actions are enums, not flags
17095 - MEDIUM: checks: make tcp-check perform multiple send() at once
17096 - BUG/MEDIUM: stick: completely remove the unused flag from the store entries
17097 - OPTIM: ebtree: pack the struct eb_node to avoid holes on 64-bit
17098 - BUG/MEDIUM: stick-tables: complete the latest fix about store-responses
17099 - CLEANUP: stream_interface: remove unused field err_loc
17100 - MEDIUM: stats: don't use conn->xprt_st anymore
17101 - MINOR: session: add a simple function to retrieve a session from a task
17102 - MEDIUM: stats: don't use conn->xprt_ctx anymore
17103 - MEDIUM: peers: don't rely on conn->xprt_ctx anymore
17104 - MINOR: http: prevent smp_fetch_url_{ip,port} from using si->conn
17105 - MINOR: connection: make it easier to emit proxy protocol for unknown addresses
17106 - MEDIUM: stats: prepare the HTTP stats I/O handler to support more states
17107 - MAJOR: stats: move the HTTP stats handling to its applet
17108 - MEDIUM: stats: move request argument processing to the final step
17109 - MEDIUM: session: detect applets from the session by using s->target
17110 - MAJOR: session: check for a connection to an applet in sess_prepare_conn_req()
17111 - MAJOR: session: pass applet return traffic through the response analysers
17112 - MEDIUM: stream-int: split the shutr/shutw functions between applet and conn
17113 - MINOR: stream-int: make the shutr/shutw functions void
17114 - MINOR: obj: provide a safe and an unsafe access to pointed objects
17115 - MINOR: connection: add a field to store an object type
17116 - MINOR: connection: always initialize conn->objt_type to OBJ_TYPE_CONN
17117 - MEDIUM: stream interface: move the peers' ptr into the applet context
17118 - MINOR: stream-interface: move the applet context to its own struct
17119 - MINOR: obj: introduce a new type appctx
17120 - MINOR: stream-int: rename ->applet to ->appctx
17121 - MINOR: stream-int: split si_prepare_embedded into si_prepare_none and si_prepare_applet
17122 - MINOR: stream-int: add a new pointer to the end point
17123 - MEDIUM: stream-interface: set the pointer to the applet into the applet context
17124 - MAJOR: stream interface: remove the ->release function pointer
17125 - MEDIUM: stream-int: make ->end point to the connection or the appctx
17126 - CLEANUP: stream-int: remove obsolete si_ctrl function
17127 - MAJOR: stream-int: stop using si->conn and use si->end instead
17128 - MEDIUM: stream-int: do not allocate a connection in parallel to applets
17129 - MEDIUM: session: attach incoming connection to target on embryonic sessions
17130 - MINOR: connection: add conn_init() to (re)initialize a connection
17131 - MINOR: checks: call conn_init() to properly initialize the connection.
17132 - MINOR: peers: make use of conn_init() to initialize the connection
17133 - MINOR: session: use conn_init() to initialize the connections
17134 - MINOR: http: use conn_init() to reinitialize the server connection
17135 - MEDIUM: connection: replace conn_prepare with conn_assign
17136 - MINOR: get rid of si_takeover_conn()
17137 - MINOR: connection: add conn_new() / conn_free()
17138 - MAJOR: connection: add two new flags to indicate readiness of control/transport
17139 - MINOR: stream-interface: introduce si_reset() and si_set_state()
17140 - MINOR: connection: reintroduce conn_prepare to set the protocol and transport
17141 - MINOR: connection: replace conn_assign with conn_attach
17142 - MEDIUM: stream-interface: introduce si_attach_conn to replace si_prepare_conn
17143 - MAJOR: stream interface: dynamically allocate the outgoing connection
17144 - MEDIUM: connection: move the send_proxy offset to the connection
17145 - MINOR: connection: check for send_proxy during the connect(), not the SI
17146 - MEDIUM: connection: merge the send_proxy and local_send_proxy calls
17147 - MEDIUM: stream-int: replace occurrences of si->appctx with si_appctx()
17148 - MEDIUM: stream-int: return the allocated appctx in stream_int_register_handler()
17149 - MAJOR: stream-interface: dynamically allocate the applet context
17150 - MEDIUM: session: automatically register the applet designated by the target
17151 - MEDIUM: stats: delay appctx initialization
17152 - CLEANUP: peers: use less confusing state/status code names
17153 - MEDIUM: peers: delay appctx initialization
17154 - MINOR: stats: provide some appctx information in "show sess all"
17155 - DIET/MINOR: obj: pack the obj_type enum to 8 bits
17156 - DIET/MINOR: connection: rearrange a few fields to save 8 bytes in the struct
17157 - DIET/MINOR: listener: rearrange a few fields in struct listener to save 16 bytes
17158 - DIET/MINOR: proxy: rearrange a few fields in struct proxy to save 16 bytes
17159 - DIET/MINOR: session: reduce the struct session size by 8 bytes
17160 - DIET/MINOR: stream-int: rearrange a few fields in struct stream_interface to save 8 bytes
17161 - DIET/MINOR: http: reduce the size of struct http_txn by 8 bytes
17162 - MINOR: http: switch the http state to an enum
17163 - MINOR: http: use an enum for the auth method in http_auth_data
17164 - DIET/MINOR: task: reduce struct task size by 8 bytes
17165 - MINOR: stream_interface: add reporting of ressouce allocation errors
17166 - MINOR: session: report lack of resources using the new stream-interface's error code
17167 - BUILD: simplify the date and version retrieval in the makefile
17168 - BUILD: prepare the makefile to skip format lines in SUBVERS and VERDATE
17169 - BUILD: use format tags in VERDATE and SUBVERS files
17170 - BUG/MEDIUM: channel: bo_getline() must wait for \n until buffer is full
17171 - CLEANUP: check: server port is unsigned
17172 - BUG/MEDIUM: checks: agent doesn't get the response if server does not closes
17173 - MINOR: tools: buf2ip6 must not modify output on failure
17174 - MINOR: pattern: do not assign SMP_TYPES by default to patterns
17175 - MINOR: sample: make sample_parse_expr() use memprintf() to report parse errors
17176 - MINOR: arg: improve wording on error reporting
17177 - BUG/MEDIUM: sample: simplify and fix the argument parsing
17178 - MEDIUM: acl: fix the argument parser to let the lower layer report detailed errors
17179 - MEDIUM: acl: fix the initialization order of the ACL expression
17180 - CLEANUP: acl: remove useless blind copy-paste from sample converters
17181 - TESTS: add regression tests for ACL and sample expression parsers
17182 - BUILD: time: adapt the type of TV_ETERNITY to the local system
17183 - MINOR: chunks: allocate the trash chunks before parsing the config
17184 - BUILD: definitely silence some stupid GCC warnings
17185 - MINOR: chunks: always initialize the output chunk in get_trash_chunk()
17186 - MINOR: checks: improve handling of the servers tracking chain
17187 - REORG: checks: retrieve the check-specific defines from server.h to checks.h
17188 - MINOR: checks: use an enum instead of flags to report a check result
17189 - MINOR: checks: rename the state flags
17190 - MINOR: checks: replace state DISABLED with CONFIGURED and ENABLED
17191 - MINOR: checks: use check->state instead of srv->state & SRV_CHECKED
17192 - MINOR: checks: fix agent check interval computation
17193 - MINOR: checks: add a PAUSED state for the checks
17194 - MINOR: checks: create the agent tasks even when no check is configured
17195 - MINOR: checks: add a flag to indicate what check is an agent
17196 - MEDIUM: checks: enable agent checks even if health checks are disabled
17197 - BUG/MEDIUM: checks: ensure we can enable a server after boot
17198 - BUG/MEDIUM: checks: tracking servers must not inherit the MAINT flag
17199 - BUG/MAJOR: session: repair tcp-request connection rules
17200 - BUILD: fix SUBVERS extraction in the Makefile
17201 - BUILD: pattern: silence a warning about uninitialized value
17202 - BUILD: log: fix build warning on Solaris
17203 - BUILD: dumpstats: fix build error on Solaris
17204 - DOC: move option pgsql-check to the correct place
17205 - DOC: move option tcp-check to the proper place
17206 - MINOR: connection: add simple functions to report connection readiness
17207 - MEDIUM: connection: centralize handling of nolinger in fd management
17208 - OPTIM: http: set CF_READ_DONTWAIT on response message
17209 - OPTIM: http: do not re-enable reading on client side while closing the server side
17210 - MINOR: config: add option http-keep-alive
17211 - MEDIUM: connection: inform si_alloc_conn() whether existing conn is OK or not
17212 - MAJOR: stream-int: handle the connection reuse in si_connect()
17213 - MAJOR: http: add the keep-alive transition on the server side
17214 - MAJOR: backend: enable connection reuse
17215 - MINOR: http: add option prefer-last-server
17216 - MEDIUM: http: do not report connection errors for second and further requests
17217
Willy Tarreaueab1dc62013-06-17 15:10:25 +0200172182013/06/17 : 1.5-dev19
17219 - MINOR: stats: remove the autofocus on the scope input field
17220 - BUG/MEDIUM: Fix crt-list file parsing error: filtered name was ignored.
17221 - BUG/MEDIUM: ssl: EDH ciphers are not usable if no DH parameters present in pem file.
17222 - BUG/MEDIUM: shctx: makes the code independent on SSL runtime version.
17223 - MEDIUM: ssl: improve crt-list format to support negation
17224 - BUG: ssl: fix crt-list for clients not supporting SNI
17225 - MINOR: stats: show soft-stopped servers in different color
17226 - BUG/MINOR: config: "source" does not work in defaults section
17227 - BUG: regex: fix pcre compile error when using JIT
17228 - MINOR: ssl: add pattern fetch 'ssl_c_sha1'
17229 - BUG: ssl: send payload gets corrupted if tune.ssl.maxrecord is used
17230 - MINOR: show PCRE version and JIT status in -vv
17231 - BUG/MINOR: jit: don't rely on USE flag to detect support
17232 - DOC: readme: add suggestion to link against static openssl
17233 - DOC: examples: provide simplified ssl configuration
17234 - REORG: tproxy: prepare the transparent proxy defines for accepting other OSes
17235 - MINOR: tproxy: add support for FreeBSD
17236 - MINOR: tproxy: add support for OpenBSD
17237 - DOC: examples: provide an example of transparent proxy configuration for FreeBSD 8
17238 - CLEANUP: fix minor typo in error message.
17239 - CLEANUP: fix missing include <string.h> in proto/listener.h
17240 - CLEANUP: protect checks.h from multiple inclusions
17241 - MINOR: compression: acl "res.comp" and fetch "res.comp_algo"
17242 - BUG/MINOR: http: add-header/set-header did not accept the ACL condition
17243 - BUILD: mention in the Makefile that USE_PCRE_JIT is for libpcre >= 8.32
17244 - BUG/MEDIUM: splicing is broken since 1.5-dev12
17245 - BUG/MAJOR: acl: add implicit arguments to the resolve list
17246 - BUG/MINOR: tcp: fix error reporting for TCP rules
17247 - CLEANUP: peers: remove a bit of spaghetti to prepare for the next bugfix
17248 - MINOR: stick-table: allow to allocate an entry without filling it
17249 - BUG/MAJOR: peers: fix an overflow when syncing strings larger than 16 bytes
17250 - MINOR: session: only call http_send_name_header() when changing the server
17251 - MINOR: tcp: report the erroneous word in tcp-request track*
17252 - BUG/MAJOR: backend: consistent hash can loop forever in certain circumstances
17253 - BUG/MEDIUM: log: fix regression on log-format handling
17254 - MEDIUM: log: report file name, line number, and directive name with log-format errors
17255 - BUG/MINOR: cli: "clear table" did not work anymore without a key
17256 - BUG/MINOR: cli: "clear table xx data.xx" does not work anymore
17257 - BUG/MAJOR: http: compression still has defects on chunked responses
17258 - BUG/MINOR: stats: fix confirmation links on the stats interface
17259 - BUG/MINOR: stats: the status bar does not appear anymore after a change
17260 - BUG/MEDIUM: stats: allocate the stats frontend also on "stats bind-process"
17261 - BUG/MEDIUM: stats: fix a regression when dealing with POST requests
17262 - BUG/MINOR: fix unterminated ACL array in compression
17263 - BUILD: last fix broke non-linux platforms
17264 - MINOR: init: indicate the SSL runtime version on -vv.
17265 - BUG/MEDIUM: compression: the deflate algorithm must use global settings as well
17266 - BUILD: stdbool is not portable (again)
17267 - DOC: readme: add a small reminder about restrictions to respect in the code
17268 - MINOR: ebtree: add new eb_next_dup/eb_prev_dup() functions to visit duplicates
17269 - BUG/MINOR: acl: fix a double free during exit when using PCRE_JIT
17270 - DOC: fix wrong copy-paste in the rspdel example
17271 - MINOR: counters: make it easier to extend the amount of tracked counters
17272 - MEDIUM: counters: add support for tracking a third counter
17273 - MEDIUM: counters: add a new "gpc0_rate" counter in stick-tables
17274 - BUG/MAJOR: http: always ensure response buffer has some room for a response
17275 - MINOR: counters: add fetch/acl sc*_tracked to indicate whether a counter is tracked
17276 - MINOR: defaults: allow REQURI_LEN and CAPTURE_LEN to be redefined
17277 - MINOR: log: add a new flag 'L' for locally processed requests
17278 - MINOR: http: add full-length header fetch methods
17279 - MEDIUM: protocol: implement a "drain" function in protocol layers
17280 - MEDIUM: http: add a new "http-response" ruleset
17281 - MEDIUM: http: add the "set-nice" action to http-request and http-response
17282 - MEDIUM: log: add a log level override value in struct session
17283 - MEDIUM: http: add support for action "set-log-level" in http-request/http-response
17284 - MEDIUM: http: add support for "set-tos" in http-request/http-response
17285 - MEDIUM: http: add the "set-mark" action on http-request/http-response rules
17286 - MEDIUM: tcp: add "tcp-request connection expect-proxy layer4"
17287 - MEDIUM: acl: automatically detect the type of certain fetches
17288 - MEDIUM: acl: remove a lot of useless ACLs that are equivalent to their fetches
17289 - MEDIUM: acl: remove 15 additional useless ACLs that are equivalent to their fetches
17290 - DOC: major reorg of ACL + sample fetch
17291 - CLEANUP: http: remove the bogus urlp_ip ACL match
17292 - MINOR: acl: add the new "env()" fetch method to retrieve an environment variable
17293 - BUG/MINOR: acl: correctly consider boolean fetches when doing casts
17294 - BUG/CRITICAL: fix a possible crash when using negative header occurrences
17295 - DOC: update ROADMAP file
17296 - MEDIUM: counters: use sc0/sc1/sc2 instead of sc1/sc2/sc3
17297 - MEDIUM: stats: add proxy name filtering on the statistic page
17298
Willy Tarreau289dd922013-04-03 02:26:31 +0200172992013/04/03 : 1.5-dev18
17300 - DOCS: Add explanation of intermediate certs to crt paramater
17301 - DOC: typo and minor fixes in compression paragraph
17302 - MINOR: config: http-request configuration error message misses new keywords
17303 - DOC: minor typo fix in documentation
17304 - BUG/MEDIUM: ssl: ECDHE ciphers not usable without named curve configured.
17305 - MEDIUM: ssl: add bind-option "strict-sni"
17306 - MEDIUM: ssl: add mapping from SNI to cert file using "crt-list"
17307 - MEDIUM: regex: Use PCRE JIT in acl
17308 - DOC: simplify bind option "interface" explanation
17309 - DOC: tfo: bump required kernel to linux-3.7
17310 - BUILD: add explicit support for TFO with USE_TFO
17311 - MEDIUM: New cli option -Ds for systemd compatibility
17312 - MEDIUM: add haproxy-systemd-wrapper
17313 - MEDIUM: add systemd service
17314 - BUG/MEDIUM: systemd-wrapper: don't leak zombie processes
17315 - BUG/MEDIUM: remove supplementary groups when changing gid
17316 - BUG/MEDIUM: config: fix parser crash with bad bind or server address
17317 - BUG/MINOR: Correct logic in cut_crlf()
17318 - CLEANUP: checks: Make desc argument to set_server_check_status const
17319 - CLEANUP: dumpstats: Make cli_release_handler() static
17320 - MEDIUM: server: Break out set weight processing code
17321 - MEDIUM: server: Allow relative weights greater than 100%
17322 - MEDIUM: server: Tighten up parsing of weight string
17323 - MEDIUM: checks: Add agent health check
17324 - BUG/MEDIUM: ssl: openssl 0.9.8 doesn't open /dev/random before chroot
17325 - BUG/MINOR: time: frequency counters are not totally accurate
17326 - BUG/MINOR: http: don't process abortonclose when request was sent
17327 - BUG/MEDIUM: stream_interface: don't close outgoing connections on shutw()
17328 - BUG/MEDIUM: checks: ignore late resets after valid responses
17329 - DOC: fix bogus recommendation on usage of gpc0 counter
17330 - BUG/MINOR: http-compression: lookup Cache-Control in the response, not the request
17331 - MINOR: signal: don't block SIGPROF by default
17332 - OPTIM: epoll: make use of EPOLLRDHUP
17333 - OPTIM: splice: detect shutdowns and avoid splice() == 0
17334 - OPTIM: splice: assume by default that splice is working correctly
17335 - BUG/MINOR: log: temporary fix for lost SSL info in some situations
17336 - BUG/MEDIUM: peers: only the last peers section was used by tables
17337 - BUG/MEDIUM: config: verbosely reject peers sections with multiple local peers
17338 - BUG/MINOR: epoll: use a fix maxevents argument in epoll_wait()
17339 - BUG/MINOR: config: fix improper check for failed memory alloc in ACL parser
17340 - BUG/MINOR: config: free peer's address when exiting upon parsing error
17341 - BUG/MINOR: config: check the proper variable when parsing log minlvl
17342 - BUG/MEDIUM: checks: ensure the health_status is always within bounds
17343 - BUG/MINOR: cli: show sess should always validate s->listener
17344 - BUG/MINOR: log: improper NULL return check on utoa_pad()
17345 - CLEANUP: http: remove a useless null check
17346 - CLEANUP: tcp/unix: remove useless NULL check in {tcp,unix}_bind_listener()
17347 - BUG/MEDIUM: signal: signal handler does not properly check for signal bounds
17348 - BUG/MEDIUM: tools: off-by-one in quote_arg()
17349 - BUG/MEDIUM: uri_auth: missing NULL check and memory leak on memory shortage
17350 - BUG/MINOR: unix: remove the 'level' field from the ux struct
17351 - CLEANUP: http: don't try to deinitialize http compression if it fails before init
17352 - CLEANUP: config: slowstart is never negative
17353 - CLEANUP: config: maxcompcpuusage is never negative
17354 - BUG/MEDIUM: log: emit '-' for empty fields again
17355 - BUG/MEDIUM: checks: fix a race condition between checks and observe layer7
17356 - BUILD: fix a warning emitted by isblank() on non-c99 compilers
17357 - BUILD: improve the makefile's support for libpcre
17358 - MEDIUM: halog: add support for counting per source address (-ic)
17359 - MEDIUM: tools: make str2sa_range support all address syntaxes
17360 - MEDIUM: config: make use of str2sa_range() instead of str2sa()
17361 - MEDIUM: config: use str2sa_range() to parse server addresses
17362 - MEDIUM: config: use str2sa_range() to parse peers addresses
17363 - MINOR: tests: add a config file to ease address parsing tests.
17364 - MINOR: ssl: add a global tunable for the max SSL/TLS record size
17365 - BUG/MINOR: syscall: fix NR_accept4 system call on sparc/linux
17366 - BUILD/MINOR: syscall: add definition of NR_accept4 for ARM
17367 - MINOR: config: report missing peers section name
17368 - BUG/MEDIUM: tools: fix bad character handling in str2sa_range()
17369 - BUG/MEDIUM: stats: never apply "unix-bind prefix" to the global stats socket
17370 - MINOR: tools: prepare str2sa_range() to return an error message
17371 - BUG/MEDIUM: checks: don't call connect() on unsupported address families
17372 - MINOR: tools: prepare str2sa_range() to accept a prefix
17373 - MEDIUM: tools: make str2sa_range() parse unix addresses too
17374 - MEDIUM: config: make str2listener() use str2sa_range() to parse unix addresses
17375 - MEDIUM: config: use a single str2sa_range() call to parse bind addresses
17376 - MEDIUM: config: use str2sa_range() to parse log addresses
17377 - CLEANUP: tools: remove str2sun() which is not used anymore.
17378 - MEDIUM: config: add complete support for str2sa_range() in dispatch
17379 - MEDIUM: config: add complete support for str2sa_range() in server addr
17380 - MEDIUM: config: add complete support for str2sa_range() in 'server'
17381 - MEDIUM: config: add complete support for str2sa_range() in 'peer'
17382 - MEDIUM: config: add complete support for str2sa_range() in 'source' and 'usesrc'
17383 - CLEANUP: minor cleanup in str2sa_range() and str2ip()
17384 - CLEANUP: config: do not use multiple errmsg at once
17385 - MEDIUM: tools: support specifying explicit address families in str2sa_range()
17386 - MAJOR: listener: support inheriting a listening fd from the parent
17387 - MAJOR: tools: support environment variables in addresses
17388 - BUG/MEDIUM: http: add-header should not emit "-" for empty fields
17389 - BUG/MEDIUM: config: ACL compatibility check on "redirect" was wrong
17390 - BUG/MEDIUM: http: fix another issue caused by http-send-name-header
17391 - DOC: mention the new HTTP 307 and 308 redirect statues
17392 - MEDIUM: poll: do not use FD_* macros anymore
17393 - BUG/MAJOR: ev_select: disable the select() poller if maxsock > FD_SETSIZE
17394 - BUG/MINOR: acl: ssl_fc_{alg,use}_keysize must parse integers, not strings
17395 - BUG/MINOR: acl: ssl_c_used, ssl_fc{,_has_crt,_has_sni} take no pattern
17396 - BUILD: fix usual isdigit() warning on solaris
17397 - BUG/MEDIUM: tools: vsnprintf() is not always reliable on Solaris
17398 - OPTIM: buffer: remove one jump in buffer_count()
17399 - OPTIM: http: improve branching in chunk size parser
17400 - OPTIM: http: optimize the response forward state machine
17401 - BUILD: enable poll() by default in the makefile
17402 - BUILD: add explicit support for Mac OS/X
17403 - BUG/MAJOR: http: use a static storage for sample fetch context
17404 - BUG/MEDIUM: ssl: improve error processing and reporting in ssl_sock_load_cert_list_file()
17405 - BUG/MAJOR: http: fix regression introduced by commit a890d072
17406 - BUG/MAJOR: http: fix regression introduced by commit d655ffe
17407 - BUG/CRITICAL: using HTTP information in tcp-request content may crash the process
17408 - MEDIUM: acl: remove flag ACL_MAY_LOOKUP which is improperly used
17409 - MEDIUM: samples: use new flags to describe compatibility between fetches and their usages
17410 - MINOR: log: indicate it when some unreliable sample fetches are logged
17411 - MEDIUM: samples: move payload-based fetches and ACLs to their own file
17412 - MINOR: backend: rename sample fetch functions and declare the sample keywords
17413 - MINOR: frontend: rename sample fetch functions and declare the sample keywords
17414 - MINOR: listener: rename sample fetch functions and declare the sample keywords
17415 - MEDIUM: http: unify acl and sample fetch functions
17416 - MINOR: session: rename sample fetch functions and declare the sample keywords
17417 - MAJOR: acl: make all ACLs reference the fetch function via a sample.
17418 - MAJOR: acl: remove the arg_mask from the ACL definition and use the sample fetch's
17419 - MAJOR: acl: remove fetch argument validation from the ACL struct
17420 - MINOR: http: add new direction-explicit sample fetches for headers and cookies
17421 - MINOR: payload: add new direction-explicit sample fetches
17422 - CLEANUP: acl: remove ACL hooks which were never used
17423 - MEDIUM: proxy: remove acl_requires and just keep a flag "http_needed"
17424 - MINOR: sample: provide a function to report the name of a sample check point
17425 - MAJOR: acl: convert all ACL requires to SMP use+val instead of ->requires
17426 - CLEANUP: acl: remove unused references to ACL_USE_*
17427 - MINOR: http: replace acl_parse_ver with acl_parse_str
17428 - MEDIUM: acl: move the ->parse, ->match and ->smp fields to acl_expr
17429 - MAJOR: acl: add option -m to change the pattern matching method
17430 - MINOR: acl: remove the use_count in acl keywords
17431 - MEDIUM: acl: have a pointer to the keyword name in acl_expr
17432 - MEDIUM: acl: support using sample fetches directly in ACLs
17433 - MEDIUM: http: remove val_usr() to validate user_lists
17434 - MAJOR: sample: maintain a per-proxy list of the fetch args to resolve
17435 - MINOR: ssl: add support for the "alpn" bind keyword
17436 - MINOR: http: status code 303 is HTTP/1.1 only
17437 - MEDIUM: http: implement redirect 307 and 308
17438 - MINOR: http: status 301 should not be marked non-cacheable
17439
Willy Tarreaua3ecbd92012-12-28 15:04:05 +0100174402012/12/28 : 1.5-dev17
17441 - MINOR: ssl: Setting global tune.ssl.cachesize value to 0 disables SSL session cache.
17442 - BUG/MEDIUM: stats: fix stats page regression introduced by commit 20b0de5
17443 - BUG/MINOR: stats: last fix was still wrong
17444 - BUG/MINOR: stats: http-request rules still don't cope with stats
17445 - BUG/MINOR: http: http-request add-header emits a corrupted header
17446 - BUG/MEDIUM: stats: disable request analyser when processing POST or HEAD
17447 - BUG/MINOR: log: make log-format, unique-id-format and add-header more independant
17448 - BUILD: log: unused variable svid
17449 - CLEANUP: http: rename the misleading http_check_access_rule
17450 - MINOR: http: move redirect rule processing to its own function
17451 - REORG: config: move the http redirect rule parser to proto_http.c
17452 - MEDIUM: http: add support for "http-request redirect" rules
17453 - MEDIUM: http: add support for "http-request tarpit" rule
17454
Willy Tarreau69eda352012-12-24 16:48:14 +0100174552012/12/24 : 1.5-dev16
17456 - BUG/MEDIUM: ssl: Prevent ssl error from affecting other connections.
17457 - BUG/MINOR: ssl: error is not reported if it occurs simultaneously with peer close detection.
17458 - MINOR: ssl: add fetch and acl "ssl_c_used" to check if current SSL session uses a client certificate.
17459 - MINOR: contrib: make the iprange tool grep for addresses
17460 - CLEANUP: polling: gcc doesn't always optimize constants away
17461 - OPTIM: poll: optimize fd management functions for low register count CPUs
17462 - CLEANUP: poll: remove a useless double-check on fdtab[fd].owner
17463 - OPTIM: epoll: use a temp variable for intermediary flag computations
17464 - OPTIM: epoll: current fd does not count as a new one
17465 - BUG/MINOR: poll: the I/O handler was called twice for polled I/Os
17466 - MINOR: http: make resp_ver and status ACLs check for the presence of a response
17467 - BUG/MEDIUM: stream-interface: fix possible stalls during transfers
17468 - BUG/MINOR: stream_interface: don't return when the fd is already set
17469 - BUG/MEDIUM: connection: always update connection flags prior to computing polling
17470 - CLEANUP: buffer: use buffer_empty() instead of buffer_len()==0
17471 - BUG/MAJOR: stream_interface: fix occasional data transfer freezes
17472 - BUG/MEDIUM: stream_interface: fix another case where the reader might not be woken up
17473 - BUG/MINOR: http: don't abort client connection on premature responses
17474 - BUILD: no need to clean up when making git-tar
17475 - MINOR: log: add a tag for amount of bytes uploaded from client to server
17476 - BUG/MEDIUM: log: fix possible segfault during config parsing
17477 - MEDIUM: log: change a few log tokens to make them easier to remember
17478 - BUG/MINOR: log: add_to_logformat_list() used the wrong constants
17479 - MEDIUM: log-format: make the format parser more robust and more extensible
17480 - MINOR: sample: support cast from bool to string
17481 - MINOR: samples: add a function to fetch and convert any sample to a string
17482 - MINOR: log: add lf_text_len
17483 - MEDIUM: log: add the ability to include samples in logs
17484 - REORG: stats: massive code reorg and cleanup
17485 - REORG: stats: move the HTTP header injection to proto_http
17486 - REORG: stats: functions are now HTTP/CLI agnostic
17487 - BUG/MINOR: log: fix regression introduced by commit 8a3f52
17488 - MINOR: chunks: centralize the trash chunk allocation
17489 - MEDIUM: stats: use hover boxes instead of title to report details
17490 - MEDIUM: stats: use multi-line tips to display detailed counters
17491 - MINOR: tools: simplify the use of the int to ascii macros
17492 - MINOR: stats: replace STAT_FMT_CSV with STAT_FMT_HTML
17493 - MINOR: http: prepare to support more http-request actions
17494 - MINOR: log: make parse_logformat_string() take a const char *
17495 - MEDIUM: http: add http-request 'add-header' and 'set-header' to build headers
17496
Willy Tarreau0cae4b32012-12-12 00:39:52 +0100174972012/12/12 : 1.5-dev15
17498 - DOC: add a few precisions on compression
17499 - BUG/MEDIUM: ssl: Fix handshake failure on session resumption with client cert.
17500 - BUG/MINOR: ssl: One free session in cache remains unused.
17501 - BUG/MEDIUM: ssl: first outgoing connection would fail with {ca,crt}-ignore-err
17502 - MEDIUM: ssl: manage shared cache by blocks for huge sessions.
17503 - MINOR: acl: add fetch for server session rate
17504 - BUG/MINOR: compression: Content-Type is case insensitive
17505 - MINOR: compression: disable on multipart or status != 200
17506 - BUG/MINOR: http: don't report client aborts as server errors
17507 - MINOR: stats: compute the ratio of compressed response based on 2xx responses
17508 - MINOR: http: factor out the content-type checks
17509 - BUG/MAJOR: stats: correctly check for a possible divide error when showing compression ratios
17510 - BUILD: ssl: OpenSSL 0.9.6 has no renegociation
17511 - BUG/MINOR: http: disable compression when message has no body
17512 - MINOR: compression: make the stats a bit more robust
17513 - BUG/MEDIUM: comp: DEFAULT_MAXZLIBMEM was expressed in bytes and not megabytes
17514 - MINOR: connection: don't remove failed handshake flags
17515 - MEDIUM: connection: add an error code in connections
17516 - MEDIUM: connection: add minimal error reporting in logs for incomplete connections
17517 - MEDIUM: connection: add error reporting for the PROXY protocol header
17518 - MEDIUM: connection: add error reporting for the SSL
17519 - DOC: document the connection error format in logs
17520 - BUG/MINOR: http: don't log a 503 on client errors while waiting for requests
17521 - BUILD: stdbool is not portable
17522 - BUILD: ssl: NAME_MAX is not portable, use MAXPATHLEN instead
17523 - BUG/MAJOR: raw_sock: must check error code on hangup
17524 - BUG/MAJOR: polling: do not set speculative events on ERR nor HUP
17525 - BUG/MEDIUM: session: fix FD leak when transport layer logging is enabled
17526 - MINOR: stats: add a few more information on session dump
17527 - BUG/MINOR: tcp: set the ADDR_TO_SET flag on outgoing connections
17528 - CLEANUP: connection: remove unused server/proxy/task/si_applet declarations
17529 - BUG/MEDIUM: tcp: process could theorically crash on lack of source ports
17530 - MINOR: cfgparse: mention "interface" in the list of allowed "source" options
17531 - MEDIUM: connection: introduce "struct conn_src" for servers and proxies
17532 - CLEANUP: proto_tcp: use the same code to bind servers and backends
17533 - CLEANUP: backend: use the same tproxy address selection code for servers and backends
17534 - BUG/MEDIUM: stick-tables: conversions to strings were broken in dev13
17535 - MEDIUM: proto_tcp: add support for tracking L7 information
17536 - MEDIUM: counters: add sc1_trackers/sc2_trackers
17537 - MINOR: http: add the "base32" pattern fetch function
17538 - MINOR: http: add the "base32+src" fetch method.
17539 - CLEANUP: session: use an array for the stick counters
17540 - BUG/MINOR: proto_tcp: fix parsing of "table" in track-sc1/2
17541 - BUG/MINOR: proto_tcp: bidirectional fetches not supported anymore in track-sc1/2
17542 - BUG/MAJOR: connection: always recompute polling status upon I/O
17543 - BUG/MINOR: connection: remove a few synchronous calls to polling updates
17544 - MINOR: config: improve error checking on TCP stick-table tracking
17545 - DOC: add some clarifications to the readme
17546
Willy Tarreaufee48ce2012-11-26 03:11:05 +0100175472012/11/26 : 1.5-dev14
17548 - DOC: fix minor typos
17549 - BUG/MEDIUM: compression: does not forward trailers
17550 - MINOR: buffer_dump with ASCII
17551 - BUG/MEDIUM: checks: mark the check as stopped after a connect error
17552 - BUG/MEDIUM: checks: ensure we completely disable polling upon success
17553 - BUG/MINOR: checks: don't mark the FD as closed before transport close
17554 - MEDIUM: checks: avoid accumulating TIME_WAITs during checks
17555 - MINOR: cli: report the msg state in full text in "show sess $PTR"
17556 - CLEANUP: checks: rename some server check flags
17557 - MAJOR: checks: rework completely bogus state machine
17558 - BUG/MINOR: checks: slightly clean the state machine up
17559 - MEDIUM: checks: avoid waking the application up for pure TCP checks
17560 - MEDIUM: checks: close the socket as soon as we have a response
17561 - BUG/MAJOR: checks: close FD on all timeouts
17562 - MINOR: checks: fix recv polling after connect()
17563 - MEDIUM: connection: provide a common conn_full_close() function
17564 - BUG/MEDIUM: checks: prevent TIME_WAITs from appearing also on timeouts
17565 - BUG/MAJOR: peers: the listener's maxaccept was not set and caused loops
17566 - MINOR: listeners: make the accept loop more robust when maxaccept==0
17567 - BUG/MEDIUM: acl: correctly resolve all args, not just the first one
17568 - BUG/MEDIUM: acl: make prue_acl_expr() correctly free ACL expressions upon exit
17569 - BUG/MINOR: stats: fix inversion of the report of a check in progress
17570 - MEDIUM: tcp: add explicit support for delayed ACK in connect()
17571 - BUG/MEDIUM: connection: always disable polling upon error
17572 - MINOR: connection: abort earlier when errors are detected
17573 - BUG/MEDIUM: checks: report handshake failures
17574 - BUG/MEDIUM: connection: local_send_proxy must wait for connection to establish
17575 - MINOR: tcp: add support for the "v6only" bind option
17576 - MINOR: stats: also report the computed compression savings in html stats
17577 - MINOR: stats: report the total number of compressed responses per front/back
17578 - MINOR: tcp: add support for the "v4v6" bind option
17579 - DOC: stats: document the comp_rsp stats column
17580 - BUILD: buffer: fix another isprint() warning on solaris
17581 - MINOR: cli: add support for the "show sess all" command
17582 - BUG/MAJOR: cli: show sess <id> may randomly corrupt the back-ref list
17583 - MINOR: cli: improve output format for show sess $ptr
17584
Willy Tarreauad15d122012-11-22 01:11:33 +0100175852012/11/22 : 1.5-dev13
17586 - BUILD: fix build issue without USE_OPENSSL
17587 - BUILD: fix compilation error with DEBUG_FULL
17588 - DOC: ssl: remove prefer-server-ciphers documentation
17589 - DOC: ssl: surround keywords with quotes
17590 - DOC: fix minor typo on http-send-name-header
17591 - BUG/MEDIUM: acls using IPv6 subnets patterns incorrectly match IPs
17592 - BUG/MAJOR: fix a segfault on option http_proxy and url_ip acl
17593 - MEDIUM: http: accept IPv6 values with (s)hdr_ip acl
17594 - BUILD: report zlib support in haproxy -vv
17595 - DOC: compression: add some details and clean up the formatting
17596 - DOC: Change is_ssl acl to ssl_fc acl in example
17597 - DOC: make it clear what the HTTP request size is
17598 - MINOR: ssl: try to load Diffie-Hellman parameters from cert file
17599 - DOC: ssl: update 'crt' statement on 'bind' about Diffie-Hellman parameters loading
17600 - MINOR: ssl: add elliptic curve Diffie-Hellman support for ssl key generation
17601 - DOC: ssl: add 'ecdhe' statement on 'bind'
17602 - MEDIUM: ssl: add client certificate authentication support
17603 - DOC: ssl: add 'verify', 'cafile' and 'crlfile' statements on 'bind'
17604 - MINOR: ssl: add fetch and ACL 'client_crt' to test a client cert is present
17605 - DOC: ssl: add fetch and ACL 'client_cert'
17606 - MINOR: ssl: add ignore verify errors options
17607 - DOC: ssl: add 'ca-ignore-err' and 'crt-ignore-err' statements on 'bind'
17608 - MINOR: ssl: add fetch and ACL 'ssl_verify_result'
17609 - DOC: ssl: add fetch and ACL 'ssl_verify_result'
17610 - MINOR: ssl: add fetches and ACLs to return verify errors
17611 - DOC: ssl: add fetches and ACLs 'ssl_verify_crterr', 'ssl_verify_caerr', and 'ssl_verify_crterr_depth'
17612 - MINOR: ssl: disable shared memory and locks on session cache if nbproc == 1
17613 - MINOR: ssl: add build param USE_PRIVATE_CACHE to build cache without shared memory
17614 - MINOR: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
17615 - DOC: ssl : add statements 'notlsv11' and 'notlsv12' and rename 'notlsv1' to 'notlsv10'.
17616 - MEDIUM: config: authorize frontend and listen without bind.
17617 - MINOR: ssl: add statement 'no-tls-tickets' on bind to disable stateless session resumption
17618 - DOC: ssl: add 'no-tls-tickets' statement documentation.
17619 - BUG/MINOR: ssl: Fix CRL check was not enabled when crlfile was specified.
17620 - BUG/MINOR: build: Fix compilation issue on openssl 0.9.6 due to missing CRL feature.
17621 - BUG/MINOR: conf: Fix 'maxsslconn' statement error if built without OPENSSL.
17622 - BUG/MINOR: build: Fix failure with USE_OPENSSL=1 and USE_FUTEX=1 on archs i486 and i686.
17623 - MINOR: ssl: remove prefer-server-ciphers statement and set it as the default on ssl listeners.
17624 - BUG/MEDIUM: ssl: subsequent handshakes fail after server configuration changes
17625 - MINOR: ssl: add 'crt-base' and 'ca-base' global statements.
17626 - MEDIUM: conf: rename 'nosslv3' and 'notlsvXX' statements 'no-sslv3' and 'no-tlsvXX'.
17627 - MEDIUM: conf: rename 'cafile' and 'crlfile' statements 'ca-file' and 'crl-file'
17628 - MINOR: ssl: use bit fields to store ssl options instead of one int each
17629 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on bind.
17630 - MINOR: ssl: add 'force-sslv3' and 'force-tlsvXX' statements on server
17631 - MINOR: ssl: add defines LISTEN_DEFAULT_CIPHERS and CONNECT_DEFAULT_CIPHERS.
17632 - BUG/MINOR: ssl: Fix issue on server statements 'no-tls*' and 'no-sslv3'
17633 - MINOR: ssl: move ssl context init for servers from cfgparse.c to ssl_sock.c
17634 - MEDIUM: ssl: reject ssl server keywords in default-server statement
17635 - MINOR: ssl: add statement 'no-tls-tickets' on server side.
17636 - MINOR: ssl: add statements 'verify', 'ca-file' and 'crl-file' on servers.
17637 - DOC: Fix rename of options cafile and crlfile to ca-file and crl-file.
17638 - MINOR: sample: manage binary to string type convertion in stick-table and samples.
17639 - MINOR: acl: add parse and match primitives to use binary type on ACLs
17640 - MINOR: sample: export 'sample_get_trash_chunk(void)'
17641 - MINOR: conf: rename all ssl modules fetches using prefix 'ssl_fc' and 'ssl_c'
17642 - MINOR: ssl: add pattern and ACLs fetches 'ssl_fc_protocol', 'ssl_fc_cipher', 'ssl_fc_use_keysize' and 'ssl_fc_alg_keysize'
17643 - MINOR: ssl: add pattern fetch 'ssl_fc_session_id'
17644 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_version' and 'ssl_f_version'
17645 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_s_dn', 'ssl_c_i_dn', 'ssl_f_s_dn' and 'ssl_c_i_dn'
17646 - MINOR: ssl: add pattern and ACLs 'ssl_c_sig_alg' and 'ssl_f_sig_alg'
17647 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_key_alg' and 'ssl_f_key_alg'
17648 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_notbefore', 'ssl_c_notafter', 'ssl_f_notbefore' and 'ssl_f_notafter'
17649 - MINOR: ssl: add 'crt' statement on server.
17650 - MINOR: ssl: checks the consistency of a private key with the corresponding certificate
17651 - BUG/MEDIUM: ssl: review polling on reneg.
17652 - BUG/MEDIUM: ssl: Fix some reneg cases not correctly handled.
17653 - BUG/MEDIUM: ssl: Fix sometimes reneg fails if requested by server.
17654 - MINOR: build: allow packagers to specify the ssl cache size
17655 - MINOR: conf: add warning if ssl is not enabled and a certificate is present on bind.
17656 - MINOR: ssl: Add tune.ssl.lifetime statement in global.
17657 - MINOR: compression: Enable compression for IE6 w/SP2, IE7 and IE8
17658 - BUG: http: revert broken optimisation from 82fe75c1a79dac933391501b9d293bce34513755
17659 - DOC: duplicate ssl_sni section
17660 - MEDIUM: HTTP compression (zlib library support)
17661 - CLEANUP: use struct comp_ctx instead of union
17662 - BUILD: remove dependency to zlib.h
17663 - MINOR: compression: memlevel and windowsize
17664 - MEDIUM: use pool for zlib
17665 - MINOR: compression: try init in cfgparse.c
17666 - MINOR: compression: init before deleting headers
17667 - MEDIUM: compression: limit RAM usage
17668 - MINOR: compression: tune.comp.maxlevel
17669 - MINOR: compression: maximum compression rate limit
17670 - MINOR: log-format: check number of arguments in cfgparse.c
17671 - BUG/MEDIUM: compression: no Content-Type header but type in configuration
17672 - BUG/MINOR: compression: deinit zlib only when required
17673 - MEDIUM: compression: don't compress when no data
17674 - MEDIUM: compression: use pool for comp_ctx
17675 - MINOR: compression: rate limit in 'show info'
17676 - MINOR: compression: report zlib memory usage
17677 - BUG/MINOR: compression: dynamic level increase
17678 - DOC: compression: unsupported cases.
17679 - MINOR: compression: CPU usage limit
17680 - MEDIUM: http: add "redirect scheme" to ease HTTP to HTTPS redirection
17681 - BUG/MAJOR: ssl: missing tests in ACL fetch functions
17682 - MINOR: config: add a function to indent error messages
17683 - REORG: split "protocols" files into protocol and listener
17684 - MEDIUM: config: replace ssl_conf by bind_conf
17685 - CLEANUP: listener: remove unused conf->file and conf->line
17686 - MEDIUM: listener: add a minimal framework to register "bind" keyword options
17687 - MEDIUM: config: move the "bind" TCP parameters to proto_tcp
17688 - MEDIUM: move bind SSL parsing to ssl_sock
17689 - MINOR: config: improve error reporting for "bind" lines
17690 - MEDIUM: config: move the common "bind" settings to listener.c
17691 - MEDIUM: config: move all unix-specific bind keywords to proto_uxst.c
17692 - MEDIUM: config: enumerate full list of registered "bind" keywords upon error
17693 - MINOR: listener: add a scope field in the bind keyword lists
17694 - MINOR: config: pass the file and line to config keyword parsers
17695 - MINOR: stats: fill the file and line numbers in the stats frontend
17696 - MINOR: config: set the bind_conf entry on listeners created from a "listen" line.
17697 - MAJOR: listeners: use dual-linked lists to chain listeners with frontends
17698 - REORG: listener: move unix perms from the listener to the bind_conf
17699 - BUG: backend: balance hdr was broken since 1.5-dev11
17700 - MINOR: standard: make memprintf() support a NULL destination
17701 - MINOR: config: make str2listener() use memprintf() to report errors.
17702 - MEDIUM: stats: remove the stats_sock struct from the global struct
17703 - MINOR: ssl: set the listeners' data layer to ssl during parsing
17704 - MEDIUM: stats: make use of the standard "bind" parsers to parse global socket
17705 - DOC: move bind options to their own section
17706 - DOC: stats: refer to "bind" section for "stats socket" settings
17707 - DOC: fix index to reference bind and server options
17708 - BUG: http: do not print garbage on invalid requests in debug mode
17709 - BUG/MINOR: config: check the proper pointer to report unknown protocol
17710 - CLEANUP: connection: offer conn_prepare() to set up a connection
17711 - CLEANUP: config: fix typo inteface => interface
17712 - BUG: stats: fix regression introduced by commit 4348fad1
17713 - MINOR: cli: allow to set frontend maxconn to zero
17714 - BUG/MAJOR: http: chunk parser was broken with buffer changes
17715 - MEDIUM: monitor: simplify handling of monitor-net and mode health
17716 - MINOR: connection: add a pointer to the connection owner
17717 - MEDIUM: connection: make use of the owner instead of container_of
17718 - BUG/MINOR: ssl: report the L4 connection as established when possible
17719 - BUG/MEDIUM: proxy: must not try to stop disabled proxies upon reload
17720 - BUG/MINOR: config: use a copy of the file name in proxy configurations
17721 - BUG/MEDIUM: listener: don't pause protocols that do not support it
17722 - MEDIUM: proxy: add the global frontend to the list of normal proxies
17723 - BUG/MINOR: epoll: correctly disable FD polling in fd_rem()
17724 - MINOR: signal: really ignore signals configured with no handler
17725 - MINOR: buffers: add a few functions to write chars, strings and blocks
17726 - MINOR: raw_sock: always report asynchronous connection errors
17727 - MEDIUM: raw_sock: improve connection error reporting
17728 - REORG: connection: rename the data layer the "transport layer"
17729 - REORG: connection: rename app_cb "data"
17730 - MINOR: connection: provide a generic data layer wakeup callback
17731 - MINOR: connection: split conn_prepare() in two functions
17732 - MINOR: connection: add an init callback to the data_cb struct
17733 - MEDIUM: session: use a specific data_cb for embryonic sessions
17734 - MEDIUM: connection: use a generic data-layer init() callback
17735 - MEDIUM: connection: reorganize connection flags
17736 - MEDIUM: connection: only call the data->wake callback on activity
17737 - MEDIUM: connection: make it possible for data->wake to return an error
17738 - MEDIUM: session: register a data->wake callback to process errors
17739 - MEDIUM: connection: don't call the data->init callback upon error
17740 - MEDIUM: connection: it's not the data layer's role to validate the connection
17741 - MEDIUM: connection: automatically disable polling on error
17742 - REORG: connection: move the PROXY protocol management to connection.c
17743 - MEDIUM: connection: add a new local send-proxy transport callback
17744 - MAJOR: checks: make use of the connection layer to send checks
17745 - REORG: server: move the check-specific parts into a check subsection
17746 - MEDIUM: checks: use real buffers to store requests and responses
17747 - MEDIUM: check: add the ctrl and transport layers in the server check structure
17748 - MAJOR: checks: completely use the connection transport layer
17749 - MEDIUM: checks: add the "check-ssl" server option
17750 - MEDIUM: checks: enable the PROXY protocol with health checks
17751 - CLEANUP: checks: remove minor warnings for assigned but not used variables
17752 - MEDIUM: tcp: enable TCP Fast Open on systems which support it
17753 - BUG: connection: fix regression from commit 9e272bf9
17754 - CLEANUP: cttproxy: remove a warning on undeclared close()
17755 - BUG/MAJOR: ensure that hdr_idx is always reserved when L7 fetches are used
17756 - MEDIUM: listener: add support for linux's accept4() syscall
17757 - MINOR: halog: sort output by cookie code
17758 - BUG/MINOR: halog: -ad/-ac report the correct number of output lines
17759 - BUG/MINOR: halog: fix help message for -ut/-uto
17760 - MINOR: halog: add a parameter to limit output line count
17761 - BUILD: accept4: move the socketcall declaration outside of accept4()
17762 - MINOR: server: add minimal infrastructure to parse keywords
17763 - MINOR: standard: make indent_msg() support empty messages
17764 - MEDIUM: server: check for registered keywords when parsing unknown keywords
17765 - MEDIUM: server: move parsing of keyword "id" to server.c
17766 - BUG/MEDIUM: config: check-send-proxy was ignored if SSL was not builtin
17767 - MEDIUM: ssl: move "server" keyword SSL options parsing to ssl_sock.c
17768 - MEDIUM: log: suffix the frontend's name with '~' when using SSL
17769 - MEDIUM: connection: always unset the transport layer upon close
17770 - BUG/MINOR: session: fix some leftover from debug code
17771 - BUG/MEDIUM: session: enable the conn_session_update() callback
17772 - MEDIUM: connection: add a flag to hold the transport layer
17773 - MEDIUM: log: add a new LW_XPRT flag to pin the transport layer
17774 - MINOR: log: make lf_text use a const char *
17775 - MEDIUM: log: report SSL ciphers and version in logs using logformat %sslc/%sslv
17776 - REORG: http: rename msg->buf to msg->chn since it's a channel
17777 - CLEANUP: http: use 'chn' to name channel variables, not 'buf'
17778 - CLEANUP: channel: use 'chn' instead of 'buf' as local variable names
17779 - CLEANUP: tcp: use 'chn' instead of 'buf' or 'b' for channel pointer names
17780 - CLEANUP: stream_interface: use 'chn' instead of 'b' to name channel pointers
17781 - CLEANUP: acl: use 'chn' instead of 'b' to name channel pointers
17782 - MAJOR: channel: replace the struct buffer with a pointer to a buffer
17783 - OPTIM: channel: reorganize struct members to improve cache efficiency
17784 - CLEANUP: session: remove term_trace which is not used anymore
17785 - OPTIM: session: reorder struct session fields
17786 - OPTIM: connection: pack the struct target
17787 - DOC: document relations between internal entities
17788 - MINOR: ssl: add 'ssl_npn' sample/acl to extract TLS/NPN information
17789 - BUILD: ssl: fix shctx build on older compilers
17790 - MEDIUM: ssl: add support for the "npn" bind keyword
17791 - BUG: ssl: fix ssl_sni ACLs to correctly process regular expressions
17792 - MINOR: chunk: provide string compare functions
17793 - MINOR: sample: accept fetch keywords without parenthesis
17794 - MEDIUM: sample: pass an empty list instead of a null for fetch args
17795 - MINOR: ssl: improve socket behaviour upon handshake abort.
17796 - BUG/MEDIUM: http: set DONTWAIT on data when switching to tunnel mode
17797 - MEDIUM: listener: provide a fallback for accept4() when not supported
17798 - BUG/MAJOR: connection: risk of crash on certain tricky close scenario
17799 - MEDIUM: cli: allow the stats socket to be bound to a specific set of processes
17800 - OPTIM: channel: inline channel_forward's fast path
17801 - OPTIM: http: inline http_parse_chunk_size() and http_skip_chunk_crlf()
17802 - OPTIM: tools: inline hex2i()
17803 - CLEANUP: http: rename HTTP_MSG_DATA_CRLF state
17804 - MINOR: compression: automatically disable compression for older browsers
17805 - MINOR: compression: optimize memLevel to improve byte rate
17806 - BUG/MINOR: http: compression should consider all Accept-Encoding header values
17807 - BUILD: fix coexistence of openssl and zlib
17808 - MINOR: ssl: add pattern and ACLs fetches 'ssl_c_serial' and 'ssl_f_serial'
17809 - BUG/MEDIUM: command-line option -D must have precedence over "debug"
17810 - MINOR: tools: add a clear_addr() function to unset an address
17811 - BUG/MEDIUM: tcp: transparent bind to the source only when address is set
17812 - CLEANUP: remove trashlen
17813 - MAJOR: session: detach the connections from the stream interfaces
17814 - DOC: update document describing relations between internal entities
17815 - BUILD: make it possible to specify ZLIB path
17816 - MINOR: compression: add an offload option to remove the Accept-Encoding header
17817 - BUG: compression: disable auto-close and enable MSG_MORE during transfer
17818 - CLEANUP: completely remove trashlen
17819 - MINOR: chunk: add a function to reset a chunk
17820 - CLEANUP: replace chunk_printf() with chunk_appendf()
17821 - MEDIUM: make the trash be a chunk instead of a char *
17822 - MEDIUM: remove remains of BUFSIZE in HTTP auth and sample conversions
17823 - MEDIUM: stick-table: allocate the table key of size buffer size
17824 - BUG/MINOR: stream_interface: don't loop over ->snd_buf()
17825 - BUG/MINOR: session: ensure that we don't retry connection if some data were sent
17826 - OPTIM: session: don't process the whole session when only timers need a refresh
17827 - BUG/MINOR: session: mark the handshake as complete earlier
17828 - MAJOR: connection: remove the CO_FL_CURR_*_POL flag
17829 - BUG/MAJOR: always clear the CO_FL_WAIT_* flags after updating polling flags
17830 - MAJOR: sepoll: make the poller totally event-driven
17831 - OPTIM: stream_interface: disable reading when CF_READ_DONTWAIT is set
17832 - BUILD: compression: remove a build warning
17833 - MEDIUM: fd: don't unset fdtab[].updated upon delete
17834 - REORG: fd: move the speculative I/O management from ev_sepoll
17835 - REORG: fd: move the fd state management from ev_sepoll
17836 - REORG: fd: centralize the processing of speculative events
17837 - BUG: raw_sock: also consider ENOTCONN in addition to EAGAIN
17838 - BUILD: stream_interface: remove si_fd() and its references
17839 - BUILD: compression: enable build in BSD and OSX Makefiles
17840 - MAJOR: ev_select: make the poller support speculative events
17841 - MAJOR: ev_poll: make the poller support speculative events
17842 - MAJOR: ev_kqueue: make the poller support speculative events
17843 - MAJOR: polling: replace epoll with sepoll and remove sepoll
17844 - MAJOR: polling: remove unused callbacks from the poller struct
17845 - MEDIUM: http: refrain from sending "Connection: close" when Upgrade is present
17846 - CLEANUP: channel: remove any reference of the hijackers
17847 - CLEANUP: stream_interface: remove the external task type target
17848 - MAJOR: connection: replace struct target with a pointer to an enum
17849 - BUG: connection: fix typo in previous commit
17850 - BUG: polling: don't skip polled events in the spec list
17851 - MINOR: splice: disable it when the system returns EBADF
17852 - MINOR: build: allow packagers to specify the default maxzlibmem
17853 - BUG: halog: fix broken output limitation
17854 - BUG: proxy: fix server name lookup in get_backend_server()
17855 - BUG: compression: do not always increment the round counter on allocation failure
17856 - BUG/MEDIUM: compression: release the zlib pools between keep-alive requests
17857 - MINOR: global: don't prevent nbproc from being redefined
17858 - MINOR: config: support process ranges for "bind-process"
17859 - MEDIUM: global: add support for CPU binding on Linux ("cpu-map")
17860 - MINOR: ssl: rename and document the tune.ssl.cachesize option
17861 - DOC: update the PROXY protocol spec to support v2
17862 - MINOR: standard: add a simple popcount function
17863 - MEDIUM: adjust the maxaccept per listener depending on the number of processes
17864 - BUG: compression: properly disable compression when content-type does not match
17865 - MINOR: cli: report connection status in "show sess xxx"
17866 - BUG/MAJOR: stream_interface: certain workloads could cause get stuck
17867 - BUILD: cli: fix build when SSL is enabled
17868 - MINOR: cli: report the fd state in "show sess xxx"
17869 - MINOR: cli: report an error message on missing argument to compression rate
17870 - MINOR: http: add some debugging functions to pretty-print msg state names
17871 - BUG/MAJOR: stream_interface: read0 not always handled since dev12
17872 - DOC: documentation on http header capture is wrong
17873 - MINOR: http: allow the cookie capture size to be changed
17874 - DOC: http header capture has not been limited in size for a long time
17875 - DOC: update readme with build methods for BSD
17876 - BUILD: silence a warning on Solaris about usage of isdigit()
17877 - MINOR: stats: report HTTP compression stats per frontend and per backend
17878 - MINOR: log: add '%Tl' to log-format
17879 - MINOR: samples: update the url_param fetch to match parameters in the path
17880
Willy Tarreau16216822012-09-10 09:46:55 +0200178812012/09/10 : 1.5-dev12
17882 - CONTRIB: halog: sort URLs by avg bytes_read or total bytes_read
17883 - MEDIUM: ssl: add support for prefer-server-ciphers option
17884 - MINOR: IPv6 support for transparent proxy
17885 - MINOR: protocol: add SSL context to listeners if USE_OPENSSL is defined
17886 - MINOR: server: add SSL context to servers if USE_OPENSSL is defined
17887 - MEDIUM: connection: add a new handshake flag for SSL (CO_FL_SSL_WAIT_HS).
17888 - MEDIUM: ssl: add new files ssl_sock.[ch] to provide the SSL data layer
17889 - MEDIUM: config: add the 'ssl' keyword on 'bind' lines
17890 - MEDIUM: config: add support for the 'ssl' option on 'server' lines
17891 - MEDIUM: ssl: protect against client-initiated renegociation
17892 - BUILD: add optional support for SSL via the USE_OPENSSL flag
17893 - MEDIUM: ssl: add shared memory session cache implementation.
17894 - MEDIUM: ssl: replace OpenSSL's session cache with the shared cache
17895 - MINOR: ssl add global setting tune.sslcachesize to set SSL session cache size.
17896 - MEDIUM: ssl: add support for SNI and wildcard certificates
17897 - DOC: Typos cleanup
17898 - DOC: fix name for "option independant-streams"
17899 - DOC: specify the default value for maxconn in the context of a proxy
17900 - BUG/MINOR: to_log erased with unique-id-format
17901 - LICENSE: add licence exception for OpenSSL
17902 - BUG/MAJOR: cookie prefix doesn't support cookie-less servers
17903 - BUILD: add an AIX 5.2 (and later) target.
17904 - MEDIUM: fd/si: move peeraddr from struct fdinfo to struct connection
17905 - MINOR: halog: use the more recent dual-mode fgets2 implementation
17906 - BUG/MEDIUM: ebtree: ebmb_insert() must not call cmp_bits on full-length matches
17907 - CLEANUP: halog: make clean should also remove .o files
17908 - OPTIM: halog: make use of memchr() on platforms which provide a fast one
17909 - OPTIM: halog: improve cold-cache behaviour when loading a file
17910 - BUG/MINOR: ACL implicit arguments must be created with unresolved flag
17911 - MINOR: replace acl_fetch_{path,url}* with smp_fetch_*
17912 - MEDIUM: pattern: add the "base" sample fetch method
17913 - OPTIM: i386: make use of kernel-mode-linux when available
17914 - BUG/MINOR: tarpit: fix condition to return the HTTP 500 message
17915 - BUG/MINOR: polling: some events were not set in various pollers
17916 - MINOR: http: add the urlp_val ACL match
17917 - BUG: stktable: tcp_src_to_stktable_key() must return NULL on invalid families
17918 - MINOR: stats/cli: add plans to support more stick-table actions
17919 - MEDIUM: stats/cli: add support for "set table key" to enter values
17920 - REORG/MEDIUM: fd: remove FD_STCLOSE from struct fdtab
17921 - REORG/MEDIUM: fd: remove checks for FD_STERROR in ev_sepoll
17922 - REORG/MEDIUM: fd: get rid of FD_STLISTEN
17923 - REORG/MINOR: connection: move declaration to its own include file
17924 - REORG/MINOR: checks: put a struct connection into the server
17925 - MINOR: connection: add flags to the connection struct
17926 - MAJOR: get rid of fdtab[].state and use connection->flags instead
17927 - MINOR: fd: add a new I/O handler to fdtab
17928 - MEDIUM: polling: prepare to call the iocb() function when defined.
17929 - MEDIUM: checks: make use of fdtab->iocb instead of cb[]
17930 - MEDIUM: protocols: use the generic I/O callback for accept callbacks
17931 - MINOR: connection: add a handler for fd-based connections
17932 - MAJOR: connection: replace direct I/O callbacks with the connection callback
17933 - MINOR: fd: make fdtab->owner a connection and not a stream_interface anymore
17934 - MEDIUM: connection: remove the FD_POLL_* flags only once
17935 - MEDIUM: connection: extract the send_proxy callback from proto_tcp
17936 - MAJOR: tcp: remove the specific I/O callbacks for TCP connection probes
17937 - CLEANUP: remove the now unused fdtab direct I/O callbacks
17938 - MAJOR: remove the stream interface and task management code from sock_*
17939 - MEDIUM: stream_interface: pass connection instead of fd in sock_ops
17940 - MEDIUM: stream_interface: centralize the SI_FL_ERR management
17941 - MAJOR: connection: add a new CO_FL_CONNECTED flag
17942 - MINOR: rearrange tcp_connect_probe() and fix wrong return codes
17943 - MAJOR: connection: call data layer handshakes from the handler
17944 - MEDIUM: fd: remove the EV_FD_COND_* primitives
17945 - MINOR: sock_raw: move calls to si_data_close upper
17946 - REORG: connection: replace si_data_close() with conn_data_close()
17947 - MEDIUM: sock_raw: introduce a read0 callback that is different from shutr
17948 - MAJOR: stream_int: use a common stream_int_shut*() functions regardless of the data layer
17949 - MAJOR: fd: replace all EV_FD_* macros with new fd_*_* inline calls
17950 - MEDIUM: fd: add fd_poll_{recv,send} for use when explicit polling is required
17951 - MEDIUM: connection: add definitions for dual polling mechanisms
17952 - MEDIUM: connection: make use of the new polling functions
17953 - MAJOR: make use of conn_{data|sock}_{poll|stop|want}* in connection handlers
17954 - MEDIUM: checks: don't use FD_WAIT_* anymore
17955 - MINOR: fd: get rid of FD_WAIT_*
17956 - MEDIUM: stream_interface: offer a generic function for connection updates
17957 - MEDIUM: stream-interface: offer a generic chk_rcv function for connections
17958 - MEDIUM: stream-interface: add a snd_buf() callback to sock_ops
17959 - MEDIUM: stream-interface: provide a generic stream_int_chk_snd_conn() function
17960 - MEDIUM: stream-interface: provide a generic si_conn_send_cb callback
17961 - MEDIUM: stream-interface: provide a generic stream_sock_read0() function
17962 - REORG/MAJOR: use "struct channel" instead of "struct buffer"
17963 - REORG/MAJOR: extract "struct buffer" from "struct channel"
17964 - MINOR: connection: provide conn_{data|sock}_{read0|shutw} functions
17965 - REORG: sock_raw: rename the files raw_sock*
17966 - MAJOR: raw_sock: extract raw_sock_to_buf() from raw_sock_read()
17967 - MAJOR: raw_sock: temporarily disable splicing
17968 - MINOR: stream-interface: add an rcv_buf callback to sock_ops
17969 - REORG: stream-interface: move sock_raw_read() to si_conn_recv_cb()
17970 - MAJOR: connection: split the send call into connection and stream interface
17971 - MAJOR: stream-interface: restore splicing mechanism
17972 - MAJOR: stream-interface: make conn_notify_si() more robust
17973 - MEDIUM: proxy-proto: don't use buffer flags in conn_si_send_proxy()
17974 - MAJOR: stream-interface: don't commit polling changes in every callback
17975 - MAJOR: stream-interface: fix splice not to call chk_snd by itself
17976 - MEDIUM: stream-interface: don't remove WAIT_DATA when a handshake is in progress
17977 - CLEANUP: connection: split sock_ops into data_ops, app_cp and si_ops
17978 - REORG: buffers: split buffers into chunk,buffer,channel
17979 - MAJOR: channel: remove the BF_OUT_EMPTY flag
17980 - REORG: buffer: move buffer_flush, b_adv and b_rew to buffer.h
17981 - MINOR: channel: rename bi_full to channel_full as it checks the whole channel
17982 - MINOR: buffer: provide a new buffer_full() function
17983 - MAJOR: channel: stop relying on BF_FULL to take action
17984 - MAJOR: channel: remove the BF_FULL flag
17985 - REORG: channel: move buffer_{replace,insert_line}* to buffer.{c,h}
17986 - CLEANUP: channel: usr CF_/CHN_ prefixes instead of BF_/BUF_
17987 - CLEANUP: channel: use "channel" instead of "buffer" in function names
17988 - REORG: connection: move the target pointer from si to connection
17989 - MAJOR: connection: move the addr field from the stream_interface
17990 - MEDIUM: stream_interface: remove CAP_SPLTCP/CAP_SPLICE flags
17991 - MEDIUM: proto_tcp: remove any dependence on stream_interface
17992 - MINOR: tcp: replace tcp_src_to_stktable_key with addr_to_stktable_key
17993 - MEDIUM: connection: add an ->init function to data layer
17994 - MAJOR: session: introduce embryonic sessions
17995 - MAJOR: connection: make the PROXY decoder a handshake handler
17996 - CLEANUP: frontend: remove the old proxy protocol decoder
17997 - MAJOR: connection: rearrange the polling flags.
17998 - MEDIUM: connection: only call tcp_connect_probe when nothing was attempted yet
17999 - MEDIUM: connection: complete the polling cleanups
18000 - MEDIUM: connection: avoid calling handshakes when polling is required
18001 - MAJOR: stream_interface: continue to update data polling flags during handshakes
18002 - CLEANUP: fd: remove fdtab->flags
18003 - CLEANUP: fdtab: flatten the struct and merge the spec struct with the rest
18004 - CLEANUP: includes: fix includes for a number of users of fd.h
18005 - MINOR: ssl: disable TCP quick-ack by default on SSL listeners
18006 - MEDIUM: config: add a "ciphers" keyword to set SSL cipher suites
18007 - MEDIUM: config: add "nosslv3" and "notlsv1" on bind and server lines
18008 - BUG: ssl: mark the connection as waiting for an SSL connection during the handshake
18009 - BUILD: http: rename error_message http_error_message to fix conflicts on RHEL
18010 - BUILD: ssl: fix shctx build on RHEL with futex
18011 - BUILD: include sys/socket.h to fix build failure on FreeBSD
18012 - BUILD: fix build error without SSL (ssl_cert)
18013 - BUILD: ssl: use MAP_ANON instead of MAP_ANONYMOUS
18014 - BUG/MEDIUM: workaround an eglibc bug which truncates the pidfiles when nbproc > 1
18015 - MEDIUM: config: support per-listener backlog and maxconn
18016 - MINOR: session: do not send an HTTP/500 error on SSL sockets
18017 - MEDIUM: config: implement maxsslconn in the global section
18018 - BUG: tcp: close socket fd upon connect error
18019 - MEDIUM: connection: improve error handling around the data layer
18020 - MINOR: config: make the tasks "nice" value configurable on "bind" lines.
18021 - BUILD: shut a gcc warning introduced by commit 269ab31
18022 - MEDIUM: config: centralize handling of SSL config per bind line
18023 - BUILD: makefile: report USE_OPENSSL status in build options
18024 - BUILD: report openssl build settings in haproxy -vv
18025 - MEDIUM: ssl: add sample fetches for is_ssl, ssl_has_sni, ssl_sni_*
18026 - DOC: add a special acknowledgement for the stud project
18027 - DOC: add missing SSL options for servers and listeners
18028 - BUILD: automatically add -lcrypto for SSL
18029 - DOC: add some info about openssl build in the README
18030
Willy Tarreau02c7c142012-06-04 00:43:45 +0200180312012/06/04 : 1.5-dev11
18032 - BUG/MEDIUM: option forwardfor if-none doesn't work with some configurations
18033 - BUG/MAJOR: trash must always be the size of a buffer
18034 - DOC: fix minor regex example issue and improve doc on stats
18035 - MINOR: stream_interface: add a pointer to the listener for TARG_TYPE_CLIENT
18036 - MEDIUM: protocol: add a pointer to struct sock_ops to the listener struct
18037 - MINOR: checks: add on-marked-up option
18038 - MINOR: balance uri: added 'whole' parameter to include query string in hash calculation
18039 - MEDIUM: stream_interface: remove the si->init
18040 - MINOR: buffers: add a rewind function
18041 - BUG/MAJOR: fix regression on content-based hashing and http-send-name-header
18042 - MAJOR: http: stop using msg->sol outside the parsers
18043 - CLEANUP: http: make it more obvious that msg->som is always null outside of chunks
18044 - MEDIUM: http: get rid of msg->som which is not used anymore
18045 - MEDIUM: http: msg->sov and msg->sol will never wrap
18046 - BUG/MAJOR: checks: don't call set_server_status_* when no LB algo is set
18047 - BUG/MINOR: stop connect timeout when connect succeeds
18048 - REORG: move the send-proxy code to tcp_connect_write()
18049 - REORG/MINOR: session: detect the TCP monitor checks at the protocol accept
18050 - MINOR: stream_interface: introduce a new "struct connection" type
18051 - REORG/MINOR: stream_interface: move si->fd to struct connection
18052 - REORG/MEDIUM: stream_interface: move applet->state and private to connection
18053 - MINOR: stream_interface: add a data channel close function
18054 - MEDIUM: stream_interface: call si_data_close() before releasing the si
18055 - MINOR: peers: use the socket layer operations from the peer instead of sock_raw
18056 - BUG/MINOR: checks: expire on timeout.check if smaller than timeout.connect
18057 - MINOR: add a new function call tracer for debugging purposes
18058 - BUG/MINOR: perform_http_redirect also needs to rewind the buffer
18059 - BUG/MAJOR: b_rew() must pass a signed offset to b_ptr()
18060 - BUG/MEDIUM: register peer sync handler in the proper order
18061 - BUG/MEDIUM: buffers: fix bi_putchr() to correctly advance the pointer
18062 - BUG/MINOR: fix option httplog validation with TCP frontends
18063 - BUG/MINOR: log: don't report logformat errors in backends
18064 - REORG/MINOR: use dedicated proxy flags for the cookie handling
18065 - BUG/MINOR: config: do not report twice the incompatibility between cookie and non-http
18066 - MINOR: http: add support for "httponly" and "secure" cookie attributes
18067 - BUG/MEDIUM: ensure that unresolved arguments are freed exactly once
18068 - BUG/MINOR: commit 196729ef used wrong condition resulting in freeing constants
18069 - MEDIUM: stats: add support for soft stop/soft start in the admin interface
18070 - MEDIUM: stats: add the ability to kill sessions from the admin interface
18071 - BUILD: add support for linux kernels >= 2.6.28
18072
Willy Tarreauffb89472012-05-14 07:26:56 +0200180732012/05/14 : 1.5-dev10
18074 - BUG/MINOR: stats admin: "Unexpected result" was displayed unconditionally
18075 - BUG/MAJOR: acl: http_auth_group() must not accept any user from the userlist
18076 - CLEANUP: auth: make the code build again with DEBUG_AUTH
18077 - BUG/MEDIUM: config: don't crash at config load time on invalid userlist names
18078 - REORG: use the name sock_raw instead of stream_sock
18079 - MINOR: stream_interface: add a client target : TARG_TYPE_CLIENT
18080 - BUG/MEDIUM: stream_interface: restore get_src/get_dst
18081 - CLEANUP: sock_raw: remove last references to stream_sock
18082 - CLEANUP: stream_interface: stop exporting socket layer functions
18083 - MINOR: stream_interface: add an init callback to sock_ops
18084 - MEDIUM: stream_interface: derive the socket operations from the target
18085 - MAJOR: fd: remove the need for the socket layer to recheck the connection
18086 - MINOR: session: call the socket layer init function when a session establishes
18087 - MEDIUM: session: add support for tunnel timeouts
18088 - MINOR: standard: add a new debug macro : fddebug()
18089 - CLEANUP: fd: remove unused cb->b pointers in the struct fdtab
18090 - OPTIM: proto_http: don't enable quick-ack on empty buffers
18091 - OPTIM/MAJOR: ev_sepoll: process spec events after polled events
18092 - OPTIM/MEDIUM: stream_interface: add a new SI_FL_NOHALF flag
18093
Willy Tarreaua0564f32012-05-08 21:56:27 +0200180942012/05/08 : 1.5-dev9
18095 - MINOR: Add release callback to si_applet
18096 - CLEANUP: Fix some minor typos
18097 - MINOR: Add TO/FROM_SET flags to struct stream_interface
18098 - CLEANUP: Fix some minor whitespace issues
18099 - MINOR: stats admin: allow unordered parameters in POST requests
18100 - CLEANUP: fix typo in findserver() log message
18101 - MINOR: stats admin: use the backend id instead of its name in the form
18102 - MINOR: stats admin: reduce memcmp()/strcmp() calls on status codes
18103 - DOC: cleanup indentation, alignment, columns and chapters
18104 - DOC: fix some keywords arguments documentation
18105 - MINOR: cli: display the 4 IP addresses and ports on "show sess XXX"
18106 - BUG/MAJOR: log: possible segfault with logformat
18107 - MEDIUM: log: split of log_format generation
18108 - MEDIUM: log: New format-log flags: %Fi %Fp %Si %Sp %Ts %rt %H %pid
18109 - MEDIUM: log: Unique ID
18110 - MINOR: log: log-format: usable without httplog and tcplog
18111 - BUG/MEDIUM: balance source did not properly hash IPv6 addresses
18112 - MINOR: contrib/iprange: add a network IP range to mask converter
18113 - MEDIUM: session: implement the "use-server" directive
18114 - MEDIUM: log: add a new cookie flag 'U' to report situations where cookie is not used
18115 - MEDIUM: http: make extract_cookie_value() iterate over cookie values
18116 - MEDIUM: http: add cookie and scookie ACLs
18117 - CLEANUP: lb_first: add reference to a paper describing the original idea
18118 - MEDIUM: stream_sock: add a get_src and get_dst callback and remove SN_FRT_ADDR_SET
18119 - BUG/MINOR: acl: req_ssl_sni would randomly fail if a session ID is present
18120 - BUILD: http: make extract_cookie_value() return an int not size_t
18121 - BUILD: http: stop gcc-4.1.2 from complaining about possibly uninitialized values
18122 - CLEANUP: http: message parser must ignore HTTP_MSG_ERROR
18123 - MINOR: standard: add a memprintf() function to build formatted error messages
18124 - CLEANUP: remove a few warning about unchecked return values in debug code
18125 - MEDIUM: move message-related flags from transaction to message
18126 - DOC: add a diagram to explain how circular buffers work
18127 - MAJOR: buffer rework: replace ->send_max with ->o
18128 - MAJOR: buffer: replace buf->l with buf->{o+i}
18129 - MINOR: buffers: provide simple pointer normalization functions
18130 - MINOR: buffers: remove unused function buffer_contig_data()
18131 - MAJOR: buffers: replace buf->w with buf->p - buf->o
18132 - MAJOR: buffers: replace buf->r with buf->p + buf->i
18133 - MAJOR: http: move buffer->lr to http_msg->next
18134 - MAJOR: http: change msg->{som,col,sov,eoh} to be relative to buffer origin
18135 - CLEANUP: http: remove unused http_msg->col
18136 - MAJOR: http: turn http_msg->eol to a buffer-relative offset
18137 - MEDIUM: http: add a pointer to the buffer in http_msg
18138 - MAJOR: http: make http_msg->sol relative to buffer's origin
18139 - MEDIUM: http: http_send_name_header: remove references to msg and buffer
18140 - MEDIUM: http: remove buffer arg in a few header manipulation functions
18141 - MEDIUM: http: remove buffer arg in http_capture_bad_message
18142 - MEDIUM: http: remove buffer arg in http_msg_analyzer
18143 - MEDIUM: http: remove buffer arg in http_upgrade_v09_to_v10
18144 - MEDIUM: http: remove buffer arg in http_buffer_heavy_realign
18145 - MEDIUM: http: remove buffer arg in chunk parsing functions
18146 - MINOR: http: remove useless wrapping checks in http_msg_analyzer
18147 - MEDIUM: buffers: fix unsafe use of buffer_ignore at some places
18148 - MEDIUM: buffers: add new pointer wrappers and get rid of almost all buffer_wrap_add calls
18149 - MEDIUM: buffers: implement b_adv() to advance a buffer's pointer
18150 - MEDIUM: buffers: rename a number of buffer management functions
18151 - MEDIUM: http: add a prefetch function for ACL pattern fetch
18152 - MEDIUM: http: make all ACL fetch function use acl_prefetch_http()
18153 - BUG/MINOR: http_auth: ACLs are volatile, not permanent
18154 - MEDIUM: http/acl: merge all request and response ACL fetches of headers and cookies
18155 - MEDIUM: http/acl: make acl_fetch_hdr_{ip,val} rely on acl_fetch_hdr()
18156 - MEDIUM: add a new typed argument list parsing framework
18157 - MAJOR: acl: make use of the new argument parsing framework
18158 - MAJOR: acl: store the ACL argument types in the ACL keyword declaration
18159 - MEDIUM: acl: acl_find_target() now resolves arguments based on their types
18160 - MAJOR: acl: make acl_find_targets also resolve proxy names at config time
18161 - MAJOR: acl: ensure that implicit table and proxies are valid
18162 - MEDIUM: acl: remove unused tests for missing args when args are mandatory
18163 - MEDIUM: pattern: replace type pattern_arg with type arg
18164 - MEDIUM: pattern: get rid of arg_i in all functions making use of arguments
18165 - MEDIUM: pattern: use the standard arg parser
18166 - MEDIUM: pattern: add an argument validation callback to pattern descriptors
18167 - MEDIUM: pattern: report the precise argument parsing error when known.
18168 - MEDIUM: acl: remove the ACL_TEST_F_NULL_MATCH flag
18169 - MINOR: pattern: add a new 'sample' type to store fetched data
18170 - MEDIUM: pattern: add new sample types to replace pattern types
18171 - MAJOR: acl: make use of the new sample struct and get rid of acl_test
18172 - MEDIUM: pattern/acl: get rid of temp_pattern in ACLs
18173 - MEDIUM: acl: get rid of the SET_RES flags
18174 - MEDIUM: get rid of SMP_F_READ_ONLY and SMP_F_MUST_FREE
18175 - MINOR: pattern: replace struct pattern with struct sample
18176 - MEDIUM: pattern: integrate pattern_data into sample and use sample everywhere
18177 - MEDIUM: pattern: retrieve the sample type in the sample, not in the keyword description
18178 - MEDIUM: acl/pattern: switch rdp_cookie functions stack up-down
18179 - MEDIUM: acl: replace acl_expr with args in acl fetch_* functions
18180 - MINOR: tcp: replace acl_fetch_rdp_cookie with smp_fetch_rdp_cookie
18181 - MEDIUM: acl/pattern: use the same direction scheme
18182 - MEDIUM: acl/pattern: start merging common sample fetch functions
18183 - MEDIUM: pattern: ensure that sample types always cast into other types.
18184 - MEDIUM: acl/pattern: factor out the src/dst address fetches
18185 - MEDIUM: acl: implement payload and payload_lv
18186 - CLEANUP: pattern: ensure that payload and payload_lv always stay in the buffer
18187 - MINOR: stick_table: centralize the handling of empty keys
18188 - MINOR: pattern: centralize handling of unstable data in pattern_process()
18189 - MEDIUM: pattern: use smp_fetch_rdp_cookie instead of the pattern specific version
18190 - MINOR: acl: set SMP_OPT_ITERATE on fetch functions
18191 - MINOR: acl: add a val_args field to keywords
18192 - MINOR: proto_tcp: validate arguments of payload and payload_lv ACLs
18193 - MEDIUM: http: merge acl and pattern header fetch functions
18194 - MEDIUM: http: merge ACL and pattern cookie fetches into a single one
18195 - MEDIUM: acl: report parsing errors to the caller
18196 - MINOR: arg: improve error reporting on invalid arguments
18197 - MINOR: acl: report errors encountered when loading patterns from files
18198 - MEDIUM: acl: extend the pattern parsers to report meaningful errors
18199 - REORG: use the name "sample" instead of "pattern" to designate extracted data
18200 - REORG: rename "pattern" files
18201 - MINOR: acl: add types to ACL patterns
18202 - MINOR: standard: add an IPv6 parsing function (str62net)
18203 - MEDIUM: acl: support IPv6 address matching
18204 - REORG: stream_interface: create a struct sock_ops to hold socket operations
18205 - REORG/MEDIUM: move protocol->{read,write} to sock_ops
18206 - REORG/MEDIUM: stream_interface: initialize socket ops from descriptors
18207 - REORG/MEDIUM: replace stream interface protocol functions by a proto pointer
18208 - REORG/MEDIUM: move the default accept function from sockstream to protocols.c
18209 - MEDIUM: proto_tcp: remove src6 and dst6 pattern fetch methods
18210 - BUG/MINOR: http: error snapshots are wrong if buffer wraps
18211 - BUG/MINOR: http: ensure that msg->err_pos is always relative to buf->p
18212 - MEDIUM: http: improve error capture reports
18213 - MINOR: acl: add the cook_val() match to match a cookie against an integer
18214 - BUG/MEDIUM: send_proxy: fix initialisation of send_proxy_ofs
18215 - MEDIUM: memory: add the ability to poison memory at run time
18216 - BUG/MEDIUM: log: ensure that unique_id is properly initialized
18217 - MINOR: cfgparse: use a common errmsg pointer for all parsers
18218 - MEDIUM: cfgparse: make backend_parse_balance() use memprintf to report errors
18219 - MEDIUM: cfgparse: use the new error reporting framework for remaining cfg_keywords
18220 - MINOR: http: replace http_message_realign() with buffer_slow_realign()
18221
Willy Tarreau9eeb57b2012-03-26 06:15:29 +0200182222012/03/26 : 1.5-dev8
18223 - MINOR: patch for minor typo (ressources/resources)
18224 - MEDIUM: http: add support for sending the server's name in the outgoing request
18225 - DOC: mention that default checks are TCP connections
18226 - BUG/MINOR: fix options forwardfor if-none when an alternative header name is specified
18227 - CLEANUP: Make check_statuses, analyze_statuses and process_chk static
18228 - CLEANUP: Fix HCHK spelling errors
18229 - BUG/MINOR: fix typo in processing of http-send-name-header
18230 - MEDIUM: log: Use linked lists for loggers
18231 - BUILD: fix declaration inside a scope block
18232 - REORG: log: split send_log function
18233 - MINOR: config: Parse the string of the log-format config keyword
18234 - MINOR: add ultoa, ulltoa, ltoa, lltoa implementations
18235 - MINOR: Date and time fonctions that don't use snprintf
18236 - MEDIUM: log: make http_sess_log use log_format
18237 - DOC: log-format documentation
18238 - MEDIUM: log: use log_format for mode tcplog
18239 - MEDIUM: log-format: backend source address %Bi %Bp
18240 - BUG/MINOR: log-format: fix %o flag
18241 - BUG/MEDIUM: bad length in log_format and __send_log
18242 - MINOR: logformat %st is signed
18243 - BUILD/MINOR: fix the source URL in the spec file
18244 - DOC: acl is http_first_req, not http_req_first
18245 - BUG/MEDIUM: don't trim last spaces from headers consisting only of spaces
18246 - MINOR: acl: add new matches for header/path/url length
18247 - BUILD: halog: make halog build on solaris
18248 - BUG/MINOR: don't use a wrong port when connecting to a server with mapped ports
18249 - MINOR: remove the client/server side distinction in SI addresses
18250 - MINOR: halog: add support for matching queued requests
18251 - DOC: indicate that cookie "prefix" and "indirect" should not be mixed
18252 - OPTIM/MINOR: move struct sockaddr_storage to the tail of structs
18253 - OPTIM/MINOR: make it possible to change pipe size (tune.pipesize)
18254 - BUILD/MINOR: silent a build warning in src/pipe.c (fcntl)
18255 - OPTIM/MINOR: move the hdr_idx pools out of the proxy struct
18256 - MEDIUM: tune.http.maxhdr makes it possible to configure the maximum number of HTTP headers
18257 - BUG/MINOR: fix a segfault when parsing a config with undeclared peers
18258 - CLEANUP: rename possibly confusing struct field "tracked"
18259 - BUG/MEDIUM: checks: fix slowstart behaviour when server tracking is in use
18260 - MINOR: config: tolerate server "cookie" setting in non-HTTP mode
18261 - MEDIUM: buffers: add some new primitives and rework existing ones
18262 - BUG: buffers: don't return a negative value on buffer_total_space_res()
18263 - MINOR: buffers: make buffer_pointer() support negative pointers too
18264 - CLEANUP: kill buffer_replace() and use an inline instead
18265 - BUG: tcp: option nolinger does not work on backends
18266 - CLEANUP: ebtree: remove a few annoying signedness warnings
18267 - CLEANUP: ebtree: clarify licence and update to 6.0.6
18268 - CLEANUP: ebtree: remove 4-year old harmless typo in duplicates insertion code
18269 - CLEANUP: ebtree: remove another typo, a wrong initialization in insertion code
18270 - BUG: ebtree: ebst_lookup() could return the wrong entry
18271 - OPTIM: stream_sock: reduce the amount of in-flight spliced data
18272 - OPTIM: stream_sock: save a failed recv syscall when splice returns EAGAIN
18273 - MINOR: acl: add support for TLS server name matching using SNI
18274 - BUG: http: re-enable TCP quick-ack upon incomplete HTTP requests
18275 - BUG: proto_tcp: don't try to bind to a foreign address if sin_family is unknown
18276 - MINOR: pattern: export the global temporary pattern
18277 - CLEANUP: patterns: get rid of pattern_data_setstring()
18278 - MEDIUM: acl: use temp_pattern to store fetched information in the "method" match
18279 - MINOR: acl: include pattern.h to make pattern migration more transparent
18280 - MEDIUM: pattern: change the pattern data integer from unsigned to signed
18281 - MEDIUM: acl: use temp_pattern to store any integer-type information
18282 - MEDIUM: acl: use temp_pattern to store any address-type information
18283 - CLEANUP: acl: integer part of acl_test is not used anymore
18284 - MEDIUM: acl: use temp_pattern to store any string-type information
18285 - CLEANUP: acl: remove last data fields from the acl_test struct
18286 - MEDIUM: http: replace get_ip_from_hdr2() with http_get_hdr()
18287 - MEDIUM: patterns: the hdr() pattern is now of type string
18288 - DOC: add minimal documentation on how ACLs work internally
18289 - DOC: add a coding-style file
18290 - OPTIM: halog: keep a fast path for the lines-count only
18291 - CLEANUP: silence a warning when building on sparc
18292 - BUG: http: tighten the list of allowed characters in a URI
18293 - MEDIUM: http: block non-ASCII characters in URIs by default
18294 - DOC: add some documentation from RFC3986 about URI format
18295 - BUG/MINOR: cli: correctly remove the whole table on "clear table"
18296 - BUG/MEDIUM: correctly disable servers tracking another disabled servers.
18297 - BUG/MEDIUM: zero-weight servers must not dequeue requests from the backend
18298 - MINOR: halog: add some help on the command line
18299 - BUILD: fix build error on FreeBSD
18300 - BUG: fix double free in peers config error path
18301 - MEDIUM: improve config check return codes
18302 - BUILD: make it possible to look for pcre in the default system paths
18303 - MINOR: config: emit a warning when 'default_backend' masks servers
18304 - MINOR: backend: rework the LC definition to support other connection-based algos
18305 - MEDIUM: backend: add the 'first' balancing algorithm
18306 - BUG: fix httplog trailing LF
18307 - MEDIUM: increase chunk-size limit to 2GB-1
18308 - BUG: queue: fix dequeueing sequence on HTTP keep-alive sessions
18309 - BUG: http: disable TCP delayed ACKs when forwarding content-length data
18310 - BUG: checks: fix server maintenance exit sequence
18311 - BUG/MINOR: stream_sock: don't remove BF_EXPECT_MORE and BF_SEND_DONTWAIT on partial writes
18312 - DOC: enumerate valid status codes for "observe layer7"
18313 - MINOR: buffer: switch a number of buffer args to const
18314 - CLEANUP: silence signedness warning in acl.c
18315 - BUG: stream_sock: si->release was not called upon shutw()
18316 - MINOR: log: use "%ts" to log term status only and "%tsc" to log with cookie
18317 - BUG/CRITICAL: log: fix risk of crash in development snapshot
18318 - BUG/MAJOR: possible crash when using capture headers on TCP frontends
18319 - MINOR: config: disable header captures in TCP mode and complain
18320
Willy Tarreau60612eb2011-09-10 23:43:11 +0200183212011/09/10 : 1.5-dev7
18322 - [BUG] fix binary stick-tables
18323 - [MINOR] http: *_dom matching header functions now also split on ":"
18324 - [BUG] checks: fix support of Mysqld >= 5.5 for mysql-check
18325 - [MINOR] acl: add srv_conn acl to count connections on a specific backend server
18326 - [MINOR] check: add redis check support
18327 - [DOC] small fixes to clearly distinguish between keyword and variables
18328 - [MINOR] halog: add support for termination code matching (-tcn/-TCN)
18329 - [DOC] Minor spelling fixes and grammatical enhancements
18330 - [CLEANUP] dumpstats: make symbols static where possible
18331 - [MINOR] Break out dumping table
18332 - [MINOR] Break out processing of clear table
18333 - [MINOR] Allow listing of stick table by key
18334 - [MINOR] Break out all stick table socat command parsing
18335 - [MINOR] More flexible clearing of stick table
18336 - [MINOR] Allow showing and clearing by key of ipv6 stick tables
18337 - [MINOR] Allow showing and clearing by key of integer stick tables
18338 - [MINOR] Allow showing and clearing by key of string stick tables
18339 - [CLEANUP] Remove assigned but unused variables
18340 - [CLEANUP] peers.h: fix declarations
18341 - [CLEANUP] session.c: Make functions static where possible
18342 - [MINOR] Add active connection list to server
18343 - [MINOR] Allow shutdown of sessions when a server becomes unavailable
18344 - [MINOR] Add down termination condition
18345 - [MINOR] Make appsess{,ion}_refresh static
18346 - [MINOR] Add rdp_cookie pattern fetch function
18347 - [CLEANUP] Remove unnecessary casts
18348 - [MINOR] Add non-stick server option
18349 - [MINOR] Consistently use error in tcp_parse_tcp_req()
18350 - [MINOR] Consistently free expr on error in cfg_parse_listen()
18351 - [MINOR] Free rdp_cookie_name on denint()
18352 - [MINOR] Free tcp rules on denint()
18353 - [MINOR] Free stick table pool on denint()
18354 - [MINOR] Free stick rules on denint()
18355 - [MEDIUM] Fix stick-table replication on soft-restart
18356 - [MEDIUM] Correct ipmask() logic
18357 - [MINOR] Correct type in table dump examples
18358 - [MINOR] Fix build error in stream_int_register_handler()
18359 - [MINOR] Use DPRINTF in assign_server()
18360 - [BUG] checks: http-check expect could fail a check on multi-packet responses
18361 - [DOC] fix minor typo in the "dispatch" doc
18362 - [BUG] proto_tcp: fix address binding on remote source
18363 - [MINOR] http: don't report the "haproxy" word on the monitoring response
18364 - [REORG] http: move HTTP error codes back to proto_http.h
18365 - [MINOR] http: make the "HTTP 200" status code configurable.
18366 - [MINOR] http: partially revert the chunking optimization for now
18367 - [MINOR] stream_sock: always clear BF_EXPECT_MORE upon complete transfer
18368 - [CLEANUP] stream_sock: remove unneeded FL_TCP and factor out test
18369 - [MEDIUM] http: add support for "http-no-delay"
18370 - [OPTIM] http: optimize chunking again in non-interactive mode
18371 - [OPTIM] stream_sock: avoid fast-forwarding of partial data
18372 - [OPTIM] stream_sock: don't use splice on too small payloads
18373 - [MINOR] config: make it possible to specify a cookie even without a server
18374 - [BUG] stats: support url-encoded forms
18375 - [MINOR] config: automatically compute a default fullconn value
18376 - [CLEANUP] config: remove some left-over printf debugging code from previous patch
18377 - [DOC] add missing entry or stick store-response
18378 - [MEDIUM] http: add support for 'cookie' and 'set-cookie' patterns
18379 - [BUG] halog: correctly handle truncated last line
18380 - [MINOR] halog: make SKIP_CHAR stop on field delimiters
18381 - [MINOR] halog: add support for HTTP log matching (-H)
18382 - [MINOR] halog: gain back performance before SKIP_CHAR fix
18383 - [OPTIM] halog: cache some common fields positions
18384 - [OPTIM] halog: check once for correct line format and reuse the pointer
18385 - [OPTIM] halog: remove many 'if' by using a function pointer for the filters
18386 - [OPTIM] halog: remove support for tab delimiters in input data
18387 - [BUG] session: risk of crash on out of memory (1.5-dev regression)
18388 - [MINOR] session: try to emit a 500 response on memory allocation errors
18389 - [OPTIM] stream_sock: reduce the default number of accepted connections at once
18390 - [BUG] stream_sock: disable listener when system resources are exhausted
18391 - [MEDIUM] proxy: add a PAUSED state to listeners and move socket tricks out of proxy.c
18392 - [BUG] stream_sock: ensure orphan listeners don't accept too many connections
18393 - [MINOR] listeners: add listen_full() to mark a listener full
18394 - [MINOR] listeners: add support for queueing resource limited listeners
18395 - [MEDIUM] listeners: put listeners in queue upon resource shortage
18396 - [MEDIUM] listeners: queue proxy-bound listeners at the proxy's
18397 - [MEDIUM] listeners: don't stop proxies when global maxconn is reached
18398 - [MEDIUM] listeners: don't change listeners states anymore in maintain_proxies
18399 - [CLEANUP] proxy: rename a few proxy states (PR_STIDLE and PR_STRUN)
18400 - [MINOR] stats: report a "WAITING" state for sockets waiting for resource
18401 - [MINOR] proxy: make session rate-limit more accurate
18402 - [MINOR] sessions: only wake waiting listeners up if rate limit is OK
18403 - [BUG] proxy: peers must only be stopped once, not upon every call to maintain_proxies
18404 - [CLEANUP] proxy: merge maintain_proxies() operation inside a single loop
18405 - [MINOR] task: new function task_schedule() to schedule a wake up
18406 - [MAJOR] proxy: finally get rid of maintain_proxies()
18407 - [BUG] proxy: stats frontend and peers were missing many initializers
18408 - [MEDIUM] listeners: add a global listener management task
18409 - [MINOR] proxy: make findproxy() return proxies from numeric IDs too
18410 - [DOC] fix typos, "#" is a sharp, not a dash
18411 - [MEDIUM] stats: add support for changing frontend's maxconn at runtime
18412 - [MEDIUM] checks: group health checks methods by values and save option bits
18413 - [MINOR] session-counters: add the ability to clear the counters
18414 - [BUG] check: http-check expect + regex would crash in defaults section
18415 - [MEDIUM] http: make x-forwarded-for addition conditional
18416 - [REORG] build: move syscall redefinition to specific places
18417 - [CLEANUP] update the year in the copyright banner
18418 - [BUG] possible crash in 'show table' on stats socket
18419 - [BUG] checks: use the correct destination port for sending checks
18420 - [BUG] backend: risk of picking a wrong port when mapping is used with crossed families
18421 - [MINOR] make use of set_host_port() and get_host_port() to get rid of family mismatches
18422 - [DOC] fixed a few "sensible" -> "sensitive" errors
18423 - [MINOR] make use of addr_to_str() and get_host_port() to replace many inet_ntop()
18424 - [BUG] http: trailing white spaces must also be trimmed after headers
18425 - [MINOR] stats: display "<NONE>" instead of the frontend name when unknown
18426 - [MINOR] http: take a capture of too large requests and responses
18427 - [MINOR] http: take a capture of truncated responses
18428 - [MINOR] http: take a capture of bad content-lengths.
18429 - [DOC] add a few old and uncommitted docs
18430 - [CLEANUP] cfgparse: fix reported options for the "bind" keyword
18431 - [MINOR] halog: add -hs/-HS to filter by HTTP status code range
18432 - [MINOR] halog: support backslash-escaped quotes
18433 - [CLEANUP] remove dirty left-over of a debugging message
18434 - [MEDIUM] stats: disable complex socket reservation for stats socket
18435 - [CLEANUP] remove a useless test in manage_global_listener_queue()
18436 - [MEDIUM] stats: add the "set maxconn" setting to the command line interface
18437 - [MEDIUM] add support for global.maxconnrate to limit the per-process conn rate.
18438 - [MINOR] stats: report the current and max global connection rates
18439 - [MEDIUM] stats: add the ability to adjust the global maxconnrate
18440 - [BUG] peers: don't pre-allocate 65000 connections to each peer
18441 - [MEDIUM] don't limit peers nor stats socket to maxconn nor maxconnrate
18442 - [BUG] peers: the peer frontend must not emit any log
18443 - [CLEANUP] proxy: make pause_proxy() perform the required controls and emit the logs
18444 - [BUG] peers: don't keep a peers section which has a NULL frontend
18445 - [BUG] peers: ensure the peers are resumed if they were paused
18446 - [MEDIUM] stats: add the ability to enable/disable/shutdown a frontend at runtime
18447 - [MEDIUM] session: make session_shutdown() an independant function
18448 - [MEDIUM] stats: offer the possibility to kill a session from the CLI
18449 - [CLEANUP] stats: centralize tests for backend/server inputs on the CLI
18450 - [MEDIUM] stats: offer the possibility to kill sessions by server
18451 - [MINOR] halog: do not consider byte 0x8A as end of line
18452 - [MINOR] frontend: ensure debug message length is always initialized
18453 - [OPTIM] halog: make fgets parse more bytes by blocks
18454 - [OPTIM] halog: add assembly version of the field lookup code
18455 - [MEDIUM] poll: add a measurement of idle vs work time
18456 - [CLEANUP] startup: report only the basename in the usage message
18457 - [MINOR] startup: add an option to change to a new directory
18458 - [OPTIM] task: don't scan the run queue if we know it's empty
18459 - [BUILD] stats: stdint is not present on solaris
18460 - [DOC] update the README file to reflect new naming rules for patches
18461 - [MINOR] stats: report the number of requests intercepted by the frontend
18462 - [DOC] update ROADMAP file
18463
Willy Tarreau04df1122011-04-08 00:56:41 +0200184642011/04/08 : 1.5-dev6
18465 - [BUG] stream_sock: use get_addr_len() instead of sizeof() on sockaddr_storage
18466 - [BUG] TCP source tracking was broken with IPv6 changes
18467 - [BUG] stick-tables did not work when converting IPv6 to IPv4
18468 - [CRITICAL] fix risk of crash when dealing with space in response cookies
18469
Willy Tarreaub06ed2c2011-03-29 01:10:33 +0200184702011/03/29 : 1.5-dev5
18471 - [BUG] standard: is_addr return value for IPv4 was inverted
18472 - [MINOR] update comment about IPv6 support for server
18473 - [MEDIUM] use getaddrinfo to resolve names if gethostbyname fail
18474 - [DOC] update IPv6 support for bind
18475 - [DOC] document IPv6 support for server
18476 - [DOC] fix a minor typo
18477 - [MEDIUM] IPv6 support for syslog
18478 - [DOC] document IPv6 support for syslog
18479 - [MEDIUM] IPv6 support for stick-tables
18480 - [DOC] document IPv6 support for stick-tables
18481 - [DOC] update ROADMAP file
18482 - [BUG] session: src_conn_cur was returning src_conn_cnt instead
18483 - [MINOR] frontend: add a make_proxy_line function
18484 - [MEDIUM] stream_sock: add support for sending the proxy protocol header line
18485 - [MEDIUM] server: add support for the "send-proxy" option
18486 - [DOC] update the spec on the proxy protocol
18487 - [BUILD] proto_tcp: fix build issue with CTTPROXY
18488 - [DOC] update ROADMAP file
18489 - [MEDIUM] config: rework the IPv4/IPv6 address parser to support host-only addresses
18490 - [MINOR] cfgparse: better report wrong listening addresses and make use of str2sa_range
18491 - [BUILD] add the USE_GETADDRINFO build option
18492 - [TESTS] provide a test case for various address formats
18493 - [BUG] session: conn_retries was not always initialized
18494 - [BUG] log: retrieve the target from the session, not the SI
18495 - [BUG] http: fix possible incorrect forwarded wrapping chunk size (take 2)
18496 - [MINOR] tools: add two macros MID_RANGE and MAX_RANGE
18497 - [BUG] http: fix content-length handling on 32-bit platforms
18498 - [OPTIM] buffers: uninline buffer_forward()
18499 - [BUG] stream_sock: fix handling for server side PROXY protocol
18500 - [MINOR] acl: add support for table_cnt and table_avl matches
18501 - [DOC] update ROADMAP file
18502
Willy Tarreaue0052cc2011-03-13 22:15:02 +0100185032011/03/13 : 1.5-dev4
18504 - [MINOR] cfgparse: Check whether the path given for the stats socket actually fits into the sockaddr_un structure to avoid truncation.
18505 - [MINOR] unix sockets : inherits the backlog size from the listener
18506 - [CLEANUP] unix sockets : move create_uxst_socket() in uxst_bind_listener()
18507 - [DOC] fix a minor typo
18508 - [DOC] fix ignore-persist documentation
18509 - [MINOR] add warnings on features not compatible with multi-process mode
18510 - [BUG] http: fix http-pretend-keepalive and httpclose/tunnel mode
18511 - [MINOR] stats: add support for several packets in stats admin
18512 - [BUG] stats: admin commands must check the proxy state
18513 - [BUG] stats: admin web interface must check the proxy state
18514 - [MINOR] http: add pattern extraction method to stick on query string parameter
18515 - [MEDIUM] add internal support for IPv6 server addresses
18516 - [MINOR] acl: add be_id/srv_id to match backend's and server's id
18517 - [MINOR] log: add support for passing the forwarded hostname
18518 - [MINOR] log: ability to override the syslog tag
18519 - [MINOR] checks: add PostgreSQL health check
18520 - [DOC] update ROADMAP file
18521 - [BUILD] pattern: use 'int' instead of 'int32_t'
18522 - [OPTIM] linux: add support for bypassing libc to force using vsyscalls
18523 - [BUG] debug: report the correct poller list in verbose mode
18524 - [BUG] capture: do not capture a cookie if there is no memory left
18525 - [BUG] appsession: fix possible double free in case of out of memory
18526 - [CRITICAL] cookies: mixing cookies in indirect mode and appsession can crash the process
18527 - [BUG] http: correctly update the header list when removing two consecutive headers
18528 - [BUILD] add the CPU=native and ARCH=32/64 build options
18529 - [BUILD] add -fno-strict-aliasing to fix warnings with gcc >= 4.4
18530 - [CLEANUP] hash: move the avalanche hash code globally available
18531 - [MEDIUM] hash: add support for an 'avalanche' hash-type
18532 - [DOC] update roadmap file
18533 - [BUG] http: do not re-enable the PROXY analyser on keep-alive
18534 - [OPTIM] http: don't send each chunk in a separate packet
18535 - [DOC] fix minor typos reported recently in the peers section
18536 - [DOC] fix another typo in the doc
18537 - [MINOR] stats: report HTTP message state and buffer flags in error dumps
18538 - [BUG] http chunking: don't report a parsing error on connection errors
18539 - [BUG] stream_interface: truncate buffers when sending error messages
18540 - [MINOR] http: support wrapping messages in error captures
18541 - [MINOR] http: capture incorrectly chunked message bodies
18542 - [MINOR] stats: add global event ID and count
18543 - [BUG] http: analyser optimizations broke pipelining
18544 - [CLEANUP] frontend: only apply TCP-specific settings to TCP/TCP6 sockets
18545 - [BUG] http: fix incorrect error reporting during data transfers
18546 - [CRITICAL] session: correctly leave turn-around and queue states on abort
18547 - [BUG] session: release slot before processing pending connections
18548 - [MINOR] tcp: add support for dynamic MSS setting
18549 - [BUG] stick-table: correctly terminate string keys during lookups
18550 - [BUG] acl: fix handling of empty lines in pattern files
18551 - [BUG] stick-table: use the private buffer when padding strings
18552 - [BUG] ebtree: fix ebmb_lookup() with len smaller than the tree's keys
18553 - [OPTIM] ebtree: ebmb_lookup: reduce stack usage by moving the return code out of the loop
18554 - [OPTIM] ebtree: inline ebst_lookup_len and ebis_lookup_len
18555 - [REVERT] undo the stick-table string key lookup fixes
18556 - [MINOR] http: improve url_param pattern extraction to ignore empty values
18557 - [BUILD] frontend: shut a warning with TCP_MAXSEG
18558 - [BUG] http: update the header list's tail when removing the last header
18559 - [DOC] fix minor typo in the proxy protocol doc
18560 - [DOC] fix typos (http-request instead of http-check)
18561 - [BUG] http: use correct ACL pointer when evaluating authentication
18562 - [BUG] cfgparse: correctly count one socket per port in ranges
18563 - [BUG] startup: set the rlimits before binding ports, not after.
18564 - [BUG] acl: srv_id must return no match when the server is NULL
18565 - [MINOR] acl: add ability to check for internal response-only parameters
18566 - [MINOR] acl: srv_id is only valid in responses
18567 - [MINOR] config: warn if response-only conditions are used in "redirect" rules
18568 - [BUG] acl: fd leak when reading patterns from file
18569 - [DOC] fix minor typo in "usesrc"
18570 - [BUG] http: fix possible incorrect forwarded wrapping chunk size
18571 - [BUG] http: fix computation of message body length after forwarding has started
18572 - [BUG] http: balance url_param did not work with first parameters on POST
18573 - [TESTS] update the url_param regression test to test check_post too
18574 - [DOC] update ROADMAP
18575 - [DOC] internal: reflect the fact that SI_ST_ASS is transient
18576 - [BUG] config: don't crash on empty pattern files.
18577 - [MINOR] stream_interface: make use of an applet descriptor for IO handlers
18578 - [REORG] stream_interface: move the st0, st1 and private members to the applet
18579 - [REORG] stream_interface: split the struct members in 3 parts
18580 - [REORG] session: move client and server address to the stream interface
18581 - [REORG] tcp: make tcpv4_connect_server() take the target address from the SI
18582 - [MEDIUM] stream_interface: store the target pointer and type
18583 - [CLEANUP] stream_interface: remove the applet.handler pointer
18584 - [MEDIUM] log: take the logged server name from the stream interface
18585 - [CLEANUP] session: remove data_source from struct session
18586 - [CLEANUP] stats: make all dump functions only rely on the stream interface
18587 - [REORG] session: move the data_ctx struct to the stream interface's applet
18588 - [MINOR] proxy: add PR_O2_DISPATCH to detect dispatch mode
18589 - [MINOR] cfgparse: only keep one of dispatch, transparent, http_proxy
18590 - [MINOR] session: add a pointer to the new target into the session
18591 - [MEDIUM] session: remove s->prev_srv which is not needed anymore
18592 - [CLEANUP] stream_interface: use inline functions to manipulate targets
18593 - [MAJOR] session: remove the ->srv pointer from struct session
18594 - [MEDIUM] stats: split frontend and backend stats
18595 - [MEDIUM] http: always evaluate http-request rules before stats http-request
18596 - [REORG] http: move the http-request rules to proto_http
18597 - [BUG] http: stats were not incremented on http-request deny
18598 - [MINOR] checks: report it if checks fail due to socket creation error
18599
Willy Tarreau442e8342010-11-11 23:29:35 +0100186002010/11/11 : 1.5-dev3
18601 - [DOC] fix http-request documentation
18602 - [MEDIUM] enable/disable servers from the stats web interface
18603 - [MEDIUM] stats: add an admin level
18604 - [DOC] stats: document the "stats admin" statement
18605 - [MINOR] startup: print the proxy socket which caused an error
18606 - [CLEANUP] Remove unneeded chars allocation
18607 - [MINOR] config: detect options not supported due to compilation options
18608 - [MINOR] Add pattern's fetchs payload and payload_lv
18609 - [MINOR] frontend: improve accept-proxy header parsing
18610 - [MINOR] frontend: add tcpv6 support on accept-proxy bind
18611 - [MEDIUM] Enhance message errors management on binds
18612 - [MINOR] Manage unix socket source field on logs
18613 - [MINOR] Manage unix socket source field on session dump on sock stats
18614 - [MINOR] Support of unix listener sockets for debug and log event messages on frontend.c
18615 - [MINOR] Add some tests on sockets family for port remapping and mode transparent.
18616 - [MINOR] Manage socket type unix for some logs
18617 - [MINOR] Enhance controls of socket's family on acls and pattern fetch
18618 - [MINOR] Support listener's sockets unix on http logs.
18619 - [MEDIUM] Add supports of bind on unix sockets.
18620 - [BUG] stick table purge failure if size less than 255
18621 - [BUG] stick table entries expire on counters updates/read or show table, even if there is no "expire" parameter
18622 - [MEDIUM] Implement tcp inspect response rules
18623 - [DOC] tcp-response content and inspect
18624 - [MINOR] new acls fetch req_ssl_hello_type and rep_ssl_hello_type
18625 - [DOC] acls rep_ssl_hello and req_ssl_hello
18626 - [MEDIUM] Create new protected pattern types CONSTSTRING and CONSTDATA to force memcpy if data from protected areas need to be manipulated.
18627 - [DOC] new type binary in stick-table
18628 - [DOC] stick store-response and new patterns payload and payload_lv
18629 - [MINOR] Manage all types (ip, integer, string, binary) on cli "show table" command
18630 - [MEDIUM] Create updates tree on stick table to manage sync.
18631 - [MAJOR] Add new files src/peer.c, include/proto/peers.h and include/types/peers.h for sync stick table management
18632 - [MEDIUM] Manage peers section parsing and stick table registration on peers.
18633 - [MEDIUM] Manage soft stop on peers proxy
18634 - [DOC] add documentation for peers section
18635 - [MINOR] checks: add support for LDAPv3 health checks
18636 - [MINOR] add better support to "mysql-check"
18637 - [BUG] Restore info about available active/backup servers
18638 - [CONTRIB] Update haproxy.pl
18639 - [CONTRIB] Update Cacti Tempates
18640 - [CONTRIB] add templates for Cacti.
18641 - [BUG] http: don't consider commas as a header delimitor within quotes
18642 - [MINOR] support a global jobs counter
18643 - [DOC] add a summary about cookie incompatibilities between specs and browsers
18644 - [DOC] fix description of cookie "insert" and "indirect" modes
18645 - [MEDIUM] http: fix space handling in the request cookie parser
18646 - [MEDIUM] http: fix space handling in the response cookie parser
18647 - [DOC] fix typo in the queue() definition (backend, not frontend)
18648 - [BUG] deinit: unbind listeners before freeing them
18649 - [BUG] stream_interface: only call si->release when both dirs are closed
18650 - [MEDIUM] buffers: rework the functions to exchange between SI and buffers
18651 - [DOC] fix typo in the avg_queue() and be_conn() definition (backend, not frontend)
18652 - [MINOR] halog: add '-tc' to sort by termination codes
18653 - [MINOR] halog: skip non-traffic logs for -st and -tc
18654 - [BUG] stream_sock: cleanly disable the listener in case of resource shortage
18655 - [BUILD] stream_sock: previous fix lacked the #include, causing a warning.
18656 - [DOC] bind option is "defer-accept", not "defer_accept"
18657 - [DOC] missing index entry for http-check send-state
18658 - [DOC] tcp-request inspect-delay is for backends too
18659 - [BUG] ebtree: string_equal_bits() could return garbage on identical strings
18660 - [BUG] stream_sock: try to flush any extra pending request data after a POST
18661 - [BUILD] proto_http: eliminate some build warnings with gcc-2.95
18662 - [MEDIUM] make it possible to combine http-pretend-keepalived with httpclose
18663 - [MEDIUM] tcp-request : don't wait for inspect-delay to expire when the buffer is full
18664 - [MEDIUM] checks: add support for HTTP contents lookup
18665 - [TESTS] add test-check-expect to test various http-check methods
18666 - [MINOR] global: add "tune.chksize" to change the default check buffer size
18667 - [MINOR] cookie: add options "maxidle" and "maxlife"
18668 - [MEDIUM] cookie: support client cookies with some contents appended to their value
18669 - [MINOR] http: make some room in the transaction flags to extend cookies
18670 - [MINOR] cookie: add the expired (E) and old (O) flags for request cookies
18671 - [MEDIUM] cookie: reassign set-cookie status flags to store more states
18672 - [MINOR] add encode/decode function for 30-bit integers from/to base64
18673 - [MEDIUM] cookie: check for maxidle and maxlife for incoming dated cookies
18674 - [MEDIUM] cookie: set the date in the cookie if needed
18675 - [DOC] document the cookie maxidle and maxlife parameters
18676 - [BUG] checks: don't log backend down for all zero-weight servers
18677 - [MEDIUM] checks: set server state to one state from failure when leaving maintenance
18678 - [BUG] config: report correct keywords for "observe"
18679 - [MINOR] checks: ensure that we can inherit binary checks from the defaults section
18680 - [MINOR] acl: add the http_req_first match
18681 - [DOC] fix typos about bind-process syntax
18682 - [BUG] cookie: correctly unset default cookie parameters
18683 - [MINOR] cookie: add support for the "preserve" option
18684 - [BUG] ebtree: fix duplicate strings insertion
18685 - [CONTRIB] halog: report per-url counts, errors and times
18686 - [CONTRIB] halog: minor speed improvement in timer parser
18687 - [MINOR] buffers: add a new request analyser flag for PROXY mode
18688 - [MINOR] listener: add the "accept-proxy" option to the "bind" keyword
18689 - [MINOR] standard: add read_uint() to parse a delimited unsigned integer
18690 - [MINOR] standard: change arg type from const char* to char*
18691 - [MINOR] frontend: add a new analyser to parse a proxied connection
18692 - [MEDIUM] session: call the frontend_decode_proxy analyser on proxied connections
18693 - [DOC] add the proxy protocol's specifications
18694 - [DOC] document the 'accept-proxy' bind option
18695 - [MINOR] cfgparse: report support of <path> for the 'bind' statements
18696 - [DOC] add references to unix socket handling
18697 - [MINOR] move MAXPATHLEN definition to compat.h
18698 - [MEDIUM] unix sockets: cleanup the error reporting path
18699 - [BUG] session: don't stop forwarding of data upon last packet
18700 - [CLEANUP] accept: replace some inappropriate Alert() calls with send_log()
18701 - [BUILD] peers: shut a printf format warning (key_size is a size_t)
18702 - [BUG] accept: don't close twice upon error
18703 - [OPTIM] session: don't recheck analysers when buffer flags have not changed
18704 - [OPTIM] stream_sock: don't clear FDs that are already cleared
18705 - [BUG] proto_tcp: potential bug on pattern fetch dst and dport
18706
Willy Tarreau37242fa2010-08-28 19:21:00 +0200187072010/08/28 : 1.5-dev2
18708 - [MINOR] startup: release unused structs after forking
18709 - [MINOR] startup: don't wait for nothing when no old pid remains
18710 - [CLEANUP] reference product branch 1.5
18711 - [MEDIUM] signals: add support for registering functions and tasks
18712 - [MEDIUM] signals: support redistribution of signal zero when stopping
18713 - [BUG] http: don't set auto_close if more data are expected
18714
Willy Tarreaufc815fd2010-08-25 10:56:53 +0200187152010/08/25 : 1.5-dev1
18716 - [BUG] stats: session rate limit gets garbaged in the stats
18717 - [DOC] mention 'option http-server-close' effect in Tq section
18718 - [DOC] summarize and highlight persistent connections behaviour
18719 - [DOC] add configuration samples
18720 - [BUG] http: dispatch and http_proxy modes were broken for a long time
18721 - [BUG] http: the transaction must be initialized even in TCP mode
18722 - [BUG] tcp: dropped connections must be counted as "denied" not "failed"
18723 - [BUG] consistent hash: balance on all servers, not only 2 !
18724 - [CONTRIB] halog: report per-server status codes, errors and response times
18725 - [BUG] http: the transaction must be initialized even in TCP mode (part 2)
18726 - [BUG] client: always ensure to zero rep->analysers
18727 - [BUG] session: clear BF_READ_ATTACHED before next I/O
18728 - [BUG] http: automatically close response if req is aborted
18729 - [BUG] proxy: connection rate limiting was eating lots of CPU
18730 - [BUG] http: report correct flags in case of client aborts during body
18731 - [TESTS] refine non-regression tests and add 4 new tests
18732 - [BUG] debug: wrong pointer was used to report a status line
18733 - [BUG] debug: correctly report truncated messages
18734 - [DOC] document the "dispatch" keyword
18735 - [BUG] stick_table: fix possible memory leak in case of connection error
18736 - [CLEANUP] acl: use 'L6' instead of 'L4' in ACL flags relying on contents
18737 - [MINOR] accept: count the incoming connection earlier
18738 - [CLEANUP] tcp: move some non tcp-specific layer6 processing out of proto_tcp
18739 - [CLEANUP] client: move some ACLs away to their respective locations
18740 - [CLEANUP] rename client -> frontend
18741 - [MEDIUM] separate protocol-level accept() from the frontend's
18742 - [MINOR] proxy: add a list to hold future layer 4 rules
18743 - [MEDIUM] config: parse tcp layer4 rules (tcp-request accept/reject)
18744 - [MEDIUM] tcp: check for pure layer4 rules immediately after accept()
18745 - [OPTIM] frontend: tell the compiler that errors are unlikely to occur
18746 - [MEDIUM] frontend: check for LI_O_TCP_RULES in the listener
18747 - [MINOR] frontend: only check for monitor-net rules if LI_O_CHK_MONNET is set
18748 - [CLEANUP] buffer->cto is not used anymore
18749 - [MEDIUM] session: finish session establishment sequence in with I/O handlers
18750 - [MEDIUM] session: initialize server-side timeouts after connect()
18751 - [MEDIUM] backend: initialize the server stream_interface upon connect()
18752 - [MAJOR] frontend: don't initialize the server-side stream_int anymore
18753 - [MEDIUM] session: move the conn_retries attribute to the stream interface
18754 - [MEDIUM] session: don't assign conn_retries upon accept() anymore
18755 - [MINOR] frontend: rely on the frontend and not the backend for INDEPSTR
18756 - [MAJOR] frontend: reorder the session initialization upon accept
18757 - [MINOR] proxy: add an accept() callback for the application layer
18758 - [MAJOR] frontend: split accept() into frontend_accept() and session_accept()
18759 - [MEDIUM] stats: rely on the standard session_accept() function
18760 - [MINOR] buffer: refine the flags that may wake an analyser up.
18761 - [MINOR] stream_sock: don't dereference a non-existing frontend
18762 - [MINOR] session: differenciate between accepted connections and received connections
18763 - [MEDIUM] frontend: count the incoming connection earlier
18764 - [MINOR] frontend: count denied TCP requests separately
18765 - [CLEANUP] stick_table: add/clarify some comments
18766 - [BUILD] memory: add a few missing parenthesis to the pool management macros
18767 - [MINOR] stick_table: add support for variable-sized data
18768 - [CLEANUP] stick_table: rename some stksess struct members to avoid confusion
18769 - [CLEANUP] stick_table: move pattern to key functions to stick_table.c
18770 - [MEDIUM] stick_table: add room for extra data types
18771 - [MINOR] stick_table: add support for "conn_cum" data type.
18772 - [MEDIUM] stick_table: don't overwrite data when storing an entry
18773 - [MINOR] config: initialize stick tables after all the parsing
18774 - [MINOR] stick_table: provide functions to return stksess data from a type
18775 - [MEDIUM] stick_table: move the server ID to a generic data type
18776 - [MINOR] stick_table: enable it for frontends too
18777 - [MINOR] stick_table: export the stick_table_key
18778 - [MINOR] tcp: add per-source connection rate limiting
18779 - [MEDIUM] stick_table: separate storage and update of session entries
18780 - [MEDIUM] stick-tables: add a reference counter to each entry
18781 - [MINOR] session: add a pointer to the tracked counters for the source
18782 - [CLEANUP] proto_tcp: make the config parser a little bit more flexible
18783 - [BUG] config: report the correct proxy type in tcp-request errors
18784 - [MINOR] config: provide a function to quote args in a more friendly way
18785 - [BUG] stick_table: the fix for the memory leak caused a regression
18786 - [MEDIUM] backend: support servers on 0.0.0.0
18787 - [BUG] stick-table: correctly refresh expiration timers
18788 - [MEDIUM] stream-interface: add a ->release callback
18789 - [MINOR] proxy: add a "parent" member to the structure
18790 - [MEDIUM] session: make it possible to call an I/O handler on both SI
18791 - [MINOR] tools: add a fast div64_32 function
18792 - [MINOR] freq_ctr: add new types and functions for periods different from 1s
18793 - [MINOR] errors: provide new status codes for config parsing functions
18794 - [BUG] http: denied requests must not be counted as denied resps in listeners
18795 - [MINOR] tools: add a get_std_op() function to parse operators
18796 - [MEDIUM] acl: make use of get_std_op() to parse intger ranges
18797 - [MAJOR] stream_sock: better wakeup conditions on read()
18798 - [BUG] session: analysers must be checked when SI state changes
18799 - [MINOR] http: reset analysers to listener's, not frontend's
18800 - [MEDIUM] session: support "tcp-request content" rules in backends
18801 - [BUILD] always match official tags when doing git-tar
18802 - [MAJOR] stream_interface: fix the wakeup conditions for embedded iohandlers
18803 - [MEDIUM] buffer: make buffer_feed* support writing non-contiguous chunks
18804 - [MINOR] tcp: src_count acl does not have a permanent result
18805 - [MAJOR] session: add track-counters to track counters related to the session
18806 - [MINOR] stick-table: provide a table lookup function
18807 - [MINOR] stick-table: use suffix "_cnt" for cumulated counts
18808 - [MEDIUM] session: move counter ACL fetches from proto_tcp
18809 - [MEDIUM] session: add concurrent connections counter
18810 - [MEDIUM] session: add data in and out volume counters
18811 - [MINOR] session: add the trk_conn_cnt ACL keyword to track connection counts
18812 - [MEDIUM] session-counters: automatically update tracked connection count
18813 - [MINOR] session: add the trk_conn_cur ACL keyword to track concurrent connection
18814 - [MINOR] session: add trk_kbytes_* ACL keywords to track data size
18815 - [MEDIUM] session: add a counter on the cumulated number of sessions
18816 - [MINOR] config: support a comma-separated list of store data types in stick-table
18817 - [MEDIUM] stick-tables: add support for arguments to data_types
18818 - [MEDIUM] stick-tables: add stored data argument type checking
18819 - [MEDIUM] session counters: add conn_rate and sess_rate counters
18820 - [MEDIUM] session counters: add bytes_in_rate and bytes_out_rate counters
18821 - [MINOR] stktable: add a stktable_update_key() function
18822 - [MINOR] session-counters: add a general purpose counter (gpc0)
18823 - [MEDIUM] session-counters: add HTTP req/err tracking
18824 - [MEDIUM] stats: add "show table [<name>]" to dump a stick-table
18825 - [MEDIUM] stats: add "clear table <name> key <value>" to clear table entries
18826 - [CLEANUP] stick-table: declare stktable_data_types as extern
18827 - [MEDIUM] stick-table: make use of generic types for stored data
18828 - [MINOR] stats: correctly report errors on "show table" and "clear table"
18829 - [MEDIUM] stats: add the ability to dump table entries matching criteria
18830 - [DOC] configuration: document all the new tracked counters
18831 - [DOC] stats: document "show table" and "clear table"
18832 - [MAJOR] session-counters: split FE and BE track counters
18833 - [MEDIUM] tcp: accept the "track-counters" in "tcp-request content" rules
18834 - [MEDIUM] session counters: automatically remove expired entries.
18835 - [MEDIUM] config: replace 'tcp-request <action>' with "tcp-request connection"
18836 - [MEDIUM] session-counters: make it possible to count connections from frontend
18837 - [MINOR] session-counters: use "track-sc{1,2}" instead of "track-{fe,be}-counters"
18838 - [MEDIUM] session-counters: correctly unbind the counters tracked by the backend
18839 - [CLEANUP] stats: use stksess_kill() to remove table entries
18840 - [DOC] update the references to session counters and to tcp-request connection
18841 - [DOC] cleanup: split a few long lines
18842 - [MEDIUM] http: forward client's close when abortonclose is set
18843 - [BUG] queue: don't dequeue proxy-global requests on disabled servers
18844 - [BUG] stats: global stats timeout may be specified before stats socket.
18845 - [BUG] conf: add tcp-request content rules to the correct list
18846
Willy Tarreau21475e32010-05-23 08:46:08 +0200188472010/05/23 : 1.5-dev0
18848 - exact copy of 1.4.6
18849
Willy Tarreau5fdd77d2010-05-16 22:34:28 +0200188502010/05/16 : 1.4.6
18851 - [BUILD] ebtree: update to v6.0.1 to remove references to dprintf()
18852 - [CLEANUP] acl: make use of eb_is_empty() instead of open coding the tree's emptiness test
18853 - [MINOR] acl: add srv_is_up() to check that a specific server is up or not
18854 - [DOC] add a few precisions about the use of RDP cookies
18855
Willy Tarreau9d4d9e32010-05-13 22:17:08 +0200188562010/05/13 : 1.4.5
18857 - [DOC] report minimum kernel version for tproxy in the Makefile
18858 - [MINOR] add the "ignore-persist" option to conditionally ignore persistence
18859 - [DOC] add the "ignore-persist" option to conditionally ignore persistence
18860 - [DOC] fix ignore-persist/force-persist documentation
18861 - [BUG] cttproxy: socket fd leakage in check_cttproxy_version
18862 - [DOC] doc/configuration.txt: fix typos
18863 - [MINOR] option http-pretend-keepalive is both for FEs and BEs
18864 - [MINOR] fix possible crash in debug mode with invalid responses
18865 - [MINOR] halog: add support for statisticts on status codes
18866 - [OPTIM] halog: use a faster zero test in fgets()
18867 - [OPTIM] halog: minor speedup by using unlikely()
18868 - [OPTIM] halog: speed up fgets2-64 by about 10%
18869 - [DOC] refresh the README file and merge the CONTRIB file into it
18870 - [MINOR] acl: support loading values from files
18871 - [MEDIUM] ebtree: upgrade to version 6.0
18872 - [MINOR] acl trees: add flags and union members to store values in trees
18873 - [MEDIUM] acl: add ability to insert patterns in trees
18874 - [MEDIUM] acl: add tree-based lookups of exact strings
18875 - [MEDIUM] acl: add tree-based lookups of networks
18876 - [MINOR] acl: ignore empty lines and comments in pattern files
18877 - [MINOR] stick-tables: add support for "stick on hdr"
18878
Willy Tarreau9508c1c2010-04-07 23:12:24 +0200188792010/04/07 : 1.4.4
18880 - [BUG] appsession should match the whole cookie name
18881 - [CLEANUP] proxy: move PR_O_SSL3_CHK to options2 to release one flag
18882 - [MEDIUM] backend: move the transparent proxy address selection to backend
18883 - [MINOR] add very fast IP parsing functions
18884 - [MINOR] add new tproxy flags for dynamic source address binding
18885 - [MEDIUM] add ability to connect to a server from an IP found in a header
18886 - [BUILD] config: last patch breaks build without CONFIG_HAP_LINUX_TPROXY
18887 - [MINOR] http: make it possible to pretend keep-alive when doing close
18888 - [MINOR] config: report "default-server" instead of "(null)" in error messages
18889
Willy Tarreau75934a12010-03-30 09:50:08 +0200188902010/03/30 : 1.4.3
18891 - [CLEANUP] stats: remove printf format warning in stats_dump_full_sess_to_buffer()
18892 - [MEDIUM] session: better fix for connection to servers with closed input
18893 - [DOC] indicate in the doc how to bind to port ranges
18894 - [BUG] backend: L7 hashing must not be performed on incomplete requests
18895 - [TESTS] add a simple program to test connection resets
18896 - [MINOR] cli: "show errors" should display "backend <NONE>" when backend was not used
18897 - [MINOR] config: emit warnings when HTTP-only options are used in TCP mode
18898 - [MINOR] config: allow "slowstart 0s"
18899 - [BUILD] 'make tags' did not consider files ending in '.c'
18900 - [MINOR] checks: add the ability to disable a server in the config
18901
Willy Tarreauda618cb2010-03-17 23:41:57 +0100189022010/03/17 : 1.4.2
18903 - [CLEANUP] product branch update
18904 - [DOC] Some more documentation cleanups
18905 - [BUG] clf logs segfault when capturing a non existant header
18906 - [OPTIM] config: only allocate check buffer when checks are enabled
18907 - [MEDIUM] checks: support multi-packet health check responses
18908 - [CLEANUP] session: remove duplicate test
18909 - [BUG] http: don't wait for response data to leave buffer is client has left
18910 - [MINOR] proto_uxst: set accept_date upon accept() to the wall clock time
18911 - [MINOR] stats: don't send empty lines in "show errors"
18912 - [MINOR] stats: make the data dump function reusable for other purposes
18913 - [MINOR] stats socket: add show sess <id> to dump details about a session
18914 - [BUG] stats: connection reset counters must be plain ascii, not HTML
18915 - [BUG] url_param hash may return a down server
18916 - [MINOR] force null-termination of hostname
18917 - [MEDIUM] connect to servers even when the input has already been closed
18918 - [BUG] don't merge anonymous ACLs !
18919 - [BUG] config: fix endless loop when parsing "on-error"
18920 - [MINOR] http: don't mark a server as failed when it returns 501/505
18921 - [OPTIM] checks: try to detect the end of response without polling again
18922 - [BUG] checks: don't report an error when recv() returns an error after data
18923 - [BUG] checks: don't abort when second poll returns an error
18924 - [MINOR] checks: make shutdown() silently fail
18925 - [BUG] http: fix truncated responses on chunk encoding when size divides buffer size
18926 - [BUG] init: unconditionally catch SIGPIPE
18927 - [BUG] checks: don't wait for a close to start parsing the response
18928
Willy Tarreauc5e60c32010-03-04 23:39:19 +0100189292010/03/04 : 1.4.1
18930 - [BUG] Clear-cookie path issue
18931 - [DOC] fix typo on stickiness rules
18932 - [BUILD] fix BSD and OSX makefiles for missing files
18933 - [BUILD] includes order breaks OpenBSD build
18934 - [BUILD] fix some build warnings on Solaris with is* macros
18935 - [BUG] logs: don't report "last data" when we have just closed after an error
18936 - [BUG] logs: don't report "proxy request" when server closes early
18937 - [BUILD] fix platform-dependant build issues related to crypt()
18938 - [STATS] count transfer aborts caused by client and by server
18939 - [STATS] frontend requests were not accounted for failed requests
18940 - [MINOR] report total number of processed connections when stopping a proxy
18941 - [DOC] be more clear about the limitation to one single monitor-net entry
18942
Willy Tarreaue18fdfd2010-02-26 14:55:22 +0100189432010/02/26 : 1.4.0
18944 - [MINOR] stats: report maint state for tracking servers too
18945 - [DOC] fix summary to add pattern extraction
18946 - [DOC] Documentation cleanups
18947 - [BUG] cfgparse memory leak and missing free calls in deinit()
18948 - [BUG] pxid/puid/luid: don't shift IDs when some of them are forced
18949 - [EXAMPLES] add auth.cfg
18950 - [BUG] uri_auth: ST_SHLGNDS should be 0x00000008 not 0x0000008
18951 - [BUG] uri_auth: do not attemp to convert uri_auth -> http-request more than once
18952 - [BUILD] auth: don't use unnamed unions
18953 - [BUG] config: report unresolvable host names as errors
18954 - [BUILD] fix build breakage with DEBUG_FULL
18955 - [DOC] fix a typo about timeout check and clarify the explanation.
18956 - [MEDIUM] http: don't use trash to realign large buffers
18957 - [STATS] report HTTP requests (total and rate) in frontends
18958 - [STATS] separate frontend and backend HTTP stats
18959 - [MEDIUM] http: revert to use a swap buffer for realignment
18960 - [MINOR] stats: report the request rate in frontends as cell titles
18961 - [MINOR] stats: mark areas with an underline when tooltips are available
18962 - [DOC] reorder some entries to maintain the alphabetical order
18963 - [DOC] cleanup of the keyword matrix
18964
Willy Tarreaub05613d2010-02-02 10:18:28 +0100189652010/02/02 : 1.4-rc1
18966 - [MEDIUM] add a maintenance mode to servers
18967 - [MINOR] http-auth: last fix was wrong
18968 - [CONTRIB] add base64rev-gen.c that was used to generate the base64rev table.
18969 - [MINOR] Base64 decode
18970 - [MINOR] generic auth support with groups and encrypted passwords
18971 - [MINOR] add ACL_TEST_F_NULL_MATCH
18972 - [MINOR] http-request: allow/deny/auth support for frontend/backend/listen
18973 - [MINOR] acl: add http_auth and http_auth_group
18974 - [MAJOR] use the new auth framework for http stats
18975 - [DOC] add info about userlists, http-request and http_auth/http_auth_group acls
18976 - [STATS] make it possible to change a CLI connection timeout
18977 - [BUG] patterns: copy-paste typo in type conversion arguments
18978 - [MINOR] pattern: make the converter more flexible by supporting void* and int args
18979 - [MINOR] standard: str2mask: string to netmask converter
18980 - [MINOR] pattern: add support for argument parsers for converters
18981 - [MINOR] pattern: add the "ipmask()" converting function
18982 - [MINOR] config: off-by-one in "stick-table" after list of converters
18983 - [CLEANUP] acl, patterns: make use of my_strndup() instead of malloc+memcpy
18984 - [BUG] restore accidentely removed line in last patch !
18985 - [MINOR] checks: make the HTTP check code add the CRLF itself
18986 - [MINOR] checks: add the server's status in the checks
18987 - [BUILD] halog: make without arch-specific optimizations
18988 - [BUG] halog: fix segfault in case of empty log in PCT mode (cherry picked from commit fe362fe4762151d209b9656639ee1651bc2b329d)
18989 - [MINOR] http: disable keep-alive when process is going down
18990 - [MINOR] acl: add build_acl_cond() to make it easier to add ACLs in config
18991 - [CLEANUP] config: use build_acl_cond() instead of parse_acl_cond()
18992 - [CLEANUP] config: use warnif_cond_requires_resp() to check for bad ACLs
18993 - [MINOR] prepare req_*/rsp_* to receive a condition
18994 - [CLEANUP] config: specify correct const char types to warnif_* functions
18995 - [MEDIUM] config: factor out the parsing of 20 req*/rsp* keywords
18996 - [MEDIUM] http: make the request filter loop check for optional conditions
18997 - [MEDIUM] http: add support for conditional request filter execution
18998 - [DOC] add some build info about the AIX platform (cherry picked from commit e41914c77edbc40aebf827b37542d37d758e371e)
18999 - [MEDIUM] http: add support for conditional request header addition
19000 - [MEDIUM] http: add support for conditional response header rewriting
19001 - [DOC] add some missing ACLs about response header matching
19002 - [MEDIUM] http: add support for proxy authentication
19003 - [MINOR] http-auth: make the 'unless' keyword work as expected
19004 - [CLEANUP] config: use build_acl_cond() to simplify http-request ACL parsing
19005 - [MEDIUM] add support for anonymous ACLs
19006 - [MEDIUM] http: switch to tunnel mode after status 101 responses
19007 - [MEDIUM] http: stricter processing of the CONNECT method
19008 - [BUG] config: reset check request to avoid double free when switching to ssl/sql
19009 - [MINOR] config: fix too large ssl-hello-check message.
19010 - [BUG] fix error response in case of server error
19011
Willy Tarreau2eba6aa2010-01-25 23:28:05 +0100190122010/01/25 : 1.4-dev8
19013 - [CLEANUP] Keep in sync "defaults" support between documentation and code
19014 - [MEDIUM] http: add support for Proxy-Connection header
19015 - [CRITICAL] buffers: buffer_insert_line2 must not change the ->w entry
19016 - [MINOR] http: remove a copy-paste typo in transaction cleaning
19017 - [BUG] http: trim any excess buffer data when recycling a connection
19018
Willy Tarreau6939b552010-01-25 01:54:37 +0100190192010/01/25 : 1.4-dev7
19020 - [BUG] appsession: possible memory leak in case of out of memory condition
19021 - [MINOR] config: don't accept 'appsession' in defaults section
19022 - [MINOR] Add function to parse a size in configuration
19023 - [MEDIUM] Add stick table (persistence) management functions and types
19024 - [MEDIUM] Add pattern fetch management types and functions
19025 - [MEDIUM] Add src dst and dport pattern fetches.
19026 - [MEDIUM] Add stick table configuration and init.
19027 - [MEDIUM] Add stick and store rules analysers.
19028 - [MINOR] add option "mysql-check" to use MySQL health checks
19029 - [BUG] health checks: fix requeued message
19030 - [OPTIM] remove SSP_O_VIA and SSP_O_STATUS
19031 - [BUG] checks: fix newline termination
19032 - [MINOR] acl: add fe_id/so_id to match frontend's and socket's id
19033 - [BUG] appsession's sessid must be reset at end of transaction
19034 - [BUILD] appsession did not build anymore under gcc-2.95
19035 - [BUG] server redirection used an uninitialized string.
19036 - [MEDIUM] http: fix handling of message pointers
19037 - [MINOR] http: fix double slash prefix with server redirect
19038 - [MINOR] http redirect: add the ability to append a '/' to the URL
19039 - [BUG] stream_interface: fix retnclose and remove cond_close
19040 - [MINOR] http redirect: don't explicitly state keep-alive on 1.1
19041 - [MINOR] http: move appsession 'sessid' from session to http_txn
19042 - [OPTIM] reorder http_txn to optimize cache lines placement
19043 - [MINOR] http: differentiate waiting for new request and waiting for a complete requst
19044 - [MINOR] http: add a separate "http-keep-alive" timeout
19045 - [MINOR] config: remove undocumented and buggy 'timeout appsession'
19046 - [DOC] fix various too large lines
19047 - [DOC] remove several trailing spaces
19048 - [DOC] add the doc about stickiness
19049 - [BUILD] remove a warning in standard.h on AIX
19050 - [BUG] checks: chars are unsigned on AIX, check was always true
19051 - [CLEANUP] stream_sock: MSG_NOSIGNAL is only for send(), not recv()
19052 - [BUG] check: we must not check for error before reading a response
19053 - [BUG] buffers: remove remains of wrong obsolete length check
19054 - [OPTIM] stream_sock: don't shutdown(write) when the socket is in error
19055 - [BUG] http: don't count req errors on client resets or t/o during keep-alive
19056 - [MEDIUM] http: don't switch to tunnel mode upon close
19057 - [DOC] add documentation about connection header processing
19058 - [MINOR] http: add http_remove_header2() to remove a header value.
19059 - [MINOR] tools: add a "word_match()" function to match words and ignore spaces
19060 - [MAJOR] http: rework request Connection header handling
19061 - [MAJOR] http: rework response Connection header handling
19062 - [MINOR] add the ability to force kernel socket buffer size.
19063 - [BUG] http_server_error() must not purge a previous pending response
19064 - [OPTIM] http: don't delay response if next request is incomplete
19065 - [MINOR] add the "force-persist" statement to force persistence on down servers
19066 - [MINOR] http: logs must report persistent connections to down servers
19067 - [BUG] buffer_replace2 must never change the ->w entry
19068
Willy Tarreau11f8f542010-01-08 07:49:44 +0100190692010/01/08 : 1.4-dev6
19070 - [BUILD] warning in stream_interface.h
19071 - [BUILD] warning ultoa_r returns char *
19072 - [MINOR] hana: only report stats if it is enabled
19073 - [MINOR] stats: add "a link" & "a href" for sockets
19074 - [MINOR]: stats: add show-legends to report additional informations
19075 - [MEDIUM] default-server support
19076 - [BUG]: add 'observer', 'on-error', 'error-limit' to supported options list
19077 - [MINOR] stats: add href to tracked server
19078 - [BUG] stats: show UP/DOWN status also in tracking servers
19079 - [DOC] Restore ability to search a keyword at the beginning of a line
19080 - [BUG] stats: cookie should be reported under backend not under proxy
19081 - [BUG] cfgparser/stats: fix error message
19082 - [BUG] http: disable auto-closing during chunk analysis
19083 - [BUG] http: fix hopefully last closing issue on data forwarding
19084 - [DEBUG] add an http_silent_debug function to debug HTTP states
19085 - [MAJOR] http: fix again the forward analysers
19086 - [BUG] http_process_res_common() must not skip the forward analyser
19087 - [BUG] http: some possible missed close remain in the forward chain
19088 - [BUG] http: redirect needed to be updated after recent changes
19089 - [BUG] http: don't set no-linger on response in case of forced close
19090 - [MEDIUM] http: restore the original behaviour of option httpclose
19091 - [TESTS] add a file to test various connection modes
19092 - [BUG] http: check options before the connection header
19093 - [MAJOR] session: fix the order by which the analysers are run
19094 - [MEDIUM] session: also consider request analysers added during response
19095 - [MEDIUM] http: make safer use of the DONT_READ and AUTO_CLOSE flags
19096 - [BUG] http: memory leak with captures when using keep-alive
19097 - [BUG] http: fix for capture memory leak was incorrect
19098 - [MINOR] http redirect: use proper call to return last response
19099 - [MEDIUM] http: wait for some flush of the response buffer before a new request
19100 - [MEDIUM] session: limit the number of analyser loops
19101
Willy Tarreau1f445892010-01-03 23:23:36 +0100191022010/01/03 : 1.4-dev5
19103 - [MINOR] server tracking: don't care about the tracked server's mode
19104 - [MEDIUM] appsession: add "len", "prefix" and "mode" options
19105 - [MEDIUM] appsession: add the "request-learn" option
19106 - [BUG] Configuration parser bug when escaping characters
19107 - [MINOR] CSS & HTML fun
19108 - [MINOR] Collect & provide http response codes received from servers
19109 - [BUG] Fix silly typo: hspr_other -> hrsp_other
19110 - [MINOR] Add "a name" to stats page
19111 - [MINOR] add additional "a href"s to stats page
19112 - [MINOR] Collect & provide http response codes for frontends, fix backends
19113 - [DOC] some small spell fixes and unifications
19114 - [MEDIUM] Decrease server health based on http responses / events, version 3
19115 - [BUG] format '%d' expects type 'int', but argument 5 has type 'long int'
19116 - [BUG] config: fix erroneous check on cookie domain names, again
19117 - [BUG] Healthchecks: get a proper error code if connection cannot be completed immediately
19118 - [DOC] trivial fix for man page
19119 - [MINOR] config: report all supported options for the "bind" keyword
19120 - [MINOR] tcp: add support for the defer_accept bind option
19121 - [MINOR] unix socket: report the socket path in case of bind error
19122 - [CONTRIB] halog: support searching by response time
19123 - [DOC] add a reminder about obsolete documents
19124 - [DOC] point to 1.4 doc, not 1.3
19125 - [DOC] option tcp-smart-connect was missing from index
19126 - [MINOR] http: detect connection: close earlier
19127 - [CLEANUP] sepoll: clean up the fd_clr/fd_set functions
19128 - [OPTIM] move some rarely used fields out of fdtab
19129 - [MEDIUM] fd: merge fd_list into fdtab
19130 - [MAJOR] buffer: flag BF_DONT_READ to disable reads when not required
19131 - [MINOR] http: add new transaction flags for keep-alive and content-length
19132 - [MEDIUM] http request: parse connection, content-length and transfer-encoding
19133 - [MINOR] http request: update the TX_SRV_CONN_KA flag on rewrite
19134 - [MINOR] http request: simplify the test of no-data
19135 - [MEDIUM] http request: simplify POST length detection
19136 - [MEDIUM] http request: make use of pre-parsed transfer-encoding header
19137 - [MAJOR] http: create the analyser which waits for a response
19138 - [MINOR] http: pre-set the persistent flags in the transaction
19139 - [MEDIUM] http response: check body length and set transaction flags
19140 - [MINOR] http response: update the TX_CLI_CONN_KA flag on rewrite
19141 - [MINOR] http: remove the last call to stream_int_return
19142 - [IMPORT] import ebtree v5.0 into directory ebtree/
19143 - [MEDIUM] build: switch ebtree users to use new ebtree version
19144 - [CLEANUP] ebtree: remove old unused files
19145 - [BUG] definitely fix regparm issues between haproxy core and ebtree
19146 - [CLEANUP] ebtree: cast to char * to get rid of gcc warning
19147 - [BUILD] missing #ifndef in ebmbtree.h
19148 - [BUILD] missing #ifndef in ebsttree.h
19149 - [MINOR] tools: add hex2i() function to convert hex char to int
19150 - [MINOR] http: create new MSG_BODY sub-states
19151 - [BUG] stream_sock: BUF_INFINITE_FORWARD broke splice on 64-bit platforms
19152 - [DOC] option is "defer-accept", not "defer_accept"
19153 - [MINOR] http: keep pointer to beginning of data
19154 - [BUG] x-original-to: name was not set in default instance
19155 - [MINOR] http: detect tunnel mode and set it in the session
19156 - [BUG] config: fix error message when config file is not found
19157 - [BUG] config: fix wrong handling of too large argument count
19158 - [BUG] config: disable 'option httplog' on TCP proxies
19159 - [BUG] config: fix erroneous check on cookie domain names
19160 - [BUG] config: cookie domain was ignored in defaults sections
19161 - [MINOR] config: support passing multiple "domain" statements to cookies
19162 - [MINOR] ebtree: add functions to lookup non-null terminated strings
19163 - [MINOR] config: don't report error on all subsequent files on failure
19164 - [BUG] second fix for the printf format warning
19165 - [BUG] check_post: limit analysis to the buffer length
19166 - [MEDIUM] http: process request body in a specific analyser
19167 - [MEDIUM] backend: remove HTTP POST parsing from get_server_ph_post()
19168 - [MAJOR] http: completely process the "connection" header
19169 - [MINOR] http: only consider chunk encoding with HTTP/1.1
19170 - [MAJOR] buffers: automatically compute the maximum buffer length
19171 - [MINOR] http: move the http transaction init/cleanup code to proto_http
19172 - [MINOR] http: move 1xx handling earlier to eliminate a lot of ifs
19173 - [MINOR] http: introduce a new synchronisation state : HTTP_MSG_DONE
19174 - [MEDIUM] http: rework chunk-size parser
19175 - [MEDIUM] http: add a new transaction flags indicating if we know the transfer length
19176 - [MINOR] buffers: add buffer_ignore() to skip some bytes
19177 - [BUG] http: offsets are relative to the buffer, not to ->som
19178 - [MEDIUM] http: automatically re-aling request buffer
19179 - [BUG] http: body parsing must consider the start of message
19180 - [MINOR] new function stream_int_cond_close()
19181 - [MAJOR] http: implement body parser
19182 - [BUG] http: typos on several unlikely() around header insertion
19183 - [BUG] stream_sock: wrong max computation on recv
19184 - [MEDIUM] http: rework the buffer alignment logic
19185 - [BUG] buffers: wrong size calculation for displaced data
19186 - [MINOR] stream_sock: prepare for closing when all pending data are sent
19187 - [MEDIUM] http: add two more states for the closing period
19188 - [MEDIUM] http: properly handle "option forceclose"
19189 - [MINOR] stream_sock: add SI_FL_NOLINGER for faster close
19190 - [MEDIUM] http: make forceclose use SI_FL_NOLINGER
19191 - [MEDIUM] session: set SI_FL_NOLINGER when aborting on write timeouts
19192 - [MEDIUM] http: add some SI_FL_NOLINGER around server errors
19193 - [MINOR] config: option forceclose is valid in frontends too
19194 - [BUILD] halog: insufficient include path in makefile
19195 - [MEDIUM] http: make the analyser not rely on msg being initialized anymore
19196 - [MEDIUM] http: make the parsers able to wait for a buffer flush
19197 - [MAJOR] http: add support for option http-server-close
19198 - [BUG] http: ensure we abort data transfer on write error
19199 - [BUG] last fix was overzealous and disabled server-close
19200 - [BUG] http: fix erroneous trailers size computation
19201 - [MINOR] stream_sock: enable MSG_MORE when forwarding finite amount of data
19202 - [OPTIM] http: set MSG_MORE on response when a pipelined request is pending
19203 - [BUG] http: redirects were broken by chunk changes
19204 - [BUG] http: the request URI pointer is relative to the buffer
19205 - [OPTIM] http: don't immediately enable reading on request
19206 - [MINOR] http: move redirect messages to HTTP/1.1 with a content-length
19207 - [BUG] http: take care of errors, timeouts and aborts during the data phase
19208 - [MINOR] http: don't wait for sending requests to the server
19209 - [MINOR] http: make the conditional redirect support keep-alive
19210 - [BUG] http: fix cookie parser to support spaces and commas in values
19211 - [MINOR] config: some options were missing for "redirect"
19212 - [MINOR] redirect: add support for unconditional rules
19213 - [MINOR] config: centralize proxy struct initialization
19214 - [MEDIUM] config: remove the limitation of 10 reqadd/rspadd statements
19215 - [MEDIUM] config: remove the limitation of 10 config files
19216 - [CLEANUP] http: remove a remaining impossible condition
19217 - [OPTIM] http: optimize a bit the construct of the forward loops
19218
Willy Tarreauc82a9e52009-10-12 06:40:53 +0200192192009/10/12 : 1.4-dev4
19220 - [DOC] add missing rate_lim and rate_max
19221 - [MAJOR] struct chunk rework
19222 - [MEDIUM] Health check reporting code rework + health logging, v3
19223 - [BUG] check if rise/fall has an argument and it is > 0
19224 - [MINOR] health checks logging unification
19225 - [MINOR] add "description", "node" and show-node"/"show-desc", remove "node-name", v2
19226 - [MINOR] Allow dots in show-node & add "white-space: nowrap" in th.pxname.
19227 - [DOC] Add information about http://haproxy.1wt.eu/contrib.html
19228 - [MINOR] Introduce include/types/counters.h
19229 - [CLEANUP] Move counters to dedicated structures
19230 - [MINOR] Add "clear counters" to clear statistics counters
19231 - [MEDIUM] Collect & provide separate statistics for sockets, v2
19232 - [BUG] Fix NULL pointer dereference in stats_check_uri_auth(), v2
19233 - [MINOR] acl: don't report valid acls as potential mistakes
19234 - [MINOR] Add cut_crlf(), ltrim(), rtrim() and alltrim()
19235 - [MINOR] Add chunk_htmlencode and chunk_asciiencode
19236 - [MINOR] Capture & display more data from health checks, v2
19237 - [BUG] task.c: don't assing last_timer to node-less entries
19238 - [BUG] http stats: large outputs sometimes got some parts chopped off
19239 - [MINOR] backend: export some functions to recount servers
19240 - [MINOR] backend: uninline some LB functions
19241 - [MINOR] include time.h from freq_ctr.h as is uses "now".
19242 - [CLEANUP] backend: move LB algos to individual files
19243 - [MINOR] lb_map: reorder code in order to ease integration of new hash functions
19244 - [CLEANUP] proxy: move last lb-specific bits to their respective files
19245 - [MINOR] backend: separate declarations of LB algos from their lookup method
19246 - [MINOR] backend: reorganize the LB algorithm selection
19247 - [MEDIUM] backend: introduce the "static-rr" LB algorithm
19248 - [MINOR] report list of supported pollers with -vv
19249 - [DOC] log-health-checks is an option, not a directive
19250 - [MEDIUM] new option "independant-streams" to stop updating read timeout on writes
19251 - [BUG] stats: don't call buffer_shutw(), but ->shutw() instead
19252 - [MINOR] stats: strip CR and LF from the input command line
19253 - [BUG] don't refresh timeouts late after detected activity
19254 - [MINOR] stats_dump_errors_to_buffer: use buffer_feed_chunk()
19255 - [MINOR] stats_dump_sess_to_buffer: use buffer_feed_chunk()
19256 - [MINOR] stats: make stats_dump_raw_to_buffer() use buffer_feed_chunk
19257 - [MEDIUM] stats: don't use s->ana_state anymore
19258 - [MINOR] remove now obsolete ana_state from the session struct
19259 - [MEDIUM] stats: make HTTP stats use an I/O handler
19260 - [MEDIUM] stream_int: adjust WAIT_ROOM handling
19261 - [BUG] config: look for ID conflicts in all sockets, not only last ones.
19262 - [MINOR] config: reference file and line with any listener/proxy/server declaration
19263 - [MINOR] config: report places of duplicate names or IDs
19264 - [MINOR] config: add pointer to file name in block/redirect/use_backend/monitor rules
19265 - [MINOR] tools: add a new get_next_id() function
19266 - [MEDIUM] config: automatically find unused IDs for proxies, servers and listeners
19267 - [OPTIM] counters: move some max numbers to the counters struct
19268 - [BUG] counters: fix segfault on missing counters for a listener
19269 - [MEDIUM] backend: implement consistent hashing variation
19270 - [MINOR] acl: add fe_conn, be_conn, queue, avg_queue
19271 - [MINOR] stats: use 'clear counters all' to clear all values
19272 - [MEDIUM] add access restrictions to the stats socket
19273 - [MINOR] buffers: add buffer_feed2() and make buffer_feed() measure string length
19274 - [MINOR] proxy: provide function to retrieve backend/server pointers
19275 - [MINOR] add the "initial weight" to the server struct.
19276 - [MEDIUM] stats: add the "get weight" command to report a server's weight
19277 - [MEDIUM] stats: add the "set weight" command
19278 - [BUILD] add a 'make tags' target
19279 - [MINOR] stats: add support for numeric IDs in set weight/get weight
19280 - [MINOR] stats: use a dedicated state to output static data
19281 - [OPTIM] stats: check free space before trying to print
19282
Willy Tarreau9f389e02009-09-24 00:12:50 +0200192832009/09/24 : 1.4-dev3
19284 - [BUILD] compilation of haproxy-1.4-dev2 on FreeBSD
19285 - [MEDIUM] Collect & show information about last health check, v3
19286 - [MINOR] export the hostname variable so that all the code can access it
19287 - [MINOR] stats: add a new node-name setting
19288 - [MEDIUM] remove old experimental tcpsplice option
19289 - [BUILD] fix build for systems without SOL_TCP
19290 - [MEDIUM] move connection establishment from backend to the SI.
19291 - [MEDIUM] make the global stats socket part of a frontend
19292 - [MEDIUM] session: account per-listener connections
19293 - [MINOR] session: switch to established state if no connect function
19294 - [MEDIUM] make the unix stats sockets use the generic session handler
19295 - [CLEANUP] unix: remove uxst_process_session()
19296 - [CLEANUP] move remaining stats sockets code to dumpstats
19297 - [MINOR] move the initial task's nice value to the listener
19298 - [MINOR] cleanup set_session_backend by using pre-computed analysers
19299 - [MINOR] set s->srv_error according to the analysers
19300 - [MEDIUM] set rep->analysers from fe and be analysers
19301 - [MEDIUM] replace BUFSIZE with buf->size in computations
19302 - [MEDIUM] make it possible to change the buffer size in the configuration
19303 - [MEDIUM] report error on buffer writes larger than buffer size
19304 - [MEDIUM] stream_interface: add and use ->update function to resync
19305 - [CLEANUP] remove ifdef MSG_NOSIGNAL and define it instead
19306 - [MEDIUM] remove TCP_CORK and make use of MSG_MORE instead
19307 - [BUG] tarpit did not work anymore
19308 - [MINOR] acl: add support for hdr_ip to match IP addresses in headers
19309 - [MAJOR] buffers: fix misuse of the BF_SHUTW_NOW flag
19310 - [MINOR] buffers: provide more functions to handle buffer data
19311 - [MEDIUM] buffers: provide new buffer_feed*() function
19312 - [MINOR] buffers: add peekchar and peekline functions for stream interfaces
19313 - [MINOR] buffers: provide buffer_si_putchar() to send a char from a stream interface
19314 - [BUG] buffer_forward() would not correctly consider data already scheduled
19315 - [MINOR] buffers: add buffer_cut_tail() to cut only unsent data
19316 - [MEDIUM] stream_interface: make use of buffer_cut_tail() to report errors
19317 - [MAJOR] http: add support for HTTP 1xx informational responses
19318 - [MINOR] buffers: inline buffer_si_putchar()
19319 - [MAJOR] buffers: split BF_WRITE_ENA into BF_AUTO_CONNECT and BF_AUTO_CLOSE
19320 - [MAJOR] buffers: fix the BF_EMPTY flag's meaning
19321 - [BUG] stream_interface: SI_ST_CLO must have buffers SHUT
19322 - [MINOR] stream_sock: don't set SI_FL_WAIT_DATA if BF_SHUTW_NOW is set
19323 - [MEDIUM] add support for infinite forwarding
19324 - [BUILD] stream_interface: fix conflicting declaration
19325 - [BUG] buffers: buffer_forward() must not always clear BF_OUT_EMPTY
19326 - [BUG] variable buffer size ignored at initialization time
19327 - [MINOR] ensure that buffer_feed() and buffer_skip() set BF_*_PARTIAL
19328 - [BUG] fix buffer_skip() and buffer_si_getline() to correctly handle wrap-arounds
19329 - [MINOR] stream_interface: add SI_FL_DONT_WAKE flag
19330 - [MINOR] stream_interface: add iohandler callback
19331 - [MINOR] stream_interface: add functions to support running as internal/external tasks
19332 - [MEDIUM] session: call iohandler for embedded tasks (applets)
19333 - [MINOR] add a ->private member to the stream_interface
19334 - [MEDIUM] stats: prepare the connection for closing before dumping
19335 - [MEDIUM] stats: replace the stats socket analyser with an SI applet
19336
Willy Tarreau68dcd252009-08-09 22:57:09 +0200193372009/08/09 : 1.4-dev2
19338 - [BUG] task: fix possible crash when some timeouts are not configured
19339 - [BUG] log: option tcplog would log to global if no logger was defined
19340
Willy Tarreaub03d2982009-07-29 22:38:32 +0200193412009/07/29 : 1.4-dev1
19342 - [MINOR] acl: add support for matching of RDP cookies
19343 - [MEDIUM] add support for RDP cookie load-balancing
19344 - [MEDIUM] add support for RDP cookie persistence
19345 - [MINOR] add a new CLF log format
19346 - [MINOR] startup: don't imply -q with -D
19347 - [BUG] ensure that we correctly re-start old process in case of error
19348 - [MEDIUM] add support for binding to source port ranges during connect
19349 - [MINOR] config: track "no option"/"option" changes
19350 - [MINOR] config: support resetting options do default values
19351 - [MEDIUM] implement option tcp-smart-accept at the frontend
19352 - [MEDIUM] stream_sock: implement tcp-cork for use during shutdowns on Linux
19353 - [MEDIUM] implement tcp-smart-connect option at the backend
19354 - [MEDIUM] add support for TCP MSS adjustment for listeners
19355 - [MEDIUM] support setting a server weight to zero
19356 - [MINOR] make DEFAULT_MAXCONN user-configurable at build time
19357 - [MAJOR] session: don't clear buffer status flags anymore
19358 - [MAJOR] session: only check for timeouts when they have just occurred.
19359 - [MAJOR] session: simplify buffer error handling
19360 - [MEDIUM] config: split parser and checker in two functions
19361 - [MEDIUM] config: support loading multiple configuration files
19362 - [MEDIUM] stream_sock: don't close prematurely when nolinger is set
19363 - [MEDIUM] session: rework buffer analysis to permit permanent analysers
19364 - [MEDIUM] splice: set the capability on each stream_interface
19365 - [BUG] http: redirect rules were processed too early
19366 - [CLEANUP] remove unused DEBUG_PARSE_NO_SPEEDUP define
19367 - [MEDIUM] http: split request waiter from request processor
19368 - [MEDIUM] session: tell analysers what bit they were called for
19369 - [MAJOR] http: complete splitting of the remaining stages
19370 - [MINOR] report in the proxies the requirements for ACLs
19371 - [MINOR] http: rely on proxy->acl_requires to allocate hdr_idx
19372 - [MINOR] acl: add HTTP protocol detection (req_proto_http)
19373 - [MINOR] prepare callers of session_set_backend to handle errors
19374 - [BUG] default ACLs did not properly set the ->requires flag
19375 - [MEDIUM] allow a TCP frontend to switch to an HTTP backend
19376 - [MINOR] ensure we can jump from swiching rules to http without data
19377 - [MINOR] http: take http request timeout from the backend
19378 - [MINOR] allow TCP inspection rules to make use of HTTP ACLs
19379 - [BUILD] report commit date and not author's date as build date
19380 - [MINOR] acl: don't complain anymore when using L7 acls in TCP
19381 - [BUG] stream_sock: always shutdown(SHUT_WR) before closing
19382 - [BUG] stream_sock: don't stop reading when the poller reports an error
19383 - [BUG] config: tcp-request content only accepts "if" or "unless"
19384 - [BUG] task: fix possible timer drift after update
19385 - [MINOR] apply tcp-smart-connect option for the checks too
19386 - [MINOR] stats: better displaying in MSIE
19387 - [MINOR] config: improve error reporting in global section
19388 - [MINOR] config: improve error reporting in listen sections
19389 - [MINOR] config: the "capture" keyword is not allowed in backends
19390 - [MINOR] config: improve error reporting when checking configuration
19391 - [BUILD] fix a minor build warning on AIX
19392 - [BUILD] use "git cmd" instead of "git-cmd"
19393 - [CLEANUP] report 2009 not 2008 in the copyright banner.
19394 - [MINOR] print usage on the stats sockets upon invalid commands
19395 - [MINOR] acl: detect and report potential mistakes in ACLs
19396 - [BUILD] fix incorrect printf arg count with tcp_splice
19397 - [BUG] fix random pauses on last segment of a series
19398 - [BUILD] add support for build under Cygwin
19399
Willy Tarreau79158882009-06-09 11:59:08 +0200194002009/06/09 : 1.4-dev0
19401 - exact copy of 1.3.18
19402
Willy Tarreaubeb05ae2009-05-10 20:27:47 +0200194032009/05/10 : 1.3.18
19404 - [MEDIUM] add support for "balance hdr(name)"
19405 - [CLEANUP] give a little bit more information in error message
19406 - [MINOR] add X-Original-To: header
19407 - [BUG] x-original-to: fix missing initialization to default value
19408 - [BUILD] spec file: fix broken pipe during rpmbuild and add man file
19409 - [MINOR] improve reporting of misplaced acl/reqxxx rules
19410 - [MEDIUM] http: add options to ignore invalid header names
19411 - [MEDIUM] http: capture invalid requests/responses even if accepted
19412 - [BUILD] add format(printf) to printf-like functions
19413 - [MINOR] fix several printf formats and missing arguments
19414 - [BUG] stats: total and lbtot are unsigned
19415 - [MINOR] fix a few remaining printf-like formats on 64-bit platforms
19416 - [CLEANUP] remove unused make option from haproxy.spec
19417 - [BUILD] make it possible to pass alternative arch at build time
19418 - [MINOR] switch all stat counters to 64-bit
19419 - [MEDIUM] ensure we don't recursively call pool_gc2()
19420 - [CRITICAL] uninitialized response field can sometimes cause crashes
19421 - [BUG] fix wrong pointer arithmetics in HTTP message captures
19422 - [MINOR] rhel init script : support the reload operation
19423 - [MINOR] add basic signal handling functions
19424 - [BUILD] add signal.o to all makefiles
19425 - [MEDIUM] call signal_process_queue from run_poll_loop
19426 - [MEDIUM] pollers: don't wait if a signal is pending
19427 - [MEDIUM] convert all signals to asynchronous signals
19428 - [BUG] O(1) pollers should check their FD before closing it
19429 - [MINOR] don't close stdio fds twice
19430 - [MINOR] add options dontlog-normal and log-separate-errors
19431 - [DOC] minor fixes and rearrangements
19432 - [BUG] fix parser crash on unconditional tcp content rules
19433 - [DOC] rearrange the configuration manual and add a summary
19434 - [MINOR] standard: provide a new 'my_strndup' function
19435 - [MINOR] implement per-logger log level limitation
19436 - [MINOR] compute the max of sessions/s on fe/be/srv
19437 - [MINOR] stats: report max sessions/s and limit in CSV export
19438 - [MINOR] stats: report max sessions/s and limit in HTML stats
19439 - [MINOR] stats/html: use the arial font before helvetica
19440
Willy Tarreauf459b422009-03-29 15:26:57 +0200194412009/03/29 : 1.3.17
19442 - Update specfile to build for v2.6 kernel.
19443 - [BUG] reset the stream_interface connect timeout upon connect or error
19444 - [BUG] reject unix accepts when connection limit is reached
19445 - [MINOR] show sess: report number of calls to each task
19446 - [BUG] don't call epoll_ctl() on closed sockets
19447 - [BUG] stream_sock: disable I/O on fds reporting an error
19448 - [MINOR] sepoll: don't count two events on the same FD.
19449 - [MINOR] show sess: report a lot more information about sessions
19450 - [BUG] stream_sock: check for shut{r,w} before refreshing some timeouts
19451 - [BUG] don't set an expiration date directly from now_ms
19452 - [MINOR] implement ulltoh() to write HTML-formatted numbers
19453 - [MINOR] stats/html: group digits by 3 to clarify numbers
19454 - [BUILD] remove haproxy-small.spec
19455 - [BUILD] makefile: remove unused references to linux24eold and EPOLL_CTL_WORKAROUND
19456
Willy Tarreau8019ffa2009-03-22 23:46:12 +0100194572009/03/22 : 1.3.16
19458 - [BUILD] Fixed Makefile for linking pcre
19459 - [CONTRIB] selinux policy for haproxy
19460 - [MINOR] show errors: encode backslash as well as non-ascii characters
19461 - [MINOR] cfgparse: some cleanups in the consistency checks
19462 - [MINOR] cfgparse: set backends to "balance roundrobin" by default
19463 - [MINOR] tcp-inspect: permit the use of no-delay inspection
19464 - [MEDIUM] reverse internal proxy declaration order to match configuration
19465 - [CLEANUP] config: catch and report some possibly wrong rule ordering
19466 - [BUG] connect timeout is in the stream interface, not the buffer
19467 - [BUG] session: errors were not reported in termination flags in TCP mode
19468 - [MINOR] tcp_request: let the caller take care of errors and timeouts
19469 - [CLEANUP] http: remove some commented out obsolete code in process_response
19470 - [MINOR] update ebtree to version 4.1
19471 - [MEDIUM] scheduler: get rid of the 4 trees thanks and use ebtree v4.1
19472 - [BUG] sched: don't leave 3 lasts tasks unprocessed when niced tasks are present
19473 - [BUG] scheduler: fix improper handling of duplicates __task_queue()
19474 - [MINOR] sched: permit a task to stay up between calls
19475 - [MINOR] task: keep a task count and clean up task creators
19476 - [MINOR] stats: report number of tasks (active and running)
19477 - [BUG] server check intervals must not be null
19478 - [OPTIM] stream_sock: don't retry to read after a large read
19479 - [OPTIM] buffer: new BF_READ_DONTWAIT flag reduces EAGAIN rates
19480 - [MEDIUM] session: don't resync FSMs on non-interesting changes
19481 - [BUG] check for global.maxconn before doing accept()
19482 - [OPTIM] sepoll: do not re-check whole list upon accepts
19483
Willy Tarreau8185ced2009-03-09 22:45:53 +0100194842009/03/09 : 1.3.16-rc2
19485 - [BUG] stream_sock: write timeout must be updated when forwarding !
19486
Willy Tarreauff63b432009-03-09 01:03:42 +0100194872009/03/09 : 1.3.16-rc1
19488 - appsessions: cleanup DEBUG_HASH and initialize request_counter
19489 - [MINOR] acl: add new keyword "connslots"
19490 - [MINOR] cfgparse: fix off-by 2 in error message size
19491 - [BUILD] fix build with gcc 4.3
19492 - [BUILD] fix MANDIR default location to match documentation
19493 - [TESTS] add a debug patch to help trigger the stats bug
19494 - [BUG] Flush buffers also where there are exactly 0 bytes left
19495 - [MINOR] Allow to specify a domain for a cookie
19496 - [BUG/CLEANUP] cookiedomain -> cookie_domain rename + free(p->cookie_domain)
19497 - [MEDIUM] Fix memory freeing at exit
19498 - [MEDIUM] Fix memory freeing at exit, part 2
19499 - [BUG] Fix listen & more of 2 couples <ip>:<port>
19500 - [DOC] remove buggy comment for use_backend
19501 - [CRITICAL] fix server state tracking: it was O(n!) instead of O(n)
19502 - [MEDIUM] add support for URI hash depth and length limits
19503 - [MINOR] permit renaming of x-forwarded-for header
19504 - [BUILD] fix Makefile.bsd and Makefile.osx for stream_interface
19505 - [BUILD] Haproxy won't compile if DEBUG_FULL is defined
19506 - [MEDIUM] upgrade to ebtree v4.0
19507 - [DOC] update the README file with new build options
19508 - [MEDIUM] reduce risk of event starvation in ev_sepoll
19509 - [MEDIUM] detect streaming buffers and tag them as such
19510 - [MEDIUM] add support for conditional HTTP redirection
19511 - [BUILD] make install should depend on haproxy not "all"
19512 - [DEBUG] add a TRACE macro to facilitate runtime data extraction
19513 - [BUG] event pollers must not wait if a task exists in the run queue
19514 - [BUG] queue management: wake oldest request in queues
19515 - [BUG] log: reported queue position was offed-by-one
19516 - [BUG] fix the dequeuing logic to ensure that all requests get served
19517 - [DOC] documentation for the "retries" parameter was missing.
19518 - [MEDIUM] implement a monotonic internal clock
19519 - [MEDIUM] further improve monotonic clock by check forward jumps
19520 - [OPTIM] add branch prediction hints in list manipulations
19521 - [MAJOR] replace ultree with ebtree in wait-queues
19522 - [BUG] we could segfault during exit while freeing uri_auths
19523 - [BUG] wqueue: perform proper timeout comparisons with wrapping values
19524 - [MINOR] introduce now_ms, the current date in milliseconds
19525 - [BUG] disable buffer read timeout when reading stats
19526 - [MEDIUM] rework the wait queue mechanism
19527 - [BUILD] change declaration of base64tab to fix build with Intel C++
19528 - [OPTIM] shrink wake_expired_tasks() by using task_wakeup()
19529 - [MAJOR] use an ebtree instead of a list for the run queue
19530 - [MEDIUM] introduce task->nice and boot access to statistics
19531 - [OPTIM] task_queue: assume most consecutive timers are equal
19532 - [BUILD] silent a warning in unlikely() with gcc 4.x
19533 - [MAJOR] convert all expiration timers from timeval to ticks
19534 - [BUG] use_backend would not correctly consider "unless"
19535 - [TESTS] added test-acl.cfg to test some ACL combinations
19536 - [MEDIUM] add support for configuration keyword registration
19537 - [MEDIUM] modularize the global "stats" keyword configuration parser
19538 - [MINOR] cfgparse: add support for warnings in external functions
19539 - [MEDIUM] modularize the "timeout" keyword configuration parser
19540 - [MAJOR] implement tcp request content inspection
19541 - [MINOR] acl: add a new parsing function: parse_dotted_ver
19542 - [MINOR] acl: add req_ssl_ver in TCP, to match an SSL version
19543 - [CLEANUP] remove unused include/types/client.h
19544 - [CLEANUP] remove many #include <types/xxx> from C files
19545 - [CLEANUP] remove dependency on obsolete INTBITS macro
19546 - [DOC] document the new "tcp-request" keyword and associated ACLs
19547 - [MINOR] acl: add REQ_CONTENT to the list of default acls
19548 - [MEDIUM] acl: permit fetch() functions to set the result themselves
19549 - [MEDIUM] acl: get rid of dummy values in always_true/always_false
19550 - [MINOR] acl: add the "wait_end" acl verb
19551 - [MEDIUM] acl: enforce ACL type checking
19552 - [MEDIUM] acl: set types on all currently known ACL verbs
19553 - [MEDIUM] acl: when possible, report the name and requirements of ACLs in warnings
19554 - [CLEANUP] remove 65 useless NULL checks before free
19555 - [MEDIUM] memory: update pool_free2() to support NULL pointers
19556 - [MEDIUM] buffers: ensure buffer_shut* are properly called upon shutdowns
19557 - [MEDIUM] process_srv: rely on buffer flags for client shutdown
19558 - [MEDIUM] process_srv: don't rely at all on client state
19559 - [MEDIUM] process_cli: don't rely at all on server state
19560 - [BUG] fix segfault with url_param + check_post
19561 - [BUG] server timeout was not considered in some circumstances
19562 - [BUG] client timeout incorrectly rearmed while waiting for server
19563 - [MAJOR] kill CL_STINSPECT and CL_STHEADERS (step 1)
19564 - [MAJOR] get rid of SV_STANALYZE (step 2)
19565 - [MEDIUM] simplify and centralize request timeout cancellation and request forwarding
19566 - [MAJOR] completely separate HTTP and TCP states on the request path
19567 - [BUG] fix recently introduced loop when client closes early
19568 - [MAJOR] get rid of the SV_STHEADERS state
19569 - [MAJOR] better separation of response processing and server state
19570 - [MAJOR] clearly separate HTTP response processing from TCP server state
19571 - [MEDIUM] remove unused references to {CL|SV}_STSHUT*
19572 - [MINOR] term_trace: add better instrumentations to trace the code
19573 - [BUG] ev_sepoll: closed file descriptors could persist in the spec list
19574 - [BUG] process_response must not enable the read FD
19575 - [BUG] buffers: remove BF_MAY_CONNECT and fix forwarding issue
19576 - [BUG] process_response: do not touch srv_state
19577 - [BUG] maintain_proxies must not disable backends
19578 - [CLEANUP] get rid of BF_SHUT*_PENDING
19579 - [MEDIUM] buffers: add BF_EMPTY and BF_FULL to remove dependency on req/rep->l
19580 - [MAJOR] process_session: rely only on buffer flags
19581 - [MEDIUM] use buffer->wex instead of buffer->cex for connect timeout
19582 - [MEDIUM] centralize buffer timeout checks at the top of process_session
19583 - [MINOR] ensure the termination flags are set by process_xxx
19584 - [MEDIUM] session: move the analysis bit field to the buffer
19585 - [OPTIM] process_cli/process_srv: reduce the number of tests
19586 - [BUG] regparm is broken on gcc < 3
19587 - [BUILD] fix warning in proto_tcp.c with gcc >= 4
19588 - [MEDIUM] merge inspect_exp and txn->exp into request buffer
19589 - [BUG] process_cli/process_srv: don't call shutdown when already done
19590 - [BUG] process_request: HTTP body analysis must return zero if missing data
19591 - [TESTS] test-fsm: 22 regression tests for state machines
19592 - [BUG] Fix empty X-Forwarded-For header name when set in defaults section
19593 - [BUG] fix harmless but wrong fd insertion sequence
19594 - [MEDIUM] make it possible for analysers to follow the whole session
19595 - [MAJOR] rework of the server FSM
19596 - [OPTIM] remove useless fd_set(read) upon shutdown(write)
19597 - [MEDIUM] massive cleanup of process_srv()
19598 - [MEDIUM] second level of code cleanup for process_srv_data
19599 - [MEDIUM] third cleanup and optimization of process_srv_data()
19600 - [MEDIUM] process_srv_data: ensure that we always correctly re-arm timeouts
19601 - [MEDIUM] stream_sock_process_data moved to stream_sock.c
19602 - [MAJOR] make the client side use stream_sock_process_data()
19603 - [MEDIUM] split stream_sock_process_data
19604 - [OPTIM] stream_sock_read must check for null-reads more often
19605 - [MINOR] only call flow analysers when their read side is connected.
19606 - [MEDIUM] reintroduce BF_HIJACK with produce_content
19607 - [MINOR] re-arrange buffer flags and rename some of them
19608 - [MINOR] do not check for BF_SHUTR when computing write timeout
19609 - [OPTIM] ev_sepoll: detect newly created FDs and check them once
19610 - [OPTIM] reduce the number of calls to task_wakeup()
19611 - [OPTIM] force inlining of large functions with gcc >= 3
19612 - [MEDIUM] indicate a reason for a task wakeup
19613 - [MINOR] change type of fdtab[]->owner to void*
19614 - [MAJOR] make stream sockets aware of the stream interface
19615 - [MEDIUM] stream interface: add the ->shutw method as well as in and out buffers
19616 - [MEDIUM] buffers: add BF_READ_ATTACHED and BF_ANA_TIMEOUT
19617 - [MEDIUM] process_session: make use of the new buffer flags
19618 - [CLEANUP] process_session: move debug outputs out of the critical loop
19619 - [MEDIUM] move QUEUE and TAR timers to stream interfaces
19620 - [OPTIM] add compiler hints in tick_is_expired()
19621 - [MINOR] add buffer_check_timeouts() to check what timeouts have fired.
19622 - [MEDIUM] use buffer_check_timeouts instead of stream_sock_check_timeouts()
19623 - [MINOR] add an expiration flag to the stream_sock_interface
19624 - [MAJOR] migrate the connection logic to stream interface
19625 - [MAJOR] add a connection error state to the stream_interface
19626 - [MEDIUM] add the SN_CURR_SESS flag to the session to track open sessions
19627 - [MEDIUM] continue layering cleanups.
19628 - [MEDIUM] stream_interface: added a DISconnected state between CON/EST and CLO
19629 - [MEDIUM] remove stream_sock_update_data()
19630 - [MINOR] maintain a global session list in order to ease debugging
19631 - [BUG] shutw must imply close during a connect
19632 - [MEDIUM] process shutw during connection attempt
19633 - [MEDIUM] make the stream interface control the SHUT{R,W} bits
19634 - [MAJOR] complete layer4/7 separation
19635 - [CLEANUP] move the session-related functions to session.c
19636 - [MINOR] call session->do_log() for logging
19637 - [MINOR] replace the ambiguous client_return function by stream_int_return
19638 - [MINOR] replace client_retnclose() with stream_int_retnclose()
19639 - [MINOR] replace srv_close_with_err() with http_server_error()
19640 - [MEDIUM] make the http server error function a pointer in the session
19641 - [CLEANUP] session.c: removed some migration left-overs in sess_establish()
19642 - [MINOR] stream_sock_data_finish() should not expose fd
19643 - [MEDIUM] extract TCP request processing from HTTP
19644 - [MEDIUM] extract the HTTP tarpit code from process_request().
19645 - [MEDIUM] move the HTTP request body analyser out of process_request().
19646 - [MEDIUM] rename process_request to http_process_request
19647 - [BUG] fix forgotten server session counter
19648 - [MINOR] declare process_session in session.h, not proto_http.h
19649 - [MEDIUM] first pass of lifting to proto_uxst.c:uxst_event_accept()
19650 - [MINOR] add an analyser code for UNIX stats request
19651 - [MINOR] pre-set analyser flags on the listener at registration time
19652 - [BUG] do not forward close from cons to prod with analysers
19653 - [MEDIUM] ensure that sock->shutw() also closes read for init states
19654 - [MINOR] add an analyser state in struct session
19655 - [MAJOR] make unix sockets work again with stats
19656 - [MEDIUM] remove cli_fd, srv_fd, cli_state and srv_state from the session
19657 - [MINOR] move the listener reference from fd to session
19658 - [MEDIUM] reference the current hijack function in the buffer itself
19659 - [MINOR] slightly rebalance stats_dump_{raw,http}
19660 - [MINOR] add a new back-reference type : struct bref
19661 - [MINOR] add back-references to sessions for later use by a dumper.
19662 - [MEDIUM] add support for "show sess" in unix stats socket
19663 - [BUG] do not release the connection slot during a retry
19664 - [BUG] dynamic connection throttling could return a max of zero conns
19665 - [BUG] do not try to pause backends during reload
19666 - [BUG] ensure that listeners from disabled proxies are correctly unbound.
19667 - [BUG] acl-related keywords are not allowed in defaults sections
19668 - [BUG] cookie capture is declared in the frontend but checked on the backend
19669 - [BUG] critical errors should be reported even in daemon mode
19670 - [MINOR] redirect: add support for the "drop-query" option
19671 - [MINOR] redirect: add support for "set-cookie" and "clear-cookie"
19672 - [MINOR] redirect: in prefix mode a "/" means not to change the URI
19673 - [BUG] do not dequeue requests on a dead server
19674 - [BUG] do not dequeue the backend's pending connections on a dead server
19675 - [MINOR] stats: indicate if a task is running in "show sess"
19676 - [BUG] check timeout must not be changed if timeout.check is not set
19677 - [BUG] "option transparent" is for backend, not frontend !
19678 - [MINOR] transfer errors were not reported anymore in data phase
19679 - [MEDIUM] add a send limit to a buffer
19680 - [MEDIUM] don't report buffer timeout when there is I/O activity
19681 - [MEDIUM] indicate when we don't care about read timeout
19682 - [MINOR] add flags to indicate when a stream interface is waiting for space/data
19683 - [MEDIUM] enable inter-stream_interface wakeup calls
19684 - [MAJOR] implement autonomous inter-socket forwarding
19685 - [MINOR] add the splice_len member to the buffer struct in preparation of splice support
19686 - [MEDIUM] stream_sock: factor out the return path in case of no-writes
19687 - [MEDIUM] i/o: rework ->to_forward and ->send_max
19688 - [OPTIM] stream_sock: do not ask for polling on EAGAIN if we have read
19689 - [OPTIM] buffer: replace rlim by max_len
19690 - [OPTIM] stream_sock: factor out the buffer full handling out of the loop
19691 - [CLEANUP] replace a few occurrences of (flags & X) && !(flags & Y)
19692 - [CLEANUP] stream_sock: move the write-nothing condition out of the loop
19693 - [MEDIUM] split stream_sock_write() into callback and core functions
19694 - [MEDIUM] stream_sock_read: call ->chk_snd whenever there are data pending
19695 - [MINOR] stream_sock: fix a few wrong empty calculations
19696 - [MEDIUM] stream_sock: try to send pending data on chk_snd()
19697 - [MINOR] global.maxpipes: add the ability to reserve file descriptors for pipes
19698 - [MEDIUM] splice: add configuration options and set global.maxpipes
19699 - [MINOR] introduce structures required to support Linux kernel splicing
19700 - [MEDIUM] add definitions for Linux kernel splicing
19701 - [MAJOR] complete support for linux 2.6 kernel splicing
19702 - [BUG] reserve some pipes for backends with splice enabled
19703 - [MEDIUM] splice: add hints to support older buggy kernels
19704 - [MEDIUM] introduce pipe pools
19705 - [MEDIUM] splice: make use of pipe pools
19706 - [STATS] report pipe usage in the statistics
19707 - [OPTIM] make global.maxpipes default to global.maxconn/4 when not specified
19708 - [BUILD] fix snapshot date extraction with negative timezones
19709 - [MEDIUM] move global tuning options to the global structure
19710 - [MEDIUM] splice: add the global "nosplice" option
19711 - [BUILD] add USE_LINUX_SPLICE to enable LINUX_SPLICE on linux 2.6
19712 - [BUG] we must not exit if protocol binding only returns a warning
19713 - [MINOR] add support for bind interface name
19714 - [BUG] inform the user when root is expected but not set
19715 - [MEDIUM] add support for source interface binding
19716 - [MEDIUM] add support for source interface binding at the server level
19717 - [MEDIUM] implement bind-process to limit service presence by process
19718 - [DOC] document maxpipes, nosplice, option splice-{auto,request,response}
19719 - [DOC] filled the logging section of the configuration manual
19720 - [DOC] document HTTP status codes
19721 - [DOC] document a few missing info about errorfile
19722 - [BUG] fix random memory corruption using "show sess"
19723 - [BUG] fix unix socket processing of interrupted output
19724 - [DOC] add diagrams of queuing and future ACL design
19725 - [BUILD] proto_http did not build on gcc-2.95
19726 - [BUG] the "source" keyword must first clear optional settings
19727 - [BUG] global.tune.maxaccept must be limited even in mono-process mode
19728 - [MINOR] ensure that http_msg_analyzer updates pointer to invalid char
19729 - [MEDIUM] store a complete dump of request and response errors in proxies
19730 - [MEDIUM] implement error dump on unix socket with "show errors"
19731 - [DOC] document "show errors"
19732 - [MINOR] errors dump must use user-visible date, not internal date.
19733 - [MINOR] time: add __usec_to_1024th to convert usecs to 1024th of second
19734 - [MINOR] add curr_sec_ms and curr_sec_ms_scaled for current second.
19735 - [MEDIUM] measure and report session rate on frontend, backends and servers
19736 - [BUG] the "connslots" keyword was matched as "connlots"
19737 - [MINOR] acl: add 2 new verbs: fe_sess_rate and be_sess_rate
19738 - [MEDIUM] implement "rate-limit sessions" for the frontend
19739 - [BUG] interface binding: length must include the trailing zero
19740 - [BUG] typo in timeout error reporting : report *res and not *err
19741 - [OPTIM] maintain_proxies: only wake up when the frontend will be ready
19742 - [OPTIM] rate-limit: cleaner behaviour on low rates and reduce consumption
19743 - [BUG] switch server-side stream interface to close in case of abort
19744 - [CLEANUP] remove last references to term_trace
19745 - [OPTIM] freq_ctr: do not rotate the counters when reading
19746 - [BUG] disable any analysers for monitoring requests
19747 - [BUG] rate-limit in defaults section was ignored
19748 - [BUG] task: fix handling of duplicate keys
19749 - [OPTIM] task: don't unlink a task from a wait queue when waking it up
19750 - [OPTIM] displace tasks in the wait queue only if absolutely needed
19751 - [MEDIUM] minor update to the task api: let the scheduler queue itself
19752 - [BUG] event_accept() must always wake the task up, even in health mode
19753 - [CLEANUP] task: distinguish between clock ticks and timers
19754 - [OPTIM] task: reduce the number of calls to task_queue()
19755 - [OPTIM] do not re-check req buffer when only response has changed
19756 - [CLEANUP] don't enable kernel splicing when socket is closed
19757 - [CLEANUP] buffer_flush() was misleading, rename it as buffer_erase
19758 - [MINOR] buffers: implement buffer_flush()
19759 - [MEDIUM] rearrange forwarding condition to enable splice during analysis
19760 - [BUILD] build fixes for Solaris
19761 - [BUILD] proto_http did not build on gcc-2.95 (again)
19762 - [CONTRIB] halog: fast log parser for haproxy
19763 - [CONTRIB] halog: faster fgets() and add support for percentile reporting
19764
Willy Tarreau7b4c5ae2008-04-19 21:06:14 +0200197652008/04/19 : 1.3.15
19766 - [BUILD] Added support for 'make install'
19767 - [BUILD] Added 'install-man' make target for installing the man page
19768 - [BUILD] Added 'install-bin' make target
19769 - [BUILD] Added 'install-doc' make target
19770 - [BUILD] Removed "/" after '$(DESTDIR)' in install targets
19771 - [BUILD] Changed 'install' target to install the binaries first
19772 - [BUILD] Replace hardcoded 'LD = gcc' with 'LD = $(CC)'
19773 - [MEDIUM]: Inversion for options
19774 - [MEDIUM]: Count retries and redispatches also for servers, fix redistribute_pending, extend logs, %d->%u cleanup
19775 - [BUG]: Restore clearing t->logs.bytes
19776 - [MEDIUM]: rework checks handling
19777 - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
19778 - [MEDIUM] Implement "track [<backend>/]<server>"
19779 - [MINOR] Implement persistent id for proxies and servers
19780 - [BUG] Don't increment server connections too much + fix retries
19781 - [MEDIUM]: Prevent redispatcher from selecting the same server, version #3
19782 - [MAJOR] proto_uxst rework -> SNMP support
19783 - [BUG] appsession lookup in URL does not work
19784 - [BUG] transparent proxy address was ignored in backend
19785 - [BUG] hot reconfiguration failed because of a wrong error check
19786 - [DOC] big update to the configuration manual
19787 - [DOC] large update to the configuration manual
19788 - [DOC] document more options
19789 - [BUILD] major rework of the GNU Makefile
19790 - [STATS] add support for "show info" on the unix socket
19791 - [DOC] document options forwardfor to logasap
19792 - [MINOR] add support for the "backlog" parameter
19793 - [OPTIM] introduce global parameter "tune.maxaccept"
19794 - [MEDIUM] introduce "timeout http-request" in frontends
19795 - [MINOR] tarpit timeout is also allowed in backends
19796 - [BUG] increment server connections for each connect()
19797 - [MEDIUM] add a turn-around state of one second after a connection failure
19798 - [BUG] fix typo in redispatched connection
19799 - [DOC] document options nolinger to ssl-hello-chk
19800 - [DOC] added documentation for "option tcplog" to "use_backend"
19801 - [BUG] connect_server: server might not exist when sending error report
19802 - [MEDIUM] support fully transparent proxy on Linux (USE_LINUX_TPROXY)
19803 - [MEDIUM] add non-local bind to connect() on Linux
19804 - [MINOR] add transparent proxy support for balabit's Tproxy v4
19805 - [BUG] use backend's source and not server's source with tproxy
19806 - [BUG] fix overlapping server flags
19807 - [MEDIUM] fix server health checks source address selection
19808 - [BUG] build failed on CONFIG_HAP_LINUX_TPROXY without CONFIG_HAP_CTTPROXY
19809 - [DOC] added "server", "source" and "stats" keywords
19810 - [DOC] all server parameters have been documented
19811 - [DOC] document all req* and rsp* keywords.
19812 - [DOC] added documentation about HTTP header manipulations
19813 - [BUG] log response byte count, not request
19814 - [BUILD] code did not build in full debug mode
19815 - [BUG] fix truncated responses with sepoll
19816 - [MINOR] use s->frt_addr as the server's address in transparent proxy
19817 - [MINOR] fix configuration hint about timeouts
19818 - [DOC] minor cleanup of the doc and notice to contributors
19819 - [MINOR] report correct section type for unknown keywords.
19820 - [BUILD] update MacOS Makefile to build on newer versions
19821 - [DOC] fix erroneous "useallbackups" option in the doc
19822 - [DOC] applied small fixes from early readers
19823 - [MINOR] add configuration support for "redir" server keyword
19824 - [MEDIUM] completely implement the server redirection method
19825 - [TESTS] add a test case for the server redirection mechanism
19826 - [DOC] add a configuration entry for "server ... redir <prefix>"
19827 - [BUILD] backend.c and checks.c did not build without tproxy !
19828 - Revert "[BUILD] backend.c and checks.c did not build without tproxy !"
19829 - [BUILD] backend.c and checks.c did not build without tproxy !
19830 - [OPTIM] used unsigned ints for HTTP state and message offsets
19831 - [OPTIM] GCC4's builtin_expect() is suboptimal
19832 - [BUG] failed conns were sometimes incremented in the frontend!
19833 - [BUG] timeout.check was not pre-set to eternity
19834 - [TESTS] add test-pollers.cfg to easily report pollers in use
19835 - [BUG] do not apply timeout.connect in checks if unset
19836 - [BUILD] ensure that makefile understands USE_DLMALLOC=1
19837 - [MINOR] silent gcc for a wrong warning
19838 - [CLEANUP] update .gitignore to ignore more temporary files
19839 - [CLEANUP] report dlmalloc's source path only if explictly specified
19840 - [BUG] str2sun could leak a small buffer in case of error during parsing
19841 - [BUG] option allbackups was not working anymore in roundrobin mode
19842 - [MAJOR] implementation of the "leastconn" load balancing algorithm
19843 - [BUILD] ensure that users don't build without setting the target anymore.
19844 - [DOC] document the leastconn LB algo
19845 - [MEDIUM] fix stats socket limitation to 16 kB
19846 - [DOC] fix unescaped space in httpchk example.
19847 - [BUG] fix double-decrement of server connections
19848 - [TESTS] add a test case for port mapping
19849 - [TESTS] add a benchmark for integer hashing
19850 - [TESTS] add new methods in ip-hash test file
19851 - [MAJOR] implement parameter hashing for POST requests
19852
Willy Tarreaue5b77e82007-12-06 01:25:44 +0100198532007/12/06 : 1.3.14
19854 - New option http_proxy (Alexandre Cassen)
19855 - add support for "maxqueue" to limit server queue overload (Elijah Epifanov)
19856 - Check for duplicated conflicting proxies (Krzysztof Oledzki)
19857 - stats: report server and backend cumulated downtime (Krzysztof Oledzki)
19858 - use backends only with use_backend directive (Krzysztof Oledzki)
19859 - Handle long lines properly (Krzysztof Oledzki)
19860 - Implement and use generic findproxy and relax duplicated proxy check (Krzysztof Oledzki)
19861 - continous statistics (Krzysztof Oledzki)
19862 - add support for logging via a UNIX socket (Robert Tsai)
19863 - fix error checking in strl2ic/strl2uic()
19864 - fix calls to localtime()
19865 - provide easier-to-use ultoa_* functions
19866 - provide easy-to-use limit_r and LIM2A* macros
19867 - add a simple test for the status page
19868 - move error codes to common/errors.h
19869 - silent warning about LIST_* being redefined on OpenBSD
19870 - add socket address length to the protocols
19871 - group PR_O_BALANCE_* bits into a checkable value
19872 - externalize the "balance" option parser to backend.c
19873 - introduce the "url_param" balance method
19874 - make default_backend work in TCP mode too
19875 - disable warning about localtime_r on Solaris
19876 - adjust error messages about conflicting proxies
19877 - avoid calling some layer7 functions if not needed
19878 - simplify error path in event_accept()
19879 - add an options field to the listeners
19880 - added a new state to listeners
19881 - unbind_listener() must use fd_delete() and not close()
19882 - add a generic unbind_listener() primitive
19883 - add a generic delete_listener() primitive
19884 - add a generic unbind_all_listeners() primitive
19885 - create proto_tcp and move initialization of proxy listeners
19886 - stats: report numerical process ID, proxy ID and server ID
19887 - relative_pid was not initialized
19888 - missing header names in raw stats output
19889 - fix missing parenthesis in check_response_for_cacheability
19890 - small optimization on session_process_counters()
19891 - merge ebtree version 3.0
19892 - make ebtree headers multiple-include compatible
19893 - ebtree: include config.h for REGPRM*
19894 - differentiate between generic LB params and map-specific ones
19895 - add a weight divisor to the struct proxy
19896 - implement the Fast Weighted Round Robin (FWRR) algo
19897 - include filltab25.c to experiment on FWRR for dynamic weights
19898 - merge test-fwrr.cfg to validate dynamic weights
19899 - move the load balancing algorithm to be->lbprm.algo
19900 - change server check result to a bit field
19901 - implement "http-check disable-on-404" for graceful shutdown
19902 - secure the calling conditions of ->set_server_status_{up,down}
19903 - report disabled servers as "NOLB" when they are still UP
19904 - document the "http-check disable-on-404" option
19905 - http-check disable-on-404 is not limited to HTTP mode
19906 - add a test file for disable-on-404
19907 - use distinct bits per load-balancing algorithm type
19908 - implement the slowstart parameter for servers
19909 - document the server's slowstart parameter
19910 - stats: report the server warm up status in a "throttle" column
19911 - fix 2 minor issues on AIX
19912 - add the "nbsrv" ACL verb
19913 - add the "fail" condition to monitor requests
19914 - remove a warning from gcc due to htons() in standard.c
19915 - fwrr: ensure that we never overflow in placements
19916 - store the build options to report with -vv
19917 - fix the status return of the init script (R.I. Pienaar)
19918 - stats: real time monitoring script for unix socket (Prizee)
19919 - document "nbsrv" and "monitor fail"
19920 - restrict the set of allowed characters for identifiers
19921 - implement a time parsing function
19922 - add support for time units in the configuration
19923 - add a bit of documentation about timers
19924 - introduce separation between contimeout, and tarpit + queue
19925 - introduce the "timeout" keyword
19926 - grouped all timeouts in one structure
19927 - slowstart is in ms, not seconds
19928 - slowstart: ensure we don't start with a null weight
19929 - report the number of times each server was selected
19930 - fix build on AIX due to recent log changes
19931 - fix build on Solaris due to recent log changes
19932
Willy Tarreaue855f422007-10-18 22:38:22 +0200199332007/10/18 : 1.3.13
19934 - replace the code under O'Reilly license (Arnaud Cornet)
19935 - add a small man page (Arnaud Cornet)
19936 - stats: report haproxy's version by default (Krzysztof Oledzki)
19937 - stats: count server retries and redispatches (Krzysztof Oledzki)
19938 - core: added easy support for Doug Lea's malloc (dlmalloc)
19939 - core: fade out memory usage when stopping proxies
19940 - core: moved the sockaddr pointer to the fdtab structure
19941 - core: add generic protocol support
19942 - core: implement client-side support for PF_UNIX sockets
19943 - stats: implement the CSV output
19944 - stats: add a link to the CSV export HTML page
19945 - stats: implement the statistics output on a unix socket
19946 - config: introduce the "stats" keyword in global section
19947 - build: centralize version and date into one file for each
19948 - tests: added a new hash algorithm
19949
199502007/10/18 : 1.3.12.3
19951 - add the "nolinger" option to disable data lingering (Alexandre Cassen)
19952 - fix double-free during clean exit (Krzysztof Oledzki)
19953 - prevent the system from sending an RST when closing health-checks
19954 (Krzysztof Oledzki)
19955 - do not add a cache-control header when on non-cacheable responses
19956 (Krzysztof Oledzki)
19957 - spread health checks even more (Krzysztof Oledzki)
19958 - stats: scope "." must match the backend and not the frontend
19959 - fixed call to chroot() during startup
19960 - fix wrong timeout computation in event_accept()
19961 - remove condition for exit() under fork() failure
19962
199632007/09/20 : 1.3.12.2
19964 - fix configuration sanity checks for TCP listeners
19965 - set the log socket receive window to zero bytes
19966 - pre-initialize timeouts to infinity, not zero
19967 - fix the SIGHUP message not to alert on server-less proxies
19968 - timeouts and retries could be ignored when switching backend
19969 - added a file to check that "retries" works.
19970 - O'Reilly has clarified its license
19971
199722007/09/05 : 1.3.12.1
19973 - spec I/O: fix allocations of spec entries for an FD
19974 - ensure we never overflow in chunk_printf()
19975 - improve behaviour with large number of servers per proxy
19976 - add support for "stats refresh <interval>"
19977 - stats page: added links for 'refresh' and 'hide down'
19978 - fix backend's weight in the stats page.
19979 - the "stats" keyword is not allowed in a pure frontend.
19980 - provide a test configuration file for stats and checks
19981
Willy Tarreaub21152b2007-06-17 23:41:40 +0200199822007/06/17 : 1.3.12
19983 - fix segfault at exit when using captures
19984 - bug: negation in ACL conds was not cleared between terms
19985 - errorfile: use a local file to feed error messages
19986 - acl: support '-i' to ignore case when matching
19987 - acl: smarter integer comparison with operators eq,lt,gt,le,ge
19988 - acl: support maching on 'path' component
19989 - acl: implement matching on header values
19990 - acl: distinguish between request and response headers
19991 - acl: permit to return any header when no name specified
19992 - acl: provide default ACLs
19993 - added the 'use_backend' keyword for full content-switching
19994 - acl: specify the direction during fetches
19995 - acl: provide the argument length for fetch functions
19996 - acl: provide a reference to the expr to fetch()
19997 - improve memory freeing upon exit
19998 - str2net() must not change the const char *
19999 - shut warnings 'is*' macros from ctype.h on solaris
20000
Willy Tarreaua3503e02007-06-03 17:27:07 +0200200012007/06/03 : 1.3.11.4
20002 - do not re-arm read timeout in SHUTR state !
20003 - optimize I/O by detecting system starvation
20004 - the epoll FD must not be shared between processes
20005 - limit the number of events returned by *poll*
20006
Willy Tarreau3c6fc072007-05-14 14:40:25 +0200200072007/05/14 : 1.3.11.3
20008 - pre-initialize timeouts with tv_eternity during parsing
20009
Willy Tarreaufc273c22007-05-14 03:42:47 +0200200102007/05/14 : 1.3.11.2
20011 - fixed broken health-checks since switch to timeval
20012
Willy Tarreau3c5340c2007-05-14 03:18:43 +0200200132007/05/14 : 1.3.11.1
20014 - fixed ev_kqueue which was forgotten during the switch to timeval
20015 - allowed null timeouts for past events in select
20016
Willy Tarreau544eb402007-05-14 02:42:33 +0200200172007/05/14 : 1.3.11
20018 - fixed ev_sepoll again by rewriting the state machine
20019 - switched all timeouts to timevals instead of milliseconds
20020 - improved memory management using mempools v2.
20021 - several minor optimizations
20022
Willy Tarreau9ca931f2007-05-10 07:51:17 +0200200232007/05/09 : 1.3.10.2
20024 - fixed build on OpenBSD (missing types.h)
20025
Willy Tarreau13398d32007-05-09 22:58:28 +0200200262007/05/09 : 1.3.10.1
20027 - fixed sepoll transition matrix (two states were missing)
20028
Willy Tarreau61beedf2007-05-09 01:44:58 +0200200292007/05/08 : 1.3.10
20030 - several fixes in ev_sepoll
20031 - fixed some expiration dates on some tasks
20032 - fixed a bug in connection establishment detection due to speculative I/O
20033 - fixed rare bug occuring on TCP with early close (reported by Andy Smith)
20034 - implemented URI hashing algorithm (Guillaume Dallaire)
20035 - implemented SMTP health checks (Peter van Dijk)
20036 - replaced the rbtree with ul2tree from old scheduler project
20037 - new framework for generic ACL support
20038 - added the 'acl' and 'block' keywords to the config language
20039 - added several ACL criteria and matches (IP, port, URI, ...)
20040 - cleaned up and better modularization for some time functions
20041 - fixed list macros
20042 - fixed useless memory allocation in str2net()
20043 - store the original destination address in the session
20044
Willy Tarreau6e0433f2007-04-16 01:18:12 +0200200452007/04/15 : 1.3.9
20046 - modularized the polling mechanisms and use function pointers instead
20047 of macros at many places
20048 - implemented support for FreeBSD's kqueue() polling mechanism
20049 - fixed a warning on OpenBSD : MIN/MAX redefined
20050 - change socket registration order at startup to accomodate kqueue.
20051 - several makefile cleanups to support old shells
20052 - fix build with limits.h once for all
20053 - ev_epoll: do not rely on fd_sets anymore, use changes stacks instead.
20054 - fdtab now holds the results of polling
20055 - implemented support for speculative I/O processing with epoll()
20056 - remove useless calls to shutdown(SHUT_RD), resulting in small speed boost
20057 - auto-registering of pollers at load time
20058
Willy Tarreau42c76592007-04-03 20:30:13 +0200200592007/04/03 : 1.3.8.2
20060 - rewriting either the status line or request line could crash the
20061 process due to a pointer which ought to be reset before parsing.
20062 - rewriting the status line in the response did not work, it caused
20063 a 502 Bad Gateway due to an erroneous state during parsing
20064
Willy Tarreauef6d7612007-04-01 11:06:22 +0200200652007/04/01 : 1.3.8.1
20066 - fix reqadd when no option httpclose is used.
20067 - removed now unused fiprm and beprm from proxies
20068 - split logs into two versions : TCP and HTTP
20069 - added some docs about http headers storage and acls
20070 - added a VIM script for syntax color highlighting (Bruno Michel)
20071
Willy Tarreaud661cc02007-03-26 00:24:56 +0200200722007/03/25 : 1.3.8
20073 - fixed several bugs which might have caused a crash with bad configs
20074 - several optimizations in header processing
20075 - many progresses towards transaction-based processing
20076 - option forwardfor may be used in frontends
20077 - completed HTTP response processing
20078 - some code refactoring between request and response processing
20079 - new HTTP header manipulation functions
20080 - optimizations on the recv() patch to reduce CPU usage under very
20081 high data rates.
20082 - more user-friendly help about the 'usesrc' keyword (CTTPROXY)
20083 - username/groupname support from Marcus Rueckert
20084 - added the "except" keyword to the "forwardfor" option (Bryan German)
20085 - support for health-checks on other addresses (Fabrice Dulaunoy)
20086 - makefile for MacOS 10.4 / Darwin (Dan Zinngrabe)
20087 - do not insert "Connection: close" in HTTP/1.0 messages
20088
Willy Tarreau9cabf702007-01-26 23:49:01 +0100200892007/01/26 : 1.3.7
20090 - fix critical bug introduced with 1.3.6 : an empty request header
20091 may lead to a crash due to missing pointer assignment
20092 - hdr_idx might be left uninitialized in debug mode
20093 - fixed build on FreeBSD due to missing fd_set declaration
20094
Willy Tarreaue7a24382007-01-22 08:57:44 +0100200952007/01/22 : 1.3.6.1
20096 - change in the header chaining broke cookies and authentication
20097
Willy Tarreau49e1ee82007-01-22 00:56:46 +0100200982007/01/22 : 1.3.6
20099 - stats now support the HEAD method too
20100 - extracted http request from the session
20101 - huge rework of the HTTP parser which is now a 28-state FSM.
20102 - linux-style likely/unlikely macros for optimization hints
20103 - do not create a server socket when there's no server
20104 - imported lots of docs
20105
Willy Tarreau5871f8e2007-01-07 02:47:01 +0100201062007/01/07 : 1.3.5
20107 - stats: swap color sets for active and backup servers
20108 - try to guess server check port when unset
20109 - added complete support and doc for TCP Splicing
20110 - replace the wait-queue linked list with an rbtree.
20111 - a few bugfixes and cleanups
20112
Willy Tarreau85270da2007-01-02 00:59:39 +0100201132007/01/02 : 1.3.4
20114 - support for cttproxy on the server side to present the client
20115 address to the server.
20116 - added support for SO_REUSEPORT on Linux (needs kernel patch)
20117 - new RFC2616-compliant HTTP request parser with header indexing
20118 - split proxies in frontends, rulesets and backends
20119 - implemented the 'req[i]setbe' to select a backend depending
20120 on the contents
20121 - added the 'default_backend' keyword to select a default BE.
20122 - new stats page featuring FEs and BEs + bytes in both dirs
20123 - improved log format to indicate the backend and the time in ms.
20124 - lots of cleanups
20125
Willy Tarreau9c9fea42006-10-16 00:03:35 +0200201262006/10/15 : 1.3.3
20127 - fix broken redispatch option in case the connection has already
20128 been marked "in progress" (ie: nearly always).
20129 - support regparm on x86 to speed up some often called functions
20130 - removed a few useless calls to gettimeofday() in log functions.
20131 - lots of 'const char*' cleanups
20132 - turn every FD_* into functions which are faster on recent CPUs
20133
Willy Tarreau690f9aa2006-09-03 11:23:06 +0200201342006/09/03 : 1.3.2
20135 - started the changes towards I/O completion callbacks. stream_sock* have
20136 replaced event_*.
20137 - added the new "reqtarpit" and "reqitarpit" protection features
20138
Willy Tarreau8f2b8552006-07-09 17:11:39 +0200201392006/07/09 : 1.3.1 (1.2.15)
20140 - now, haproxy warns about missing timeout during startup to try to
20141 eliminate all those buggy configurations.
20142 - added "Content-Type: text/html" in responses wherever appropriate, as
20143 suggested by Cameron Simpson.
20144 - implemented "option ssl-hello-chk" to use SSLv3 CLIENT HELLO messages to
20145 test server's health
20146 - implemented "monitor-uri" so that haproxy can reply to a specific URI with
20147 an "HTTP/1.0 200 OK" response. This is useful to validate multiple proxies
20148 at once.
20149
Willy Tarreaub9e98b62006-07-03 10:32:46 +0200201502006/06/29 : 1.3.0
20151 - exploded the whole file into multiple .c and .h. No functionnal
Willy Tarreau8f2b8552006-07-09 17:11:39 +020020152 difference is expected at all.
20153 - fixed a bug by which neither stats nor error messages could be returned if
20154 'clitimeout' was missing.
Willy Tarreaub9e98b62006-07-03 10:32:46 +020020155
willy tarreau7e6328d2006-05-21 23:26:20 +0200201562006/05/21 : 1.2.14
20157 - new HTML status report with the 'stats' keyword.
20158 - added the 'abortonclose' option to better resist traffic surges
20159 - implemented dynamic traffic regulation with the 'minconn' option
20160 - show request time on denied requests
20161 - definitely fixed hot reconf on OpenBSD by the use of SO_REUSEPORT
20162 - now a proxy instance is allowed to run without servers, which is
20163 useful to dedicate one instance to stats
20164 - added lots of error counters
20165 - a missing parenthesis preventd matching of cacheable cookies
20166 - a missing parenthesis in poll_loop() might have caused missed events.
20167
Willy TARREAU4404b7e2006-05-14 10:00:09 +0200201682006/05/14 : 1.2.13.1
20169 - an uninitialized field in the struct session could cause a crash when
20170 the session was freed. This has been encountered on Solaris only.
20171 - Solaris and OpenBSD no not support shutdown() on listening socket. Let's
20172 be nice to them by performing a soft stop if pause fails.
20173
willy tarreauc3a2e072006-05-13 18:51:38 +0200201742006/05/13 : 1.2.13
20175 - 'maxconn' server parameter to do per-server session limitation
20176 - queueing to support non-blocking session limitation
20177 - fixed removal of cookies for cookie-less servers such as backup servers
20178 - two separate wait queues for expirable and non-expirable tasks provide
20179 better performance with lots of sessions.
20180 - some code cleanups and performance improvements
20181 - made state dumps a bit more verbose
20182 - fixed missing checks for NULL srv in dispatch mode
20183 - load balancing on backup servers was not possible in source hash mode.
20184 - two session flags shared the same bit, but fortunately they were not
20185 compatible.
20186
willy tarreauc0d4bbd2006-04-15 21:47:50 +0200201872006/04/15 : 1.2.12
20188 Very few changes preparing for more important changes to support per-server
20189 session limitations and queueing :
20190 - ignore leading empty lines in HTTP requests as suggested by RFC2616.
20191 - added the 'weight' parameter to the servers, limited to 1..256. It applies
20192 to roundrobin and source hash.
20193 - the optional '-s' option could clobber '-st' and '-sf' if compiled in.
20194
willy tarreaue0dd2692006-03-30 16:27:34 +0200201952006/03/30 : 1.2.11.1
20196 - under some conditions, it might have been possible that when the
20197 last dead server became available, it would not have been used
20198 till another one would have changed state. Could not be reproduced
20199 at all, however seems possible from the code.
20200
willy tarreaud2058dc2006-03-25 20:35:41 +0100202012006/03/25 : 1.2.11
20202 - added the '-db' command-line option to disable backgrounding.
20203 - added the -sf/-st command-line arguments which are used to specify
20204 a list of pids to send a FINISH or TERMINATE signal upon startup.
20205 They will also be asked to release their port if a bind fails.
20206 - reworked the startup mechanism to allow the sending of a signal to a list
20207 of old pids if a socket cannot be bound, with a retry for a limited amount
20208 of time (1 second by default).
20209 - added the ability to enforce limits on memory usage.
20210 - added the 'source' load-balancing algorithm which uses the source IP(v4|v6)
20211 - re-architectured the server round-robin mechanism to ease integration of
20212 other algorithms. It now relies on the number of active and backup servers.
20213 - added a counter for the number of active and backup servers, and report
20214 these numbers upon SIGHUP or state change.
20215
willy tarreaubfad5742006-03-23 14:19:11 +0100202162006/03/23 : 1.2.10.1
20217 - while fixing the backup server round-robin "feature", a new bug was
20218 introduced which could miss some backup servers.
20219 - the displayed proxy name was wrong when dumping upon SIGHUP.
20220
willy tarreauaaff30e2006-03-19 21:30:41 +0100202212006/03/19 : 1.2.10
20222 - assert.h is needed when DEBUG is defined.
20223 - ENORMOUS long standing bug affecting the epoll polling system :
20224 event_data is a union, not a structure !
20225 - Make fd management more robust and easier to debug. Also some
20226 micro-optimisations.
20227 - Limit the number of consecutive accept() in multi-process mode.
20228 This produces a more evenly distributed load across the processes and
20229 slightly improves performance by reducing bottlenecks.
20230 - Make health-checks be more regular, and faster to retry after a timeout.
20231 - Fixed some messages to ease parsing of alerts.
20232 - provided a patch to enable epoll on RHEL3 kernels.
20233 - Separated OpenBSD build from the main Makefile into a new one.
20234
willy tarreau50be0172006-03-15 19:41:19 +0100202352006/03/15 : 1.2.9
20236 - haproxy could not be stopped after being paused, it had to be woken up
20237 first. This has been fixed.
20238 - the 'ulimit-n' parameter is now optional and by default computed from
20239 maxconn + the number of listeners + the number of health-checks.
20240 - it is now possible to specify a maximum number of connections at build
20241 time with the SYSTEM_MAXCONN define. The value set in the configuration
20242 file will then be limited to this value, and only the command-line '-n'
20243 option will be able to bypass it. It will prevent against accidental
20244 high memory usage on small systems.
20245 - RFC2616 expects that any HTTP agent accepts multi-line headers. Earlier
20246 versions did not detect a line beginning with a space as the continuation
20247 of previous header. It is now correct.
20248 - health checks sent to servers configured with identical intervals were
20249 sent in perfect synchronisation because the initial time was the same
20250 for all. This could induce high load peaks when fragile servers were
20251 hosting tens of instances for the same application. Now the load is
20252 spread evenly across the smallest interval amongst a listener.
20253 - a new 'forceclose' option was added to make the proxy close the outgoing
20254 channel to the server once it has sent all its headers and the server
20255 starts responding. This helps some servers which don't close upon the
20256 'Connection: close' header. It implies 'option httpclose'.
20257 - there was a bug in the way the backup servers were handled. They were
20258 erroneously load-balanced while the doc said the opposite. Since
20259 load-balanced backup servers is one of the features some people have
20260 been asking for, the problem was fixed to reflect the documented
20261 behaviour and a new option 'allbackups' was introduced to provide the
20262 feature to those who need it.
20263 - a never ending connect() could lead to a fast select() loop if its
20264 timeout times the number of retransmits exceeded the server read or write
20265 timeout, because the later was used to compute select()'s timeout while
20266 the connection timeout was not reached.
20267 - now we initialize the libc's localtime structures very early so that even
20268 under OOM conditions, we can still send dated error messages without
20269 segfaulting.
20270 - the 'daemon' mode implies 'quiet' and disables 'verbose' because file
20271 descriptors are closed.
20272
willy tarreau065f1c02006-01-29 22:10:07 +0100202732006/01/29 : 1.2.8
20274 - fixed a nasty bug affecting poll/epoll which could return unmodified data
20275 from the server to the client, and sometimes lead to memory corruption
20276 crashing the process.
20277 - added the new pause/play mechanism with SIGTTOU/SIGTTIN for hot-reconf.
20278
202792005/12/18 : 1.2.7.1
20280 - the "retries" option was ignored because connect() could not return an
20281 error if the connection failed before the timeout.
20282 - TCP health-checks could not detect a connection refused in poll/epoll
20283 mode.
20284
willy tarreaua56eca72005-12-18 01:34:42 +0100202852005/11/13 : 1.2.7
willy tarreau77bc8542005-12-18 01:31:43 +010020286 - building with -DUSE_PCRE should include PCRE headers and not regex.h. At
20287 least on Solaris, this caused the libc's regex primitives to be used instead
20288 of PCRE, which caused trouble on group references. This is now fixed.
willy tarreaud0fb4652005-12-18 01:32:04 +010020289 - delayed the quiet mode during startup so that most of the startup alerts can
20290 be displayed even in quiet mode.
20291 - display an alert when a listener has no address, invalid or no port, or when
20292 there are no enabled listeners upon startup.
willy tarreau4373b962005-12-18 01:32:31 +010020293 - added "static-pcre" to the list of supported regex options in the Makefile.
willy tarreau77bc8542005-12-18 01:31:43 +010020294
willy tarreaub952e1d2005-12-18 01:31:20 +0100202952005/10/09 : 1.2.7rc (1.1.33rc)
20296 - second batch of socklen_t changes.
20297 - clean-ups from Cameron Simpson.
20298 - because tv_remain() does not know about eternity, using no timeout can
20299 make select() spin around a null time-out. Bug reported by Cameron Simpson.
20300 - client read timeout was not properly set to eternity initialized after an
20301 accept() if it was not set in the config. It remained undetected so long
20302 because eternity is 0 and newly allocated pages are zeroed by the system.
20303 - do not call get_original_dst() when not in transparent mode.
20304 - implemented a workaround for a bug in certain epoll() implementations on
20305 linux-2.4 kernels (epoll-lt <= 0.21).
20306 - implemented TCP keepalive with new options : tcpka, clitcpka, srvtcpka.
20307
willy tarreauc5f73ed2005-12-18 01:26:38 +0100203082005/08/07 : 1.2.6
20309 - clean-up patch from Alexander Lazic fixes build on Debian 3.1 (socklen_t).
20310
203112005/07/06 : 1.2.6-pre5 (1.1.32)
willy tarreau0fe39652005-12-18 01:25:24 +010020312 - added the number of active sessions (proxy/process) in the logs
20313
203142005/07/06 : 1.2.6-pre4 (1.1.32-pre4)
willy tarreaub1285d52005-12-18 01:20:14 +010020315 - the time-out fix introduced in 1.1.25 caused a corner case where it was
20316 possible for a client to keep a connection maintained regardless of the
20317 timeout if the server closed the connection during the HEADER phase,
20318 while the client ignored the close request while doing nothing in the
20319 other direction. This has been fixed now by ensuring that read timeouts
20320 are re-armed when switching to any SHUTW state.
20321
203222005/07/05 : 1.2.6-pre3 (1.1.32-pre3)
20323 - enhanced error reporting in the logs. Now the proxy will precisely detect
20324 various error conditions related to the system and/or process limits, and
20325 generate LOG_EMERG logs indicating that a resource has been exhausted.
20326 - logs will contain two new characters for the error cause : 'R' indicates
20327 a resource exhausted, and 'I' indicates an internal error, though this
20328 one should never happen.
20329 - server connection timeouts can now be reported in the logs (sC), as well
20330 as connections refused because of maxconn limitations (PC).
20331
203322005/07/05 : 1.2.6-pre2 (1.1.32-pre2)
20333 - new global configuration keyword "ulimit-n" may be used to raise the FD
20334 limit to usable values.
20335 - a warning is now displayed on startup if the FD limit is lower than the
20336 configured maximum number of sockets.
20337
203382005/07/05 : 1.2.6-pre1 (1.1.32-pre1)
20339 - new configuration keyword "monitor-net" makes it possible to be monitored
20340 by external devices which connect to the proxy without being logged nor
20341 forwarded to any server. Particularly useful on generic TCPv4 relays.
20342
willy tarreau5dffb602005-12-18 01:15:23 +0100203432005/06/21 : 1.2.5.2
20344 - fixed build on PPC where chars are unsigned by default
20345
willy tarreau08dedbe2005-12-18 01:13:48 +0100203462005/05/02 : 1.2.5.1
20347 - dirty hack to fix a bug introduced with epoll : if we close an FD and
20348 immediately reassign it to another session through a connect(), the
20349 Prev{Read,Write}Events are not updated, which causes trouble detecting
20350 changes, thus leading to many timeouts at high loads.
20351
willy tarreau64a3cc32005-12-18 01:13:11 +0100203522005/04/30 : 1.2.5 (1.1.31)
20353 - changed the runtime argument to disable epoll() to '-de'
20354 - changed the runtime argument to disable poll() to '-dp'
20355 - added global options 'nopoll' and 'noepoll' to do the same at the
20356 configuration level.
20357 - added a 'linux24e' target to the Makefile for Linux 2.4 systems patched to
20358 support epoll().
20359 - changed default FD_SETSIZE to 65536 on Solaris (default=1024)
20360 - conditionned signals redirection to #ifdef DEBUG_MEMORY
20361
willy tarreau1c2ad212005-12-18 01:11:29 +0100203622005/04/26 : 1.2.5-pre4
20363 - made epoll() support a compile-time option : ENABLE_EPOLL
20364 - provided a very little libc replacement for a possibly missing epoll()
20365 implementation which can be enabled by -DUSE_MY_EPOLL
20366 - implemented the poll() poller, which can be enabled with -DENABLE_POLL.
20367 The equivalent runtime argument becomes '-P'. A few tests show that it
20368 performs like select() with many fds, but slightly slower (certainly
20369 because of the higher amount of memory involved).
20370 - separated the 3 polling methods and the tasks scheduler into 4 distinct
20371 functions which makes the code a lot more modular.
20372 - moved some event tables to private static declarations inside the poller
20373 functions.
20374 - the poller functions can now initialize themselves, run, and cleanup.
20375 - changed the runtime argument to enable epoll() to '-E'.
20376 - removed buggy epoll_ctl() code in the client_retnclose() function. This
20377 function was never meant to remove anything.
20378 - fixed a typo which caused glibc to yell about a double free on exit.
20379 - removed error checking after epoll_ctl(DEL) because we can never know if
20380 the fd is still active or already closed.
20381 - added a few entries in the makefile
20382
willy tarreauad90a0c2005-12-18 01:09:15 +0100203832005/04/25 : 1.2.5-pre3
20384 - experimental epoll() support (use temporary '-e' argument)
20385
203862005/04/24 : 1.2.5-pre2
willy tarreauc1f47532005-12-18 01:08:26 +010020387 - implemented the HTTP 303 code for error redirection. This forces the
20388 browser to fetch the given URI with a GET request. The new keyword for
20389 this is 'errorloc303', and a new 'errorloc302' keyword has been created
20390 to make them easily distinguishable.
20391 - added more controls in the parser for valid use of '\x' sequence.
20392 - few fixes from Alex & Klaus
20393
willy tarreauad90a0c2005-12-18 01:09:15 +0100203942005/02/17 : 1.2.5-pre1
willy tarreauc1f47532005-12-18 01:08:26 +010020395 - fixed a few errors in the documentation
20396
203972005/02/13
20398 - do not pre-initialize unused file-descriptors before select() anymore.
20399
willy tarreau12350152005-12-18 01:03:27 +0100204002005/01/22 : 1.2.4
20401 - merged Alexander Lazic's and Klaus Wagner's work on application
20402 cookie-based persistence. Since this is the first merge, this version is
20403 not intended for general use and reports are more than welcome. Some
20404 documentation is really needed though.
20405
willy tarreau0174f312005-12-18 01:02:42 +0100204062005/01/22 : 1.2.3 (1.1.30)
20407 - add an architecture guide to the documentation
20408 - released without any changes
20409
204102004/12/26 : 1.2.3-pre1 (1.1.30-pre1)
20411 - increased default BUFSIZE to 16 kB to accept max headers of 8 kB which is
20412 compatible with Apache. This limit can be configured in the makefile now.
20413 Thanks to Eric Fehr for the checks.
20414 - added a per-server "source" option which now makes it possible to bind to
20415 a different source for each (potentially identical) server.
20416 - changed cookie-based server selection slightly to allow several servers to
20417 share a same cookie, thus making it possible to associate backup servers to
20418 live servers and ease soft-stop for maintenance periods. (Alexander Lazic)
20419 - added the cookie 'prefix' mode which makes it possible to use persistence
20420 with thin clients which support only one cookie. The server name is prefixed
20421 before the application cookie, and restore back.
20422 - fixed the order of servers within an instance to match documentation. Now
20423 the servers are *really* used in the order of their declaration. This is
20424 particularly important when multiple backup servers are in use.
20425
willy tarreau4302f492005-12-18 01:00:37 +0100204262004/10/18 : 1.2.2 (1.1.29)
20427 - fixed a bug where a TCP connection would be logged twice if the 'logasap'
20428 option was enabled without the 'tcplog' option.
20429 - encode_string() would use hdr_encode_map instead of the map argument.
20430
204312004/08/10 : (1.1.29-pre2)
20432 - the logged request is now encoded with '#XX' for unprintable characters
20433 - new keywords 'capture request header' and 'capture response header' enable
20434 logging of arbitrary HTTP headers in requests and responses
20435 - removed "-DSOLARIS" after replacing the last inet_aton() with inet_pton()
20436
willy tarreau982249e2005-12-18 00:57:06 +0100204372004/06/06 : 1.2.1 (1.1.28)
20438 - added the '-V' command line option to verbosely report errors even though
20439 the -q or 'quiet' options are specified. This is useful with '-c'.
20440 - added a Red Hat init script and a .spec from Simon Matter <simon.matter@invoca.ch>
willy tarreau036e1ce2005-12-17 13:46:33 +010020441
willy tarreau982249e2005-12-18 00:57:06 +0100204422004/06/05 :
20443 - added the "logasap" option which produces a log without waiting for the data
20444 to be transferred from the server to the client.
20445 - added the "httpclose" option which removes any "connection:" header and adds
20446 "Connection: close" in both direction.
willy tarreau97f58572005-12-18 00:53:44 +010020447 - added the 'checkcache' option which blocks cacheable responses containing
20448 dangerous headers, such as 'set-cookie'.
willy tarreau982249e2005-12-18 00:57:06 +010020449 - added 'rspdeny' and 'rspideny' to block certain responses to avoid sensible
20450 information leak from servers.
willy tarreau25c4ea52005-12-18 00:49:49 +010020451
204522004/04/18 :
willy tarreaudd07e972005-12-18 00:48:48 +010020453 - send an EMERG log when no server is available for a given proxy
20454 - added the '-c' command line option to syntactically check the
20455 configuration file without starting the service.
20456
willy tarreau8a86dbf2005-12-18 00:45:59 +0100204572003/11/09 : 1.2.0
20458 - the same as 1.1.27 + IPv6 support on the client side
20459
willy tarreaufe2c5c12005-12-17 14:14:34 +0100204602003/10/27 : 1.1.27
20461 - the configurable HTTP health check introduced in 1.1.23 revealed a shameful
20462 bug : the code still assumed that HTTP requests were the same size as the
20463 original ones (22 bytes), and failed if they were not.
20464 - added support for pidfiles.
20465
willy tarreauc58fc692005-12-17 14:13:08 +0100204662003/10/22 : 1.1.26
20467 - the fix introduced in 1.1.25 for client timeouts while waiting for servers
20468 broke almost all compatibility with POST requests, because the proxy
20469 stopped to read anything from the client as soon as it got all of its
20470 headers.
20471
willy tarreauc1cae632005-12-17 14:12:23 +0100204722003/10/15 : 1.1.25
20473 - added the 'tcplog' option, which provides enhanced, HTTP-like logs for
20474 generic TCP proxies, or lighter logs for HTTP proxies.
20475 - fixed a time-out condition wrongly reported as client time-out in data
20476 phase if the client timeout was lower than the connect timeout times the
20477 number of retries.
20478
willy tarreau197e8ec2005-12-17 14:10:59 +0100204792003/09/21 : 1.1.24
20480 - if a client sent a full request then shut its write connection down, then
20481 the request was aborted. This case was detected only when using haproxy
20482 both as health-check client and as a server.
20483 - if 'option httpchk' is used in a 'health' mode server, then responses will
20484 change from 'OK' to 'HTTP/1.0 200 OK'.
20485 - fixed a Linux-only bug in case of HTTP server health-checks, where a single
20486 server response followed by a close could be ignored, and the server seen
20487 as failed.
20488
willy tarreaueedaa9f2005-12-17 14:08:03 +0100204892003/09/19 : 1.1.23
20490 - fixed a stupid bug introduced in 1.1.22 which caused second and subsequent
20491 'default' sections to keep previous parameters, and not initialize logs
20492 correctly.
20493 - fixed a second stupid bug introduced in 1.1.22 which caused configurations
20494 relying on 'dispatch' mode to segfault at the first connection.
20495 - 'option httpchk' now supports method, HTTP version and a few headers.
20496 - now, 'option httpchk', 'cookie' and 'capture' can be specified in
20497 'defaults' section
20498
204992003/09/10 : 1.1.22
willy tarreaua41a8b42005-12-17 14:02:24 +010020500 - 'listen' now supports optionnal address:port-range lists
20501 - 'bind' introduced to add new listen addresses
20502 - fixed a bug which caused a session to be kept established on a server till
20503 it timed out if the client closed during the DATA phase.
20504 - the port part of each server address can now be empty to make the proxy
20505 connect to the server on the same port it was connected to, be an absolute
20506 unsigned number to reflect a single port (as in older versions), or an
20507 explicitly signed number (+N/-N) to indicate that this offset must be
20508 applied to the port the proxy was connected to, when connecting to the
20509 server.
20510 - the 'port' server option allows the user to specify a different
20511 health-check port than the service one. It is mandatory when only relative
20512 ports have been specified and check is required. By default, the checks are
20513 sent to the service port.
20514 - new 'defaults' section which is rather similar to 'listen' except that all
20515 values are only used as default values for future 'listen' sections, until
20516 a new 'defaults' resets them. At the moment, server options, regexes,
20517 cookie names and captures cannot be set in the 'defaults' section.
20518
willy tarreau2f6ba652005-12-17 13:57:42 +0100205192003/05/06 : 1.1.21
20520 - changed the debug output format so that it now includes the session unique
20521 ID followed by the instance name at the beginning of each line.
20522 - in debug mode, accept now shows the client's IP and port.
20523 - added one 3 small debugging scripts to search and pretty print debug output
20524 - changed the default health check request to "OPTIONS /" instead of
20525 "OPTIONS *" since not all servers implement the later one.
20526 - "option httpchk" now accepts an optional parameter allowing the user to
20527 specify and URI other than '/' during health-checks.
20528
willy tarreaub1ff9db2005-12-17 13:51:03 +0100205292003/04/21 : 1.1.20
20530 - fixed two problems with time-outs, one where a server would be logged as
20531 timed out during transfer that take longer to complete than the fixed
20532 time-out, and one where clients were logged as timed-out during the data
20533 phase because they didn't have anything to send. This sometimes caused
20534 slow client connections to close too early while in fact there was no
20535 problem. The proper fix would be to have a per-fd time-out with
20536 conditions depending on the state of the HTTP FSM.
20537
willy tarreau906b2682005-12-17 13:49:52 +0100205382003/04/16 : 1.1.19
20539 - haproxy was NOT RFC compliant because it was case-sensitive on HTTP
20540 "Cookie:" and "Set-Cookie:" headers. This caused JVM 1.4 to fail on
20541 cookie persistence because it uses "cookie:". Two memcmp() have been
20542 replaced with strncasecmp().
20543
willy tarreau036e1ce2005-12-17 13:46:33 +0100205442003/04/02 : 1.1.18
20545 - Haproxy can be compiled with PCRE regex instead of libc regex, by setting
20546 REGEX=pcre on the make command line.
20547 - HTTP health-checks now use "OPTIONS *" instead of "OPTIONS /".
20548 - when explicit source address binding is required, it is now also used for
20549 health-checks.
20550 - added 'reqpass' and 'reqipass' to allow certain headers but not the request
20551 itself.
20552 - factored several strings to reduce binary size by about 2 kB.
20553 - replaced setreuid() and setregid() with more standard setuid() and setgid().
20554 - added 4 status flags to the log line indicating who ended the connection
20555 first, the sessions state, the validity of the cookie, and action taken on
20556 the set-cookie header.
20557
205582002/10/18 : 1.1.17
20559 - add the notion of "backup" servers, which are used only when all other
20560 servers are down.
20561 - make Set-Cookie return "" instead of "(null)" when the server has no
20562 cookie assigned (useful for backup servers).
20563 - "log" now supports an optionnal level name (info, notice, err ...) above
20564 which nothing is sent.
20565 - replaced some strncmp() with memcmp() for better efficiency.
20566 - added "capture cookie" option which logs client and/or server cookies
20567 - cleaned up/down messages and dump servers states upon SIGHUP
20568 - added a redirection feature for errors : "errorloc <errnum> <url>"
20569 - now we won't insist on connecting to a dead server, even with a cookie,
20570 unless option "persist" is specified.
20571 - added HTTP/408 response for client request time-out and HTTP/50[234] for
20572 server reply time-out or errors.
20573
205742002/09/01 : 1.1.16
20575 - implement HTTP health checks when option "httpchk" is specified.
20576
205772002/08/07 : 1.1.15
20578 - replaced setpgid()/setpgrp() with setsid() for better portability, because
20579 setpgrp() doesn't have the same meaning under Solaris, Linux, and OpenBSD.
20580
205812002/07/20 : 1.1.14
20582 - added "postonly" cookie mode
20583
205842002/07/15 : 1.1.13
20585 - tv_diff used inverted parameters which led to negative times !
20586
205872002/07/13 : 1.1.12
20588 - fixed stats monitoring, and optimized some tv_* for most common cases.
20589 - replaced temporary 'newhdr' with 'trash' to reduce stack size
20590 - made HTTP errors more HTML-fiendly.
20591 - renamed strlcpy() to strlcpy2() because of a slightly difference between
20592 their behaviour (return value), to avoid confusion.
20593 - restricted HTTP messages to HTTP proxies only
20594 - added a 502 message when the connection has been refused by the server,
20595 to prevent clients from believing this is a zero-byte HTTP 0.9 reply.
20596 - changed 'Cache-control:' from 'no-cache="set-cookie"' to 'private' when
20597 inserting a cookie, because some caches (apache) don't understand it.
20598 - fixed processing of server headers when client is in SHUTR state
20599
206002002/07/04 :
20601 - automatically close fd's 0,1 and 2 when going daemon ; setpgrp() after
20602 setpgid()
20603
206042002/06/04 : 1.1.11
20605 - fixed multi-cookie handling in client request to allow clean deletion
20606 in insert+indirect mode. Now, only the server cookie is deleted and not
willy tarreau906b2682005-12-17 13:49:52 +010020607 all the header. Should now be compliant to RFC2965.
willy tarreau036e1ce2005-12-17 13:46:33 +010020608 - added a "nocache" option to "cookie" to specify that we explicitly want
20609 to add a "cache-control" header when we add a cookie.
20610 It is also possible to add an "Expires: <old-date>" to keep compatibility
20611 with old/broken caches.
20612
206132002/05/10 : 1.1.10
20614 - if a cookie is used in insert+indirect mode, it's desirable that the
20615 the servers don't see it. It was not possible to remove it correctly
20616 with regexps, so now it's removed automatically.
20617
206182002/04/19 : 1.1.9
20619 - don't use snprintf()'s return value as an end of message since it may
20620 be larger. This caused bus errors and segfaults in internal libc's
20621 getenv() during localtime() in send_log().
20622 - removed dead insecure send_syslog() function and all references to it.
20623 - fixed warnings on Solaris due to buggy implementation of isXXXX().
20624
206252002/04/18 : 1.1.8
20626 - option "dontlognull"
20627 - fixed "double space" bug in config parser
20628 - fixed an uninitialized server field in case of dispatch
20629 with no existing server which could cause a segfault during
20630 logging.
20631 - the pid logged was always the father's, which was wrong for daemons.
20632 - fixed wrong level "LOG_INFO" for message "proxy started".
20633
206342002/04/13 :
20635 - http logging is now complete :
20636 - ip:port, date, proxy, server
20637 - req_time, conn_time, hdr_time, tot_time
20638 - status, size, request
20639 - source address
20640
206412002/04/12 : 1.1.7
20642 - added option forwardfor
20643 - added reqirep, reqidel, reqiallow, reqideny, rspirep, rspidel
20644 - added "log global" in "listen" section.
20645
206462002/04/09 :
20647 - added a new "global" section :
20648 - logs
20649 - debug, quiet, daemon modes
20650 - uid, gid, chroot, nbproc, maxconn
20651
206522002/04/08 : 1.1.6
20653 - regex are now chained and not limited anymore.
20654 - unavailable server now returns HTTP/502.
20655 - increased per-line args limit to 40
20656 - added reqallow/reqdeny to block some request on matches
20657 - added HTTP 400/403 responses
20658
206592002/04/03 : 1.1.5
20660 - connection logging displayed incorrect source address.
20661 - added proxy start/stop and server up/down log events.
20662 - replaced log message short buffers with larger trash.
20663 - enlarged buffer to 8 kB and replace buffer to 4 kB.
20664
206652002/03/25 : 1.1.4
20666 - made rise/fall/interval time configurable
20667
206682002/03/22 : 1.1.3
20669 - fixed a bug : cr_expire and cw_expire were inverted in CL_STSHUT[WR]
20670 which could lead to loops.
20671
206722002/03/21 : 1.1.2
20673 - fixed a bug in buffer management where we could have a loop
20674 between event_read() and process_{cli|srv} if R==BUFSIZE-MAXREWRITE.
20675 => implemented an adjustable buffer limit.
20676 - fixed a bug : expiration of tasks in wait queue timeout is used again,
20677 and running tasks are skipped.
20678 - added some debug lines for accept events.
20679 - send warnings for servers up/down.
20680
206812002/03/12 : 1.1.1
20682 - fixed a bug in total failure handling
20683 - fixed a bug in timestamp comparison within same second (tv_cmp_ms)
20684
206852002/03/10 : 1.1.0
20686 - fixed a few timeout bugs
20687 - rearranged the task scheduler subsystem to improve performance,
20688 add new tasks, and make it easier to later port to librt ;
20689 - allow multiple accept() for one select() wake up ;
20690 - implemented internal load balancing with basic health-check ;
20691 - cookie insertion and header add/replace/delete, with better strings
20692 support.
20693
206942002/03/08
20695 - reworked buffer handling to fix a few rewrite bugs, and
20696 improve overall performance.
20697 - implement the "purge" option to delete server cookies in direct mode.
20698
206992002/03/07
20700 - fixed some error cases where the maxfd was not decreased.
20701
207022002/02/26
20703 - now supports transparent proxying, at least on linux 2.4.
20704
207052002/02/12
20706 - soft stop works again (fixed select timeout computation).
20707 - it seems that TCP proxies sometimes cannot timeout.
20708 - added a "quiet" mode.
20709 - enforce file descriptor limitation on socket() and accept().
20710
207112001/12/30 : release of version 1.0.2 : fixed a bug in header processing
207122001/12/19 : release of version 1.0.1 : no MSG_NOSIGNAL on solaris
207132001/12/16 : release of version 1.0.0.
207142001/12/16 : added syslog capability for each accepted connection.
207152001/11/19 : corrected premature end of files and occasional SIGPIPE.
207162001/10/31 : added health-check type servers (mode health) which replies OK then closes.
207172001/10/30 : added the ability to support standard TCP proxies and HTTP proxies
20718 with or without cookies (use keyword http for this).
207192001/09/01 : added client/server header replacing with regexps.
20720 eg:
20721 cliexp ^(Host:\ [^:]*).* Host:\ \1:80
20722 srvexp ^Server:\ .* Server:\ Apache
207232000/11/29 : first fully working release with complete FSMs and timeouts.
207242000/11/28 : major rewrite
207252000/11/26 : first write